Se connecter avec
S'enregistrer | Connectez-vous

Clicker.JS.Tagem

Dernière réponse : dans Sécurité
Lassé par la pub ? Créez un compte

Bonjour,

Merci d'indiquer les fichiers infectés détectés par ton antivirus, ex: C:\windows\coincoin.exe


- Télécharge HijackThis puis génère un log :
- Exécute le et clique sur Do a scan and save log file.
- Le rapport s'ouvre sur leBloc-Note
- Colle le rapport ici, pour cela :
- Menu Edition / Selectionner Tout
- Menu Edition / copier
- Ici dans un nouveau message : clic droit / coller
- N'hésite pas à consulter l'aide HijackThis -

Logfile of HijackThis v1.99.1
Scan saved at 14:24:35, on 11/06/2006
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
c:\progra~1\intern~1\iexplore.exe
C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\System32\drivers\CDAC11BA.EXE
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\Inventel\Gateway\wlancfg.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\Wanadoo\Watch.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\CHOUGAR\Mes documents\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O2 - BHO: (no name) - {ED196D94-E886-5D0E-5461-00B4D512A4CE} - C:\DOCUME~1\CHOUGAR\APPLIC~1\BATTHA~1\DART MPEG.exe
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [Oneboldmemosettings] C:\Documents and Settings\All Users\Application Data\Fourgridonebold\LOUD RULE.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [CdromBin] C:\DOCUME~1\CHOUGAR\APPLIC~1\FLAWDE~1\wipe slow anti.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU)
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111401/housecall...
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: MsgPlusLoader.dll
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - AVIRA GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\System32\drivers\CDAC11BA.EXE
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\Program Files\Inventel\Gateway\wlancfg.exe

Vas dans ajout/suppression de programmes du panneau de configuration, démarre la désinstallation de MSN 3 plus!
Il va te proposer de désinstaller le sponsors, accepte

Sur HijackThis, coche ces lignes :
O2 - BHO: (no name) - {ED196D94-E886-5D0E-5461-00B4D512A4CE} - C:\DOCUME~1\CHOUGAR\APPLIC~1\BATTHA~1\DART MPEG.exe

O4 - HKLM\..\Run: [Oneboldmemosettings] C:\Documents and Settings\All Users\Application Data\Fourgridonebold\LOUD RULE.exe
O4 - HKCU\..\Run: [CdromBin] C:\DOCUME~1\CHOUGAR\APPLIC~1\FLAWDE~1\wipe slow anti.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
--> clic sur fix checked


- Redémarre en mode sans échec, si tu sais pas comment on fait lis ceci

Supprime ces fichiers :
C:\Documents and Settings\All Users\Application Data\Fourgridonebold\
C:\Documents and Settings\CHOUGAR\Application Data\FLAWDE~1\ <-- abréviation
C:\Documents and Settings\CHOUGAR\Application Data\BATTHA~1 <-- abréviation


Redémarre l'ordinateur


Ouvre internet explorer --> Outils --> Options internet --> onglet "sécurité" --> Valide "niveau par défaut".

Sur Internet explorer --> Outils --> Options internet --> onglet "avancé" --> valide "Paramètres par défaut".

- Fais un Scan en ligne sur Kaspersky en utilisant Internet Explorer. Si tu es perdu, tu peux suivre cette aide pour les scans en ligne
- Copie/colle le rapport du scan ici

Si le scan avec Kaspersky ne fonctionne pas, fais ceci :

- Fais un scan avec panda en désactivant ton antivirus pendant le scan!
(Si tu es perdu, tu peux suivre cette aide pour les scans en ligne)
- Copie/colle le rapport panda ici

Incident Status Location

Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\CHOUGAR\Cookies\chougar@atdmt[2].txt
Spyware:Cookie/Bluestreak Not disinfected C:\Documents and Settings\CHOUGAR\Cookies\chougar@bluestreak[1].txt
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\CHOUGAR\Cookies\chougar@doubleclick[1].txt
Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\CHOUGAR\Cookies\chougar@mediaplex[1].txt
Spyware:Cookie/Weborama Not disinfected C:\Documents and Settings\CHOUGAR\Cookies\chougar@weborama[2].txt
Spyware:Cookie/Xiti Not disinfected C:\Documents and Settings\CHOUGAR\Cookies\chougar@xiti[1].txt
Adware:Adware/Lop Not disinfected C:\Documents and Settings\CHOUGAR\Local Settings\Temp\bis21.exe
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\CHOUGAR\Local Settings\Temp\Cookies\chougar@advertising[2].txt
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\CHOUGAR\Local Settings\Temp\Cookies\chougar@atdmt[1].txt
Spyware:Cookie/Bluestreak Not disinfected C:\Documents and Settings\CHOUGAR\Local Settings\Temp\Cookies\chougar@bluestreak[2].txt
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\CHOUGAR\Local Settings\Temp\Cookies\chougar@doubleclick[1].txt
Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\CHOUGAR\Local Settings\Temp\Cookies\chougar@serving-sys[2].txt
Potentially unwanted tool:Application/Winfixer2005 Not disinfected C:\Documents and Settings\CHOUGAR\Local Settings\Temporary Internet Files\Content.IE5\KR8R25KZ\WinFixer2005ScannerInstallFRA[1].cab[UWFX5V_0001_N57M1412NetInstaller.exe]
Adware:Adware/Lop Not disinfected C:\Program Files\Adverts\uninst.exe
Spyware:Cookie/2o7 Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc1.txt
Spyware:Cookie/Adtech Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc10.txt
Spyware:Cookie/Tradedoubler Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc104.txt
Spyware:Cookie/Valueclick Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc105.txt
Spyware:Cookie/Advertising Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc11.txt
Spyware:Cookie/Weborama Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc110.txt
Spyware:Cookie/WinFixer Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc111.txt
Spyware:Cookie/ErrorSafe Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc122.txt
Spyware:Cookie/Xiti Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc136.txt
Spyware:Cookie/Falkag Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc14.txt
Spyware:Cookie/Atlas DMT Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc16.txt
Spyware:Cookie/Bluestreak Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc19.txt
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc2.txt
Spyware:Cookie/Casinodelrio Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc21.txt
Spyware:Cookie/Casinotropez Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc23.txt
Spyware:Cookie/Cassava Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc24.txt
Spyware:Cookie/cs.sexcounter Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc29.txt
Spyware:Cookie/888 Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc3.txt
Spyware:Cookie/Doubleclick Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc33.txt
Spyware:Cookie/Hitbox Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc36.txt
Spyware:Cookie/888 Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc4.txt
Spyware:Cookie/FastClick Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc40.txt
Spyware:Cookie/Hitbox Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc52.txt
Spyware:Cookie/Lop Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc63.txt
Spyware:Cookie/Mediaplex Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc65.txt
Spyware:Cookie/QuestionMarket Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc86.txt
Spyware:Cookie/WUpd Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc87.txt
Spyware:Cookie/Serving-sys Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc89.txt
Spyware:Cookie/Hbmediapro Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc9.txt
Spyware:Cookie/Smartadserver Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc92.txt
Spyware:Cookie/Reliablestats Not disinfected C:\RECYCLER\S-1-5-21-1844237615-1580818891-682003330-1003\Dc96.txt

Supprime ces fichiers/dossiers :
C:\Documents and Settings\CHOUGAR\Local Settings\Temporary Internet Files\Content.IE5\KR8R25KZ\WinFixer2005ScannerInstallFRA[1].cab[UWFX5V_0001_N57M1412NetInstaller.exe]
C:\Program Files\Adverts\

si tu n'y parviens pas, fais le en mode sans échec.


As-tu encore des alertes de ton antivirus?
si oui donne les fichiers infectés.

j'ai essayé en mode sans echec mais je ne trouve pas non plus le fichier

C:\Documents and Settings\CHOUGAR\Local Settings\Temporary Internet Files\Content.IE5\KR8R25KZ\WinFixer2005ScannerInstallFRA[1].cab[UWFX5V_0001_N57M1412NetInstaller.exe]

En faite c'est ça le fichier :
C:\Documents and Settings\CHOUGAR\Local Settings\Temporary Internet Files\Content.IE5\KR8R25KZ\WinFixer2005ScannerInstallFRA[1].cab

Mais tu peux supprimer le dossier :
C:\Documents and Settings\CHOUGAR\Local Settings\Temporary Internet Files\Content.IE5\KR8R25KZ\

J'ai été infecté par ce troyen et jaimerais savoir si je le suit encore ou pas. Merci

Logfile of HijackThis v1.99.1
Scan saved at 15:15:45, on 08/08/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Apps\Powercinema\PCMService.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\OFFICE One6.5\OFFICE One PDF Manager\OoPDFSettingsv6.exe
C:\Program Files\OFFICE One6.5\OFFICE One Clock\ooneclockv65.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLService.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\Program Files\Canon\MultiPASS4\MPSERVIC.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Canon\MultiPASS4\MPDBMgr.exe
C:\Documents and Settings\lolonoue\Bureau\hijackthis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://format.packardbell.com/cgi-bin/redirect/?country...
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = file://C:\APPS\IE\offline\fr.htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: PBFRV2 - {4E7BD74F-2B8D-469E-A0E8-ED6AB685FA7D} - C:\WINDOWS\system32\pbfrv2.dll
O2 - BHO: DealioBHO Class - {6A87B991-A31F-4130-AE72-6D0C294BF082} - C:\Program Files\Dealio\Dealio.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O3 - Toolbar: PBFRV2 - {4E7BD74F-2B8D-469E-A0E8-ED6AB685FA7D} - C:\WINDOWS\system32\pbfrv2.dll
O3 - Toolbar: Dealio - {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - C:\Program Files\Dealio\Dealio.dll
O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [au] "C:\Program Files\Dealio\DealioAu.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [BOOT] C:\Program Files\ISSENDIS\ISSENDIS WebUpdate v6\issendiswebupdatev6.exe /BOOT
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [New.net Startup] rundll32 C:\PROGRA~1\NEWDOT~1\NEWDOT~2.DLL,ClientStartup -s
O4 - HKLM\..\Run: [OoPDFSettingsv6.exe] C:\Program Files\OFFICE One6.5\OFFICE One PDF Manager\OoPDFSettingsv6.exe
O4 - HKCU\..\Run: [WOOKIT] C:\Program Files\Wanadoo\GestMaj.exe EspaceWanadoo.exe
O4 - Global Startup: OFFICE One Clock v6.5.lnk = C:\Program Files\OFFICE One6.5\OFFICE One Clock\ooneclockv65.exe
O8 - Extra context menu item: &Recherche AOL Toolbar - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: Compare Prices with &Dealio - C:\Program Files\Dealio\res\DealioSearch.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\Dealio.dll
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU)
O10 - Hijacked Internet access by New.Net
O10 - Hijacked Internet access by New.Net
O10 - Hijacked Internet access by New.Net
O10 - Hijacked Internet access by New.Net
O10 - Hijacked Internet access by New.Net
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {6E5A37BF-FD42-463A-877C-4EB7002E68AE} (Trend Micro ActiveX Scan Agent 6.5) - http://housecall65.trendmicro.com/housecall/applet/html...
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111401/housecall...
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: MpService - Canon Inc. - C:\Program Files\Canon\MultiPASS4\MPSERVIC.EXE
O23 - Service: MysqlInventime - Unknown owner - C:\Apps\INVENT~1\mysql\bin\mysqld-nt.exe

Lassé par la pub ? Créez un compte
Tom's guide dans le monde