Virus Ebay

Bonjour à tous et à toutes.

Voilà, mon problème est que la dernière fois, j'étais sur Ebay, et un utilisateur m'a envoyé un message pour me dire qu'il avait en stock un produit que je recherchais (baggue de Claddagh).
Il m'a envoyer un lien pour que j'y accède directement. Penssant à un mail sérieux, j'ai cliquer dessus, mais rien ne se passait, j'ai donc envoyer un mail à celui-ci pour lui dire de m'envoyer un lien correcte.
Je n'ai rien vu venir par la suite, car tout se passait normalement, j'avais ma connection, j'allais sur les sites, aucun virus détéctés par AVAST! etc....

C'est que le lendemain que j'ai remarquée que je ne pouvait plus accéder à Ebay de mon ordinateur (j'ai essayer avec toutes les session qui fût de même). Alors je suis aller sur l'ordinateur portable, et j'arrivait à y aller.
J'ai essayer de me connecter, mais impossible! J'ai reessayer plusieures fois en me disant que j'avais pas le bon mot de passe, mais impossible toujours. J'ai tout fait pour essayer de récupérer ce mot de passe, même avec les notification EBAY qu'ils envoient par mail pour le changer. Rien...
Quelques heures après, j'ai reçu un mail d'EBAY me disant qu'il avaient bien pris en compte mon changement de mot de passe :s j'avais rien fait puisque je n'y était pas arriver...
J'était donc persuadé d'un piratage, de plus, en fesant un scan sur l'ordi d'ou je n'arrivait pas à acceder à EBAY, j'ai trouvée 3 cheval de troie...

Bref, après j'ai contacte EBAY et tout sa, mais bon ils ne répondent pas, on en reviens toujours au même...

Maintenant, je ne peut toujours pas acceder à EBAY depuis cet ordinateur, et je voudrais essayer de tout remettre à zéro ma session pour voir si sa remarche, mais je ne sais pas faire...
Je voudrais aussi savoir si vous connaissez un bon anti-virus gratuit qui peut me protéger d'avantage qu'AVAST! (qui laisse un peut à désirer quand on voit qu'il laisse passer 3 cheval de troie, et qu'il ne prévient qu'au moment d'un scan).

Je vous remercie d'avance pour votre aide, qui j'espère me sera précieuse.

Cordialement, Laura.
Configuration: Windows XP
Internet Explorer 7.0

15 réponses

  1. Contributeur sécurité
    vire ce qui est dans la sauvegarde de spybot . Si tu n'as pas la version 1.5.2 vire spybot et installe la dernière version. Désactive avast le temps de faire le scan en ligne panda

    ______________

    tu dois aussi avoir des pubs en voyant ton rapport alors:

    tu télécharge Lop S&D.exe sur ton Bureau.https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2

    * Double-clique dessus pour lancer l'installation
    * Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau
    * Séléctionne la langue souhaitée , puis choisis l'option 1 (Recherche)
    * Patiente jusqu'à la fin du scan
    * Poste le rapport généré (C:\lopR.txt)

    _______________

    et sinon:

    Il y a qlque chose qui me chagrine sur le rapport hijackthis , j'aimerai que l'on arrête le service concernant Boonty Games ( nid à spam et autres )
    Voici une petite information sur Boonty games

    Leur politique :

    "Il se peut que nous partageons aussi des informations payantes avec des tiers
    qui fournissent des services payants et partage des données regroupées montrant le type
    et le nombre de jeux vidéos que vous téléchargez, votre age, votre sexe, vos occupations,
    niveau d'éducation, localité géographique, données sur l'équipement de votre ordinateur,
    internet et intérêts pour les jeux vidéos, activités et entraînement des jeux édités.
    De plus, nous partageons les adresses email avec des tiers fournisseurs de compte mails
    qui nous assistent en envoyant nos mails a de nombreux clients en même temps..."

    Si tu n'y vois aucune objection , libre à toi ... on passe

    sinon pour supprimer :

    Désactivation de service :
    - Cliques sur Démarrer ---> Exécuter
    - Saisis : Services.msc puis OK
    - Choisis le mode "Etendu" (onglets inférieurs)
    - Grâce à la barre de défilement (à droite) recherches le service suivant:

    Code:
    " Boonty Games "

    - Quand le service est trouvé, pointes dessus, double-clique (bouton gauche).
    - Dans la fenêtre suivante qui apparait, sous l'onglet Général cliques sur le bouton Arrêter,
    puis déroules le Type de Démarrage pour le modifier en "Désactivé"
    - Cliques sur "Appliquer" puis OK

    Tuto si besoin : https://www.zebulon.fr/dossiers/windows/31-services.html

    Ensuite rends toi su ton PC ici : "C:\Program Files\Fichiers communs\BOONTY Shared " <---supprimes ce dossier ( et tout son contenu ...) .
    0
    1. Ok, je le ferrais lundi, dès que je serais chez moi.
      Merci en tout cas pour ton aide, j'espère que mon ordi. se sentira mieux après lol.

      A lundi sur le forum. Bon week end à toi.
      0
      1. Contributeur sécurité
        vire ce qui est dans la sauvegarde de spybot . Si tu n'as pas la version 1.5.2 vire spybot et installe la dernière version. Désactive avast le temps de faire le scan en ligne panda
        0
        1. Le rapport Hijackthis:

          Logfile of Trend Micro HijackThis v2.0.2
          Scan saved at 12:57:06, on 12/06/2008
          Platform: Windows XP SP2 (WinNT 5.01.2600)
          MSIE: Internet Explorer v7.00 (7.00.6000.16674)
          Boot mode: Normal

          Running processes:
          C:\WINDOWS\System32\smss.exe
          C:\WINDOWS\system32\winlogon.exe
          C:\WINDOWS\system32\services.exe
          C:\WINDOWS\system32\lsass.exe
          C:\WINDOWS\system32\Ati2evxx.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\System32\svchost.exe
          C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
          C:\Program Files\Alwil Software\Avast4\ashServ.exe
          C:\WINDOWS\system32\spoolsv.exe
          C:\WINDOWS\system32\Ati2evxx.exe
          C:\WINDOWS\Explorer.EXE
          C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
          C:\WINDOWS\system32\svchost.exe
          C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
          C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
          C:\WINDOWS\system32\wuauclt.exe
          C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
          C:\windows\system\hpsysdrv.exe
          C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
          C:\WINDOWS\ALCXMNTR.EXE
          C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
          C:\Program Files\e-Carte Bleue\Banque Populaire\ECB-BP.exe
          C:\HP\KBD\KBD.EXE
          C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBVE.EXE
          C:\Program Files\QuickTime\qttask.exe
          C:\Program Files\iTunes\iTunesHelper.exe
          C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
          C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
          C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
          C:\Program Files\Orange\Systray\SystrayApp.exe
          C:\Program Files\iPod\bin\iPodService.exe
          C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
          C:\WINDOWS\system32\ctfmon.exe
          C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
          C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
          C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
          C:\Program Files\Mozilla Firefox\firefox.exe
          C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

          R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
          R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
          R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
          R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
          O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
          O2 - BHO: eBay Toolbar Helper - {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
          O2 - BHO: e-Carte Bleue Browser Helper Object - {2E03C0FD-4C48-43A7-9A54-00240C70FF16} - C:\WINDOWS\system32\BhoECart.dll
          O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
          O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
          O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
          O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
          O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
          O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
          O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
          O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
          O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
          O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
          O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
          O4 - HKLM\..\Run: [HPHUPD08] c:\Program Files\HP\Digital Imaging\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\hphupd08.exe
          O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
          O4 - HKLM\..\Run: [PCDrProfiler] "C:\Program Files\PC-Doctor 5 for Windows\RunProfiler.exe" -r
          O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
          O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
          O4 - HKLM\..\Run: [BigDogPath] C:\WINDOWS\VM_STI.EXE VIMICRO USB PC Camera
          O4 - HKLM\..\Run: [eCarteBleue-BP] "C:\Program Files\e-Carte Bleue\Banque Populaire\ECB-BP.exe" /dontopenmycards
          O4 - HKLM\..\Run: [OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\FirstStart.exe
          O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
          O4 - HKLM\..\Run: [EPSON Stylus DX5000 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBVE.EXE /FU "C:\WINDOWS\TEMP\E_S6.tmp" /EF "HKLM"
          O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
          O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
          O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
          O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
          O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
          O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
          O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\Orange\SessionManager\SessionManager.exe
          O4 - HKLM\..\RunOnce: [SpybotDeletingA2113] command /c del "C:\Documents and Settings\Aurèl\Application Data\HbTools\v3.0\HbTools\static\1\ads.cdf"
          O4 - HKLM\..\RunOnce: [SpybotDeletingC4146] cmd /c del "C:\Documents and Settings\Aurèl\Application Data\HbTools\v3.0\HbTools\static\1\ads.cdf"
          O4 - HKLM\..\RunOnce: [SpybotSnD] "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe" /autocheck
          O4 - HKCU\..\Run: [OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe -NoStart
          O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
          O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
          O4 - HKCU\..\Run: [Debug dead] C:\DOCUME~1\Laura\APPLIC~1\BLUEFO~1\Software eggs eq.exe
          O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
          O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
          O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
          O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
          O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
          O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
          O4 - Global Startup: Pense-bête.lnk = C:\Program Files\Broderbund\PrintMaster\PMREMIND.EXE
          O8 - Extra context menu item: Add to AMV Convert Tool... - C:\Program Files\MP3 Player Utilities 4.00\AMVConverter\grab.html
          O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.09\AMVConverter\grab.html
          O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
          O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.09\MediaManager\grab.html
          O8 - Extra context menu item: Recherche sur eBay - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
          O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
          O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
          O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
          O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
          O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
          O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
          O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
          O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
          O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
          O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe (file missing)
          O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe (file missing)
          O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
          O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
          O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://souly3819.spaces.msn.com//PhotoUpload/MsnPUpld.cab
          O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
          O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
          O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
          O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
          O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
          O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
          O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
          O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
          O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
          O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
          O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
          0
          1. Contributeur sécurité
            ok pour verifier
            colle un nouveau hijakchits

            et

            colle le rapport d'un scan en ligne
            avec un des suivants:

            bitdefender en ligne :
            http://www.bitdefender.fr/scan_fr/scan8/ie.html

            Panda en ligne :
            http://pandasoftware.fr

            Kaspersky en ligne
            https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr

            pour protéger gratos ton ordi

            http://www.commentcamarche.net/telecharger/logiciel 4 securite

            mettre un antivirus

            AVAST en français ou ANTIVIR (en anglais mais très efficace)
            https://www.malekal.com/avira-free-security-antivirus-gratuit/ (merci Malekal)
            -------------
            des anti-espions :
            MalwareByte's Anti-Malware + SPYBOT +/- si tea timer non active de spybot:
            WINDOWS DEFENDER ou SPYWARE TERMINATOR

            +
            SPYWAREBLASTER pour immuniser le système contre vundo notamment mais en anglais (mais facile d'utilisation : il suffit de faire "update" pour mettre à jour tous les mois et ensuite" enable all protection" pour immuniser)...

            Rq : spybot et ad-aware ont sorti de nouvelles versions cette année vérifiez que vous avez la dernière version
            --------
            un pare feu :
            celui de (Windows) ou mieux Online armor ou KERIO ou JETICO ou ZONE ALARM (mettre que le parefeu gratuit)

            http://www.commentcamarche.net/telecharger/telecharger 34055356 online armor personal firewall

            https://forum.pcastuces.com/sujet.asp?f=25&s=35606
            https://www.clubic.com/telecharger-fiche11071-sunbelt-personal-firewall-ex-kerio.html
            https://manuelsdaide.com/contact/
            http://www.open-files.com/forum/index.php?showtopic=29277
            http://www.commentcamarche.net/telecharger/telecharger 157 zonealarm

            -----------
            CCLEANER pour effacer les traces de surf
            ---------
            naviguer avec firefox ou safari ou opera et non internet explorer plus touché par les virus
            http://www.mozilla-europe.org/fr/products/firefox/
            0
            1. Le rapport OTMoveit:

              File/Folder C:\DOCUME~1\Laura\APPLIC~1\BLUEFO~1\Software eggs eq.exe not found.

              OTMoveIt2 by OldTimer - Version 1.0.4.2 log created on 06112008_204901

              Par contre, j'ai télécharger le logitiel que tu m'as mis en lien, mais il ne veut pas s'ouvrir.

              PS: Ebay remarche! Merci beaucoup !!!!!
              0
              1. Contributeur sécurité
                télécharge OTMoveIt
                http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe (de Old_Timer) sur ton Bureau. Ou sur https://www.luanagames.com/index.fr.html
                double-clique sur OTMoveIt.exe pour le lancer.
                copie la liste qui se trouve en citation ci-dessous,
                et colle-la dans le cadre de gauche de OTMoveIt :Paste List of Files/Folders to be moved.

                Citation :

                C:\DOCUME~1\Laura\APPLIC~1\BLUEFO~1\Software eggs eq.exe

                clique sur MoveIt! pour lancer la suppression.
                le résultat apparaitra dans le cadre "Results".
                clique sur Exit pour fermer.
                poste le rapport situé dans C:\_OTMoveIt\MovedFiles.

                il te sera peut-être demander de redémarrer le pc pour achever la suppression.si c'est le cas accepte par Yes.

                ______________

                Télécharge ceci: (by Moe) :

                http://sosvirus.changelog.fr/Green_day/Lopxpsetup.exe

                Double clic sur Lopxpsetup.exe pour lancer l'installation
                Au menu, choisir l'option 1
                Patienter jusqu'à que l'on demande d'appuyer sur une touche, appuyer !
                Une rapport sera alors crée, à copie/colle en entier sur le forum.

                _______________
                recolle un hijakhcits
                0
                1. -----------------------[ Lop S&D 4.2.1-3 XP/Vista ]---------------------

                  [ Windows XP (NT 5.1) Build 2600, Service Pack 2 ]
                  [ USER : Laura ] [ "C:\Lop SD" ] [ Selection : 1 ]
                  [ 11/06/2008 | 19:51:11,82 ] [ PC : NOM-EB85C523610 ]
                  [ MAJ : 07-06-2008 | 22:15 ]

                  -------------[ Listing des dossiers dans Application Data ]------------

                  [05/06/2008|11:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\3D3
                  [27/02/2008|10:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
                  [17/02/2007|14:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
                  [16/04/2006|09:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
                  [24/11/2004|00:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\desktop.ini
                  [11/06/2008|18:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\eBay
                  [27/10/2006|18:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
                  [03/01/2005|06:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
                  [03/01/2005|06:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\hpzinstall.log
                  [03/01/2005|06:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
                  [03/12/2007|20:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LauncherAccess.dt
                  [11/06/2008|13:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
                  [06/03/2008|22:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
                  [11/06/2008|08:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
                  [05/03/2006|11:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\muvee Technologies
                  [22/07/2007|13:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\new roam tick hide
                  [21/03/2007|14:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QTSBandwidthCache
                  [05/09/2006|18:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
                  [03/01/2005|06:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
                  [03/01/2005|06:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
                  [11/06/2008|14:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
                  [05/03/2006|00:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
                  [03/02/2007|18:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\UDL
                  [22/01/2006|00:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
                  [05/07/2007|11:29] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WindowsLiveInstaller
                  [04/03/2008|18:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller

                  [31/01/2006|18:55] C:\DOCUME~1\AURL~1\APPLIC~1\.bittorrent
                  [02/04/2008|17:19] C:\DOCUME~1\AURL~1\APPLIC~1\Adobe
                  [01/06/2006|13:38] C:\DOCUME~1\AURL~1\APPLIC~1\AdobeUM
                  [20/12/2006|16:43] C:\DOCUME~1\AURL~1\APPLIC~1\Apple Computer
                  [24/11/2004|00:13] C:\DOCUME~1\AURL~1\APPLIC~1\desktop.ini
                  [11/02/2007|20:45] C:\DOCUME~1\AURL~1\APPLIC~1\DivX
                  [03/01/2008|20:44] C:\DOCUME~1\AURL~1\APPLIC~1\Google
                  [10/05/2006|19:43] C:\DOCUME~1\AURL~1\APPLIC~1\HbTools
                  [10/02/2006|14:47] C:\DOCUME~1\AURL~1\APPLIC~1\Help
                  [30/01/2007|14:59] C:\DOCUME~1\AURL~1\APPLIC~1\HP
                  [01/10/2007|23:02] C:\DOCUME~1\AURL~1\APPLIC~1\HPQ
                  [25/11/2004|05:26] C:\DOCUME~1\AURL~1\APPLIC~1\Identities
                  [27/06/2007|12:56] C:\DOCUME~1\AURL~1\APPLIC~1\InterVideo
                  [28/10/2006|19:19] C:\DOCUME~1\AURL~1\APPLIC~1\Leadertech
                  [02/04/2008|16:49] C:\DOCUME~1\AURL~1\APPLIC~1\LimeWire
                  [23/01/2006|19:17] C:\DOCUME~1\AURL~1\APPLIC~1\Macromedia
                  [19/03/2008|18:55] C:\DOCUME~1\AURL~1\APPLIC~1\Microsoft
                  [12/01/2007|11:29] C:\DOCUME~1\AURL~1\APPLIC~1\Mozilla
                  [03/08/2006|18:04] C:\DOCUME~1\AURL~1\APPLIC~1\OLYMPUS
                  [12/01/2007|12:34] C:\DOCUME~1\AURL~1\APPLIC~1\Real
                  [03/01/2005|06:47] C:\DOCUME~1\AURL~1\APPLIC~1\SampleView
                  [03/12/2007|20:30] C:\DOCUME~1\AURL~1\APPLIC~1\Samsung
                  [09/05/2006|18:05] C:\DOCUME~1\AURL~1\APPLIC~1\ShopperReports
                  [28/10/2006|19:19] C:\DOCUME~1\AURL~1\APPLIC~1\Sonic
                  [24/01/2006|18:11] C:\DOCUME~1\AURL~1\APPLIC~1\Sun
                  [23/02/2006|00:40] C:\DOCUME~1\AURL~1\APPLIC~1\Symantec
                  [28/01/2006|00:22] C:\DOCUME~1\AURL~1\APPLIC~1\Template
                  [18/02/2008|20:31] C:\DOCUME~1\AURL~1\APPLIC~1\WinRAR
                  [28/05/2007|14:29] C:\DOCUME~1\AURL~1\APPLIC~1\wklnhst.dat

                  [03/01/2005|06:43] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Apple Computer
                  [24/11/2004|00:13] C:\DOCUME~1\DEFAUL~1\APPLIC~1\desktop.ini
                  [25/11/2004|05:26] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
                  [03/01/2005|07:11] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
                  [03/01/2005|06:47] C:\DOCUME~1\DEFAUL~1\APPLIC~1\SampleView
                  [03/01/2005|07:00] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec

                  [03/01/2005|06:43] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Apple Computer
                  [24/11/2004|00:13] C:\DOCUME~1\HP_PRO~1\APPLIC~1\desktop.ini
                  [25/11/2004|05:26] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Identities
                  [03/01/2005|07:11] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Microsoft
                  [03/01/2005|06:47] C:\DOCUME~1\HP_PRO~1\APPLIC~1\SampleView
                  [03/01/2005|07:00] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Symantec

                  [27/02/2008|12:02] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\Adobe
                  [20/01/2006|19:10] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\AdobeUM
                  [28/01/2006|20:23] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\Ahead
                  [17/09/2007|19:57] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\Apple Computer
                  [24/11/2004|00:13] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\desktop.ini
                  [26/02/2008|18:49] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\Google
                  [05/05/2006|14:33] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\HbTools
                  [27/02/2006|18:42] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\Help
                  [27/10/2007|16:49] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\HPQ
                  [22/03/2006|19:07] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\HPSU_48BitScanUpdate.log
                  [25/11/2004|05:26] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\Identities
                  [16/09/2006|16:09] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\InterVideo
                  [30/12/2006|18:21] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\Lavasoft
                  [24/02/2006|22:52] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\Leadertech
                  [20/01/2006|15:00] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\Macromedia
                  [05/02/2008|18:33] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\Microsoft
                  [30/01/2007|19:36] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\Mozilla
                  [30/01/2007|19:16] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\Real
                  [03/01/2005|06:47] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\SampleView
                  [22/11/2006|18:39] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\SecuROM
                  [04/05/2006|10:27] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\ShopperReports
                  [08/03/2006|16:31] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\Sonic
                  [23/01/2006|20:55] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\Sun
                  [20/02/2006|13:28] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\Symantec
                  [20/03/2006|18:51] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\Template
                  [22/03/2006|19:06] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\Update_HP_RedboxHprblog_HPSU.log
                  [19/02/2008|21:13] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\WinRAR
                  [16/07/2007|15:52] C:\DOCUME~1\HP_PRO~1.NOM\APPLIC~1\wklnhst.dat

                  [27/02/2008|10:36] C:\DOCUME~1\Laura\APPLIC~1\Adobe
                  [21/01/2007|11:28] C:\DOCUME~1\Laura\APPLIC~1\AdobeUM
                  [01/12/2006|20:10] C:\DOCUME~1\Laura\APPLIC~1\Apple Computer
                  [30/06/2006|09:57] C:\DOCUME~1\Laura\APPLIC~1\ArcSoft
                  [07/02/2007|13:12] C:\DOCUME~1\Laura\APPLIC~1\AVSMedia
                  [10/06/2008|15:44] C:\DOCUME~1\Laura\APPLIC~1\bluefordroam
                  [24/11/2004|00:13] C:\DOCUME~1\Laura\APPLIC~1\desktop.ini
                  [26/06/2007|22:52] C:\DOCUME~1\Laura\APPLIC~1\DivX
                  [11/06/2008|18:39] C:\DOCUME~1\Laura\APPLIC~1\eBay
                  [22/04/2006|00:17] C:\DOCUME~1\Laura\APPLIC~1\GdiplusUpgrade_MSIApproach_Wrapper.log
                  [16/06/2006|23:42] C:\DOCUME~1\Laura\APPLIC~1\Google
                  [16/03/2006|19:10] C:\DOCUME~1\Laura\APPLIC~1\Help
                  [16/03/2006|19:16] C:\DOCUME~1\Laura\APPLIC~1\HPQ
                  [17/12/2007|20:15] C:\DOCUME~1\Laura\APPLIC~1\Identities
                  [24/03/2006|23:55] C:\DOCUME~1\Laura\APPLIC~1\InterVideo
                  [11/06/2008|08:10] C:\DOCUME~1\Laura\APPLIC~1\Lavasoft
                  [18/03/2006|20:24] C:\DOCUME~1\Laura\APPLIC~1\Leadertech
                  [19/05/2008|22:19] C:\DOCUME~1\Laura\APPLIC~1\LimeWire
                  [15/03/2006|22:00] C:\DOCUME~1\Laura\APPLIC~1\Macromedia
                  [11/06/2008|13:56] C:\DOCUME~1\Laura\APPLIC~1\Malwarebytes
                  [07/04/2008|21:16] C:\DOCUME~1\Laura\APPLIC~1\Microsoft
                  [11/01/2007|21:23] C:\DOCUME~1\Laura\APPLIC~1\Mozilla
                  [06/05/2006|21:16] C:\DOCUME~1\Laura\APPLIC~1\muvee Technologies
                  [16/09/2006|12:47] C:\DOCUME~1\Laura\APPLIC~1\OLYMPUS
                  [22/04/2006|00:28] C:\DOCUME~1\Laura\APPLIC~1\PatchUpdate_HP_CounterReport_Update_HPSU.log
                  [22/04/2006|00:23] C:\DOCUME~1\Laura\APPLIC~1\PatchUpdate_HP_ISRegionListUpdatelog_HPSU.log
                  [22/04/2006|00:22] C:\DOCUME~1\Laura\APPLIC~1\PatchUpdate_InstantShareJPG.log
                  [22/04/2006|00:21] C:\DOCUME~1\Laura\APPLIC~1\PatchUpdate_IZClosingDiscError.log
                  [30/03/2007|18:29] C:\DOCUME~1\Laura\APPLIC~1\Real
                  [03/01/2005|06:47] C:\DOCUME~1\Laura\APPLIC~1\SampleView
                  [17/03/2007|20:52] C:\DOCUME~1\Laura\APPLIC~1\Screenshot Sender
                  [22/11/2006|18:36] C:\DOCUME~1\Laura\APPLIC~1\SecuROM
                  [18/03/2006|20:25] C:\DOCUME~1\Laura\APPLIC~1\Sonic
                  [29/03/2006|18:10] C:\DOCUME~1\Laura\APPLIC~1\Sun
                  [03/01/2005|07:00] C:\DOCUME~1\Laura\APPLIC~1\Symantec
                  [15/03/2006|22:53] C:\DOCUME~1\Laura\APPLIC~1\Template
                  [24/08/2007|14:28] C:\DOCUME~1\Laura\APPLIC~1\WinRAR
                  [09/04/2008|15:57] C:\DOCUME~1\Laura\APPLIC~1\wklnhst.dat

                  [02/06/2007|21:59] C:\DOCUME~1\LOCALS~1\APPLIC~1\Google
                  [09/12/2006|00:28] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft

                  [21/01/2006|11:01] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

                  ----------------[ Tâches planifiées dans C:\WINDOWS\tasks ]---------------

                  [06/06/2008 08:07][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
                  [11/06/2008 13:11][--ah-----] C:\WINDOWS\tasks\SA.DAT
                  [05/08/2004 20:00][-rah-----] C:\WINDOWS\tasks\desktop.ini

                  ---------------[ Listing des dossiers dans C:\Program Files ]--------------

                  [17/02/2007|18:18] C:\Program Files\ABBYY FineReader 6.0 Sprint
                  [03/03/2008|18:05] C:\Program Files\Acoustica Mixcraft
                  [28/04/2008|22:03] C:\Program Files\Adobe
                  [05/03/2006|00:26] C:\Program Files\Alwil Software
                  [17/02/2007|17:47] C:\Program Files\Apple Software Update
                  [02/06/2006|23:03] C:\Program Files\ArcSoft
                  [14/03/2006|21:17] C:\Program Files\Astonsoft
                  [03/01/2005|06:18] C:\Program Files\ATI Technologies
                  [21/02/2006|22:24] C:\Program Files\AV VCS 3.0
                  [05/05/2006|23:08] C:\Program Files\AviSynth 2.5
                  [07/02/2007|13:11] C:\Program Files\AVSMedia
                  [06/08/2006|13:50] C:\Program Files\BitComet
                  [23/05/2007|10:50] C:\Program Files\bluefordroam
                  [16/04/2006|09:21] C:\Program Files\BoontyGames
                  [05/09/2007|16:49] C:\Program Files\Broderbund
                  [11/06/2008|14:10] C:\Program Files\CCleaner
                  [10/05/2006|11:21] C:\Program Files\Common Files
                  [24/11/2004|03:37] C:\Program Files\ComPlus Applications
                  [10/10/2007|19:41] C:\Program Files\Consumer Update Firmware
                  [22/03/2006|21:22] C:\Program Files\CursorXP
                  [03/08/2006|19:48] C:\Program Files\CustoMess
                  [28/04/2008|22:05] C:\Program Files\DivX
                  [31/01/2007|20:25] C:\Program Files\Easy Internet signup
                  [11/06/2008|18:39] C:\Program Files\eBay
                  [05/02/2006|17:58] C:\Program Files\e-Carte Bleue
                  [29/03/2006|15:20] C:\Program Files\eMedia Codec
                  [04/02/2007|22:33] C:\Program Files\EO Video
                  [03/02/2007|18:14] C:\Program Files\EPSON
                  [20/04/2008|21:21] C:\Program Files\Fichiers communs
                  [27/05/2008|18:08] C:\Program Files\Google
                  [05/05/2006|10:56] C:\Program Files\HbTools_Icons
                  [03/01/2005|06:38] C:\Program Files\Hewlett-Packard
                  [03/01/2005|06:25] C:\Program Files\HP
                  [11/06/2008|18:39] C:\Program Files\InstallShield Installation Information
                  [11/06/2008|13:04] C:\Program Files\Internet Explorer
                  [03/01/2005|06:39] C:\Program Files\InterVideo
                  [13/02/2008|21:39] C:\Program Files\Inventel
                  [20/04/2007|08:21] C:\Program Files\iPod
                  [20/04/2007|08:21] C:\Program Files\iTunes
                  [20/04/2008|21:25] C:\Program Files\Java
                  [18/05/2008|21:39] C:\Program Files\LimeWire
                  [11/06/2008|13:56] C:\Program Files\Malwarebytes' Anti-Malware
                  [16/04/2006|09:18] C:\Program Files\Mes Jeux T‚l‚charg‚s
                  [28/02/2007|15:20] C:\Program Files\Messenger
                  [05/04/2008|19:15] C:\Program Files\Messenger Plus! Live
                  [30/09/2006|20:40] C:\Program Files\MessengerPlus! 3
                  [10/05/2007|13:06] C:\Program Files\Microsoft CAPICOM 2.1.0.2
                  [02/02/2006|18:33] C:\Program Files\microsoft frontpage
                  [17/02/2006|19:49] C:\Program Files\Microsoft Games
                  [03/06/2006|10:54] C:\Program Files\Microsoft Office
                  [20/01/2006|22:10] C:\Program Files\Microsoft Works
                  [03/06/2006|10:52] C:\Program Files\Microsoft.NET
                  [25/11/2004|05:27] C:\Program Files\Movie Maker
                  [11/06/2008|19:23] C:\Program Files\Mozilla Firefox
                  [03/02/2006|13:46] C:\Program Files\MSN
                  [25/11/2004|05:27] C:\Program Files\MSN Gaming Zone
                  [17/12/2007|20:23] C:\Program Files\MSN Messenger
                  [15/03/2006|20:47] C:\Program Files\MSN Spy 2004
                  [14/10/2006|19:35] C:\Program Files\MSXML 4.0
                  [03/01/2005|06:46] C:\Program Files\muvee Technologies
                  [01/02/2005|10:23] C:\Program Files\NetMeeting
                  [23/01/2006|16:25] C:\Program Files\NewSoft
                  [03/08/2006|16:44] C:\Program Files\OLYMPUS
                  [25/11/2004|05:27] C:\Program Files\Online Services
                  [05/06/2008|19:10] C:\Program Files\Orange
                  [13/06/2007|13:03] C:\Program Files\Outlook Express
                  [20/01/2006|22:10] C:\Program Files\PC-Doctor 5 for Windows
                  [20/01/2006|15:12] C:\Program Files\PhotoFiltre
                  [03/08/2006|16:43] C:\Program Files\PIXELA
                  [20/04/2007|08:13] C:\Program Files\QuickTime
                  [11/01/2007|21:17] C:\Program Files\Real
                  [06/05/2006|21:19] C:\Program Files\Ripp-it_AM
                  [03/12/2007|20:22] C:\Program Files\Samsung
                  [03/01/2005|06:56] C:\Program Files\Services en ligne
                  [04/08/2006|14:18] C:\Program Files\SlySoft
                  [26/07/2006|17:56] C:\Program Files\SM
                  [10/04/2007|10:17] C:\Program Files\SmartCom
                  [03/01/2005|06:37] C:\Program Files\Sonic
                  [11/06/2008|14:17] C:\Program Files\Spybot - Search & Destroy
                  [06/08/2006|13:49] C:\Program Files\SupraASCIIArt
                  [05/03/2006|00:25] C:\Program Files\Symantec
                  [12/03/2007|21:44] C:\Program Files\TengScribe
                  [11/06/2008|19:18] C:\Program Files\Trend Micro
                  [03/08/2006|18:24] C:\Program Files\Ubi Soft
                  [22/11/2006|17:59] C:\Program Files\UbiSoft
                  [01/04/2007|13:39] C:\Program Files\Ulead Systems
                  [24/11/2004|03:37] C:\Program Files\Uninstall Information
                  [01/04/2007|13:14] C:\Program Files\Visicom Media
                  [18/03/2008|19:57] C:\Program Files\Wanadoo
                  [04/03/2008|19:04] C:\Program Files\Wanadoo Messager
                  [19/08/2006|14:33] C:\Program Files\Web Publish
                  [10/02/2007|21:07] C:\Program Files\WinAVI MP4 Converter
                  [29/01/2006|01:52] C:\Program Files\Windows Journal Viewer
                  [05/07/2007|11:28] C:\Program Files\Windows Live
                  [10/10/2007|19:41] C:\Program Files\Windows Media Connect 2
                  [08/12/2006|21:42] C:\Program Files\Windows Media Player
                  [01/02/2005|10:23] C:\Program Files\Windows NT
                  [24/11/2004|03:37] C:\Program Files\WindowsUpdate
                  [24/08/2007|14:27] C:\Program Files\WinRAR
                  [25/11/2004|05:28] C:\Program Files\xerox
                  [23/01/2006|12:29] C:\Program Files\Yahoo!

                  ------[ Listing des dossiers dans C:\Program Files\Fichiers communs ]------

                  [27/02/2008|10:43] C:\Program Files\Fichiers communs\Adobe
                  [01/02/2006|13:52] C:\Program Files\Fichiers communs\Ahead
                  [02/06/2006|23:06] C:\Program Files\Fichiers communs\ArcSoft
                  [07/02/2007|19:12] C:\Program Files\Fichiers communs\AVSMedia
                  [16/04/2006|09:19] C:\Program Files\Fichiers communs\BOONTY Shared
                  [03/06/2006|10:54] C:\Program Files\Fichiers communs\DESIGNER
                  [18/03/2008|19:48] C:\Program Files\Fichiers communs\France Telecom
                  [03/01/2005|06:32] C:\Program Files\Fichiers communs\Hewlett-Packard
                  [03/01/2005|06:29] C:\Program Files\Fichiers communs\HP
                  [03/01/2005|06:45] C:\Program Files\Fichiers communs\InstallShield
                  [03/01/2005|06:11] C:\Program Files\Fichiers communs\Java
                  [04/03/2008|18:41] C:\Program Files\Fichiers communs\Microsoft Shared
                  [25/11/2004|05:26] C:\Program Files\Fichiers communs\MSSoap
                  [03/01/2005|06:46] C:\Program Files\Fichiers communs\muvee Technologies
                  [25/11/2004|05:26] C:\Program Files\Fichiers communs\ODBC
                  [20/04/2008|21:20] C:\Program Files\Fichiers communs\Real
                  [01/02/2005|10:23] C:\Program Files\Fichiers communs\Services
                  [03/01/2005|06:36] C:\Program Files\Fichiers communs\Sonic Shared
                  [25/11/2004|05:26] C:\Program Files\Fichiers communs\SpeechEngines
                  [03/01/2005|06:36] C:\Program Files\Fichiers communs\SureThing Shared
                  [13/06/2007|13:03] C:\Program Files\Fichiers communs\System
                  [03/01/2005|06:37] C:\Program Files\Fichiers communs\TiVo Shared
                  [04/03/2008|18:40] C:\Program Files\Fichiers communs\WindowsLiveInstaller
                  [20/04/2008|21:21] C:\Program Files\Fichiers communs\xing shared

                  ---------------------------[ Process ]--------------------------

                  ... 50

                  ... OK !

                  ----------------------[ Recherche avec S_Lop ]---------------------

                  Aucun fichier / dossier Lop trouvé !

                  -----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------

                  Aucun fichier / dossier Lop trouvé !

                  ----------------------[ Verification du Registre ]----------------------

                  ..... OK !

                  --------------------[ Verification du fichier Hosts ]---------------------

                  Fichier Hosts PROPRE

                  ----------------[ Recherche de fichiers avec Catchme ]-----------------

                  catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
                  Rootkit scan 2008-06-11 19:53:14
                  Windows 5.1.2600 Service Pack 2 NTFS
                  scanning hidden processes ...
                  scanning hidden files ...
                  scan completed successfully
                  hidden processes: 0
                  hidden files: 0

                  --------------------[ Recherche d'autres infections ]---------------------

                  Aucune autre infection trouvée !

                  [F:13400][D:534]-> C:\DOCUME~1\Laura\LOCALS~1\Temp
                  [F:4][D:0]-> C:\DOCUME~1\Laura\Cookies
                  [F:342][D:8]-> C:\DOCUME~1\Laura\LOCALS~1\TEMPOR~1\content.IE5

                  --------------------[ Fin du rapport a 19:57:31,07 ]----------------------
                  0
                  1. Contributeur sécurité
                    ok tu es détourné c'est de la que vient ton souci

                    fais ceci

                    # télécharger Hoster :
                    http://www.funkytoad.com/download/HostsXpert.zip

                    # Dézipper le dossier sur le bureau.
                    # Lancer Hoster et cliquer sur Restore Microsoft's Hosts File

                    ____________

                    tu télécharge Lop S&D.exe sur ton Bureau.https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2

                    * Double-clique dessus pour lancer l'installation
                    * Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau
                    * Séléctionne la langue souhaitée , puis choisis l'option 1 (Recherche)
                    * Patiente jusqu'à la fin du scan
                    * Poste le rapport généré (C:\lopR.txt)
                    0
                    1. Voilà ce que me dit le rapport:

                      Logfile of Trend Micro HijackThis v2.0.2
                      Scan saved at 19:25:39, on 11/06/2008
                      Platform: Windows XP SP2 (WinNT 5.01.2600)
                      MSIE: Internet Explorer v7.00 (7.00.6000.16674)
                      Boot mode: Normal

                      Running processes:
                      C:\WINDOWS\System32\smss.exe
                      C:\WINDOWS\system32\winlogon.exe
                      C:\WINDOWS\system32\services.exe
                      C:\WINDOWS\system32\lsass.exe
                      C:\WINDOWS\system32\Ati2evxx.exe
                      C:\WINDOWS\system32\svchost.exe
                      C:\WINDOWS\System32\svchost.exe
                      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                      C:\Program Files\Alwil Software\Avast4\ashServ.exe
                      C:\WINDOWS\system32\spoolsv.exe
                      C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
                      C:\WINDOWS\system32\svchost.exe
                      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
                      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
                      C:\WINDOWS\system32\Ati2evxx.exe
                      C:\WINDOWS\Explorer.EXE
                      C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
                      C:\windows\system\hpsysdrv.exe
                      C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
                      C:\WINDOWS\ALCXMNTR.EXE
                      C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
                      C:\Program Files\e-Carte Bleue\Banque Populaire\ECB-BP.exe
                      C:\HP\KBD\KBD.EXE
                      C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBVE.EXE
                      C:\Program Files\QuickTime\qttask.exe
                      C:\Program Files\iTunes\iTunesHelper.exe
                      C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
                      C:\Program Files\iPod\bin\iPodService.exe
                      C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
                      C:\Program Files\Orange\Systray\SystrayApp.exe
                      C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                      C:\WINDOWS\system32\ctfmon.exe
                      C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
                      C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
                      C:\Program Files\Windows Live\Messenger\msnmsgr.exe
                      C:\Program Files\Windows Live\Messenger\usnsvc.exe
                      C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
                      C:\WINDOWS\System32\svchost.exe
                      C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
                      C:\Program Files\Mozilla Firefox\firefox.exe
                      C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
                      C:\WINDOWS\system32\wuauclt.exe
                      C:\Documents and Settings\Laura\Bureau\Antivirus.exe

                      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
                      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
                      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
                      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                      R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
                      O1 - Hosts: 90.91.92.93 ebay.com
                      O1 - Hosts: 90.91.92.93 www.ebay.com
                      O1 - Hosts: 90.91.92.93 signin.ebay.com
                      O1 - Hosts: 90.91.92.93 scgi.ebay.com
                      O1 - Hosts: 90.91.92.93 pages.ebay.com
                      O1 - Hosts: 90.91.92.93 listings.ebay.com
                      O1 - Hosts: 90.91.92.93 motors.ebay.com
                      O1 - Hosts: 90.91.92.93 expres.ebay.com
                      O1 - Hosts: 90.91.92.93 stores.ebay.com
                      O1 - Hosts: 90.91.92.93 cschatlb-na.corp.ebay.com
                      O1 - Hosts: 90.91.92.93 hub.ebay.com
                      O1 - Hosts: 90.91.92.93 sell.ebay.com
                      O1 - Hosts: 90.91.92.93 my.ebay.com
                      O1 - Hosts: 90.91.92.93 cgi.ebay.com
                      O1 - Hosts: 90.91.92.93 hub.motors.ebay.com
                      O1 - Hosts: 90.91.92.93 automobile-voiture.ebay.fr
                      O1 - Hosts: 90.91.92.93 ebaymotors.at
                      O1 - Hosts: 90.91.92.93 ebay.au
                      O1 - Hosts: 90.91.92.93 www.ebay.au
                      O1 - Hosts: 90.91.92.93 signin.ebay.au
                      O1 - Hosts: 90.91.92.93 scgi.ebay.au
                      O1 - Hosts: 90.91.92.93 pages.ebay.au
                      O1 - Hosts: 90.91.92.93 listings.ebay.au
                      O1 - Hosts: 90.91.92.93 motors.ebay.au
                      O1 - Hosts: 90.91.92.93 expres.ebay.au
                      O1 - Hosts: 90.91.92.93 stores.ebay.au
                      O1 - Hosts: 90.91.92.93 hub.ebay.au
                      O1 - Hosts: 90.91.92.93 sell.ebay.au
                      O1 - Hosts: 90.91.92.93 my.ebay.au
                      O1 - Hosts: 90.91.92.93 cgi.ebay.au
                      O1 - Hosts: 90.91.92.93 hub.motors.ebay.au
                      O1 - Hosts: 90.91.92.93 ebay.at
                      O1 - Hosts: 90.91.92.93 www.ebay.at
                      O1 - Hosts: 90.91.92.93 signin.ebay.at
                      O1 - Hosts: 90.91.92.93 scgi.ebay.at
                      O1 - Hosts: 90.91.92.93 pages.ebay.at
                      O1 - Hosts: 90.91.92.93 listings.ebay.at
                      O1 - Hosts: 90.91.92.93 motors.ebay.at
                      O1 - Hosts: 90.91.92.93 expres.ebay.at
                      O1 - Hosts: 90.91.92.93 stores.ebay.at
                      O1 - Hosts: 90.91.92.93 hub.ebay.at
                      O1 - Hosts: 90.91.92.93 sell.ebay.at
                      O1 - Hosts: 90.91.92.93 my.ebay.at
                      O1 - Hosts: 90.91.92.93 cgi.ebay.at
                      O1 - Hosts: 90.91.92.93 hub.motors.ebay.at
                      O1 - Hosts: 90.91.92.93 ebay.be
                      O1 - Hosts: 90.91.92.93 www.ebay.be
                      O1 - Hosts: 90.91.92.93 signin.ebay.be
                      O1 - Hosts: 90.91.92.93 scgi.ebay.be
                      O1 - Hosts: 90.91.92.93 pages.ebay.be
                      O1 - Hosts: 90.91.92.93 listings.ebay.be
                      O1 - Hosts: 90.91.92.93 motors.ebay.be
                      O1 - Hosts: 90.91.92.93 expres.ebay.be
                      O1 - Hosts: 90.91.92.93 stores.ebay.be
                      O1 - Hosts: 90.91.92.93 hub.ebay.be
                      O1 - Hosts: 90.91.92.93 sell.ebay.be
                      O1 - Hosts: 90.91.92.93 my.ebay.be
                      O1 - Hosts: 90.91.92.93 cgi.ebay.be
                      O1 - Hosts: 90.91.92.93 hub.motors.ebay.be
                      O1 - Hosts: 90.91.92.93 ebay.ca
                      O1 - Hosts: 90.91.92.93 www.ebay.ca
                      O1 - Hosts: 90.91.92.93 signin.ebay.ca
                      O1 - Hosts: 90.91.92.93 scgi.ebay.ca
                      O1 - Hosts: 90.91.92.93 pages.ebay.ca
                      O1 - Hosts: 90.91.92.93 listings.ebay.ca
                      O1 - Hosts: 90.91.92.93 motors.ebay.ca
                      O1 - Hosts: 90.91.92.93 expres.ebay.ca
                      O1 - Hosts: 90.91.92.93 stores.ebay.ca
                      O1 - Hosts: 90.91.92.93 hub.ebay.ca
                      O1 - Hosts: 90.91.92.93 sell.ebay.ca
                      O1 - Hosts: 90.91.92.93 my.ebay.ca
                      O1 - Hosts: 90.91.92.93 cgi.ebay.ca
                      O1 - Hosts: 90.91.92.93 hub.motors.ebay.ca
                      O1 - Hosts: 90.91.92.93 ebay.fr
                      O1 - Hosts: 90.91.92.93 www.ebay.fr
                      O1 - Hosts: 90.91.92.93 signin.ebay.fr
                      O1 - Hosts: 90.91.92.93 scgi.ebay.fr
                      O1 - Hosts: 90.91.92.93 pages.ebay.fr
                      O1 - Hosts: 90.91.92.93 listings.ebay.fr
                      O1 - Hosts: 90.91.92.93 motors.ebay.fr
                      O1 - Hosts: 90.91.92.93 expres.ebay.fr
                      O1 - Hosts: 90.91.92.93 stores.ebay.fr
                      O1 - Hosts: 90.91.92.93 hub.ebay.fr
                      O1 - Hosts: 90.91.92.93 sell.ebay.fr
                      O1 - Hosts: 90.91.92.93 my.ebay.fr
                      O1 - Hosts: 90.91.92.93 cgi.ebay.fr
                      O1 - Hosts: 90.91.92.93 hub.motors.ebay.fr
                      O1 - Hosts: 90.91.92.93 ebay.de
                      O1 - Hosts: 90.91.92.93 www.ebay.de
                      O1 - Hosts: 90.91.92.93 signin.ebay.de
                      O1 - Hosts: 90.91.92.93 scgi.ebay.de
                      O1 - Hosts: 90.91.92.93 pages.ebay.de
                      O1 - Hosts: 90.91.92.93 listings.ebay.de
                      O1 - Hosts: 90.91.92.93 motors.ebay.de
                      O1 - Hosts: 90.91.92.93 expres.ebay.de
                      O1 - Hosts: 90.91.92.93 stores.ebay.de
                      O1 - Hosts: 90.91.92.93 hub.ebay.de
                      O1 - Hosts: 90.91.92.93 sell.ebay.de
                      O1 - Hosts: 90.91.92.93 my.ebay.de
                      O1 - Hosts: 90.91.92.93 cgi.ebay.de
                      O1 - Hosts: 90.91.92.93 hub.motors.ebay.de
                      O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
                      O2 - BHO: e-Carte Bleue Browser Helper Object - {2E03C0FD-4C48-43A7-9A54-00240C70FF16} - C:\WINDOWS\system32\BhoECart.dll
                      O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
                      O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
                      O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
                      O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                      O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
                      O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
                      O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
                      O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
                      O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
                      O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
                      O4 - HKLM\..\Run: [HPHUPD08] c:\Program Files\HP\Digital Imaging\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\hphupd08.exe
                      O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
                      O4 - HKLM\..\Run: [PCDrProfiler] "C:\Program Files\PC-Doctor 5 for Windows\RunProfiler.exe" -r
                      O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
                      O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
                      O4 - HKLM\..\Run: [BigDogPath] C:\WINDOWS\VM_STI.EXE VIMICRO USB PC Camera
                      O4 - HKLM\..\Run: [eCarteBleue-BP] "C:\Program Files\e-Carte Bleue\Banque Populaire\ECB-BP.exe" /dontopenmycards
                      O4 - HKLM\..\Run: [OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\FirstStart.exe
                      O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
                      O4 - HKLM\..\Run: [EPSON Stylus DX5000 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBVE.EXE /FU "C:\WINDOWS\TEMP\E_S6.tmp" /EF "HKLM"
                      O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
                      O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
                      O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
                      O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
                      O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
                      O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
                      O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\Orange\SessionManager\SessionManager.exe
                      O4 - HKCU\..\Run: [OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe -NoStart
                      O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                      O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
                      O4 - HKCU\..\Run: [Debug dead] C:\DOCUME~1\Laura\APPLIC~1\BLUEFO~1\Software eggs eq.exe
                      O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
                      O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
                      O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
                      O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
                      O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
                      O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
                      O4 - Global Startup: Pense-bête.lnk = C:\Program Files\Broderbund\PrintMaster\PMREMIND.EXE
                      O8 - Extra context menu item: Add to AMV Convert Tool... - C:\Program Files\MP3 Player Utilities 4.00\AMVConverter\grab.html
                      O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.09\AMVConverter\grab.html
                      O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
                      O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.09\MediaManager\grab.html
                      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
                      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
                      O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
                      O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
                      O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
                      O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
                      O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
                      O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                      O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                      O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe (file missing)
                      O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe (file missing)
                      O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
                      O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
                      O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://souly3819.spaces.msn.com//PhotoUpload/MsnPUpld.cab
                      O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
                      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                      O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
                      O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
                      O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
                      O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
                      O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
                      O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
                      O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                      O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
                      O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
                      0
                      1. Contributeur sécurité
                        je comprends mieux tes soucis

                        ___________

                        colle un rapport hijackthis et dis tes soucis actuels

                        http://www.trendsecure.com/portal/en-US/tools/security_tools/hijackthis/download

                        manuel :
                        http://pagesperso-orange.fr/rginformatique/section%20virus/demohijack.htm
                        https://leblogdeclaude.blogspot.com/2006/10/informatique-section-hijackthis.html

                        Je conseille de renomer Hijackthis, pour contrer une éventuelle infection de Vundo.

                        ex:Renomme le fichier HijackThis.exe en eden.exe pour cela, fais un clic droit sur le fichier HijackThis.exe et choisis renommer dans la liste

                        Ensuite avec Explorer créer un dossier c:\hijackthis
                        Décompresser Hijackthis dans ce dossier.
                        C'est important pour les sauvegardes."
                        0
                        1. J'ai réussir à faire le copier coller en fait... Pardon :s

                          Malwarebytes' Anti-Malware 1.17
                          Version de la base de données: 846

                          18:15:45 11/06/2008
                          mbam-log-6-11-2008 (18-15-45).txt

                          Type de recherche: Examen complet (C:\|D:\|E:\|)
                          Eléments examinés: 196978
                          Temps écoulé: 1 hour(s), 16 minute(s), 35 second(s)

                          Processus mémoire infecté(s): 0
                          Module(s) mémoire infecté(s): 0
                          Clé(s) du Registre infectée(s): 79
                          Valeur(s) du Registre infectée(s): 1
                          Elément(s) de données du Registre infecté(s): 0
                          Dossier(s) infecté(s): 17
                          Fichier(s) infecté(s): 11

                          Processus mémoire infecté(s):
                          (Aucun élément nuisible détecté)

                          Module(s) mémoire infecté(s):
                          (Aucun élément nuisible détecté)

                          Clé(s) du Registre infectée(s):
                          HKEY_CLASSES_ROOT\hbttoolbar.hbttoolbarctl (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbttoolbar.hbttoolbarctl.1 (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\CLSID\{0ab71193-ec19-4d70-85c2-e46e2ff02755} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbcoresrv.dynamicprop (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbcoresrv.dynamicprop.1 (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\CLSID\{1e0004ec-5df0-48c7-a8f0-fbb0488a3d94} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbthostol.hbtmailanim (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbthostol.hbtmailanim.1 (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\CLSID\{31a59636-0fa3-4a56-954d-db7ad02840d8} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbtcoresrv.lfgax (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbtcoresrv.lfgax.1 (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\CLSID\{3fa917b9-df69-477f-9e4f-b60d929de79f} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbttoolbar.hbthtmlmenuui (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbttoolbar.hbthtmlmenuui.1 (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\CLSID\{420c35c9-e4f2-49f9-bf67-2be1ecf86989} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\CLSID\{460ac4db-b0de-4626-a0f0-175dd84dcb9b} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbtools.hbtcommband (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbtools.hbtcommband.1 (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\CLSID\{7e66936c-fea0-4984-ad26-7b6661ac5b2e} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{7e66936c-fea0-4984-ad26-7b6661ac5b2e} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{7e66936c-fea0-4984-ad26-7b6661ac5b2e} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbtcoresrv.hbtcoreservices (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbtcoresrv.hbtcoreservices.1 (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\CLSID\{a14c0d8d-e753-4e73-9e2b-4070791d8940} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbthostol.hbtwebmailsend (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbthostol.hbtwebmailsend.1 (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\CLSID\{c2baa4c9-ae1e-4605-ae2f-a1c49a30d881} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbttools.hbmain (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbttools.hbmain.1 (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\CLSID\{ed8525ea-2bfc-4440-bd8a-20efb9d5e541} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbtsrv.hbtcoreservices (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\hbtsrv.hbtcoreservices.1 (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\CLSID\{fa16bce1-5e36-472a-8466-e0cdd5ce00e6} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{421745e9-16df-4ee4-a758-d51f939c49cb} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{5f2b9de7-f878-4762-8cfe-e9c58f082f0e} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{8654592e-952a-4e7c-a960-304763b35fa6} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{d24f9d3c-5d4c-47f8-9ab7-632b44ad6a0d} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Typelib\{45397063-d7d0-47c2-9508-26487608a298} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{4331ec56-0aab-499e-8757-dd2ee44ad671} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{54286c3a-e044-4e65-bd44-528d6ae28a18} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{d082721f-4bd4-4b8b-bb82-06753ee6174f} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{f43ec88b-b6c8-4969-a763-e2bf55602cce} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Typelib\{71e9cf40-af72-4b55-bd3f-1fea2a0eaea6} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{175816a5-219e-4079-b2f9-53c501c409ba} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{1c1793e0-1034-4cac-837d-aa545f6961bf} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{5d16197a-1eaa-45af-b29a-69f1aa055e87} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{8a61a950-c325-4f44-ba64-273180ff3464} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{b53d4cd4-406d-43cc-8244-7893d72236dd} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{b671426c-5c1a-48ac-9652-bc9402b1c404} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{b9bb3219-f84c-4060-966b-4a1e73e24226} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{f786cb18-3809-4e49-bc99-9a66da47db8b} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Typelib\{71efe583-62fe-4419-9918-ca3b683f7b36} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{27c4569f-8728-4958-a920-a607cae8153c} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{8d5c4ec6-af8e-4b85-ba27-64babe410510} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{af15975b-1498-4740-8e6c-90af78e4198c} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Typelib\{9967a873-40f3-4c7e-9239-6c8760f19f61} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{397a208b-3d09-4b3e-93e8-ca171886612e} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{8e98faf8-794f-47f9-af90-15305564ed81} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{bc8c2e5f-d8b4-4997-bce3-8775c3707956} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Typelib\{b9f51d42-cca0-4408-bb02-d433d1865a3a} (Adware.Hotbar) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\CLSID\{147a976f-eee1-4377-8ea7-4716e4cdd239} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\mywebsearch.pseudotransparentplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\mywebsearch.pseudotransparentplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\CLSID\{84da4fdf-a1cf-4195-8688-3e961f505983} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\CLSID\{9afb8248-617f-460d-9366-d71cdeda3179} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\CLSID\{a4730ebe-43a6-443e-9776-36915d323ad3} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\Interface\{741de825-a6f0-4497-9aa6-8023cf9b0fff} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256a51-b582-467e-b8d4-7786eda79ae0} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\funwebproductsinstaller.start (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\funwebproductsinstaller.start.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          HKEY_CLASSES_ROOT\CLSID\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          HKEY_CURRENT_USER\Software\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          HKEY_CURRENT_USER\Software\Fun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully.

                          Valeur(s) du Registre infectée(s):
                          HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\BootStera (Rogue.WinAntivirus) -> Quarantined and deleted successfully.

                          Elément(s) de données du Registre infecté(s):
                          (Aucun élément nuisible détecté)

                          Dossier(s) infecté(s):
                          C:\Documents and Settings\All Users\Application Data\WinAntiVirus Pro 2006 (Rogue.WinAntivirus) -> Quarantined and deleted successfully.
                          C:\Program Files\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Program Files\MyWebSearch\bar (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Program Files\MyWebSearch\bar\History (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Program Files\MyWebSearch\bar\Settings (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Program Files\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Program Files\FunWebProducts\Installr (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Program Files\FunWebProducts\ScreenSaver (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Program Files\FunWebProducts\Shared (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Program Files\FunWebProducts\Installr\1.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Program Files\FunWebProducts\Installr\2.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Program Files\FunWebProducts\Installr\3.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Program Files\FunWebProducts\ScreenSaver\Images (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Documents and Settings\HP_Propriétaire.NOM-EB85C523610\Application Data\WinAntiVirus Pro 2006 (Rogue.WinAntivirus) -> Quarantined and deleted successfully.
                          C:\Documents and Settings\HP_Propriétaire.NOM-EB85C523610\Application Data\WinAntiVirus Pro 2006\Logs (Rogue.WinAntivirus) -> Quarantined and deleted successfully.
                          C:\Documents and Settings\Aurèl\Application Data\WinAntiVirus Pro 2006 (Rogue.WinAntivirus) -> Quarantined and deleted successfully.
                          C:\Documents and Settings\Aurèl\Application Data\WinAntiVirus Pro 2006\Logs (Rogue.WinAntivirus) -> Quarantined and deleted successfully.

                          Fichier(s) infecté(s):
                          C:\Program Files\MyWebSearch\bar\History\search2 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Program Files\MyWebSearch\bar\Settings\prevcfg2.htm (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Program Files\MyWebSearch\bar\Settings\setting2.htm (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Program Files\MyWebSearch\bar\Settings\settings.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Program Files\MyWebSearch\bar\Settings\s_bfeats.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Program Files\MyWebSearch\bar\Settings\s_pid.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Program Files\FunWebProducts\ScreenSaver\Images\00176551.urr (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Program Files\FunWebProducts\Shared\00F8D55A.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.
                          C:\Documents and Settings\HP_Propriétaire.NOM-EB85C523610\Application Data\WinAntiVirus Pro 2006\Logs\update.log (Rogue.WinAntivirus) -> Quarantined and deleted successfully.
                          C:\Documents and Settings\Aurèl\Application Data\WinAntiVirus Pro 2006\Logs\update.log (Rogue.WinAntivirus) -> Quarantined and deleted successfully.
                          C:\WINDOWS\system32\stera.job (Rogue.WinAntivirus) -> Quarantined and deleted successfully.
                          0
                          1. Je ne peut pas faire de copier-coller, mais je peut déjà dire que:

                            J'ai 108 fichiers infectés...
                            dont:

                            60 => vendeur: Adware.Hotbar;
                            catégorie: Registry key;
                            élément: 58 dans HKEY_CLASSES_ROOT\(...suite); 1 dans HKEY_LOCAL_MACHINE\SOFTWARE\(...suite); & 1 dans HKEY_CURRENT_USER\SOFTWARE\(...suite).

                            19 => vendeur: Adware.MyWebSearch
                            catégorie: Registry key;
                            élément: 5 dans HKEY_CLASSES_ROOT\CLSID\(...suite); 6 dans HKEY_CLASSES_ROOT\(...suite); 6 dans HKEY_LOCAL_MACHINE\SOFTWARE\(...suite); & 2 dans HKEY_CURRENT_USER\SOFTWARE\(...suite)

                            13 => vendeur: Adware.MyWebSearch
                            catégorie: Folder
                            élément: tous dans c:\program files\(...suite)

                            8 => vendeur: Adware.MyWebSearch
                            catégorie: file
                            élément: tous dans c:\program files\(...suite)

                            5 => vendeur: Rogue.WinAntivirus
                            catégorie: folder
                            élément: c:\document and setting\(...suite)

                            3 => vendeur: Rogue.WinAntivirus
                            catégorie: file
                            élément: c:\document and setting\(...suite)
                            0
                            1. Contributeur sécurité
                              colles les rapports demandés c'est pour voir si il y a une infection dans ton ordi qui explique la chose
                              0
                              1. Contributeur sécurité
                                slt
                                pour voir:

                                scan avec
                                MalwareByte's Anti-Malware et vire ce qui est trouvé et colle le rapport

                                https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
                                __________

                                colle un rapport hijackthis

                                http://www.trendsecure.com/portal/en-US/tools/security_tools/hijackthis/download

                                manuel :
                                http://pagesperso-orange.fr/rginformatique/section%20virus/demohijack.htm
                                https://leblogdeclaude.blogspot.com/2006/10/informatique-section-hijackthis.html

                                Je conseille de renomer Hijackthis, pour contrer une éventuelle infection de Vundo.

                                ex:Renomme le fichier HijackThis.exe en eden.exe pour cela, fais un clic droit sur le fichier HijackThis.exe et choisis renommer dans la liste

                                Ensuite avec Explorer créer un dossier c:\hijackthis
                                Décompresser Hijackthis dans ce dossier.
                                C'est important pour les sauvegardes."
                                0
                                1. Merci beaucoup, je vais essayer de faire ça.
                                  Tu ne saurait pas comment faire pour débloquer mon accès à Ebay. Parce que il me semble bien que c'est à cause du virus du cheval de troie que le hacker m'a envoyer que je n'arrive plus à acceder à Ebay.
                                  J'ai suprimée déjà tous les cookies, archives, et fichiers temporaires. Que puis-je faire d'autre?
                                  Merci.
                                  0