Virus ou pas

brams7777 Messages postés 123 Date d'inscription   Statut Membre Dernière intervention   -  
 Utilisateur anonyme -
Bonjour,

les amis (ies) j ai l impression que mon pc portable de maque packard bell est infecté par un virus, il y a different symptomes qui s'opere depuis quelque jours!

ralentissement,bug,mets du temps a s'allumer!

merci de votre aide pour savoir si j ai ete infecté!
A voir également:

5 réponses

Utilisateur anonyme
 
bonsoir

Commence par poster un rapport HijackThis stp,
>Télécharge HiJackThis : http://www.commentcamarche.net/telecharger/telecharger 159 hijackthis
- Lance le programme, puis sélectionne < do a system scan and save a logfile >
- Enregistre le rapport sur ton bureau.
Et envoie, par copier/coller, ton log Hijackthis sur le forum,


A+

Tuto : si problème : http://perso.orange.fr/rginformatique/section%20virus/demohijack.htm
0
ljm972 Messages postés 255 Date d'inscription   Statut Membre Dernière intervention   29
 
tu as quoi comme antivirus ?
0
brams7777 Messages postés 123 Date d'inscription   Statut Membre Dernière intervention   1
 
re,
tout abord merci de ton aide,

j ai kaspersky internet security

voila le rapport:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:07:07, on 28/11/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\conime.exe
C:\Program Files\BitComet\BitComet.exe
C:\Users\brams\Desktop\HijackThis.exe
c:\program files\google\googletoolbar1user.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://actus.sfr.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer avec Club-Internet
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: AddTask Class - {24F06550-65E3-4D1C-8CFE-839C296B5530} - (no file)
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Google\Google_BAE\BAE.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-18\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'Default user')
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Ajouter à Kaspersky Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~2.0_0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~2.0_0\bin\ssv.dll
O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing)
O13 - Gopher Prefix:
O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
O16 - DPF: {2357B3CF-7F8D-4451-8D81-FD6097610AEE} - http://activex.camfrogweb.com/advanced/2.0.2.20/cfweb_activex.camfrogweb.com-advanced-2.0.2.20_instmodule.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/VistaMSNPUpldfr-fr.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - https://www.touslesdrivers.com/index.php?v_page=29
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game06.zylom.com/activex/zylomgamesplayer.cab
O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697514} (NsvPlayX Control) - http://www.nullsoft.com/nsv/embed/nsvplayx_vp3_mp3.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS9\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS10\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS11\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS12\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS13\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS14\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS15\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS16\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS17\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS18\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS19\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS20\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS21\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS22\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS23\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS24\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS25\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS26\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS27\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS28\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS29\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS30\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS31\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS32\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS33\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS34\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS35\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS36\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS37\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS38\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS39\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS40\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS41\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS42\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll,
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Unknown owner - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE (file missing)
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: @%SystemRoot%\System32\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software GmbH - C:\Windows\System32\TuneUpDefragService.exe
0
ljm972 Messages postés 255 Date d'inscription   Statut Membre Dernière intervention   29
 
tu n'as pas trouvé le virus, essai un autre antivirus
0
brams7777 Messages postés 123 Date d'inscription   Statut Membre Dernière intervention   1
 
re,

en fait kis tout a l heure m averti que winrar etait dangereux! jai fais une analyse complete avec kis
et j aimerai avoir confirmation que mon pc n est pas en danger je ne suis pas expert en maintenance informatique!

donc selon toi y a t il un ou plusieurs virus ?

merci
0
ljm972 Messages postés 255 Date d'inscription   Statut Membre Dernière intervention   29
 
je me deconnecte, test avast
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Utilisateur anonyme
 
tu as ASK TOOLBAR infectee...
fais ceci

Télécharge Toolbar-S&D (Team IDN) sur ton Bureau.
https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cqJWPphpudyTqv7TRo5RQ3nm_Sx8JluVMO59X5E9cyE3j3LqKlmStIqiDqJdIgMJLi7MXn2nKVajQfoWuVvZZ2wIx_vkqO4k4P0K9jh-ra9jaKPXdZcoaVF2UqJZNH8ubL_42uIwh6f35xJ2GJMuzddVj2Qth1DgZ839lxEIFGkgWz3TdfvNMy-YtxfA3gqBUrj4U4LFeAPiWr3ClmjIP0t_Xs5PQ%3D%3D&attredirects=2

* Lance l'installation du programme en exécutant le fichier téléchargé.
* Double-clique maintenant sur le raccourci de Toolbar-S&D.
* Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.
* Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
* Poste le rapport généré. (C:\TB.txt)

a+
0
brams7777 Messages postés 123 Date d'inscription   Statut Membre Dernière intervention   1
 
re,

merci de ton aide Archet9 voila le rapport:


-----------\\ ToolBar S&D 1.2.5 XP/Vista

Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU T5450 @ 1.66GHz )
BIOS : Ver 1.00PARTTBL
USER : brams ( Administrator )
BOOT : Normal boot
Antivirus : Kaspersky Internet Security 8.0.0.357 (Not Activated)
Firewall : Kaspersky Internet Security 8.0.0.357 (Activated)
C:\ (Local Disk) - NTFS - Total:141 Go (Free:88 Go)
D:\ (CD or DVD)
E:\ (CD or DVD)

"C:\ToolBar SD" ( MAJ : 20-11-2008|20:25 )
Option : [1] ( 28/11/2008|18:37 )

[ UAC => 1 ]

-----------\\ Recherche de Fichiers / Dossiers ...

C:\Program Files\AskBarDis
C:\Program Files\AskBarDis\bar
C:\Program Files\AskBarDis\unins000.dat
C:\Program Files\AskBarDis\unins000.exe
C:\Program Files\AskBarDis\bar\bin
C:\Program Files\AskBarDis\bar\Settings
C:\Program Files\AskBarDis\bar\bin\askBar.dll
C:\Program Files\AskBarDis\bar\bin\askPopStp.dll
C:\Program Files\AskBarDis\bar\bin\psvince.dll
C:\Program Files\AskBarDis\bar\Settings\config.dat
C:\Program Files\AskBarDis\bar\Settings\config.dat.bak
C:\Program Files\Multi_Media

-----------\\ [..\Internet Explorer\Main]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\Windows\\system32\\blank.htm"
"Start Page"="https://actus.sfr.fr"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Url"="https://www.msn.com/fr-fr/actualite/"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"


--------------------\\ Recherche d'autres infections

--------------------\\ Cracks & Keygens ..

C:\Users\brams\CrackDown Store
C:\Users\brams\AppData\Local\VirtualStore\Program Files\BitComet\torrents\Ashampoo.Photo.Optimizer.v2.0.Multilangages.Incl-Crack.[by ArocK].torrent
C:\Users\brams\AppData\Local\VirtualStore\Program Files\BitComet\torrents\FIFA.09.Crackfix-RELOADED.torrent
C:\Users\brams\AppData\Local\VirtualStore\Program Files\BitComet\torrents\FIFA.09.Crackfix-RELOADED.xml
C:\Users\brams\AppData\Local\VirtualStore\Program Files\BitComet\torrents\Nero 8.3.2.1 fr + keygen.torrent
C:\Users\brams\AppData\Local\VirtualStore\Program Files\BitComet\torrents\Nero 8.3.2.1 fr + keygen.xml
C:\Users\brams\AppData\Local\VirtualStore\Program Files\BitComet\torrents\PES2008 + key + crack + update.iso.torrent
C:\Users\brams\CrackDown Store\Desktop.ini
C:\Users\brams\CrackDown Store\[microsoft office 2007] Serials
C:\Users\brams\CrackDown Store\[microsoft office home and student 2007] Serials
C:\Users\brams\CrackDown Store\[microsoft office 2007] Serials\['microsoft office 2007'] SN.txt
C:\Users\brams\CrackDown Store\[microsoft office home and student 2007] Serials\['microsoft office home and student 2007'] SN.txt
C:\Users\brams\Downloads\IsoBuster Pro 2.2.0.1 Final + Keygen
C:\Users\brams\Downloads\IsoBuster Pro 2.2.0.1 Final + Keygen\isobuster-box.gif
C:\Users\brams\Downloads\IsoBuster Pro 2.2.0.1 Final + Keygen\isobuster_all_lang.exe
C:\Users\brams\Downloads\IsoBuster Pro 2.2.0.1 Final + Keygen\keygen.exe
C:\Users\brams\Favorites\Bit Torrent moteur de recherche eMule BitTorrent Usenet Cracks T‚l‚charger video divx.url
C:\Users\brams\Music\Rockin' Squat - Too Hot For TV-2007-BY POPOF\05 Crack game.mp3


[ UAC => 1 ]


1 - "C:\ToolBar SD\TB_1.txt" - 28/11/2008|18:39 - Option : [1]

-----------\\ Fin du rapport a 18:39:33,65
0
Utilisateur anonyme > brams7777 Messages postés 123 Date d'inscription   Statut Membre Dernière intervention  
 
reprends toolbar s&d et lance l option 2 stp

colle le rapport...suivit d 1 nouveau scan hijack.

a+
0
brams7777 Messages postés 123 Date d'inscription   Statut Membre Dernière intervention   1 > Utilisateur anonyme
 
re,

voila le rapport toolbard:


-----------\\ ToolBar S&D 1.2.5 XP/Vista

Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU T5450 @ 1.66GHz )
BIOS : Ver 1.00PARTTBL
USER : brams ( Administrator )
BOOT : Normal boot
Antivirus : Kaspersky Internet Security 8.0.0.357 (Not Activated)
Firewall : Kaspersky Internet Security 8.0.0.357 (Activated)
C:\ (Local Disk) - NTFS - Total:141 Go (Free:88 Go)
D:\ (CD or DVD)
E:\ (CD or DVD)

"C:\ToolBar SD" ( MAJ : 20-11-2008|20:25 )
Option : [2] ( 28/11/2008|19:00 )

[ UAC => 1 ]

-----------\\ SUPPRESSION

Supprime! - C:\Program Files\AskBarDis\bar
Supprime! - C:\Program Files\AskBarDis\unins000.dat
Supprime! - C:\Program Files\AskBarDis\unins000.exe
Supprime! - C:\Program Files\AskBarDis
Supprime! - C:\Program Files\Multi_Media

-----------\\ Recherche de Fichiers / Dossiers ...


-----------\\ [..\Internet Explorer\Main]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\Windows\\system32\\blank.htm"
"Start Page"="https://actus.sfr.fr"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Url"="https://www.msn.com/fr-fr/actualite/"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.msn.com/fr-fr/"
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"


--------------------\\ Recherche d'autres infections

--------------------\\ Cracks & Keygens ..

C:\Users\brams\CrackDown Store
C:\Users\brams\AppData\Local\VirtualStore\Program Files\BitComet\torrents\Ashampoo.Photo.Optimizer.v2.0.Multilangages.Incl-Crack.[by ArocK].torrent
C:\Users\brams\AppData\Local\VirtualStore\Program Files\BitComet\torrents\FIFA.09.Crackfix-RELOADED.torrent
C:\Users\brams\AppData\Local\VirtualStore\Program Files\BitComet\torrents\FIFA.09.Crackfix-RELOADED.xml
C:\Users\brams\AppData\Local\VirtualStore\Program Files\BitComet\torrents\Nero 8.3.2.1 fr + keygen.torrent
C:\Users\brams\AppData\Local\VirtualStore\Program Files\BitComet\torrents\Nero 8.3.2.1 fr + keygen.xml
C:\Users\brams\AppData\Local\VirtualStore\Program Files\BitComet\torrents\PES2008 + key + crack + update.iso.torrent
C:\Users\brams\CrackDown Store\Desktop.ini
C:\Users\brams\CrackDown Store\[microsoft office 2007] Serials
C:\Users\brams\CrackDown Store\[microsoft office home and student 2007] Serials
C:\Users\brams\CrackDown Store\[microsoft office 2007] Serials\['microsoft office 2007'] SN.txt
C:\Users\brams\CrackDown Store\[microsoft office home and student 2007] Serials\['microsoft office home and student 2007'] SN.txt
C:\Users\brams\Downloads\IsoBuster Pro 2.2.0.1 Final + Keygen
C:\Users\brams\Downloads\IsoBuster Pro 2.2.0.1 Final + Keygen\isobuster-box.gif
C:\Users\brams\Downloads\IsoBuster Pro 2.2.0.1 Final + Keygen\isobuster_all_lang.exe
C:\Users\brams\Downloads\IsoBuster Pro 2.2.0.1 Final + Keygen\keygen.exe
C:\Users\brams\Favorites\Bit Torrent moteur de recherche eMule BitTorrent Usenet Cracks T‚l‚charger video divx.url
C:\Users\brams\Music\Rockin' Squat - Too Hot For TV-2007-BY POPOF\05 Crack game.mp3


[ UAC => 1 ]


1 - "C:\ToolBar SD\TB_1.txt" - 28/11/2008|18:39 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 28/11/2008|19:02 - Option : [2]

-----------\\ Fin du rapport a 19:02:57,19

et le scan hijackthis:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:04:35, on 28/11/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Windows\system32\conime.exe
C:\PROGRA~1\MICROS~3\Office12\OUTLOOK.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\brams\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://actus.sfr.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer avec Club-Internet
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AddTask Class - {24F06550-65E3-4D1C-8CFE-839C296B5530} - (no file)
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Google\Google_BAE\BAE.dll
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-18\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'Default user')
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Ajouter à Kaspersky Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~2.0_0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~2.0_0\bin\ssv.dll
O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing)
O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU)
O13 - Gopher Prefix:
O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
O16 - DPF: {2357B3CF-7F8D-4451-8D81-FD6097610AEE} - http://activex.camfrogweb.com/advanced/2.0.2.20/cfweb_activex.camfrogweb.com-advanced-2.0.2.20_instmodule.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/VistaMSNPUpldfr-fr.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - https://www.touslesdrivers.com/index.php?v_page=29
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game06.zylom.com/activex/zylomgamesplayer.cab
O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697514} (NsvPlayX Control) - http://www.nullsoft.com/nsv/embed/nsvplayx_vp3_mp3.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS9\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS10\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS11\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS12\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS13\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS14\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS15\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS16\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS17\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS18\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS19\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS20\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS21\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS22\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS23\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS24\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS25\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS26\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS27\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS28\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS29\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS30\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS31\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS32\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS33\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS34\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS35\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS36\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS37\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS38\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS39\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS40\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS41\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS42\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll,
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Unknown owner - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE (file missing)
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: @%SystemRoot%\System32\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software GmbH - C:\Windows\System32\TuneUpDefragService.exe
0
Utilisateur anonyme > brams7777 Messages postés 123 Date d'inscription   Statut Membre Dernière intervention  
 
compte tenu de ts les cracks............!!!!!!!!!!!!!!!!!!!!
il vaut mieux faire ceci:

Telecharge malwarebytes + tutoriel :

-> https://www.malekal.com/tutoriel-malwarebyte-anti-malware/

Tu l´installes; le programme va se mettre automatiquement a jour.

Une fois a jour, le programme va se lancer; click sur l´onglet parametre, et coche la case : "Arreter internet explorer pendant la suppression".

Click maintenant sur l´onglet recherche et coche la case : "executer un examun complet".

Puis click sur "rechercher".

Laisse le scanner le pc...

Si des elements on ete trouvés > click sur supprimer la selection.

si il t´es demandé de redemarrer > click sur "yes".

A la fin un rapport va s´ouvrir; sauvegarde le de maniere a le retrouver en vu de le poster sur le forum.

Copie et colle le rapport stp.

a+
0
brams7777 Messages postés 123 Date d'inscription   Statut Membre Dernière intervention   1 > Utilisateur anonyme
 
re,
voila le rapport:

Malwarebytes' Anti-Malware 1.30
Version de la base de données: 1433
Windows 6.0.6001 Service Pack 1

28/11/2008 21:00:53
mbam-log-2008-11-28 (21-00-53).txt

Type de recherche: Examen complet (C:\|)
Eléments examinés: 173167
Temps écoulé: 1 hour(s), 28 minute(s), 18 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 3
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c80b7ff6-ce60-4079-935e-520c045c30a6} (Adware.EGDAccess) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\dslcnnct (Trojan.Vundo) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
0