|
|
|
|
Configuration: Windows Vista Internet Explorer 7.0
|
Bonsoir,
* Télécharger la dernière version de Lop S&D sur le Bureau, * Double-cliquer sur Lop S&D.exe pour lancer l'installation, * Puis double-cliquer sur le raccourci Lop S&D présent sur le Bureau, Attention Désactivez les protections résidentes : Antivirus, antispywares, controleurs d'intégrité, etc... pour que l'outil puisse s'exécuter correctement. * Séléctionner la langue souhaitée , puis choisir l'Option 1 (Recherche) * Le scan prend moins d'une minute, * A l'issue du scan, le bloc notes va s'ouvrir avec le résultat de la recherche, * Enregistrer le rapport LopR.txt sur le Bureau ou dans "Mes Documents" pour le retrouver facilement, sinon il sauvegardé automatiquement à la racine de la partition système : C:\LopR.txt * Pour nettoyer ce qui a été trouvé, relancer LopSD et choisir l'option "2" (Suppression) NB : un backup des suppressions sera créé dans le dossier de Lop S&D. Je répondrai à toute question si celle-ci est écrite en français, et avec de la sympathie, je pourrai vous mâcher le travail (conseils, liens...) Vous bénéficiez de mon aide, mais en aucun cas je suis un professionnel . |
bsr, j'ai le même problème que Max01 et j'ai fais comme ca ete marqué dans le message de max 01 et voici le rapport :
-----------------------[ Lop S&D 4.2.2-1 XP/Vista ]--------------------- [ USER : michŠle ] [ "C:\Windows\system32" ] [ Selection : 1 ] [ 12/07/2008 | 23:07:43,99 ] [ PC : PC-DE-MICHÔLE ] [ MAJ : 09-07-2008 | 21:02 ] [ UAC => 0 ] -------------[ ]------------ [13/02/2008|19:40] C:\Users\MICHLE~1\AppData\Roaming\Adobe\Flash Player [26/07/2007|19:44] C:\Users\MICHLE~1\AppData\Roaming\Adobe\Acrobat [20/11/2007|05:17] C:\Users\MICHLE~1\AppData\Roaming\CyberLink\PowerCinema [27/07/2007|00:38] C:\Users\MICHLE~1\AppData\Roaming\CyberLink\MediaCache [27/07/2007|00:38] C:\Users\MICHLE~1\AppData\Roaming\CyberLink\PowerProducer [27/07/2007|00:38] C:\Users\MICHLE~1\AppData\Roaming\CyberLink\PowerDVD [17/10/2007|00:11] C:\Users\MICHLE~1\AppData\Roaming\Flickr\Temp [04/06/2008|19:36] C:\Users\MICHLE~1\AppData\Roaming\Google\Local Search History [12/07/2008|22:29] C:\Users\MICHLE~1\AppData\Roaming\HP\CRMLogs [26/12/2007|20:30] C:\Users\MICHLE~1\AppData\Roaming\HP\Digital Imaging [26/12/2007|20:29] C:\Users\MICHLE~1\AppData\Roaming\HP\ScLogs [24/05/2008|12:35] C:\Users\MICHLE~1\AppData\Roaming\Identities\{000HQ7FF-AD7A-3FG5-BPAV-24QJBB1JIVUR} [26/07/2007|17:49] C:\Users\MICHLE~1\AppData\Roaming\Identities\{A6B900C1-13B4-4C30-BF1D-BF6664F36964} [10/01/2008|20:29] C:\Users\MICHLE~1\AppData\Roaming\InstallShield\ISEngine12.0 [07/01/2008|21:48] C:\Users\MICHLE~1\AppData\Roaming\LimeWire\.AppSpecialShare [07/01/2008|21:48] C:\Users\MICHLE~1\AppData\Roaming\LimeWire\xml [07/01/2008|21:48] C:\Users\MICHLE~1\AppData\Roaming\LimeWire\themes [02/12/2007|11:11] C:\Users\MICHLE~1\AppData\Roaming\Macromedia\Flash Player [10/07/2008|22:49] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\CLR Security Config [10/07/2008|11:58] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Network [05/07/2008|16:28] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\MSN Messenger [04/07/2008|21:57] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Windows Live Call [03/06/2008|15:05] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\IdentityCRL [22/05/2008|13:15] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Windows Photo Gallery [11/05/2008|11:58] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\MMC [08/03/2008|09:55] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Speech [30/11/2007|08:56] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\WLTB Custom Buttons [05/11/2007|14:40] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\eHome [12/09/2007|16:39] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\HTML Help [21/08/2007|18:11] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Windows [16/08/2007|13:08] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Encarta Reference Library [09/08/2007|11:32] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Office [09/08/2007|11:32] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\ModŠles [02/08/2007|15:40] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Crypto [29/07/2007|19:54] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Internet Explorer [26/07/2007|17:48] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Protect [26/07/2007|17:48] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\SystemCertificates [26/07/2007|17:48] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Credentials [02/06/2008|12:09] C:\Users\MICHLE~1\AppData\Roaming\Mozilla\Firefox [30/05/2008|23:02] C:\Users\MICHLE~1\AppData\Roaming\Real\RealPlayer [10/07/2008|22:52] C:\Users\MICHLE~1\AppData\Roaming\Sony\Sony Ericsson Media Manager [02/06/2008|12:08] C:\Users\MICHLE~1\AppData\Roaming\Talkback\MozillaOrg [28/04/2008|11:44] C:\Users\MICHLE~1\AppData\Roaming\Yahoo!\Companion [17/11/2007|21:15] C:\Users\MICHLE~1\AppData\Roaming\Yahoo!\Mail [24/05/2008|12:35] C:\Users\MICHLE~1\AppData\Roaming\Zylom\46 [24/05/2008|12:35] C:\Users\MICHLE~1\AppData\Roaming\Zylom\ZylomGamesPlayer ----------------[ ]--------------- [11/07/2008 15:06][--a------] C:\Windows\tasks\Norton Security Scan.job [12/07/2008 10:11][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{038F5034-3029-4017-AE84-55F105572193}.job [12/07/2008 22:37][--a------] C:\Windows\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job [11/07/2008 20:00][--a------] C:\Windows\tasks\Norton Internet Security - Analyse systŠme complŠte - michŠle.job [12/07/2008 22:26][--ah-----] C:\Windows\tasks\SA.DAT [12/07/2008 13:38][--a------] C:\Windows\tasks\SCHEDLGU.TXT ------[ ]------ [26/06/2008|20:17] C:\ProgramData\activefirsttool [26/06/2008|20:17] C:\ProgramData\Admin Inter 1 Mags [05/12/2006|01:53] C:\ProgramData\Adobe [10/07/2008|22:42] C:\ProgramData\Apple [10/07/2008|22:45] C:\ProgramData\Apple Computer [02/11/2006|15:02] C:\ProgramData\Application Data [26/07/2007|17:43] C:\ProgramData\Bureau [27/05/2008|17:41] C:\ProgramData\close aim heck.9tcxh54 [27/07/2007|00:38] C:\ProgramData\CyberLink [02/11/2006|15:02] C:\ProgramData\Desktop [02/11/2006|15:02] C:\ProgramData\Documents [16/09/2007|16:25] C:\ProgramData\eMule [26/07/2007|17:43] C:\ProgramData\Favoris [02/11/2006|15:02] C:\ProgramData\Favorites [04/06/2008|19:36] C:\ProgramData\Google [04/04/2008|21:01] C:\ProgramData\Grisoft [26/12/2007|20:16] C:\ProgramData\Hewlett-Packard [15/05/2008|08:28] C:\ProgramData\HP [29/06/2008|17:35] C:\ProgramData\hpzinstall.log [26/07/2007|17:49] C:\ProgramData\InstallShield [08/11/2007|16:24] C:\ProgramData\LUUnInstall.LiveUpdate [09/07/2008|22:30] C:\ProgramData\ma-config.com [26/07/2007|17:43] C:\ProgramData\Menu D‚marrer [20/02/2008|01:02] C:\ProgramData\Messenger Plus! [11/11/2007|15:34] C:\ProgramData\Microsoft [26/07/2007|17:43] C:\ProgramData\ModŠles [21/05/2008|22:41] C:\ProgramData\Mozilla [28/08/2007|14:51] C:\ProgramData\QuickTime [27/05/2008|17:40] C:\ProgramData\Sectthunkthunk.9nzkus [26/06/2008|20:17] C:\ProgramData\Sectthunkthunk.fqocmg8 [03/04/2008|22:50] C:\ProgramData\Sectthunkthunk.hoagt [27/04/2008|20:47] C:\ProgramData\Sectthunkthunk.qe40r5 [27/04/2008|20:47] C:\ProgramData\Sectthunkthunk.r4yt1 [26/06/2008|20:17] C:\ProgramData\Sectthunkthunk.s1394 [04/06/2008|19:45] C:\ProgramData\Skype [10/07/2008|22:51] C:\ProgramData\Sony [12/07/2008|13:05] C:\ProgramData\Spybot - Search & Destroy [02/11/2006|15:02] C:\ProgramData\Start Menu [08/11/2007|17:18] C:\ProgramData\Symantec [04/06/2008|19:25] C:\ProgramData\TEMP [02/11/2006|15:02] C:\ProgramData\Templates [26/06/2008|20:18] C:\ProgramData\Tray Warn Platform.k0omdqf [26/12/2007|20:23] C:\ProgramData\WEBREG [28/06/2008|11:11] C:\ProgramData\WindowsSearch [03/07/2008|18:13] C:\ProgramData\WLInstaller [03/05/2008|22:28] C:\ProgramData\Yahoo! [29/04/2008|23:32] C:\ProgramData\Yahoo! Companion [24/05/2008|12:36] C:\ProgramData\Zylom ---------------[ ]-------------- [05/12/2006|01:49] C:\Program Files\Acer Arcade Deluxe [26/07/2007|18:07] C:\Program Files\Acer Inc [05/12/2006|01:53] C:\Program Files\Adobe [08/11/2007|16:37] C:\Program Files\Alwil Software [10/07/2008|22:43] C:\Program Files\Apple Software Update [26/07/2007|17:53] C:\Program Files\Atheros [28/04/2008|13:26] C:\Program Files\CA Yahoo! Anti-Spy [04/06/2008|21:30] C:\Program Files\Circle Developement [04/06/2008|19:45] C:\Program Files\Common Files [05/12/2006|01:34] C:\Program Files\CONEXANT [05/12/2006|01:41] C:\Program Files\CyberLink [07/06/2008|19:16] C:\Program Files\desktop.ini [09/09/2007|12:16] C:\Program Files\directx [04/06/2008|15:42] C:\Program Files\Dofus [08/05/2008|09:35] C:\Program Files\EA GAMES [16/09/2007|16:24] C:\Program Files\eMule [26/07/2007|17:43] C:\Program Files\Fichiers communs [C:\Program Files\Common Files] [17/10/2007|00:07] C:\Program Files\Flickr Uploadr [15/05/2008|08:26] C:\Program Files\Hewlett-Packard [15/05/2008|08:30] C:\Program Files\HP [10/01/2008|20:30] C:\Program Files\InstallShield Installation Information [05/12/2006|01:23] C:\Program Files\Intel [07/06/2008|19:06] C:\Program Files\Internet Explorer [17/03/2008|21:01] C:\Program Files\Java [26/07/2007|17:50] C:\Program Files\Launch Manager [09/07/2008|22:27] C:\Program Files\ma-config.com [13/05/2008|23:55] C:\Program Files\Messenger Plus! Live [28/07/2007|03:09] C:\Program Files\Microsoft CAPICOM 2.1.0.2 [02/11/2006|14:37] C:\Program Files\Microsoft Games [20/09/2007|13:21] C:\Program Files\Microsoft Office [27/02/2008|22:35] C:\Program Files\Microsoft SQL Server Compact Edition [07/06/2008|19:06] C:\Program Files\Movie Maker [02/11/2006|14:37] C:\Program Files\MSBuild [28/07/2007|03:05] C:\Program Files\MSXML 4.0 [05/12/2006|01:39] C:\Program Files\NewTech Infosystems [09/11/2007|02:17] C:\Program Files\Norton Internet Security [11/07/2008|15:01] C:\Program Files\Norton Security Scan [10/07/2008|22:46] C:\Program Files\QuickTime [06/01/2008|22:42] C:\Program Files\Real [26/07/2007|17:51] C:\Program Files\Realtek [02/11/2006|14:37] C:\Program Files\Reference Assemblies [05/12/2006|01:37] C:\Program Files\SMSC [10/07/2008|22:48] C:\Program Files\Sony Ericsson [12/07/2008|13:08] C:\Program Files\Spybot - Search & Destroy [09/11/2007|02:17] C:\Program Files\Symantec [05/12/2006|01:31] C:\Program Files\Synaptics [02/11/2006|15:01] C:\Program Files\Uninstall Information [10/01/2008|20:30] C:\Program Files\VGA USB Camera [07/06/2008|19:06] C:\Program Files\Windows Calendar [07/06/2008|19:06] C:\Program Files\Windows Collaboration [07/06/2008|19:06] C:\Program Files\Windows Defender [07/06/2008|19:06] C:\Program Files\Windows Journal [08/03/2008|10:02] C:\Program Files\Windows Live [30/11/2007|08:52] C:\Program Files\Windows Live Toolbar [09/07/2008|21:49] C:\Program Files\Windows Mail [07/06/2008|19:06] C:\Program Files\Windows Media Player [26/07/2007|17:43] C:\Program Files\Windows NT [07/06/2008|19:06] C:\Program Files\Windows Photo Gallery [07/06/2008|19:06] C:\Program Files\Windows Sidebar [30/08/2007|17:40] C:\Program Files\WinRAR [03/05/2008|22:28] C:\Program Files\Yahoo! ------[ ]------ [05/12/2006|01:53] C:\Program Files\Common Files\Adobe [07/08/2007|16:04] C:\Program Files\Common Files\EasyInfo [26/12/2007|20:18] C:\Program Files\Common Files\Hewlett-Packard [15/05/2008|08:30] C:\Program Files\Common Files\HP [26/07/2007|17:49] C:\Program Files\Common Files\InstallShield [26/07/2007|18:47] C:\Program Files\Common Files\Java [05/12/2006|01:39] C:\Program Files\Common Files\LightScribe [02/07/2008|16:40] C:\Program Files\Common Files\microsoft shared [05/12/2006|01:39] C:\Program Files\Common Files\muvee Technologies [05/12/2006|01:39] C:\Program Files\Common Files\NewTech Infosystems [30/05/2008|23:02] C:\Program Files\Common Files\Real [28/04/2008|11:46] C:\Program Files\Common Files\Scanner [02/11/2006|13:18] C:\Program Files\Common Files\Services [02/11/2006|13:18] C:\Program Files\Common Files\SpeechEngines [09/11/2007|02:17] C:\Program Files\Common Files\Symantec Shared [07/06/2008|19:06] C:\Program Files\Common Files\System [27/02/2008|22:31] C:\Program Files\Common Files\WindowsLiveInstaller ---------------------------[ Process ]-------------------------- ... OK ! ----------------------[ ]--------------------- Commande ECHO d‚sactiv‚e. -----------------[ ]----------------- Commande ECHO d‚sactiv‚e. ----------------------[ ]---------------------- ..... OK ! --------------------[ ]--------------------- Commande ECHO d‚sactiv‚e. ----------------[ ]----------------- --------------------[ ]--------------------- Commande ECHO d‚sactiv‚e. [F:388][D:26]-> C:\Users\MICHLE~1\AppData\Local\Temp [F:498][D:51]-> C:\$Recycle.Bin [ UAC => 1 ] --------------------[ 23:07:48,73 ]---------------------- merci a ceux qui pourront me donner la suite de la marche a suivre pour enlever ces pub |
* Choisis cette fois ci l'Option 2 (Suppression)
* Ne ferme pas la fenêtre lors de la suppression ! * Poste le rapport généré (C:\lopR.txt) (Si le Bureau ne réapparaît pas, presse Ctrl + Alt + Suppr , Onglet Fichier , Nouvelle tâche , tape explorer.exe et valide) |
re bjr et merci jlpjlp a toi de m'avoir répondu, voila je poste le rapport de l'option 2
-----------------------[ Lop S&D 4.2.2-1 XP/Vista ]--------------------- [ Windows 'Longhorn' (NT 6.0) Workstation Build 6001, Service Pack 1 ] [ USER : michŠle ] [ "C:\Lop SD" ] [ Selection : 2 ] [ 13/07/2008 | 12:51:01,91 ] [ PC : PC-DE-MICHÔLE ] [ MAJ : 09-07-2008 | 21:02 ] [ UAC => 0 ] \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION ///////////////////////////// Echec ! - C:\ProgramData\Admin Inter 1 Mags\Bib dent.exe Supprime! - C:\ProgramData\Admin Inter 1 Mags\Deaf Flag.exe Supprime! - C:\ProgramData\close aim heck.9tcxh54 Supprime! - C:\ProgramData\Tray Warn Platform.k0omdqf Echec ! - C:\ProgramData\Admin Inter 1 Mags Supprime! - C:\Program Files\Circle Developement RestaurÚ! - Fichier Hosts \\\\\\\\\\\\\\\\\\\\\\\\\\\ DEUXIEME PASSAGE /////////////////////////// Supprime! - C:\ProgramData\Admin Inter 1 Mags\Bib dent.exe Supprime! - C:\ProgramData\Admin Inter 1 Mags //////////////////////////////////////-\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ -------------[ Listing des dossiers dans Roaming ]------------ [13/02/2008|19:40] C:\Users\MICHLE~1\AppData\Roaming\Adobe\Flash Player [26/07/2007|19:44] C:\Users\MICHLE~1\AppData\Roaming\Adobe\Acrobat [20/11/2007|05:17] C:\Users\MICHLE~1\AppData\Roaming\CyberLink\PowerCinema [27/07/2007|00:38] C:\Users\MICHLE~1\AppData\Roaming\CyberLink\MediaCache [27/07/2007|00:38] C:\Users\MICHLE~1\AppData\Roaming\CyberLink\PowerProducer [27/07/2007|00:38] C:\Users\MICHLE~1\AppData\Roaming\CyberLink\PowerDVD [17/10/2007|00:11] C:\Users\MICHLE~1\AppData\Roaming\Flickr\Temp [04/06/2008|19:36] C:\Users\MICHLE~1\AppData\Roaming\Google\Local Search History [13/07/2008|12:51] C:\Users\MICHLE~1\AppData\Roaming\HP\CRMLogs [26/12/2007|20:30] C:\Users\MICHLE~1\AppData\Roaming\HP\Digital Imaging [26/12/2007|20:29] C:\Users\MICHLE~1\AppData\Roaming\HP\ScLogs [24/05/2008|12:35] C:\Users\MICHLE~1\AppData\Roaming\Identities\{000HQ7FF-AD7A-3FG5-BPAV-24QJBB1JIVUR} [26/07/2007|17:49] C:\Users\MICHLE~1\AppData\Roaming\Identities\{A6B900C1-13B4-4C30-BF1D-BF6664F36964} [10/01/2008|20:29] C:\Users\MICHLE~1\AppData\Roaming\InstallShield\ISEngine12.0 [07/01/2008|21:48] C:\Users\MICHLE~1\AppData\Roaming\LimeWire\.AppSpecialShare [07/01/2008|21:48] C:\Users\MICHLE~1\AppData\Roaming\LimeWire\xml [07/01/2008|21:48] C:\Users\MICHLE~1\AppData\Roaming\LimeWire\themes [02/12/2007|11:11] C:\Users\MICHLE~1\AppData\Roaming\Macromedia\Flash Player [10/07/2008|22:49] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\CLR Security Config [10/07/2008|11:58] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Network [05/07/2008|16:28] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\MSN Messenger [04/07/2008|21:57] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Windows Live Call [03/06/2008|15:05] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\IdentityCRL [22/05/2008|13:15] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Windows Photo Gallery [11/05/2008|11:58] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\MMC [08/03/2008|09:55] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Speech [30/11/2007|08:56] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\WLTB Custom Buttons [05/11/2007|14:40] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\eHome [12/09/2007|16:39] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\HTML Help [21/08/2007|18:11] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Windows [16/08/2007|13:08] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Encarta Reference Library [09/08/2007|11:32] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Office [09/08/2007|11:32] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\ModŠles [02/08/2007|15:40] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Crypto [29/07/2007|19:54] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Internet Explorer [26/07/2007|17:48] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Protect [26/07/2007|17:48] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\SystemCertificates [26/07/2007|17:48] C:\Users\MICHLE~1\AppData\Roaming\Microsoft\Credentials [02/06/2008|12:09] C:\Users\MICHLE~1\AppData\Roaming\Mozilla\Firefox [30/05/2008|23:02] C:\Users\MICHLE~1\AppData\Roaming\Real\RealPlayer [10/07/2008|22:52] C:\Users\MICHLE~1\AppData\Roaming\Sony\Sony Ericsson Media Manager [02/06/2008|12:08] C:\Users\MICHLE~1\AppData\Roaming\Talkback\MozillaOrg [28/04/2008|11:44] C:\Users\MICHLE~1\AppData\Roaming\Yahoo!\Companion [17/11/2007|21:15] C:\Users\MICHLE~1\AppData\Roaming\Yahoo!\Mail [24/05/2008|12:35] C:\Users\MICHLE~1\AppData\Roaming\Zylom\46 [24/05/2008|12:35] C:\Users\MICHLE~1\AppData\Roaming\Zylom\ZylomGamesPlayer ----------------[ Tâches planifiées dans C:\Windows\tasks ]--------------- [11/07/2008 15:06][--a------] C:\Windows\tasks\Norton Security Scan.job [13/07/2008 12:41][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{038F5034-3029-4017-AE84-55F105572193}.job [13/07/2008 12:37][--a------] C:\Windows\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job [11/07/2008 20:00][--a------] C:\Windows\tasks\Norton Internet Security - Analyse systŠme complŠte - michŠle.job [13/07/2008 12:49][--ah-----] C:\Windows\tasks\SA.DAT [13/07/2008 12:47][--a------] C:\Windows\tasks\SCHEDLGU.TXT ------[ Listing des dossiers dans C:\ProgramData ]------ [26/06/2008|20:17] C:\ProgramData\activefirsttool [05/12/2006|01:53] C:\ProgramData\Adobe [10/07/2008|22:42] C:\ProgramData\Apple [10/07/2008|22:45] C:\ProgramData\Apple Computer [02/11/2006|15:02] C:\ProgramData\Application Data [26/07/2007|17:43] C:\ProgramData\Bureau [27/07/2007|00:38] C:\ProgramData\CyberLink [02/11/2006|15:02] C:\ProgramData\Desktop [02/11/2006|15:02] C:\ProgramData\Documents [16/09/2007|16:25] C:\ProgramData\eMule [26/07/2007|17:43] C:\ProgramData\Favoris [02/11/2006|15:02] C:\ProgramData\Favorites [04/06/2008|19:36] C:\ProgramData\Google [04/04/2008|21:01] C:\ProgramData\Grisoft [26/12/2007|20:16] C:\ProgramData\Hewlett-Packard [15/05/2008|08:28] C:\ProgramData\HP [29/06/2008|17:35] C:\ProgramData\hpzinstall.log [26/07/2007|17:49] C:\ProgramData\InstallShield [08/11/2007|16:24] C:\ProgramData\LUUnInstall.LiveUpdate [09/07/2008|22:30] C:\ProgramData\ma-config.com [26/07/2007|17:43] C:\ProgramData\Menu D‚marrer [20/02/2008|01:02] C:\ProgramData\Messenger Plus! [11/11/2007|15:34] C:\ProgramData\Microsoft [26/07/2007|17:43] C:\ProgramData\ModŠles [21/05/2008|22:41] C:\ProgramData\Mozilla [28/08/2007|14:51] C:\ProgramData\QuickTime [27/05/2008|17:40] C:\ProgramData\Sectthunkthunk.9nzkus [26/06/2008|20:17] C:\ProgramData\Sectthunkthunk.fqocmg8 [03/04/2008|22:50] C:\ProgramData\Sectthunkthunk.hoagt [27/04/2008|20:47] C:\ProgramData\Sectthunkthunk.qe40r5 [27/04/2008|20:47] C:\ProgramData\Sectthunkthunk.r4yt1 [26/06/2008|20:17] C:\ProgramData\Sectthunkthunk.s1394 [04/06/2008|19:45] C:\ProgramData\Skype [10/07/2008|22:51] C:\ProgramData\Sony [12/07/2008|13:05] C:\ProgramData\Spybot - Search & Destroy [02/11/2006|15:02] C:\ProgramData\Start Menu [08/11/2007|17:18] C:\ProgramData\Symantec [04/06/2008|19:25] C:\ProgramData\TEMP [02/11/2006|15:02] C:\ProgramData\Templates [26/12/2007|20:23] C:\ProgramData\WEBREG [28/06/2008|11:11] C:\ProgramData\WindowsSearch [03/07/2008|18:13] C:\ProgramData\WLInstaller [03/05/2008|22:28] C:\ProgramData\Yahoo! [29/04/2008|23:32] C:\ProgramData\Yahoo! Companion [24/05/2008|12:36] C:\ProgramData\Zylom ---------------[ Listing des dossiers dans C:\Program Files ]-------------- [05/12/2006|01:49] C:\Program Files\Acer Arcade Deluxe [26/07/2007|18:07] C:\Program Files\Acer Inc [05/12/2006|01:53] C:\Program Files\Adobe [08/11/2007|16:37] C:\Program Files\Alwil Software [10/07/2008|22:43] C:\Program Files\Apple Software Update [26/07/2007|17:53] C:\Program Files\Atheros [28/04/2008|13:26] C:\Program Files\CA Yahoo! Anti-Spy [04/06/2008|19:45] C:\Program Files\Common Files [05/12/2006|01:34] C:\Program Files\CONEXANT [05/12/2006|01:41] C:\Program Files\CyberLink [07/06/2008|19:16] C:\Program Files\desktop.ini [09/09/2007|12:16] C:\Program Files\directx [04/06/2008|15:42] C:\Program Files\Dofus [08/05/2008|09:35] C:\Program Files\EA GAMES [16/09/2007|16:24] C:\Program Files\eMule [26/07/2007|17:43] C:\Program Files\Fichiers communs [C:\Program Files\Common Files] [17/10/2007|00:07] C:\Program Files\Flickr Uploadr [15/05/2008|08:26] C:\Program Files\Hewlett-Packard [15/05/2008|08:30] C:\Program Files\HP [10/01/2008|20:30] C:\Program Files\InstallShield Installation Information [05/12/2006|01:23] C:\Program Files\Intel [07/06/2008|19:06] C:\Program Files\Internet Explorer [17/03/2008|21:01] C:\Program Files\Java [26/07/2007|17:50] C:\Program Files\Launch Manager [09/07/2008|22:27] C:\Program Files\ma-config.com [13/05/2008|23:55] C:\Program Files\Messenger Plus! Live [28/07/2007|03:09] C:\Program Files\Microsoft CAPICOM 2.1.0.2 [02/11/2006|14:37] C:\Program Files\Microsoft Games [20/09/2007|13:21] C:\Program Files\Microsoft Office [27/02/2008|22:35] C:\Program Files\Microsoft SQL Server Compact Edition [07/06/2008|19:06] C:\Program Files\Movie Maker [02/11/2006|14:37] C:\Program Files\MSBuild [28/07/2007|03:05] C:\Program Files\MSXML 4.0 [05/12/2006|01:39] C:\Program Files\NewTech Infosystems [09/11/2007|02:17] C:\Program Files\Norton Internet Security [11/07/2008|15:01] C:\Program Files\Norton Security Scan [10/07/2008|22:46] C:\Program Files\QuickTime [06/01/2008|22:42] C:\Program Files\Real [26/07/2007|17:51] C:\Program Files\Realtek [02/11/2006|14:37] C:\Program Files\Reference Assemblies [05/12/2006|01:37] C:\Program Files\SMSC [10/07/2008|22:48] C:\Program Files\Sony Ericsson [12/07/2008|13:08] C:\Program Files\Spybot - Search & Destroy [09/11/2007|02:17] C:\Program Files\Symantec [05/12/2006|01:31] C:\Program Files\Synaptics [02/11/2006|15:01] C:\Program Files\Uninstall Information [10/01/2008|20:30] C:\Program Files\VGA USB Camera [07/06/2008|19:06] C:\Program Files\Windows Calendar [07/06/2008|19:06] C:\Program Files\Windows Collaboration [07/06/2008|19:06] C:\Program Files\Windows Defender [07/06/2008|19:06] C:\Program Files\Windows Journal [08/03/2008|10:02] C:\Program Files\Windows Live [30/11/2007|08:52] C:\Program Files\Windows Live Toolbar [09/07/2008|21:49] C:\Program Files\Windows Mail [07/06/2008|19:06] C:\Program Files\Windows Media Player [26/07/2007|17:43] C:\Program Files\Windows NT [07/06/2008|19:06] C:\Program Files\Windows Photo Gallery [07/06/2008|19:06] C:\Program Files\Windows Sidebar [30/08/2007|17:40] C:\Program Files\WinRAR [03/05/2008|22:28] C:\Program Files\Yahoo! ------[ Listing des dossiers dans C:\Program Files\Common Files ]------ [05/12/2006|01:53] C:\Program Files\Common Files\Adobe [07/08/2007|16:04] C:\Program Files\Common Files\EasyInfo [26/12/2007|20:18] C:\Program Files\Common Files\Hewlett-Packard [15/05/2008|08:30] C:\Program Files\Common Files\HP [26/07/2007|17:49] C:\Program Files\Common Files\InstallShield [26/07/2007|18:47] C:\Program Files\Common Files\Java [05/12/2006|01:39] C:\Program Files\Common Files\LightScribe [02/07/2008|16:40] C:\Program Files\Common Files\microsoft shared [05/12/2006|01:39] C:\Program Files\Common Files\muvee Technologies [05/12/2006|01:39] C:\Program Files\Common Files\NewTech Infosystems [30/05/2008|23:02] C:\Program Files\Common Files\Real [28/04/2008|11:46] C:\Program Files\Common Files\Scanner [02/11/2006|13:18] C:\Program Files\Common Files\Services [02/11/2006|13:18] C:\Program Files\Common Files\SpeechEngines [09/11/2007|02:17] C:\Program Files\Common Files\Symantec Shared [07/06/2008|19:06] C:\Program Files\Common Files\System [27/02/2008|22:31] C:\Program Files\Common Files\WindowsLiveInstaller ---------------------------[ Process ]-------------------------- ... 83 ... OK ! ----------------------[ Recherche avec S_Lop ]--------------------- Aucun fichier / dossier Lop trouvé ! -----------------[ Recherche de Fichiers / Dossiers Lop ]----------------- C:\Users\MICHLE~1\AppData\Roaming\MICROS~1\Windows\Cookies\michele@www.adserver5[1].txt C:\Users\MICHLE~1\AppData\Roaming\MICROS~1\Windows\Cookies\michele@banner.cotedazurpalace[2].txt C:\Users\MICHLE~1\AppData\Roaming\MICROS~1\Windows\Cookies\michele@cotedazurpalace[1].txt C:\Users\MICHLE~1\AppData\Roaming\MICROS~1\Windows\Cookies\michele@adopt.euroclick[1].txt C:\Users\MICHLE~1\AppData\Roaming\MICROS~1\Windows\Cookies\michele@2xmoinscher[1].txt C:\Users\MICHLE~1\AppData\Roaming\MICROS~1\Windows\Cookies\michele@www.2xmoinscher[2].txt ----------------------[ Verification du Registre ]---------------------- [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] ..... OK ! --------------------[ Verification du fichier Hosts ]--------------------- Fichier Hosts PROPRE ----------------[ Recherche de fichiers avec Catchme ]----------------- catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-07-13 12:53:03 Windows 6.0.6001 Service Pack 1 NTFS scanning hidden processes ... scanning hidden files ... scan completed successfully hidden processes: 0 hidden files: 0 --------------------[ Recherche d'autres infections ]--------------------- => C:\Users\michŠle\Desktop\julie\Photo\Photofiltre Studio v9.0.0 Fr Crack (Keygen) By Seven.zip => C:\Users\michŠle\Desktop\julie\Photo\Photofiltre Studio v9.0.0 Fr Crack (Keygen) By Seven.zip [F:396][D:24]-> C:\Users\MICHLE~1\AppData\Local\Temp [F:715][D:1]-> C:\Users\MICHLE~1\AppData\Roaming\MICROS~1\Windows\Cookies [F:5071][D:95]-> C:\Users\MICHLE~1\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5 [F:498][D:51]-> C:\$Recycle.Bin [ UAC => 1 ] --------------------[ Fin du rapport a 12:55:18,53 ]---------------------- |
refais le nettoyage avec lop sd car il y a eu une erreur et colle le rapport
puis colle un rapport hijackthis http://www.trendsecure.com/portal/en-US/tools/security_tools/hijackthis/download manuel : http://pagesperso-orange.fr/rginformatique/section%20virus/demohijack.htm http://leblogdeclaude.blogspot.com/2006/10/informatique-section-hijackthis.html Je conseille de renomer Hijackthis, pour contrer une éventuelle infection de Vundo. ex:Renomme le fichier HijackThis.exe en eden.exe pour cela, fais un clic droit sur le fichier HijackThis.exe et choisis renommer dans la liste Ensuite avec Explorer créer un dossier c:\hijackthis Décompresser Hijackthis dans ce dossier. C'est important pour les sauvegardes."
|
JE CONTINUE LOL TOUT CA C DU CHINOIS POUR MOI :))
Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:23:20, on 13/07/2008 Platform: Windows Vista SP1 (WinNT 6.00.1905) MSIE: Internet Explorer v7.00 (7.00.6001.18000) Boot mode: Normal Running processes: C:\Windows\system32\taskeng.exe C:\Windows\system32\Dwm.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Windows\RtHDVCpl.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Windows\System32\rundll32.exe C:\Program Files\Launch Manager\LManager.exe C:\Users\MICHLE~1\AppData\Local\Temp\RtkBtMnt.exe C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe C:\Program Files\QuickTime\QTTask.exe C:\Program Files\Alwil Software\Avast4\ashDisp.exe C:\Windows\Pixart\Pac7311\Monitor.exe C:\Program Files\HP\HP Software Update\hpwuSchd2.exe C:\Windows\System32\hkcmd.exe C:\Windows\System32\igfxpers.exe C:\Windows\ehome\ehtray.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Windows\system32\igfxext.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Windows\system32\igfxsrvc.exe C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe C:\Acer\Empowering Technology\ENET\ENMTRAY.EXE C:\Windows\ehome\ehmsas.exe C:\Acer\Empowering Technology\EPOWER\EPOWER_DMC.EXE C:\Acer\Empowering Technology\ACER.EMPOWERING.FRAMEWORK.SUPERVISOR.EXE C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE C:\Windows\system32\conime.exe C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe C:\Windows\explorer.exe C:\Windows\system32\wbem\unsecapp.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe C:\Windows\system32\SearchFilterHost.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://fr.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*http://fr.search.yahoo.com R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.fr.acer.yahoo.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr9/*http://fr.search.yahoo.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://fr.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*http://fr.search.yahoo.com R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.fr.acer.yahoo.com R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr9/*http://fr.search.yahoo.com R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\NppBho.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Windows\system32\ActiveToolBand.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\UIBHO.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\system32\eDStoolbar.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton Internet Security\osCheck.exe" O4 - HKLM\..\Run: [WarReg_PopUp] C:\Acer\WR_PopUp\WarReg_PopUp.exe O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [QCDriverInstaller] C:\PROGRA~1\COMMON~1\Logitech\QCDriver\Lqdsw.exe /addrun /l 1036 /LaunchAtStart O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [PAC7311_Monitor] C:\Windows\PixArt\PAC7311\Monitor.exe O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [1 mags 16 more] "C:\ProgramData\close aim heck.9tcxh54" O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [about plan] "C:\ProgramData\Sectthunkthunk.fqocmg8" O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet O4 - HKCU\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -startup O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background (User 'Default user') O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Empowering Technology Launcher.lnk = ? O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe (file missing) O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe (file missing) O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file) O13 - Gopher Prefix: O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/hardwaredetection_3_0_2_0.cab O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe O23 - Service: Validation de mot de passe Symantec IS (ISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\isPwdSvc.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe End of file - 12597 bytes |
bon voila j'ai fais comme tu as marqué j'espère que j'ai fais la bonne manipulation. Merci pour ton aide JLP |
si tu as avast et norton vire un des deux sinon l'ordi va planter!!!
____________ Relance HijackThis, choisis "do a scan only" coche la case devant les lignes ci-dessous et clic en bas sur "fix checked". O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKCU\..\Run: [1 mags 16 more] "C:\ProgramData\close aim heck.9tcxh54" O4 - HKCU\..\Run: [about plan] "C:\ProgramData\Sectthunkthunk.fqocmg8" {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe (file missing) O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file) O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab _____________ télécharge OTMoveIt http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe (de Old_Timer) sur ton Bureau. Ou sur http://up.sur-la-toile.com/sadW double-clique sur OTMoveIt.exe pour le lancer. copie la liste qui se trouve en citation ci-dessous, et colle-la dans le cadre de gauche de OTMoveIt :Paste List of Files/Folders to be moved. Citation : C:\Users\michŠle\Desktop\julie\Photo\Photofiltre Studio v9.0.0 Fr Crack (Keygen) By Seven.zip C:\ProgramData\close aim heck.9tcxh54 C:\ProgramData\Sectthunkthunk.fqocmg8 clique sur MoveIt! pour lancer la suppression. le résultat apparaitra dans le cadre "Results". clique sur Exit pour fermer. poste le rapport situé dans C:\_OTMoveIt\MovedFiles. il te sera peut-être demander de redémarrer le pc pour achever la suppression.si c'est le cas accepte par Yes. ___________________ encore des pubs? des soucis?
|
tu peux virer ce que je t'ai fais mettre
pour virer norton esaye de desactiver le compte utilisateur puis vire norton http://www.vic38.fr/... reactive ensuite le compte utilisateur ___________ ou sinon fais ceci pour bien supprimer norton http://service1.symantec.com/...
|
vire ce crack suspect:
=> C:\Users\michŠle\Desktop\julie\Photo\Photofiltre Studio v9.0.0 Fr Crack (Keygen) By Seven.zip tu dois pouvoir envoyer la musique par msn normalement mais je ne l'utilise pas... |