[UC] Help ccApp.exe120 Mo :-(

A l'aide SVP!
ccApp.exe n'en finit plus d'augmenter (120Mo; seulement 17Mo il y a 2h00) et mon ordi est bouillant! Merci d'avance!

Les processus : 1 Explorer (20Mo), 4 iExplorer (20Mo au total), 1 ccApp (120Mo), 9 svchost (22Mo), 1 navapsvc (8Mo), 1 msmsgs (8Mo) entre autres.

Configuration :
Acer / Aspire 1691WLMi
Intel Pentium M730 processor (2MB L2 cache, 1.6 GHz, 533MHz FSB)
ATI MOBILITY RADEON X600
80GB HDD
512MB DDR

Rapport hijackthis :

Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 00:53:30, on 16/04/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\IEXPLORE.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\SVCH0ST.EXE
C:\Acer\eManager\anbmServ.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\DRoster\Firebird\bin\fbguard.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Norton AntiVirus\SAVScan.exe
C:\Program Files\Arcade\PCMService.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\acer\epm\epm-dm.exe
C:\Program Files\Launch Manager\QtZgAcer.EXE
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wmram.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\acer\eRecovery\Monitor.exe
C:\WINDOWS\system32\msfeedssync.exe
C:\Program Files\DRoster\Firebird\bin\fbserver.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\Thomas\Bureau\Nouveau dossier\HiJackThis_v2.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
F3 - REG:win.ini: load=C:\windows\system32\wincfgs.exe
F2 - REG:system.ini: UserInit=userinit.exe,IEXPLORE.EXE
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: InternetHelper.CInternetHelper - {D9CEE89F-CC54-4337-A283-7035335B42E6} - C:\WINDOWS\system32\winifo.dll
O2 - BHO: Java Class - {ED4FF012-1516-4167-9CE1-3D7E55FA7AE6} - C:\WINDOWS\java\classes\java.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [LaunchApp] Alaunch
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Arcade\PCMService.exe"
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [EPM-DM] c:\acer\epm\epm-dm.exe
O4 - HKLM\..\Run: [ePowerManagement] C:\Acer\ePM\ePM.exe boot
O4 - HKLM\..\Run: [LManager] C:\Program Files\Launch Manager\QtZgAcer.EXE
O4 - HKLM\..\Run: [eRecoveryService] C:\Windows\System32\Check.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [BigDogPath] C:\WINDOWS\VM_STI.EXE SOVIC PC Camera
O4 - HKLM\..\Run: [OPSE reminder] "C:\Program Files\ScanSoft\OmniPageSE2.0\EregFre\Ereg.exe" -r "C:\Program Files\ScanSoft\OmniPageSE2.0\EregFre\ereg.ini"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [IEXPLORE.EXE] C:\WINDOWS\system32\IEXPLORE.EXE
O4 - HKCU\..\Run: [SVCH0ST.EXE] C:\WINDOWS\system32\SVCH0ST.EXE
O4 - HKCU\..\Run: [wininfo] C:\WINDOWS\system32\wmram.exe
O4 - HKCU\..\Run: [FreeRAM XP] "C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe" -win
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: Ouvrir l'image dans &Microsoft PhotoDraw - res://C:\PROGRA~1\MICROS~3\Office\1036\phdintl.dll/phdContext.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/162ddd5a4d631060a023/netzip/RdxIE601_fr.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{2C2CB1F3-1217-4750-9AEF-F89AAE4B0F41}: NameServer = 202.101.224.68 219.141.140.10
O17 - HKLM\System\CCS\Services\Tcpip\..\{ACC456E9-7774-41F6-8216-0E7FE9466578}: NameServer = 61.128.128.68,202.202.192.29
O20 - AppInit_DLLs: kernel32.sys
O22 - SharedTaskScheduler: Pré-chargeur Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Démon de cache des catégories de composant - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Notebook Manager Service (anbmService) - OSA Technologies Inc. - C:\Acer\eManager\anbmServ.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe
O23 - Service: Journal des événements (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) - The Firebird Project - C:\Program Files\DRoster\Firebird\bin\fbguard.exe
O23 - Service: Firebird Server - DefaultInstance (FirebirdServerDefaultInstance) - The Firebird Project - C:\Program Files\DRoster\Firebird\bin\fbserver.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service COM de gravage de CD IMAPI (ImapiService) - Unknown owner - C:\WINDOWS\system32\imapi.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Partage de Bureau à distance NetMeeting (mnmsrvc) - Unknown owner - C:\WINDOWS\system32\mnmsrvc.exe
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Plug-and-Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Carte à puce (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: Journaux et alertes de performance (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.exe
O23 - Service: Cliché instantané de volume (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe
O23 - Service: Carte de performance WMI (WmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\wmiapsrv.exe
O23 - Service: Service Partage réseau du Lecteur Windows Media (WMPNetworkSvc) - Unknown owner - C:\Program Files\Windows Media Player\WMPNetwk.exe

--
End of file - 11541 bytes
Configuration: Windows XP
Internet Explorer 7.0

173 réponses

Résumé de la discussion

Problème : l’augmentation soutenue de ccApp.exe et la surchauffe de l’ordinateur sous Windows XP, alors que la liste des processus montre de multiples svchost, des services Norton et d’autres composants système. Plusieurs éléments de la discussion évoquent une possible fausse détection ou un conflit logiciel, malgré l’apparition répétée de ccApp.exe et l’augmentation de l’utilisation CPU observée dans les journaux d’HijackThis. Des pistes de solution évoquent la vérification des programmes au démarrage, l’examen des composants Norton et Symantec, et l’utilisation d’outils anti-malware pour déterminer s’il s’agit d’un virus ou d’un faux positif. En complément, la discussion relève la présence d’éléments comme AppInit_DLLs et des services multiples, signalant une vérification ciblée des entrées système et des chargements dynamiques pour écarter une infection.

Bobot (l’IA à votre service)
  1. About new topic - I think I may do smth wrong and only add some new trash to this site. Can you create it and move messages from 161 to 173 there?
    For the mémmory, you pc bugg when AVG starting? -> Guard.exe is eating 10mb of my memmory. It's not lagging my computer, but I already have another anti-spam programs and firewall activated, so AVG is unnecessary.
    Don't speack cracks, keygen here ! They are all infected ! -> well, not all. I think if you know where search them - you'll find clean cracks, keygens etc. If I'll find some working serial for AVG v7.5 I can give it to You, of course if you need it.
    Put me a new rapport of Hijackthis and have you got a report of AVG 7.5?
    Here's new log from Hijackthis http://radow.narod.ru/Hijackthis2.txt
    About AVG report - at 'Analysis' window there is now 'Actions recommended' or 'Select Quarantine' option. There are only 'processes', 'connections', 'autostart', 'browser plugins' and 'lsp viewer'. Can you send me screen of that option?
    P.S. At last I could delete file kernel32.dll in *\system32\ directory.
    P.P.S. Sorry for my english one more time.
    0
    1. Contributeur sécurité
      Hello;

      Have you got created a new post because the loading of this post is long?

      For the mémmory, you pc bugg when AVG starting?

      Don't speack cracks, keygen here ! They are all infected !

      Put me a new rapport of Hijackthis and have you got a report of AVG 7.5?

      Thanks !

      A+
      0
      1. I think I'd solved the problem partially. I deleted kernel's autorun, but fotgot to watch for its adress in comp. and besides that I can't delete file kernel32.dll from *\system32\.
        And besides that I there appeared to new questions about AVG.
        1. AVG runs processe 'Guard.exe' which eats too much memmory and I can't kick it from running proesses - How I can do it without uninstalling AVG?
        2. Is there some keygen for AVG 7.5 available in internet?
        Tomorrow I'll try to delete kerlel's dll file from safe-mode.
        P.S. Regis, thank You for helping me in the sex process with kernel32.sys and kernel32.exe :) (joke)
        P.S. Regis, thank You for help!!!
        0
        1. Contributeur sécurité
          No because you have an assistant for the searshes !
          That permite to have lot of posts with this problem in the result of the searsh !

          0
          1. I think it's easier to post messages here. Also for ppl who will search about kernel in the future.
            0
            1. Contributeur sécurité
              Hello Radow,

              Have you got created a new post?

              A+
              :)
              0
              1. grxm... I think I have downloaded another programm T_T. http://radow.narod.ru/avg1.JPG <<-----
                waiting for night... for new download...
                p.s. 'Dont' speack in armenian language lol ' не буду =))
                0
                1. Contributeur sécurité
                  Hello

                  Dont' speack in armenian language lol

                  For this page, create a new post with your problem; as this:
                  http://pageperso.aol.fr/balltrap34/demofairesontmessage.htm

                  Sorry the video is in french but i think you can understand the procedure to create a new post.

                  Enjoy :)
                  0
                  1. I'm armenian so my english is not excellent too :).
                    I have only dial-up connection with 40.0Kbps max speed, and it's comparativly cheaper at night time. So I'll download the program at this night and try what You've adviced to do. After that I would write here what came of it.
                    And plz tell me how can I change the quantity of messages at 1 page. This page is loading too long.
                    0
                    1. Contributeur sécurité
                      Hello :)

                      I thought that you were not going any more to return on the forum. Happy to read you.

                      I am french so sorry if my english isn't perfect.
                      Thanks to wrote the word in a simply english.

                      The site of lodging of Hijackthis is curious/strange ?!

                      Download AVG AS:
                      https://www.malekal.com/avg-antivirus-free-antivirus-gratuit-pour-proteger-son-pc-des-virus/

                      Run AVG Anti-Spyware

                      Click on Analyse.

                      Then on the mitres "How to react", clicks on Actions recommended. Select Quarantine.

                      Return to the Analyse. Click on complete Analyse of the system.

                      At the end of the scan choice the option 3

                      "To apply all the actions" in bottom.

                      Click on "Recording the report/ratio".

                      Copy and give me the report on the forum.

                      If you don't understand, i can repeat or to explain for your comprehension.

                      Take care.
                      0
                      1. Thanks for response, Regis.
                        No, I can't speak French =( . And I wrote about my problem here because in other sites couldn't find anything about kernel32. All over the internet I could find only 3 pages about that virus, and 2 of them didn't help me.
                        Here is hijack's log(http://radow.narod.ru/Hijack1.txt). I've already deleted kernel32 from windows/system32, but it's still among the processes.
                        0
                        1. Contributeur sécurité
                          Hello Radow,

                          you don't speack French?

                          Download HijackThis:
                          http://telechargement.zebulon.fr/138-hijackthis-1991.html

                          Run hijackthis.exe and clik on:
                          "do a system scan and save logfile".

                          A report is created. Copy the text and give me it.

                          A+
                          0
                          1. Good day, people.
                            I have problem with kernel32.sys and message 'The application or DLL C:\WINDOWS\system32\kernel32.sys is not a valid Windows image. Please check this against your installation diskette'. If I'm right in this page you are discussing problem about kernel32. Please, if you've already solved it - write here in English how I can cure my comp. from that shit(sorry, but it's so).
                            I've searched all over the internet, and found only 2 pages about that problem - one of them is this. Thanks for all answers.
                            0
                            1. Contributeur sécurité
                              Salut

                              Content pour toi :)

                              A+
                              0
                              1. Bonjour,

                                Désolé de cette longue absence, j'ai déménagé, donc pas d'internet jusqu'à aujourd'hui!

                                Je n'ai plus l'email, je l'avais mis en Indésirable et il a donc disparu.
                                Comme rien n'a changé depuis mon dernier mail, et que l'ordi marche donc globalement, je crois que je vais en rester là pour le moment.

                                Je tiens en tout cas à vous remercier tous les 2 pour votre aide, elle m'a été très précieuse :) Vous faites un travail tout à fait remarquable.

                                Encore un grand MERCI.

                                Chaokeli.
                                0
                                1. Contributeur sécurité
                                  Re,

                                  Jette un oeil ici:
                                  http://vil.nai.com/vil/content/v_142094.htm

                                  Ca a tout l air d etre celui la, un virus.

                                  Tu as toujours l'email?

                                  A+
                                  0
                                  1. Contributeur sécurité
                                    Hello

                                    Rassures moi, tu n'as pas téléchargé les pieces jointes?

                                    A+
                                    0
                                    1. Bonjour,

                                      Désolé mais je ne comprends pas ta réponse : justement mon problème est que je ne peux PAS décocher "Masquer les fichiers protégés du système d'exploitation (recommandé)" ! Une fois Appliquer et OK, je constate qu'en fait ça n'a toujours PAS été décoché puisqu'en revenant immédiatement ensuite dans l'onglet, cette case est cochée à nouveau! Merci pour tes éclaircissements :)

                                      Sinon je ne veux pas être parano mais j'ai reçu cet email aujourd'hui (je ne peux pas le copier-coller, bizarre, donc je le recopie) :

                                      Customer Support Center Robot <yrrex@iastate.edu>
                                      Sent : Wednesday, April 25, 2007 2:20 PM
                                      To : thomascoisy@wanadoo.fr
                                      Subject : Trojan Alert!
                                      Attachment : UrgentNotice.gif (< 0.01 MB), removal-15093.rar (0.05 MB)

                                      Dear customer,
                                      Our robot has detected an abnormal activity from your IP adress on sending emails. Probably it is connected with the last epidemic of a worm which does not have official patches at the moment. We recommend you to install this patch to remove worm files and stop email sending, otherwise your account will be blocked. We archived the patch because the worm can modify unpacked exe files. You have to open archive file, enter password and run patch immediately.
                                      Password : rob37
                                      Customer Support Center Robot.

                                      Ca me paraît être une blague : je ne suis pas client de l'Iowa State University! C'est encore des hackers?! Merci pour ton avis! A+
                                      0
                                      • 1
                                      • 2
                                      • 3
                                      • 4
                                      • 5
                                      • 6
                                      • 7
                                      • 8
                                      • 9