Infection virus!!!!!rapport hijackthis

Bonjour mon pc est infecté de virus et je voudrais les supprimer!Si quelqu'un pourrait m'aider ça serait très gentille,étant néophyte en informatique!Merci d'avance
Je vous montre mon rapport hijackthis!

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:12:21, on 30/10/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\HPZIPM12.EXE
C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
C:\Program Files\CyberLink\PowerCinema\PCMService.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Orange HSS\Systray\SystrayApp.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Philips\Philips SPC210NC Webcam\TrayMin210.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
c:\windows\system\hpsysdrv.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Orange HSS\Launcher\Launcher.exe
C:\Program Files\Orange HSS\connectivity\connectivitymanager.exe
C:\Program Files\Orange HSS\connectivity\CoreCom\CoreCom.exe
C:\Program Files\Orange HSS\connectivity\CoreCom\OraConfigRecover.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\HP_Propriétaire\Bureau\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr?cobrand=hp-desktop.msn.com&ocid=HPDHP&pc=HPDTDF
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://fr.search.yahoo.com/?fr=cb-hp06
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://fr.search.yahoo.com/?fr=cb-hp06
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://fr.search.yahoo.com/?fr=cb-hp06
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange HSS\SearchURLHook\SearchPageURL.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [HPHUPD08] c:\Program Files\HP\Digital Imaging\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\hphupd08.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange HSS\Systray\SystrayApp.exe"
O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\Orange HSS\SessionManager\SessionManager.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [Antivirus] C:\Program Files\Antivirus 2008\Antvrs.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: TrayMin210.exe.lnk = ?
O4 - Global Startup: Utilitaire réseau pour SAGEM Wi-Fi 11g USB adapter.lnk = ?
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O15 - Trusted Zone: https://www.orange.fr/portail
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\HPZIPM12.EXE

--
End of file - 11747 bytes
Configuration: Windows XP
Firefox 3.0.3

10 réponses

  1. antivirus 2008 est un rogue, faux antivirus.

    Telecharges malwares bytes anti malwares : egalement tres util sur pb de pub mais pas tous malheureusement

    Malwarebytes Anti-Malware: http://www.malwarebytes.org/mbam/program/mbam-setup.exe

    Tutoriel Malwarebytes Anti-Malware: https://forum.pcastuces.com/malwarebytes_antimalwares___tutoriel-f31s3.htm
    fais comme indique,mise a jour , scan complet en mode sans echec et les rapports.

    garde le et lance un scan tout les mois comme indique.

    si tu as ad aware tu peux desinstalle car il ne reconnait plus grand chose.
    0
    1. Merci de ton aide comment sais-tu que j'ai antivirus 2008 et comment faire pour le supprimer vu qu'il n'est pas dans ajout suppression de programmes?
      J'ai constaté aussi en faisant une analyse en ligne avec kapersky que j'avais deux virus trojan!
      0
      1. je le sais parce que c est indique sur ton rapport.

        pour le supprimer je te l ai indique,fait ce que je t ai dit.
        lit bien le tuto . n oublie pas le rapport.
        0
        1. totobetourne je te poste le rapport ci-dessous que j'ai effectué encore merci de ton aide!

          Malwarebytes' Anti-Malware 1.30
          Version de la base de données: 1340
          Windows 5.1.2600 Service Pack 2

          30/10/2008 22:45:30
          le rapport

          Type de recherche: Examen complet (C:\|D:\|)
          Eléments examinés: 150450
          Temps écoulé: 2 hour(s), 30 minute(s), 16 second(s)

          Processus mémoire infecté(s): 0
          Module(s) mémoire infecté(s): 0
          Clé(s) du Registre infectée(s): 0
          Valeur(s) du Registre infectée(s): 0
          Elément(s) de données du Registre infecté(s): 0
          Dossier(s) infecté(s): 45
          Fichier(s) infecté(s): 88

          Processus mémoire infecté(s):
          (Aucun élément nuisible détecté)

          Module(s) mémoire infecté(s):
          (Aucun élément nuisible détecté)

          Clé(s) du Registre infectée(s):
          (Aucun élément nuisible détecté)

          Valeur(s) du Registre infectée(s):
          (Aucun élément nuisible détecté)

          Elément(s) de données du Registre infecté(s):
          (Aucun élément nuisible détecté)

          Dossier(s) infecté(s):
          C:\Program Files\Zango (Adware.180Solutions) -> No action taken.
          C:\Program Files\Zango\bin (Adware.180Solutions) -> No action taken.
          C:\Program Files\Zango\bin\10.0.314.0 (Adware.180Solutions) -> No action taken.
          C:\Program Files\Zango\bin\10.0.314.0\rb1C1.tmp (Adware.180Solutions) -> No action taken.
          C:\Program Files\Zango\bin\10.0.314.0\rb1C1.tmp\firefox (Adware.180Solutions) -> No action taken.
          C:\Program Files\Zango\bin\10.0.314.0\rb1C1.tmp\firefox\extensions (Adware.180Solutions) -> No action taken.
          C:\Program Files\Zango\bin\10.0.314.0\rb1C1.tmp\firefox\extensions\components (Adware.180Solutions) -> No action taken.
          C:\Program Files\Zango\bin\10.0.314.0\rb1C1.tmp\firefox\extensions\plugins (Adware.180Solutions) -> No action taken.
          C:\Program Files\MyWebSearch (Adware.MyWebSearch) -> No action taken.
          C:\Program Files\MyWebSearch\SrchAstt (Adware.MyWebSearch) -> No action taken.
          C:\Program Files\MyWebSearch\SrchAstt\1.bin (Adware.MyWebSearch) -> No action taken.
          C:\Program Files\FunWebProducts (Adware.MyWebSearch) -> No action taken.
          C:\Program Files\FunWebProducts\Shared (Adware.MyWebSearch) -> No action taken.
          C:\Program Files\FunWebProducts\Shared\Cache (Adware.MyWebSearch) -> No action taken.
          C:\Program Files\Starware316 (Adware.Starware) -> No action taken.
          C:\Program Files\Starware316\bin (Adware.Starware) -> No action taken.
          C:\Program Files\Starware316\icons (Adware.Starware) -> No action taken.
          C:\Program Files\Screensavers.com (Adware.Comet) -> No action taken.
          C:\Program Files\Screensavers.com\SSSInst (Adware.Comet) -> No action taken.
          C:\Program Files\Screensavers.com\SSSInst\bin (Adware.Comet) -> No action taken.
          C:\Program Files\Screensavers.com\SSSInst\Ready (Adware.Comet) -> No action taken.
          C:\Program Files\Screensavers.com\SSSInst\temp (Adware.Comet) -> No action taken.
          C:\Program Files\Screensavers.com\SSSInst\Upload (Adware.Comet) -> No action taken.
          C:\Program Files\Screensavers.com\Wallpaper (Adware.Comet) -> No action taken.
          C:\Program Files\WinIFixer (Rogue.WinIFixer) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\SalesMon (Rogue.Multiple) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\SalesMon\Data (Rogue.Multiple) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316 (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\contexts (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\Games (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\Games\images (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\Games\images\active (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\Games\images\default (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\images (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\Movies (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\Movies\images (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\Movies\images\active (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\Movies\images\default (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\ScreensaversMarketingSitePager (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\ScreensaversMarketingSitePager\images (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\ScreensaversMarketingSitePager\images\active (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\ScreensaversMarketingSitePager\images\default (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate (Adware.Starware) -> No action taken.
          C:\Documents and Settings\HP_Propriétaire\Application Data\Antivirus (Rogue.Antivirus2008) -> No action taken.

          Fichier(s) infecté(s):
          C:\Program Files\MSN Messenger\msimg32.dll (Adware.MyWebSearch) -> No action taken.
          C:\Program Files\MSN Messenger\riched20.dll (Adware.MyWeb.FunWeb) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0003985.exe (Rogue.WinIFixer) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0003990.dll (Adware.Hotbar) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004016.dll (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004017.DLL (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004018.DLL (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004019.DLL (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004021.DLL (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004022.DLL (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004023.DLL (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004024.DLL (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004025.DLL (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004026.DLL (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004027.DLL (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004028.DLL (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004029.SCR (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004030.DLL (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004031.DLL (Adware.MyWeb.FunWeb) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004032.EXE (Adware.MyWeb.FunWeb) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004033.DLL (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004034.DLL (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004036.DLL (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004037.DLL (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004038.EXE (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004041.DLL (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004043.DLL (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004044.EXE (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004046.EXE (Adware.MyWebSearch) -> No action taken.
          C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004047.DLL (Adware.MyWebSearch) -> No action taken.
          C:\Program Files\Zango\bin\10.0.314.0\rb1C1.tmp\firefox\extensions\install.rdf (Adware.180Solutions) -> No action taken.
          C:\Program Files\Zango\bin\10.0.314.0\rb1C1.tmp\firefox\extensions\components\npclntax.xpt (Adware.180Solutions) -> No action taken.
          C:\Program Files\Zango\bin\10.0.314.0\rb1C1.tmp\firefox\extensions\plugins\npclntax_ZangoSA.dll (Adware.180Solutions) -> No action taken.
          C:\Program Files\FunWebProducts\Shared\Cache\AvatarSmallBtn.html (Adware.MyWebSearch) -> No action taken.
          C:\Program Files\FunWebProducts\Shared\Cache\CursorManiaBtn.html (Adware.MyWebSearch) -> No action taken.
          C:\Program Files\FunWebProducts\Shared\Cache\FunBuddyIconBtn.html (Adware.MyWebSearch) -> No action taken.
          C:\Program Files\FunWebProducts\Shared\Cache\MailStampBtn-new.html (Adware.MyWebSearch) -> No action taken.
          C:\Program Files\FunWebProducts\Shared\Cache\MailStampBtn.html (Adware.MyWebSearch) -> No action taken.
          C:\Program Files\FunWebProducts\Shared\Cache\MyFunCardsIMBtn.html (Adware.MyWebSearch) -> No action taken.
          C:\Program Files\FunWebProducts\Shared\Cache\MyStationeryBtn-new.html (Adware.MyWebSearch) -> No action taken.
          C:\Program Files\FunWebProducts\Shared\Cache\MyStationeryBtn.html (Adware.MyWebSearch) -> No action taken.
          C:\Program Files\FunWebProducts\Shared\Cache\SmileyCentralBtn.html (Adware.MyWebSearch) -> No action taken.
          C:\Program Files\Starware316\brand.bmp (Adware.Starware) -> No action taken.
          C:\Program Files\Starware316\Starware316Config.xml (Adware.Starware) -> No action taken.
          C:\Program Files\Starware316\Starware316Uninstall.exe (Adware.Starware) -> No action taken.
          C:\Program Files\Starware316\icons\star_16.ico (Adware.Starware) -> No action taken.
          C:\Program Files\Screensavers.com\SSSInst\bin\iebyterange.xml (Adware.Comet) -> No action taken.
          C:\Program Files\Screensavers.com\SSSInst\bin\iebyterange.xml.backup (Adware.Comet) -> No action taken.
          C:\Program Files\Screensavers.com\SSSInst\bin\SSSUninst.exe (Adware.Comet) -> No action taken.
          C:\Program Files\Screensavers.com\Wallpaper\swpstart.exe (Adware.Comet) -> No action taken.
          C:\Program Files\WinIFixer\MFC71.dll (Rogue.WinIFixer) -> No action taken.
          C:\Program Files\WinIFixer\msvcp71.dll (Rogue.WinIFixer) -> No action taken.
          C:\Program Files\WinIFixer\msvcr71.dll (Rogue.WinIFixer) -> No action taken.
          C:\Program Files\WinIFixer\WinIFixerSkin.dll (Rogue.WinIFixer) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\U0011CB0D.exe (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\FindIt.bmp (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\FindItHot.bmp (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\findithotxp.png (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\finditxp.png (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\Highlight.bmp (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\HighlightHot.bmp (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\highlighthotxp.png (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\highlightxp.png (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\logo.bmp (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\logoxp.bmp (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\Reference.bmp (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\ReferenceHot.bmp (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\referencehotxp.png (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\referencexp.png (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\screensaver.bmp (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\Screensavers0.bmp (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\Weather.bmp (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\weatherhotxp.png (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\buttons\weatherxp.png (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\contexts\Error.xml (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\contexts\Related.xml (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\contexts\Travel.xml (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\Games\images\active\Games0.bmp (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\images\walertXP.bmp (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\Movies\images\active\Movies0.bmp (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\ScreensaversMarketingSitePager\images\active\ScreensaversMarketingSitePager0.bmp (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate\ProductMessagingConfig.xml (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate\ProductMessagingConfig.xml.backup (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate\SimpleUpdateConfig.xml (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate\SimpleUpdateConfig.xml.backup (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate\TimerManagerConfig.xml (Adware.Starware) -> No action taken.
          C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate\TimerManagerConfig.xml.backup (Adware.Starware) -> No action taken.
          C:\WINDOWS\cookies.ini (Malware.Trace) -> No action taken.
          0
          1. refais un rapport hijack,il y avait differentes choses et cela semble etre supprime.

            il faudrait modifier de cliquer sur n importe quoi, il faut faire attention.on verra apres pour ameliorer tes defences.
            0
            1. Voici le nouveau rapport comme tu me l'as demandé

              Logfile of Trend Micro HijackThis v2.0.2
              Scan saved at 23:24:53, on 30/10/2008
              Platform: Windows XP SP2 (WinNT 5.01.2600)
              MSIE: Internet Explorer v7.00 (7.00.6000.16735)
              Boot mode: Normal

              Running processes:
              C:\WINDOWS\System32\smss.exe
              C:\WINDOWS\system32\winlogon.exe
              C:\WINDOWS\system32\services.exe
              C:\WINDOWS\system32\lsass.exe
              C:\WINDOWS\system32\Ati2evxx.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\System32\svchost.exe
              C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
              C:\WINDOWS\system32\Ati2evxx.exe
              C:\Program Files\Alwil Software\Avast4\ashServ.exe
              C:\WINDOWS\Explorer.EXE
              C:\WINDOWS\system32\spoolsv.exe
              C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
              C:\Program Files\Bonjour\mDNSResponder.exe
              C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
              C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
              C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
              C:\Program Files\Java\jre6\bin\jqs.exe
              C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
              C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\HPZIPM12.EXE
              C:\Program Files\CyberLink\PowerCinema\PCMService.exe
              C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
              C:\Program Files\Orange HSS\Systray\SystrayApp.exe
              C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
              C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
              C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
              C:\Program Files\Java\jre6\bin\jusched.exe
              C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
              C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
              C:\HP\KBD\KBD.EXE
              C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
              C:\WINDOWS\system32\ctfmon.exe
              C:\Program Files\Philips\Philips SPC210NC Webcam\TrayMin210.exe
              C:\WINDOWS\System32\svchost.exe
              C:\WINDOWS\ALCXMNTR.EXE
              C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
              C:\Program Files\Windows Live\Messenger\usnsvc.exe
              c:\windows\system\hpsysdrv.exe
              C:\Program Files\iTunes\iTunesHelper.exe
              C:\Program Files\iPod\bin\iPodService.exe
              C:\Program Files\Mozilla Firefox\firefox.exe
              C:\Program Files\Orange HSS\Launcher\Launcher.exe
              C:\Program Files\Orange HSS\connectivity\connectivitymanager.exe
              C:\Program Files\Orange HSS\connectivity\CoreCom\CoreCom.exe
              C:\Program Files\Orange HSS\connectivity\CoreCom\OraConfigRecover.exe
              C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
              C:\Program Files\iTunes\iTunes.exe
              C:\Documents and Settings\HP_Propriétaire\Bureau\HiJackThis.exe

              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr?cobrand=hp-desktop.msn.com&ocid=HPDHP&pc=HPDTDF
              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://fr.search.yahoo.com/?fr=cb-hp06
              R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://fr.search.yahoo.com/?fr=cb-hp06
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
              R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
              R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://fr.search.yahoo.com/?fr=cb-hp06
              R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
              R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange HSS\SearchURLHook\SearchPageURL.dll
              O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
              O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
              O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
              O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
              O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
              O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
              O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
              O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
              O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
              O4 - HKLM\..\Run: [HPHUPD08] c:\Program Files\HP\Digital Imaging\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\hphupd08.exe
              O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe"
              O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
              O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
              O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
              O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
              O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange HSS\Systray\SystrayApp.exe"
              O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\Orange HSS\SessionManager\SessionManager.exe
              O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
              O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
              O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
              O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
              O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
              O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
              O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
              O4 - HKCU\..\Run: [Antivirus] C:\Program Files\Antivirus 2008\Antvrs.exe
              O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
              O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
              O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
              O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
              O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
              O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
              O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
              O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
              O4 - Global Startup: TrayMin210.exe.lnk = ?
              O4 - Global Startup: Utilitaire réseau pour SAGEM Wi-Fi 11g USB adapter.lnk = ?
              O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
              O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
              O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
              O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
              O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
              O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
              O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
              O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
              O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
              O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
              O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
              O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
              O15 - Trusted Zone: https://www.orange.fr/portail
              O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
              O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
              O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
              O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
              O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
              O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
              O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
              O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
              O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
              O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
              O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
              O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
              O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
              O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
              O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
              O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
              O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
              O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
              O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
              O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\HPZIPM12.EXE
              0
              1. toujours present, as tu passer malwarebyte en mode sans echec?si c est non ce n est pas tres grave mais il est mieux de l utiliser de cette manniere.

                pour voir télécharge combofix (par sUBs) ici :

                http://download.bleepingcomputer.com/sUBs/ComboFix.exe

                et enregistre le sur le bureau.

                déconnecte toi d'internet et ferme toutes tes applications.

                désactive tes protections (antivirus, parefeu, garde en temps réel de l'antispyware)

                double-clique sur combofix.exe et suis les instructions

                à la fin, il va produire un rapport C:\ComboFix.txt

                réactive ton parefeu, ton antivirus, la garde de ton antispyware

                copie/colle le rapport C:\ComboFix.txt dans ta prochaine réponse.

                Attention, n'utilise pas ta souris ni ton clavier (ni un autre système de pointage) pendant que le programme tourne. Cela pourrait figer l'ordi.

                Tu as un tutoriel complet ici :

                https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
                0
                1. Merci à toi de me donner de ton temps pour résoudre mon problème
                  Voici le rapport combofix ci-dessous:

                  ComboFix 08-10-30.09 - HP_Propriétaire 2008-10-31 1:18:23.1 - NTFSx86
                  Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.507 [GMT 1:00]
                  Lancé depuis: C:\Documents and Settings\HP_Propriétaire\Bureau\ComboFix.exe
                  Commutateurs utilisés :: C:\Documents and Settings\HP_Propriétaire\Bureau\WindowsXP-KB310994-SP2-Home-BootDisk-FRA.exe
                  * Un nouveau point de restauration a été créé
                  .

                  (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
                  .

                  C:\Documents and Settings\All Users\Application Data\Starware316
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\FindIt.bmp
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\FindItHot.bmp
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\findithotxp.png
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\finditxp.png
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\Highlight.bmp
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\HighlightHot.bmp
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\highlighthotxp.png
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\highlightxp.png
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\logo.bmp
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\logoxp.bmp
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\Reference.bmp
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\ReferenceHot.bmp
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\referencehotxp.png
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\referencexp.png
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\screensaver.bmp
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\Screensavers0.bmp
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\Weather.bmp
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\weatherhotxp.png
                  C:\Documents and Settings\All Users\Application Data\Starware316\buttons\weatherxp.png
                  C:\Documents and Settings\All Users\Application Data\Starware316\contexts\Error.xml
                  C:\Documents and Settings\All Users\Application Data\Starware316\contexts\Related.xml
                  C:\Documents and Settings\All Users\Application Data\Starware316\contexts\Travel.xml
                  C:\Documents and Settings\All Users\Application Data\Starware316\Games\images\active\Games0.bmp
                  C:\Documents and Settings\All Users\Application Data\Starware316\images\walertXP.bmp
                  C:\Documents and Settings\All Users\Application Data\Starware316\Movies\images\active\Movies0.bmp
                  C:\Documents and Settings\All Users\Application Data\Starware316\ScreensaversMarketingSitePager\images\active\ScreensaversMarketingSitePager0.bmp
                  C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate\ProductMessagingConfig.xml
                  C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate\ProductMessagingConfig.xml.backup
                  C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate\SimpleUpdateConfig.xml
                  C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate\SimpleUpdateConfig.xml.backup
                  C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate\TimerManagerConfig.xml
                  C:\Documents and Settings\All Users\Application Data\Starware316\SimpleUpdate\TimerManagerConfig.xml.backup
                  C:\Documents and Settings\All Users\Application Data\Starware316\U0011CB0D.exe
                  C:\Program Files\FunWebProducts
                  C:\Program Files\FunWebProducts\Shared\Cache\AvatarSmallBtn.html
                  C:\Program Files\FunWebProducts\Shared\Cache\CursorManiaBtn.html
                  C:\Program Files\FunWebProducts\Shared\Cache\FunBuddyIconBtn.html
                  C:\Program Files\FunWebProducts\Shared\Cache\MailStampBtn-new.html
                  C:\Program Files\FunWebProducts\Shared\Cache\MailStampBtn.html
                  C:\Program Files\FunWebProducts\Shared\Cache\MyFunCardsIMBtn.html
                  C:\Program Files\FunWebProducts\Shared\Cache\MyStationeryBtn-new.html
                  C:\Program Files\FunWebProducts\Shared\Cache\MyStationeryBtn.html
                  C:\Program Files\FunWebProducts\Shared\Cache\SmileyCentralBtn.html
                  C:\Program Files\internet explorer\iekey.dll
                  C:\Program Files\MyWebSearch
                  C:\Program Files\screensavers.com
                  C:\Program Files\screensavers.com\SSSInst\bin\iebyterange.xml
                  C:\Program Files\screensavers.com\SSSInst\bin\iebyterange.xml.backup
                  C:\Program Files\screensavers.com\SSSInst\bin\SSSUninst.exe
                  C:\Program Files\screensavers.com\Wallpaper\swpstart.exe
                  C:\Program Files\Starware316
                  C:\Program Files\Starware316\brand.bmp
                  C:\Program Files\Starware316\icons\star_16.ico
                  C:\Program Files\Starware316\Starware316Config.xml
                  C:\Program Files\Starware316\Starware316Uninstall.exe
                  C:\Program Files\WinIFixer
                  C:\Program Files\WinIFixer\MFC71.dll
                  C:\Program Files\WinIFixer\msvcp71.dll
                  C:\Program Files\WinIFixer\msvcr71.dll
                  C:\Program Files\WinIFixer\WinIFixerSkin.dll
                  C:\Program Files\zango
                  C:\Program Files\zango\bin\10.0.314.0\rb1C1.tmp\firefox\extensions\components\npclntax.xpt
                  C:\Program Files\zango\bin\10.0.314.0\rb1C1.tmp\firefox\extensions\install.rdf
                  C:\Program Files\zango\bin\10.0.314.0\rb1C1.tmp\firefox\extensions\plugins\npclntax_ZangoSA.dll
                  C:\WINDOWS\cookies.ini
                  C:\WINDOWS\pack.epk
                  D:\Autorun.inf

                  .
                  ((((((((((((((((((((((((((((( Fichiers créés du 2008-09-28 au 2008-10-31 ))))))))))))))))))))))))))))))))))))
                  .

                  2008-10-31 00:15 . 2008-10-31 01:01 <REP> d-------- C:\WINDOWS\LastGood.Tmp
                  2008-10-31 00:12 . 2008-10-31 00:12 <REP> d-------- C:\WINDOWS\system32\fr
                  2008-10-31 00:12 . 2008-10-31 00:12 <REP> d-------- C:\WINDOWS\system32\bits
                  2008-10-31 00:12 . 2008-10-31 00:12 <REP> d-------- C:\WINDOWS\l2schemas
                  2008-10-31 00:09 . 2008-10-31 00:12 <REP> d-------- C:\WINDOWS\ServicePackFiles
                  2008-10-31 00:04 . 2008-10-31 00:18 2,711 --a------ C:\WINDOWS\imsins.BAK
                  2008-10-31 00:00 . 2008-10-31 00:00 <REP> d-------- C:\WINDOWS\EHome
                  2008-10-30 22:50 . 2008-10-30 22:50 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Application Data\vlc
                  2008-10-30 19:44 . 2008-10-30 19:44 <REP> d-------- C:\Documents and Settings\Administrateur.KEVIN\Application Data\Malwarebytes
                  2008-10-30 19:42 . 2006-07-04 23:47 <REP> d-------- C:\Documents and Settings\Administrateur.KEVIN\WINDOWS
                  2008-10-30 19:42 . 2005-10-20 20:05 <REP> d-------- C:\Documents and Settings\Administrateur.KEVIN\Voisinage réseau
                  2008-10-30 19:42 . 2005-10-20 20:05 <REP> d-------- C:\Documents and Settings\Administrateur.KEVIN\Voisinage d'impression
                  2008-10-30 19:42 . 2005-10-26 23:35 <REP> d-------- C:\Documents and Settings\Administrateur.KEVIN\Modèles
                  2008-10-30 19:42 . 2005-10-26 23:35 <REP> d-------- C:\Documents and Settings\Administrateur.KEVIN\Mes documents
                  2008-10-30 19:42 . 2005-10-26 23:35 <REP> d-------- C:\Documents and Settings\Administrateur.KEVIN\Menu Démarrer
                  2008-10-30 19:42 . 2008-10-28 18:55 <REP> d-------- C:\Documents and Settings\Administrateur.KEVIN\Favoris
                  2008-10-30 19:42 . 2005-10-20 20:05 <REP> d-------- C:\Documents and Settings\Administrateur.KEVIN\Bureau
                  2008-10-30 19:42 . 2008-10-30 19:42 <REP> d-------- C:\Documents and Settings\Administrateur.KEVIN
                  2008-10-30 19:14 . 2008-10-30 19:14 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Application Data\HPQ
                  2008-10-30 19:06 . 2008-10-30 19:14 <REP> d-------- C:\Program Files\Malwarebytes' Anti-Malware
                  2008-10-30 19:06 . 2008-10-30 19:06 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Application Data\Malwarebytes
                  2008-10-30 19:06 . 2008-10-30 19:06 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
                  2008-10-30 19:06 . 2008-10-22 16:10 38,496 --a------ C:\WINDOWS\system32\drivers\mbamswissarmy.sys
                  2008-10-30 19:06 . 2008-10-22 16:10 15,504 --a------ C:\WINDOWS\system32\drivers\mbam.sys
                  2008-10-30 16:01 . 2008-10-30 16:01 <REP> d-------- C:\WINDOWS\system32\Kaspersky Lab
                  2008-10-29 22:04 . 2008-10-29 22:04 40 --a------ C:\WINDOWS\TSC.INI
                  2008-10-29 22:02 . 2008-10-29 22:02 <REP> d-------- C:\WINDOWS\AU_Temp
                  2008-10-29 22:02 . 2008-10-29 22:02 <REP> d-------- C:\WINDOWS\AU_Log
                  2008-10-29 22:02 . 2008-10-29 22:02 507,904 --a------ C:\WINDOWS\TMUPDATE.DLL
                  2008-10-29 22:02 . 2008-10-29 22:02 286,720 --a------ C:\WINDOWS\PATCH.EXE
                  2008-10-29 22:02 . 2008-10-29 22:02 69,689 --a------ C:\WINDOWS\UNZIP.DLL
                  2008-10-29 22:02 . 2008-10-29 22:02 170 --a------ C:\WINDOWS\GetServer.ini
                  2008-10-29 21:33 . 2008-10-29 22:07 <REP> d-------- C:\WINDOWS\BDOSCAN8
                  2008-10-29 20:57 . 2008-10-29 20:57 227 --a------ C:\WINDOWS\HP_CounterReport_Update_HPSU.ini
                  2008-10-29 20:54 . 2008-10-29 20:54 <REP> d-------- C:\SystemRoot
                  2008-10-29 20:22 . 2008-10-29 20:22 <REP> d-------- C:\WINDOWS\system32\LogFiles
                  2008-10-29 17:44 . 2008-10-29 17:44 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Application Data\Apple Computer
                  2008-10-29 17:43 . 2008-04-17 13:12 107,368 --a------ C:\WINDOWS\system32\GEARAspi.dll
                  2008-10-29 17:43 . 2008-04-17 13:12 15,464 --a------ C:\WINDOWS\system32\drivers\GEARAspiWDM.sys
                  2008-10-29 17:42 . 2008-10-29 22:50 <REP> d-------- C:\Program Files\iTunes
                  2008-10-29 17:42 . 2008-10-29 17:42 <REP> d-------- C:\Program Files\iPod
                  2008-10-29 17:42 . 2008-10-29 17:43 <REP> d-------- C:\Documents and Settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
                  2008-10-29 17:41 . 2008-10-29 17:41 <REP> d-------- C:\Program Files\Bonjour
                  2008-10-29 17:39 . 2008-10-29 17:40 <REP> d-------- C:\Program Files\QuickTime
                  2008-10-29 17:36 . 2008-10-29 17:39 <REP> d-------- C:\Program Files\Fichiers communs\Apple
                  2008-10-29 17:36 . 2008-10-29 17:36 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Apple
                  2008-10-29 14:59 . 2007-07-30 19:19 271,224 --a------ C:\WINDOWS\system32\mucltui.dll
                  2008-10-29 14:59 . 2007-07-30 19:19 207,736 --a------ C:\WINDOWS\system32\muweb.dll
                  2008-10-29 14:59 . 2007-07-30 19:18 30,072 --a------ C:\WINDOWS\system32\mucltui.dll.mui
                  2008-10-29 02:09 . 2008-10-29 02:09 <REP> d-------- C:\Program Files\Microsoft CAPICOM 2.1.0.2
                  2008-10-29 02:01 . 2008-10-29 02:01 <REP> d-------- C:\Program Files\MSXML 4.0
                  2008-10-29 01:26 . 2008-10-29 01:26 <REP> d-------- C:\Program Files\Spybot - Search & Destroy
                  2008-10-29 01:26 . 2008-10-30 16:02 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
                  2008-10-29 00:12 . 2008-06-14 18:33 272,768 --------- C:\WINDOWS\system32\drivers\bthport.sys
                  2008-10-29 00:12 . 2008-06-14 18:33 272,768 --------- C:\WINDOWS\system32\dllcache\bthport.sys
                  2008-10-29 00:11 . 2008-09-08 11:41 333,824 --------- C:\WINDOWS\system32\dllcache\srv.sys
                  2008-10-29 00:08 . 2008-09-15 16:26 1,846,528 --------- C:\WINDOWS\system32\dllcache\win32k.sys
                  2008-10-29 00:07 . 2008-08-14 14:23 2,191,232 --------- C:\WINDOWS\system32\dllcache\ntoskrnl.exe
                  2008-10-29 00:07 . 2008-08-14 14:23 2,147,328 --------- C:\WINDOWS\system32\dllcache\ntkrnlmp.exe
                  2008-10-29 00:07 . 2008-08-14 14:23 2,068,096 --------- C:\WINDOWS\system32\dllcache\ntkrnlpa.exe
                  2008-10-29 00:07 . 2008-08-14 14:23 2,025,984 --------- C:\WINDOWS\system32\dllcache\ntkrpamp.exe
                  2008-10-29 00:03 . 2008-05-08 15:02 203,136 --------- C:\WINDOWS\system32\dllcache\rmcast.sys
                  2008-10-29 00:01 . 2008-04-11 20:05 691,712 --------- C:\WINDOWS\system32\dllcache\inetcomm.dll
                  2008-10-28 23:54 . 2008-10-15 17:35 337,408 --------- C:\WINDOWS\system32\dllcache\netapi32.dll
                  2008-10-28 23:46 . 2008-10-28 23:46 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Application Data\Antivirus
                  2008-10-28 23:38 . 2008-10-28 23:38 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Application Data\Windows Live Writer
                  2008-10-28 22:54 . 2008-10-31 00:12 <REP> d-------- C:\WINDOWS\system32\fr-fr
                  2008-10-28 22:43 . 2008-10-03 18:12 6,066,176 --------- C:\WINDOWS\system32\dllcache\ieframe.dll
                  2008-10-28 22:43 . 2007-04-17 10:32 2,455,488 --------- C:\WINDOWS\system32\dllcache\ieapfltr.dat
                  2008-10-28 22:43 . 2007-03-08 06:10 1,048,576 --------- C:\WINDOWS\system32\dllcache\ieframe.dll.mui
                  2008-10-28 22:43 . 2008-08-26 09:11 459,264 --------- C:\WINDOWS\system32\dllcache\msfeeds.dll
                  2008-10-28 22:43 . 2008-08-26 09:11 383,488 --------- C:\WINDOWS\system32\dllcache\ieapfltr.dll
                  2008-10-28 22:43 . 2008-08-26 09:11 267,776 --------- C:\WINDOWS\system32\dllcache\iertutil.dll
                  2008-10-28 22:43 . 2008-08-26 09:11 63,488 --------- C:\WINDOWS\system32\dllcache\icardie.dll
                  2008-10-28 22:43 . 2008-08-26 09:11 52,224 --------- C:\WINDOWS\system32\dllcache\msfeedsbs.dll
                  2008-10-28 22:43 . 2008-08-25 09:38 13,824 --------- C:\WINDOWS\system32\dllcache\ieudinit.exe
                  2008-10-28 22:30 . 2008-10-28 22:30 <REP> d--hs---- C:\Documents and Settings\HP_Propriétaire\UserData
                  2008-10-28 22:30 . 2008-10-28 22:30 <REP> d--hs---- C:\Documents and Settings\HP_Propriétaire\UserData
                  2008-10-28 22:28 . 2008-10-28 23:37 <REP> d-------- C:\Program Files\Messenger Plus! Live
                  2008-10-28 22:19 . 2006-11-29 13:06 3,426,072 --a------ C:\WINDOWS\system32\d3dx9_32.dll
                  2008-10-28 22:14 . 2008-10-28 22:29 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Contacts
                  2008-10-28 22:14 . 2008-10-28 22:29 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Contacts
                  2008-10-28 22:13 . 2008-10-29 17:43 <REP> d----c--- C:\WINDOWS\system32\DRVSTORE
                  2008-10-28 22:12 . 2008-10-28 22:12 410,976 --a------ C:\WINDOWS\system32\deploytk.dll
                  2008-10-28 22:12 . 2008-10-28 22:12 73,728 --a------ C:\WINDOWS\system32\javacpl.cpl
                  2008-10-28 22:11 . 2008-10-29 16:53 <REP> d-------- C:\Program Files\NOS
                  2008-10-28 22:11 . 2008-10-29 16:54 <REP> d-------- C:\Documents and Settings\All Users\Application Data\NOS
                  2008-10-28 22:07 . 2008-10-28 22:07 <REP> d-------- C:\Program Files\CCleaner
                  2008-10-28 22:04 . 2008-10-28 22:06 <REP> d-------- C:\Program Files\Spybot
                  2008-10-28 22:02 . 2008-10-28 22:07 <REP> d--hsc--- C:\Program Files\Fichiers communs\WindowsLiveInstaller
                  2008-10-28 22:01 . 2008-10-28 22:20 <REP> d-------- C:\Program Files\Windows Live
                  2008-10-28 22:01 . 2008-10-28 22:01 <REP> d-------- C:\Documents and Settings\All Users\Application Data\WLInstaller
                  2008-10-28 21:54 . 2008-10-28 21:56 <REP> d-------- C:\Program Files\Orange HSS
                  2008-10-28 21:54 . 2008-10-28 21:54 <REP> d-------- C:\Program Files\Fichiers communs\France Telecom
                  2008-10-28 21:54 . 2007-07-31 14:57 65,536 --a------ C:\WINDOWS\system32\Autodial2000.dll
                  2008-10-28 21:54 . 2003-09-23 11:38 34,688 --a------ C:\WINDOWS\system32\pcampr5.sys
                  2008-10-28 21:54 . 2006-03-01 19:53 32,128 --a------ C:\WINDOWS\system32\pcandis5.sys
                  2008-10-28 20:11 . 2008-10-28 20:11 <REP> d-------- C:\Program Files\SAGEM WiFi manager
                  2008-10-28 20:11 . 2008-10-28 20:11 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Application Data\InstallShield
                  2008-10-28 20:11 . 2007-01-16 13:52 20,608 --a------ C:\WINDOWS\system32\drivers\BRGSp50.sys
                  2008-10-28 20:11 . 2007-01-16 13:52 17,664 --a------ C:\WINDOWS\system32\drivers\ZDPSp50.sys
                  2008-10-28 19:50 . 2007-01-10 10:14 450,560 --a------ C:\WINDOWS\system32\drivers\WlanBZXP.sys
                  2008-10-28 19:50 . 2005-06-17 10:26 114,688 --a------ C:\WINDOWS\system32\WLANUTL.dll
                  2008-10-28 19:50 . 2006-03-01 19:53 94,208 --a------ C:\WINDOWS\system32\w32n50.dll
                  2008-10-28 18:54 . 2008-10-28 18:54 1,840 -rahs---- C:\WINDOWS\system32\drivers\103C_HP_CPC_RB056AA-ABF s7516.fr_YC_0Pavi_QCNH629_E63FRheBLA1_48_IOpal_SASUSTek Computer INC._V1.02_B3.04_T060314_WXH2_L40C_M959_J160_7AMD_8Sempron_91.79_#060922_N10EC8139_Z_G10025954_OTSSTcorp CD DVDW TS-H652L.MRK
                  2008-10-28 18:53 . 2006-07-04 23:47 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\WINDOWS
                  2008-10-28 18:53 . 2006-07-04 23:47 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\WINDOWS
                  2008-10-28 18:53 . 2005-10-20 20:05 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Voisinage réseau
                  2008-10-28 18:53 . 2005-10-20 20:05 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Voisinage réseau
                  2008-10-28 18:53 . 2005-10-20 20:05 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Voisinage d'impression
                  2008-10-28 18:53 . 2005-10-20 20:05 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Voisinage d'impression
                  2008-10-28 18:53 . 2005-10-26 23:35 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Modèles
                  2008-10-28 18:53 . 2005-10-26 23:35 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Modèles
                  2008-10-28 18:53 . 2008-10-29 15:05 <REP> dr------- C:\Documents and Settings\HP_Propriétaire\Mes documents
                  2008-10-28 18:53 . 2008-10-29 15:05 <REP> dr------- C:\Documents and Settings\HP_Propriétaire\Mes documents
                  2008-10-28 18:53 . 2008-10-29 01:49 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Menu Démarrer
                  2008-10-28 18:53 . 2008-10-29 01:49 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Menu Démarrer
                  2008-10-28 18:53 . 2008-10-28 23:49 <REP> dr------- C:\Documents and Settings\HP_Propriétaire\Favoris
                  2008-10-28 18:53 . 2008-10-28 23:49 <REP> dr------- C:\Documents and Settings\HP_Propriétaire\Favoris
                  2008-10-28 18:53 . 2008-10-31 01:12 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Bureau
                  2008-10-28 18:53 . 2008-10-31 01:12 <REP> d-------- C:\Documents and Settings\HP_Propriétaire\Bureau
                  2008-10-28 18:53 . 2008-10-29 17:04 <REP> d-------- C:\Documents and Settings\HP_Propriétaire
                  2008-10-28 18:52 . 2006-07-04 23:47 <REP> d-------- C:\WINDOWS\system32\config\systemprofile\WINDOWS
                  2008-10-28 18:48 . 2001-08-23 17:04 12,288 --a------ C:\WINDOWS\system32\drivers\mouhid.sys
                  2008-10-28 18:48 . 2008-04-13 19:45 10,368 --a------ C:\WINDOWS\system32\drivers\hidusb.sys

                  .
                  (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
                  .
                  2008-10-29 20:03 --------- d-----w C:\Program Files\HP
                  2008-10-29 20:03 --------- d-----w C:\Program Files\Hewlett-Packard
                  2008-10-29 16:38 --------- d-----w C:\Program Files\Apple Software Update
                  2008-10-29 14:05 --------- d-----w C:\Program Files\Fichiers communs\Adobe
                  2008-10-28 22:51 --------- d-----w C:\Program Files\PC-Doctor 5 for Windows
                  2008-10-28 22:48 --------- d-----w C:\Program Files\Google
                  2008-10-28 22:37 --------- d-----w C:\Program Files\MSN Messenger
                  2008-10-28 21:12 --------- d-----w C:\Program Files\Java
                  2008-10-28 19:11 --------- d--h--w C:\Program Files\InstallShield Installation Information
                  2008-10-28 18:26 --------- d-----w C:\Program Files\Fichiers communs\Symantec Shared
                  2008-10-28 18:26 --------- d-----w C:\Documents and Settings\All Users\Application Data\Symantec
                  2008-09-15 15:26 1,846,528 ----a-w C:\WINDOWS\system32\win32k.sys
                  2008-09-08 10:41 333,824 ----a-w C:\WINDOWS\system32\drivers\srv.sys
                  2008-08-29 09:18 87,336 ----a-w C:\WINDOWS\system32\dns-sd.exe
                  2008-08-29 08:53 61,440 ----a-w C:\WINDOWS\system32\dnssd.dll
                  2008-08-27 13:41 3,593,216 ------w C:\WINDOWS\system32\dllcache\mshtml.dll
                  2008-08-25 08:39 70,656 ------w C:\WINDOWS\system32\dllcache\ie4uinit.exe
                  2008-08-23 05:56 635,848 ------w C:\WINDOWS\system32\dllcache\iexplore.exe
                  2008-08-23 05:54 161,792 ------w C:\WINDOWS\system32\dllcache\ieakui.dll
                  2008-08-14 13:23 2,191,232 ----a-w C:\WINDOWS\system32\ntoskrnl.exe
                  2008-08-14 13:23 2,068,096 ----a-w C:\WINDOWS\system32\ntkrnlpa.exe
                  2008-08-14 10:04 138,496 ------w C:\WINDOWS\system32\dllcache\afd.sys
                  2008-07-07 20:28 253,952 ----a-w C:\WINDOWS\system32\es.dll
                  2008-07-07 20:28 253,952 ------w C:\WINDOWS\system32\dllcache\es.dll
                  .

                  ((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
                  .
                  .
                  *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
                  REGEDIT4

                  [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                  "MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" [2007-10-18 5724184]
                  "swg"="C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe" [2008-10-28 171448]
                  "SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-07-07 2156368]
                  "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-14 15360]

                  [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                  "HPHUPD08"="c:\Program Files\HP\Digital Imaging\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\hphupd08.exe" [2005-06-02 49152]
                  "PCMService"="C:\Program Files\CyberLink\PowerCinema\PCMService.exe" [2006-02-25 147456]
                  "Recguard"="C:\WINDOWS\SMINST\RECGUARD.EXE" [2005-07-22 237568]
                  "HPBootOp"="C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" [2006-02-15 249856]
                  "Reminder"="C:\Windows\Creator\Remind_XP.exe" [2004-12-14 663552]
                  "HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2007-05-08 54840]
                  "SystrayORAHSS"="C:\Program Files\Orange HSS\Systray\SystrayApp.exe" [2007-07-24 94208]
                  "ORAHSSSessionManager"="C:\Program Files\Orange HSS\SessionManager\SessionManager.exe" [2007-07-24 102400]
                  "SunJavaUpdateSched"="C:\Program Files\Java\jre6\bin\jusched.exe" [2008-10-28 136600]
                  "avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2008-07-19 78008]
                  "Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]
                  "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2008-09-06 413696]
                  "KBD"="C:\HP\KBD\KBD.EXE" [2005-02-02 61440]

                  C:\Documents and Settings\Administrateur\Menu D‚marrer\Programmes\D‚marrage\
                  Pin.lnk - C:\hp\bin\CLOAKER.EXE [2006-07-04 27136]

                  C:\Documents and Settings\Administrateur.KEVIN\Menu D‚marrer\Programmes\D‚marrage\
                  Pin.lnk - C:\hp\bin\CLOAKER.EXE [2006-07-04 27136]

                  C:\Documents and Settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
                  HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [2005-12-15 282624]

                  [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
                  "EnableFirewall"= 0 (0x0)

                  [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
                  "%windir%\\system32\\sessmgr.exe"=
                  "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
                  "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
                  "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
                  "C:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"=
                  "C:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
                  "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
                  "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
                  "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqCopy.exe"=
                  "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpfccopy.exe"=
                  "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=
                  "C:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqPhUnl.exe"=
                  "C:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqDIA.exe"=
                  "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
                  "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqnrs08.exe"=
                  "C:\\Program Files\\CyberLink\\PowerCinema\\PowerCinema.exe"=
                  "C:\\Program Files\\CyberLink\\PowerCinema\\PCMService.exe"=
                  "C:\\Program Files\\Orange HSS\\Connectivity\\ConnectivityManager.exe"=
                  "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
                  "C:\\Program Files\\Bonjour\\mDNSResponder.exe"=
                  "C:\\Program Files\\iTunes\\iTunes.exe"=
                  "C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
                  "C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=

                  R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-07-19 78416]
                  R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-07-19 20560]
                  R2 JavaQuickStarterService;Java Quick Starter;C:\Program Files\Java\jre6\bin\jqs.exe [2008-10-28 152984]
                  R3 SG762_XP;SAGEM 802.11g XG762 1211B Driver;C:\WINDOWS\system32\DRIVERS\WlanBZXP.sys [2007-01-10 450560]
                  R3 USBSTOR;Pilote de stockage de masse USB;C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
                  S3 WN5301;LIteon Wireless PCI Network Adapter Service;C:\WINDOWS\system32\DRIVERS\wn5301.sys [2005-10-05 468768]
                  S3 ZDCndis5;ZDCndis5 Protocol Driver;C:\WINDOWS\system32\ZDCndis5.SYS [ ]

                  *Newly Created Service* - CATCHME
                  *Newly Created Service* - PROCEXP90
                  .
                  Contenu du dossier 'Tâches planifiées'

                  2008-10-29 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
                  - C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 12:34]

                  2008-05-09 C:\WINDOWS\Tasks\Norton Security Scan.job
                  - C:\Program Files\Norton Security Scan\Nss.exe [2007-09-18 23:42]

                  2008-10-30 C:\WINDOWS\Tasks\Vérifier les mises à jour de Windows Live Toolbar.job
                  - C:\Program Files\Windows Live Toolbar\MSNTBUP.EXE [2007-10-19 11:20]

                  2008-10-30 C:\WINDOWS\Tasks\WebReg deskjet f300 series.job
                  - C:\Program Files\HP\Digital Imaging\bin\hpqwrg.exe [2006-06-07 16:45]
                  .
                  - - - - ORPHELINS SUPPRIMES - - - -

                  HKLM-Run-PCDrProfiler - (no file)

                  .
                  ------- Examen supplémentaire -------
                  .
                  FireFox -: Profile - C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\rur9qtin.default\
                  FF -: plugin - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
                  FF -: plugin - C:\Program Files\Java\jre6\bin\new_plugin\npdeploytk.dll
                  FF -: plugin - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
                  .

                  **************************************************************************

                  catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
                  Rootkit scan 2008-10-31 01:20:29
                  Windows 5.1.2600 Service Pack 3 NTFS

                  Recherche de processus cachés ...

                  Recherche d'éléments en démarrage automatique cachés ...

                  Recherche de fichiers cachés ...

                  Scan terminé avec succès
                  Fichiers cachés: 0

                  **************************************************************************
                  .
                  Heure de fin: 2008-10-31 1:21:20
                  ComboFix-quarantined-files.txt 2008-10-31 00:21:16

                  Avant-CF: 38 151 254 016 octets libres
                  Après-CF: 38,161,739,776 octets libres

                  333 --- E O F --- 2008-10-31 00:01:38
                  0
                  1. ecoutes tu mes questions? ,il y a malwarebyte qui te trouve quelquechose , si tu ne cliques par sur supprimer cela va rester. car combo fix te retrouve aussi plus ou moin l infection entre autre la meme chose .

                    refais malwarebyte comme indique, et colle le rapport une fois tout supprimer , regarde le tuto si tu ne sais pas .
                    0
                    1. Voila comme promis le nouveau rapport malwarebyte

                      Malwarebytes' Anti-Malware 1.30
                      Version de la base de données: 1340
                      Windows 5.1.2600 Service Pack 3

                      31/10/2008 20:51:25
                      mbam-log-2008-10-31 (20-51-25).txt

                      Type de recherche: Examen complet (C:\|D:\|)
                      Eléments examinés: 158634
                      Temps écoulé: 2 hour(s), 51 minute(s), 16 second(s)

                      Processus mémoire infecté(s): 0
                      Module(s) mémoire infecté(s): 0
                      Clé(s) du Registre infectée(s): 0
                      Valeur(s) du Registre infectée(s): 0
                      Elément(s) de données du Registre infecté(s): 0
                      Dossier(s) infecté(s): 3
                      Fichier(s) infecté(s): 30

                      Processus mémoire infecté(s):
                      (Aucun élément nuisible détecté)

                      Module(s) mémoire infecté(s):
                      (Aucun élément nuisible détecté)

                      Clé(s) du Registre infectée(s):
                      (Aucun élément nuisible détecté)

                      Valeur(s) du Registre infectée(s):
                      (Aucun élément nuisible détecté)

                      Elément(s) de données du Registre infecté(s):
                      (Aucun élément nuisible détecté)

                      Dossier(s) infecté(s):
                      C:\Documents and Settings\All Users\Application Data\SalesMon (Rogue.Multiple) -> Quarantined and deleted successfully.
                      C:\Documents and Settings\All Users\Application Data\SalesMon\Data (Rogue.Multiple) -> Quarantined and deleted successfully.
                      C:\Documents and Settings\HP_Propriétaire\Application Data\Antivirus (Rogue.Antivirus2008) -> Quarantined and deleted successfully.

                      Fichier(s) infecté(s):
                      C:\Program Files\MSN Messenger\msimg32.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\Program Files\MSN Messenger\riched20.dll (Adware.MyWeb.FunWeb) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0003985.exe (Rogue.WinIFixer) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0003990.dll (Adware.Hotbar) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004016.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004017.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004018.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004019.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004021.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004022.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004023.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004024.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004025.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004026.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004027.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004028.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004029.SCR (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004030.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004031.DLL (Adware.MyWeb.FunWeb) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004032.EXE (Adware.MyWeb.FunWeb) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004033.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004034.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004036.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004037.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004038.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004041.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004043.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004044.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004046.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP17\A0004047.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                      0