Se connecter avec
S'enregistrer | Connectez-vous

[Résolu] lenteurs et bugs, help !

Dernière réponse : dans Sécurité

bonjour,

mon pc est anormalement lent, je galère sur le net et je ne peux ouvrir qu'une application à la fois, ce qui me dérange étant donné que jai suffisament de ram et que jai un bon processeur
j'ai beau analyser avec kasper il ne détecte rien de spécial
jai téléchargé et fait une analyse avec Hijackthis mais je ny comprend rien, pourriez vous m'aider please ?
voici le résultat de l'analyse:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:36:10, on 11/09/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
D:\WINDOWS\System32\snmp.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\Explorer.EXE
D:\WINDOWS\system32\VTTimer.exe
D:\Program Files\ASUS\WLAN Card Utilities\Center.exe
D:\Program Files\Winamp\winampa.exe
D:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
D:\WINDOWS\RTHDCPL.EXE
D:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
D:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
D:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe
D:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb08.exe
D:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\MSN Messenger\MsnMsgr.Exe
D:\Program Files\WINSOS\WINSOS.EXE
D:\Program Files\Palm\HOTSYNC.EXE
D:\Program Files\MSN Messenger\usnsvc.exe
D:\Program Files\eMule\emule.exe
D:\Program Files\Mozilla Firefox\firefox.exe
D:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.huddi.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - D:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - D:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - D:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [JMB36X Configure] D:\WINDOWS\system32\JMRaidTool.exe boot
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [S3Trayp] S3trayp.exe
O4 - HKLM\..\Run: [Control Center] D:\Program Files\ASUS\WLAN Card Utilities\Center.exe
O4 - HKLM\..\Run: [WinampAgent] D:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [My Web Search Bar] rundll32 D:\PROGRA~1\MYWEBS~1\bar\1.bin\MWSBAR.DLL,S
O4 - HKLM\..\Run: [MyWebSearch Email Plugin] D:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Adobe Photo Downloader] "D:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [amd_dc_opt] D:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Run: [NeroFilterCheck] D:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [HP Software Update] D:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] D:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb08.exe
O4 - HKLM\..\Run: [DeviceDiscovery] D:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
O4 - HKLM\..\Run: [AVP] "D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "D:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [WINSOS VERIFY] "D:\Program Files\WINSOS\WINSOS.EXE" MINI
O4 - HKCU\..\Run: [MyWebSearch Email Plugin] D:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: HotSync Manager.lnk = D:\Program Files\Palm\HOTSYNC.EXE
O4 - Startup: PowerReg SchedulerV2.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = D:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jh...
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Statistiques d’Anti-Virus Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\SCIEPlgn.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: d:\windows\system32\nwprovau.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/pub/shockwave/cabs/fl...
O17 - HKLM\System\CCS\Services\Tcpip\..\{542D736C-594A-40C5-B025-3BD9A4A20C62}: NameServer = 212.27.32.176,212.27.32.177
O23 - Service: Kaspersky Anti-Virus 7.0 (AVP) - Kaspersky Lab - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
O23 - Service: Boonty Games - BOONTY - D:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: hpdj - Unknown owner - D:\DOCUME~1\july\LOCALS~1\Temp\hpdj.exe (file missing)

Autres pages sur : resolu lenteurs bugs help

Lassé par la pub ? Créez un compte

11/09/2007 a 16:12:48,04

*** Recherche des fichiers dans D:

*** Recherche des fichiers dans D:\WINDOWS\

*** Recherche des fichiers dans D:\WINDOWS\system32
D:\WINDOWS\system32\f3PSSavr.scr FOUND

*** Recherche des fichiers dans D:\Program Files
"D:\Program Files\funwebproducts\" FOUND
"D:\Program Files\Mozilla Firefox\plugins\NPMyWebS.dll" FOUND
"D:\Program Files\msn messenger\riched20.dll" FOUND
"D:\Program Files\MyWebSearch\" FOUND
"D:\Program Files\Multi_Media_France\" FOUND
"D:\Program Files\VVSN\" FOUND
*** Fin du rapport !

c'est grave docteur ?

On continue :) 

Télécharge puis installe AVG Anti-Spyware (AVG AS)
Fais les mises à jour mais ne lance pas de scan pour le moment.
AIDE : Tuto sur AVG Anti-Spyware (Malekal)

Redémarre en mode sans échec

Relance AVG AS :
- Choisis l'onglet "Analyse"
- Puis l'onglet "Paramètres"
- Sous la question "Comment réagir ?", clique sur "Actions recommandées" et choisis "Quarantaine"
- Re-clique sur l'onglet "Analyse" puis réalise une "Analyse complète du système"

[#ff0000]Si un fichier est infecté en fin d'analyse, clique sur "Appliquer toutes les actions"[/#f]

Clique sur "Enregistrer le rapport" puis sur "Enregistrer le rapport sous"
Enregistre ce fichier texte sur ton bureau.

Ouvre le dossier clean, double-clique sur clean.cmd.
Choisis l'option 2 puis patiente.

Redémarre normalement.
Poste le rapport AVG AS ainsi qu'un rapport Hijackthis.

Poste le rapport clean : C:\rapport_clean.txt

rapport AVG :

AVG Anti-Spyware - Rapport d'analyse
---------------------------------------------------------

+ Créé à: 17:28:02 11/09/2007

+ Résultat de l'analyse:



:mozilla.220:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé.
:mozilla.221:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé.
:mozilla.222:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé.
D:\Documents and Settings\july\Cookies\july@247realmedia[2].txt -> TrackingCookie.247realmedia : Nettoyé.
:mozilla.294:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.295:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.298:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.299:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.300:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.301:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.304:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.305:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.306:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.474:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.517:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.707:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.845:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.887:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.922:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.965:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
D:\Documents and Settings\july\Cookies\july@2o7[2].txt -> TrackingCookie.2o7 : Nettoyé.
D:\Documents and Settings\july\Cookies\july@maisondevalerie.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
D:\Documents and Settings\july\Cookies\july@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
D:\Documents and Settings\july\Cookies\july@palmone.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.534:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
:mozilla.535:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
:mozilla.768:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Adrevolver : Nettoyé.
:mozilla.769:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Adrevolver : Nettoyé.
:mozilla.770:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Adrevolver : Nettoyé.
:mozilla.771:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Adrevolver : Nettoyé.
:mozilla.772:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Adrevolver : Nettoyé.
:mozilla.773:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Adrevolver : Nettoyé.
:mozilla.774:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Adrevolver : Nettoyé.
D:\Documents and Settings\july\Cookies\july@adrevolver[1].txt -> TrackingCookie.Adrevolver : Nettoyé.
:mozilla.105:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé.
:mozilla.106:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé.
D:\Documents and Settings\july\Cookies\july@adtech[2].txt -> TrackingCookie.Adtech : Nettoyé.
:mozilla.58:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.82:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.83:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.84:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.85:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
D:\Documents and Settings\july\Cookies\july@advertising[1].txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.816:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Adviva : Nettoyé.
:mozilla.290:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Atdmt : Nettoyé.
D:\Documents and Settings\july\Cookies\july@atdmt[2].txt -> TrackingCookie.Atdmt : Nettoyé.
:mozilla.625:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Bluestreak : Nettoyé.
:mozilla.9:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Bluestreak : Nettoyé.
D:\Documents and Settings\july\Cookies\july@bluestreak[1].txt -> TrackingCookie.Bluestreak : Nettoyé.
:mozilla.503:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Com : Nettoyé.
:mozilla.154:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
:mozilla.155:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
:mozilla.156:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
D:\Documents and Settings\july\Cookies\july@fl01.ct2.comclick[2].txt -> TrackingCookie.Comclick : Nettoyé.
:mozilla.388:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Dealtime : Nettoyé.
:mozilla.389:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Dealtime : Nettoyé.
:mozilla.45:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Doubleclick : Nettoyé.
D:\Documents and Settings\july\Cookies\july@doubleclick[1].txt -> TrackingCookie.Doubleclick : Nettoyé.
:mozilla.196:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Estat : Nettoyé.
D:\Documents and Settings\july\Cookies\july@estat[1].txt -> TrackingCookie.Estat : Nettoyé.
D:\Documents and Settings\july\Cookies\july@adopt.euroclick[1].txt -> TrackingCookie.Euroclick : Nettoyé.
:mozilla.761:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.762:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.366:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé.
:mozilla.367:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé.
:mozilla.376:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé.
:mozilla.380:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé.
:mozilla.479:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé.
:mozilla.520:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé.
:mozilla.597:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé.
:mozilla.628:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé.
:mozilla.723:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé.
:mozilla.789:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé.
:mozilla.97:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé.
:mozilla.394:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.395:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.396:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.494:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.496:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.497:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.498:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.687:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.688:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.701:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.702:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.703:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.725:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.757:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Imrworldwide : Nettoyé.
:mozilla.758:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Imrworldwide : Nettoyé.
:mozilla.674:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Live : Nettoyé.
:mozilla.675:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Live : Nettoyé.
:mozilla.676:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Live : Nettoyé.
:mozilla.52:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Mediaplex : Nettoyé.
D:\Documents and Settings\july\Cookies\july@mediaplex[1].txt -> TrackingCookie.Mediaplex : Nettoyé.
D:\Documents and Settings\july\Cookies\july@ssl-hints.netflame[1].txt -> TrackingCookie.Netflame : Nettoyé.
:mozilla.373:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Onestat : Nettoyé.
:mozilla.374:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Onestat : Nettoyé.
:mozilla.375:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Onestat : Nettoyé.
:mozilla.280:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Overture : Nettoyé.
:mozilla.281:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Overture : Nettoyé.
:mozilla.282:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Overture : Nettoyé.
:mozilla.904:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Overture : Nettoyé.
D:\Documents and Settings\july\Cookies\july@overture[1].txt -> TrackingCookie.Overture : Nettoyé.
D:\Documents and Settings\july\Cookies\july@perf.overture[1].txt -> TrackingCookie.Overture : Nettoyé.
:mozilla.89:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Paypal : Nettoyé.
:mozilla.691:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Pointroll : Nettoyé.
:mozilla.692:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Pointroll : Nettoyé.
:mozilla.696:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Pointroll : Nettoyé.
:mozilla.697:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Pointroll : Nettoyé.
:mozilla.759:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Questionmarket : Nettoyé.
:mozilla.760:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Questionmarket : Nettoyé.
D:\Documents and Settings\july\Cookies\july@questionmarket[2].txt -> TrackingCookie.Questionmarket : Nettoyé.
:mozilla.501:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Revsci : Nettoyé.
:mozilla.502:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Revsci : Nettoyé.
:mozilla.504:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Revsci : Nettoyé.
:mozilla.505:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Revsci : Nettoyé.
:mozilla.508:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Revsci : Nettoyé.
:mozilla.509:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Revsci : Nettoyé.
:mozilla.775:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Revsci : Nettoyé.
:mozilla.425:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.426:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.427:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.428:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.429:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.430:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
D:\Documents and Settings\july\Cookies\july@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Nettoyé.
D:\Documents and Settings\july\Cookies\july@serving-sys[2].txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.586:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Sitestat : Nettoyé.
:mozilla.626:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Sitestat : Nettoyé.
:mozilla.627:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Sitestat : Nettoyé.
:mozilla.955:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Sitestat : Nettoyé.
:mozilla.37:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.38:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.39:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.40:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.41:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.42:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.43:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
D:\Documents and Settings\july\Cookies\july@smartadserver[1].txt -> TrackingCookie.Smartadserver : Nettoyé.
D:\Documents and Settings\july\Cookies\july@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.214:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Specificclick : Nettoyé.
:mozilla.215:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Specificclick : Nettoyé.
:mozilla.216:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Specificclick : Nettoyé.
:mozilla.217:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Specificclick : Nettoyé.
:mozilla.218:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Specificclick : Nettoyé.
:mozilla.219:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Specificclick : Nettoyé.
:mozilla.717:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Specificclick : Nettoyé.
:mozilla.718:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Specificclick : Nettoyé.
:mozilla.829:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Spylog : Nettoyé.
D:\Documents and Settings\july\Cookies\july@h.starware[1].txt -> TrackingCookie.Starware : Nettoyé.
D:\Documents and Settings\july\Cookies\july@try.starware[1].txt -> TrackingCookie.Starware : Nettoyé.
:mozilla.563:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé.
:mozilla.564:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé.
:mozilla.565:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé.
:mozilla.566:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé.
:mozilla.567:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé.
D:\Documents and Settings\july\Cookies\july@statcounter[1].txt -> TrackingCookie.Statcounter : Nettoyé.
:mozilla.713:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Tacoda : Nettoyé.
:mozilla.714:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Tacoda : Nettoyé.
:mozilla.715:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Tacoda : Nettoyé.
:mozilla.24:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
:mozilla.25:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
:mozilla.28:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
:mozilla.29:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
D:\Documents and Settings\july\Cookies\july@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Nettoyé.
:mozilla.765:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Tribalfusion : Nettoyé.
:mozilla.107:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
:mozilla.108:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
:mozilla.109:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
D:\Documents and Settings\july\Cookies\july@weborama[2].txt -> TrackingCookie.Weborama : Nettoyé.
:mozilla.838:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Webtrendslive : Nettoyé.
:mozilla.15:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
:mozilla.16:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
:mozilla.17:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
:mozilla.18:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
:mozilla.19:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
:mozilla.20:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
D:\Documents and Settings\july\Cookies\july@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Nettoyé.
:mozilla.693:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Zedo : Nettoyé.
:mozilla.694:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Zedo : Nettoyé.
:mozilla.695:D :\Documents and Settings\july\Application Data\Mozilla\Firefox\Profiles\bh6n0rbu.default\cookies.txt -> TrackingCookie.Zedo : Nettoyé.

Fin du rapport

rapport Hijackthis :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:00:17, on 11/09/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
D:\WINDOWS\System32\snmp.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\Explorer.EXE
D:\WINDOWS\system32\VTTimer.exe
D:\WINDOWS\system32\S3trayp.exe
D:\Program Files\ASUS\WLAN Card Utilities\Center.exe
D:\Program Files\Winamp\winampa.exe
D:\WINDOWS\RTHDCPL.EXE
D:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
D:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
D:\WINDOWS\system32\wuauclt.exe
D:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe
D:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb08.exe
D:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\MSN Messenger\MsnMsgr.Exe
D:\Program Files\WINSOS\WINSOS.EXE
D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
D:\Program Files\Palm\HOTSYNC.EXE
D:\Program Files\MSN Messenger\usnsvc.exe
D:\Program Files\Internet Explorer\iexplore.exe
D:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.huddi.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - D:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL (file missing)
O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - D:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL (file missing)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [JMB36X Configure] D:\WINDOWS\system32\JMRaidTool.exe boot
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [S3Trayp] S3trayp.exe
O4 - HKLM\..\Run: [Control Center] D:\Program Files\ASUS\WLAN Card Utilities\Center.exe
O4 - HKLM\..\Run: [WinampAgent] D:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Adobe Photo Downloader] "D:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [amd_dc_opt] D:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Run: [NeroFilterCheck] D:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [HP Software Update] D:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] D:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb08.exe
O4 - HKLM\..\Run: [DeviceDiscovery] D:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
O4 - HKLM\..\Run: [AVP] "D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "D:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [WINSOS VERIFY] "D:\Program Files\WINSOS\WINSOS.EXE" MINI
O4 - HKCU\..\Run: [MyWebSearch Email Plugin] D:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: HotSync Manager.lnk = D:\Program Files\Palm\HOTSYNC.EXE
O4 - Startup: PowerReg SchedulerV2.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = D:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jh...
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Statistiques d’Anti-Virus Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\SCIEPlgn.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: d:\windows\system32\nwprovau.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/pub/shockwave/cabs/fl...
O17 - HKLM\System\CCS\Services\Tcpip\..\{542D736C-594A-40C5-B025-3BD9A4A20C62}: NameServer = 212.27.32.176,212.27.32.177
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Kaspersky Anti-Virus 7.0 (AVP) - Kaspersky Lab - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
O23 - Service: Boonty Games - BOONTY - D:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: hpdj - Unknown owner - D:\DOCUME~1\july\LOCALS~1\Temp\hpdj.exe (file missing)

--
End of file - 6579 bytes

voilà !

sorry

Script execute en mode sans echec
Rapport clean par Malekal_morte - http://www.malekal.com
Script execute en mode sans echec 11/09/2007 a 17:52:59,68

Microsoft Windows XP [version 5.1.2600]

*** Suppression des fichiers dans D:

*** Suppression des fichiers dans D:\WINDOWS\

*** Suppression des fichiers dans D:\WINDOWS\system32
tentative de suppression de D:\WINDOWS\system32\f3PSSavr.scr

*** Suppression des fichiers dans D:\Program Files
tentative de suppression de "D:\Program Files\funwebproducts\"
tentative de suppression de "D:\Program Files\Mozilla Firefox\plugins\NPMyWebS.dll"
tentative de suppression de "D:\Program Files\msn messenger\riched20.dll"
tentative de suppression de "D:\Program Files\MyWebSearch\"
tentative de suppression de "D:\Program Files\Multi_Media_France\"
tentative de suppression de "D:\Program Files\VVSN\"

*** Suppression des clefs du registre effectuee..
*** Fin du rapport !

Re,

Désisnstalle : WinSOS

Fix les lignes en italique ci-dessous avec Hijackthis : AIDE EN IMAGES

R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - D:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL (file missing)
O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - D:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL (file missing)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKCU\..\Run: [WINSOS VERIFY] "D:\Program Files\WINSOS\WINSOS.EXE" MINI
O4 - HKCU\..\Run: [MyWebSearch Email Plugin] D:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolb [...] jhtml?p=ZN
O23 - Service: hpdj - Unknown owner - D:\DOCUME~1\july\LOCALS~1\Temp\hpdj.exe (file missing)

lol

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:41:31, on 11/09/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
D:\WINDOWS\System32\snmp.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\Explorer.EXE
D:\WINDOWS\system32\VTTimer.exe
D:\WINDOWS\system32\S3trayp.exe
D:\Program Files\ASUS\WLAN Card Utilities\Center.exe
D:\Program Files\Winamp\winampa.exe
D:\WINDOWS\RTHDCPL.EXE
D:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
D:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
D:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe
D:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb08.exe
D:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\MSN Messenger\MsnMsgr.Exe
D:\Program Files\Palm\HOTSYNC.EXE
D:\Program Files\MSN Messenger\usnsvc.exe
D:\Program Files\eMule\emule.exe
D:\Program Files\Internet Explorer\iexplore.exe
D:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.huddi.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O4 - HKLM\..\Run: [JMB36X Configure] D:\WINDOWS\system32\JMRaidTool.exe boot
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [S3Trayp] S3trayp.exe
O4 - HKLM\..\Run: [Control Center] D:\Program Files\ASUS\WLAN Card Utilities\Center.exe
O4 - HKLM\..\Run: [WinampAgent] D:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Adobe Photo Downloader] "D:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [amd_dc_opt] D:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Run: [NeroFilterCheck] D:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [HP Software Update] D:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] D:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb08.exe
O4 - HKLM\..\Run: [DeviceDiscovery] D:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
O4 - HKLM\..\Run: [AVP] "D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "D:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: HotSync Manager.lnk = D:\Program Files\Palm\HOTSYNC.EXE
O4 - Startup: PowerReg SchedulerV2.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = D:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Statistiques d’Anti-Virus Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\SCIEPlgn.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: d:\windows\system32\nwprovau.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/pub/shockwave/cabs/fl...
O17 - HKLM\System\CCS\Services\Tcpip\..\{542D736C-594A-40C5-B025-3BD9A4A20C62}: NameServer = 212.27.32.176,212.27.32.177
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Kaspersky Anti-Virus 7.0 (AVP) - Kaspersky Lab - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
O23 - Service: Boonty Games - BOONTY - D:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe

--
End of file - 5742 bytes
Lassé par la pub ? Créez un compte
Tom's guide dans le monde