Resulta de hijackthis

Résolu/Fermé
touat25 - 23 sept. 2008 à 03:44
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 - 26 sept. 2008 à 09:31
Bonjour,suite a un probleme dans mon pc on m'a conseiller de faire un log hijackthis moi je ne connais pas alors
si vous pouvez me dire ce que je dois faire voila le rapport , merci d'avance :


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:49:15, on 22-09-2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\Explorer.EXE
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\All Users\Documents\Mes images\Nouveau dossier\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (file missing)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\SPYBOT~1\SDHelper.dll
O2 - BHO: UrlHelper Class - {6D023EBF-70B8-45A6-9ED5-556515FA0FE4} - C:\Program Files\BearShare Applications\BearShare MediaBar\BearShareIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.1852\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll (file missing)
O3 - Toolbar: BearShare MediaBar - {D3DEE18F-DB64-4BEB-9FF1-E1F0A5033E4A} - C:\Program Files\BearShare Applications\BearShare MediaBar\BSMediaBar.dll
O3 - Toolbar: (no name) - {A057A204-BACC-4D26-9990-79A187E2698E} - (no file)
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RESEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{D8CA7F4F-36A3-4059-BFD2-2AE6D6000B3D}: NameServer = 41.221.20.4 193.251.169.165
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: ASP.NET State Service (aspnet_state) - Unknown owner - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (file missing)
O23 - Service: Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
A voir également:

18 réponses

Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 297
23 sept. 2008 à 03:47
Salut,

Quel problème ?
0
salut merci de la réponse tres vite ,pous ce qui est de mon probleme j'ai senti mon pc un peux lourd alors j'ai fais un scanner avec antivir soi-disant il a trouver 3 warnings ,j'ai posé le probleme on m'a conseiller de faire un log hijackthis,
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 297
23 sept. 2008 à 04:34
---> Fais un scan rapide avec MBAM, supprime tout ce qu'il trouve et poste le rapport :
http://www.commentcamarche.net/telecharger/telecharger 34055379 malwarebyte s anti malware
0
salut et merci encor . voila le rapport :de mbam .


Malwarebytes' Anti-Malware 1.28
Version de la base de données: 1196
Windows 5.1.2600 Service Pack 3

23-09-2008 5:15:22
mbam-log-2008-09-23 (05-15-22).txt

Type de recherche: Examen rapide
Eléments examinés: 59757
Temps écoulé: 9 minute(s), 11 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 17

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
C:\Documents and Settings\FAMILLE\Local Settings\Temp\~WRD1659.doc (Trojan.Extension.Exploit) -> Quarantined and deleted successfully.
C:\Documents and Settings\FAMILLE\Local Settings\Temp\~WRD2799.doc (Trojan.Extension.Exploit) -> Quarantined and deleted successfully.
C:\Documents and Settings\FAMILLE\Local Settings\Temp\~WRD3079.doc (Trojan.Extension.Exploit) -> Quarantined and deleted successfully.
C:\Documents and Settings\FAMILLE\Local Settings\Temp\dd_netfxLP20MSI57DE.txt (Trojan.Extension.Exploit) -> Quarantined and deleted successfully.
C:\Documents and Settings\FAMILLE\Local Settings\Temp\dd_netfxLP20UI57DE.txt (Trojan.Extension.Exploit) -> Quarantined and deleted successfully.
C:\Documents and Settings\FAMILLE\Local Settings\Temp\Microsoft Office 2003 Setup(0001).txt (Trojan.Extension.Exploit) -> Quarantined and deleted successfully.
C:\Documents and Settings\FAMILLE\Local Settings\Temp\Microsoft Office 2003 Setup(0001)_Task(0001).txt (Trojan.Extension.Exploit) -> Quarantined and deleted successfully.
C:\Documents and Settings\FAMILLE\Local Settings\Temp\Microsoft Office 2003 Setup(0002).txt (Trojan.Extension.Exploit) -> Quarantined and deleted successfully.
C:\Documents and Settings\FAMILLE\Local Settings\Temp\Microsoft Office 2003 Setup(0002)_Task(0001).txt (Trojan.Extension.Exploit) -> Quarantined and deleted successfully.
C:\Documents and Settings\FAMILLE\Local Settings\Temp\Microsoft Office 2003 Setup(0003).txt (Trojan.Extension.Exploit) -> Quarantined and deleted successfully.
C:\Documents and Settings\FAMILLE\Local Settings\Temp\Microsoft Office 2003 Setup(0003)_Task(0001).txt (Trojan.Extension.Exploit) -> Quarantined and deleted successfully.
C:\Documents and Settings\FAMILLE\Local Settings\Temp\Microsoft Office 2003 Setup(0004).txt (Trojan.Extension.Exploit) -> Quarantined and deleted successfully.
C:\Documents and Settings\FAMILLE\Local Settings\Temp\Microsoft Office 2003 Setup(0004)_Task(0001).txt (Trojan.Extension.Exploit) -> Quarantined and deleted successfully.
C:\Documents and Settings\FAMILLE\Local Settings\Temp\Microsoft Office 2003 Setup(0005).txt (Trojan.Extension.Exploit) -> Quarantined and deleted successfully.
C:\Documents and Settings\FAMILLE\Local Settings\Temp\Microsoft Office 2003 Setup(0005)_Task(0001).txt (Trojan.Extension.Exploit) -> Quarantined and deleted successfully.
C:\Documents and Settings\FAMILLE\Local Settings\Temp\Microsoft Office 2003 Setup(0006).txt (Trojan.Extension.Exploit) -> Quarantined and deleted successfully.
C:\Documents and Settings\FAMILLE\Local Settings\Temp\Microsoft Office 2003 Setup(0006)_Task(0001).txt (Trojan.Extension.Exploit) -> Quarantined and deleted successfully.
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 297
23 sept. 2008 à 05:57
Il y a une trace d'AVG dans le rapport, utilise ceci :
http://www.grisoft.cz/filedir/util/avg_arm_sup_____.dir/avgremover.exe
0
salut et voila ::::::::::::::


2008-09-23 04:03:53,234 PC-86139DD81DD9 Avg8Uninstall\Directories key failed to open (error: e0010013)
2008-09-23 04:03:53,250 PC-86139DD81DD9 AvgDir param empty.
2008-09-23 04:03:53,250 PC-86139DD81DD9 AvgDataDir param empty.
2008-09-23 04:03:56,890 PC-86139DD81DD9 AvgRemover runs in attempt number 1
2008-09-23 04:03:56,890 PC-86139DD81DD9 ***** Services *****
2008-09-23 04:03:56,890 PC-86139DD81DD9 Processing service avg8emc
2008-09-23 04:03:56,890 PC-86139DD81DD9 Service avg8emc is not installed
2008-09-23 04:03:56,890 PC-86139DD81DD9 Service avg8emc RegCleanup
2008-09-23 04:03:56,890 PC-86139DD81DD9 Registry keys for service avg8emc are not present
2008-09-23 04:03:56,890 PC-86139DD81DD9 Processing service avgfws8
2008-09-23 04:03:56,890 PC-86139DD81DD9 Service avgfws8 is not installed
2008-09-23 04:03:56,890 PC-86139DD81DD9 Service avgfws8 RegCleanup
2008-09-23 04:03:56,890 PC-86139DD81DD9 Registry keys for service avgfws8 are not present
2008-09-23 04:03:56,890 PC-86139DD81DD9 Processing service avg8wd
2008-09-23 04:03:56,890 PC-86139DD81DD9 Service avg8wd is not installed
2008-09-23 04:03:56,890 PC-86139DD81DD9 Service avg8wd RegCleanup
2008-09-23 04:03:56,890 PC-86139DD81DD9 Registry keys for service avg8wd are not present
2008-09-23 04:03:56,890 PC-86139DD81DD9 Processing service AvgMfx86
2008-09-23 04:03:56,890 PC-86139DD81DD9 Service AvgMfx86 is not installed
2008-09-23 04:03:56,890 PC-86139DD81DD9 Service AvgMfx86 RegCleanup
2008-09-23 04:03:56,890 PC-86139DD81DD9 Registry keys for service AvgMfx86 are not present
2008-09-23 04:03:56,890 PC-86139DD81DD9 Processing service AvgMfx64
2008-09-23 04:03:56,890 PC-86139DD81DD9 Service AvgMfx64 is not installed
2008-09-23 04:03:56,890 PC-86139DD81DD9 Service AvgMfx64 RegCleanup
2008-09-23 04:03:56,906 PC-86139DD81DD9 Registry keys for service AvgMfx64 are not present
2008-09-23 04:03:56,906 PC-86139DD81DD9 Processing service AvgLdx86
2008-09-23 04:03:56,906 PC-86139DD81DD9 Service AvgLdx86 is not installed
2008-09-23 04:03:56,906 PC-86139DD81DD9 Service AvgLdx86 RegCleanup
2008-09-23 04:03:56,906 PC-86139DD81DD9 Registry keys for service AvgLdx86 are not present
2008-09-23 04:03:56,906 PC-86139DD81DD9 Processing service AvgLdx64
2008-09-23 04:03:56,906 PC-86139DD81DD9 Service AvgLdx64 is not installed
2008-09-23 04:03:56,906 PC-86139DD81DD9 Service AvgLdx64 RegCleanup
2008-09-23 04:03:56,906 PC-86139DD81DD9 Registry keys for service AvgLdx64 are not present
2008-09-23 04:03:56,906 PC-86139DD81DD9 Processing service AvgTdiX
2008-09-23 04:03:56,906 PC-86139DD81DD9 Service AvgTdiX is not installed
2008-09-23 04:03:56,906 PC-86139DD81DD9 Service AvgTdiX RegCleanup
2008-09-23 04:03:56,906 PC-86139DD81DD9 Registry keys for service AvgTdiX are not present
2008-09-23 04:03:56,921 PC-86139DD81DD9 Processing service AvgTdiA
2008-09-23 04:03:56,921 PC-86139DD81DD9 Service AvgTdiA is not installed
2008-09-23 04:03:56,921 PC-86139DD81DD9 Service AvgTdiA RegCleanup
2008-09-23 04:03:56,921 PC-86139DD81DD9 Registry keys for service AvgTdiA are not present
2008-09-23 04:03:56,921 PC-86139DD81DD9 Processing service AvgWFPx
2008-09-23 04:03:56,921 PC-86139DD81DD9 Service AvgWFPx is not installed
2008-09-23 04:03:56,921 PC-86139DD81DD9 Service AvgWFPx RegCleanup
2008-09-23 04:03:56,921 PC-86139DD81DD9 Registry keys for service AvgWFPx are not present
2008-09-23 04:03:56,921 PC-86139DD81DD9 Processing service AvgWFPa
2008-09-23 04:03:56,921 PC-86139DD81DD9 Service AvgWFPa is not installed
2008-09-23 04:03:56,921 PC-86139DD81DD9 Service AvgWFPa RegCleanup
2008-09-23 04:03:56,921 PC-86139DD81DD9 Registry keys for service AvgWFPa are not present
2008-09-23 04:03:56,921 PC-86139DD81DD9 Processing service AvgRkx86
2008-09-23 04:03:56,921 PC-86139DD81DD9 Service AvgRkx86 is not installed
2008-09-23 04:03:56,937 PC-86139DD81DD9 Service AvgRkx86 RegCleanup
2008-09-23 04:03:56,937 PC-86139DD81DD9 Registry keys for service AvgRkx86 are not present
2008-09-23 04:03:56,937 PC-86139DD81DD9 ***** Registry keys and values *****
2008-09-23 04:03:56,937 PC-86139DD81DD9 Processing registry SOFTWARE\Mozilla\Firefox\Extensions
2008-09-23 04:03:56,937 PC-86139DD81DD9 Value SOFTWARE\Mozilla\Firefox\Extensions:{3f963a5b-e555-4543-90e2-c3908898db71} Remove
2008-09-23 04:03:56,937 PC-86139DD81DD9 Value SOFTWARE\Mozilla\Firefox\Extensions:{3f963a5b-e555-4543-90e2-c3908898db71} not present - Key not found
2008-09-23 04:03:56,937 PC-86139DD81DD9 Processing registry SOFTWARE\Mozilla\Firefox\Extensions
2008-09-23 04:03:56,937 PC-86139DD81DD9 Value SOFTWARE\Mozilla\Firefox\Extensions:{1d5287d1-8a92-0001-1f31-1cec198018d8} Remove
2008-09-23 04:03:56,937 PC-86139DD81DD9 Value SOFTWARE\Mozilla\Firefox\Extensions:{1d5287d1-8a92-0001-1f31-1cec198018d8} not present - Key not found
2008-09-23 04:03:56,937 PC-86139DD81DD9 Processing registry SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg8Alrt
2008-09-23 04:03:56,937 PC-86139DD81DD9 Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg8Alrt ForceRemove
2008-09-23 04:03:56,937 PC-86139DD81DD9 Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg8Alrt not found
2008-09-23 04:03:56,953 PC-86139DD81DD9 Processing registry SYSTEM\CurrentControlSet\Services\Eventlog\Application\AvgEms
2008-09-23 04:03:56,953 PC-86139DD81DD9 Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\AvgEms ForceRemove
2008-09-23 04:03:56,953 PC-86139DD81DD9 Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\AvgEms not found
2008-09-23 04:03:56,953 PC-86139DD81DD9 Processing registry SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2AF1721-312E-4B07-8B17-CEB780DCD054}
2008-09-23 04:03:56,953 PC-86139DD81DD9 Key SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2AF1721-312E-4B07-8B17-CEB780DCD054} ForceRemove
2008-09-23 04:03:56,953 PC-86139DD81DD9 Key SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2AF1721-312E-4B07-8B17-CEB780DCD054} not found
2008-09-23 04:03:56,953 PC-86139DD81DD9 Processing registry SOFTWARE\Microsoft\Exchange\Client\Extensions
2008-09-23 04:03:56,953 PC-86139DD81DD9 Value SOFTWARE\Microsoft\Exchange\Client\Extensions:Outlook Setup Extension Remove
2008-09-23 04:03:56,953 PC-86139DD81DD9 Value SOFTWARE\Microsoft\Exchange\Client\Extensions:Outlook Setup Extension is not present
2008-09-23 04:03:56,953 PC-86139DD81DD9 Processing registry SOFTWARE\Microsoft\Exchange\Client\Extensions
2008-09-23 04:03:56,968 PC-86139DD81DD9 Value SOFTWARE\Microsoft\Exchange\Client\Extensions:AVG Exchange Extension Remove
2008-09-23 04:03:56,968 PC-86139DD81DD9 Value SOFTWARE\Microsoft\Exchange\Client\Extensions:AVG Exchange Extension is not present
2008-09-23 04:03:56,968 PC-86139DD81DD9 Processing registry SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows
2008-09-23 04:03:56,968 PC-86139DD81DD9 Value SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows:AppInit_DLLs Modify
2008-09-23 04:03:56,968 PC-86139DD81DD9 Value SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows:AppInit_DLLs doesn't need to be modified
2008-09-23 04:03:56,968 PC-86139DD81DD9 Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
2008-09-23 04:03:56,968 PC-86139DD81DD9 Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-460A-42C5-AE0C-81C61FFAEBC3} Remove
2008-09-23 04:03:56,968 PC-86139DD81DD9 Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-460A-42C5-AE0C-81C61FFAEBC3} is not present
2008-09-23 04:03:56,968 PC-86139DD81DD9 Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
2008-09-23 04:03:56,968 PC-86139DD81DD9 Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-460A-42C5-AE0C-81C61FFAEBC3} Remove
2008-09-23 04:03:56,968 PC-86139DD81DD9 Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-460A-42C5-AE0C-81C61FFAEBC3} is not present
2008-09-23 04:03:56,984 PC-86139DD81DD9 Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
2008-09-23 04:03:56,984 PC-86139DD81DD9 Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} Remove
2008-09-23 04:03:56,984 PC-86139DD81DD9 Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} is not present
2008-09-23 04:03:56,984 PC-86139DD81DD9 Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
2008-09-23 04:03:56,984 PC-86139DD81DD9 Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} Remove
2008-09-23 04:03:56,984 PC-86139DD81DD9 Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} is not present
2008-09-23 04:03:56,984 PC-86139DD81DD9 Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Run
2008-09-23 04:03:56,984 PC-86139DD81DD9 Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG8_TRAY Remove
2008-09-23 04:03:56,984 PC-86139DD81DD9 Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG8Uninstall
2008-09-23 04:03:57,000 PC-86139DD81DD9 Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG8Uninstall ForceRemove
2008-09-23 04:03:57,000 PC-86139DD81DD9 Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG8Uninstall not found
2008-09-23 04:03:57,000 PC-86139DD81DD9 Processing registry SOFTWARE\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3
2008-09-23 04:03:57,000 PC-86139DD81DD9 Key SOFTWARE\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3 ForceRemove
2008-09-23 04:03:57,000 PC-86139DD81DD9 Key SOFTWARE\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3 not found
2008-09-23 04:03:57,000 PC-86139DD81DD9 Processing registry SOFTWARE\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3
2008-09-23 04:03:57,000 PC-86139DD81DD9 Key SOFTWARE\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3 ForceRemove
2008-09-23 04:03:57,000 PC-86139DD81DD9 Key SOFTWARE\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3 not found
2008-09-23 04:03:57,000 PC-86139DD81DD9 Processing registry SOFTWARE\Classes\AvgDiagFile
2008-09-23 04:03:57,000 PC-86139DD81DD9 Key SOFTWARE\Classes\AvgDiagFile ForceRemove
2008-09-23 04:03:57,000 PC-86139DD81DD9 Key SOFTWARE\Classes\AvgDiagFile not found
2008-09-23 04:03:57,015 PC-86139DD81DD9 Processing registry SOFTWARE\Classes\AvgDiagFile
2008-09-23 04:03:57,015 PC-86139DD81DD9 Key SOFTWARE\Classes\AvgDiagFile ForceRemove
2008-09-23 04:03:57,015 PC-86139DD81DD9 Key SOFTWARE\Classes\AvgDiagFile not found
2008-09-23 04:03:57,015 PC-86139DD81DD9 Processing registry SOFTWARE\Classes\.avgdi
2008-09-23 04:03:57,015 PC-86139DD81DD9 Key SOFTWARE\Classes\.avgdi ForceRemove
2008-09-23 04:03:57,015 PC-86139DD81DD9 Key SOFTWARE\Classes\.avgdi not found
2008-09-23 04:03:57,015 PC-86139DD81DD9 Processing registry SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG8 Shell Extension
2008-09-23 04:03:57,015 PC-86139DD81DD9 Key SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG8 Shell Extension ForceRemove
2008-09-23 04:03:57,015 PC-86139DD81DD9 Key SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG8 Shell Extension not found
2008-09-23 04:03:57,015 PC-86139DD81DD9 Processing registry SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\AVG8 Shell Extension
2008-09-23 04:03:57,015 PC-86139DD81DD9 Key SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\AVG8 Shell Extension ForceRemove
2008-09-23 04:03:57,031 PC-86139DD81DD9 Key SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\AVG8 Shell Extension not found
2008-09-23 04:03:57,031 PC-86139DD81DD9 Processing registry SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG8 Shell Extension
2008-09-23 04:03:57,031 PC-86139DD81DD9 Key SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG8 Shell Extension ForceRemove
2008-09-23 04:03:57,031 PC-86139DD81DD9 Key SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG8 Shell Extension not found
2008-09-23 04:03:57,031 PC-86139DD81DD9 Processing registry SOFTWARE\AVG\Clients
2008-09-23 04:03:57,031 PC-86139DD81DD9 Key SOFTWARE\AVG\Clients ForceRemove
2008-09-23 04:03:57,031 PC-86139DD81DD9 Key SOFTWARE\AVG\Clients not found
2008-09-23 04:03:57,031 PC-86139DD81DD9 Processing registry SOFTWARE\AVG\AVG8
2008-09-23 04:03:57,031 PC-86139DD81DD9 Key SOFTWARE\AVG\AVG8 ForceRemove
2008-09-23 04:03:57,031 PC-86139DD81DD9 Processing registry SOFTWARE\AVG
2008-09-23 04:03:57,031 PC-86139DD81DD9 Value SOFTWARE\AVG:DumpType Remove
2008-09-23 04:03:57,031 PC-86139DD81DD9 Value SOFTWARE\AVG:DumpType is not present
2008-09-23 04:03:57,031 PC-86139DD81DD9 Processing registry SOFTWARE\AVG
2008-09-23 04:03:57,046 PC-86139DD81DD9 Key SOFTWARE\AVG Remove
2008-09-23 04:03:57,046 PC-86139DD81DD9 Processing registry SOFTWARE\AVG\AVG8
2008-09-23 04:03:57,046 PC-86139DD81DD9 Key SOFTWARE\AVG\AVG8 ForceRemove
2008-09-23 04:03:57,046 PC-86139DD81DD9 Processing registry SOFTWARE\AVG
2008-09-23 04:03:57,046 PC-86139DD81DD9 Key SOFTWARE\AVG Remove
2008-09-23 04:03:57,046 PC-86139DD81DD9 Processing registry aAvgAPI.AvgBro
2008-09-23 04:03:57,046 PC-86139DD81DD9 Key aAvgAPI.AvgBro ForceRemove
2008-09-23 04:03:57,046 PC-86139DD81DD9 Processing registry AVG.Office
2008-09-23 04:03:57,062 PC-86139DD81DD9 Key AVG.Office ForceRemove
2008-09-23 04:03:57,062 PC-86139DD81DD9 Key AVG.Office not found
2008-09-23 04:03:57,062 PC-86139DD81DD9 Processing registry AVG.Office.8
2008-09-23 04:03:57,062 PC-86139DD81DD9 Key AVG.Office.8 ForceRemove
2008-09-23 04:03:57,062 PC-86139DD81DD9 Key AVG.Office.8 not found
2008-09-23 04:03:57,062 PC-86139DD81DD9 Processing registry avgtoolbar.AVGTOOLBAR
2008-09-23 04:03:57,062 PC-86139DD81DD9 Key avgtoolbar.AVGTOOLBAR ForceRemove
2008-09-23 04:03:57,062 PC-86139DD81DD9 Key avgtoolbar.AVGTOOLBAR not found
2008-09-23 04:03:57,062 PC-86139DD81DD9 Processing registry avgtoolbar.AVGTOOLBARMenu Button
2008-09-23 04:03:57,062 PC-86139DD81DD9 Key avgtoolbar.AVGTOOLBARMenu Button ForceRemove
2008-09-23 04:03:57,062 PC-86139DD81DD9 Key avgtoolbar.AVGTOOLBARMenu Button not found
2008-09-23 04:03:57,062 PC-86139DD81DD9 Processing registry avgtoolbar.AVGTOOLBARToggle Button
2008-09-23 04:03:57,062 PC-86139DD81DD9 Key avgtoolbar.AVGTOOLBARToggle Button ForceRemove
2008-09-23 04:03:57,062 PC-86139DD81DD9 Key avgtoolbar.AVGTOOLBARToggle Button not found
2008-09-23 04:03:57,078 PC-86139DD81DD9 Processing registry LinkScannerIE.NavFilter
2008-09-23 04:03:57,078 PC-86139DD81DD9 Key LinkScannerIE.NavFilter ForceRemove
2008-09-23 04:03:57,078 PC-86139DD81DD9 Processing registry LinkScannerIE.NavFilter.1
2008-09-23 04:03:57,078 PC-86139DD81DD9 Key LinkScannerIE.NavFilter.1 ForceRemove
2008-09-23 04:03:57,078 PC-86139DD81DD9 Processing registry CLSID\{04373D9C-5ED8-44f2-BA00-7895D6A5A2DA}
2008-09-23 04:03:57,078 PC-86139DD81DD9 Key CLSID\{04373D9C-5ED8-44f2-BA00-7895D6A5A2DA} ForceRemove
2008-09-23 04:03:57,078 PC-86139DD81DD9 Key CLSID\{04373D9C-5ED8-44f2-BA00-7895D6A5A2DA} not found
2008-09-23 04:03:57,078 PC-86139DD81DD9 Processing registry CLSID\{18B30EBF-6B58-425E-AC54-831C05D91B5A}
2008-09-23 04:03:57,078 PC-86139DD81DD9 Key CLSID\{18B30EBF-6B58-425E-AC54-831C05D91B5A} ForceRemove
2008-09-23 04:03:57,093 PC-86139DD81DD9 Processing registry CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
2008-09-23 04:03:57,093 PC-86139DD81DD9 Key CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} ForceRemove
2008-09-23 04:03:57,093 PC-86139DD81DD9 Processing registry CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3}
2008-09-23 04:03:57,093 PC-86139DD81DD9 Key CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} ForceRemove
2008-09-23 04:03:57,093 PC-86139DD81DD9 Key CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} not found
2008-09-23 04:03:57,093 PC-86139DD81DD9 Processing registry CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3}
2008-09-23 04:03:57,093 PC-86139DD81DD9 Key CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} ForceRemove
2008-09-23 04:03:57,093 PC-86139DD81DD9 Key CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} not found
2008-09-23 04:03:57,109 PC-86139DD81DD9 Processing registry CLSID\{A057A204-BACC-4D26-9990-79A187E2698E}
2008-09-23 04:03:57,109 PC-86139DD81DD9 Key CLSID\{A057A204-BACC-4D26-9990-79A187E2698E} ForceRemove
2008-09-23 04:03:57,109 PC-86139DD81DD9 Key CLSID\{A057A204-BACC-4D26-9990-79A187E2698E} not found
2008-09-23 04:03:57,109 PC-86139DD81DD9 Processing registry CLSID\{A057A204-BACC-4D26-9990-79A187E2698F}
2008-09-23 04:03:57,109 PC-86139DD81DD9 Key CLSID\{A057A204-BACC-4D26-9990-79A187E2698F} ForceRemove
2008-09-23 04:03:57,109 PC-86139DD81DD9 Key CLSID\{A057A204-BACC-4D26-9990-79A187E2698F} not found
2008-09-23 04:03:57,109 PC-86139DD81DD9 Processing registry CLSID\{A057A204-BACC-4D26-9990-79A187E26990}
2008-09-23 04:03:57,109 PC-86139DD81DD9 Key CLSID\{A057A204-BACC-4D26-9990-79A187E26990} ForceRemove
2008-09-23 04:03:57,109 PC-86139DD81DD9 Key CLSID\{A057A204-BACC-4D26-9990-79A187E26990} not found
2008-09-23 04:03:57,109 PC-86139DD81DD9 Processing registry CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1}
2008-09-23 04:03:57,109 PC-86139DD81DD9 Key CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} ForceRemove
2008-09-23 04:03:57,125 PC-86139DD81DD9 Key CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} not found
2008-09-23 04:03:57,125 PC-86139DD81DD9 Processing registry Interface\{52261B0E-CA1A-4FA9-9805-4D01202DF09D}
2008-09-23 04:03:57,125 PC-86139DD81DD9 Key Interface\{52261B0E-CA1A-4FA9-9805-4D01202DF09D} ForceRemove
2008-09-23 04:03:57,125 PC-86139DD81DD9 Processing registry Interface\{8EA1F9F2-997A-4832-8E09-815E3D0C0A0C}
2008-09-23 04:03:57,140 PC-86139DD81DD9 Key Interface\{8EA1F9F2-997A-4832-8E09-815E3D0C0A0C} ForceRemove
2008-09-23 04:03:57,140 PC-86139DD81DD9 Processing registry TypeLib\{3E536428-8E1A-4A2C-8463-4A8F74763C30}
2008-09-23 04:03:57,140 PC-86139DD81DD9 Key TypeLib\{3E536428-8E1A-4A2C-8463-4A8F74763C30} ForceRemove
2008-09-23 04:03:57,140 PC-86139DD81DD9 Processing registry TypeLib\{5DAB1D4C-D020-41CD-936F-D63FF662E9F7}
2008-09-23 04:03:57,140 PC-86139DD81DD9 Key TypeLib\{5DAB1D4C-D020-41CD-936F-D63FF662E9F7} ForceRemove
2008-09-23 04:03:57,140 PC-86139DD81DD9 Processing registry TypeLib\{A0C8F0F1-DE25-4ADB-8F0B-508F6CA43DE9}
2008-09-23 04:03:57,140 PC-86139DD81DD9 Key TypeLib\{A0C8F0F1-DE25-4ADB-8F0B-508F6CA43DE9} ForceRemove
2008-09-23 04:03:57,140 PC-86139DD81DD9 Key TypeLib\{A0C8F0F1-DE25-4ADB-8F0B-508F6CA43DE9} not found
2008-09-23 04:03:57,156 PC-86139DD81DD9 ***** Files and folders *****
2008-09-23 04:03:57,156 PC-86139DD81DD9 Missing ParentDir path for fileItem number 0
2008-09-23 04:03:57,156 PC-86139DD81DD9 Missing ParentDir path for fileItem number 1
2008-09-23 04:03:57,156 PC-86139DD81DD9 Missing ParentDir path for fileItem number 2
2008-09-23 04:03:57,156 PC-86139DD81DD9 Missing ParentDir path for fileItem number 3
2008-09-23 04:03:57,156 PC-86139DD81DD9 Missing ParentDir path for fileItem number 4
2008-09-23 04:03:57,156 PC-86139DD81DD9 Missing ParentDir path for fileItem number 5
2008-09-23 04:03:57,156 PC-86139DD81DD9 Missing ParentDir path for fileItem number 6
2008-09-23 04:03:57,156 PC-86139DD81DD9 Missing ParentDir path for fileItem number 7
2008-09-23 04:03:57,156 PC-86139DD81DD9 Missing ParentDir path for fileItem number 8
2008-09-23 04:03:57,156 PC-86139DD81DD9 Missing ParentDir path for fileItem number 9
2008-09-23 04:03:57,156 PC-86139DD81DD9 Missing ParentDir path for fileItem number 10
2008-09-23 04:03:57,156 PC-86139DD81DD9 Missing ParentDir path for fileItem number 11
2008-09-23 04:03:57,171 PC-86139DD81DD9 Missing ParentDir path for fileItem number 12
2008-09-23 04:03:57,171 PC-86139DD81DD9 Missing ParentDir path for fileItem number 13
2008-09-23 04:03:57,171 PC-86139DD81DD9 Missing ParentDir path for fileItem number 14
2008-09-23 04:03:57,171 PC-86139DD81DD9 Missing ParentDir path for fileItem number 15
2008-09-23 04:03:57,171 PC-86139DD81DD9 Missing ParentDir path for fileItem number 16
2008-09-23 04:03:57,171 PC-86139DD81DD9 Missing ParentDir path for fileItem number 17
2008-09-23 04:03:57,171 PC-86139DD81DD9 Missing ParentDir path for fileItem number 18
2008-09-23 04:03:57,171 PC-86139DD81DD9 Missing ParentDir path for fileItem number 19
2008-09-23 04:03:57,171 PC-86139DD81DD9 Missing ParentDir path for fileItem number 20
2008-09-23 04:03:57,171 PC-86139DD81DD9 Missing ParentDir path for fileItem number 21
2008-09-23 04:03:57,171 PC-86139DD81DD9 Missing ParentDir path for fileItem number 22
2008-09-23 04:03:57,187 PC-86139DD81DD9 Missing ParentDir path for fileItem number 23
2008-09-23 04:03:57,187 PC-86139DD81DD9 Missing ParentDir path for fileItem number 24
2008-09-23 04:03:57,187 PC-86139DD81DD9 Missing ParentDir path for fileItem number 25
2008-09-23 04:03:57,187 PC-86139DD81DD9 Missing ParentDir path for fileItem number 26
2008-09-23 04:03:57,187 PC-86139DD81DD9 Missing ParentDir path for fileItem number 27
2008-09-23 04:03:57,187 PC-86139DD81DD9 Missing ParentDir path for fileItem number 28
2008-09-23 04:03:57,187 PC-86139DD81DD9 Missing ParentDir path for fileItem number 29
2008-09-23 04:03:57,187 PC-86139DD81DD9 Missing ParentDir path for fileItem number 30
2008-09-23 04:03:57,187 PC-86139DD81DD9 Missing ParentDir path for fileItem number 31
2008-09-23 04:03:57,187 PC-86139DD81DD9 Missing ParentDir path for fileItem number 32
2008-09-23 04:03:57,187 PC-86139DD81DD9 Missing ParentDir path for fileItem number 33
2008-09-23 04:03:57,187 PC-86139DD81DD9 Missing ParentDir path for fileItem number 34
2008-09-23 04:03:57,187 PC-86139DD81DD9 Missing ParentDir path for fileItem number 35
2008-09-23 04:03:57,203 PC-86139DD81DD9 Missing ParentDir path for fileItem number 36
2008-09-23 04:03:57,203 PC-86139DD81DD9 Missing ParentDir path for fileItem number 37
2008-09-23 04:03:57,203 PC-86139DD81DD9 Missing ParentDir path for fileItem number 38
2008-09-23 04:03:57,203 PC-86139DD81DD9 Missing ParentDir path for fileItem number 39
2008-09-23 04:03:57,203 PC-86139DD81DD9 Missing ParentDir path for fileItem number 40
2008-09-23 04:03:57,203 PC-86139DD81DD9 Missing ParentDir path for fileItem number 41
2008-09-23 04:03:57,203 PC-86139DD81DD9 Missing ParentDir path for fileItem number 42
2008-09-23 04:03:57,203 PC-86139DD81DD9 Missing ParentDir path for fileItem number 43
2008-09-23 04:03:57,203 PC-86139DD81DD9 Missing ParentDir path for fileItem number 44
2008-09-23 04:03:57,203 PC-86139DD81DD9 Missing ParentDir path for fileItem number 45
2008-09-23 04:03:57,203 PC-86139DD81DD9 Missing ParentDir path for fileItem number 46
2008-09-23 04:03:57,203 PC-86139DD81DD9 Missing ParentDir path for fileItem number 47
2008-09-23 04:03:57,218 PC-86139DD81DD9 Missing ParentDir path for fileItem number 48
2008-09-23 04:03:57,218 PC-86139DD81DD9 Missing ParentDir path for fileItem number 49
2008-09-23 04:03:57,218 PC-86139DD81DD9 Missing ParentDir path for fileItem number 50
2008-09-23 04:03:57,218 PC-86139DD81DD9 Missing ParentDir path for fileItem number 51
2008-09-23 04:03:57,218 PC-86139DD81DD9 Missing ParentDir path for fileItem number 52
2008-09-23 04:03:57,218 PC-86139DD81DD9 Processing item C:\Documents and Settings\FAMILLE_2\Application Data\AVGTOOLBAR
2008-09-23 04:03:57,218 PC-86139DD81DD9 Directory C:\Documents and Settings\FAMILLE_2\Application Data\AVGTOOLBAR not found
2008-09-23 04:03:57,218 PC-86139DD81DD9 Processing item C:\WINDOWS\System32\Drivers
2008-09-23 04:03:57,218 PC-86139DD81DD9 Processing item C:\WINDOWS\System32\Drivers
2008-09-23 04:03:57,218 PC-86139DD81DD9 Processing item C:\WINDOWS\System32\Drivers
2008-09-23 04:03:57,218 PC-86139DD81DD9 Processing item C:\WINDOWS\System32\Drivers
2008-09-23 04:03:57,234 PC-86139DD81DD9 Processing item C:\WINDOWS\System32\Drivers
2008-09-23 04:03:57,234 PC-86139DD81DD9 Processing item C:\WINDOWS\System32\Drivers
2008-09-23 04:03:57,234 PC-86139DD81DD9 Processing item C:\WINDOWS\System32\Drivers\avg
2008-09-23 04:03:57,234 PC-86139DD81DD9 Directory C:\WINDOWS\System32\Drivers\avg not found
2008-09-23 04:03:57,234 PC-86139DD81DD9 Processing item C:\WINDOWS\System32
2008-09-23 04:03:57,234 PC-86139DD81DD9 Processing item C:\Documents and Settings\All Users\Menu Démarrer\Programmes\avg 8.0
2008-09-23 04:03:57,234 PC-86139DD81DD9 Directory C:\Documents and Settings\All Users\Menu Démarrer\Programmes\avg 8.0 not found
2008-09-23 04:03:57,234 PC-86139DD81DD9 Processing item C:\Documents and Settings\All Users\Menu Démarrer\Programmes\avg free 8.0
2008-09-23 04:03:57,234 PC-86139DD81DD9 Directory C:\Documents and Settings\All Users\Menu Démarrer\Programmes\avg free 8.0 not found
2008-09-23 04:03:57,234 PC-86139DD81DD9 Processing item C:\Documents and Settings\All Users\Bureau\avg 8.0.lnk
2008-09-23 04:03:57,234 PC-86139DD81DD9 File C:\Documents and Settings\All Users\Bureau\avg 8.0.lnk not found
2008-09-23 04:03:57,250 PC-86139DD81DD9 Processing item C:\Documents and Settings\All Users\Bureau\avg free 8.0.lnk
2008-09-23 04:03:57,250 PC-86139DD81DD9 File C:\Documents and Settings\All Users\Bureau\avg free 8.0.lnk not found
2008-09-23 04:03:57,250 PC-86139DD81DD9 Processing item C:\Program Files\AVG
2008-09-23 04:03:57,250 PC-86139DD81DD9 Directory C:\Program Files\AVG not found
2008-09-23 04:03:57,250 PC-86139DD81DD9 ***** Avg Fw NDIS driver *****
2008-09-23 04:03:57,625 PC-86139DD81DD9 FW NDIS driver not present
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 297
23 sept. 2008 à 06:17
BearShare, ça te dit quelque chose ?
0
bonjour moi je ne connais pas trop ;ce fichier je l'es envoyer virus total et voici le rapport :
Virus Total
Fichier BearShareIEHelper.dll reçu le 2008.09.23 01:04:47 (CET)
Situation actuelle: terminé
Résultat: 0/36 (0.00%)
Formaté Formaté
Impression des résultats Impression des résultats
Antivirus Version Dernière mise à jour Résultat
AhnLab-V3 2008.9.23.0 2008.09.22 -
AntiVir 7.8.1.34 2008.09.22 -
Authentium 5.1.0.4 2008.09.22 -
Avast 4.8.1195.0 2008.09.22 -
AVG 8.0.0.161 2008.09.22 -
BitDefender 7.2 2008.09.23 -
CAT-QuickHeal 9.50 2008.09.20 -
ClamAV 0.93.1 2008.09.22 -
DrWeb 4.44.0.09170 2008.09.22 -
eSafe 7.0.17.0 2008.09.22 -
eTrust-Vet 31.6.6099 2008.09.22 -
Ewido 4.0 2008.09.22 -
F-Prot 4.4.4.56 2008.09.22 -
F-Secure 8.0.14332.0 2008.09.23 -
Fortinet 3.113.0.0 2008.09.22 -
GData 19 2008.09.23 -
Ikarus T3.1.1.34.0 2008.09.22 -
K7AntiVirus 7.10.467 2008.09.22 -
Kaspersky 7.0.0.125 2008.09.23 -
McAfee 5389 2008.09.22 -
Microsoft 1.3903 2008.09.23 -
NOD32v2 3461 2008.09.22 -
Norman 5.80.02 2008.09.19 -
Panda 9.0.0.4 2008.09.22 -
PCTools 4.4.2.0 2008.09.22 -
Prevx1 V2 2008.09.23 -
Rising 20.63.02.00 2008.09.22 -
Sophos 4.33.0 2008.09.22 -
Sunbelt 3.1.1662.1 2008.09.23 -
Symantec 10 2008.09.23 -
TheHacker 6.3.0.9.090 2008.09.20 -
TrendMicro 8.700.0.1004 2008.09.22 -
VBA32 3.12.8.5 2008.09.23 -
ViRobot 2008.9.22.1387 2008.09.22 -
VirusBuster 4.5.11.0 2008.09.22 -
Webwasher-Gateway 6.6.2 2008.09.22 -
Information additionnelle
File size: 398776 bytes
MD5...: 67b101f4399a063547fdf1d1e7a872cb
SHA1..: cadd5f1dad586f91aba10b6444e7790001f54671
SHA256: e2166dccf69973e3f558fd44f9c9d48c5305e512b7f743d4e28426130a18a616
SHA512: 03dedb3f39443f8a3f0421529c8dbf8e5650637b1743093c5409ae137da936e7
c658f7e9d2ecbfa393fd436217f489d44ea35797765bc6b7f994c00b5363c770
PEiD..: -
TrID..: File type identification
DirectShow filter (52.6%)
Windows OCX File (32.2%)
Win32 Executable MS Visual C++ (generic) (9.8%)
Win32 Executable Generic (2.2%)
Win32 Dynamic Link Library (generic) (1.9%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x1002b857
timedatestamp.....: 0x4871e121 (Mon Jul 07 09:25:53 2008)
machinetype.......: 0x14c (I386)

( 5 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x44980 0x45000 6.60 4b3d06a8eb30fcd9aca6cd757bbf5a41
.rdata 0x46000 0xcb1e 0xd000 4.73 0258b06706c8c4e23b687a7b79baf028
.data 0x53000 0x5240 0x4000 4.08 58db7127fa1b26be96f8b80df8200951
.rsrc 0x59000 0x3c60 0x4000 5.67 e3c6e512128fbed4ac378dcf60159df1
.reloc 0x5d000 0x4d44 0x5000 5.57 0ae11907f20788ced0fabaca3847205f

( 7 imports )
> SHLWAPI.dll: UrlApplySchemeW, UrlIsW, PathFindFileNameW
> KERNEL32.dll: LockResource, LocalFree, GetProcAddress, LoadLibraryW, InterlockedCompareExchange, CloseHandle, SetEvent, CreateEventW, ResetEvent, WaitForMultipleObjects, FindResourceExW, FlushInstructionCache, GetCurrentProcess, GlobalUnlock, GlobalLock, GlobalAlloc, OpenMutexW, lstrcmpW, MulDiv, SetLastError, WaitForSingleObject, CreateMutexW, ReleaseMutex, CreateMutexA, IsProcessorFeaturePresent, GetThreadLocale, FlushFileBuffers, CreateFileA, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, GetConsoleMode, GetConsoleCP, SetFilePointer, IsValidLocale, GetCurrentThreadId, GetUserDefaultLCID, GetStringTypeW, GetStringTypeA, InterlockedExchange, GetLocaleInfoW, GetLocaleInfoA, LoadLibraryA, GetSystemTimeAsFileTime, GetCurrentProcessId, GetTickCount, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetStartupInfoA, GetFileType, SetHandleCount, LCMapStringW, WideCharToMultiByte, LCMapStringA, Sleep, HeapSize, IsValidCodePage, GetOEMCP, GetACP, GetCPInfo, ExitProcess, HeapCreate, HeapDestroy, VirtualAlloc, VirtualFree, TlsFree, TlsSetValue, TlsAlloc, TlsGetValue, lstrlenA, GetModuleHandleW, LoadLibraryExW, FindResourceW, LoadResource, SizeofResource, MultiByteToWideChar, FreeLibrary, InterlockedDecrement, GetLongPathNameW, InterlockedIncrement, GetModuleFileNameW, CreateThread, lstrcmpiW, GetLastError, DeleteCriticalSection, InitializeCriticalSection, LeaveCriticalSection, EnterCriticalSection, RaiseException, lstrlenW, CreateSemaphoreA, ReleaseSemaphore, ExitThread, EnumSystemLocalesA, GetModuleHandleA, GetModuleFileNameA, GetStdHandle, WriteFile, GetProcessHeap, GetVersionExA, GetCommandLineA, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, HeapReAlloc, RtlUnwind, HeapFree, HeapAlloc
> USER32.dll: GetSysColor, UnregisterClassA, CharNextW, UnhookWindowsHookEx, SetWindowTextW, SendMessageW, CallNextHookEx, GetAsyncKeyState, SetWindowsHookExW, SetTimer, CreateAcceleratorTableW, DialogBoxParamW, IsWindow, SetFocus, GetFocus, GetWindow, DestroyAcceleratorTable, GetDesktopWindow, BeginPaint, EndPaint, CallWindowProcW, DestroyWindow, FillRect, ReleaseCapture, GetClassNameW, GetParent, FindWindowExW, SetCapture, RedrawWindow, InvalidateRgn, InvalidateRect, ReleaseDC, GetDC, ScreenToClient, ClientToScreen, MoveWindow, IsChild, PostThreadMessageW, GetDlgItem, GetClientRect, CreateWindowExW, RegisterWindowMessageW, GetClassInfoExW, LoadCursorW, RegisterClassExW, GetWindowTextLengthW, GetWindowTextW, DefWindowProcW, PeekMessageW, GetMessageW, TranslateMessage, DispatchMessageW, GetWindowLongW, SetWindowLongW, KillTimer, EnableWindow, SetWindowPos, EndDialog, GetWindowThreadProcessId
> GDI32.dll: GetObjectW, CreateSolidBrush, BitBlt, CreateCompatibleDC, CreateCompatibleBitmap, DeleteDC, SelectObject, DeleteObject, GetDeviceCaps, GetStockObject
> ADVAPI32.dll: RegDeleteValueW, RegNotifyChangeKeyValue, ConvertStringSecurityDescriptorToSecurityDescriptorW, GetSecurityDescriptorSacl, SetNamedSecurityInfoW, RegQueryValueExW, RegEnumKeyExW, RegQueryInfoKeyW, RegSetValueExW, RegOpenKeyExW, RegCreateKeyExW, RegCloseKey, RegDeleteKeyW
> ole32.dll: CoGetClassObject, CoTaskMemAlloc, CoTaskMemRealloc, CoTaskMemFree, CoCreateInstance, StringFromGUID2, CreateStreamOnHGlobal, OleInitialize, CLSIDFromProgID, CLSIDFromString, OleUninitialize, OleLockRunning
> OLEAUT32.dll: -, -, -, -, -, -, -, -, -, -, -, -, -, -

( 4 exports )
DllCanUnloadNow, DllGetClassObject, DllRegisterServer, DllUnregisterServer

ATENTION ATTENTION: VirusTotal est un service gratuit offert par Hispasec Sistemas. Il n'y a aucune garantie quant à la disponibilité et la continuité de ce service. Bien que le taux de détection permis par l'utilisation de multiples moteurs antivirus soit bien supérieur à celui offert par seulement un produit, ces résultats NE garantissent PAS qu'un fichier est sans danger. Il n'y a actuellement aucune solution qui offre un taux d'efficacité de 100% pour la détection des virus et malwares.

Autre fichier
VirusTotal © Hispasec Sistemas - Blog - Contact: info@virustotal.com - Terms of Service & Privacy Policy
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 297
23 sept. 2008 à 06:34
Poste un nouveau rapport HijackThis.
0
ya pas de nouveau rapport ,si tu veux je fais un teste tout de suite
0
touat25 > touat25
23 sept. 2008 à 07:05
salut voila le nouveau rapport de hijackthis

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:01:36, on 23-09-2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\Explorer.EXE
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program famille 2\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\SPYBOT~1\SDHelper.dll
O2 - BHO: UrlHelper Class - {6D023EBF-70B8-45A6-9ED5-556515FA0FE4} - C:\Program Files\BearShare Applications\BearShare MediaBar\BearShareIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.1852\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll (file missing)
O3 - Toolbar: BearShare MediaBar - {D3DEE18F-DB64-4BEB-9FF1-E1F0A5033E4A} - C:\Program Files\BearShare Applications\BearShare MediaBar\BSMediaBar.dll
O3 - Toolbar: (no name) - {A057A204-BACC-4D26-9990-79A187E2698E} - (no file)
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RESEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{D8CA7F4F-36A3-4059-BFD2-2AE6D6000B3D}: NameServer = 41.221.20.4 193.251.169.165
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: ASP.NET State Service (aspnet_state) - Unknown owner - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (file missing)
O23 - Service: Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 297
23 sept. 2008 à 12:16
---> Relance HijackThis et choisis Do a system scan only

---> Coche les cases qui sont devant les lignes suivantes :

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)

O2 - BHO: UrlHelper Class - {6D023EBF-70B8-45A6-9ED5-556515FA0FE4} - C:\Program Files\BearShare Applications\BearShare MediaBar\BearShareIEHelper.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll (file missing)

O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll

O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll (file missing)

O3 - Toolbar: BearShare MediaBar - {D3DEE18F-DB64-4BEB-9FF1-E1F0A5033E4A} - C:\Program Files\BearShare Applications\BearShare MediaBar\BSMediaBar.dll

O3 - Toolbar: (no name) - {A057A204-BACC-4D26-9990-79A187E2698E} - (no file)

O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE

O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE

O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')

O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RESEAU')

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe

---> Clique en bas sur Fix checked. Mets oui si HijackThis te demande quelque chose.

---> Redémarre ton PC et poste un nouveau rapport HijackThis
0
salut:je m'excuse du retard voila le rapport :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:50:28, on 23-09-2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program famille 2\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: UrlHelper Class - {6D023EBF-70B8-45A6-9ED5-556515FA0FE4} - C:\Program Files\BearShare Applications\BearShare MediaBar\BearShareIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.1852\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll (file missing)
O3 - Toolbar: BearShare MediaBar - {D3DEE18F-DB64-4BEB-9FF1-E1F0A5033E4A} - C:\Program Files\BearShare Applications\BearShare MediaBar\BSMediaBar.dll
O3 - Toolbar: (no name) - {A057A204-BACC-4D26-9990-79A187E2698E} - (no file)
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RESEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{D8CA7F4F-36A3-4059-BFD2-2AE6D6000B3D}: NameServer = 41.221.20.4 193.251.169.165
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: ASP.NET State Service (aspnet_state) - Unknown owner - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (file missing)
O23 - Service: Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 297
23 sept. 2008 à 14:08
Il y a des lignes qui sont restées, c'est sûrement à cause de Tea Timer.

Recommence mais tu acceptes les modifications si Tea Timer te le demande.
0
salut et voila :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:32:02, on 23-09-2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program famille 2\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: UrlHelper Class - {6D023EBF-70B8-45A6-9ED5-556515FA0FE4} - C:\Program Files\BearShare Applications\BearShare MediaBar\BearShareIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.1852\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll (file missing)
O3 - Toolbar: BearShare MediaBar - {D3DEE18F-DB64-4BEB-9FF1-E1F0A5033E4A} - C:\Program Files\BearShare Applications\BearShare MediaBar\BSMediaBar.dll
O3 - Toolbar: (no name) - {A057A204-BACC-4D26-9990-79A187E2698E} - (no file)
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RESEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{D8CA7F4F-36A3-4059-BFD2-2AE6D6000B3D}: NameServer = 41.221.20.4 193.251.169.165
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: ASP.NET State Service (aspnet_state) - Unknown owner - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (file missing)
O23 - Service: Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
0
touat25 > touat25
23 sept. 2008 à 18:58
bopnsoir excuse moi j'étais absent , enfin voila le rapport cette fois il me semble qu'il est bon merci de le consulter.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:49:25, on 23-09-2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\Explorer.EXE
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program famille 2\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.1852\swg.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{D8CA7F4F-36A3-4059-BFD2-2AE6D6000B3D}: NameServer = 41.221.20.4 193.251.169.165
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: ASP.NET State Service (aspnet_state) - Unknown owner - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (file missing)
O23 - Service: Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 297
23 sept. 2008 à 14:56
Toujours pas.
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 297
23 sept. 2008 à 19:02
Plus de problème ?
0
salut ; toujours un peut lourd .
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 297
23 sept. 2008 à 19:07
C'est quoi comme PC ?
0
mon pc est un Pentium(R) 4 CPU 3.06GHz 0.99Go de RAM.
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 297
24 sept. 2008 à 00:37
Je ne vois pas ce que je pourrais faire de plus :(
0
salut :les amis qui on vu les rapports m'ont dit qu il ya 2 antivirus qui fonctionne en parallele dans mon pc, c'est la cause pour qu il est lourd et que je dois désinstaller 1 et peux me dire quelque chose en consultant encor ces rapports ?
dans le menu (AJOUT / SUPPR ) ya que antivir .alors si c'est vrai comment le desinstaller merci ...
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 297
24 sept. 2008 à 12:26
Je n'ai pas vu de deuxième antivirus.
0
merci pourton attention et ton aide au revoir au prochain probleme ..............
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 297
24 sept. 2008 à 15:15
---> Télécharge CCleaner (N'installe pas la Yahoo Toolbar) :
https://www.ccleaner.com/ccleaner/download

---> Lance-le. Va dans "Options" puis "Avancé", tu décoches la case "Effacer uniquement les fichiers etc...". Tu vas dans "Nettoyeur", tu fais "Analyse". Une fois terminé, tu lances le nettoyage. Puis tu vas dans "Registre", tu fais "Chercher des erreurs". Une fois terminé, tu répares toutes les erreurs sans sauvegarder la base de registre.

---> Il est nécessaire de désactiver puis réactiver la restauration système pour la purger :
http://www.infos-du-net.com/forum/272480-11-desactiver-activer-restauration-systeme

---> Je te conseille de créer un point de restauration que tu pourras utiliser plus tard si tu as un problème :
https://www.vulgarisation-informatique.com/creer-point-restauration.php
0
bonsoir :j'ai suivi ce que tu m'a dit mot par mot et j'ai eu un bon résulta merci infiniment .j'ai un autre probleme mais ce n'est pas sa place ici car il ne concerne pas la sécurité et les virus !
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 297
25 sept. 2008 à 06:19
Ok mais peut-être que je peux t'aider.
0
mon probleme est que j'arrive pas a envoyer un courrier .je l'es poser au forum messagerie /chat dans ce site si vous prenez la peine de le conssulter merci d'avance .j'arrive pas a le posté ici .
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 297
25 sept. 2008 à 11:56
Tu utilises quel logiciel pour envoyer un mail ?
0
salut c'est avec windows live messenger 7 j'envois de @msn.com vers @live.fr est pas moyen.
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 297
26 sept. 2008 à 09:31
Tu as un message d'erreur ?
0