Kerio et runtime

Résolu
Bonjour !
j'ai installé Kerio personal firewall 4 et depuis, à chaque fois que j'utilise msn, il me dit qu'il vient de bloquer une "tentative d'intrusion du type injection de code". En face d'intrus est écrit <inconnu>.
Quand je regarde les détails, il me précise que l'application cible est msn .. et entre parenthèse est écrit new line (comme à peu près à chaque ligne)...
A partir d'ici, Kerio me propose uniquement de fermer la fenetre, mais au bout de quelques secondes, un message apparait : "microsoft runtime c++ library" ...
Et ça recommence dès que j'utilise msn.
Si vous pouviez m'expliquer quel est le problème et comment le résoudre, je vous serais extrêmement reconnaissante, paske j'y comprends rien du tout :S
Merci :)
Configuration: Windows XP
Firefox 2.0.0.1

20 réponses

  1. Oki merci beaucoup :)
    ça ça devrait marcher cette fois !
    merci
    0
    1. Dans "sintrusions" décoche complétement la 2éme case "avancé" ;-)
      0
      1. Ah ba non ça recommence ! :/
        0
        1. Ok j'ai fait une exception avec Kerio, parce que même avec les anciennes version de msn ça marchait pas. Un million de merci ! :)
          Mais j'ai l'impression d'avoir loupé quelque chose là
          0
          1. Ah bah ça ! ... même chose presque partout
            0
            1. Tiens le bon pensant du soir :-)
              0
              1. Salut

                non bah ça semble propre à mon avis c'est Windows Live Messenger qui se comporte anormalement, regarde dans Kerio, tu peux faire une "execptions" pour ce programme.
                Le cas échéant revient à une version plus stable de MSN la version 7.5 ;-)
                0
                1. J'ai supprimé ces 3 fichiers et voilà les scans des 3 autres.

                  Complete scanning result of "sav85014.sys", received in VirusTotal at 12.22.2006, 08:39:02 (CET).

                  Antivirus Version Update Result
                  AntiVir 7.3.0.21 12.22.2006 no virus found
                  Authentium 4.93.8 12.22.2006 no virus found
                  Avast 4.7.892.0 12.21.2006 no virus found
                  AVG 386 12.21.2006 no virus found
                  BitDefender 7.2 12.22.2006 no virus found
                  CAT-QuickHeal 8.00 12.21.2006 no virus found
                  ClamAV devel-20060426 12.21.2006 no virus found
                  DrWeb 4.33 12.21.2006 no virus found
                  eSafe 7.0.14.0 12.21.2006 no virus found
                  eTrust-InoculateIT 23.73.95 12.22.2006 no virus found
                  eTrust-Vet 30.3.3269 12.22.2006 no virus found
                  Ewido 4.0 12.21.2006 no virus found
                  Fortinet 2.82.0.0 12.22.2006 no virus found
                  F-Prot 3.16f 12.21.2006 no virus found
                  F-Prot4 4.2.1.29 12.21.2006 no virus found
                  Ikarus T3.1.0.27 12.22.2006 no virus found
                  Kaspersky 4.0.2.24 12.22.2006 no virus found
                  McAfee 4924 12.21.2006 no virus found
                  Microsoft 1.1904 12.22.2006 no virus found
                  NOD32v2 1934 12.21.2006 no virus found
                  Norman 5.80.02 12.21.2006 no virus found
                  Panda 9.0.0.4 12.21.2006 no virus found
                  Prevx1 V2 12.22.2006 no virus found
                  Sophos 4.12.0 12.21.2006 no virus found
                  Sunbelt 2.2.907.0 12.18.2006 no virus found
                  TheHacker 6.0.3.135 12.20.2006 no virus found
                  UNA 1.83 12.21.2006 no virus found
                  VBA32 3.11.1 12.21.2006 no virus found
                  VirusBuster 4.3.19:9 12.21.2006 no virus found

                  Aditional Information
                  File size: 1 bytes
                  MD5: 13c8ffd977013703a701cf8e11deac65
                  SHA1: 067d5096f219c64b53bb1c7d5e3754285b565a47

                  Complete scanning result of "TMUPDATE.DLL", received in VirusTotal at 12.22.2006, 15:53:35 (CET).

                  Antivirus Version Update Result
                  AntiVir 7.3.0.21 12.22.2006 no virus found
                  Authentium 4.93.8 12.22.2006 no virus found
                  Avast 4.7.892.0 12.21.2006 no virus found
                  AVG 386 12.21.2006 no virus found
                  BitDefender 7.2 12.22.2006 no virus found
                  CAT-QuickHeal 8.00 12.21.2006 no virus found
                  ClamAV devel-20060426 12.22.2006 no virus found
                  DrWeb 4.33 12.22.2006 no virus found
                  eSafe 7.0.14.0 12.21.2006 no virus found
                  eTrust-InoculateIT 23.73.95 12.22.2006 no virus found
                  eTrust-Vet 30.3.3269 12.22.2006 no virus found
                  Ewido 4.0 12.22.2006 no virus found
                  Fortinet 2.82.0.0 12.22.2006 no virus found
                  F-Prot 3.16f 12.21.2006 no virus found
                  F-Prot4 4.2.1.29 12.21.2006 no virus found
                  Ikarus T3.1.0.27 12.22.2006 no virus found
                  Kaspersky 4.0.2.24 12.22.2006 no virus found
                  McAfee 4924 12.21.2006 no virus found
                  Microsoft 1.1904 12.22.2006 no virus found
                  NOD32v2 1934 12.21.2006 no virus found
                  Norman 5.80.02 12.22.2006 no virus found
                  Panda 9.0.0.4 12.22.2006 no virus found
                  Prevx1 V2 12.22.2006 no virus found
                  Sophos 4.12.0 12.22.2006 no virus found
                  Sunbelt 2.2.907.0 12.18.2006 no virus found
                  TheHacker 6.0.3.135 12.20.2006 no virus found
                  UNA 1.83 12.21.2006 no virus found
                  VBA32 3.11.1 12.21.2006 no virus found
                  VirusBuster 4.3.19:9 12.22.2006 no virus found

                  Aditional Information
                  File size: 507904 bytes
                  MD5: 6e3cf464139053fd5601b0206bd31229
                  SHA1: cc88e502a4d7131b9f8aba7d3f9627c598297527

                  Complete scanning result of "PATCH.EXE", received in VirusTotal at 12.22.2006, 15:57:40 (CET).

                  Antivirus Version Update Result
                  AntiVir 7.3.0.21 12.22.2006 no virus found
                  Authentium 4.93.8 12.22.2006 no virus found
                  Avast 4.7.892.0 12.21.2006 no virus found
                  AVG 386 12.21.2006 no virus found
                  BitDefender 7.2 12.22.2006 no virus found
                  CAT-QuickHeal 8.00 12.21.2006 no virus found
                  ClamAV devel-20060426 12.22.2006 no virus found
                  DrWeb 4.33 12.22.2006 no virus found
                  eSafe 7.0.14.0 12.21.2006 no virus found
                  eTrust-InoculateIT 23.73.95 12.22.2006 no virus found
                  eTrust-Vet 30.3.3269 12.22.2006 no virus found
                  Ewido 4.0 12.22.2006 no virus found
                  Fortinet 2.82.0.0 12.22.2006 no virus found
                  F-Prot 3.16f 12.21.2006 no virus found
                  F-Prot4 4.2.1.29 12.21.2006 no virus found
                  Ikarus T3.1.0.27 12.22.2006 no virus found
                  Kaspersky 4.0.2.24 12.22.2006 no virus found
                  McAfee 4924 12.21.2006 no virus found
                  Microsoft 1.1904 12.22.2006 no virus found
                  NOD32v2 1934 12.21.2006 no virus found
                  Norman 5.80.02 12.22.2006 no virus found
                  Panda 9.0.0.4 12.22.2006 no virus found
                  Prevx1 V2 12.22.2006 no virus found
                  Sophos 4.12.0 12.22.2006 no virus found
                  Sunbelt 2.2.907.0 12.18.2006 no virus found
                  TheHacker 6.0.3.135 12.20.2006 no virus found
                  UNA 1.83 12.21.2006 no virus found
                  VBA32 3.11.1 12.21.2006 no virus found
                  VirusBuster 4.3.19:9 12.22.2006 no virus found

                  Aditional Information
                  File size: 286720 bytes
                  MD5: 19e73d5a247129160e27637328803475
                  SHA1: c2df5522ed494c66124f881db54e654d72d908ee
                  0
                  1. Salut

                    ¤ Clic sur démarer, rechercher, cherche et supprime ce fichier si présent :

                    unvise32.exe

                    ¤ Clic sur démarrer, poste de travail, C:, program files et supprime ce dossier :

                    Norton AntiVirus

                    ¤ ¤ Clic sur démarrer, poste de travail, C:, program files, fichiers communs et supprime ce dossier :

                    Symantec Shared

                    ¤ Rends toi sur se site
                    http://www.virustotal.com/en/virustotalx.html

                    En haut à droite clique sur "choose" tu vas dans C:, windows, system32 tu cherches le processus ci-dessous et tu cliques sur "ouvrir" dès que c'est fait tu cliques sur "send" tu attends un peu et colle le rapport ici une fois qu'il a terminé stp
                    - C:\WINDOWS\system32\sav85014.sys

                    Même chose avec ces deux la stp

                    - C:\WINDOWS\TMUPDATE.DLL
                    - C:\WINDOWS\PATCH.EXE

                    A++
                    0
                    1. Voilà le rapport !

                      Sophia - 06-12-21 22:30:14,06 Service Pack 2
                      ComboFix 06.11.27 - Running from: "C:\Documents and Settings\Sophia\Bureau"

                      ((((((((((((((((((((((((((((((( Files Created from 2006-11-21 to 2006-12-21 ))))))))))))))))))))))))))))))))))

                      2006-12-21 21:55 <REP> d-------- C:\Program Files\a-squared Free
                      2006-12-21 20:16 <REP> dr-h----- C:\Documents and Settings\Sophia\Recent
                      2006-12-21 20:04 <REP> d-------- C:\Program Files\CCleaner
                      2006-12-21 19:42 3,968 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
                      2006-12-21 19:42 <REP> d-------- C:\Program Files\Grisoft
                      2006-12-21 18:22 <REP> d-------- C:\WINDOWS\BDOSCAN8
                      2006-12-21 18:02 <REP> d-------- C:\Program Files\ewido anti-spyware 4.0
                      2006-12-20 23:21 <REP> d-------- C:\Program Files\Lavasoft
                      2006-12-20 23:21 <REP> d-------- C:\Documents and Settings\Sophia\Application Data\Lavasoft
                      2006-12-20 22:19 90,112 --a------ C:\WINDOWS\system32\AVASTSS.scr
                      2006-12-20 22:19 87,424 --a------ C:\WINDOWS\system32\drivers\aswmon2.sys
                      2006-12-20 22:19 85,952 --a------ C:\WINDOWS\system32\drivers\aswmon.sys
                      2006-12-20 22:19 666,240 --a------ C:\WINDOWS\system32\aswBoot.exe
                      2006-12-20 22:19 36,176 --a------ C:\WINDOWS\system32\drivers\aswTdi.sys
                      2006-12-20 22:19 24,560 --a------ C:\WINDOWS\system32\drivers\aavmker4.sys
                      2006-12-20 22:19 16,352 --a------ C:\WINDOWS\system32\drivers\aswRdr.sys
                      2006-12-20 22:19 <REP> d-------- C:\Program Files\Alwil Software
                      2006-12-19 22:36 <REP> d-------- C:\Documents and Settings\Sophia\.housecall6.6
                      2006-12-19 22:33 69,689 --a------ C:\WINDOWS\UNZIP.DLL
                      2006-12-19 22:33 507,904 --a------ C:\WINDOWS\TMUPDATE.DLL
                      2006-12-19 22:33 286,720 --a------ C:\WINDOWS\PATCH.EXE
                      2006-12-19 21:58 <REP> d-------- C:\Program Files\Spybot - Search & Destroy
                      2006-12-19 21:58 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
                      2006-12-19 21:11 <REP> d-------- C:\Program Files\Sunbelt Software
                      2006-12-19 19:17 <REP> d-------- C:\Program Files\Valve
                      2006-12-19 19:11 <REP> d-------- C:\WINDOWS\Minidump
                      2006-12-19 13:11 <REP> d---s---- C:\Program Files\Xfire
                      2006-12-18 22:05 <REP> d-------- C:\Program Files\MilkShape 3D 1.7.10
                      2006-12-18 21:11 <REP> d-------- C:\Program Files\SimPE
                      2006-12-18 13:17 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Messenger Plus!
                      2006-12-13 21:59 1 --a------ C:\WINDOWS\system32\sav85014.sys
                      2006-12-13 21:40 <REP> d-------- C:\Program Files\Act 3d
                      2006-12-13 21:37 8,303,616 --a------ C:\WINDOWS\system32\Ice Clock 3D Screensaver.exe
                      2006-12-13 21:37 728,576 --a------ C:\WINDOWS\system32\Ice_Clock_3D_Screensaver.scr
                      2006-12-13 21:37 <REP> d-------- C:\Program Files\Ice Clock 3D Screensaver
                      2006-12-13 21:26 86,016 --a------ C:\WINDOWS\unvise32.exe
                      2006-12-13 21:26 <REP> d-------- C:\Program Files\VoodooLights
                      2006-12-13 21:06 <REP> d-------- C:\Program Files\GlobFX Technologies
                      2006-12-13 20:09 <REP> d-------- C:\WINDOWS\system32\appmgmt
                      2006-12-13 20:04 <REP> d-------- C:\Documents and Settings\All Users\Application Data\WhiteCap (Holiday Edition)
                      2006-12-13 18:40 <REP> d-------- C:\Program Files\Windows Media Connect 2
                      2006-12-13 18:39 <REP> d-------- C:\WINDOWS\system32\LogFiles
                      2006-12-13 18:39 <REP> d-------- C:\WINDOWS\system32\drivers\UMDF
                      2006-12-13 17:47 <REP> d-------- C:\Program Files\7-Zip
                      2006-12-13 17:43 21,504 --a------ C:\WINDOWS\system32\hidserv.dll
                      2006-12-10 00:09 <REP> d-------- C:\Program Files\Gimp
                      2006-12-09 19:35 <REP> d-------- C:\WINDOWS\pss
                      2006-12-09 18:56 <REP> d-------- C:\Documents and Settings\Sophia\.gimp-2.2
                      2006-12-09 18:55 <REP> d-------- C:\Program Files\GIMP-2.0
                      2006-12-08 17:14 <REP> d-------- C:\Program Files\Fichiers communs\GTK
                      2006-12-05 21:12 <REP> d-------- C:\Program Files\Microsoft Office
                      2006-12-05 19:35 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Yahoo!
                      2006-12-03 23:51 85,376 --a------ C:\WINDOWS\system32\drivers\NABTSFEC.sys
                      2006-12-03 23:51 5,504 --a------ C:\WINDOWS\system32\drivers\MSTEE.sys
                      2006-12-03 23:51 19,328 --a------ C:\WINDOWS\system32\drivers\WSTCODEC.SYS
                      2006-12-03 23:51 17,024 --a------ C:\WINDOWS\system32\drivers\CCDECODE.sys
                      2006-12-03 23:51 15,360 --a------ C:\WINDOWS\system32\drivers\StreamIP.sys
                      2006-12-03 23:51 11,136 --a------ C:\WINDOWS\system32\drivers\SLIP.sys
                      2006-12-03 23:51 10,880 --a------ C:\WINDOWS\system32\drivers\NdisIP.sys
                      2006-12-03 23:50 54,784 --a------ C:\WINDOWS\system32\vfwwdm32.dll
                      2006-12-03 23:47 53,248 -ra------ C:\WINDOWS\system32\InstMed.exe
                      2006-12-03 23:46 372,736 --a------ C:\WINDOWS\system32\LVUI2RC.dll
                      2006-12-03 23:46 308,224 --a------ C:\WINDOWS\IsUn040c.exe
                      2006-12-03 23:46 22,016 --a------ C:\WINDOWS\system32\drivers\LVUSBSta.sys
                      2006-12-03 23:46 204,800 --a------ C:\WINDOWS\system32\LVUI2.dll
                      2006-12-03 23:46 204,800 --a------ C:\WINDOWS\system32\lvcodec2.dll
                      2006-12-03 23:46 2,180,096 --a------ C:\WINDOWS\system32\drivers\lvsvf2.sys
                      2006-12-03 23:46 106,496 --a------ C:\WINDOWS\system32\lvcoinst.dll
                      2006-12-03 23:46 1,317,152 --a------ C:\WINDOWS\system32\drivers\lvcm.sys
                      2006-12-03 23:46 <REP> d-------- C:\Program Files\Fichiers communs\Logitech
                      2006-12-03 23:45 59,264 --a------ C:\WINDOWS\system32\drivers\USBAUDIO.sys
                      2006-12-03 23:45 31,616 --a------ C:\WINDOWS\system32\drivers\usbccgp.sys
                      2006-12-03 22:23 <REP> d--h----- C:\WINDOWS\msdownld.tmp
                      2006-12-03 22:23 <REP> d-------- C:\WINDOWS\WBEM
                      2006-12-03 22:23 <REP> d-------- C:\WINDOWS\system32\fr-fr
                      2006-12-03 22:22 <REP> d--h-c--- C:\WINDOWS\ie7
                      2006-12-03 22:21 121,856 --------- C:\WINDOWS\system32\xmllite.dll
                      2006-12-03 22:20 <REP> d-------- C:\WINDOWS\network diagnostic
                      2006-12-03 22:19 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
                      2006-12-03 16:15 <REP> d-------- C:\Program Files\Messenger Plus! Live
                      2006-12-03 16:14 <REP> d-------- C:\Documents and Settings\Sophia\Contacts
                      2006-12-03 16:12 <REP> d-------- C:\WINDOWS\Sun
                      2006-12-03 16:12 <REP> d-------- C:\Documents and Settings\Sophia\Application Data\Sun
                      2006-12-03 16:09 <REP> d-------- C:\Documents and Settings\Sophia\Application Data\MSNInstaller
                      2006-12-03 16:08 <REP> d-------- C:\Program Files\MSN Messenger
                      2006-12-03 16:05 23,040 --------- C:\WINDOWS\kb913800.exe
                      2006-12-03 16:03 <REP> d-------- C:\WINDOWS\system32\PreInstall
                      2006-12-03 16:01 <REP> d--h----- C:\WINDOWS\PIF
                      2006-12-03 16:01 <REP> d-------- C:\Program Files\Mozilla Firefox
                      2006-12-03 16:01 <REP> d-------- C:\Documents and Settings\Sophia\Application Data\Talkback
                      2006-12-03 16:01 <REP> d-------- C:\Documents and Settings\Sophia\Application Data\Mozilla
                      2006-12-03 15:55 <REP> d-------- C:\WINDOWS\system32\SoftwareDistribution
                      2006-12-01 22:50 <REP> d-------- C:\Documents and Settings\Sophia\Application Data\Help
                      2006-11-28 21:21 <REP> d-------- C:\Documents and Settings\Sophia\Application Data\AdobeUM
                      2006-11-28 21:20 <REP> d-------- C:\Documents and Settings\Sophia\Application Data\Adobe
                      2006-11-28 18:16 442,368 -ra------ C:\WINDOWS\system32\vp6vfw.dll
                      2006-11-28 18:16 <REP> d-------- C:\Program Files\EA GAMES
                      2006-11-27 19:39 <REP> d-------- C:\Program Files\Yahoo!
                      2006-11-27 19:38 258,048 --a------ C:\WINDOWS\system32\Uninstall_eRecovery.exe
                      2006-11-27 19:38 258,048 --a------ C:\WINDOWS\system32\CheckD2DSystem.exe
                      2006-11-27 19:38 16,384 --a------ C:\WINDOWS\system32\ClearEvent.exe
                      2006-11-27 19:38 159,744 --a------ C:\WINDOWS\system32\CloseProcessWindow.dll
                      2006-11-27 19:38 114,688 --a------ C:\WINDOWS\PowerOption.exe
                      2006-11-27 19:38 1,168,896 --a------ C:\WINDOWS\system32\ERUpdateHidden.EXE
                      2006-11-27 19:37 <REP> d-------- C:\WINDOWS\Downloaded Installations
                      2006-11-27 19:36 69,632 --a------ C:\WINDOWS\system32\eRecUtil.dll
                      2006-11-27 19:36 602,112 --a------ C:\WINDOWS\system32\Acer.Empowering.Windows.Forms.dll
                      2006-11-27 19:36 53,248 --a------ C:\WINDOWS\system32\Interop.Shell32.dll
                      2006-11-27 19:36 49,152 --a------ C:\WINDOWS\system32\SysMonitor.exe
                      2006-11-27 19:36 331,776 --a------ C:\WINDOWS\system32\ScrollBarLib.dll
                      2006-11-27 19:36 <REP> d-------- C:\Acer
                      2006-11-27 19:34 <REP> d-------- C:\Program Files\Norton AntiVirus
                      2006-11-27 19:33 <REP> d-------- C:\Program Files\Fichiers communs\Symantec Shared
                      2006-11-27 19:33 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Symantec
                      2006-11-27 19:32 <REP> dr-h----- C:\Documents and Settings\Sophia\SendTo
                      2006-11-27 19:32 <REP> dr-h----- C:\Documents and Settings\Sophia\Application Data\.
                      2006-11-27 19:32 <REP> dr-h----- C:\Documents and Settings\Sophia\Application Data
                      2006-11-27 19:32 <REP> dr------- C:\Documents and Settings\Sophia\Mes documents
                      2006-11-27 19:32 <REP> dr------- C:\Documents and Settings\Sophia\Menu D‚marrer
                      2006-11-27 19:32 <REP> dr------- C:\Documents and Settings\Sophia\Favoris
                      2006-11-27 19:32 <REP> d--hs---- C:\Documents and Settings\Sophia\Cookies
                      2006-11-27 19:32 <REP> d--h----- C:\Documents and Settings\Sophia\Voisinage r‚seau
                      2006-11-27 19:32 <REP> d--h----- C:\Documents and Settings\Sophia\Voisinage d'impression
                      2006-11-27 19:32 <REP> d--h----- C:\Documents and Settings\Sophia\ModŠles
                      2006-11-27 19:32 <REP> d--h----- C:\Documents and Settings\Sophia\Local Settings
                      2006-11-27 19:32 <REP> d---s---- C:\Documents and Settings\Sophia\Application Data\Microsoft
                      2006-11-27 19:32 <REP> d-------- C:\Program Files\Java
                      2006-11-27 19:32 <REP> d-------- C:\Program Files\Fichiers communs\Java
                      2006-11-27 19:32 <REP> d-------- C:\Documents and Settings\Sophia\Bureau
                      2006-11-27 19:32 <REP> d-------- C:\Documents and Settings\Sophia\Application Data\Macromedia
                      2006-11-27 19:32 <REP> d-------- C:\Documents and Settings\Sophia\Application Data\Identities
                      2006-11-27 19:32 <REP> d-------- C:\Documents and Settings\Sophia\Application Data\..
                      2006-11-27 19:32 <REP> d-------- C:\Documents and Settings\Sophia\..
                      2006-11-27 19:32 <REP> d-------- C:\Documents and Settings\Sophia\.

                      (((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))

                      2006-12-20 22:09 -------- d-------- C:\Program Files\Fichiers communs
                      2006-12-19 22:39 -------- d-------- C:\Program Files\Internet Explorer
                      2006-12-17 00:49 -------- d-------- C:\Program Files\Outlook Express
                      2006-12-17 00:49 -------- d-------- C:\Program Files\Fichiers communs\System
                      2006-12-13 20:09 -------- d-------- C:\Program Files\Windows Media Player
                      2006-12-05 19:37 -------- d-------- C:\Program Files\Fichiers communs\Microsoft Shared
                      2006-11-27 20:23 -------- d-------- C:\Program Files\MSN
                      2006-11-27 19:37 -------- d--h----- C:\Program Files\InstallShield Installation Information
                      2006-11-08 06:07 679424 --a------ C:\WINDOWS\system32\inetcomm.dll
                      2006-11-07 21:03 6049280 --------- C:\WINDOWS\system32\ieframe.dll
                      2006-11-07 21:03 50688 --------- C:\WINDOWS\system32\msfeedsbs.dll
                      2006-11-07 21:03 458752 --------- C:\WINDOWS\system32\msfeeds.dll
                      2006-11-07 21:03 413696 --a------ C:\WINDOWS\system32\vbscript.dll
                      2006-11-07 21:03 231424 --a------ C:\WINDOWS\system32\webcheck.dll
                      2006-11-07 21:03 180736 --------- C:\WINDOWS\system32\ieui.dll
                      2006-11-07 21:03 156160 --a------ C:\WINDOWS\system32\msls31.dll
                      2006-11-07 03:27 382976 --a------ C:\WINDOWS\system32\iedkcs32.dll
                      2006-11-07 03:27 229376 --a------ C:\WINDOWS\system32\ieaksie.dll
                      2006-11-07 03:26 71680 --a------ C:\WINDOWS\system32\admparse.dll
                      2006-11-07 03:26 55296 --a------ C:\WINDOWS\system32\iesetup.dll
                      2006-11-07 03:26 54784 --a------ C:\WINDOWS\system32\ie4uinit.exe
                      2006-11-07 03:26 43008 --a------ C:\WINDOWS\system32\iernonce.dll
                      2006-11-07 03:26 152064 --a------ C:\WINDOWS\system32\ieakeng.dll
                      2006-11-07 03:26 13312 --a------ C:\WINDOWS\system32\ieudinit.exe
                      2006-11-07 03:26 123904 --a------ C:\WINDOWS\system32\advpack.dll
                      2006-11-07 03:25 161792 --a------ C:\WINDOWS\system32\ieakui.dll
                      2006-11-03 10:03 8292352 --a------ C:\WINDOWS\system32\wmploc.dll
                      2006-11-03 09:59 99840 --a------ C:\WINDOWS\system32\wmpshell.dll
                      2006-11-03 09:58 272384 --a------ C:\WINDOWS\system32\wmerror.dll
                      2006-11-03 09:56 7680 --a------ C:\WINDOWS\system32\asferror.dll
                      2006-11-02 11:52 44032 --------- C:\WINDOWS\system32\wpdshextres.dll
                      2006-10-20 02:38 716800 --a------ C:\WINDOWS\system32\sxs.dll
                      2006-10-18 21:58 8704 --a------ C:\WINDOWS\system32\wdfmgr.exe
                      2006-10-18 21:58 8704 --a------ C:\WINDOWS\system32\uwdf.exe
                      2006-10-18 21:47 991744 --a------ C:\WINDOWS\system32\drmv2clt.dll
                      2006-10-18 21:47 937984 --a------ C:\WINDOWS\system32\WMNetMgr.dll
                      2006-10-18 21:47 767488 --------- C:\WINDOWS\system32\WMVSENCD.dll
                      2006-10-18 21:47 757248 --a------ C:\WINDOWS\system32\WMADMOD.dll
                      2006-10-18 21:47 656896 --------- C:\WINDOWS\system32\WMVXENCD.dll
                      2006-10-18 21:47 63488 --a------ C:\WINDOWS\system32\wpdmtpus.dll
                      2006-10-18 21:47 629760 --a------ C:\WINDOWS\system32\wpd_ci.dll
                      2006-10-18 21:47 613376 --------- C:\WINDOWS\system32\wmpmde.dll
                      2006-10-18 21:47 603648 --a------ C:\WINDOWS\system32\WMSPDMOD.dll
                      2006-10-18 21:47 542720 --a------ C:\WINDOWS\system32\blackbox.dll
                      2006-10-18 21:47 535040 --a------ C:\WINDOWS\system32\wmdrmsdk.dll
                      2006-10-18 21:47 429056 --a------ C:\WINDOWS\system32\wmdrmdev.dll
                      2006-10-18 21:47 414208 --a------ C:\WINDOWS\system32\msscp.dll
                      2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\wmvdmoe2.dll
                      2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\wmvdmod.dll
                      2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\WMVADVE.DLL
                      2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\WMVADVD.dll
                      2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\wmsdmoe2.dll
                      2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\wmsdmod.dll
                      2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\wdfapi.dll
                      2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\MPG4DMOD.dll
                      2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\MP4SDMOD.dll
                      2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\MP43DMOD.dll
                      2006-10-18 21:47 37376 --a------ C:\WINDOWS\system32\wmdmps.dll
                      2006-10-18 21:47 35840 --a------ C:\WINDOWS\system32\wpdconns.dll
                      2006-10-18 21:47 356352 --a------ C:\WINDOWS\system32\wpdsp.dll
                      2006-10-18 21:47 348672 --a------ C:\WINDOWS\system32\wmdrmnet.dll
                      2006-10-18 21:47 33792 --a------ C:\WINDOWS\system32\wmdmlog.dll
                      2006-10-18 21:47 321536 --a------ C:\WINDOWS\system32\mswmdm.dll
                      2006-10-18 21:47 317440 --------- C:\WINDOWS\system32\MP4SDECD.dll
                      2006-10-18 21:47 314880 --a------ C:\WINDOWS\system32\wmpdxm.dll
                      2006-10-18 21:47 295936 --------- C:\WINDOWS\system32\wmpeffects.dll
                      2006-10-18 21:47 284160 --------- C:\WINDOWS\system32\PortableDeviceApi.dll
                      2006-10-18 21:47 27136 --a------ C:\WINDOWS\system32\mspmsnsv.dll
                      2006-10-18 21:47 2603008 --------- C:\WINDOWS\system32\WpdShext.dll
                      2006-10-18 21:47 259072 --------- C:\WINDOWS\system32\MPG4DECD.dll
                      2006-10-18 21:47 259072 --------- C:\WINDOWS\system32\MP43DECD.dll
                      2006-10-18 21:47 2450944 --a------ C:\WINDOWS\system32\wmvcore.dll
                      2006-10-18 21:47 242688 --a------ C:\WINDOWS\system32\wmpasf.dll
                      2006-10-18 21:47 229376 --a------ C:\WINDOWS\system32\cewmdm.dll
                      2006-10-18 21:47 222208 --a------ C:\WINDOWS\system32\wmasf.dll
                      2006-10-18 21:47 212992 --a------ C:\WINDOWS\system32\MFPLAT.dll
                      2006-10-18 21:47 211456 --a------ C:\WINDOWS\system32\qasf.dll
                      2006-10-18 21:47 204288 --a------ C:\WINDOWS\system32\wmpsrcwp.dll
                      2006-10-18 21:47 199168 --------- C:\WINDOWS\system32\PortableDeviceWMDRM.dll
                      2006-10-18 21:47 179712 --a------ C:\WINDOWS\system32\msnetobj.dll
                      2006-10-18 21:47 175616 --a------ C:\WINDOWS\system32\mspmsp.dll
                      2006-10-18 21:47 166912 --------- C:\WINDOWS\system32\PortableDeviceTypes.dll
                      2006-10-18 21:47 1661440 --a------ C:\WINDOWS\system32\wmpencen.dll
                      2006-10-18 21:47 1574912 --------- C:\WINDOWS\system32\WMVENCOD.dll
                      2006-10-18 21:47 157184 --a------ C:\WINDOWS\system32\wmidx.dll
                      2006-10-18 21:47 154624 --a------ C:\WINDOWS\system32\wpdmtp.dll
                      2006-10-18 21:47 1543680 --------- C:\WINDOWS\system32\WMVDECOD.dll
                      2006-10-18 21:47 1382912 --------- C:\WINDOWS\system32\WMVSDECD.dll
                      2006-10-18 21:47 133632 --------- C:\WINDOWS\system32\WPDShServiceObj.dll
                      2006-10-18 21:47 1329152 --a------ C:\WINDOWS\system32\WMSPDMOE.dll
                      2006-10-18 21:47 132096 --------- C:\WINDOWS\system32\PortableDeviceWiaCompat.dll
                      2006-10-18 21:47 130048 --------- C:\WINDOWS\system32\wmpps.dll
                      2006-10-18 21:47 11264 --a------ C:\WINDOWS\system32\LAPRXY.dll
                      2006-10-18 21:47 1117696 --a------ C:\WINDOWS\system32\WMADMOE.dll
                      2006-10-18 21:47 101888 --------- C:\WINDOWS\system32\PortableDeviceClassExtension.dll
                      2006-10-18 20:03 100864 --a------ C:\WINDOWS\system32\logagent.exe
                      2006-10-18 20:00 249856 --a------ C:\WINDOWS\system32\drmupgds.exe
                      2006-10-18 20:00 17408 --------- C:\WINDOWS\system32\wpdshextautoplay.exe
                      2006-10-17 12:06 78336 --a------ C:\WINDOWS\system32\ieencode.dll
                      2006-10-17 12:05 40960 --a------ C:\WINDOWS\system32\licmgr10.dll
                      2006-10-17 12:05 206336 --------- C:\WINDOWS\system32\WinFXDocObj.exe
                      2006-10-17 12:05 105984 --a------ C:\WINDOWS\system32\url.dll
                      2006-10-17 12:04 101376 --a------ C:\WINDOWS\system32\occache.dll
                      2006-10-17 12:03 17408 --a------ C:\WINDOWS\system32\corpol.dll
                      2006-10-17 11:58 61952 --------- C:\WINDOWS\system32\icardie.dll
                      2006-10-17 11:58 12288 --------- C:\WINDOWS\system32\msfeedssync.exe
                      2006-10-17 11:57 36352 --a------ C:\WINDOWS\system32\imgutil.dll
                      2006-10-17 11:57 266752 --------- C:\WINDOWS\system32\iertutil.dll
                      2006-10-17 11:56 45568 --a------ C:\WINDOWS\system32\mshta.exe
                      2006-10-17 11:28 48128 --a------ C:\WINDOWS\system32\mshtmler.dll
                      2006-10-17 11:27 380928 --------- C:\WINDOWS\system32\ieapfltr.dll
                      2006-10-13 13:36 65536 --a------ C:\WINDOWS\system32\nwwks.dll
                      2006-10-13 13:36 64000 --a------ C:\WINDOWS\system32\nwapi32.dll
                      2006-10-13 13:36 145920 --a------ C:\WINDOWS\system32\nwprovau.dll
                      2006-10-09 16:12 456192 --a------ C:\WINDOWS\system32\encdec.dll
                      2006-10-09 16:12 235008 --------- C:\WINDOWS\system32\psisdecd.dll
                      2006-10-02 15:28 312128 --------- C:\WINDOWS\system32\msdelta.dll
                      2006-09-28 20:13 95344 --------- C:\WINDOWS\system32\WUDFCoinstaller.dll
                      2006-09-28 18:56 55808 --------- C:\WINDOWS\system32\WudfSvc.dll
                      2006-09-28 18:56 316416 --------- C:\WINDOWS\system32\WUDFx.dll
                      2006-09-28 18:56 165376 --------- C:\WINDOWS\system32\WudfPlatform.dll
                      2006-09-28 18:56 146432 --------- C:\WINDOWS\system32\WudfHost.exe
                      2006-09-25 17:58 23856 --a------ C:\WINDOWS\system32\spupdsvc.exe

                      (((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))

                      *Note* empty entries are not shown

                      [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
                      "CTFMON.EXE"="C:\\WINDOWS\\system32\\ctfmon.exe"
                      "MsnMsgr"="\"C:\\Program Files\\MSN Messenger\\MsnMsgr.Exe\" /background"

                      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
                      "ehTray"="C:\\WINDOWS\\ehome\\ehtray.exe"
                      "LaunchApp"="Alaunch"
                      "RTHDCPL"="RTHDCPL.EXE"
                      "SkyTel"="SkyTel.EXE"
                      "Alcmtr"="ALCMTR.EXE"
                      "ntiMUI"="c:\\Program Files\\NewTech Infosystems\\NTI CD & DVD-Maker 7\\ntiMUI.exe"
                      "IMJPMIG8.1"="\"C:\\WINDOWS\\IME\\imjp8_1\\IMJPMIG.EXE\" /Spoil /RemAdvDef /Migration32"
                      "IMEKRMIG6.1"="C:\\WINDOWS\\ime\\imkr6_1\\IMEKRMIG.EXE"
                      "MSPY2002"="C:\\WINDOWS\\system32\\IME\\PINTLGNT\\ImScInst.exe /SYNC"
                      "PHIME2002ASync"="C:\\WINDOWS\\system32\\IME\\TINTLGNT\\TINTSETP.EXE /SYNC"
                      "PHIME2002A"="C:\\WINDOWS\\system32\\IME\\TINTLGNT\\TINTSETP.EXE /IMEName"
                      "NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
                      "nwiz"="nwiz.exe /install"
                      "NvMediaCenter"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvMcTray.dll,NvTaskbarInit"
                      "Acer Empowering Technology Monitor"="C:\\WINDOWS\\system32\\SysMonitor.exe"
                      "eDataSecurity Loader"="C:\\Acer\\Empowering Technology\\eDataSecurity\\eDSloader.exe 1"
                      "eRecoveryService"="C:\\Acer\\Empowering Technology\\eRecovery\\eRAgent.exe"
                      "WarReg_PopUp"="C:\\Acer\\WR_PopUp\\WarReg_PopUp.exe /normal-run2"
                      "LVCOMSX"="C:\\WINDOWS\\system32\\LVCOMSX.EXE"
                      "SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_09\\bin\\jusched.exe"
                      "avast!"="C:\\PROGRA~1\\ALWILS~1\\Avast4\\ashDisp.exe"
                      "!AVG Anti-Spyware"="\"C:\\Program Files\\Grisoft\\AVG Anti-Spyware 7.5\\avgas.exe\" /minimized"

                      [HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
                      "DeskHtmlVersion"=dword:00000110
                      "DeskHtmlMinorVersion"=dword:00000005
                      "Settings"=dword:00000001
                      "GeneralFlags"=dword:00000000

                      [HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
                      "Source"="About:Home"
                      "SubscribedURL"="About:Home"
                      "FriendlyName"="Ma page d'accueil"
                      "Flags"=dword:00000002
                      "Position"=hex:2c,00,00,00,c0,00,00,00,00,00,00,00,00,03,00,00,58,02,00,00,00,\
                      00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
                      "CurrentState"=dword:40000004
                      "OriginalStateInfo"=hex:18,00,00,00,ff,ff,00,00,ff,ff,00,00,ff,ff,ff,ff,ff,ff,\
                      ff,ff,04,00,00,00
                      "RestoredStateInfo"=hex:18,00,00,00,6a,02,00,00,23,00,00,00,a4,00,00,00,9a,00,\
                      00,00,01,00,00,00

                      [HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
                      "CTFMON.EXE"="C:\\WINDOWS\\system32\\CTFMON.EXE"

                      [HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\run]
                      "CTFMON.EXE"="C:\\WINDOWS\\system32\\CTFMON.EXE"

                      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
                      "{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Pré-chargeur Browseui"
                      "{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Démon de cache des catégories de composant"

                      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
                      "{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
                      "{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5"

                      [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
                      "NoDriveTypeAutoRun"=dword:00000091

                      [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]

                      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
                      "dontdisplaylastusername"=dword:00000000
                      "legalnoticecaption"=""
                      "legalnoticetext"=""
                      "shutdownwithoutlogon"=dword:00000001
                      "undockwithoutlogon"=dword:00000001
                      "InstallVisualStyle"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,52,65,73,6f,75,72,\
                      63,65,73,5c,54,68,65,6d,65,73,5c,52,6f,79,61,6c,65,5c,52,6f,79,61,6c,65,2e,\
                      6d,73,73,74,79,6c,65,73,00
                      "InstallTheme"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,52,65,73,6f,75,72,63,65,\
                      73,5c,54,68,65,6d,65,73,5c,52,6f,79,61,6c,65,2e,74,68,65,6d,65,00

                      [HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
                      "NoDriveTypeAutoRun"=dword:00000091

                      [HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
                      "NoDriveTypeAutoRun"=dword:00000091

                      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
                      "PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
                      "CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
                      "WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
                      "SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
                      "WPDShServiceObj"="{AAA288BA-9A4C-45B0-95D7-94D524869DB5}"

                      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder]

                      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Adobe Reader Speed Launch.lnk]
                      "path"="C:\\Documents and Settings\\All Users\\Menu Démarrer\\Programmes\\Démarrage\\Adobe Reader Speed Launch.lnk"
                      "backup"="C:\\WINDOWS\\pss\\Adobe Reader Speed Launch.lnkCommon Startup"
                      "location"="Common Startup"
                      "command"="C:\\PROGRA~1\\Adobe\\ACROBA~1.0\\Reader\\READER~1.EXE "
                      "item"="Adobe Reader Speed Launch"

                      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg]

                      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ccApp]
                      "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
                      "item"="ccApp"
                      "hkey"="HKLM"
                      "command"="\"C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccApp.exe\""
                      "inimapping"="0"

                      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Yahoo! Pager]
                      "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
                      "item"="YahooMessenger"
                      "hkey"="HKCU"
                      "command"="\"C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe\" -quiet"
                      "inimapping"="0"

                      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
                      "ccSetMgr"=dword:00000002
                      "SNDSrvc"=dword:00000002
                      "ccEvtMgr"=dword:00000002
                      "Symantec Core LC"=dword:00000002
                      "SAVScan"=dword:00000003
                      "NSCService"=dword:00000003
                      "NPFMntor"=dword:00000002

                      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
                      "SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"

                      Completion time: 06-12-21 22:32:26.62
                      C:\ComboFix.txt ... 06-12-21 22:32

                      et sinon j'ai windows live messenger 8.0.0812.00 exactement)
                      (j'y vais, encore un grand merci pour ton aide ! :) )
                      0
                      1. Tu peux jeter blackligt c'est ok.

                        Télécharge ComboFix
                        http://download.bleepingcomputer.com/sUBs/combofix.exe

                        Ferme ton navigateur web avant d'exécuter ce programme
                        Double-clique dessus et appuye sur "Y" pour continuer

                        Attends quelques minutes..un rapport va s'ouvrir enregistre son contenu, puis copie et colle le ici stp

                        Tu as quelle version d'MSN ?
                        0
                        1. Et le rapport a-Squared :

                          Version - a-squared Free 2.1

                          Réglages Scan:

                          Objets: Mémoire, Traces, Cookies, C:\WINDOWS\, C:\Program Files
                          Scan archives: Marche
                          Heuristiques: Marche
                          Scan ADS: Marche

                          Début du scan: 21/12/2006 22:00:01

                          C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt:5 Détecter: Trace.TrackingCookie

                          Scanné

                          Fichiers: 33541
                          Traces: 87847
                          Cookies: 19
                          Processus: 49

                          Trouver

                          Fichiers: 0
                          Traces: 0
                          Cookies: 1
                          Processus: 0
                          Clés de Registre: 0

                          Fin du Scan: 21/12/2006 22:18:37
                          Temps du Scan: 00:18:36
                          0
                          1. OK merci !
                            J'ai installé A-squared (j'avais déjà ad-aware) et je suis en train de faire les scans
                            Voilà le rapport de Blacklight :
                            12/21/06 22:03:07 [Info]: BlackLight Engine 1.0.47 initialized
                            12/21/06 22:03:07 [Info]: OS: 5.1 build 2600 (Service Pack 2)
                            12/21/06 22:03:07 [Note]: 7019 4
                            12/21/06 22:03:07 [Note]: 7005 0
                            12/21/06 22:03:22 [Note]: 7006 0
                            12/21/06 22:03:22 [Note]: 7011 1968
                            12/21/06 22:03:23 [Note]: 7026 0
                            12/21/06 22:03:23 [Note]: 7026 0
                            12/21/06 22:03:27 [Note]: FSRAW library version 1.7.1020
                            12/21/06 22:11:33 [Note]: 7007 0

                            Je comprends pas à quoi d'autre je pourrais toucher en fait xD
                            j'espère que j'ai pas fait de bêtises..
                            0
                            1. Merci

                              voici deux anti-spywares apparement tu ne les as pas, télécharge les, installe les et scanne complétement ton PC et supprime ce qu'ils pourraient te trouver :

                              A² squared: (gratuit en Français)(fait un scan rusé et colle le rapport ici stp)
                              --->A-squared
                              Si tu as besoin d'aide avec A-squared regarde ce tutoriel:
                              https://www.pcparadise.fr

                              Ad-Aware SE Personal: (en Anglais disponible en Français, gratuit)
                              --->Ad-aware
                              Si tu as besoin d'aide pour ad-Aware regarde ce tutoriel:
                              https://forums.cnetfrance.fr

                              Puis en attendant que les scans se fassent tu peux m'envoyer ce rapport de suite ;-)

                              Télécharges Blacklight et sauvegarde le sur ton bureau.
                              https://www.f-secure.com/en
                              Double cliques sur " blbeta.exe " et acceptes la licence; clic sur "Scan" puis "Next"

                              Un rapport, va se créer sur ton bureau "fslb-....."
                              Copies et colles le contenu de ce rapport ici.

                              Ne touche à rien d'autre!
                              0
                              1. Voilà, j'ai passé ccleaner !
                                Et le rapport abcde.bat que tu m'as demandé

                                Le volume dans le lecteur C s'appelle ACER
                                Le num‚ro de s‚rie du volume est 48C5-338C

                                R‚pertoire de C:\Program Files

                                21/12/2006 20:04 <REP> .
                                21/12/2006 20:04 <REP> ..
                                13/12/2006 17:47 <REP> 7-Zip
                                30/09/2006 03:23 <REP> Acer WLAN 11g USB Dongle
                                13/12/2006 21:40 <REP> Act 3d
                                30/09/2006 03:23 <REP> Adobe
                                20/12/2006 22:19 <REP> Alwil Software
                                21/12/2006 20:04 <REP> CCleaner
                                30/09/2006 03:23 <REP> commercial
                                11/08/2006 18:27 <REP> ComPlus Applications
                                30/09/2006 03:23 <REP> CyberLink
                                30/09/2006 03:23 <REP> DIFX
                                28/11/2006 18:16 <REP> EA GAMES
                                21/12/2006 19:42 <REP> ewido anti-spyware 4.0
                                20/12/2006 22:09 <REP> Fichiers communs
                                30/09/2006 03:23 <REP> FrenchOtto
                                30/09/2006 03:23 <REP> GemMasterFrench
                                10/12/2006 00:15 <REP> Gimp
                                09/12/2006 18:58 <REP> GIMP-2.0
                                13/12/2006 21:24 <REP> GlobFX Technologies
                                21/12/2006 19:42 <REP> Grisoft
                                13/12/2006 21:37 <REP> Ice Clock 3D Screensaver
                                27/11/2006 19:37 <REP> InstallShield Installation Information
                                19/12/2006 22:39 <REP> Internet Explorer
                                20/12/2006 22:16 <REP> Java
                                20/12/2006 23:21 <REP> Lavasoft
                                30/09/2006 03:23 <REP> Messenger
                                05/12/2006 20:15 <REP> Messenger Plus! Live
                                30/09/2006 03:23 <REP> microsoft frontpage
                                05/12/2006 21:12 <REP> Microsoft Office
                                18/12/2006 22:08 <REP> MilkShape 3D 1.7.10
                                30/09/2006 03:23 <REP> Movie Maker
                                21/12/2006 20:18 <REP> Mozilla Firefox
                                27/11/2006 20:23 <REP> MSN
                                30/09/2006 03:23 <REP> MSN Gaming Zone
                                15/12/2006 19:32 <REP> MSN Messenger
                                30/09/2006 03:23 <REP> NetMeeting
                                30/09/2006 03:23 <REP> NewTech Infosystems
                                20/12/2006 22:11 <REP> Norton AntiVirus
                                30/09/2006 03:23 <REP> Oca History Tool
                                30/09/2006 03:23 <REP> Online Services
                                17/12/2006 00:49 <REP> Outlook Express
                                30/09/2006 03:23 <REP> Realtek
                                30/09/2006 03:23 <REP> Services en ligne
                                18/12/2006 21:11 <REP> SimPE
                                19/12/2006 22:10 <REP> Spybot - Search & Destroy
                                19/12/2006 21:11 <REP> Sunbelt Software
                                11/08/2006 18:40 <REP> Uninstall Information
                                19/12/2006 19:17 <REP> Valve
                                13/12/2006 21:26 <REP> VoodooLights
                                13/12/2006 18:40 <REP> Windows Media Connect 2
                                13/12/2006 20:09 <REP> Windows Media Player
                                30/09/2006 03:23 <REP> Windows NT
                                30/09/2006 03:24 <REP> Windows Plus
                                11/08/2006 18:28 <REP> WindowsUpdate
                                30/09/2006 03:24 <REP> xerox
                                20/12/2006 22:01 <REP> Xfire
                                13/12/2006 20:09 <REP> Yahoo!
                                0 fichier(s) 0 octets
                                58 R‚p(s) 97ÿ909ÿ317ÿ632 octets libres
                                0
                                1. Merci

                                  Fait ce nettoyage: (à faire réguliérement)

                                  ¤Telecharge et installe CCleaner (n'installe pas la barre d'outil Yahoo)
                                  ---> Ccleaner

                                  dans la colonne de gauche clic sur "erreurs" coches toutes les cases, puis cliques en bas sur "chercher des erreurs" une fois finit, cliques sur "reparer les erreurs" et tu aura un message pour sauvegarder ta base de registre tu dis "oui" puis tu recommences jusqu'a ce qu'il te trouve plus d'erreurs.
                                  Les sauvegardes que tu aura faites tu pourra les supprimer si ton ordinateur n'a plus de problémes

                                  ¤Relance Ccleaner, vas dans l'onglet "nettoyeur" present sur la gauche, decoches la derniere case (Avancé si elle est cochée) puis clic sur "lancer le nettoyage"

                                  Si tu as besoin d'aide pour Ccleaner, regarde ce tutoriel:
                                  http://www.tutopat.com/viewtopic.php?t=305

                                  Clique sur démarrer, tous les programmes, accessoires, puis bloc-note
                                  Dès qu'il s'ouvre, copie/colle le texte ci-dessous dans le bloc note:

                                  dir "%ProgramFiles%\*" /a > files.txt
                                  notepad files.txt

                                  Clique sur fichier, enregistrer sous, chosit à type: "tous les fichiers"
                                  Nom de fichier: abcde.bat et enregistre le ou tu le retrouvera facilement

                                  Double clique dessus, un rapport va s'ouvrir, enregistre le et envoi le moi stp
                                  0
                                  1. Voilà le rapport de BitDefender (ça n'a rien donné)

                                    BitDefender Online Scanner - Real Time Virus Report

                                    Generated at: Thu, Dec 21, 2006 - 19:33:57

                                    Scan Info

                                    Scanned Files

                                    203591

                                    Infected Files

                                    0

                                    Virus Detected

                                    No virus found.

                                    This summary of the scan process will be used by the BitDefender Antivirus Lab to create agregate statistics about virus activity around the world.

                                    et le rapport de Ewido :

                                    ---------------------------------------------------------
                                    ewido anti-spyware - Scan Report
                                    ---------------------------------------------------------

                                    + Created at: 18:20:23 21/12/2006

                                    + Scan result:

                                    :mozilla.10:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
                                    :mozilla.11:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
                                    :mozilla.12:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
                                    :mozilla.13:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
                                    :mozilla.152:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
                                    :mozilla.26:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
                                    :mozilla.27:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
                                    :mozilla.35:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
                                    :mozilla.36:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
                                    :mozilla.19:C:\Documents and Settings\Invité\Application Data\Mozilla\Firefox\Profiles\wsu3x0b1.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
                                    :mozilla.20:C:\Documents and Settings\Invité\Application Data\Mozilla\Firefox\Profiles\wsu3x0b1.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
                                    :mozilla.42:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
                                    :mozilla.43:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
                                    :mozilla.21:C:\Documents and Settings\Invité\Application Data\Mozilla\Firefox\Profiles\wsu3x0b1.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
                                    :mozilla.74:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Com : Cleaned.
                                    :mozilla.309:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
                                    :mozilla.310:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
                                    :mozilla.311:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
                                    :mozilla.16:C:\Documents and Settings\Invité\Application Data\Mozilla\Firefox\Profiles\wsu3x0b1.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
                                    :mozilla.89:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
                                    :mozilla.112:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Hotlog : Cleaned.
                                    :mozilla.22:C:\Documents and Settings\Invité\Application Data\Mozilla\Firefox\Profiles\wsu3x0b1.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
                                    :mozilla.328:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
                                    :mozilla.329:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
                                    :mozilla.188:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
                                    :mozilla.189:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
                                    :mozilla.190:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
                                    :mozilla.191:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
                                    :mozilla.226:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
                                    :mozilla.227:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
                                    :mozilla.228:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
                                    :mozilla.229:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
                                    :mozilla.230:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
                                    :mozilla.71:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
                                    :mozilla.398:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
                                    :mozilla.399:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
                                    :mozilla.400:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
                                    :mozilla.240:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Spylog : Cleaned.
                                    :mozilla.23:C:\Documents and Settings\Invité\Application Data\Mozilla\Firefox\Profiles\wsu3x0b1.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
                                    :mozilla.252:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
                                    :mozilla.257:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
                                    :mozilla.258:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
                                    :mozilla.259:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
                                    :mozilla.291:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
                                    :mozilla.292:C:\Documents and Settings\Sophia\Application Data\Mozilla\Firefox\Profiles\lf4tldud.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

                                    ::Report end
                                    0
                                    1. Merci beaucoup

                                      ¤ Télécharge, installe puis met à jour ce logiciel(Ewido), une fois que c'est fait, fais un scan complet de ton système, supprime (delete) tout ce qu'il te trouve puis colle le rapport ici stp
                                      Ewido: (en Anglais reste gratuit après la période d'essai)
                                      --->Ewido
                                      Si tu as besoin d'aide avec Ewido(devenu AVG-antispyware) regarde ce tutoriel:
                                      http://www.kachouri.com/tuto/tuto-161-avg-anti-spyware-75-pour-votre-securite.html

                                      ¤ Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP2 (en haut) va se mettre à clignoter, clique dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
                                      Une fois qu'il a terminé colle le rapport ici stp

                                      https://www.bitdefender.com/toolbox/
                                      0
                                      1. Salut

                                        voilà pour les copies d'écran
                                        https://imageshack.com/
                                        https://imageshack.com/

                                        et le rapport HijackThis

                                        C:\WINDOWS\system32\ctfmon.exe
                                        C:\Program Files\MSN Messenger\MsnMsgr.Exe
                                        C:\Acer\Empowering Technology\Acer.Empowering.Framework.Launcher.exe
                                        C:\Program Files\Acer WLAN 11g USB Dongle\ZDWlan.exe
                                        C:\WINDOWS\system32\wuauclt.exe
                                        C:\Program Files\Mozilla Firefox\firefox.exe
                                        C:\Documents and Settings\Sophia\Bureau\Nouveau dossier\hijackthis\HijackThis.exe

                                        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://fr.rd.yahoo.com/customize/ycomp/defaults/sp/*https://fr.yahoo.com/
                                        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
                                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
                                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
                                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                                        R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
                                        R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://fr.rd.yahoo.com/customize/ycomp/defaults/su/*https://fr.yahoo.com/
                                        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                                        R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
                                        O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
                                        O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
                                        O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\WINDOWS\system32\eDStoolbar.dll
                                        O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
                                        O4 - HKLM\..\Run: [LaunchApp] Alaunch
                                        O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
                                        O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
                                        O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
                                        O4 - HKLM\..\Run: [ntiMUI] c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe
                                        O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
                                        O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
                                        O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
                                        O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
                                        O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
                                        O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
                                        O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
                                        O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
                                        O4 - HKLM\..\Run: [Acer Empowering Technology Monitor] C:\WINDOWS\system32\SysMonitor.exe
                                        O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe 1
                                        O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\eRAgent.exe
                                        O4 - HKLM\..\Run: [WarReg_PopUp] C:\Acer\WR_PopUp\WarReg_PopUp.exe /normal-run2
                                        O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
                                        O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
                                        O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
                                        O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
                                        O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
                                        O4 - Global Startup: Acer Empowering Technology.lnk = ?
                                        O4 - Global Startup: Acer WLAN 11g USB Dongle.lnk = C:\Program Files\Acer WLAN 11g USB Dongle\ZDWlan.exe
                                        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\npjpi150_09.dll
                                        O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\npjpi150_09.dll
                                        O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
                                        O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
                                        O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                                        O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                                        O11 - Options group: [INTERNATIONAL] International*
                                        O14 - IERESET.INF: START_PAGE_URL=http://www.01net.com/telecharger/
                                        O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
                                        O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - http://charon777.free.fr/plugins/hardwaredetection.cab
                                        O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
                                        O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
                                        O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
                                        O23 - Service: Memory Check Service (AcerMemUsageCheckService) - Acer Inc. - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
                                        O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                                        O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
                                        O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
                                        O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
                                        O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
                                        O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
                                        O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
                                        O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

                                        merci pour ton aide :)
                                        0
                                        1. Salut

                                          Ton PC est infecté.
                                          Serait-il possible que tu fasses une copie d'écran s'il te plait ?

                                          Télécharge HijackThis:
                                          --->hijackthis
                                          Installe le dans son propre dossier:
                                          -clique droit sur le bureau, choisis "nouveau dossier" puis installe le dedans.
                                          Lance le, clique sur "do a system scan and save logfile"
                                          Puis copie et colle le rapport ici stp
                                          0