Pub CID help

Résolu
kiki7777 Messages postés 5 Statut Membre -  
kiki7777 Messages postés 5 Statut Membre -
Bonjour,
Etant infesté par des pub CID, j'ai chargé le rapport hijackthis.
pouvez vous m'aider à l'interpreter et surtout m'indiquer les manip à faire pour eradiquer ces CID
merci

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:11:59, on 21/07/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Norton Internet Security\ISSVC.exe
C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exe
C:\Program Files\MarkAny\ContentSafer\MAAgent.exe
C:\WINDOWS\system32\ICO.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\Pmxmiced.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NSMdtr.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\WinRAR\WinRAR.exe
C:\Program Files\Messenger\msmsgs.exe
C:\DOCUME~1\CHRIST~1\LOCALS~1\Temp\Rar$EX07.046\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://partnerpage.google.com/smallbiz.dell.com/fr_fr?hl=fr&client=dell-row&channel=fr-smb&ibd=1080228
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.dell.com/fr-fr?c=fr&l=fr&s=gen&redirect=1
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = http://partnerpage.google.com/smallbiz.dell.com/fr_fr?hl=fr&client=dell-row&channel=fr-smb&ibd=1080228
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Norton Internet Security - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [SMSTray] C:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exe
O4 - HKLM\..\Run: [MAAgent] C:\Program Files\MarkAny\ContentSafer\MAAgent.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [PMX Daemon] ICO.EXE
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [Ford mpeg road draw] C:\Documents and Settings\All Users\Application Data\way rdr ford mpeg\Face Remote.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-21-1222713104-1065672220-3732385856-1008\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Nicolas')
O4 - HKUS\S-1-5-21-1222713104-1065672220-3732385856-1008\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe" (User 'Nicolas')
O4 - HKUS\S-1-5-21-1222713104-1065672220-3732385856-1008\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (User 'Nicolas')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: BlueSoleil.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w3/pr01/resources/MSNPUpld.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{8BDA191A-E9AB-44DC-B8D7-46D4CC486013}: NameServer = 192.168.1.1,84.103.237.143
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Fichiers communs\SureThing Shared\stllssvr.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe

--
End of file - 11994 bytes

7 réponses

  1. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 324
     
    Salut,

    ---> Télécharge Lop S&D sur ton Bureau
    https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2
    ---> Double-clique dessus pour lancer l'installation
    ---> Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau
    ---> Séléctionne la langue souhaitée, puis choisis l'option 1 (Recherche)
    ---> Patiente jusqu'à la fin du scan
    ---> Poste le rapport généré (C:\lopR.txt)

    (Si le Bureau ne réapparait pas, presse Ctrl+Alt+Suppr, Onglet Fichier, Nouvelle tâche, tape explorer.exe et valide)

    Si tu as un problème pour utiliser Lop S&D, regarde dans le tutorial :
    http://bibou0007.com/outils-specifiques-f78/tutorial-lop-sd-t956.htm#11431
    0
    1. kiki7777 Messages postés 5 Statut Membre
       
      voici le rapport obtenu.merci de ton aide et surtout du tutorial
      on verra la suite demain, il est tard

      --------------------\\ Lop S&D 4.2.2-2 XP/Vista

      [ Windows XP (NT 5.1) Build 2600, Service Pack 2 ]
      [ USER : Christine ] [ "C:\Lop SD" ] [ Selection : 1 ]
      [ 22/07/2008 | 0:38:26,50 ] [ PC : DHXMVH3J ]
      [ MAJ : 20-07-2008 | 12:15 ]

      --------------------\\ Listing des dossiers dans Application Data

      [19/08/2004|15:10] C:\DOCUME~1\ADMINI~1\APPLIC~1\desktop.ini
      [19/08/2004|15:24] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
      [27/02/2008|21:03] C:\DOCUME~1\ADMINI~1\APPLIC~1\InstallShield
      [19/08/2004|15:10] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
      [27/02/2008|21:12] C:\DOCUME~1\ADMINI~1\APPLIC~1\Roxio

      [05/04/2008|10:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
      [28/05/2008|15:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Bluetooth
      [11/03/2008|01:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
      [11/03/2008|20:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Dell
      [19/08/2004|15:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\desktop.ini
      [16/03/2008|00:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DVD Shrink
      [27/02/2008|21:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
      [27/02/2008|21:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
      [21/07/2008|10:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LauncherAccess.dt
      [11/03/2008|00:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee
      [28/05/2008|17:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
      [12/03/2008|15:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
      [12/03/2008|20:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Mozilla
      [27/02/2008|21:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Roxio
      [19/08/2004|15:29] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
      [11/03/2008|00:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBT
      [27/02/2008|21:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
      [27/02/2008|21:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SupportSoft
      [11/03/2008|01:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
      [25/05/2008|18:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\way rdr ford mpeg
      [25/05/2008|17:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
      [11/03/2008|12:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ZoomBrowser

      [20/03/2008|20:56] C:\DOCUME~1\Aurelie\APPLIC~1\Adobe
      [29/03/2008|16:27] C:\DOCUME~1\Aurelie\APPLIC~1\Ahead
      [19/08/2004|15:10] C:\DOCUME~1\Aurelie\APPLIC~1\desktop.ini
      [11/03/2008|23:14] C:\DOCUME~1\Aurelie\APPLIC~1\EoRezo
      [06/07/2008|23:27] C:\DOCUME~1\Aurelie\APPLIC~1\Google
      [19/08/2004|15:24] C:\DOCUME~1\Aurelie\APPLIC~1\Identities
      [27/02/2008|21:03] C:\DOCUME~1\Aurelie\APPLIC~1\InstallShield
      [11/03/2008|22:53] C:\DOCUME~1\Aurelie\APPLIC~1\ItsLabel
      [11/03/2008|21:32] C:\DOCUME~1\Aurelie\APPLIC~1\Macromedia
      [09/04/2008|23:40] C:\DOCUME~1\Aurelie\APPLIC~1\Microsoft
      [18/06/2008|20:19] C:\DOCUME~1\Aurelie\APPLIC~1\Notepad++
      [27/02/2008|21:12] C:\DOCUME~1\Aurelie\APPLIC~1\Roxio

      [02/04/2008|17:27] C:\DOCUME~1\CHRIST~1\APPLIC~1\Adobe
      [27/03/2008|18:23] C:\DOCUME~1\CHRIST~1\APPLIC~1\Ahead
      [11/03/2008|18:19] C:\DOCUME~1\CHRIST~1\APPLIC~1\Canon
      [19/08/2004|15:10] C:\DOCUME~1\CHRIST~1\APPLIC~1\desktop.ini
      [22/04/2008|19:43] C:\DOCUME~1\CHRIST~1\APPLIC~1\dvdcss
      [14/03/2008|00:59] C:\DOCUME~1\CHRIST~1\APPLIC~1\Google
      [11/03/2008|11:48] C:\DOCUME~1\CHRIST~1\APPLIC~1\Help
      [19/08/2004|15:24] C:\DOCUME~1\CHRIST~1\APPLIC~1\Identities
      [27/02/2008|21:03] C:\DOCUME~1\CHRIST~1\APPLIC~1\InstallShield
      [12/03/2008|18:00] C:\DOCUME~1\CHRIST~1\APPLIC~1\ItsLabel
      [11/03/2008|11:33] C:\DOCUME~1\CHRIST~1\APPLIC~1\Macromedia
      [17/06/2008|16:23] C:\DOCUME~1\CHRIST~1\APPLIC~1\Microsoft
      [02/06/2008|00:43] C:\DOCUME~1\CHRIST~1\APPLIC~1\Mozilla
      [03/06/2008|19:41] C:\DOCUME~1\CHRIST~1\APPLIC~1\Notepad++
      [25/03/2008|17:44] C:\DOCUME~1\CHRIST~1\APPLIC~1\Roxio
      [20/07/2008|18:35] C:\DOCUME~1\CHRIST~1\APPLIC~1\Samsung
      [05/04/2008|09:35] C:\DOCUME~1\CHRIST~1\APPLIC~1\Sun
      [18/03/2008|16:39] C:\DOCUME~1\CHRIST~1\APPLIC~1\U3
      [22/04/2008|20:43] C:\DOCUME~1\CHRIST~1\APPLIC~1\vlc
      [10/06/2008|13:17] C:\DOCUME~1\CHRIST~1\APPLIC~1\WinRAR
      [11/03/2008|18:24] C:\DOCUME~1\CHRIST~1\APPLIC~1\ZoomBrowser EX

      [19/08/2004|15:10] C:\DOCUME~1\DEFAUL~1\APPLIC~1\desktop.ini
      [19/08/2004|15:24] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
      [27/02/2008|21:03] C:\DOCUME~1\DEFAUL~1\APPLIC~1\InstallShield
      [19/08/2004|15:10] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
      [27/02/2008|21:12] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Roxio

      [11/03/2008|12:13] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
      [27/02/2008|21:12] C:\DOCUME~1\LOCALS~1\APPLIC~1\Roxio
      [20/03/2008|10:46] C:\DOCUME~1\LOCALS~1\APPLIC~1\Symantec

      [19/08/2004|15:10] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

      [16/03/2008|19:59] C:\DOCUME~1\Nicolas\APPLIC~1\Adobe
      [24/03/2008|19:20] C:\DOCUME~1\Nicolas\APPLIC~1\Ahead
      [19/08/2004|15:10] C:\DOCUME~1\Nicolas\APPLIC~1\desktop.ini
      [30/03/2008|13:28] C:\DOCUME~1\Nicolas\APPLIC~1\Enterbrain
      [12/03/2008|13:58] C:\DOCUME~1\Nicolas\APPLIC~1\EoRezo
      [24/05/2008|13:24] C:\DOCUME~1\Nicolas\APPLIC~1\Google
      [19/08/2004|15:24] C:\DOCUME~1\Nicolas\APPLIC~1\Identities
      [27/02/2008|21:03] C:\DOCUME~1\Nicolas\APPLIC~1\InstallShield
      [12/03/2008|13:54] C:\DOCUME~1\Nicolas\APPLIC~1\ItsLabel
      [11/03/2008|18:58] C:\DOCUME~1\Nicolas\APPLIC~1\Macromedia
      [27/03/2008|13:02] C:\DOCUME~1\Nicolas\APPLIC~1\Microsoft
      [13/03/2008|12:58] C:\DOCUME~1\Nicolas\APPLIC~1\Mozilla
      [05/06/2008|16:07] C:\DOCUME~1\Nicolas\APPLIC~1\QuickZip45.ini
      [28/03/2008|18:43] C:\DOCUME~1\Nicolas\APPLIC~1\Roxio
      [24/05/2008|16:59] C:\DOCUME~1\Nicolas\APPLIC~1\Sun
      [22/06/2008|15:38] C:\DOCUME~1\Nicolas\APPLIC~1\TeamViewer
      [08/07/2008|18:59] C:\DOCUME~1\Nicolas\APPLIC~1\vlc
      [05/06/2008|20:54] C:\DOCUME~1\Nicolas\APPLIC~1\Windows Live Writer
      [05/06/2008|16:22] C:\DOCUME~1\Nicolas\APPLIC~1\WinRAR

      [11/03/2008|20:29] C:\DOCUME~1\Pascal\APPLIC~1\Adobe
      [21/04/2008|00:04] C:\DOCUME~1\Pascal\APPLIC~1\Ahead
      [11/03/2008|01:31] C:\DOCUME~1\Pascal\APPLIC~1\CyberLink
      [19/08/2004|15:10] C:\DOCUME~1\Pascal\APPLIC~1\desktop.ini
      [24/03/2008|12:40] C:\DOCUME~1\Pascal\APPLIC~1\Dev-Cpp
      [14/04/2008|23:16] C:\DOCUME~1\Pascal\APPLIC~1\Google
      [10/04/2008|23:25] C:\DOCUME~1\Pascal\APPLIC~1\Help
      [19/08/2004|15:24] C:\DOCUME~1\Pascal\APPLIC~1\Identities
      [27/02/2008|21:03] C:\DOCUME~1\Pascal\APPLIC~1\InstallShield
      [11/03/2008|01:56] C:\DOCUME~1\Pascal\APPLIC~1\Macromedia
      [29/06/2008|18:20] C:\DOCUME~1\Pascal\APPLIC~1\Microsoft
      [11/03/2008|00:31] C:\DOCUME~1\Pascal\APPLIC~1\Microsoft Web Folders
      [12/03/2008|22:54] C:\DOCUME~1\Pascal\APPLIC~1\Mozilla
      [09/04/2008|23:33] C:\DOCUME~1\Pascal\APPLIC~1\Notepad++
      [07/05/2008|22:54] C:\DOCUME~1\Pascal\APPLIC~1\Roxio
      [15/03/2008|18:02] C:\DOCUME~1\Pascal\APPLIC~1\Shareaza
      [30/03/2008|01:47] C:\DOCUME~1\Pascal\APPLIC~1\Sun
      [11/03/2008|01:03] C:\DOCUME~1\Pascal\APPLIC~1\Symantec
      [13/03/2008|01:07] C:\DOCUME~1\Pascal\APPLIC~1\U3
      [16/03/2008|00:48] C:\DOCUME~1\Pascal\APPLIC~1\vlc
      [09/06/2008|21:33] C:\DOCUME~1\Pascal\APPLIC~1\WinRAR

      [04/04/2008|20:11] C:\DOCUME~1\Perrine\APPLIC~1\Adobe
      [04/04/2008|18:41] C:\DOCUME~1\Perrine\APPLIC~1\Ahead
      [19/08/2004|15:10] C:\DOCUME~1\Perrine\APPLIC~1\desktop.ini
      [04/04/2008|20:17] C:\DOCUME~1\Perrine\APPLIC~1\Google
      [19/08/2004|15:24] C:\DOCUME~1\Perrine\APPLIC~1\Identities
      [27/02/2008|21:03] C:\DOCUME~1\Perrine\APPLIC~1\InstallShield
      [04/04/2008|20:22] C:\DOCUME~1\Perrine\APPLIC~1\Macromedia
      [04/04/2008|20:11] C:\DOCUME~1\Perrine\APPLIC~1\Microsoft
      [27/02/2008|21:12] C:\DOCUME~1\Perrine\APPLIC~1\Roxio
      [16/03/2008|14:17] C:\DOCUME~1\Perrine\APPLIC~1\vlc

      --------------------\\ Tâches planifiées dans C:\WINDOWS\tasks

      [18/07/2008 20:00][--a------] C:\WINDOWS\tasks\Norton AntiVirus - Analyser mon ordinateur - Pascal.job
      [21/07/2008 15:16][--ah-----] C:\WINDOWS\tasks\SA.DAT
      [05/08/2004 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini

      --------------------\\ Listing des dossiers dans C:\Program Files

      [14/07/2008|19:23] C:\Program Files\3DO
      [14/07/2008|15:46] C:\Program Files\Adobe
      [11/03/2008|00:44] C:\Program Files\Agfa
      [13/06/2008|16:53] C:\Program Files\Ankama
      [22/03/2008|19:33] C:\Program Files\AskTBar
      [15/03/2008|01:18] C:\Program Files\Audacity
      [14/04/2008|12:11] C:\Program Files\BD
      [05/04/2008|09:17] C:\Program Files\bluesky
      [11/03/2008|12:09] C:\Program Files\Canon
      [29/03/2008|16:56] C:\Program Files\CDex_150
      [25/05/2008|18:03] C:\Program Files\Comp ace meet
      [19/08/2004|15:15] C:\Program Files\ComPlus Applications
      [27/03/2008|00:13] C:\Program Files\Courrier
      [27/02/2008|21:06] C:\Program Files\CyberLink
      [27/02/2008|21:03] C:\Program Files\Dell
      [27/02/2008|21:09] C:\Program Files\Dell Support Center
      [27/03/2008|00:13] C:\Program Files\Entetes
      [14/07/2008|19:23] C:\Program Files\Fichiers communs
      [12/03/2008|22:56] C:\Program Files\Firefox
      [27/03/2008|00:13] C:\Program Files\Ged
      [22/05/2008|15:58] C:\Program Files\Google
      [15/11/2001|17:19] C:\Program Files\Gynelog.pdf
      [27/03/2008|00:13] C:\Program Files\Images
      [20/07/2008|16:22] C:\Program Files\InstallShield Installation Information
      [27/02/2008|21:04] C:\Program Files\Intel
      [06/06/2008|08:57] C:\Program Files\Internet Explorer
      [28/05/2008|15:32] C:\Program Files\IVT Corporation
      [27/02/2008|20:59] C:\Program Files\Java
      [11/03/2008|01:08] C:\Program Files\Kit ADSL
      [16/03/2008|00:10] C:\Program Files\Lame MP3 Codec
      [21/07/2008|19:33] C:\Program Files\Lopxp
      [21/07/2008|19:07] C:\Program Files\Lopxpsetup
      [16/03/2008|00:08] C:\Program Files\MarkAny
      [27/02/2008|21:00] C:\Program Files\Messenger
      [15/06/2008|16:37] C:\Program Files\Micro Application
      [11/03/2008|00:35] C:\Program Files\microsoft frontpage
      [11/03/2008|17:22] C:\Program Files\Microsoft Money
      [11/03/2008|00:35] C:\Program Files\Microsoft Office
      [10/05/2008|18:42] C:\Program Files\Microsoft Visual Studio
      [27/03/2008|00:13] C:\Program Files\Modeles
      [19/08/2004|15:16] C:\Program Files\Movie Maker
      [18/07/2008|00:45] C:\Program Files\Mozilla Firefox
      [11/03/2008|19:48] C:\Program Files\MSN
      [19/08/2004|15:14] C:\Program Files\MSN Gaming Zone
      [27/02/2008|20:58] C:\Program Files\MSXML 6.0
      [22/03/2008|18:10] C:\Program Files\Nero
      [19/08/2004|15:16] C:\Program Files\NetMeeting
      [09/06/2008|23:52] C:\Program Files\Norton CleanSweep
      [19/07/2008|12:54] C:\Program Files\Norton Internet Security
      [08/06/2008|23:38] C:\Program Files\Notepad++
      [13/06/2008|17:16] C:\Program Files\Ogrest
      [19/08/2004|15:15] C:\Program Files\Online Services
      [09/06/2008|23:59] C:\Program Files\ORDO
      [27/02/2008|20:58] C:\Program Files\Outlook Express
      [27/03/2008|00:12] C:\Program Files\Programes
      [10/05/2008|18:42] C:\Program Files\Publication Web
      [07/06/2008|16:51] C:\Program Files\Roxio
      [20/07/2008|16:22] C:\Program Files\Samsung
      [27/03/2008|00:13] C:\Program Files\Sauve
      [19/08/2004|15:16] C:\Program Files\Services en ligne
      [15/03/2008|18:02] C:\Program Files\Shareaza
      [19/07/2008|16:06] C:\Program Files\Sierra On-Line
      [22/03/2008|20:30] C:\Program Files\Snapshot Viewer
      [27/03/2008|00:13] C:\Program Files\ST5UNST.LOG
      [11/03/2008|01:31] C:\Program Files\Symantec
      [11/03/2008|01:30] C:\Program Files\SymNetDrv
      [19/08/2004|15:24] C:\Program Files\Uninstall Information
      [16/03/2008|00:48] C:\Program Files\VideoLAN
      [10/05/2008|18:25] C:\Program Files\Web Publish
      [13/03/2008|12:59] C:\Program Files\Windows Live
      [16/03/2008|00:05] C:\Program Files\Windows Media Player
      [19/08/2004|15:14] C:\Program Files\Windows NT
      [19/08/2004|15:16] C:\Program Files\WindowsUpdate
      [05/06/2008|16:18] C:\Program Files\WinRAR
      [19/08/2004|15:18] C:\Program Files\xerox
      [16/03/2008|00:10] C:\Program Files\XviD

      --------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs

      [14/07/2008|19:23] C:\Program Files\Fichiers communs\3DO Shared
      [05/04/2008|10:01] C:\Program Files\Fichiers communs\Adobe
      [22/03/2008|18:10] C:\Program Files\Fichiers communs\Ahead
      [11/03/2008|12:00] C:\Program Files\Fichiers communs\Canon
      [10/05/2008|18:42] C:\Program Files\Fichiers communs\Designer
      [28/05/2008|15:32] C:\Program Files\Fichiers communs\InstallShield
      [27/02/2008|20:59] C:\Program Files\Fichiers communs\Java
      [04/07/2008|22:44] C:\Program Files\Fichiers communs\Microsoft Shared
      [19/08/2004|15:16] C:\Program Files\Fichiers communs\MSSoap
      [19/08/2004|15:10] C:\Program Files\Fichiers communs\ODBC
      [27/02/2008|21:04] C:\Program Files\Fichiers communs\Roxio Shared
      [19/08/2004|15:16] C:\Program Files\Fichiers communs\Services
      [27/02/2008|21:04] C:\Program Files\Fichiers communs\Sonic Shared
      [19/08/2004|15:10] C:\Program Files\Fichiers communs\SpeechEngines
      [27/02/2008|21:08] C:\Program Files\Fichiers communs\supportsoft
      [27/02/2008|21:04] C:\Program Files\Fichiers communs\SureThing Shared
      [21/07/2008|20:29] C:\Program Files\Fichiers communs\Symantec Shared
      [11/03/2008|00:35] C:\Program Files\Fichiers communs\System
      [12/03/2008|15:23] C:\Program Files\Fichiers communs\WindowsLiveInstaller

      --------------------\\ Process

      ( 53 Processus )

      IEXPLORE.EXE ~ [5080]
      IEXPLORE.EXE ~ [2088]

      --------------------\\ Recherche avec S_Lop

      Aucun fichier / dossier Lop trouvé !

      --------------------\\ Recherche de Fichiers / Dossiers Lop

      C:\DOCUME~1\ALLUSE~1\APPLIC~1\way rdr ford mpeg
      C:\DOCUME~1\ALLUSE~1\APPLIC~1\way rdr ford mpeg\Face Remote.exe
      C:\DOCUME~1\CHRIST~1\Cookies\christine@advertising[1].txt
      C:\DOCUME~1\CHRIST~1\Cookies\christine@banner.casinoking[2].txt
      C:\DOCUME~1\CHRIST~1\Cookies\christine@casinoking[1].txt
      C:\DOCUME~1\CHRIST~1\Cookies\christine@adopt.euroclick[1].txt
      C:\DOCUME~1\CHRIST~1\Cookies\christine@pacificpoker[2].txt
      C:\DOCUME~1\CHRIST~1\Cookies\christine@32vegas[2].txt
      C:\DOCUME~1\CHRIST~1\Cookies\christine@banner.32vegas[2].txt
      C:\DOCUME~1\CHRIST~1\Cookies\christine@www.2xmoinscher[1].txt
      C:\DOCUME~1\CHRIST~1\Cookies\christine@888[1].txt
      C:\DOCUME~1\CHRIST~1\Cookies\christine@888[2].txt

      --------------------\\ Verification du Registre

      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "Ford mpeg road draw"="C:\\Documents and Settings\\All Users\\Application Data\\way rdr ford mpeg\\Face Remote.exe"

      --------------------\\ Verification du fichier Hosts

      Fichier Hosts MODIFIE

      127.0.0.1 bin.errorprotector.com ## added by CiD
      127.0.0.1 br.errorsafe.com ## added by CiD
      127.0.0.1 br.winantivirus.com ## added by CiD
      127.0.0.1 br.winfixer.com ## added by CiD
      127.0.0.1 cdn.drivecleaner.com ## added by CiD
      127.0.0.1 cdn.errorsafe.com ## added by CiD
      127.0.0.1 cdn.winsoftware.com ## added by CiD
      127.0.0.1 de.errorsafe.com ## added by CiD
      127.0.0.1 de.winantivirus.com ## added by CiD
      127.0.0.1 download.cdn.drivecleaner.com ## added by CiD
      127.0.0.1 download.cdn.errorsafe.com ## added by CiD
      127.0.0.1 download.cdn.winsoftware.com ## added by CiD
      127.0.0.1 download.errorsafe.com ## added by CiD
      127.0.0.1 download.systemdoctor.com ## added by CiD
      127.0.0.1 download.winantispyware.com ## added by CiD
      127.0.0.1 download.windrivecleaner.com ## added by CiD
      127.0.0.1 download.winfixer.com ## added by CiD
      127.0.0.1 drivecleaner.com ## added by CiD
      127.0.0.1 dynamique.drivecleaner.com ## added by CiD
      127.0.0.1 errorprotector.com ## added by CiD
      127.0.0.1 errorsafe.com ## added by CiD
      127.0.0.1 es.winantivirus.com ## added by CiD
      127.0.0.1 fr.winantivirus.com ## added by CiD
      127.0.0.1 fr.winfixer.com ## added by CiD
      127.0.0.1 go.drivecleaner.com ## added by CiD
      127.0.0.1 go.errorsafe.com ## added by CiD
      127.0.0.1 go.winantispyware.com ## added by CiD
      127.0.0.1 go.winantivirus.com ## added by CiD
      127.0.0.1 hk.winantivirus.com ## added by CiD
      127.0.0.1 instlog.errorsafe.com ## added by CiD
      127.0.0.1 instlog.winantivirus.com ## added by CiD
      127.0.0.1 instlog.winfixer.com ## added by CiD
      127.0.0.1 jsp.drivecleaner.com ## added by CiD
      127.0.0.1 kb.errorsafe.com ## added by CiD
      127.0.0.1 kb.winantivirus.com ## added by CiD
      127.0.0.1 nl.errorsafe.com ## added by CiD
      127.0.0.1 se.errorsafe.com ## added by CiD
      127.0.0.1 secure.drivecleaner.com ## added by CiD
      127.0.0.1 secure.errorsafe.com ## added by CiD
      127.0.0.1 secure.winantispam.com ## added by CiD
      127.0.0.1 secure.winantispy.com ## added by CiD
      127.0.0.1 secure.winantivirus.com ## added by CiD
      127.0.0.1 support.winantivirus.com ## added by CiD
      127.0.0.1 trial.updates.winsoftware.com ## added by CiD
      127.0.0.1 ulog.winantivirus.com ## added by CiD
      127.0.0.1 utils.errorsafe.com ## added by CiD
      127.0.0.1 utils.winantivirus.com ## added by CiD
      127.0.0.1 utils.winfixer.com ## added by CiD
      127.0.0.1 winantispyware.com ## added by CiD
      127.0.0.1 winantivirus.com ## added by CiD
      127.0.0.1 winfixer.com ## added by CiD
      127.0.0.1 winfixer2006.com ## added by CiD
      127.0.0.1 winsoftware.com ## added by CiD
      127.0.0.1 [i]ww/iw.drivecleaner.com ## added by CiD
      127.0.0.1 [i]ww/iw.errorprotector.com ## added by CiD
      127.0.0.1 [i]ww/iw.errorsafe.com ## added by CiD
      127.0.0.1 [i]ww/iw.systemdoctor.com ## added by CiD
      127.0.0.1 [i]ww/iw.utils.winfixer.com ## added by CiD
      127.0.0.1 [i]ww/iw.win-anti-virus-pro.com ## added by CiD
      127.0.0.1 [i]ww/iw.win-virus-pro.com ## added by CiD
      127.0.0.1 [i]ww/iw.winantispam.com ## added by CiD
      127.0.0.1 [i]ww/iw.winantispy.com ## added by CiD
      127.0.0.1 [i]ww/iw.winantispyware.com ## added by CiD
      127.0.0.1 [i]ww/iw.winantivirus.com ## added by CiD
      127.0.0.1 [i]ww/iw.winantiviruspro.com ## added by CiD
      127.0.0.1 [i]ww/iw.windrivecleaner.com ## added by CiD
      127.0.0.1 [i]ww/iw.windrivesafe.com ## added by CiD
      127.0.0.1 [i]ww/iw.winfixer.com ## added by CiD
      127.0.0.1 [i]ww/iw.winfixer2006.com ## added by CiD
      127.0.0.1 [i]ww/iw.winsoftware.com ## added by CiD

      -> 72 [ 70 ## added by CiD ]

      /!\ 1 Not 127.0.0.1 !!

      --------------------\\ Recherche de fichiers avec Catchme

      catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
      Rootkit scan 2008-07-22 00:39:11
      Windows 5.1.2600 Service Pack 2 NTFS
      scanning hidden processes ...
      scanning hidden files ...
      scan completed successfully
      hidden processes: 0
      hidden files: 33

      --------------------\\ Recherche d'autres infections


      Aucune autre infection trouvée !

      [F:393][D:27]-> C:\DOCUME~1\CHRIST~1\LOCALS~1\Temp
      [F:241][D:0]-> C:\DOCUME~1\CHRIST~1\Cookies
      [F:16007][D:23]-> C:\DOCUME~1\CHRIST~1\LOCALS~1\TEMPOR~1\content.IE5

      --------------------\\ Fin du rapport a 0:39:36,75
      0
  2. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 324
     
    ---> Relance Lop S&D
    ---> Choisis cette fois-ci l'option 2 (Suppression)
    ---> Ne ferme pas la fenêtre lors de la suppression !
    ---> Poste le rapport généré (C:\lopR.txt)

    (Si le Bureau ne réapparait pas, presse Ctrl+Alt+Suppr, Onglet Fichier, Nouvelle tâche, tape explorer.exe et valide)
    0
  3. kiki7777 Messages postés 5 Statut Membre
     
    --------------------\\ Lop S&D 4.2.2-2 XP/Vista

    [ Windows XP (NT 5.1) Build 2600, Service Pack 2 ]
    [ USER : Christine ] [ "C:\Lop SD" ] [ Selection : 2 ]
    [ 22/07/2008 | 14:39:04,31 ] [ PC : DHXMVH3J ]
    [ MAJ : 20-07-2008 | 12:15 ]

    \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION /////////////////////////////

    Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\way rdr ford mpeg\Face Remote.exe
    Supprime! - C:\DOCUME~1\CHRIST~1\Cookies\christine@advertising[1].txt
    Supprime! - C:\DOCUME~1\CHRIST~1\Cookies\christine@banner.casinoking[2].txt
    Supprime! - C:\DOCUME~1\CHRIST~1\Cookies\christine@casinoking[1].txt
    Supprime! - C:\DOCUME~1\CHRIST~1\Cookies\christine@adopt.euroclick[1].txt
    Supprime! - C:\DOCUME~1\CHRIST~1\Cookies\christine@pacificpoker[2].txt
    Supprime! - C:\DOCUME~1\CHRIST~1\Cookies\christine@32vegas[2].txt
    Supprime! - C:\DOCUME~1\CHRIST~1\Cookies\christine@banner.32vegas[2].txt
    Supprime! - C:\DOCUME~1\CHRIST~1\Cookies\christine@www.2xmoinscher[1].txt
    Supprime! - C:\DOCUME~1\CHRIST~1\Cookies\christine@888[1].txt
    Supprime! - C:\DOCUME~1\CHRIST~1\Cookies\christine@888[2].txt
    Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\way rdr ford mpeg
    RestaurÚ! - Fichier Hosts

    //////////////////////////////////////-\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\

    --------------------\\ Listing des dossiers dans Application Data

    [19/08/2004|15:10] C:\DOCUME~1\ADMINI~1\APPLIC~1\desktop.ini
    [19/08/2004|15:24] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
    [27/02/2008|21:03] C:\DOCUME~1\ADMINI~1\APPLIC~1\InstallShield
    [19/08/2004|15:10] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
    [27/02/2008|21:12] C:\DOCUME~1\ADMINI~1\APPLIC~1\Roxio

    [05/04/2008|10:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
    [28/05/2008|15:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Bluetooth
    [11/03/2008|01:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
    [11/03/2008|20:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Dell
    [19/08/2004|15:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\desktop.ini
    [16/03/2008|00:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DVD Shrink
    [27/02/2008|21:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
    [27/02/2008|21:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
    [21/07/2008|10:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LauncherAccess.dt
    [11/03/2008|00:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee
    [28/05/2008|17:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
    [12/03/2008|15:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
    [12/03/2008|20:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Mozilla
    [27/02/2008|21:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Roxio
    [19/08/2004|15:29] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
    [11/03/2008|00:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBT
    [27/02/2008|21:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
    [27/02/2008|21:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SupportSoft
    [11/03/2008|01:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
    [25/05/2008|17:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
    [11/03/2008|12:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ZoomBrowser

    [20/03/2008|20:56] C:\DOCUME~1\Aurelie\APPLIC~1\Adobe
    [29/03/2008|16:27] C:\DOCUME~1\Aurelie\APPLIC~1\Ahead
    [19/08/2004|15:10] C:\DOCUME~1\Aurelie\APPLIC~1\desktop.ini
    [11/03/2008|23:14] C:\DOCUME~1\Aurelie\APPLIC~1\EoRezo
    [06/07/2008|23:27] C:\DOCUME~1\Aurelie\APPLIC~1\Google
    [19/08/2004|15:24] C:\DOCUME~1\Aurelie\APPLIC~1\Identities
    [27/02/2008|21:03] C:\DOCUME~1\Aurelie\APPLIC~1\InstallShield
    [11/03/2008|22:53] C:\DOCUME~1\Aurelie\APPLIC~1\ItsLabel
    [11/03/2008|21:32] C:\DOCUME~1\Aurelie\APPLIC~1\Macromedia
    [09/04/2008|23:40] C:\DOCUME~1\Aurelie\APPLIC~1\Microsoft
    [18/06/2008|20:19] C:\DOCUME~1\Aurelie\APPLIC~1\Notepad++
    [27/02/2008|21:12] C:\DOCUME~1\Aurelie\APPLIC~1\Roxio

    [02/04/2008|17:27] C:\DOCUME~1\CHRIST~1\APPLIC~1\Adobe
    [27/03/2008|18:23] C:\DOCUME~1\CHRIST~1\APPLIC~1\Ahead
    [11/03/2008|18:19] C:\DOCUME~1\CHRIST~1\APPLIC~1\Canon
    [19/08/2004|15:10] C:\DOCUME~1\CHRIST~1\APPLIC~1\desktop.ini
    [22/04/2008|19:43] C:\DOCUME~1\CHRIST~1\APPLIC~1\dvdcss
    [14/03/2008|00:59] C:\DOCUME~1\CHRIST~1\APPLIC~1\Google
    [11/03/2008|11:48] C:\DOCUME~1\CHRIST~1\APPLIC~1\Help
    [19/08/2004|15:24] C:\DOCUME~1\CHRIST~1\APPLIC~1\Identities
    [27/02/2008|21:03] C:\DOCUME~1\CHRIST~1\APPLIC~1\InstallShield
    [12/03/2008|18:00] C:\DOCUME~1\CHRIST~1\APPLIC~1\ItsLabel
    [11/03/2008|11:33] C:\DOCUME~1\CHRIST~1\APPLIC~1\Macromedia
    [17/06/2008|16:23] C:\DOCUME~1\CHRIST~1\APPLIC~1\Microsoft
    [02/06/2008|00:43] C:\DOCUME~1\CHRIST~1\APPLIC~1\Mozilla
    [03/06/2008|19:41] C:\DOCUME~1\CHRIST~1\APPLIC~1\Notepad++
    [25/03/2008|17:44] C:\DOCUME~1\CHRIST~1\APPLIC~1\Roxio
    [20/07/2008|18:35] C:\DOCUME~1\CHRIST~1\APPLIC~1\Samsung
    [05/04/2008|09:35] C:\DOCUME~1\CHRIST~1\APPLIC~1\Sun
    [18/03/2008|16:39] C:\DOCUME~1\CHRIST~1\APPLIC~1\U3
    [22/04/2008|20:43] C:\DOCUME~1\CHRIST~1\APPLIC~1\vlc
    [10/06/2008|13:17] C:\DOCUME~1\CHRIST~1\APPLIC~1\WinRAR
    [11/03/2008|18:24] C:\DOCUME~1\CHRIST~1\APPLIC~1\ZoomBrowser EX

    [19/08/2004|15:10] C:\DOCUME~1\DEFAUL~1\APPLIC~1\desktop.ini
    [19/08/2004|15:24] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
    [27/02/2008|21:03] C:\DOCUME~1\DEFAUL~1\APPLIC~1\InstallShield
    [19/08/2004|15:10] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
    [27/02/2008|21:12] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Roxio

    [11/03/2008|12:13] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
    [27/02/2008|21:12] C:\DOCUME~1\LOCALS~1\APPLIC~1\Roxio
    [20/03/2008|10:46] C:\DOCUME~1\LOCALS~1\APPLIC~1\Symantec

    [19/08/2004|15:10] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

    [16/03/2008|19:59] C:\DOCUME~1\Nicolas\APPLIC~1\Adobe
    [24/03/2008|19:20] C:\DOCUME~1\Nicolas\APPLIC~1\Ahead
    [19/08/2004|15:10] C:\DOCUME~1\Nicolas\APPLIC~1\desktop.ini
    [30/03/2008|13:28] C:\DOCUME~1\Nicolas\APPLIC~1\Enterbrain
    [12/03/2008|13:58] C:\DOCUME~1\Nicolas\APPLIC~1\EoRezo
    [24/05/2008|13:24] C:\DOCUME~1\Nicolas\APPLIC~1\Google
    [19/08/2004|15:24] C:\DOCUME~1\Nicolas\APPLIC~1\Identities
    [27/02/2008|21:03] C:\DOCUME~1\Nicolas\APPLIC~1\InstallShield
    [12/03/2008|13:54] C:\DOCUME~1\Nicolas\APPLIC~1\ItsLabel
    [11/03/2008|18:58] C:\DOCUME~1\Nicolas\APPLIC~1\Macromedia
    [27/03/2008|13:02] C:\DOCUME~1\Nicolas\APPLIC~1\Microsoft
    [13/03/2008|12:58] C:\DOCUME~1\Nicolas\APPLIC~1\Mozilla
    [05/06/2008|16:07] C:\DOCUME~1\Nicolas\APPLIC~1\QuickZip45.ini
    [28/03/2008|18:43] C:\DOCUME~1\Nicolas\APPLIC~1\Roxio
    [24/05/2008|16:59] C:\DOCUME~1\Nicolas\APPLIC~1\Sun
    [22/06/2008|15:38] C:\DOCUME~1\Nicolas\APPLIC~1\TeamViewer
    [08/07/2008|18:59] C:\DOCUME~1\Nicolas\APPLIC~1\vlc
    [05/06/2008|20:54] C:\DOCUME~1\Nicolas\APPLIC~1\Windows Live Writer
    [05/06/2008|16:22] C:\DOCUME~1\Nicolas\APPLIC~1\WinRAR

    [11/03/2008|20:29] C:\DOCUME~1\Pascal\APPLIC~1\Adobe
    [21/04/2008|00:04] C:\DOCUME~1\Pascal\APPLIC~1\Ahead
    [11/03/2008|01:31] C:\DOCUME~1\Pascal\APPLIC~1\CyberLink
    [19/08/2004|15:10] C:\DOCUME~1\Pascal\APPLIC~1\desktop.ini
    [24/03/2008|12:40] C:\DOCUME~1\Pascal\APPLIC~1\Dev-Cpp
    [14/04/2008|23:16] C:\DOCUME~1\Pascal\APPLIC~1\Google
    [10/04/2008|23:25] C:\DOCUME~1\Pascal\APPLIC~1\Help
    [19/08/2004|15:24] C:\DOCUME~1\Pascal\APPLIC~1\Identities
    [27/02/2008|21:03] C:\DOCUME~1\Pascal\APPLIC~1\InstallShield
    [11/03/2008|01:56] C:\DOCUME~1\Pascal\APPLIC~1\Macromedia
    [29/06/2008|18:20] C:\DOCUME~1\Pascal\APPLIC~1\Microsoft
    [11/03/2008|00:31] C:\DOCUME~1\Pascal\APPLIC~1\Microsoft Web Folders
    [12/03/2008|22:54] C:\DOCUME~1\Pascal\APPLIC~1\Mozilla
    [09/04/2008|23:33] C:\DOCUME~1\Pascal\APPLIC~1\Notepad++
    [07/05/2008|22:54] C:\DOCUME~1\Pascal\APPLIC~1\Roxio
    [15/03/2008|18:02] C:\DOCUME~1\Pascal\APPLIC~1\Shareaza
    [30/03/2008|01:47] C:\DOCUME~1\Pascal\APPLIC~1\Sun
    [11/03/2008|01:03] C:\DOCUME~1\Pascal\APPLIC~1\Symantec
    [13/03/2008|01:07] C:\DOCUME~1\Pascal\APPLIC~1\U3
    [16/03/2008|00:48] C:\DOCUME~1\Pascal\APPLIC~1\vlc
    [09/06/2008|21:33] C:\DOCUME~1\Pascal\APPLIC~1\WinRAR

    [04/04/2008|20:11] C:\DOCUME~1\Perrine\APPLIC~1\Adobe
    [04/04/2008|18:41] C:\DOCUME~1\Perrine\APPLIC~1\Ahead
    [19/08/2004|15:10] C:\DOCUME~1\Perrine\APPLIC~1\desktop.ini
    [04/04/2008|20:17] C:\DOCUME~1\Perrine\APPLIC~1\Google
    [19/08/2004|15:24] C:\DOCUME~1\Perrine\APPLIC~1\Identities
    [27/02/2008|21:03] C:\DOCUME~1\Perrine\APPLIC~1\InstallShield
    [04/04/2008|20:22] C:\DOCUME~1\Perrine\APPLIC~1\Macromedia
    [04/04/2008|20:11] C:\DOCUME~1\Perrine\APPLIC~1\Microsoft
    [27/02/2008|21:12] C:\DOCUME~1\Perrine\APPLIC~1\Roxio
    [16/03/2008|14:17] C:\DOCUME~1\Perrine\APPLIC~1\vlc

    --------------------\\ Tâches planifiées dans C:\WINDOWS\tasks

    [18/07/2008 20:00][--a------] C:\WINDOWS\tasks\Norton AntiVirus - Analyser mon ordinateur - Pascal.job
    [22/07/2008 14:13][--ah-----] C:\WINDOWS\tasks\SA.DAT
    [05/08/2004 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini

    --------------------\\ Listing des dossiers dans C:\Program Files

    [14/07/2008|19:23] C:\Program Files\3DO
    [14/07/2008|15:46] C:\Program Files\Adobe
    [11/03/2008|00:44] C:\Program Files\Agfa
    [13/06/2008|16:53] C:\Program Files\Ankama
    [22/03/2008|19:33] C:\Program Files\AskTBar
    [15/03/2008|01:18] C:\Program Files\Audacity
    [14/04/2008|12:11] C:\Program Files\BD
    [05/04/2008|09:17] C:\Program Files\bluesky
    [11/03/2008|12:09] C:\Program Files\Canon
    [29/03/2008|16:56] C:\Program Files\CDex_150
    [25/05/2008|18:03] C:\Program Files\Comp ace meet
    [19/08/2004|15:15] C:\Program Files\ComPlus Applications
    [27/03/2008|00:13] C:\Program Files\Courrier
    [27/02/2008|21:06] C:\Program Files\CyberLink
    [27/02/2008|21:03] C:\Program Files\Dell
    [27/02/2008|21:09] C:\Program Files\Dell Support Center
    [27/03/2008|00:13] C:\Program Files\Entetes
    [14/07/2008|19:23] C:\Program Files\Fichiers communs
    [12/03/2008|22:56] C:\Program Files\Firefox
    [27/03/2008|00:13] C:\Program Files\Ged
    [22/05/2008|15:58] C:\Program Files\Google
    [15/11/2001|17:19] C:\Program Files\Gynelog.pdf
    [27/03/2008|00:13] C:\Program Files\Images
    [20/07/2008|16:22] C:\Program Files\InstallShield Installation Information
    [27/02/2008|21:04] C:\Program Files\Intel
    [06/06/2008|08:57] C:\Program Files\Internet Explorer
    [28/05/2008|15:32] C:\Program Files\IVT Corporation
    [27/02/2008|20:59] C:\Program Files\Java
    [11/03/2008|01:08] C:\Program Files\Kit ADSL
    [16/03/2008|00:10] C:\Program Files\Lame MP3 Codec
    [21/07/2008|19:33] C:\Program Files\Lopxp
    [21/07/2008|19:07] C:\Program Files\Lopxpsetup
    [16/03/2008|00:08] C:\Program Files\MarkAny
    [27/02/2008|21:00] C:\Program Files\Messenger
    [15/06/2008|16:37] C:\Program Files\Micro Application
    [11/03/2008|00:35] C:\Program Files\microsoft frontpage
    [11/03/2008|17:22] C:\Program Files\Microsoft Money
    [11/03/2008|00:35] C:\Program Files\Microsoft Office
    [10/05/2008|18:42] C:\Program Files\Microsoft Visual Studio
    [27/03/2008|00:13] C:\Program Files\Modeles
    [19/08/2004|15:16] C:\Program Files\Movie Maker
    [18/07/2008|00:45] C:\Program Files\Mozilla Firefox
    [11/03/2008|19:48] C:\Program Files\MSN
    [19/08/2004|15:14] C:\Program Files\MSN Gaming Zone
    [27/02/2008|20:58] C:\Program Files\MSXML 6.0
    [22/03/2008|18:10] C:\Program Files\Nero
    [19/08/2004|15:16] C:\Program Files\NetMeeting
    [09/06/2008|23:52] C:\Program Files\Norton CleanSweep
    [19/07/2008|12:54] C:\Program Files\Norton Internet Security
    [08/06/2008|23:38] C:\Program Files\Notepad++
    [13/06/2008|17:16] C:\Program Files\Ogrest
    [19/08/2004|15:15] C:\Program Files\Online Services
    [09/06/2008|23:59] C:\Program Files\ORDO
    [27/02/2008|20:58] C:\Program Files\Outlook Express
    [27/03/2008|00:12] C:\Program Files\Programes
    [10/05/2008|18:42] C:\Program Files\Publication Web
    [07/06/2008|16:51] C:\Program Files\Roxio
    [20/07/2008|16:22] C:\Program Files\Samsung
    [27/03/2008|00:13] C:\Program Files\Sauve
    [19/08/2004|15:16] C:\Program Files\Services en ligne
    [15/03/2008|18:02] C:\Program Files\Shareaza
    [19/07/2008|16:06] C:\Program Files\Sierra On-Line
    [22/03/2008|20:30] C:\Program Files\Snapshot Viewer
    [27/03/2008|00:13] C:\Program Files\ST5UNST.LOG
    [11/03/2008|01:31] C:\Program Files\Symantec
    [11/03/2008|01:30] C:\Program Files\SymNetDrv
    [19/08/2004|15:24] C:\Program Files\Uninstall Information
    [16/03/2008|00:48] C:\Program Files\VideoLAN
    [10/05/2008|18:25] C:\Program Files\Web Publish
    [13/03/2008|12:59] C:\Program Files\Windows Live
    [16/03/2008|00:05] C:\Program Files\Windows Media Player
    [19/08/2004|15:14] C:\Program Files\Windows NT
    [19/08/2004|15:16] C:\Program Files\WindowsUpdate
    [05/06/2008|16:18] C:\Program Files\WinRAR
    [19/08/2004|15:18] C:\Program Files\xerox
    [16/03/2008|00:10] C:\Program Files\XviD

    --------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs

    [14/07/2008|19:23] C:\Program Files\Fichiers communs\3DO Shared
    [05/04/2008|10:01] C:\Program Files\Fichiers communs\Adobe
    [22/03/2008|18:10] C:\Program Files\Fichiers communs\Ahead
    [11/03/2008|12:00] C:\Program Files\Fichiers communs\Canon
    [10/05/2008|18:42] C:\Program Files\Fichiers communs\Designer
    [28/05/2008|15:32] C:\Program Files\Fichiers communs\InstallShield
    [27/02/2008|20:59] C:\Program Files\Fichiers communs\Java
    [04/07/2008|22:44] C:\Program Files\Fichiers communs\Microsoft Shared
    [19/08/2004|15:16] C:\Program Files\Fichiers communs\MSSoap
    [19/08/2004|15:10] C:\Program Files\Fichiers communs\ODBC
    [27/02/2008|21:04] C:\Program Files\Fichiers communs\Roxio Shared
    [19/08/2004|15:16] C:\Program Files\Fichiers communs\Services
    [27/02/2008|21:04] C:\Program Files\Fichiers communs\Sonic Shared
    [19/08/2004|15:10] C:\Program Files\Fichiers communs\SpeechEngines
    [27/02/2008|21:08] C:\Program Files\Fichiers communs\supportsoft
    [27/02/2008|21:04] C:\Program Files\Fichiers communs\SureThing Shared
    [22/07/2008|10:31] C:\Program Files\Fichiers communs\Symantec Shared
    [11/03/2008|00:35] C:\Program Files\Fichiers communs\System
    [12/03/2008|15:23] C:\Program Files\Fichiers communs\WindowsLiveInstaller

    --------------------\\ Process

    ( 48 Processus )

    ... OK !

    --------------------\\ Recherche avec S_Lop

    Aucun fichier / dossier Lop trouvé !

    --------------------\\ Recherche de Fichiers / Dossiers Lop

    Aucun fichier / dossier Lop trouvé !

    --------------------\\ Verification du Registre

    ..... OK !

    --------------------\\ Verification du fichier Hosts

    Fichier Hosts PROPRE

    --------------------\\ Recherche de fichiers avec Catchme

    catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2008-07-22 14:39:51
    Windows 5.1.2600 Service Pack 2 NTFS
    scanning hidden processes ...
    scanning hidden files ...
    scan completed successfully
    hidden processes: 0
    hidden files: 33

    --------------------\\ Recherche d'autres infections

    Aucune autre infection trouvée !

    [F:395][D:27]-> C:\DOCUME~1\CHRIST~1\LOCALS~1\Temp
    [F:234][D:0]-> C:\DOCUME~1\CHRIST~1\Cookies
    [F:16205][D:23]-> C:\DOCUME~1\CHRIST~1\LOCALS~1\TEMPOR~1\content.IE5

    --------------------\\ Fin du rapport a 14:40:38,06
    0
  4. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 324
     
    Poste un nouveau rapport HijackThis.
    0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. kiki7777 Messages postés 5 Statut Membre
     
    merci beaucoup Destrio5.
    apparemment je n'ai plus de pub CID, et en plus quand j'ouvre internet explorer, c'est instantané, alors qu'avant, il mettait très longtemps à s'ouvrir.
    Voici le log Hijachthis

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 10:11:42, on 23/07/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
    C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Norton Internet Security\ISSVC.exe
    C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
    C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
    C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\Program Files\Canon\CAL\CALMAIN.exe
    C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
    C:\Program Files\Windows Live\Messenger\usnsvc.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
    C:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exe
    C:\Program Files\MarkAny\ContentSafer\MAAgent.exe
    C:\WINDOWS\system32\ICO.EXE
    C:\WINDOWS\system32\rundll32.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\WINDOWS\system32\Pmxmiced.exe
    C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe
    C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe
    C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NSMdtr.exe
    C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://partnerpage.google.com/smallbiz.dell.com/fr_fr?hl=fr&client=dell-row&channel=fr-smb&ibd=1080228
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.dell.com/fr-fr?c=fr&l=fr&s=gen&redirect=1
    R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = http://partnerpage.google.com/smallbiz.dell.com/fr_fr?hl=fr&client=dell-row&channel=fr-smb&ibd=1080228
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll (file missing)
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Norton Internet Security - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
    O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
    O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll
    O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [SMSTray] C:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exe
    O4 - HKLM\..\Run: [MAAgent] C:\Program Files\MarkAny\ContentSafer\MAAgent.exe
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [PMX Daemon] ICO.EXE
    O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
    O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
    O4 - HKLM\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-21-1222713104-1065672220-3732385856-1005\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Pascal')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: BlueSoleil.lnk = ?
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w3/pr01/resources/MSNPUpld.cab
    O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
    O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{8BDA191A-E9AB-44DC-B8D7-46D4CC486013}: NameServer = 192.168.1.1,84.103.237.143
    O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
    O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
    O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
    O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
    O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
    O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe
    O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Fichiers communs\SureThing Shared\stllssvr.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
    0
  7. kiki7777 Messages postés 5 Statut Membre
     
    Merci beaucoup de ton aide,je n'y serais jamais arrivé toute seule.
    0