Ad-aware

Résolu
possedant win xp ed famill 2002.tous les jours je lance une verif du systeme est ce normal? merci d'avance gallrill

36 réponses

Résumé de la discussion

Sur Windows XP Édition Familiale 2002, lancer une vérification du système chaque jour est évoqué comme problématique et nécessite des mesures de nettoyage pour sécuriser le poste. Des conseils préconisent de désinstaller ShopperReports et HbTools via Ajout/Suppression, puis d’utiliser HijackThis pour repérer et corriger les entrées suspectes, et de réaliser un scan en ligne avec Kaspersky et d’en partager le rapport. D'autres répondants proposent CCleaner et CleanUp!, puis SmitfraudFix pour générer un rapport, guider l'intervention et évaluer les éléments retirés, tout en recommandant des sauvegardes et une vérification finale. En outre, des discussions évoquent l'utilisation d'outils comme Ad-Aware, Spybot et Avast et soulignent l'importance d'orchestrer correctement les protections et de suivre l'évolution des infections.

Bobot (l’IA à votre service)
  1. Contributeur
    Je n'en doute point ;)

    Bonne soirée et à bientôt ;)

    ++
    1. merci de toute cette matiere kristopher vous m'avez donne de quoi m'occuper quand au compliments ils etaient vraiment sincere ,j'espere que vous n'en doutez pas merci de tous ces renseignements et bonne soiree a+
      gallrill
      1. Contributeur
        Bonsoir Mr. gallrill,

        Tout d'abord, merci pour ces coups d'encensoir ;)

        Si vous voulez garder un PC en bonne santé, commencez par installer un vrai pare-feu.
        Sachez que le firewall de Windows XP donne une piètre protection.
        Heureusement, il existe des firewalls gratuits et performants.
        Par exemple, la version GRATUITE de ZoneAlarm® (cf. mon dernier message).

        Aussi, je rajouterai Windows Defender à votre liste d'Antispywares :
        https://www.01net.com/telecharger/windows/Securite/anti-spyware/fiches/31195.html

        Note : CounterSpy, mentionné précédemment est encore plus efficace, mais il reste toutefois payant - à vous de voir.

        Au niveau de la fréquence d'utilisation des logiciels de sécurité, je scanne mon PC avec mon antivirus 1 fois par semaine et 2 fois par semaine avec mon antispyware.

        À cela viennent s'ajouter les scan en ligne, tout aussi important.

        On pourrait citer notamment :

        https://www.bitdefender.com/toolbox/
        https://www.kaspersky.fr/downloads
        https://www.pandasecurity.com/?ref=www.pandasoftware.com/activescan/fr/activescan_principal.htm

        Note : Pour ce dernier, il peut y avoir un problème quand on utilise l'antivirus Avast. Je vous préconise donc (si vous effectuez le scan en ligne avec Panda) de désactiver temporairement Avast, juste le temps du scan en ligne.

        Cet antivirus en ligne est excellent car il désinfecte non seulement les virus, vers et trojans mais il localise également les spywares et autres risques de sécurité (sans toutefois les désinfecter dans la version non payante).

        Je pense que vous avez compris maintenant ;)

        J'oubliais, pour mieux comprendre les arcanes de l'Informatique, vous pouvez consulter ce lien :
        https://sebsauvage.net/safehex.html

        Bonne soirée ;)

        ++
        1. je te remercie kristopher pour ton aide precieuse et ta disponibilite j'aimerai en savoir autant que toi mais en quelques messages tu m'as appris beaucoup chapeau l'artiste
          merci gallrill
          1. cher kristopher
            j'ai fait le scan kasperski rien de mauvais n'a ete detecte je pense que mon orri est sein.possedant le pare feu windows avast ad aware et spy bot peut tu m'indiquer si il y ades taches planifiees à faire sachant que nous avons trois comptes a la maison ma femme mon fils et moi dans l'attente de te lire merci pour ta gentillesse
            gallrill
            1. Contributeur
              Re,

              Si tu n'arrives pas à effectuer le rapport même en s'aidant de tous ces tutos, alors on laisse tomber.

              Pour le scan avec Kaspersky en ligne, tu lances Internet Explorer et tu rentres l'adresse :
              https://www.kaspersky.fr/downloads

              Ensuite, tu acceptes obligatoirement l'ActiveX.

              Puis, tu attends que les mises à jour s'effectuent, et à ce moment là le "Next" ne devrait plus être grisé.

              Réessaie et si ça ne marche pas, on va tester un autres antivirus en ligne.

              Enfin, très important, remplace le pare-feu de Windows XP par un plus efficace car celui-là ne sert à rien...

              Par exemple, la version GRATUITE de ZoneAlarm® : https://www.zonealarm.com
              Tutorial là : http://forum.telecharger.01net.com/forum/high-tech/PRODUITS/Questions-techniques/zonealarm-tutorial-sujet_169658_1.htm

              Au fait
              , je ne suis pas tout le temps dispo. donc Marie par exemple peut très bien te fournir des réponses, il suffit de lui demander.

              ++
              1. cher kristopher j'espere que tu n'as pas de soucie tu vois moi je bloque betement sur le choix du 1 danssmitfradfix je n'arrive pas a faire ce rapport et a l'envoyer sur le forum
                a+ gallrill
                1. J'avais quand mm compris, mais soit patient.........
                  Bon courage
                  A+
                  1. Contributeur
                    Tu sais ^^Marie^^ je ne suis pas le seul "bénévole" il y en a d'autre aussi comme... Toi par exemple.

                    Donc, rien ne t'empêche de fournir une réponse à gallrill.

                    ++
                2. je vous salut marie
                  c'etait sans arriere pensee je me suis dit que peut etre bloquant sur un probleme simple kristopher avait peut etre envi de souffler
                  gallrill
                  1. 'lu,

                    Ne créez pas plusieurs postes, prenez la patience d'attendre la réponse,
                    Les bénévoles perdent leur Latin sinon.................
                    1. Contributeur
                      Jette un coup d'oeil attentif ici :

                      http://siri.urz.free.fr/Fix/SmitfraudFix.php

                      ++
                      1. ai telecharger smitfraudfix lai decompresse avec l'assistnt de decompression des dossiersme retrouve avec 7 dossiers double clic sur smitfraudfix (script de commande jai le panneau execution du logiciel executer je me retrouve avec un carre bleu avec 4 choix la je n'arrive pas afaire partir le rapport peut tu m'indiquer
                        a+gallrill
                        1. cher kristopher;je te remercie encore du temps passe avec moi surtout que je vois que je ne suis pas le seul que tu eclaires de tes lumieres chapeau.hier tard j'ai installe spybot mais pas en mode avance j'ai fait un balayage etc...sur les 3comptes d'utilisateurs puisque lon est 3 a la maison.cela m'a supprime plusieurs espions sur mon pc j'ai actuellement le pare feu windows avast ad aware et spybot peut tu me dire comment orchestrer tout ça de maniere a voir si les problemes sont regles et si laspect preventif est bon dans l'attente de te lir kris
                          gallrill
                          1. Contributeur
                            Bonsoir gallrill ;)

                            Désolé mais ton log Ad-Aware ne m'inspire pas trop :P

                            C'est étrange que le "Next" reste grisé, j'espère que ce n'est pas l'oeuvre d'un virus...

                            Fais ceci maintenant :

                            1/ Télécharge et nettoie ton PC avec ces deux logiciels :

                            CCLEANER https://www.01net.com/telecharger/windows/Utilitaire/nettoyeurs_et_installeurs/fiches/32599.html

                            Utilisation : Dans l'onglet "Nettoyeur" cliquez sur "Analyse". Une fois l'analyse terminée, cliquez sur "Lancer le Nettoyage".
                            Ensuite, dans l'onglet "Erreurs" cliquez sur "Chercher des erreurs" puis, avant de cliquer sur "Réparer les erreurs sélectionnées" effectuez une sauvegarde de votre registre (comme proposé).

                            CleanUp40
                            http://pageperso.aol.fr/Balltrap34/CleanUp40.exe
                            Démo d’utilisation :
                            http://pageperso.aol.fr/balltrap34/democleanup.htm

                            2/ Télécharge le logiciel SmitfraudFix crée par les pros de ce forum :
                            http://siri.urz.free.fr/Fix/SmitfraudFix.zip et décompresse le.

                            - Exécute le, Double clic sur "Smitfraudfix.cmd", choisit l’option 1, il va générer un rapport.

                            Copie et colle le sur le forum.

                            Voilà, bonne soirée ;)

                            ++
                            1. j'ai fais ce que tu m'as dit pourcleaner pour smitfraudfix je lai decompresse jai pris loption 1 mais rien ne ce passe jai meme essaye de tapper 1 rien pas de rapport
                              gallrill
                            2. Contributeur
                              Salut ;)

                              Pour accroître l'efficacité, nettoie bien ton PC avec ces deux logiciels, conformément à leur mode d'emploie et/ou leur démo d'utilisation.

                              Ensuite, concernant SmitfraudFix :

                              Une fois le logiciel téléchargé, tu dois le décompresser (avec Winrar par exemple). Ensuite, tu double clic sur le dossier "SmitfraudFix" qui sera crée et tu double clic sur SmitfraudFix (et pas autre chose !). Puis, tu choisit l'option 1 - ça va générer un rapport.

                              Fais un copier/coller ici stp.

                              ++
                          2. Ad-Aware SE Build 1.06r1
                            Fichier journal créé le :mercredi 29 mars 2006 19:46:28
                            Created with Ad-Aware SE Personal, free for private use.
                            Utilisation du fichier de définitions :SE1R101 27.03.2006
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

                            Références détectées lors de l’analyse :
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
                            MRU List(Index TAC :0):15 Nombre total de références
                            Tracking Cookie(Index TAC :3):5 Nombre total de références
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

                            Ad-Aware SE Settings
                            ===========================
                            Définir : Rechercher les entrées à risque négligeable
                            Définir : Mode sécurisé (tjrs demander confirm.)
                            Définir : Analyser les processus actifs
                            Définir : Scan registry
                            Définir : Analyser en profondeur le registre
                            Définir : Analyser mes favoris IE pour rech. URL interdites
                            Définir : Analyser mon fichier Hosts

                            Extended Ad-Aware SE Settings
                            ===========================
                            Définir : Décharger les modules et les processus reconnus pendant l’analyse
                            Définir : Anal. reg. pr tous utili. et non pr utili. actuel uniqmnt
                            Définir : Toujours essayer de décharger les modules avant la suppression
                            Définir : Lors de la suppression, décharger l’Explorateur et IE si nécessaire
                            Définir : Perm. Win. supp. fich. en cours au proch. démar.
                            Définir : Supprimer les objets en quarantaine après la restauration
                            Définir : Inclure les paramètres de base d'Ad-Aware dans le fichier journal
                            Définir : Inclure les paramètres de base d'Ad-Aware dans le fichier journal
                            Définir : Inclure un récapitulatif des références dans le fichier journal
                            Définir : Inclure les détails des données ADS dans le fichier journal
                            Définir : Émettre un son à la fin de l’analyse en cas de détection d'objets critiques

                            29-03-2006 19:46:28 - L’analyse a démarré. (Analyse complète du système)

                            MRU List Objet reconnu !
                            Emplacement : : C:\Documents and Settings\vincent\recent
                            Description : list of recently opened documents

                            MRU List Objet reconnu !
                            Emplacement : : software\microsoft\direct3d\mostrecentapplication
                            Description : most recent application to use microsoft direct3d

                            MRU List Objet reconnu !
                            Emplacement : : software\microsoft\direct3d\mostrecentapplication
                            Description : most recent application to use microsoft direct X

                            MRU List Objet reconnu !
                            Emplacement : : software\microsoft\directdraw\mostrecentapplication
                            Description : most recent application to use microsoft directdraw

                            MRU List Objet reconnu !
                            Emplacement : : S-1-5-21-791902724-102026790-203108251-1006\software\microsoft\internet explorer
                            Description : last download directory used in microsoft internet explorer

                            MRU List Objet reconnu !
                            Emplacement : : S-1-5-21-791902724-102026790-203108251-1006\software\microsoft\mediaplayer\player\recentfilelist
                            Description : list of recently used files in microsoft windows media player

                            MRU List Objet reconnu !
                            Emplacement : : S-1-5-21-791902724-102026790-203108251-1006\software\microsoft\mediaplayer\preferences
                            Description : last playlist index loaded in microsoft windows media player

                            MRU List Objet reconnu !
                            Emplacement : : S-1-5-21-791902724-102026790-203108251-1006\software\microsoft\mediaplayer\preferences
                            Description : last playlist loaded in microsoft windows media player

                            MRU List Objet reconnu !
                            Emplacement : : S-1-5-21-791902724-102026790-203108251-1006\software\microsoft\windows\currentversion\applets\wordpad\recent file list
                            Description : list of recent files opened using wordpad

                            MRU List Objet reconnu !
                            Emplacement : : S-1-5-21-791902724-102026790-203108251-1007\software\microsoft\windows\currentversion\applets\wordpad\recent file list
                            Description : list of recent files opened using wordpad

                            MRU List Objet reconnu !
                            Emplacement : : S-1-5-21-791902724-102026790-203108251-1006\software\microsoft\windows\currentversion\explorer\comdlg32\lastvisitedmru
                            Description : list of recent programs opened

                            MRU List Objet reconnu !
                            Emplacement : : S-1-5-21-791902724-102026790-203108251-1006\software\microsoft\windows\currentversion\explorer\comdlg32\opensavemru
                            Description : list of recently saved files, stored according to file extension

                            MRU List Objet reconnu !
                            Emplacement : : S-1-5-21-791902724-102026790-203108251-1006\software\microsoft\windows\currentversion\explorer\recentdocs
                            Description : list of recent documents opened

                            MRU List Objet reconnu !
                            Emplacement : : S-1-5-21-791902724-102026790-203108251-1007\software\microsoft\windows\currentversion\explorer\recentdocs
                            Description : list of recent documents opened

                            MRU List Objet reconnu !
                            Emplacement : : S-1-5-21-791902724-102026790-203108251-1006\software\microsoft\windows media\wmsdk\general
                            Description : windows media sdk

                            Affichage des processus en cours d'exécution
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

                            #:1 [smss.exe]
                            FilePath : \SystemRoot\System32\
                            ProcessID : 576
                            ThreadCreationTime : 29-03-2006 16:31:16
                            BasePriority : Normal

                            #:2 [csrss.exe]
                            FilePath : \??\C:\WINDOWS\system32\
                            ProcessID : 636
                            ThreadCreationTime : 29-03-2006 16:31:19
                            BasePriority : Normal

                            #:3 [winlogon.exe]
                            FilePath : \??\C:\WINDOWS\system32\
                            ProcessID : 660
                            ThreadCreationTime : 29-03-2006 16:31:20
                            BasePriority : High

                            #:4 [services.exe]
                            FilePath : C:\WINDOWS\system32\
                            ProcessID : 716
                            ThreadCreationTime : 29-03-2006 16:31:22
                            BasePriority : Normal
                            FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
                            ProductVersion : 5.1.2600.2180
                            ProductName : Système d'exploitation Microsoft® Windows®
                            CompanyName : Microsoft Corporation
                            FileDescription : Applications Services et Contrôleur
                            InternalName : services.exe
                            LegalCopyright : © Microsoft Corporation. Tous droits réservés.
                            OriginalFilename : services.exe

                            #:5 [lsass.exe]
                            FilePath : C:\WINDOWS\system32\
                            ProcessID : 728
                            ThreadCreationTime : 29-03-2006 16:31:22
                            BasePriority : Normal
                            FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
                            ProductVersion : 5.1.2600.2180
                            ProductName : Microsoft® Windows® Operating System
                            CompanyName : Microsoft Corporation
                            FileDescription : LSA Shell (Export Version)
                            InternalName : lsass.exe
                            LegalCopyright : © Microsoft Corporation. All rights reserved.
                            OriginalFilename : lsass.exe

                            #:6 [svchost.exe]
                            FilePath : C:\WINDOWS\system32\
                            ProcessID : 876
                            ThreadCreationTime : 29-03-2006 16:31:24
                            BasePriority : Normal
                            FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
                            ProductVersion : 5.1.2600.2180
                            ProductName : Microsoft® Windows® Operating System
                            CompanyName : Microsoft Corporation
                            FileDescription : Generic Host Process for Win32 Services
                            InternalName : svchost.exe
                            LegalCopyright : © Microsoft Corporation. All rights reserved.
                            OriginalFilename : svchost.exe

                            #:7 [svchost.exe]
                            FilePath : C:\WINDOWS\system32\
                            ProcessID : 952
                            ThreadCreationTime : 29-03-2006 16:31:25
                            BasePriority : Normal
                            FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
                            ProductVersion : 5.1.2600.2180
                            ProductName : Microsoft® Windows® Operating System
                            CompanyName : Microsoft Corporation
                            FileDescription : Generic Host Process for Win32 Services
                            InternalName : svchost.exe
                            LegalCopyright : © Microsoft Corporation. All rights reserved.
                            OriginalFilename : svchost.exe

                            #:8 [svchost.exe]
                            FilePath : C:\WINDOWS\System32\
                            ProcessID : 1048
                            ThreadCreationTime : 29-03-2006 16:31:25
                            BasePriority : Normal
                            FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
                            ProductVersion : 5.1.2600.2180
                            ProductName : Microsoft® Windows® Operating System
                            CompanyName : Microsoft Corporation
                            FileDescription : Generic Host Process for Win32 Services
                            InternalName : svchost.exe
                            LegalCopyright : © Microsoft Corporation. All rights reserved.
                            OriginalFilename : svchost.exe

                            #:9 [svchost.exe]
                            FilePath : C:\WINDOWS\system32\
                            ProcessID : 1112
                            ThreadCreationTime : 29-03-2006 16:31:25
                            BasePriority : Normal
                            FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
                            ProductVersion : 5.1.2600.2180
                            ProductName : Microsoft® Windows® Operating System
                            CompanyName : Microsoft Corporation
                            FileDescription : Generic Host Process for Win32 Services
                            InternalName : svchost.exe
                            LegalCopyright : © Microsoft Corporation. All rights reserved.
                            OriginalFilename : svchost.exe

                            #:10 [svchost.exe]
                            FilePath : C:\WINDOWS\system32\
                            ProcessID : 1288
                            ThreadCreationTime : 29-03-2006 16:31:26
                            BasePriority : Normal
                            FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
                            ProductVersion : 5.1.2600.2180
                            ProductName : Microsoft® Windows® Operating System
                            CompanyName : Microsoft Corporation
                            FileDescription : Generic Host Process for Win32 Services
                            InternalName : svchost.exe
                            LegalCopyright : © Microsoft Corporation. All rights reserved.
                            OriginalFilename : svchost.exe

                            #:11 [spoolsv.exe]
                            FilePath : C:\WINDOWS\system32\
                            ProcessID : 1436
                            ThreadCreationTime : 29-03-2006 16:31:28
                            BasePriority : Normal
                            FileVersion : 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)
                            ProductVersion : 5.1.2600.2696
                            ProductName : Microsoft® Windows® Operating System
                            CompanyName : Microsoft Corporation
                            FileDescription : Spooler SubSystem App
                            InternalName : spoolsv.exe
                            LegalCopyright : © Microsoft Corporation. All rights reserved.
                            OriginalFilename : spoolsv.exe

                            #:12 [mediaserverservice.exe]
                            FilePath : C:\Program Files\acer\Acer eConsole\
                            ProcessID : 212
                            ThreadCreationTime : 29-03-2006 16:31:37
                            BasePriority : Normal
                            FileVersion : 1, 2, 21, 0
                            ProductVersion : 1, 2, 21, 0
                            ProductName : Acer Media Server
                            CompanyName : Acer Inc.
                            FileDescription : Acer UPnP Media Server Service
                            InternalName : MediaServerService.exe
                            LegalCopyright : (c) Acer Corporation 2004. All rights reserved.
                            OriginalFilename : MediaServerService.exe

                            #:13 [aswupdsv.exe]
                            FilePath : C:\Program Files\Alwil Software\Avast4\
                            ProcessID : 692
                            ThreadCreationTime : 29-03-2006 16:31:46
                            BasePriority : Normal

                            #:14 [ashserv.exe]
                            FilePath : C:\Program Files\Alwil Software\Avast4\
                            ProcessID : 868
                            ThreadCreationTime : 29-03-2006 16:31:46
                            BasePriority : High
                            FileVersion : 4, 6, 753, 0
                            ProductVersion : 4, 6, 0, 0
                            ProductName : avast! Antivirus
                            FileDescription : avast! antivirus service
                            InternalName : aswServ
                            LegalCopyright : Copyright (c) 2006 ALWIL Software
                            OriginalFilename : aswServ.exe

                            #:15 [ewidoctrl.exe]
                            FilePath : C:\Program Files\ewido anti-malware\
                            ProcessID : 1020
                            ThreadCreationTime : 29-03-2006 16:31:48
                            BasePriority : Normal
                            FileVersion : 3, 0, 0, 1
                            ProductVersion : 3, 0, 0, 1
                            ProductName : ewido control
                            CompanyName : ewido networks
                            FileDescription : ewido control
                            InternalName : ewido control
                            LegalCopyright : Copyright © 2004
                            OriginalFilename : ewidoctrl.exe

                            #:16 [ewidoguard.exe]
                            FilePath : C:\Program Files\ewido anti-malware\
                            ProcessID : 1156
                            ThreadCreationTime : 29-03-2006 16:31:49
                            BasePriority : Normal
                            FileVersion : 3, 0, 0, 1
                            ProductVersion : 3, 0, 0, 1
                            ProductName : guard
                            CompanyName : ewido networks
                            FileDescription : guard
                            InternalName : guard
                            LegalCopyright : Copyright © 2004
                            OriginalFilename : guard.exe

                            #:17 [nvsvc32.exe]
                            FilePath : C:\WINDOWS\system32\
                            ProcessID : 1464
                            ThreadCreationTime : 29-03-2006 16:31:53
                            BasePriority : Normal
                            FileVersion : 6.14.10.7189
                            ProductVersion : 6.14.10.7189
                            ProductName : NVIDIA Driver Helper Service, Version 71.89
                            CompanyName : NVIDIA Corporation
                            FileDescription : NVIDIA Driver Helper Service, Version 71.89
                            InternalName : NVSVC
                            LegalCopyright : (C) NVIDIA Corporation. All rights reserved.
                            OriginalFilename : nvsvc32.exe

                            #:18 [svchost.exe]
                            FilePath : C:\WINDOWS\system32\
                            ProcessID : 1540
                            ThreadCreationTime : 29-03-2006 16:31:53
                            BasePriority : Normal
                            FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
                            ProductVersion : 5.1.2600.2180
                            ProductName : Microsoft® Windows® Operating System
                            CompanyName : Microsoft Corporation
                            FileDescription : Generic Host Process for Win32 Services
                            InternalName : svchost.exe
                            LegalCopyright : © Microsoft Corporation. All rights reserved.
                            OriginalFilename : svchost.exe

                            #:19 [wdfmgr.exe]
                            FilePath : C:\WINDOWS\system32\
                            ProcessID : 1584
                            ThreadCreationTime : 29-03-2006 16:31:53
                            BasePriority : Normal
                            FileVersion : 5.2.3790.1230 built by: dnsrv(bld4act)
                            ProductVersion : 5.2.3790.1230
                            ProductName : Microsoft® Windows® Operating System
                            CompanyName : Microsoft Corporation
                            FileDescription : Windows User Mode Driver Manager
                            InternalName : WdfMgr
                            LegalCopyright : © Microsoft Corporation. All rights reserved.
                            OriginalFilename : WdfMgr.exe

                            #:20 [ashwebsv.exe]
                            FilePath : C:\Program Files\Alwil Software\Avast4\
                            ProcessID : 2832
                            ThreadCreationTime : 29-03-2006 16:32:06
                            BasePriority : Normal

                            #:21 [alg.exe]
                            FilePath : C:\WINDOWS\System32\
                            ProcessID : 3328
                            ThreadCreationTime : 29-03-2006 16:32:15
                            BasePriority : Normal
                            FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
                            ProductVersion : 5.1.2600.2180
                            ProductName : Microsoft® Windows® Operating System
                            CompanyName : Microsoft Corporation
                            FileDescription : Application Layer Gateway Service
                            InternalName : ALG.exe
                            LegalCopyright : © Microsoft Corporation. All rights reserved.
                            OriginalFilename : ALG.exe

                            #:22 [explorer.exe]
                            FilePath : C:\WINDOWS\
                            ProcessID : 1764
                            ThreadCreationTime : 29-03-2006 16:50:38
                            BasePriority : Normal
                            FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
                            ProductVersion : 6.00.2900.2180
                            ProductName : Système d'exploitation Microsoft® Windows®
                            CompanyName : Microsoft Corporation
                            FileDescription : Explorateur Windows
                            InternalName : explorer
                            LegalCopyright : © Microsoft Corporation. Tous droits réservés.
                            OriginalFilename : EXPLORER.EXE

                            #:23 [nvmixertray.exe]
                            FilePath : C:\Program Files\NVIDIA Corporation\NvMixer\
                            ProcessID : 1076
                            ThreadCreationTime : 29-03-2006 16:50:39
                            BasePriority : Normal

                            #:24 [monitor.exe]
                            FilePath : C:\Program Files\Acer\eRecovery\
                            ProcessID : 2164
                            ThreadCreationTime : 29-03-2006 16:50:39
                            BasePriority : Normal
                            FileVersion : 1, 2, 11, 0
                            ProductVersion : 1, 2, 11, 0
                            ProductName : eRecovery
                            CompanyName : acer Inc.
                            FileDescription : Monitor
                            InternalName : xOBRMonitor.exe
                            LegalCopyright : (c) acer Inc. All rights reserved.
                            OriginalFilename : xOBRMonitor.exe

                            #:25 [pdvdserv.exe]
                            FilePath : C:\Program Files\CyberLink\PowerDVD\
                            ProcessID : 3900
                            ThreadCreationTime : 29-03-2006 16:50:39
                            BasePriority : Normal
                            FileVersion : 5.00.0000
                            ProductVersion : 5.00.0000
                            ProductName : PowerDVD
                            CompanyName : Cyberlink Corp.
                            FileDescription : PowerDVD RC Service
                            InternalName : PowerDVD RC Service
                            LegalCopyright : Copyright (c) CyberLink Corp. 1997-2002
                            OriginalFilename : PDVDSERV.EXE

                            #:26 [aspireservice.exe]
                            FilePath : C:\Program Files\Acer\Acer eMode Management\
                            ProcessID : 3728
                            ThreadCreationTime : 29-03-2006 16:50:40
                            BasePriority : Normal
                            FileVersion : 2, 0, 10, 0
                            ProductVersion : 2, 0, 10, 0
                            ProductName : Aspire Service
                            CompanyName : Acer Inc.
                            FileDescription : Win32 Service for Control Board and Remote Controller
                            InternalName : Aspire Service.exe
                            LegalCopyright : Acer Inc. All rights reserved. 2004
                            OriginalFilename : Aspire Service.exe

                            #:27 [mediasync.exe]
                            FilePath : C:\Program Files\Acer\Acer eConsole\
                            ProcessID : 1084
                            ThreadCreationTime : 29-03-2006 16:50:40
                            BasePriority : Normal
                            FileVersion : 1, 2, 21, 0
                            ProductVersion : 1, 2, 21, 0
                            ProductName : Media Synchronizer
                            CompanyName : Acer Inc.
                            FileDescription : Media Synchronizer
                            InternalName : MediaSync.exe
                            LegalCopyright : Acer Inc. All rights reserved. 2004
                            OriginalFilename : MediaSync.exe

                            #:28 [rundll32.exe]
                            FilePath : C:\WINDOWS\system32\
                            ProcessID : 340
                            ThreadCreationTime : 29-03-2006 16:50:41
                            BasePriority : Normal
                            FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
                            ProductVersion : 5.1.2600.2180
                            ProductName : Système d'exploitation Microsoft® Windows®
                            CompanyName : Microsoft Corporation
                            FileDescription : Exécuter une DLL en tant qu'application
                            InternalName : rundll
                            LegalCopyright : © Microsoft Corporation. Tous droits réservés.
                            OriginalFilename : RUNDLL.EXE

                            #:29 [jusched.exe]
                            FilePath : C:\Program Files\Java\jre1.5.0_06\bin\
                            ProcessID : 2440
                            ThreadCreationTime : 29-03-2006 16:50:41
                            BasePriority : Normal

                            #:30 [qttask.exe]
                            FilePath : C:\Program Files\QuickTime\
                            ProcessID : 2456
                            ThreadCreationTime : 29-03-2006 16:50:41
                            BasePriority : Normal
                            FileVersion : 7.0.3
                            ProductVersion : QuickTime 7.0.3
                            ProductName : QuickTime
                            CompanyName : Apple Computer, Inc.
                            FileDescription : QuickTime Task
                            InternalName : QuickTime Task
                            LegalCopyright : Copyright Apple Computer, Inc. 1989-2005
                            OriginalFilename : QTTask.exe

                            #:31 [ashdisp.exe]
                            FilePath : C:\PROGRA~1\ALWILS~1\Avast4\
                            ProcessID : 568
                            ThreadCreationTime : 29-03-2006 16:50:41
                            BasePriority : Normal
                            FileVersion : 4, 6, 753, 0
                            ProductVersion : 4, 6, 0, 0
                            ProductName : avast! Antivirus
                            FileDescription : avast! service GUI component
                            InternalName : aswDisp
                            LegalCopyright : Copyright (c) 2006 ALWIL Software
                            OriginalFilename : aswDisp.exe

                            #:32 [lvcomsx.exe]
                            FilePath : C:\WINDOWS\system32\
                            ProcessID : 2596
                            ThreadCreationTime : 29-03-2006 16:50:42
                            BasePriority : Normal
                            FileVersion : 8.4.2.1019
                            ProductVersion : 8.4.2.1019
                            ProductName : Labtec WebCam
                            CompanyName : Labtec Inc.
                            FileDescription : LVCom Server
                            InternalName : LVComS.exe
                            LegalCopyright : (c) 1996-2005 Labtec. All rights reserved.
                            OriginalFilename : LVComS.exe

                            #:33 [logitray.exe]
                            FilePath : C:\Program Files\Logitech\Video\
                            ProcessID : 2712
                            ThreadCreationTime : 29-03-2006 16:50:42
                            BasePriority : Normal
                            FileVersion : 8.4.2.1019
                            ProductVersion : 8.4.2.1019
                            ProductName : Labtec WebCam
                            CompanyName : Labtec Inc.
                            FileDescription : ImageStudio Tray Application
                            InternalName : LogiTray.exe
                            LegalCopyright : (c) 1996-2005 Labtec. All rights reserved.
                            OriginalFilename : LogiTray.exe

                            #:34 [ctfmon.exe]
                            FilePath : C:\WINDOWS\system32\
                            ProcessID : 2720
                            ThreadCreationTime : 29-03-2006 16:50:43
                            BasePriority : Normal
                            FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
                            ProductVersion : 5.1.2600.2180
                            ProductName : Microsoft® Windows® Operating System
                            CompanyName : Microsoft Corporation
                            FileDescription : CTF Loader
                            InternalName : CTFMON
                            LegalCopyright : © Microsoft Corporation. All rights reserved.
                            OriginalFilename : CTFMON.EXE

                            #:35 [e_fatiace.exe]
                            FilePath : C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\
                            ProcessID : 2760
                            ThreadCreationTime : 29-03-2006 16:50:43
                            BasePriority : Normal
                            FileVersion : 4.00
                            ProductVersion : 4.00
                            ProductName : EPSON Status Monitor 3
                            CompanyName : SEIKO EPSON CORPORATION
                            FileDescription : EPSON Status Monitor 3
                            InternalName : E_S6I0C1
                            LegalCopyright : Copyright (C) SEIKO EPSON CORP. 2005
                            OriginalFilename : E_S6I0C1.EXE

                            #:36 [msnmsgr.exe]
                            FilePath : C:\Program Files\MSN Messenger\
                            ProcessID : 2036
                            ThreadCreationTime : 29-03-2006 16:50:43
                            BasePriority : Normal
                            FileVersion : 7.5.0324
                            ProductVersion : 7.5.0324
                            ProductName : MSN Messenger
                            CompanyName : Microsoft Corporation
                            FileDescription : MSN Messenger
                            InternalName : msnmsgr
                            LegalCopyright : Copyright (c) Microsoft Corporation 1997-2004
                            LegalTrademarks : Microsoft(R) is a registered trademark of Microsoft Corporation in the U.S. and/or other countries.
                            OriginalFilename : msnmsgr.exe

                            #:37 [fxsvr2.exe]
                            FilePath : C:\Program Files\Logitech\Video\
                            ProcessID : 2916
                            ThreadCreationTime : 29-03-2006 16:50:44
                            BasePriority : Normal
                            FileVersion : 8.4.2.1019
                            ProductVersion : 8.4.2.1019
                            ProductName : Labtec WebCam
                            CompanyName : Labtec Inc.
                            FileDescription : QuickCam Framework Server
                            InternalName : FxSvr.EXE
                            LegalCopyright : (c) 1996-2005 Labtec. All rights reserved.
                            OriginalFilename : FxSvr.EXE

                            #:38 [imapp.exe]
                            FilePath : C:\PROGRA~1\INCRED~1\bin\
                            ProcessID : 2960
                            ThreadCreationTime : 29-03-2006 16:50:45
                            BasePriority : Normal
                            FileVersion : 5, 0, 0, 2206
                            ProductVersion : 5, 0, 0, 2206
                            ProductName : IncrediMail
                            CompanyName : IncrediMail, Ltd.
                            FileDescription : IncrediMail Application
                            InternalName : IncrediApp
                            LegalCopyright : Copyright © 2002 IncrediMail, Ltd.
                            OriginalFilename : IMAPP.EXE

                            #:39 [ad-aware.exe]
                            FilePath : C:\Program Files\Lavasoft\Ad-Aware SE Personal\
                            ProcessID : 2744
                            ThreadCreationTime : 29-03-2006 17:46:13
                            BasePriority : Normal
                            FileVersion : 6.2.0.236
                            ProductVersion : SE 106
                            ProductName : Lavasoft Ad-Aware SE
                            CompanyName : Lavasoft Sweden
                            FileDescription : Ad-Aware SE Core application
                            InternalName : Ad-Aware.exe
                            LegalCopyright : Copyright © Lavasoft AB Sweden
                            OriginalFilename : Ad-Aware.exe
                            Comments : All Rights Reserved

                            Résultat de l’analyse de la mémoire :
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
                            Nouv. obj. critiques : 0
                            Objets détectés jusqu'à présent : 15

                            Analyse du registre démarrée
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

                            Résultat de l’analyse du registre :
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
                            Nouv. obj. critiques : 0
                            Objets détectés jusqu'à présent : 15

                            Analyse approfondie du registre démarrée
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

                            Résultat de l’analyse approfondie du registre :
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
                            Nouv. obj. critiques : 0
                            Objets détectés jusqu'à présent : 15

                            Analyse des cookies de suivi lancée
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

                            Tracking Cookie Objet reconnu !
                            Type : IECache Entry
                            Données : vincent@247realmedia[2].txt
                            Notation TAC : 3
                            Catégorie : Data Miner
                            Commentaire : Hits:2
                            Valeur : Cookie:vincent@247realmedia.com/
                            Expires : 01-01-2021 02:00:00
                            LastSync : Hits:2
                            UseCount : 0
                            Hits : 2

                            Tracking Cookie Objet reconnu !
                            Type : IECache Entry
                            Données : vincent@bluestreak[1].txt
                            Notation TAC : 3
                            Catégorie : Data Miner
                            Commentaire : Hits:1
                            Valeur : Cookie:vincent@bluestreak.com/
                            Expires : 26-03-2016 13:24:04
                            LastSync : Hits:1
                            UseCount : 0
                            Hits : 1

                            Tracking Cookie Objet reconnu !
                            Type : IECache Entry
                            Données : vincent@tradedoubler[1].txt
                            Notation TAC : 3
                            Catégorie : Data Miner
                            Commentaire : Hits:1
                            Valeur : Cookie:vincent@tradedoubler.com/
                            Expires : 24-03-2026 17:22:30
                            LastSync : Hits:1
                            UseCount : 0
                            Hits : 1

                            Résultat de l’analyse des cookies de suivi :
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
                            Nouv. obj. critiques : 3
                            Objets détectés jusqu'à présent : 18

                            Analyse et examen approfondis des fichiers (C:)
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

                            Tracking Cookie Objet reconnu !
                            Type : IECache Entry
                            Données : virginie@atdmt[2].txt
                            Notation TAC : 3
                            Catégorie : Data Miner
                            Commentaire :
                            Valeur : C:\Documents and Settings\virginie\Cookies\virginie@atdmt[2].txt

                            Tracking Cookie Objet reconnu !
                            Type : IECache Entry
                            Données : virginie@weborama[2].txt
                            Notation TAC : 3
                            Catégorie : Data Miner
                            Commentaire :
                            Valeur : C:\Documents and Settings\virginie\Cookies\virginie@weborama[2].txt

                            Résultat de l’analyse du disque pour C:\
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
                            Nouv. obj. critiques : 0
                            Objets détectés jusqu'à présent : 20

                            Analyse et examen approfondis des fichiers (D:)
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

                            Résultat de l’analyse du disque pour D:\
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
                            Nouv. obj. critiques : 0
                            Objets détectés jusqu'à présent : 20

                            Analyse du fichier Hosts…...
                            Emplacement du fichier Hosts :"C:\WINDOWS\system32\drivers\etc\hosts".
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

                            Résultat d’analyse du fichier Hosts :
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
                            1 entrées analysées.
                            Nouv. obj. critiques :0
                            Objets détectés jusqu'à présent : 20

                            Analyses conditionnelles en cours...
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

                            Résultat d’analyse conditionnelle :
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
                            Nouv. obj. critiques : 0
                            Objets détectés jusqu'à présent : 20

                            19:51:06 Analyse terminée

                            Récap. de cette anal.
                            »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
                            Durée tot. analyse :00:04:38.531
                            Objets analysés :169249
                            Objets identifiés :5
                            Objets ignorés :0
                            Nouv. obj. critiques :5

                            voila cher kristopher j'ai pu supprimer les 2 dossiers demandes puis j'ai bien cocher les lignes que tu m'avais dites et les ai supprimees puis j'ai essaye de scanner avec kasperski online scanner accept mais le next est en grise je n'ai pu scanner .alors j'ai fais un scanage avec ad aware tu as le resultat un peu plus haut pour ce soir je laisse tomber.dans l'attente de te lir demain si tu peux m'aider a+ gallrill
                            1. cher kristopher desole j'ai bien clique sur accept mais le next est en grise je ne peut scaner desole
                              gallrill
                              1. Contributeur
                                Ce n'est pas grave : "Désinstalle si possible (...)" ;)

                                Fais le reste par contre :)

                                ++
                                • 1
                                • 2