Aidez moi a nettoyer mon ordi

Résolu
Bonjour,

depuis quelque temps je me demande si j ai pas des virus ou des espion ou autre dans mon ordi parce que vraiment mon ordi va lentement par rapport a ses caracteristique, je crois quoi, ,,,

et j aimerai que quelqu un m aide pour savoir si j ai vraiment des virus ou autres, et si il y en a vraiment,,,

m aider a les effaces

j ai pentuim dualcore 1.73ghz, 2gb ddr2, 160 gb hdd

si il fau d autre information, je peu vous les donnes

merci d avance pour laide
Configuration: Windows Vista
Internet Explorer 7.0

46 réponses

Résumé de la discussion

La lenteur d'un ordinateur sous Windows Vista et la crainte de virus ou d'espions constituent le problème central, avec des détails sur une configuration Pentium dual-core 1,73 GHz, 2 Go de RAM et 160 Go. Plusieurs conseils recommandent d'utiliser des outils de sécurité comme Malwarebytes et des utilitaires de vérification des comportements (HijackThis), de nettoyer les barres d'outils et les éléments au démarrage, et d'éviter les solutions contre-productives. En dernier recours, certains évoquent le formatage, mais d'autres privilégient un nettoyage approfondi et une réinstallation ciblée du système et des pilotes pour observer une amélioration des performances.

Bobot (l’IA à votre service)
  1. Salut,

    Tout d'abord, dis-nous l'antivirus et le pare-feu que tu as. Si tu as des logiciels anti-spyware, etc...

    Il faudrait déjà faire un scan anti-virus pour savoir si tu es infecté.

    "one day they will know"
    0
    1. le meilleur logiciel pour les antimalware et tout c'est bitdefender internet security 2008 du moins c'est mon avis
      0
      1. bitdefender internet security et bitdefender total securite????

        ces koi la diffenrence si il y a en un????!!!
        0
    2. j ai bitdefender total security 2008

      bitdefender firewall est active et j ai desactive celui du windows

      protection antivirus bitdefender

      protection contre les logiciel espion et autres programme malveillant: bitdefender et windows sont active

      tous ca ses ecrit dans centre de securite.

      et mon anti virus fait un scan tout les jours, et il ma jamais rin trouve

      merci quand meme pour avoir repondu
      0
      1. fait un analyse avec bit defender internet security il trouve les trojan les malwares et tout
        0
      2. @escobar60200a chaque fois que j essaiye de demarrer le scan bitdefender

        ca me met echec, puis ca sarrete

        ques ce que je doi faire???

        merci de ton aide
        0
    3. re,

      Fais un scan en ligne avec kaspersky.

      Ou alors poste un hisjack.

      "one day they will know"
      0
      1. ces koi un hisjack????

        et comment je peux l avoir???
        0
        1. une fois que j ai commence a installer le hisjack

          il me di what would you like to do???

          lequel je choisi???

          merci encore

          et desole pour t avoir ennuyer
          0
          1. Non, non tu ne m'ennuies pas. Ce site est là pour aider.

            Logiquement, il devrait être en français. Tu cliques sur exécuter, ensuite do a scan file and save. Ensuite tu fais un copier/coller que tu mets sur le site.
            0
            1. voila j ai envoyer le hijack

              j espere quil n y a pas grand chose???
              0
          2. je suis en train de scanner avec kaspersky en ligne mai j aimerai aussi savoir ce que je doi choisir pour hijack???

            merci pour ton aide elo2
            0
            1. merci elo2

              cest en anglais, je fai ce que tu ma di?? maintenant et des que cest termine je te lenvoir...
              0
              1. Voila mon hijack

                je comprend rien de tout ca,,,,

                Logfile of Trend Micro HijackThis v2.0.2
                Scan saved at 20:07:39, on 10/04/2008
                Platform: Windows Vista (WinNT 6.00.1904)
                MSIE: Internet Explorer v7.00 (7.00.6000.16643)
                Boot mode: Normal

                Running processes:
                C:\Windows\system32\Dwm.exe
                C:\Windows\system32\taskeng.exe
                C:\Windows\Explorer.EXE
                C:\Program Files\Windows Defender\MSASCui.exe
                C:\Windows\RtHDVCpl.exe
                C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
                C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
                C:\Program Files\Launch Manager\LManager.exe
                C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
                C:\Program Files\DAEMON Tools\daemon.exe
                C:\Program Files\DAP\DAP.exe
                C:\Users\Unsal Ufuk\Desktop\HALIL\programme\bitdefender2008\bdagent.exe
                C:\Program Files\Common Files\Real\Update_OB\realsched.exe
                C:\Program Files\MSN Messenger\msnmsgr.exe
                C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
                C:\Windows\ehome\ehtray.exe
                C:\Windows\System32\rundll32.exe
                C:\Windows\system32\wbem\unsecapp.exe
                C:\Windows\ehome\ehmsas.exe
                C:\Users\UNSALU~1\AppData\Local\Temp\RtkBtMnt.exe
                C:\Acer\Empowering Technology\ENET\ENMTRAY.EXE
                C:\Acer\Empowering Technology\EPOWER\EPOWER_DMC.EXE
                C:\Acer\Empowering Technology\ACER.EMPOWERING.FRAMEWORK.SUPERVISOR.EXE
                C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE
                C:\Windows\system32\mmc.exe
                C:\Program Files\Internet Explorer\ieuser.exe
                C:\Program Files\Internet Explorer\iexplore.exe
                C:\Users\Unsal Ufuk\Desktop\HALIL\programme\bitdefender2008\seccenter.exe
                C:\Windows\system32\DllHost.exe
                C:\Windows\system32\Macromed\Flash\FlashUtil9e.exe
                D:\halil\Trend Micro\HijackThis\HijackThis.exe
                C:\Windows\system32\taskeng.exe
                C:\Windows\system32\NOTEPAD.EXE

                R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
                R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
                R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://home.sweetim.com/
                R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
                R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
                R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local;*.local
                R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
                R3 - URLSearchHook: speed-bit Toolbar - {2ba521ac-b9b9-4433-ba45-dba2f02cba5a} - C:\Program Files\speed-bit\tbspee.dll
                O1 - Hosts: ::1 localhost
                O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
                O2 - BHO: speed-bit Toolbar - {2ba521ac-b9b9-4433-ba45-dba2f02cba5a} - C:\Program Files\speed-bit\tbspee.dll
                O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
                O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
                O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
                O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                O2 - BHO: Ask Search Assistant BHO - {9CB65201-89C4-402c-BA80-02D8C59F9B1D} - (no file)
                O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
                O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
                O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - (no file)
                O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\system32\eDStoolbar.dll
                O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
                O3 - Toolbar: (no name) - {FE063DB9-4EC0-403e-8DD8-394C54984B2C} - (no file)
                O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
                O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
                O3 - Toolbar: BitDefender Toolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Users\Unsal Ufuk\Desktop\HALIL\programme\bitdefender2008\IEToolbar.dll
                O3 - Toolbar: speed-bit Toolbar - {2ba521ac-b9b9-4433-ba45-dba2f02cba5a} - C:\Program Files\speed-bit\tbspee.dll
                O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
                O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
                O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
                O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
                O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
                O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
                O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
                O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
                O4 - HKLM\..\Run: [WarReg_PopUp] C:\Acer\WR_PopUp\WarReg_PopUp.exe
                O4 - HKLM\..\Run: [Acer Tour Reminder] C:\Acer\AcerTour\Reminder.exe
                O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
                O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
                O4 - HKLM\..\Run: [IndexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
                O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
                O4 - HKLM\..\Run: [DownloadAccelerator] "C:\Program Files\DAP\DAP.EXE" /STARTUP
                O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
                O4 - HKLM\..\Run: [BitDefender Antiphishing Helper] "C:\Users\Unsal Ufuk\Desktop\HALIL\programme\bitdefender2008\IEShow.exe"
                O4 - HKLM\..\Run: [BDAgent] "C:\Users\Unsal Ufuk\Desktop\HALIL\programme\bitdefender2008\bdagent.exe"
                O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
                O4 - HKCU\..\Run: [Acer Tour Reminder] C:\Acer\AcerTour\Reminder.exe
                O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
                O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
                O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
                O4 - HKCU\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -startup
                O4 - HKCU\..\Run: [AROReminder] C:\Program Files\Advanced Registry Optimizer\ARO.exe -rem
                O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
                O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
                O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
                O4 - HKUS\S-1-5-18\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background (User 'SYSTEM')
                O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background (User 'Default user')
                O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
                O4 - Startup: Registration Prince of Persia Les deux Royaumes.LNK = H:\Support\Register\RegistrationReminder.exe
                O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
                O4 - Global Startup: Empowering Technology Launcher.lnk = ?
                O8 - Extra context menu item: &Download with &DAP - C:\Program Files\DAP\dapextie.htm
                O8 - Extra context menu item: Download &all with DAP - C:\Program Files\DAP\dapextie2.htm
                O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
                O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
                O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
                O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
                O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
                O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
                O13 - Gopher Prefix:
                O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://appldnld.apple.com/QuickTime/qtactivex/qtplugin.cab
                O16 - DPF: {0B79F48A-E8D6-11DB-9283-E25056D89593} - https://www.f-secure.com/en/home/support
                O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
                O16 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} (Windows Live OneCare safety scanner control) - http://cdn.scan.onecare.live.com/resource/download/scanner/fr-FR/wlscctrl2.cab
                O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
                O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
                O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
                O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game06.zylom.com/activex/zylomgamesplayer.cab
                O20 - AppInit_DLLs: eNetHook.dll
                O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
                O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
                O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
                O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
                O23 - Service: eDSService.exe (eDataSecurity Service) - HiTRSUT - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe
                O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
                O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe
                O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
                O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
                O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                O23 - Service: Hotspot Shield Service (HotspotShieldService) - Unknown owner - C:\Program Files\Hotspot Shield\bin\openvpnas.exe
                O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
                O23 - Service: BitDefender Desktop Update Service (LIVESRV) - BitDefender SRL - C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe
                O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\Logitech\SrvLnch\SrvLnch.exe
                O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
                O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
                O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
                O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S.R.L. - C:\Users\Unsal Ufuk\Desktop\HALIL\programme\bitdefender2008\vsserv.exe
                O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
                O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
                O23 - Service: BitDefender Communicator (XCOMM) - BitDefender - C:\Program Files\Common Files\BitDefender\BitDefender Communicator\xcommsvr.exe
                0
                1. Désolé mais je me suis absenté. En ce qui concerne ton hisjack, je ne suis pas qualifié pour te dire si il est bon ou pas mais j'ai demandé à une personne du site de venir le lire.
                  Donc patience. Je suivrai l'évolution...

                  "One day they will know"
                  0
              2. tape dans google "foxspm informatix " tu aura ton bonheur

                salut
                0
                1. avec scan kaspersky, il est arrive juqu a 100 pour 100, puis il ses arrete et me di que il y a certain fichier endommage et que je dois reinstaller,,,

                  quest ce que je fai?? commen je fai???

                  merci encore pour vous tous,,,,
                  0
                  1. ok merci quand meme

                    j attend,,,,,,
                    0
                    1. pour finir je nai ni reussi a scanner online avec kaspersky et ni avec bitdefender

                      kaspersky me di : Certains composants sont endommagés où ne sont pas correctement installé. Veuillez réinstaller l'application

                      et bitdefender ne veu pas demarrer du tou,

                      je sais pas quoie commen le faire,,,

                      ca menerve,,,,,,
                      0
                      1. Reste calme. Tout s'arrange.

                        Quels sont les fichiers et composants qui sont endommagés ?

                        "One day they will know"
                        0
                        1. je sais pas

                          commen je peu le savoir??
                          0
                      2. Contributeur sécurité
                        slt tout le monde
                        a la demande de elo 2 je passe

                        _______________

                        supprime via ton panneau de configuration :

                        speed-bit Toolbar souvant associeé a des espions

                        _____________

                        relance hijackhits, fais do a system scan only et fix ces lignes (fix cheked)

                        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF

                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                        R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com

                        O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
                        O2 - BHO: Ask Search Assistant BHO - {9CB65201-89C4-402c-BA80-02D8C59F9B1D} - (no file)
                        O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - (no file)
                        O3 - Toolbar: (no name) - {FE063DB9-4EC0-403e-8DD8-394C54984B2C} - (no file)
                        O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
                        O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
                        O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
                        O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
                        O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game06.zylom.com/activex/zylomgamesplayer.cab
                        O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
                        _____

                        Télécharge Combofix de sUBs : Renomme le avant toute installation, par exemple, nomme le "KillBagle". aide ici : https://forum.pcastuces.com/sujet.asp?f=25&s=37315

                        http://download.bleepingcomputer.com/sUBs/ComboFix.exe
                        Sauvegarde le sur ton bureau et pas ailleurs !

                        Aide à l’utilisation de combofix ici: https://bibou0007.forumpro.fr/login?redirect=%2Ft121-topic

                        Double-clic sur combofix, Il va te poser une question, réponds par la touche 1 et entrée pour valider, laisse toi guider.
                        Attends que combofix ait terminé, un rapport sera créé. Poste le rapport.

                        ______________

                        scan avec MalwareByte's Anti-Malware

                        et colle le rapport:

                        https://www.malekal.com/tutoriel-malwarebyte-anti-malware/

                        https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
                        0
                        1. VOILA LE RAPPORT DE COMBOFIX, ALA LA C EST DU CHINOIS CECI, j espere seulement qu il n y a pas qqch de dangeureux,,,,,merci encore elo2 et jlpjlp,,,,,

                          ComboFix 08-04-09.9 - Unsal Ufuk 2008-04-10 23:25:16.1 - NTFSx86
                          Microsoft® Windows Vista™ Édition Familiale Premium 6.0.6000.0.1252.1.1036.18.1250 [GMT 3:00]
                          Endroit: C:\Users\Unsal Ufuk\Desktop\killbagle.exe
                          * Création d'un nouveau point de restauration
                          * Resident AV is active

                          .

                          ((((((((((((((((((((((((((((( Fichiers créés 2008-03-10 to 2008-04-10 ))))))))))))))))))))))))))))))))))))
                          .

                          Pas de nouveau fichier créé dans cet espace de temps

                          .
                          (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
                          .
                          2008-04-10 20:04 --------- d---a-w C:\ProgramData\TEMP
                          2008-04-10 20:03 --------- d-----w C:\Program Files\speed-bit
                          2008-04-10 19:55 13,260 ----a-w C:\Users\Unsal Ufuk\AppData\Roaming\nvModes.dat
                          2008-04-10 13:53 --------- d--h--w C:\Program Files\InstallShield Installation Information
                          2008-04-10 10:03 --------- d-----w C:\Users\Unsal Ufuk\AppData\Roaming\uTorrent
                          2008-04-09 15:00 --------- d-----w C:\Program Files\Norton Security Scan
                          2008-04-09 12:46 --------- d-----w C:\Users\Unsal Ufuk\AppData\Roaming\Nvu
                          2008-04-09 06:51 --------- d-----w C:\Program Files\Windows Mail
                          2008-04-09 06:27 --------- d-----w C:\ProgramData\Microsoft Help
                          2008-03-26 12:37 --------- d-----w C:\Users\Unsal Ufuk\AppData\Roaming\Sammsoft
                          2008-03-26 12:37 --------- d-----w C:\Program Files\Advanced Registry Optimizer
                          2008-03-22 15:09 --------- d-----w C:\Program Files\Common Files\Logitech
                          2008-03-22 15:09 --------- d-----w C:\Program Files\Common Files\Acer
                          2008-03-22 14:57 --------- d-----w C:\Program Files\Acer(35)
                          2008-03-21 22:01 --------- d-----w C:\Program Files\CCleaner
                          2008-03-21 20:42 --------- d-----w C:\Program Files\DAP
                          2008-03-09 16:30 --------- d-----w C:\Users\Unsal Ufuk\AppData\Roaming\PlayFirst
                          2008-03-09 16:30 --------- d-----w C:\ProgramData\PlayFirst
                          2008-03-09 15:21 774,144 ----a-w C:\Program Files\RngInterstitial.dll
                          2008-03-09 15:21 --------- d-----w C:\Program Files\Real
                          2008-03-09 15:21 --------- d-----w C:\Program Files\Common Files\Real
                          2008-03-09 12:18 --------- d-----w C:\Program Files\Common Files\xing shared
                          2008-03-07 11:24 --------- d-----w C:\Program Files\Nokia
                          2008-03-07 11:22 --------- d-----w C:\Program Files\LimeWire
                          2008-03-07 11:18 --------- d-----w C:\Program Files\AVS4YOU
                          2008-03-06 08:15 --------- d-----w C:\Program Files\BitDefender
                          2008-03-06 08:14 85,520 ----a-w C:\Windows\system32\drivers\bdfndisf.sys
                          2008-03-05 15:08 --------- d-----w C:\ProgramData\BitDefender
                          2008-03-05 15:02 --------- d-----w C:\Program Files\DAEMON Tools
                          2008-03-05 14:21 --------- d-----w C:\Users\Unsal Ufuk\AppData\Roaming\BitDefender
                          2008-03-05 14:17 --------- d-----w C:\Program Files\Common Files\BitDefender
                          2008-03-05 14:15 --------- d-----w C:\ProgramData\Avg7
                          2008-03-04 21:32 69,689 ----a-w C:\Windows\UNZIP.DLL
                          2008-03-04 21:32 507,904 ----a-w C:\Windows\TMUPDATE.DLL
                          2008-03-04 21:32 286,720 ----a-w C:\Windows\PATCH.EXE
                          2008-03-04 11:07 --------- d-----w C:\Program Files\Western Digital Technologies
                          2008-03-03 19:44 --------- d-----w C:\Program Files\Macrogaming
                          2008-02-29 17:49 --------- d-----w C:\Program Files\uTorrent
                          2008-02-29 06:51 19,000 ----a-w C:\Windows\System32\kd1394.dll
                          2008-02-29 06:39 40,960 ----a-w C:\Windows\System32\srclient.dll
                          2008-02-29 06:39 371,712 ----a-w C:\Windows\System32\srcore.dll
                          2008-02-29 06:38 313,856 ----a-w C:\Windows\System32\rstrui.exe
                          2008-02-29 06:38 16,384 ----a-w C:\Windows\System32\srdelayed.exe
                          2008-02-29 06:35 6,656 ----a-w C:\Windows\System32\kbd106n.dll
                          2008-02-29 06:34 7,168 ----a-w C:\Windows\System32\f3ahvoas.dll
                          2008-02-29 04:16 2,027,008 ----a-w C:\Windows\System32\win32k.sys
                          2008-02-28 12:54 --------- d-----w C:\ProgramData\AVS4YOU
                          2008-02-28 12:53 --------- d-----w C:\Program Files\Common Files\AVSMedia
                          2008-02-28 12:08 --------- d-----w C:\Program Files\Philips
                          2008-02-28 12:07 --------- d-----w C:\Users\Unsal Ufuk\AppData\Roaming\InstallShield
                          2008-02-28 01:02 --------- d-----w C:\Users\Unsal Ufuk\AppData\Roaming\LimeWire
                          2008-02-28 00:59 --------- d-----w C:\Users\Unsal Ufuk\AppData\Roaming\BitTorrent
                          2008-02-28 00:09 --------- d-----w C:\Users\Unsal Ufuk\AppData\Roaming\Apple Computer
                          2008-02-28 00:08 --------- d-----w C:\ProgramData\Apple Computer
                          2008-02-28 00:06 --------- d-----w C:\Program Files\Bonjour
                          2008-02-28 00:05 --------- d-----w C:\Program Files\QuickTime
                          2008-02-28 00:00 --------- d-----w C:\Program Files\Common Files\Apple
                          2008-02-27 12:13 --------- d-----w C:\Program Files\DNA
                          2008-02-27 10:59 --------- d-----w C:\Program Files\DivX
                          2008-02-26 21:16 --------- d-----w C:\Program Files\Common Files\PX Storage Engine
                          2008-02-22 00:10 194,560 ----a-w C:\Windows\System32\WebClnt.dll
                          2008-02-22 00:10 110,080 ----a-w C:\Windows\system32\drivers\mrxdav.sys
                          2008-02-22 00:08 45,112 ----a-w C:\Windows\system32\drivers\pciidex.sys
                          2008-02-22 00:08 3,504,696 ----a-w C:\Windows\System32\ntkrnlpa.exe
                          2008-02-22 00:08 3,470,392 ----a-w C:\Windows\System32\ntoskrnl.exe
                          2008-02-22 00:08 21,560 ----a-w C:\Windows\system32\drivers\atapi.sys
                          2008-02-22 00:08 154,624 ----a-w C:\Windows\system32\drivers\nwifi.sys
                          2008-02-22 00:08 15,928 ----a-w C:\Windows\system32\drivers\pciide.sys
                          2008-02-22 00:08 109,624 ----a-w C:\Windows\system32\drivers\ataport.sys
                          2008-02-22 00:07 803,328 ----a-w C:\Windows\system32\drivers\tcpip.sys
                          2008-02-22 00:07 537,600 ----a-w C:\Windows\AppPatch\AcLayers.dll
                          2008-02-22 00:07 449,536 ----a-w C:\Windows\AppPatch\AcSpecfc.dll
                          2008-02-22 00:07 4,247,552 ----a-w C:\Windows\System32\GameUXLegacyGDFs.dll
                          2008-02-22 00:07 24,064 ----a-w C:\Windows\System32\netcfg.exe
                          2008-02-22 00:07 22,016 ----a-w C:\Windows\System32\netiougc.exe
                          2008-02-22 00:07 216,632 ----a-w C:\Windows\system32\drivers\netio.sys
                          2008-02-22 00:07 2,144,256 ----a-w C:\Windows\AppPatch\AcGenral.dll
                          2008-02-22 00:07 173,056 ----a-w C:\Windows\AppPatch\AcXtrnal.dll
                          2008-02-22 00:07 167,424 ----a-w C:\Windows\System32\tcpipcfg.dll
                          2008-02-22 00:07 1,686,528 ----a-w C:\Windows\System32\gameux.dll
                          2008-02-22 00:02 1,244,672 ----a-w C:\Windows\System32\mcmde.dll
                          2008-02-21 17:39 --------- d-----w C:\ProgramData\POP3Profiles
                          2008-02-21 04:43 826,368 ----a-w C:\Windows\System32\wininet.dll
                          2008-02-21 04:43 56,320 ----a-w C:\Windows\System32\iesetup.dll
                          2008-02-21 04:43 52,736 ----a-w C:\Windows\AppPatch\iebrshim.dll
                          2008-02-21 04:43 296,448 ----a-w C:\Windows\System32\gdi32.dll
                          2008-02-21 04:43 26,624 ----a-w C:\Windows\System32\ieUnatt.exe
                          2008-02-21 02:05 200,704 ----a-w C:\Windows\System32\ssldivx.dll
                          2008-02-21 02:05 1,044,480 ----a-w C:\Windows\System32\libdivx.dll
                          2008-02-19 17:14 --------- d-----w C:\ProgramData\POPWWPROFILES
                          2008-02-19 15:51 --------- d-----w C:\Program Files\Ubisoft
                          2008-02-19 05:10 620,088 ----a-w C:\Windows\System32\ci.dll
                          2008-02-18 22:15 --------- d-----w C:\Program Files\ÇáãßÊÈÉ ÇáÔÇãáÉ
                          2008-02-18 08:16 30,464 ----a-w C:\Windows\system32\drivers\usbaapl.sys
                          2008-02-14 23:19 944,184 ----a-w C:\Windows\System32\winload.exe
                          2008-02-13 17:25 --------- d-----w C:\ProgramData\Downloaded Installations
                          2008-02-13 16:28 --------- d-----w C:\ProgramData\PC Suite
                          2008-02-13 16:26 --------- d-----w C:\Users\Unsal Ufuk\AppData\Roaming\Nokia
                          2008-02-13 16:24 --------- d-----w C:\Program Files\PC Connectivity Solution
                          2008-01-20 19:14 633,856 ----a-w C:\Windows\System32\user32.dll
                          .

                          ((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
                          .
                          .
                          REGEDIT4
                          *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés

                          [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                          "Acer Tour Reminder"="C:\Acer\AcerTour\Reminder.exe" [2007-01-17 10:01 151552]
                          "MsnMsgr"="C:\Program Files\MSN Messenger\MsnMsgr.exe" [2007-01-19 13:55 5674352]
                          "swg"="C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe" [2007-08-19 04:29 171448]
                          "ehTray.exe"="C:\Windows\ehome\ehTray.exe" [2006-11-02 15:35 125440]
                          "ISUSPM Startup"="C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" [2005-08-11 16:30 249856]
                          "AROReminder"="C:\Program Files\Advanced Registry Optimizer\ARO.exe" [2007-07-23 09:34 2084480]

                          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                          "Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [2007-08-21 12:58 1006264]
                          "RtHDVCpl"="RtHDVCpl.exe" [2007-03-01 10:38 4390912 C:\Windows\RtHDVCpl.exe]
                          "SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [2006-10-23 06:00 815104]
                          "eDataSecurity Loader"="C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe" [2007-02-07 01:04 464168]
                          "Acer Tour"="" []
                          "NvSvc"="C:\Windows\system32\nvsvc.dll" [2006-12-20 08:50 90191]
                          "NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [2006-12-20 08:50 7766016]
                          "NvMediaCenter"="C:\Windows\system32\NvMcTray.dll" [2006-12-20 08:50 81920]
                          "LManager"="C:\PROGRA~1\LAUNCH~1\LManager.exe" [2006-12-09 06:35 614400]
                          "WarReg_PopUp"="C:\Acer\WR_PopUp\WarReg_PopUp.exe" [2006-11-05 22:48 57344]
                          "eRecoveryService"="" []
                          "Acer Tour Reminder"="C:\Acer\AcerTour\Reminder.exe" [2007-01-17 10:01 151552]
                          "NWEReboot"="" []
                          "PaperPort PTD"="C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe" [2005-03-17 20:17 57393]
                          "IndexSearch"="C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe" [2005-03-17 20:30 40960]
                          "DAEMON Tools"="C:\Program Files\DAEMON Tools\daemon.exe" [2006-09-14 23:09 157592]
                          "DownloadAccelerator"="C:\Program Files\DAP\DAP.exe" [2007-12-01 03:52 4568576]
                          "BitDefender Antiphishing Helper"="C:\Users\Unsal Ufuk\Desktop\HALIL\programme\bitdefender2008\IEShow.exe" [2007-10-09 15:46 61440]
                          "BDAgent"="C:\Users\Unsal Ufuk\Desktop\HALIL\programme\bitdefender2008\bdagent.exe" [2008-03-06 11:12 360448]
                          "TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2008-03-09 15:17 185896]

                          [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
                          "msnmsgr"="C:\Program Files\MSN Messenger\msnmsgr.exe" [2007-01-19 13:55 5674352]

                          C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\
                          Empowering Technology Launcher.lnk - C:\Acer\Empowering Technology\eAPLauncher.exe [2007-03-28 08:39:25 528384]

                          [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
                          "AppInit_DLLs"=eNetHook.dll

                          [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
                          "DisableMonitoring"=dword:00000001

                          [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
                          "DisableMonitoring"=dword:00000001

                          [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
                          "DisableMonitoring"=dword:00000001

                          [HKLM\~\services\sharedaccess\parameters\firewallpolicy\DomainProfile]
                          "EnableFirewall"= 0 (0x0)

                          [HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
                          "{FDCBCF5B-7E46-445A-8AEC-C105EF2D0963}"= C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Acer Arcade Deluxe.exe:Acer Arcade Deluxe
                          "{A686D8CD-DAA5-49CF-B84F-066EC10A6E08}"= C:\Program Files\Acer Arcade Deluxe\DVDivine\DVDivine.exe:DVDivine
                          "{C02E21BA-7DF5-4DD1-ADA2-B09670A68135}"= C:\Program Files\Acer Arcade Deluxe\VideoMagician\MagicDirector.exe:CyberLink MagicDirector
                          "{24538E1D-1ECF-4996-AE4C-35E93F055249}"= C:\Program Files\Acer Arcade Deluxe\DV Wizard\PowerDV.exe:CyberLink PowerDV
                          "{E7DE940F-029B-4099-986C-82CAB7E23B4D}"= TCP:6004|C:\Program Files\Microsoft Office\Office12\outlook.exe:Microsoft Office Outlook
                          "{7C052762-0C7B-424E-B005-63F294CCA25D}"= C:\Program Files\MSN Messenger\livecall.exe:Windows Live Messenger 8.1 (Phone)
                          "TCP Query User{F7EFDC69-A8E7-46CD-8CAA-117002956C12}C:\\program files\\flashget\\flashget.exe"= UDP:C:\program files\flashget\flashget.exe:FlashGet
                          "UDP Query User{B8954036-EDA5-435B-AE53-301621E2A10E}C:\\program files\\flashget\\flashget.exe"= TCP:C:\program files\flashget\flashget.exe:FlashGet
                          "{38F40090-80FA-43B6-936A-53D7D5720D60}"= UDP:C:\Program Files\LimeWire\LimeWire.exe:LimeWire
                          "{CB84589D-8427-4262-80C1-7626D602A2C8}"= TCP:C:\Program Files\LimeWire\LimeWire.exe:LimeWire
                          "TCP Query User{B35FEE70-8A79-4FE0-AC00-49315D74FF19}C:\\program files\\internet explorer\\iexplore.exe"= UDP:C:\program files\internet explorer\iexplore.exe:Internet Explorer
                          "UDP Query User{562DB852-7012-47B3-A712-2A9FE41D2F76}C:\\program files\\internet explorer\\iexplore.exe"= TCP:C:\program files\internet explorer\iexplore.exe:Internet Explorer
                          "TCP Query User{C7176D3C-5F8B-4145-99B5-81AF773303B5}C:\\users\\unsal ufuk\\desktop\\abdulah el hamdi\\crack\\idman.exe"= UDP:C:\users\unsal ufuk\desktop\abdulah el hamdi\crack\idman.exe:idman.exe
                          "UDP Query User{71333BD2-CEC0-4911-B83F-F1CE9EEFA0E5}C:\\users\\unsal ufuk\\desktop\\abdulah el hamdi\\crack\\idman.exe"= TCP:C:\users\unsal ufuk\desktop\abdulah el hamdi\crack\idman.exe:idman.exe
                          "TCP Query User{6A5B19BF-1B01-43EC-BF4E-DA5C495776A9}C:\\program files\\mobily connect card\\mobily connect card.exe"= Disabled:UDP:C:\program files\mobily connect card\mobily connect card.exe:Mobily Connect Card
                          "UDP Query User{B0D96638-FCA6-436F-A08E-08F2DC31E3FF}C:\\program files\\mobily connect card\\mobily connect card.exe"= Disabled:TCP:C:\program files\mobily connect card\mobily connect card.exe:Mobily Connect Card
                          "TCP Query User{16C5D86D-5385-41EB-8299-4302671124E4}C:\\program files\\veoh networks\\veoh\\veohclient.exe"= UDP:C:\program files\veoh networks\veoh\veohclient.exe:Veoh Client
                          "UDP Query User{DE865E2C-72AF-4507-8468-1F2FFF74462A}C:\\program files\\veoh networks\\veoh\\veohclient.exe"= TCP:C:\program files\veoh networks\veoh\veohclient.exe:Veoh Client
                          "TCP Query User{383DF1A8-B1D6-4B8D-B8B9-0D4A2BB6EA83}C:\\program files\\mozilla firefox\\firefox.exe"= UDP:C:\program files\mozilla firefox\firefox.exe:Firefox
                          "UDP Query User{0527CF57-6E1C-4BAF-BF48-2EE8E1BEEE2F}C:\\program files\\mozilla firefox\\firefox.exe"= TCP:C:\program files\mozilla firefox\firefox.exe:Firefox
                          "{C714199E-5F2D-41F1-8A58-EE36A8149087}"= UDP:C:\Program Files\DNA\btdna.exe:DNA
                          "{66FEB9E9-107D-4C14-AA2C-40248321874B}"= TCP:C:\Program Files\DNA\btdna.exe:DNA
                          "{E55430FD-E3C8-47C7-94F8-DF354DAA5BD9}"= UDP:C:\Program Files\BitTorrent\bittorrent.exe:BitTorrent
                          "{3E4EA02B-1C3D-477B-AF57-A4CA70B4EC57}"= TCP:C:\Program Files\BitTorrent\bittorrent.exe:BitTorrent
                          "{82B277AA-6410-4A0D-A717-AEDFEB348AC4}"= UDP:C:\Program Files\Bonjour\mDNSResponder.exe:Bonjour
                          "{164A323B-5F01-449F-8EC3-ECDE2F0CB133}"= TCP:C:\Program Files\Bonjour\mDNSResponder.exe:Bonjour
                          "{539264B5-F277-49AC-8E72-CEA4B2B6DAEF}"= TCP:45823:utorrent udp
                          "TCP Query User{3E0FE7CA-1645-4383-9A6B-C9990ED818AD}C:\\program files\\utorrent\\utorrent.exe"= UDP:C:\program files\utorrent\utorrent.exe:uTorrent
                          "UDP Query User{596E85D4-DCAB-499F-BC1D-33794B5EE76B}C:\\program files\\utorrent\\utorrent.exe"= TCP:C:\program files\utorrent\utorrent.exe:uTorrent
                          "{F36ADD83-F7FD-4DC2-BF5D-D13F107FF598}"= UDP:45283:utorrent tcp

                          [HKLM\~\services\sharedaccess\parameters\firewallpolicy\PublicProfile]
                          "EnableFirewall"= 0 (0x0)

                          [HKLM\~\services\sharedaccess\parameters\firewallpolicy\RestrictedServices\Static\System]
                          "DFSR-1"= RPort=5722|UDP:%SystemRoot%\system32\svchost.exe|Svc=DFSR:Allow inbound TCP traffic|

                          [HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile]
                          "EnableFirewall"= 0 (0x0)

                          [HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile\AuthorizedApplications\List]
                          "C:\\Acer\\Empowering Technology\\eDataSecurity\\eDSfsu.exe"= C:\Acer\Empowering Technology\eDataSecurity\eDSfsu.exe:*:Enabled:eDSfsu
                          "C:\\Acer\\Empowering Technology\\eDataSecurity\\encryption.exe"= C:\Acer\Empowering Technology\eDataSecurity\encryption.exe:*:Enabled:encryption
                          "C:\\Acer\\Empowering Technology\\eDataSecurity\\decryption.exe"= C:\Acer\Empowering Technology\eDataSecurity\decryption.exe:*:Enabled:decryption
                          "C:\\Program Files\\BitTorrent\\bittorrent.exe"= C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent

                          R0 PSDFilter;PSDFilter;C:\Windows\system32\DRIVERS\psdfilter.sys [2007-02-07 01:04]
                          R0 PSDNServ;PSDNSERVER;C:\Windows\system32\drivers\PSDNServ.sys [2007-02-07 01:04]
                          R0 psdvdisk;psdvdisk;C:\Windows\system32\drivers\psdvdisk.sys [2007-02-07 01:04]
                          R2 eDataSecurity Service;eDSService.exe;"C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe" [2007-02-07 01:04]
                          R2 eNet Service;eNet Service;C:\Acer\Empowering Technology\eNet\eNet Service.exe [2006-12-28 21:07]
                          R2 eSettingsService;eSettings Service;C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe [2007-04-24 20:17]
                          R2 MobilityService;MobilityService;C:\Acer\Mobility Center\MobilityService.exe [2006-11-24 13:57]
                          R2 WMIService;ePower Service;C:\Acer\Empowering Technology\ePower\ePowerSvc.exe [2007-01-02 10:33]
                          R2 XAudio;XAudio;C:\Windows\system32\DRIVERS\xaudio.sys [2006-08-05 03:39]
                          R3 athr;Atheros Extensible Wireless LAN device driver;C:\Windows\system32\DRIVERS\athr.sys [2007-12-11 01:32]
                          R3 Bdfndisf;BitDefender Firewall NDIS Filter Service;C:\Windows\system32\DRIVERS\bdfndisf.sys [2008-03-06 11:14]
                          R3 tapvpn;TAP VPN Adapter;C:\Windows\system32\DRIVERS\tapvpn.sys [2007-06-08 09:52]
                          S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;C:\Windows\system32\DRIVERS\b57nd60x.sys [2006-11-02 10:30]
                          S3 Cam5607;Acer OrbiCam;C:\Windows\system32\Drivers\BisonC07.sys [2006-12-27 04:57]
                          S3 SMSCIRDA;SMSC Infrared Device Driver;C:\Windows\system32\DRIVERS\SMSCirda.sys [2006-10-18 16:44]

                          [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
                          bdx REG_MULTI_SZ scan

                          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\G]
                          \shell\AutoRun\command - G:\AutoRun.exe

                          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1bfe16ab-62d4-11dc-9cce-ba28b992bcff}]
                          \shell\AutoRun\command - F:\AutoRun.exe

                          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{4786c312-62d6-11dc-a1d5-806e6f6e6963}]
                          \shell\AutoRun\command - F:\AutoRun.exe

                          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{51e30f9e-943a-11dc-b0cb-0016d4d622f7}]
                          \shell\AutoRun\command - G:\AutoRun.exe

                          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{62491ae3-9439-11dc-84f9-806e6f6e6963}]
                          \shell\AutoRun\command - F:\AutoRun.exe

                          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{7547f7d2-7cd0-11dc-bca8-a1d82de2023b}]
                          \shell\AutoRun\command - G:\LaunchU3.exe -a

                          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{7e8b67ad-942c-11dc-b7ae-0016d4d622f7}]
                          \shell\AutoRun\command - F:\AutoRun.exe

                          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{b1fe4173-9488-11dc-8f46-0016d4d622f7}]
                          \shell\AutoRun\command - F:\AutoRun.exe

                          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{b1fe417f-9488-11dc-8f46-0016d4d622f7}]
                          \shell\AutoRun\command - F:\AutoRun.exe

                          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d461af38-d836-11dc-aa0f-f5aa6ef40e9f}]
                          \shell\AutoRun\command - x.com
                          \shell\explore\Command - x.com
                          \shell\open\Command - x.com

                          *Newly Created Service* - CATCHME
                          .
                          Contenu du dossier 'Scheduled Tasks/Tâches planifiées'
                          "2008-04-10 20:04:03 C:\Windows\Tasks\dossier antivirus.job"
                          - C:\Program Files\BitDefender\BitDefender Backup\backup.exe
                          "2008-04-09 15:00:11 C:\Windows\Tasks\Norton Security Scan.job"
                          - C:\Program Files\Norton Security Scan\Nss.exe
                          "2008-04-10 08:13:52 C:\Windows\Tasks\User_Feed_Synchronization-{D117ABA2-65DF-45A2-BCC0-06A7D194F7D7}.job"
                          - C:\Windows\system32\msfeedssync.exe
                          "2008-04-10 19:56:57 C:\Windows\Tasks\Vérifier les mises à jour de Windows Live Toolbar.job"
                          - C:\Program Files\Windows Live Toolbar\MSNTBUP.EXE
                          .
                          **************************************************************************

                          catchme 0.3.1351 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
                          Rootkit scan 2008-04-10 23:28:59
                          Windows 6.0.6000 NTFS

                          Balayage processus cachés ...

                          Balayage caché autostart entries ...

                          HKCU\Software\Microsoft\Windows\CurrentVersion\Run
                          MsnMsgr = "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background?g

                          Balayage des fichiers cachés ...

                          Scan terminé avec succès
                          Les fichiers cachés: 0

                          **************************************************************************
                          .
                          Temps d'accomplissement: 2008-04-10 23:29:54
                          ComboFix-quarantined-files.txt 2008-04-10 20:29:43
                          Le texte du message associé au numéro 0x2379 est introuvable dans le fichier de messages pour Application.
                          Le texte du message associé au numéro 0x2379 est introuvable dans le fichier de messages pour Application.
                          .
                          2008-04-09 06:27:57 --- E O F ---
                          0
                          1. Je croyais que tu étais partie. Dans l'attente que jpl regarde, j'ai vu dans tes lignes, Norton !?
                            Tu as combien d'antivirus d'installer sur ton pc ?

                            "One day they will know"
                            0
                            1. j ai le bitdefender installer mais

                              mais norton, je lai eu quand j ai voulu telecharger qqch, il ma demander si je voulais norton security scan, alors j avai accepter mais il ne fonctionne pas. a chaque fois que je le lance, il me dit "couldn't get protection update" alors j avas l intention de l effacer mais j ai pas eu le moment,

                              a ton avis, je l efface maintenant??? ou pas
                              parce quil me sert vraiment a rien, je ne l utilise jamais, jamais;;;;
                              0
                              • 1
                              • 2
                              • 3