Mise a jours spybot!!! - Page 3

Résolu
  1. Contributeur sécurité
    je te l ai donné au message 29
    0
    1. ComboFix 08-08-18.05 - Client 2008-08-19 19:19:18.1 - NTFSx86
      Endroit: C:\Documents and Settings\Client\Bureau\ComboFix.exe
      * Création d'un nouveau point de restauration

      [color=red][b]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !![/b][/color]
      .

      (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
      .

      C:\Documents and Settings\Client\Application Data\install.dat
      C:\Documents and Settings\Client\Application Data\macromedia\Flash Player\#SharedObjects\BZQ32NCK\interclick.com
      C:\Documents and Settings\Client\Application Data\macromedia\Flash Player\#SharedObjects\BZQ32NCK\interclick.com\ud.sol
      C:\Documents and Settings\Client\Application Data\macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#interclick.com
      C:\Documents and Settings\Client\Application Data\macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#interclick.com\settings.sol
      C:\Documents and Settings\Client\UserData
      C:\Documents and Settings\Client\UserData\CDMV8HUR\Tdy58[1].xml
      C:\Documents and Settings\Client\UserData\GDUZG1UB\oWindowsUpdate[1].xml
      C:\Documents and Settings\Client\UserData\index.dat
      C:\WINDOWS\PeMon

      .
      ((((((((((((((((((((((((((((( Fichiers cr‚‚s 2008-07-19 to 2008-08-19 ))))))))))))))))))))))))))))))))))))
      .

      2008-08-18 10:20 . 2008-08-19 14:51 <REP> d-------- C:\Program Files\Navilog1
      2008-08-13 19:07 . 2008-08-13 19:08 <REP> d-------- C:\WINDOWS\COREL
      2008-08-13 19:07 . 2008-08-13 19:07 <REP> d-------- C:\Program Files\Corel
      2008-08-13 19:07 . 1997-07-16 15:39 133,904 --------- C:\WINDOWS\system32\mfcans32.dll
      2008-08-13 19:07 . 1997-06-02 06:16 108,032 --------- C:\WINDOWS\system32\sh33w32.dll
      2008-08-13 19:07 . 1997-07-16 15:39 108,032 --------- C:\WINDOWS\system32\mfcuia32.dll
      2008-08-13 13:26 . 2006-10-26 19:56 32,592 --a------ C:\WINDOWS\system32\msonpmon.dll
      2008-08-13 13:25 . 2008-08-13 13:25 <REP> d-------- C:\Program Files\Microsoft Works
      2008-08-13 13:24 . 2008-08-13 13:24 <REP> d-------- C:\Program Files\Microsoft.NET
      2008-08-13 13:21 . 2008-08-13 13:21 <REP> d-------- C:\WINDOWS\SHELLNEW
      2008-08-13 13:20 . 2008-08-14 21:07 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Microsoft Help
      2008-08-12 20:43 . 2008-08-18 21:35 <REP> d-------- C:\Program Files\Malwarebytes' Anti-Malware
      2008-08-12 20:43 . 2008-08-12 20:43 <REP> d-------- C:\Documents and Settings\Client\Application Data\Malwarebytes
      2008-08-12 20:43 . 2008-08-12 20:43 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
      2008-08-12 20:43 . 2008-08-17 15:01 38,472 --a------ C:\WINDOWS\system32\drivers\mbamswissarmy.sys
      2008-08-12 20:43 . 2008-08-17 15:01 17,144 --a------ C:\WINDOWS\system32\drivers\mbam.sys
      2008-08-12 19:20 . 2008-08-12 19:20 <REP> d-------- C:\Program Files\Trend Micro
      2008-08-12 10:25 . 2008-08-12 10:25 <REP> dr-h----- C:\MSOCache
      2008-08-12 09:38 . 2008-06-23 12:28 6,066,176 -----c--- C:\WINDOWS\system32\dllcache\ieframe.dll
      2008-08-12 09:38 . 2007-04-17 05:32 2,455,488 -----c--- C:\WINDOWS\system32\dllcache\ieapfltr.dat
      2008-08-12 09:38 . 2007-03-08 01:10 1,048,576 -----c--- C:\WINDOWS\system32\dllcache\ieframe.dll.mui
      2008-08-12 09:38 . 2008-06-23 12:28 459,264 -----c--- C:\WINDOWS\system32\dllcache\msfeeds.dll
      2008-08-12 09:38 . 2008-06-23 12:28 383,488 -----c--- C:\WINDOWS\system32\dllcache\ieapfltr.dll
      2008-08-12 09:38 . 2008-06-23 12:28 267,776 -----c--- C:\WINDOWS\system32\dllcache\iertutil.dll
      2008-08-12 09:38 . 2008-06-23 12:28 63,488 -----c--- C:\WINDOWS\system32\dllcache\icardie.dll
      2008-08-12 09:38 . 2008-06-23 12:28 52,224 -----c--- C:\WINDOWS\system32\dllcache\msfeedsbs.dll
      2008-08-12 09:38 . 2008-06-23 05:20 13,824 -----c--- C:\WINDOWS\system32\dllcache\ieudinit.exe
      2008-08-11 20:29 . 2008-08-12 09:51 94,208 --a------ C:\WINDOWS\system32\2E.tmp
      2008-08-11 19:44 . 2008-08-11 19:45 <REP> d--h----- C:\WINDOWS\msdownld.tmp
      2008-08-11 19:43 . 2008-08-12 16:01 <REP> d-------- C:\WINDOWS\system32\fr-fr

      .
      (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
      .
      2008-08-19 22:26 --------- d-----w C:\Documents and Settings\All Users\Application Data\Google Updater
      2008-08-19 00:57 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
      2008-08-18 21:27 --------- d-----w C:\Program Files\Google
      2008-08-18 13:01 --------- d-----w C:\Program Files\Sun
      2008-08-18 13:00 --------- d-----w C:\Program Files\Java
      2008-08-15 20:44 --------- d-----w C:\Documents and Settings\Client\Application Data\LimeWire
      2008-08-14 20:07 --------- d-----w C:\Program Files\BeClean
      2008-08-12 22:09 --------- d-----w C:\Documents and Settings\Client\Application Data\OpenOffice.org2
      2008-08-11 22:36 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP
      2008-08-11 21:58 --------- d-----w C:\Program Files\Windows Live Safety Center
      2008-08-10 21:38 --------- d-----w C:\Documents and Settings\Client\Application Data\uTorrent
      2008-08-10 12:57 --------- d-----w C:\Program Files\BitLord
      2008-08-07 20:11 --------- d-----w C:\Documents and Settings\Client\Application Data\Vso
      2008-08-06 22:32 --------- d-----w C:\Program Files\eMule
      2008-07-19 14:06 --------- d-----w C:\Program Files\FrostWire
      2008-07-19 14:02 --------- d-----w C:\Program Files\LimeWire
      2008-07-18 18:39 587,264 ----a-w C:\WINDOWS\WLXPGSS.SCR
      2008-07-11 14:34 --------- d-----w C:\Program Files\TorrentMan
      2008-06-20 10:45 360,320 ----a-w C:\WINDOWS\system32\drivers\tcpip.sys
      2008-06-20 10:44 138,368 ----a-w C:\WINDOWS\system32\drivers\afd.sys
      2008-06-20 09:52 225,920 ----a-w C:\WINDOWS\system32\drivers\tcpip6.sys
      2008-04-19 13:58 81,920 ----a-w C:\Documents and Settings\Client\Application Data\ezpinst.exe
      2008-04-19 13:58 47,360 ----a-w C:\Documents and Settings\Client\Application Data\pcouffin.sys
      .

      ((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
      .
      .
      REGEDIT4
      *Note* les ‚l‚ments vides & les ‚l‚ments initiaux l‚gitimes ne sont pas list‚s

      [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
      "{7c5c0f58-e061-457d-9033-77307f5ed00c}"= "C:\Program Files\TorrentMan\tbTor1.dll" [2008-07-11 10:34 1569304]

      [HKEY_CLASSES_ROOT\clsid\{7c5c0f58-e061-457d-9033-77307f5ed00c}]

      [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{7c5c0f58-e061-457d-9033-77307f5ed00c}]
      2008-07-11 10:34 1569304 --a------ C:\Program Files\TorrentMan\tbTor1.dll

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
      "{7c5c0f58-e061-457d-9033-77307f5ed00c}"= "C:\Program Files\TorrentMan\tbTor1.dll" [2008-07-11 10:34 1569304]

      [HKEY_CLASSES_ROOT\clsid\{7c5c0f58-e061-457d-9033-77307f5ed00c}]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
      "{7C5C0F58-E061-457D-9033-77307F5ED00C}"= "C:\Program Files\TorrentMan\tbTor1.dll" [2008-07-11 10:34 1569304]

      [HKEY_CLASSES_ROOT\clsid\{7c5c0f58-e061-457d-9033-77307f5ed00c}]

      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" [2007-10-18 12:34 5724184]
      "swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-01-24 14:42 68856]
      "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-19 12:09 15360]
      "NBJ"="C:\Program Files\Ahead\Nero BackItUp\NBJ.exe" [2005-07-14 20:35 1961984]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "SoundMAXPnP"="C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe" [2003-05-29 17:28 790528]
      "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" [2008-06-10 04:27 144784]
      "NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 10:50 155648]
      "HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2006-12-10 22:52 49152]
      "DVDTray"="C:\Program Files\Ahead\ODD Toolkit\DVDTray.exe" [2004-09-03 04:58 65536]

      [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
      "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-19 12:09 15360]

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
      Authentication Packages REG_MULTI_SZ msv1_0 nwprovau

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
      SecurityProviders msapsspc.dllschannel.dlldigest.dllmsnsspc.dll
      HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoftwareStation
      HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StopSignSsSsMon
      HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StopSignSsTsMon
      HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\webscan

      [HKEY_LOCAL_MACHINE\software\microsoft\security center]
      "AntiVirusOverride"=dword:00000001

      [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
      "%windir%\\system32\\sessmgr.exe"=
      "C:\\Program Files\\LimeWire\\LimeWire.exe"=
      "C:\\Program Files\\FrostWire\\FrostWire.exe"=
      "C:\\Program Files\\uTorrent\\uTorrent.exe"=
      "C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
      "C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
      "C:\\Documents and Settings\\All Users\\Application Data\\Kaspersky Lab Setup Files\\Kaspersky Anti-Virus 7.0.1.321\\English\\setup.exe"=
      "C:\\Documents and Settings\\All Users\\Application Data\\Kaspersky Lab Setup Files\\Kaspersky Anti-Virus 7.0.1.325\\French\\setup.exe"=
      "C:\\Program Files\\eMule\\emule.exe"=
      "C:\\Program Files\\BitLord\\BitLord.exe"=
      "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
      "C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=

      R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-07-19 10:35]
      R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-07-19 10:37]
      S3 ADM8511;Belkin USB Ethernet Adapter;C:\WINDOWS\system32\DRIVERS\NET8511.SYS [2000-12-12 01:06]

      [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
      HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
      hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
      .
      Contenu du dossier 'Scheduled Tasks/Tƒches planifi‚es'
      .
      - - - - ORPHANS REMOVED - - - -

      Toolbar-SITEguard - (no file)
      HKLM-Run-AAWTray - C:\Program Files\Lavasoft\Ad-Aware 2007\AAWTray.exe

      .
      ------- Supplementary Scan -------
      .
      FireFox -: Profile - C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\lm3gbax6.default\
      FireFox -: prefs.js - SEARCH.DEFAULTURL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1640187&SearchSource=3&q=
      .

      **************************************************************************

      catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
      Rootkit scan 2008-08-19 19:26:11
      Windows 5.1.2600 Service Pack 2 NTFS

      Balayage processus cach‚s ...

      Balayage cach‚ autostart entries ...

      Balayage des fichiers cach‚s ...

      Scan termin‚ avec succŠs
      Les fichiers cach‚s: 0

      **************************************************************************
      .
      ------------------------ Other Running Processes ------------------------
      .
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\WINDOWS\system32\drivers\CDAC11BA.EXE
      C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
      C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\Program Files\Google\Google Updater\GoogleUpdater.exe
      C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
      C:\Program Files\Mozilla Firefox\firefox.exe
      C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
      .
      **************************************************************************
      .
      Temps d'accomplissement: 2008-08-19 19:33:06 - machine was rebooted
      ComboFix-quarantined-files.txt 2008-08-19 23:33:00

      Pre-Run: 10,902,802,432 octets libres
      Post-Run: 10,981,441,536 octets libres

      179 --- E O F --- 2008-08-15 01:07:52
      0
      1. Contributeur sécurité
        ok maintenant refais un nouveau rapport hijackthis stp
        0
        1. Logfile of Trend Micro HijackThis v2.0.2
          Scan saved at 19:46:15, on 2008-08-19
          Platform: Windows XP SP2 (WinNT 5.01.2600)
          MSIE: Internet Explorer v7.00 (7.00.6000.16705)
          Boot mode: Normal

          Running processes:
          C:\WINDOWS\System32\smss.exe
          C:\WINDOWS\system32\winlogon.exe
          C:\WINDOWS\system32\services.exe
          C:\WINDOWS\system32\lsass.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\System32\svchost.exe
          C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
          C:\Program Files\Alwil Software\Avast4\ashServ.exe
          C:\WINDOWS\system32\spoolsv.exe
          C:\WINDOWS\system32\drivers\CDAC11BA.EXE
          C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
          C:\WINDOWS\system32\svchost.exe
          C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
          C:\WINDOWS\System32\svchost.exe
          C:\WINDOWS\System32\svchost.exe
          C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
          C:\WINDOWS\system32\svchost.exe
          C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
          C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
          C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
          C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
          C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
          C:\Program Files\Ahead\ODD Toolkit\DVDTray.exe
          C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
          C:\WINDOWS\system32\ctfmon.exe
          C:\Program Files\Google\Google Updater\GoogleUpdater.exe
          C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
          C:\Program Files\Mozilla Firefox\firefox.exe
          C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
          C:\WINDOWS\explorer.exe
          C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
          R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
          R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
          R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://home.microsoft.com/access/autosearch.asp?p=%s
          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.google.com/toolbar/ie7/intl/fr/done.html
          R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
          R3 - URLSearchHook: TorrentMan Toolbar - {7c5c0f58-e061-457d-9033-77307f5ed00c} - C:\Program Files\TorrentMan\tbTor1.dll
          O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
          O2 - BHO: TorrentMan Toolbar - {7c5c0f58-e061-457d-9033-77307f5ed00c} - C:\Program Files\TorrentMan\tbTor1.dll
          O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
          O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
          O2 - BHO: HP Smart Web Printing 1.0 - {AE84A6AA-A333-4B92-B276-C11E2212E4FE} - C:\Program Files\HP\Smart Web Printing\SmartWebPrinting.dll
          O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
          O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
          O3 - Toolbar: TorrentMan Toolbar - {7c5c0f58-e061-457d-9033-77307f5ed00c} - C:\Program Files\TorrentMan\tbTor1.dll
          O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
          O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
          O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
          O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
          O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
          O4 - HKLM\..\Run: [DVDTray] C:\Program Files\Ahead\ODD Toolkit\DVDTray.exe
          O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
          O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
          O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
          O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
          O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
          O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
          O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
          O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
          O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
          O4 - Global Startup: Démarrage rapide de HP Photosmart Premier.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
          O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
          O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
          O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
          O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
          O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-ca\msntabres.dll.mui/229?8af95d6c2c8349d39dc76a3db8228774
          O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-ca\msntabres.dll.mui/230?8af95d6c2c8349d39dc76a3db8228774
          O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
          O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
          O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
          O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
          O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
          O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
          O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
          O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
          O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
          O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
          O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
          O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
          O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
          O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
          O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
          O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
          O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
          O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
          O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
          O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
          O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
          0
          1. Contributeur sécurité
            relance hijackthis en cliquant sur scan only et coches ces lignes stp :

            O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
            R3 - URLSearchHook: TorrentMan Toolbar - {7c5c0f58-e061-457d-9033-77307f5ed00c} - C:\Program Files\TorrentMan\tbTor1.dll
            O2 - BHO: TorrentMan Toolbar - {7c5c0f58-e061-457d-9033-77307f5ed00c} - C:\Program Files\TorrentMan\tbTor1.dll
            O3 - Toolbar: TorrentMan Toolbar - {7c5c0f58-e061-457d-9033-77307f5ed00c} - C:\Program Files\TorrentMan\tbTor1.dll

            puis tu cliques sur fix checked.

            est ce que tu as encore des problemes avec spybot ??
            0
            1. non g une erreur de parite avec spybot et c fais pour les 4 lignes!!!
              0
              1. il n y a rien dans ma recherche de fichier et dossier!!!!esce normal ?
                0
                1. Contributeur sécurité
                  c est possible...si tu as bien désinstaller spybot, réeesais de le réinstaller stp

                  et n installe pas le bouclier résident de spybot
                  0
                  1. J ai reinstaller Spybot et aucune mise a jours fonctionne!!(global et meme canada)et j ai fais un scan avec avast et il ma trouver 1 virus trogan (other)qui ne peut supprimer bien sur!!
                    0
                    1. Contributeur sécurité
                      t as essayé en cliquant sur le premier d europe ??
                      0
                      1. oui tous les europe !!!
                        0
                        1. Contributeur sécurité
                          c est bien la derniere version que tu as ?? la 1.6 ??
                          0
                          1. Contributeur sécurité
                            Salut !!

                            dsl mais je ne vois vraiment pas ce que ca pourrait etre...essais quand meme avec ceci :

                            Télécharge et enregistre Clean:

                            (c est le numéro 9 en bas de la page) : https://www.androidworld.fr/

                            Ne double-clique pas directement sur le fichier clean.zip !! Pour cela, fais un clic droit puis dans le menu déroulant, choisis décompresser tout ou extraire tout. Ceci doit créer un nouveau dossier nommé clean.

                            Double-clique sur le nouveau dossier clean

                            Dans la liste, tu dois avoir clean.cmd (le .cmd peut ne pas être présent chez toi).

                            Double-clique sur clean.cmd.

                            Un menu s'ouvre... Choisis l'option 1 en tappant sur la touche 1 de ton clavier.

                            Appuies sur la touche entrée pour valider.

                            Une fois l analyse terminée.. un rapport va s'ouvrir sur le bloc-note.

                            copier/coller le rapport dans la nouvelle réponse.
                            0
                            1. dsl goeffreys mais j arrive pas a faire ce que tu me demande......jvais sur clean(ligne 9)ensuite ouverture clean.zip
                              jfais ouvrir avec(compressedfolder(defaut)??? c quand le menu deroulant??
                              0
                              1. Contributeur sécurité
                                fais un clic droit dessus et choisis décompresser tout ou extraire tout. (ca change selon le programme de décompression )
                                0
                                1. c marque seulement compressedfolder(default)et si je clique je n ai qu comme option AUTRE c tu dans ouverture de clean.zip que c supposer d etre??? merci de ta patience!!!
                                  0
                                  1. Contributeur sécurité
                                    Salut !!

                                    ce dossier compressé contien tous les fichiers de clean à exécuter...

                                    Vas créer un dossier "clean" sur ton disque C:

                                    ensuite double clique sur le dossier compressé que tu as téléchargé et décompresse le tout dans le dossier que tu auras crée..

                                    ensuite Double-clique sur le nouveau dossier clean que tu as crée

                                    Dans la liste, tu dois avoir clean.cmd (le .cmd peut ne pas être présent chez toi).

                                    Double-clique sur clean.cmd.

                                    Un menu s'ouvre... Choisis l'option 1 en tappant sur la touche 1 de ton clavier.

                                    Appuies sur la touche entrée pour valider.

                                    Une fois l analyse terminée.. un rapport va s'ouvrir sur le bloc-note.

                                    copier/coller le rapport dans la nouvelle réponse.
                                    0
                                    1. Contributeur sécurité
                                      Salut tout le monde !!

                                      DllD : c est bizarre parce que moi je n ai jamais eu ce souci de mise à jour :s

                                      smart24 : est ce que tu as encore des problemes ??
                                      0
                                      Précédent
                                      • 1
                                      • 2
                                      • 3
                                      • 4