ordinateur lent apres avoir eu virus

Aller à la page 1, 2  Suivante
ordinateur lent apres avoir eu virus    ordinateur lent apres avoir eu virus
Auteur Message
angelle



Inscrit le: 06 Fév 2008
Messages: 21

Forum informatique FORUM sur l'Informatique, forum internet, forum emploi, la musique, le cinéma, les DIVX, les DVD, les séries, les bandes dessinées, les livres, la photographie.Posté le: Mer Fév 06, 2008 10:52 pm    Sujet du message: ordinateur lent apres avoir eu virus Répondre en citant

bonjour,
voila cela va faire 3 jours que j'ai mon ordinateur qui est lent , j'ai des fenetres cid qui s'affiche souvent . j'ai fait la procedure de nettoyage j'ai telecharger avg , hijackthis et ccleaner je sait pas si faut que je vous pose les rapports tout de suite

merci de m'aider je suis tres novice en informatique
Revenir en haut
Voir le profil de l'utilisateur Envoyer un message privé
angelle



Inscrit le: 06 Fév 2008
Messages: 21

Forum informatique FORUM sur l'Informatique, forum internet, forum emploi, la musique, le cinéma, les DIVX, les DVD, les séries, les bandes dessinées, les livres, la photographie.Posté le: Jeu Fév 07, 2008 10:23 pm    Sujet du message: Répondre en citant

pourquoi personne me repond
Revenir en haut
Voir le profil de l'utilisateur Envoyer un message privé
naheulbeuk
Modérateur
Modérateur


Inscrit le: 07 Juin 2005
Messages: 6305
Localisation: dans un coin paumé au fin fond de la bretagne profonde...

Forum informatique FORUM sur l'Informatique, forum internet, forum emploi, la musique, le cinéma, les DIVX, les DVD, les séries, les bandes dessinées, les livres, la photographie.Posté le: Ven Fév 08, 2008 10:36 pm    Sujet du message: Répondre en citant

bonsoir,

télécharges lopxpMH2.zip:

http://www.alt-shift-return.org/Info/Fichiers/lopxpMH2.zip

* Dézippe-le (clic droit >> Extraire ici) et double clique sur le fichier lopxpMH.bat.
* Poste le contenu du rapport qui va s'ouvrir

Very Happy
Revenir en haut
Voir le profil de l'utilisateur Envoyer un message privé Visiter le site web du posteur MSN Messenger
angelle



Inscrit le: 06 Fév 2008
Messages: 21

Forum informatique FORUM sur l'Informatique, forum internet, forum emploi, la musique, le cinéma, les DIVX, les DVD, les séries, les bandes dessinées, les livres, la photographie.Posté le: Sam Fév 09, 2008 10:52 am    Sujet du message: re Répondre en citant

salut , merci de m'avoir repondu j'azi telecharger ce que tu ma dit jai extrait en cliquant droit ca m'ouvre un dossier et apres je vai sur lopxpMH.bat et ca me fait du bruit ca me dit acces refuser le systeme n'a pas pu me trouver la cle ou la valeur du registre et apres ca m'ouvre une page qui me dit impossible de trouver le fichierC:lop.txt et ca me met vouez vous creer un nouveau fichier j'ai essayer de mettre oui mais ca me met une page blanche .aide moi stp merci d'avance
Revenir en haut
Voir le profil de l'utilisateur Envoyer un message privé
naheulbeuk
Modérateur
Modérateur


Inscrit le: 07 Juin 2005
Messages: 6305
Localisation: dans un coin paumé au fin fond de la bretagne profonde...

Forum informatique FORUM sur l'Informatique, forum internet, forum emploi, la musique, le cinéma, les DIVX, les DVD, les séries, les bandes dessinées, les livres, la photographie.Posté le: Sam Fév 09, 2008 11:50 pm    Sujet du message: Répondre en citant

bonsoir,

t'es sous vista ? Rolling Eyes
Télécharge HijackThis

Tuto réalisé par Bruce Lee : http://cybersecurite.xooit.com/t138-HijackThis-2-0-2.htm

Clique alors sur "Do a system scan and save a logfile"
Le scan se fait très rapidement, puis un bloc-note apparaît
(le "logfile")
Dans ce bloc-note, va dans "Edition", puis "Selectionner Tout",
le texte est alors séléctionné, retourne dans "Edition" toujours
en laissant le texte séléctionné, et clique sur copier.
Colle le contenu ici dans ta prochaine réponse !

bonne soirée
Revenir en haut
Voir le profil de l'utilisateur Envoyer un message privé Visiter le site web du posteur MSN Messenger
angelle



Inscrit le: 06 Fév 2008
Messages: 21

Forum informatique FORUM sur l'Informatique, forum internet, forum emploi, la musique, le cinéma, les DIVX, les DVD, les séries, les bandes dessinées, les livres, la photographie.Posté le: Dim Fév 10, 2008 10:34 am    Sujet du message: Répondre en citant

salut, oui je suis bien sous vista ,voila jai fait ce que tu ma dit je te poste le rapport hijackthis :




Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:04:51, on 06/02/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16575)
Boot mode: Normal

Running processes:
C:\Windows\System32\smss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\ZoneLabs\vsmon.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Spyware Doctor\pctsAuxs.exe
C:\Program Files\Spyware Doctor\pctsSvc.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Program Files\Spyware Doctor\pctsTray.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\DRIVERS\xaudio.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\wbem\wmiprvse.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=FR_FR&c=73&bd=Pavilion&pf=laptop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=FR_FR&c=73&bd=Pavilion&pf=laptop
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {0579B4B6-0293-4d73-B02D-5EBB0BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL
R3 - URLSearchHook: (no name) - {9CB65206-89C4-402c-BA80-02D8C59F9B1D} - C:\Program Files\AskTBar\SrchAstt\1.bin\A5SRCHAS.DLL
O1 - Hosts: ::1 localhost
O2 - BHO: Ask Search Assistant BHO - {0579B4B1-0293-4d73-B02D-5EBB0BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Ask Search Assistant BHO - {9CB65201-89C4-402c-BA80-02D8C59F9B1D} - C:\Program Files\AskTBar\SrchAstt\1.bin\A5SRCHAS.DLL
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: Ask Toolbar BHO - {F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL
O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\1.bin\ASKTBAR.DLL
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Ask Toolbar - {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL
O3 - Toolbar: Ask Toolbar - {FE063DB9-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\1.bin\ASKTBAR.DLL
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [HP Health Check Scheduler] C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [ISTray] "C:\Program Files\Spyware Doctor\pctsTray.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [FRAGTHAT] "C:\ProgramData\pile loud loud.4qjddt"
O4 - HKCU\..\Run: [vc log bows face] "C:\ProgramData\Bike Dumb Find.a7wp11"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'Default user')
O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} (Windows Live OneCare safety scanner control) - http://cdn.scan.onecare.live.com/resource/download/scanner/fr-be/wlscctrl2.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.zebulon.fr/scan8/oscan8.cab
O16 - DPF: {6B75345B-AA36-438A-BBE6-4078B4C6984D} (HpProductDetection Class) - http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection.cab
O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} (AvxScanOnline Control) - http://www.inoculer.com/antivirus/Msie/bitdefender.cab
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Windows\System32\ZoneLabs\vsmon.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 14213 bytes



j te remercie d'avance, bonne journée
Revenir en haut
Voir le profil de l'utilisateur Envoyer un message privé
naheulbeuk
Modérateur
Modérateur


Inscrit le: 07 Juin 2005
Messages: 6305
Localisation: dans un coin paumé au fin fond de la bretagne profonde...

Forum informatique FORUM sur l'Informatique, forum internet, forum emploi, la musique, le cinéma, les DIVX, les DVD, les séries, les bandes dessinées, les livres, la photographie.Posté le: Dim Fév 10, 2008 11:14 am    Sujet du message: Répondre en citant

bonjour, Smile

fais ceci dans l'ordre et en entier :

Note: Cette procédure a été créée spécifiquement pour cet utilisateur ! Si vous n'êtes pas cet utilisateur en question, ne suivez pas ces instructions au risque d'endommager votre PC !!!

1/ relance hijackthis et coche les cases devant ces lignes (si présentes) :

Citation:
R3 - URLSearchHook: (no name) - {0579B4B6-0293-4d73-B02D-5EBB0BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL
R3 - URLSearchHook: (no name) - {9CB65206-89C4-402c-BA80-02D8C59F9B1D} - C:\Program Files\AskTBar\SrchAstt\1.bin\A5SRCHAS.DLL
O3 - Toolbar: Ask Toolbar - {FE063DB9-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\1.bin\ASKTBAR.DLL
O4 - HKCU\..\Run: [FRAGTHAT] "C:\ProgramData\pile loud loud.4qjddt"
O4 - HKCU\..\Run: [vc log bows face] "C:\ProgramData\Bike Dumb Find.a7wp11"


Puis ferme toutes les autres fenêtres autres que hijackthis et clic sur "fix checked"

2/ ferme hijackthis

3/ désinstalle Ask Toolbar via ajout/suppr de programmes si présent

4/ Télécharge ComboFix (créé par sUBs) sur ton Bureau

Démarre en mode sans échec : http://forum.telecharger.01net.com/telecharger/virus_et_assimiles/failles_de_securite/redemarrer_en_mode_sans_echec_pourquoi_et_comment-387297/messages-1.html


[*] Double clique combofix.exe.
[*] Tape sur la touche Y (Yes) pour démarrer le scan.
[*] ComboFix redémarrera ton PC
[*] Lorsque le scan sera complété, un rapport apparaîtra. Copie/colle ce rapport dans ta prochaine réponse

NOTE : Le rapport se trouve également ici : C:\Combofix.txt

5/ Télécharge OTMoveIt
(de Old_Timer) sur ton Bureau.

[*]Double-clique sur OTMoveIt.exe pour le lancer.
[*]Assure toi que la case "Unregister Dll's and Ocx's" soit bien cochée !!!
[*]Copie le texte qui se trouve dans l'encadré ci-dessous, et colle le dans le cadre de gauche de OTMoveIt nommé Paste List of Files/Folders to be moved.

Citation:
C:\Program Files\AskTBar\
C:\ProgramData\pile loud loud.4qjddt
C:\ProgramData\Bike Dumb Find.a7wp11
C:\ProgramData\pile loud loud\
C:\ProgramData\Bike Dumb Find\


[*]Clique sur MoveIt! pour lancer la suppression.
[*]Si OTMoveIt propose de redémarrer ton PC, accepte.
[*]Lorsque un résultat apparaît dans le cadre Results, clique sur Exit.

[*]Dans ta future réponse, envoie le rapport de OTMoveIt situé sur C:\_OTMoveIt\MovedFiles.

bon dimanche Very Happy
Revenir en haut
Voir le profil de l'utilisateur Envoyer un message privé Visiter le site web du posteur MSN Messenger
angelle



Inscrit le: 06 Fév 2008
Messages: 21

Forum informatique FORUM sur l'Informatique, forum internet, forum emploi, la musique, le cinéma, les DIVX, les DVD, les séries, les bandes dessinées, les livres, la photographie.Posté le: Dim Fév 10, 2008 12:06 pm    Sujet du message: Répondre en citant

re salut, jai fait ce que tu ma dit je te poste les rapport que jai trouver :


File/Folder not found.
C:\Program Files\AskTBar\bar\Settings moved successfully.
Folder move failed. C:\Program Files\AskTBar\bar\History\search2 scheduled to be moved on reboot.
C:\Program Files\AskTBar\bar\History moved successfully.
Folder move failed. C:\Program Files\AskTBar\bar\Cache\003AC8EA scheduled to be moved on reboot.
C:\Program Files\AskTBar\bar\Cache moved successfully.
Folder cleanup failed. C:\Program Files\AskTBar\bar scheduled to be deleted on reboot.
Folder cleanup failed. C:\Program Files\AskTBar scheduled to be deleted on reboot.
C:\ProgramData\pile loud loud.4qjddt moved successfully.
C:\ProgramData\Bike Dumb Find.a7wp11 moved successfully.
Folder C:\ProgramData\pile loud loud\ not found.
Folder C:\ProgramData\Bike Dumb Find\ not found.
File/Folder not found.

Created on 02/10/2008 11:56:26


File/Folder ComboFix 08-02.05.3 - celine 2008-02-10 11:38:39.1 - NTFSx86 MINIMAL not found.
File/Folder Microsoft® Windows Vista™ Édition Familiale Premium 6.0.6000.0.1252.1.1036.18.1613 [GMT 1:00] not found.
File/Folder Endroit: C:\Users\celine\Desktop\ComboFix.exe not found.
.\clean moved successfully.
Item . is whitelisted and cannot be moved.
File/Folder not found.
File/Folder Incapable d'obtenir les privilèges Système not found.
File/Folder not found.
File/Folder (((((((((((((((((((((((((((((((((((( Autres suppressions )))))))))))))))))))))))))))))))))))))))))))))))) not found.
Item . is whitelisted and cannot be moved.
File/Folder not found.
File/Folder C:\Windows\system32\koos.exe not found.
File/Folder C:\Windows\system32\kprof not found.
File/Folder C:\Windows\system32\poof not found.
File/Folder not found.
Item . is whitelisted and cannot be moved.
File/Folder ((((((((((((((((((((((((((((((((((((((( Drivers/Services ))))))))))))))))))))))))))))))))))))))))))))))))) not found.
File/Folder not found.
Item . is whitelisted and cannot be moved.
File/Folder -------\LEGACY_IDSVIX86 not found.
File/Folder not found.
File/Folder not found.
File/Folder ((((((((((((((((((((((((((((( Fichiers créés 2008-01-10 to 2008-02-10 )))))))))))))))))))))))))))))))))))) not found.
Item . is whitelisted and cannot be moved.
File/Folder not found.
File/Folder 2008-02-10 11:34 . 2008-01-28 20:09 267,592 --a------ C:\Program Files\Uninstall Ask Toolbar.dll not found.
File/Folder 2008-02-10 11:26 . 2008-02-10 11:26 <REP> d-------- C:\ComboFix[1] not found.
File/Folder 2008-02-09 11:06 . 2008-02-09 12:06 <REP> d-------- C:\Users\All Users\Google Updater not found.
File/Folder 2008-02-09 11:06 . 2008-02-09 12:06 <REP> d-------- C:\PROGRA~2\Google Updater not found.
File/Folder 2008-02-07 14:47 . 2008-02-07 14:46 691,545 --a------ C:\Windows\unins000.exe not found.
File/Folder 2008-02-07 14:47 . 2008-02-07 14:47 3,447 --a------ C:\Windows\unins000.dat not found.
File/Folder 2008-02-06 21:50 . 2008-02-07 14:45 <REP> d-------- C:\Users\All Users\Lavasoft not found.
File/Folder 2008-02-06 21:50 . 2008-02-07 14:45 <REP> d-------- C:\PROGRA~2\Lavasoft not found.
File/Folder 2008-02-06 13:03 . 2008-02-06 13:03 <REP> d-------- C:\Users\All Users\Grisoft not found.
File/Folder 2008-02-06 13:03 . 2008-02-06 13:03 <REP> d-------- C:\PROGRA~2\Grisoft not found.
File/Folder 2008-02-06 13:03 . 2007-05-30 13:10 10,872 --a------ C:\Windows\System32\drivers\AvgAsCln.sys not found.
File/Folder 2008-02-06 12:14 . 2008-02-06 12:40 <REP> d-------- C:\Program Files\Messenger Plus! Live not found.
File/Folder 2008-02-05 13:37 . 2008-02-05 13:41 <REP> d-------- C:\Program Files\Windows Live Safety Center not found.
File/Folder 2008-02-05 13:28 . 2008-02-05 13:28 <REP> d-------- C:\Windows\BDOSCAN8 not found.
File/Folder 2008-02-05 11:13 . 2008-02-05 11:13 <REP> d-------- C:\Program Files\CCleaner not found.
File/Folder 2008-02-04 20:11 . 2007-12-10 14:53 81,288 --a------ C:\Windows\System32\drivers\iksyssec.sys not found.
File/Folder 2008-02-04 20:11 . 2007-12-10 14:53 66,952 --a------ C:\Windows\System32\drivers\iksysflt.sys not found.
File/Folder 2008-02-04 20:11 . 2007-12-10 14:53 41,864 --a------ C:\Windows\System32\drivers\ikfilesec.sys not found.
File/Folder 2008-02-04 20:11 . 2007-12-10 14:53 29,576 --a------ C:\Windows\System32\drivers\kcom.sys not found.
File/Folder 2008-02-04 20:10 . 2008-02-04 20:10 <REP> d-------- C:\Users\celine\AppData\Roaming\PC Tools not found.
File/Folder 2008-02-04 14:10 . 2008-02-04 14:10 <REP> d-------- C:\Users\celine\AppData\Roaming\Grisoft not found.
File/Folder 2008-02-04 13:18 . 2008-02-07 10:49 <REP> d-------- C:\Program Files\Spyware Doctor not found.
File/Folder 2008-02-03 18:28 . 2008-02-03 18:28 <REP> d-------- C:\Windows\Temp - Copie not found.
File/Folder 2008-02-03 15:56 . 2008-02-08 20:02 <REP> d-------- C:\Program Files\Everest Poker not found.
File/Folder 2008-02-03 14:38 . 2008-02-03 14:38 <REP> d-------- C:\Program Files\Alwil Software not found.
File/Folder 2008-02-03 14:38 . 2007-12-04 14:04 837,496 --a------ C:\Windows\System32\aswBoot.exe not found.
File/Folder 2008-02-03 14:38 . 2004-01-09 10:13 380,928 --a------ C:\Windows\System32\actskin4.ocx not found.
File/Folder 2008-02-03 14:38 . 2007-12-04 13:54 95,608 --a------ C:\Windows\System32\AvastSS.scr not found.
File/Folder 2008-02-03 14:38 . 2007-12-04 15:52 45,648 --a------ C:\Windows\System32\drivers\aswMonFlt.sys not found.
File/Folder 2008-02-03 14:38 . 2007-12-04 15:51 42,912 --a------ C:\Windows\System32\drivers\aswTdi.sys not found.
File/Folder 2008-02-03 14:38 . 2007-12-04 15:53 23,152 --a------ C:\Windows\System32\drivers\aswRdr.sys not found.
File/Folder 2008-02-03 14:23 . 2008-02-03 14:23 <REP> d-------- C:\Users\All Users\CheckPoint not found.
File/Folder 2008-02-03 14:23 . 2008-02-03 14:23 <REP> d-------- C:\Program Files\Zone Labs not found.
File/Folder 2008-02-03 14:23 . 2008-02-03 14:23 <REP> d-------- C:\PROGRA~2\CheckPoint not found.
File/Folder 2008-02-03 14:21 . 2008-02-10 10:28 350,468 --ah----- C:\Windows\System32\drivers\vsconfig.xml not found.
File/Folder 2008-02-03 14:21 . 2007-06-28 05:18 270,224 --a------ C:\Windows\System32\drivers\vsdatant.sys not found.
File/Folder 2008-02-03 12:45 . 1996-08-20 20:37 15,840 --a------ C:\Windows\System32\Machnm1.exe not found.
File/Folder 2008-02-03 12:45 . 2005-09-25 16:37 5,632 --a------ C:\Windows\System32\Machnm64.sys not found.
File/Folder 2008-02-03 12:45 . 2008-02-03 12:45 3,120 --a------ C:\Windows\System32\118290.54 not found.
File/Folder 2008-02-03 12:45 . 2008-02-03 12:45 3,120 --a------ C:\Windows\118294.78 not found.
File/Folder 2008-02-03 12:45 . 2003-08-13 00:27 2,304 --a------ C:\Windows\System32\Machnm32.sys not found.
File/Folder 2008-02-03 12:35 . 2008-02-10 11:34 <REP> d-------- C:\Windows\Internet Logs not found.
File/Folder 2008-02-02 22:33 . 2008-02-02 22:33 <REP> d-------- C:\Program Files\Trend Micro not found.
File/Folder 2008-02-02 20:20 . 2008-02-02 20:20 0 --a------ C:\Windows\nsreg.dat not found.
File/Folder 2008-02-02 19:43 . 2008-02-07 15:25 <REP> d-------- C:\Users\All Users\Spybot - Search & Destroy not found.
File/Folder 2008-02-02 19:43 . 2008-02-07 15:02 <REP> d-------- C:\Program Files\Spybot - Search & Destroy not found.
File/Folder 2008-02-02 19:43 . 2008-02-07 15:25 <REP> d-------- C:\PROGRA~2\Spybot - Search & Destroy not found.
File/Folder 2008-02-01 22:21 . 2008-02-01 22:21 <REP> d-------- C:\Users\celine\AppData\Roaming\Nero not found.
File/Folder 2008-02-01 22:18 . 2008-02-02 22:41 <REP> d-------- C:\Users\All Users\Nero not found.
File/Folder 2008-02-01 22:18 . 2008-02-02 22:41 <REP> d-------- C:\PROGRA~2\Nero not found.
File/Folder 2008-02-01 22:11 . 2008-02-07 14:51 <REP> d-------- C:\Program Files\AskTBar not found.
File/Folder 2008-01-28 21:11 . 2008-01-28 21:11 244 --ah----- C:\sqmnoopt00.sqm not found.
File/Folder 2008-01-28 21:11 . 2008-01-28 21:11 232 --ah----- C:\sqmdata00.sqm not found.
File/Folder 2008-01-28 20:09 . 2008-01-28 20:10 <REP> d-------- C:\Users\celine\AppData\Roaming\FrostWire not found.
File/Folder 2008-01-26 22:45 . 2008-01-26 22:45 <REP> d-------- C:\Users\All Users\LightScribe not found.
File/Folder 2008-01-26 22:45 . 2008-01-26 22:45 <REP> d-------- C:\PROGRA~2\LightScribe not found.
File/Folder 2008-01-23 13:04 . 2008-01-23 13:27 <REP> d-------- C:\Program Files\Microsoft Money not found.
File/Folder 2008-01-22 21:52 . 2008-01-22 21:52 <REP> d-------- C:\Users\celine\AppData\Roaming\vlc not found.
File/Folder 2008-01-22 21:50 . 2008-01-22 21:50 <REP> d-------- C:\Program Files\VideoLAN not found.
File/Folder 2008-01-22 18:56 . 2008-01-22 18:56 <REP> d-------- C:\Users\celine\AppData\Roaming\InstallShield not found.
File/Folder 2008-01-21 18:37 . 2008-01-21 22:27 <REP> d----c--- C:\Windows\System32\DRVSTORE not found.
File/Folder 2008-01-21 18:36 . 2008-01-21 18:36 <REP> d-------- C:\Program Files\Microsoft SQL Server Compact Edition not found.
File/Folder 2008-01-21 18:36 . 2006-11-29 13:06 3,426,072 --a------ C:\Windows\System32\d3dx9_32.dll not found.
File/Folder 2008-01-21 18:34 . 2008-01-21 18:35 <REP> d-------- C:\Program Files\Windows Live Toolbar not found.
File/Folder 2008-01-21 18:30 . 2008-02-04 19:56 <REP> d-------- C:\Users\All Users\Memo Drive Vc Log not found.
File/Folder 2008-01-21 18:30 . 2008-02-04 19:56 <REP> d-------- C:\PROGRA~2\Memo Drive Vc Log not found.
File/Folder 2008-01-21 18:29 . 2008-01-21 18:30 <REP> d-------- C:\Users\All Users\This Dead not found.
File/Folder 2008-01-21 18:29 . 2008-01-21 18:30 <REP> d-------- C:\PROGRA~2\This Dead not found.
File/Folder 2008-01-21 18:26 . 2008-02-07 22:04 <REP> d-------- C:\Program Files\Windows Live not found.
File/Folder 2008-01-20 20:13 . 2008-02-07 11:38 <REP> d-------- C:\Users\celine\Shared not found.
File/Folder 2008-01-20 20:13 . 2008-02-07 12:17 <REP> d-------- C:\Users\celine\Incomplete not found.
File/Folder 2008-01-20 20:12 . 2008-02-07 11:38 <REP> d-------- C:\Users\celine\AppData\Roaming\LimeWire not found.
File/Folder 2008-01-20 20:12 . 2008-01-20 20:12 <REP> d-------- C:\Program Files\LimeWire not found.
File/Folder 2008-01-19 19:54 . 2008-01-21 19:18 27,430 --a------ C:\Users\celine\AppData\Roaming\nvModes.dat not found.
File/Folder 2008-01-18 20:17 . 2008-01-23 15:09 <REP> d-------- C:\Users\All Users\eMule not found.
File/Folder 2008-01-18 20:17 . 2008-01-23 15:09 <REP> d-------- C:\PROGRA~2\eMule not found.
File/Folder 2008-01-18 19:26 . 2008-01-18 19:29 <REP> d--hsc--- C:\Program Files\Common Files\WindowsLiveInstaller not found.
File/Folder 2008-01-18 19:25 . 2008-02-07 22:21 <REP> d-------- C:\Users\All Users\WLInstaller not found.
File/Folder 2008-01-18 19:25 . 2008-02-07 22:21 <REP> d-------- C:\PROGRA~2\WLInstaller not found.
File/Folder 2008-01-15 18:59 . 2008-02-09 23:19 <REP> d-------- C:\Users\celine\nintendo ds not found.
File/Folder 2008-01-15 18:15 . 2008-01-15 18:15 2,923,520 --a------ C:\Windows\explorer.exe not found.
File/Folder 2008-01-15 18:12 . 2008-01-15 18:12 804,352 --a------ C:\Windows\System32\drivers\tcpip.sys not found.
File/Folder 2008-01-15 18:12 . 2008-01-15 18:12 217,272 --a------ C:\Windows\System32\drivers\netio.sys not found.
File/Folder 2008-01-15 18:12 . 2008-01-15 18:12 167,424 --a------ C:\Windows\System32\tcpipcfg.dll not found.
File/Folder 2008-01-15 18:12 . 2008-01-15 18:12 24,064 --a------ C:\Windows\System32\netcfg.exe not found.
File/Folder 2008-01-15 18:12 . 2008-01-15 18:12 22,016 --a------ C:\Windows\System32\netiougc.exe not found.
File/Folder 2008-01-15 18:10 . 2008-01-15 18:10 178,688 --a------ C:\Windows\System32\iphlpsvc.dll not found.
File/Folder 2008-01-15 18:10 . 2008-01-15 18:11 23,040 --a------ C:\Windows\System32\drivers\tunnel.sys not found.
File/Folder 2008-01-15 18:10 . 2008-01-15 18:10 15,360 --a------ C:\Windows\System32\drivers\TUNMP.SYS not found.
File/Folder 2008-01-15 18:07 . 2008-01-15 18:07 1,327,104 --a------ C:\Windows\System32\quartz.dll not found.
File/Folder 2008-01-15 18:07 . 2008-01-15 18:07 73,216 --a------ C:\Windows\System32\drivers\usbccgp.sys not found.
File/Folder 2008-01-15 18:06 . 2008-01-15 18:06 223,232 --a------ C:\Windows\System32\WMASF.DLL not found.
File/Folder 2008-01-15 18:06 . 2008-01-15 18:06 82,432 --a------ C:\Windows\System32\drivers\sdbus.sys not found.
File/Folder 2008-01-15 18:06 . 2008-01-15 18:06 9,728 --a------ C:\Windows\System32\LAPRXY.DLL not found.
File/Folder 2008-01-15 18:06 . 2008-01-15 18:06 2,048 --a------ C:\Windows\System32\asferror.dll not found.
File/Folder 2008-01-15 18:05 . 2008-01-15 18:05 2,605,568 --a------ C:\Windows\System32\SLsvc.exe not found.
File/Folder 2008-01-15 18:05 . 2008-01-15 18:05 566,784 --a------ C:\Windows\System32\SLCommDlg.dll not found.
File/Folder 2008-01-15 18:05 . 2008-01-15 18:05 351,232 --a------ C:\Windows\System32\SLUI.exe not found.
File/Folder 2008-01-15 18:05 . 2008-01-15 18:05 268,288 --a------ C:\Windows\System32\mcbuilder.exe not found.
File/Folder 2008-01-15 18:05 . 2008-01-15 18:05 223,232 --a------ C:\Windows\System32\SLC.dll not found.
File/Folder not found.
Item . is whitelisted and cannot be moved.
File/Folder (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) not found.
Item . is whitelisted and cannot be moved.
File/Folder 2008-02-09 10:12 --------- d-----w C:\Program Files\Google not found.
File/Folder 2008-02-07 14:07 --------- d---a-w C:\PROGRA~2\TEMP not found.
File/Folder 2008-02-04 21:37 --------- d-----w C:\Users\celine\AppData\Roaming\Skype not found.
File/Folder 2008-02-04 21:28 --------- d-----w C:\PROGRA~2\Roxio not found.
File/Folder 2008-02-04 19:42 --------- d-----w C:\Program Files\Common Files\Adobe not found.
File/Folder 2008-02-04 18:58 --------- d-----w C:\PROGRA~2\Symantec not found.
File/Folder 2008-02-03 18:20 --------- d-----w C:\Program Files\Common Files\Symantec Shared not found.
File/Folder 2008-02-03 12:37 --------- d--h--w C:\Program Files\InstallShield Installation Information not found.
File/Folder 2008-02-03 11:31 --------- d-----w C:\PROGRA~2\Microsoft Help not found.
File/Folder 2008-01-27 10:05 --------- d-----w C:\Program Files\Java not found.
File/Folder 2008-01-23 19:34 --------- d-----w C:\PROGRA~2\Sonic not found.
File/Folder 2008-01-21 17:41 --------- d-----w C:\PROGRA~2\CyberLink not found.
File/Folder 2008-01-15 17:22 174 --sha-w C:\Program Files\desktop.ini not found.
File/Folder 2008-01-15 17:19 --------- d-----w C:\Program Files\Windows Mail not found.
File/Folder 2008-01-15 17:19 --------- d-----w C:\Program Files\Windows Calendar not found.
File/Folder 2008-01-15 17:18 --------- d-----w C:\Program Files\Windows Sidebar not found.
File/Folder 2008-01-15 17:16 70,144 ----a-w C:\Windows\system32\drivers\pacer.sys not found.
File/Folder 2008-01-15 17:16 619,008 ----a-w C:\Windows\system32\drivers\dxgkrnl.sys not found.
File/Folder 2008-01-15 17:16 61,952 ----a-w C:\Windows\system32\drivers\wanarp.sys not found.
File/Folder 2008-01-15 17:16 48,640 ----a-w C:\Windows\system32\drivers\ndproxy.sys not found.
File/Folder 2008-01-15 17:16 20,480 ----a-w C:\Windows\system32\drivers\ndistapi.sys not found.
File/Folder 2008-01-15 17:15 28,344 ----a-w C:\Windows\system32\drivers\battc.sys not found.
File/Folder 2008-01-15 17:15 258,232 ----a-w C:\Windows\system32\drivers\acpi.sys not found.
File/Folder 2008-01-15 17:15 20,920 ----a-w C:\Windows\system32\drivers\compbatt.sys not found.
File/Folder 2008-01-15 17:15 14,208 ----a-w C:\Windows\system32\drivers\CmBatt.sys not found.
File/Folder 2008-01-15 17:15 11,264 ----a-w C:\Windows\system32\drivers\wmiacpi.sys not found.
File/Folder 2008-01-15 17:11 63,488 ----a-w C:\Windows\system32\drivers\mpsdrv.sys not found.
File/Folder 2008-01-15 17:09 449,024 ----a-w C:\Windows\AppPatch\AcSpecfc.dll not found.
File/Folder 2008-01-15 17:09 2,143,744 ----a-w C:\Windows\AppPatch\AcGenral.dll not found.
File/Folder 2008-01-15 17:08 537,600 ----a-w C:\Windows\AppPatch\AcLayers.dll not found.
File/Folder 2008-01-15 17:08 5,888 ----a-w C:\Windows\system32\drivers\usbd.sys not found.
File/Folder 2008-01-15 17:08 38,400 ----a-w C:\Windows\system32\drivers\usbehci.sys not found.
File/Folder 2008-01-15 17:08 224,768 ----a-w C:\Windows\system32\drivers\usbport.sys not found.
File/Folder 2008-01-15 17:08 193,536 ----a-w C:\Windows\system32\drivers\usbhub.sys not found.
File/Folder 2008-01-15 17:08 19,456 ----a-w C:\Windows\system32\drivers\usbohci.sys not found.
File/Folder 2008-01-15 17:08 173,056 ----a-w C:\Windows\AppPatch\AcXtrnal.dll not found.
File/Folder 2008-01-15 17:00 84,992 ----a-w C:\Windows\system32\drivers\srvnet.sys not found.
File/Folder 2008-01-15 17:00 58,368 ----a-w C:\Windows\system32\drivers\mrxsmb20.sys not found.
File/Folder 2008-01-15 17:00 52,736 ----a-w C:\Windows\AppPatch\iebrshim.dll not found.
File/Folder 2008-01-15 17:00 130,048 ----a-w C:\Windows\system32\drivers\srv2.sys not found.
File/Folder 2008-01-15 17:00 101,888 ----a-w C:\Windows\system32\drivers\mrxsmb.sys not found.
File/Folder 2008-01-07 19:02 --------- d-----w C:\PROGRA~2\Skype not found.
File/Folder 2008-01-07 18:16 --------- d-----w C:\Users\celine\AppData\Roaming\Template not found.
File/Folder 2008-01-07 18:11 0 ----a-w C:\Users\celine\AppData\Roaming\wklnhst.dat not found.
File/Folder 2008-01-07 16:35 --------- d-----w C:\Users\celine\AppData\Roaming\muvee Technologies not found.
File/Folder 2008-01-07 16:35 --------- d-----w C:\PROGRA~2\muvee Technologies not found.
File/Folder 2008-01-07 12:25 --------- d-----w C:\Users\celine\AppData\Roaming\CyberLink not found.
File/Folder 2008-01-07 12:24 --------- d-----w C:\Users\celine\AppData\Roaming\HP not found.
File/Folder 2008-01-07 12:24 --------- d-----w C:\PROGRA~2\HP not found.
File/Folder 2008-01-07 12:05 0 --sha-r C:\Windows\system32\drivers\103C_HP_cNB_Pavilion dv6500 Notebook PC_Y5335KV_0U_QCNF7440K56_E445841-053_4A_I30CF_SQuanta_V85.17_F.07_T070809_WV3-0_L40C_M1983_J120_7AMD_8F81_91.80_#080107_N10DE054C_(KA062EA#ABF)_XMOBILE_CN10_Z_2Rev 1.MRK not found.
File/Folder 2008-01-07 12:00 --------- d-----w C:\Users\celine\AppData\Roaming\Hewlett-Packard not found.
File/Folder 2008-01-07 11:53 --------- d-sh--w C:\Program Files\Fichiers communs not found.
File/Folder 2008-01-07 11:53 --------- d-sh--w C:\PROGRA~2\Modèles not found.
File/Folder 2008-01-07 11:53 --------- d-sh--w C:\PROGRA~2\Menu Démarrer not found.
File/Folder 2008-01-07 11:53 --------- d-sh--w C:\PROGRA~2\Favoris not found.
File/Folder 2008-01-07 11:53 --------- d-sh--w C:\PROGRA~2\Documents not found.
File/Folder 2008-01-07 11:53 --------- d-sh--w C:\PROGRA~2\Bureau not found.
File/Folder 2008-01-07 11:53 --------- d-sh--w C:\PROGRA~2\Application Data not found.
Item . is whitelisted and cannot be moved.
File/Folder not found.
File/Folder ((((((((((((((((((((((((((((((((( Point de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))) not found.
Item . is whitelisted and cannot be moved.
Item . is whitelisted and cannot be moved.
File/Folder REGEDIT4 not found.
File/Folder *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés not found.
File/Folder not found.
File/Folder [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] not found.
File/Folder "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe" [2008-01-15 18:01 1232896] not found.
File/Folder "LightScribe Control Panel"="C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe" [2007-04-19 12:26 484904] not found.
File/Folder "ehTray.exe"="C:\Windows\ehome\ehTray.exe" [2006-11-02 13:35 125440] not found.
File/Folder "msnmsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.exe" [2007-10-18 11:34 5724184] not found.
File/Folder "WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [2006-11-02 13:36 201728] not found.
File/Folder "Skype"="C:\Program Files\Skype\Phone\Skype.exe" [ ] not found.
File/Folder "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe" [ ] not found.
File/Folder "SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 11:43 2097488] not found.
File/Folder "swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-02-09 11:06 68856] not found.
File/Folder not found.
File/Folder [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] not found.
File/Folder "Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [2007-08-18 02:49 1006264] not found.
File/Folder "SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [2007-01-13 04:36 827392] not found.
File/Folder "QPService"="C:\Program Files\HP\QuickPlay\QPService.exe" [2007-04-23 17:11 176128] not found.
File/Folder "QlbCtrl"="C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2007-02-13 10:38 159744] not found.
File/Folder "HP Health Check Scheduler"="C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe" [2007-03-12 10:54 50696] not found.
File/Folder "NvSvc"="C:\Windows\system32\nvsvc.dll" [2007-07-09 03:57 86016] not found.
File/Folder "NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [2007-07-09 03:57 8433664] not found.
File/Folder "NvMediaCenter"="C:\Windows\system32\NvMcTray.dll" [2007-07-09 03:57 81920] not found.
File/Folder "hpWirelessAssistant"="C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2007-03-01 12:18 472776] not found.
File/Folder "WAWifiMessage"="C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe" [2007-01-10 15:12 317128] not found.
File/Folder "HP Software Update"="C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe" [2005-02-16 22:11 49152] not found.
File/Folder "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11 132496] not found.
File/Folder "Symantec PIF AlertEng"="C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" [2007-03-12 10:22 517768] not found.
File/Folder "ZoneAlarm Client"="C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" [2007-06-28 05:17 959976] not found.
File/Folder "avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 14:00 79224] not found.
File/Folder "!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 10:25 6731312] not found.
File/Folder "NBKeyScan"="C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" [ ] not found.
File/Folder "MSConfig"="C:\Windows\System32\msconfig.exe" [2006-11-02 10:45 222208] not found.
File/Folder not found.
File/Folder [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] not found.
File/Folder "Launcher"="%WINDIR%\SMINST\launcher.exe" [ ] not found.
File/Folder "AskSBar Uninstall"="C:\PROGRA~1\UNINST~1.DLL" [2008-01-28 20:09 267592] not found.
File/Folder not found.
File/Folder [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] not found.
File/Folder "msnmsgr"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [2007-10-18 11:34 5724184] not found.
File/Folder not found.
C:\Users\celine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup moved successfully.
File/Folder OneNote 2007 - Capture d'‚cran et lancement.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE [2007-08-24 04:45:42 101784] not found.
File/Folder not found.
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Startup moved successfully.
File/Folder Outil de mise … jour Google.lnk - C:\Program Files\Google\Google Updater\GoogleUpdater.exe [2008-02-09 11:06:10 125624] not found.
File/Folder not found.
Folder C:\Users\celine\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\ not found.
File/Folder OneNote 2007 - Capture d'‚cran et lancement.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE [2007-08-24 04:45:42 101784] not found.
File/Folder not found.
File/Folder R3 nvsmu;nvsmu;C:\Windows\system32\DRIVERS\nvsmu.sys [2007-02-17 00:50] not found.
File/Folder S2 aswMonFlt;aswMonFlt;C:\Windows\system32\DRIVERS\aswMonFlt.sys [2007-12-04 15:52] not found.
File/Folder S2 SBSDWSCService;SBSD Security Center Service;C:\Program Files\Spybot [] not found.
File/Folder S2 XAudio;XAudio;C:\Windows\system32\DRIVERS\xaudio.sys [2006-11-28 17:44] not found.
File/Folder S3 BCM43XV;Pilote de la carte réseau extensible Broadcom 802.11;C:\Windows\system32\DRIVERS\bcmwl6.sys [2007-01-03 16:43] not found.
File/Folder not found.
File/Folder not found.
File/Folder [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}] not found.
File/Folder "C:\Program Files\Common Files\LightScribe\LSRunOnce.exe" not found.
Item . is whitelisted and cannot be moved.
File/Folder ************************************************************************** not found.
File/Folder not found.
File/Folder catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net not found.
File/Folder Rootkit scan 2008-02-10 11:43:23 not found.
File/Folder Windows 6.0.6000 NTFS not found.
File/Folder not found.
File/Folder Balayage processus cachés ... not found.
File/Folder not found.
File/Folder Balayage caché autostart entries ... not found.
File/Folder not found.
File/Folder Balayage des fichiers cachés ... not found.
File/Folder not found.
File/Folder Scan terminé avec succès not found.
File/Folder Les fichiers cachés: 0 not found.
File/Folder not found.
File/Folder ************************************************************************** not found.
Item . is whitelisted and cannot be moved.
File/Folder ------------------------ Other Running Processes ------------------------ not found.
Item . is whitelisted and cannot be moved.
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe moved successfully.
Item . is whitelisted and cannot be moved.
File/Folder ************************************************************************** not found.
Item . is whitelisted and cannot be moved.
File/Folder Temps d'accomplissement: 2008-02-10 11:45:25 - machine was rebooted not found.
File/Folder ComboFix-quarantined-files.txt 2008-02-10 10:45:20 not found.
Item . is whitelisted and cannot be moved.
File/Folder 2008-02-08 10:21:12 --- E O F --- not found.

Created on 02/10/2008 11:48:01


ComboFix 08-02.05.3 - celine 2008-02-10 11:38:39.1 - NTFSx86 MINIMAL
Microsoft® Windows Vista™ Édition Familiale Premium 6.0.6000.0.1252.1.1036.18.1613 [GMT 1:00]
Endroit: C:\Users\celine\Desktop\ComboFix.exe
.

Incapable d'obtenir les privilèges Système

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Windows\system32\koos.exe
C:\Windows\system32\kprof
C:\Windows\system32\poof

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))

.
-------\LEGACY_IDSVIX86


((((((((((((((((((((((((((((( Fichiers créés 2008-01-10 to 2008-02-10 ))))))))))))))))))))))))))))))))))))
.

2008-02-10 11:34 . 2008-01-28 20:09 267,592 --a------ C:\Program Files\Uninstall Ask Toolbar.dll
2008-02-10 11:26 . 2008-02-10 11:26 <REP> d-------- C:\ComboFix[1]
2008-02-09 11:06 . 2008-02-09 12:06 <REP> d-------- C:\Users\All Users\Google Updater
2008-02-09 11:06 . 2008-02-09 12:06 <REP> d-------- C:\PROGRA~2\Google Updater
2008-02-07 14:47 . 2008-02-07 14:46 691,545 --a------ C:\Windows\unins000.exe
2008-02-07 14:47 . 2008-02-07 14:47 3,447 --a------ C:\Windows\unins000.dat
2008-02-06 21:50 . 2008-02-07 14:45 <REP> d-------- C:\Users\All Users\Lavasoft
2008-02-06 21:50 . 2008-02-07 14:45 <REP> d-------- C:\PROGRA~2\Lavasoft
2008-02-06 13:03 . 2008-02-06 13:03 <REP> d-------- C:\Users\All Users\Grisoft
2008-02-06 13:03 . 2008-02-06 13:03 <REP> d-------- C:\PROGRA~2\Grisoft
2008-02-06 13:03 . 2007-05-30 13:10 10,872 --a------ C:\Windows\System32\drivers\AvgAsCln.sys
2008-02-06 12:14 . 2008-02-06 12:40 <REP> d-------- C:\Program Files\Messenger Plus! Live
2008-02-05 13:37 . 2008-02-05 13:41 <REP> d-------- C:\Program Files\Windows Live Safety Center
2008-02-05 13:28 . 2008-02-05 13:28 <REP> d-------- C:\Windows\BDOSCAN8
2008-02-05 11:13 . 2008-02-05 11:13 <REP> d-------- C:\Program Files\CCleaner
2008-02-04 20:11 . 2007-12-10 14:53 81,288 --a------ C:\Windows\System32\drivers\iksyssec.sys
2008-02-04 20:11 . 2007-12-10 14:53 66,952 --a------ C:\Windows\System32\drivers\iksysflt.sys
2008-02-04 20:11 . 2007-12-10 14:53 41,864 --a------ C:\Windows\System32\drivers\ikfilesec.sys
2008-02-04 20:11 . 2007-12-10 14:53 29,576 --a------ C:\Windows\System32\drivers\kcom.sys
2008-02-04 20:10 . 2008-02-04 20:10 <REP> d-------- C:\Users\celine\AppData\Roaming\PC Tools
2008-02-04 14:10 . 2008-02-04 14:10 <REP> d-------- C:\Users\celine\AppData\Roaming\Grisoft
2008-02-04 13:18 . 2008-02-07 10:49 <REP> d-------- C:\Program Files\Spyware Doctor
2008-02-03 18:28 . 2008-02-03 18:28 <REP> d-------- C:\Windows\Temp - Copie
2008-02-03 15:56 . 2008-02-08 20:02 <REP> d-------- C:\Program Files\Everest Poker
2008-02-03 14:38 . 2008-02-03 14:38 <REP> d-------- C:\Program Files\Alwil Software
2008-02-03 14:38 . 2007-12-04 14:04 837,496 --a------ C:\Windows\System32\aswBoot.exe
2008-02-03 14:38 . 2004-01-09 10:13 380,928 --a------ C:\Windows\System32\actskin4.ocx
2008-02-03 14:38 . 2007-12-04 13:54 95,608 --a------ C:\Windows\System32\AvastSS.scr
2008-02-03 14:38 . 2007-12-04 15:52 45,648 --a------ C:\Windows\System32\drivers\aswMonFlt.sys
2008-02-03 14:38 . 2007-12-04 15:51 42,912 --a------ C:\Windows\System32\drivers\aswTdi.sys
2008-02-03 14:38 . 2007-12-04 15:53 23,152 --a------ C:\Windows\System32\drivers\aswRdr.sys
2008-02-03 14:23 . 2008-02-03 14:23 <REP> d-------- C:\Users\All Users\CheckPoint
2008-02-03 14:23 . 2008-02-03 14:23 <REP> d-------- C:\Program Files\Zone Labs
2008-02-03 14:23 . 2008-02-03 14:23 <REP> d-------- C:\PROGRA~2\CheckPoint
2008-02-03 14:21 . 2008-02-10 10:28 350,468 --ah----- C:\Windows\System32\drivers\vsconfig.xml
2008-02-03 14:21 . 2007-06-28 05:18 270,224 --a------ C:\Windows\System32\drivers\vsdatant.sys
2008-02-03 12:45 . 1996-08-20 20:37 15,840 --a------ C:\Windows\System32\Machnm1.exe
2008-02-03 12:45 . 2005-09-25 16:37 5,632 --a------ C:\Windows\System32\Machnm64.sys
2008-02-03 12:45 . 2008-02-03 12:45 3,120 --a------ C:\Windows\System32\118290.54
2008-02-03 12:45 . 2008-02-03 12:45 3,120 --a------ C:\Windows\118294.78
2008-02-03 12:45 . 2003-08-13 00:27 2,304 --a------ C:\Windows\System32\Machnm32.sys
2008-02-03 12:35 . 2008-02-10 11:34 <REP> d-------- C:\Windows\Internet Logs
2008-02-02 22:33 . 2008-02-02 22:33 <REP> d-------- C:\Program Files\Trend Micro
2008-02-02 20:20 . 2008-02-02 20:20 0 --a------ C:\Windows\nsreg.dat
2008-02-02 19:43 . 2008-02-07 15:25 <REP> d-------- C:\Users\All Users\Spybot - Search & Destroy
2008-02-02 19:43 . 2008-02-07 15:02 <REP> d-------- C:\Program Files\Spybot - Search & Destroy
2008-02-02 19:43 . 2008-02-07 15:25 <REP> d-------- C:\PROGRA~2\Spybot - Search & Destroy
2008-02-01 22:21 . 2008-02-01 22:21 <REP> d-------- C:\Users\celine\AppData\Roaming\Nero
2008-02-01 22:18 . 2008-02-02 22:41 <REP> d-------- C:\Users\All Users\Nero
2008-02-01 22:18 . 2008-02-02 22:41 <REP> d-------- C:\PROGRA~2\Nero
2008-02-01 22:11 . 2008-02-07 14:51 <REP> d-------- C:\Program Files\AskTBar
2008-01-28 21:11 . 2008-01-28 21:11 244 --ah----- C:\sqmnoopt00.sqm
2008-01-28 21:11 . 2008-01-28 21:11 232 --ah----- C:\sqmdata00.sqm
2008-01-28 20:09 . 2008-01-28 20:10 <REP> d-------- C:\Users\celine\AppData\Roaming\FrostWire
2008-01-26 22:45 . 2008-01-26 22:45 <REP> d-------- C:\Users\All Users\LightScribe
2008-01-26 22:45 . 2008-01-26 22:45 <REP> d-------- C:\PROGRA~2\LightScribe
2008-01-23 13:04 . 2008-01-23 13:27 <REP> d-------- C:\Program Files\Microsoft Money
2008-01-22 21:52 . 2008-01-22 21:52 <REP> d-------- C:\Users\celine\AppData\Roaming\vlc
2008-01-22 21:50 . 2008-01-22 21:50 <REP> d-------- C:\Program Files\VideoLAN
2008-01-22 18:56 . 2008-01-22 18:56 <REP> d-------- C:\Users\celine\AppData\Roaming\InstallShield
2008-01-21 18:37 . 2008-01-21 22:27 <REP> d----c--- C:\Windows\System32\DRVSTORE
2008-01-21 18:36 . 2008-01-21 18:36 <REP> d-------- C:\Program Files\Microsoft SQL Server Compact Edition
2008-01-21 18:36 . 2006-11-29 13:06 3,426,072 --a------ C:\Windows\System32\d3dx9_32.dll
2008-01-21 18:34 . 2008-01-21 18:35 <REP> d-------- C:\Program Files\Windows Live Toolbar
2008-01-21 18:30 . 2008-02-04 19:56 <REP> d-------- C:\Users\All Users\Memo Drive Vc Log
2008-01-21 18:30 . 2008-02-04 19:56 <REP> d-------- C:\PROGRA~2\Memo Drive Vc Log
2008-01-21 18:29 . 2008-01-21 18:30 <REP> d-------- C:\Users\All Users\This Dead
2008-01-21 18:29 . 2008-01-21 18:30 <REP> d-------- C:\PROGRA~2\This Dead
2008-01-21 18:26 . 2008-02-07 22:04 <REP> d-------- C:\Program Files\Windows Live
2008-01-20 20:13 . 2008-02-07 11:38 <REP> d-------- C:\Users\celine\Shared
2008-01-20 20:13 . 2008-02-07 12:17 <REP> d-------- C:\Users\celine\Incomplete
2008-01-20 20:12 . 2008-02-07 11:38 <REP> d-------- C:\Users\celine\AppData\Roaming\LimeWire
2008-01-20 20:12 . 2008-01-20 20:12 <REP> d-------- C:\Program Files\LimeWire
2008-01-19 19:54 . 2008-01-21 19:18 27,430 --a------ C:\Users\celine\AppData\Roaming\nvModes.dat
2008-01-18 20:17 . 2008-01-23 15:09 <REP> d-------- C:\Users\All Users\eMule
2008-01-18 20:17 . 2008-01-23 15:09 <REP> d-------- C:\PROGRA~2\eMule
2008-01-18 19:26 . 2008-01-18 19:29 <REP> d--hsc--- C:\Program Files\Common Files\WindowsLiveInstaller
2008-01-18 19:25 . 2008-02-07 22:21 <REP> d-------- C:\Users\All Users\WLInstaller
2008-01-18 19:25 . 2008-02-07 22:21 <REP> d-------- C:\PROGRA~2\WLInstaller
2008-01-15 18:59 . 2008-02-09 23:19 <REP> d-------- C:\Users\celine\nintendo ds
2008-01-15 18:15 . 2008-01-15 18:15 2,923,520 --a------ C:\Windows\explorer.exe
2008-01-15 18:12 . 2008-01-15 18:12 804,352 --a------ C:\Windows\System32\drivers\tcpip.sys
2008-01-15 18:12 . 2008-01-15 18:12 217,272 --a------ C:\Windows\System32\drivers\netio.sys
2008-01-15 18:12 . 2008-01-15 18:12 167,424 --a------ C:\Windows\System32\tcpipcfg.dll
2008-01-15 18:12 . 2008-01-15 18:12 24,064 --a------ C:\Windows\System32\netcfg.exe
2008-01-15 18:12 . 2008-01-15 18:12 22,016 --a------ C:\Windows\System32\netiougc.exe
2008-01-15 18:10 . 2008-01-15 18:10 178,688 --a------ C:\Windows\System32\iphlpsvc.dll
2008-01-15 18:10 . 2008-01-15 18:11 23,040 --a------ C:\Windows\System32\drivers\tunnel.sys
2008-01-15 18:10 . 2008-01-15 18:10 15,360 --a------ C:\Windows\System32\drivers\TUNMP.SYS
2008-01-15 18:07 . 2008-01-15 18:07 1,327,104 --a------ C:\Windows\System32\quartz.dll
2008-01-15 18:07 . 2008-01-15 18:07 73,216 --a------ C:\Windows\System32\drivers\usbccgp.sys
2008-01-15 18:06 . 2008-01-15 18:06 223,232 --a------ C:\Windows\System32\WMASF.DLL
2008-01-15 18:06 . 2008-01-15 18:06 82,432 --a------ C:\Windows\System32\drivers\sdbus.sys
2008-01-15 18:06 . 2008-01-15 18:06 9,728 --a------ C:\Windows\System32\LAPRXY.DLL
2008-01-15 18:06 . 2008-01-15 18:06 2,048 --a------ C:\Windows\System32\asferror.dll
2008-01-15 18:05 . 2008-01-15 18:05 2,605,568 --a------ C:\Windows\System32\SLsvc.exe
2008-01-15 18:05 . 2008-01-15 18:05 566,784 --a------ C:\Windows\System32\SLCommDlg.dll
2008-01-15 18:05 . 2008-01-15 18:05 351,232 --a------ C:\Windows\System32\SLUI.exe
2008-01-15 18:05 . 2008-01-15 18:05 268,288 --a------ C:\Windows\System32\mcbuilder.exe
2008-01-15 18:05 . 2008-01-15 18:05 223,232 --a------ C:\Windows\System32\SLC.dll

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-02-09 10:12 --------- d-----w C:\Program Files\Google
2008-02-07 14:07 --------- d---a-w C:\PROGRA~2\TEMP
2008-02-04 21:37 --------- d-----w C:\Users\celine\AppData\Roaming\Skype
2008-02-04 21:28 --------- d-----w C:\PROGRA~2\Roxio
2008-02-04 19:42 --------- d-----w C:\Program Files\Common Files\Adobe
2008-02-04 18:58 --------- d-----w C:\PROGRA~2\Symantec
2008-02-03 18:20 --------- d-----w C:\Program Files\Common Files\Symantec Shared
2008-02-03 12:37 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-02-03 11:31 --------- d-----w C:\PROGRA~2\Microsoft Help
2008-01-27 10:05 --------- d-----w C:\Program Files\Java
2008-01-23 19:34 --------- d-----w C:\PROGRA~2\Sonic
2008-01-21 17:41 --------- d-----w C:\PROGRA~2\CyberLink
2008-01-15 17:22 174 --sha-w C:\Program Files\desktop.ini
2008-01-15 17:19 --------- d-----w C:\Program Files\Windows Mail
2008-01-15 17:19 --------- d-----w C:\Program Files\Windows Calendar
2008-01-15 17:18 --------- d-----w C:\Program Files\Windows Sidebar
2008-01-15 17:16 70,144 ----a-w C:\Windows\system32\drivers\pacer.sys
2008-01-15 17:16 619,008 ----a-w C:\Windows\system32\drivers\dxgkrnl.sys
2008-01-15 17:16 61,952 ----a-w C:\Windows\system32\drivers\wanarp.sys
2008-01-15 17:16 48,640 ----a-w C:\Windows\system32\drivers\ndproxy.sys
2008-01-15 17:16 20,480 ----a-w C:\Windows\system32\drivers\ndistapi.sys
2008-01-15 17:15 28,344 ----a-w C:\Windows\system32\drivers\battc.sys
2008-01-15 17:15 258,232 ----a-w C:\Windows\system32\drivers\acpi.sys
2008-01-15 17:15 20,920 ----a-w C:\Windows\system32\drivers\compbatt.sys
2008-01-15 17:15 14,208 ----a-w C:\Windows\system32\drivers\CmBatt.sys
2008-01-15 17:15 11,264 ----a-w C:\Windows\system32\drivers\wmiacpi.sys
2008-01-15 17:11 63,488 ----a-w C:\Windows\system32\drivers\mpsdrv.sys
2008-01-15 17:09 449,024 ----a-w C:\Windows\AppPatch\AcSpecfc.dll
2008-01-15 17:09 2,143,744 ----a-w C:\Windows\AppPatch\AcGenral.dll
2008-01-15 17:08 537,600 ----a-w C:\Windows\AppPatch\AcLayers.dll
2008-01-15 17:08 5,888 ----a-w C:\Windows\system32\drivers\usbd.sys
2008-01-15 17:08 38,400 ----a-w C:\Windows\system32\drivers\usbehci.sys
2008-01-15 17:08 224,768 ----a-w C:\Windows\system32\drivers\usbport.sys
2008-01-15 17:08 193,536 ----a-w C:\Windows\system32\drivers\usbhub.sys
2008-01-15 17:08 19,456 ----a-w C:\Windows\system32\drivers\usbohci.sys
2008-01-15 17:08 173,056 ----a-w C:\Windows\AppPatch\AcXtrnal.dll
2008-01-15 17:00 84,992 ----a-w C:\Windows\system32\drivers\srvnet.sys
2008-01-15 17:00 58,368 ----a-w C:\Windows\system32\drivers\mrxsmb20.sys
2008-01-15 17:00 52,736 ----a-w C:\Windows\AppPatch\iebrshim.dll
2008-01-15 17:00 130,048 ----a-w C:\Windows\system32\drivers\srv2.sys
2008-01-15 17:00 101,888 ----a-w C:\Windows\system32\drivers\mrxsmb.sys
2008-01-07 19:02 --------- d-----w C:\PROGRA~2\Skype
2008-01-07 18:16 --------- d-----w C:\Users\celine\AppData\Roaming\Template
2008-01-07 18:11 0 ----a-w C:\Users\celine\AppData\Roaming\wklnhst.dat
2008-01-07 16:35 --------- d-----w C:\Users\celine\AppData\Roaming\muvee Technologies
2008-01-07 16:35 --------- d-----w C:\PROGRA~2\muvee Technologies
2008-01-07 12:25 --------- d-----w C:\Users\celine\AppData\Roaming\CyberLink
2008-01-07 12:24 --------- d-----w C:\Users\celine\AppData\Roaming\HP
2008-01-07 12:24 --------- d-----w C:\PROGRA~2\HP
2008-01-07 12:05 0 --sha-r C:\Windows\system32\drivers\103C_HP_cNB_Pavilion dv6500 Notebook PC_Y5335KV_0U_QCNF7440K56_E445841-053_4A_I30CF_SQuanta_V85.17_F.07_T070809_WV3-0_L40C_M1983_J120_7AMD_8F81_91.80_#080107_N10DE054C_(KA062EA#ABF)_XMOBILE_CN10_Z_2Rev 1.MRK
2008-01-07 12:00 --------- d-----w C:\Users\celine\AppData\Roaming\Hewlett-Packard
2008-01-07 11:53 --------- d-sh--w C:\Program Files\Fichiers communs
2008-01-07 11:53 --------- d-sh--w C:\PROGRA~2\Modèles
2008-01-07 11:53 --------- d-sh--w C:\PROGRA~2\Menu Démarrer
2008-01-07 11:53 --------- d-sh--w C:\PROGRA~2\Favoris
2008-01-07 11:53 --------- d-sh--w C:\PROGRA~2\Documents
2008-01-07 11:53 --------- d-sh--w C:\PROGRA~2\Bureau
2008-01-07 11:53 --------- d-sh--w C:\PROGRA~2\Application Data
.

((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe" [2008-01-15 18:01 1232896]
"LightScribe Control Panel"="C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe" [2007-04-19 12:26 484904]
"ehTray.exe"="C:\Windows\ehome\ehTray.exe" [2006-11-02 13:35 125440]
"msnmsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.exe" [2007-10-18 11:34 5724184]
"WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [2006-11-02 13:36 201728]
"Skype"="C:\Program Files\Skype\Phone\Skype.exe" [ ]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe" [ ]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 11:43 2097488]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-02-09 11:06 68856]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [2007-08-18 02:49 1006264]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [2007-01-13 04:36 827392]
"QPService"="C:\Program Files\HP\QuickPlay\QPService.exe" [2007-04-23 17:11 176128]
"QlbCtrl"="C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2007-02-13 10:38 159744]
"HP Health Check Scheduler"="C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe" [2007-03-12 10:54 50696]
"NvSvc"="C:\Windows\system32\nvsvc.dll" [2007-07-09 03:57 86016]
"NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [2007-07-09 03:57 8433664]
"NvMediaCenter"="C:\Windows\system32\NvMcTray.dll" [2007-07-09 03:57 81920]
"hpWirelessAssistant"="C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2007-03-01 12:18 472776]
"WAWifiMessage"="C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe" [2007-01-10 15:12 317128]
"HP Software Update"="C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe" [2005-02-16 22:11 49152]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11 132496]
"Symantec PIF AlertEng"="C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" [2007-03-12 10:22 517768]
"ZoneAlarm Client"="C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" [2007-06-28 05:17 959976]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 14:00 79224]
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 10:25 6731312]
"NBKeyScan"="C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" [ ]
"MSConfig"="C:\Windows\System32\msconfig.exe" [2006-11-02 10:45 222208]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"Launcher"="%WINDIR%\SMINST\launcher.exe" [ ]
"AskSBar Uninstall"="C:\PROGRA~1\UNINST~1.DLL" [2008-01-28 20:09 267592]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"msnmsgr"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [2007-10-18 11:34 5724184]

C:\Users\celine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OneNote 2007 - Capture d'‚cran et lancement.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE [2007-08-24 04:45:42 101784]

C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Startup\
Outil de mise … jour Google.lnk - C:\Program Files\Google\Google Updater\GoogleUpdater.exe [2008-02-09 11:06:10 125624]

C:\Users\celine\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\
OneNote 2007 - Capture d'‚cran et lancement.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE [2007-08-24 04:45:42 101784]

R3 nvsmu;nvsmu;C:\Windows\system32\DRIVERS\nvsmu.sys [2007-02-17 00:50]
S2 aswMonFlt;aswMonFlt;C:\Windows\system32\DRIVERS\aswMonFlt.sys [2007-12-04 15:52]
S2 SBSDWSCService;SBSD Security Center Service;C:\Program Files\Spybot []
S2 XAudio;XAudio;C:\Windows\system32\DRIVERS\xaudio.sys [2006-11-28 17:44]
S3 BCM43XV;Pilote de la carte réseau extensible Broadcom 802.11;C:\Windows\system32\DRIVERS\bcmwl6.sys [2007-01-03 16:43]


[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
"C:\Program Files\Common Files\LightScribe\LSRunOnce.exe"
.
**************************************************************************

catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-02-10 11:43:23
Windows 6.0.6000 NTFS

Balayage processus cachés ...

Balayage caché autostart entries ...

Balayage des fichiers cachés ...

Scan terminé avec succès
Les fichiers cachés: 0

**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
.
**************************************************************************
.
Temps d'accomplissement: 2008-02-10 11:45:25 - machine was rebooted
ComboFix-quarantined-files.txt 2008-02-10 10:45:20
.
2008-02-08 10:21:12 --- E O F ---




j'espere que jai fait comme il faut parce que jesuis pas bien douer avec l'informatique je te remercie d'avance
Revenir en haut
Voir le profil de l'utilisateur Envoyer un message privé
naheulbeuk
Modérateur
Modérateur


Inscrit le: 07 Juin 2005
Messages: 6305
Localisation: dans un coin paumé au fin fond de la bretagne profonde...

Forum informatique FORUM sur l'Informatique, forum internet, forum emploi, la musique, le cinéma, les DIVX, les DVD, les séries, les bandes dessinées, les livres, la photographie.Posté le: Dim Fév 10, 2008 1:14 pm    Sujet du message: Répondre en citant

re, Smile

[*]Double-clique sur OTMoveIt.exe pour le lancer.
[*]Assure toi que la case "Unregister Dll's and Ocx's" soit bien cochée !!!
[*]Copie le texte qui se trouve dans l'encadré ci-dessous, et colle le dans le cadre de gauche de OTMoveIt nommé Paste List of Files/Folders to be moved.

Citation:
C:\Users\All Users\Memo Drive Vc Log\
C:\PROGRA~2\Memo Drive Vc Log\
C:\Users\All Users\This Dead\
C:\PROGRA~2\This Dead\


[*]Clique sur MoveIt! pour lancer la suppression.
[*]Si OTMoveIt propose de redémarrer ton PC, accepte.
[*]Lorsque un résultat apparaît dans le cadre Results, clique sur Exit.

[*]Dans ta future réponse, envoie le rapport de OTMoveIt situé sur C:\_OTMoveIt\MovedFiles.

bon ap' Wink
Revenir en haut
Voir le profil de l'utilisateur Envoyer un message privé Visiter le site web du posteur MSN Messenger
angelle



Inscrit le: 06 Fév 2008
Messages: 21

Forum informatique FORUM sur l'Informatique, forum internet, forum emploi, la musique, le cinéma, les DIVX, les DVD, les séries, les bandes dessinées, les livres, la photographie.Posté le: Dim Fév 10, 2008 7:44 pm    Sujet du message: Répondre en citant

re, jai fait ce que tu ma dit je vai ou tu me dit pour trouver le rapport et ca me met ca:


C:\Users\All Users\Memo Drive Vc Log\
C:\PROGRA~2\Memo Drive Vc Log\
C:\Users\All Users\This Dead\
C:\PROGRA~2\This Dead\

jy comprend rien je suis nul aide moi stp
Revenir en haut
Voir le profil de l'utilisateur Envoyer un message privé
naheulbeuk
Modérateur
Modérateur


Inscrit le: 07 Juin 2005
Messages: 6305
Localisation: dans un coin paumé au fin fond de la bretagne profonde...

Forum informatique FORUM sur l'Informatique, forum internet, forum emploi, la musique, le cinéma, les DIVX, les DVD, les séries, les bandes dessinées, les livres, la photographie.Posté le: Dim Fév 10, 2008 8:30 pm    Sujet du message: Répondre en citant

Fais un scan [g]BitDefender[/g] en ligne (avec [g]Internet Explorer[/g] pas avec Firefox !)
(clique à gauche sur scan online).
et post moi le rapport de ce scan ici une fois terminé !

Guide d'utilisation de Bitdefender en ligne (merci Bruce Lee) : http://cybersecurite.xooit.com/t201-Scan-en-ligne-BitDefender.htm

bonne soirée Very Happy
Revenir en haut
Voir le profil de l'utilisateur Envoyer un message privé Visiter le site web du posteur MSN Messenger
angelle



Inscrit le: 06 Fév 2008
Messages: 21

Forum informatique FORUM sur l'Informatique, forum internet, forum emploi, la musique, le cinéma, les DIVX, les DVD, les séries, les bandes dessinées, les livres, la photographie.Posté le: Dim Fév 10, 2008 8:54 pm    Sujet du message: Répondre en citant

re jai essayer ca ne marche pas ca me met echec jai essayer avec tous les antivirus en lignes yen a aucun qui marche . merci d'avance bonne soiree
Revenir en haut
Voir le profil de l'utilisateur Envoyer un message privé
naheulbeuk
Modérateur
Modérateur


Inscrit le: 07 Juin 2005
Messages: 6305
Localisation: dans un coin paumé au fin fond de la bretagne profonde...

Forum informatique FORUM sur l'Informatique, forum internet, forum emploi, la musique, le cinéma, les DIVX, les DVD, les séries, les bandes dessinées, les livres, la photographie.Posté le: Dim Fév 10, 2008 10:56 pm    Sujet du message: Répondre en citant

tu n'as plus de souci sinon ?
Revenir en haut