[Résolu] Problème UC à 100% pendant Jeux vidéo.
Dernière réponse : dans Sécurité
Bonjour bonjour, alors voilà suite à ce problème :
http://www.infos-du-net.com/forum/262979-14-colin-mcrae...
on m'a conseillé de faire vérifier ma config voir si un virus ne pouvait pas être à l'origine de mes soucis.
Voici un rapport HJT, merci d'avance.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:11:20, on 19/01/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\ATKGFNEX\GFNEXSrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Program Files\K10STATS\K10STAT.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Dassault Systemes\B17\intel_a\code\bin\CATSysDemon.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\ASUS\ATK Media\DMedia.exe
C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
C:\Program Files\ASUS\ATK Hotkey\HControl.exe
C:\Program Files\ATKOSD2\ATKOSD2.exe
C:\Program Files\Wireless Console 2\wcourier.exe
C:\Program Files\Elantech\ETDCtrl.exe
C:\program files\unlocker\unlockerassistant.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe
C:\Program Files\PowerISO\PWRISOVM.EXE
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\WINDOWS\system32\ctfmon.exe
C:\program files\modem samsung sch-u209\SamsungPnPServiceManager.exe
C:\program files\modem samsung sch-u209\sysctrlU.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\PROGRAM FILES\FRAPS\FRAPS.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\ASUS\ATK Hotkey\ATKOSD.exe
C:\Program Files\ASUS\ATK Hotkey\KBFiltr.exe
C:\Program Files\ASUS\ATK Hotkey\WDC.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = fficial" target="_blank">http://fr.start3.mozilla.com/firefox?client=firefox-a&r...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Foxit Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [ATKHOTKEY] C:\Program Files\ASUS\ATK Hotkey\HControl.exe
O4 - HKLM\..\Run: [ATKOSD2] "C:\Program Files\ATKOSD2\ATKOSD2.exe"
O4 - HKLM\..\Run: [Wireless Console 2] "C:\Program Files\Wireless Console 2\wcourier.exe"
O4 - HKLM\..\Run: [ETDWare] C:\Program Files\Elantech\ETDCtrl.exe
O4 - HKLM\..\Run: [UnlockerAssistant] "c:\program files\unlocker\unlockerassistant.exe" -H
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min /nosplash
O4 - HKLM\..\Run: [OSSelectorReinstall] C:\Program Files\Fichiers communs\Acronis\Acronis Disk Director\oss_reinstall.exe
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"
O4 - HKLM\..\Run: [P2Go_Menu] "C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe 1
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Z810PNP] C:\program files\modem samsung sch-u209\SamsungPnPServiceManager.exe
O4 - HKCU\..\Run: [Z810SysStart] C:\program files\modem samsung sch-u209\sysctrlU.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Fraps] C:\PROGRAM FILES\FRAPS\FRAPS.EXE
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Co...
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: AODService - Unknown owner - C:\Program Files\AMD\OverDrive\AODAssist.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Backbone Service (BBDemon) - Dassault Systemes - C:\Program Files\Dassault Systemes\B17\intel_a\code\bin\CATSysDemon.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
--
End of file - 10466 bytes
http://www.infos-du-net.com/forum/262979-14-colin-mcrae...
on m'a conseillé de faire vérifier ma config voir si un virus ne pouvait pas être à l'origine de mes soucis.
Voici un rapport HJT, merci d'avance.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:11:20, on 19/01/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\ATKGFNEX\GFNEXSrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Program Files\K10STATS\K10STAT.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Dassault Systemes\B17\intel_a\code\bin\CATSysDemon.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\ASUS\ATK Media\DMedia.exe
C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
C:\Program Files\ASUS\ATK Hotkey\HControl.exe
C:\Program Files\ATKOSD2\ATKOSD2.exe
C:\Program Files\Wireless Console 2\wcourier.exe
C:\Program Files\Elantech\ETDCtrl.exe
C:\program files\unlocker\unlockerassistant.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe
C:\Program Files\PowerISO\PWRISOVM.EXE
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\WINDOWS\system32\ctfmon.exe
C:\program files\modem samsung sch-u209\SamsungPnPServiceManager.exe
C:\program files\modem samsung sch-u209\sysctrlU.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\PROGRAM FILES\FRAPS\FRAPS.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\ASUS\ATK Hotkey\ATKOSD.exe
C:\Program Files\ASUS\ATK Hotkey\KBFiltr.exe
C:\Program Files\ASUS\ATK Hotkey\WDC.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = fficial" target="_blank">http://fr.start3.mozilla.com/firefox?client=firefox-a&r...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Foxit Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [ATKHOTKEY] C:\Program Files\ASUS\ATK Hotkey\HControl.exe
O4 - HKLM\..\Run: [ATKOSD2] "C:\Program Files\ATKOSD2\ATKOSD2.exe"
O4 - HKLM\..\Run: [Wireless Console 2] "C:\Program Files\Wireless Console 2\wcourier.exe"
O4 - HKLM\..\Run: [ETDWare] C:\Program Files\Elantech\ETDCtrl.exe
O4 - HKLM\..\Run: [UnlockerAssistant] "c:\program files\unlocker\unlockerassistant.exe" -H
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min /nosplash
O4 - HKLM\..\Run: [OSSelectorReinstall] C:\Program Files\Fichiers communs\Acronis\Acronis Disk Director\oss_reinstall.exe
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"
O4 - HKLM\..\Run: [P2Go_Menu] "C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe 1
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Z810PNP] C:\program files\modem samsung sch-u209\SamsungPnPServiceManager.exe
O4 - HKCU\..\Run: [Z810SysStart] C:\program files\modem samsung sch-u209\sysctrlU.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Fraps] C:\PROGRAM FILES\FRAPS\FRAPS.EXE
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Co...
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: AODService - Unknown owner - C:\Program Files\AMD\OverDrive\AODAssist.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Backbone Service (BBDemon) - Dassault Systemes - C:\Program Files\Dassault Systemes\B17\intel_a\code\bin\CATSysDemon.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
--
End of file - 10466 bytes
Autres pages sur : resolu probleme 100 jeux video
Lassé par la pub ? Créez un compte
Bonsoir
Je ne pense pas que tes lags viennent d'un virus, mais il y a une bricole à virer....
ça le fait que pendant Colin mcrae précisément?
Télécharge Toolbar S&D de la Team IDN sur ton bureau.
Double-clique dessus pour lancer l'installation.
Accepte le contrat de licence.
Puis double-clique sur le raccourci Toolbar S&D présent sur ton bureau.
Sélectionne la langue souhaitée et valide par la touche entrée.
Choisis l'option 1 ( Recherche ).
Patiente jusqu'à la fin du scan.
Poste le rapport généré. ( C:\TB.txt )
Je ne pense pas que tes lags viennent d'un virus, mais il y a une bricole à virer....
ça le fait que pendant Colin mcrae précisément?
Télécharge Toolbar S&D de la Team IDN sur ton bureau.
Re, alors voilà le rapport de Toolbar S&D :
-----------\\ ToolBar S&D 1.2.9 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : AMD Turion(tm) X2 Dual-Core Mobile RM-74 )
BIOS : BIOS Date: 11/13/09 14:13:44 Ver: 08.00.14
USER : Sertek ( Administrator )
BOOT : Normal boot
Antivirus : AntiVir Desktop 9.0.1.32 (Activated)
C:\ (Local Disk) - NTFS - Total:150 Go (Free:80 Go)
D:\ (Local Disk) - NTFS - Total:303 Go (Free:133 Go)
E:\ (CD or DVD)
L:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 22-08-2009|18:42 )
Option : [1] ( 20/01/2010|12:08 )
-----------\\ Recherche de Fichiers / Dossiers ...
C:\Program Files\AskBarDis
C:\Program Files\AskBarDis\bar
C:\Program Files\AskBarDis\unins000.dat
C:\Program Files\AskBarDis\unins000.exe
C:\Program Files\AskBarDis\bar\bin
C:\Program Files\AskBarDis\bar\Cache
C:\Program Files\AskBarDis\bar\History
C:\Program Files\AskBarDis\bar\Settings
C:\Program Files\AskBarDis\bar\bin\askBar.dll
C:\Program Files\AskBarDis\bar\bin\askPopStp.dll
C:\Program Files\AskBarDis\bar\bin\psvince.dll
C:\Program Files\AskBarDis\bar\Cache\0041B2AA
C:\Program Files\AskBarDis\bar\Cache\0042B034.bin
C:\Program Files\AskBarDis\bar\Cache\0042D1D5.bin
C:\Program Files\AskBarDis\bar\Cache\0043247A.bin
C:\Program Files\AskBarDis\bar\Cache\00433AB1.bin
C:\Program Files\AskBarDis\bar\Cache\00435907.bin
C:\Program Files\AskBarDis\bar\Cache\00435F40.bin
C:\Program Files\AskBarDis\bar\Cache\004364FD.bin
C:\Program Files\AskBarDis\bar\Cache\00436B08.bin
C:\Program Files\AskBarDis\bar\Cache\004373E2.bin
C:\Program Files\AskBarDis\bar\Cache\00437818.bin
C:\Program Files\AskBarDis\bar\Cache\files.ini
C:\Program Files\AskBarDis\bar\History\search
C:\Program Files\AskBarDis\bar\Settings\config.dat
C:\Program Files\AskBarDis\bar\Settings\config.dat.bak
C:\Program Files\AskBarDis\bar\Settings\prevcfg.htm
-----------\\ Extensions
(Sertek) - {20a82645-c095-46ed-80e3-08825760534b} => chrome_user
(Sertek) - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} => adblockplus
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"=" fficial" target="_blank">http://fr.start3.mozilla.com/firefox?client=firefox-a&r..."
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iese..."
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 20/01/2010|12:08 - Option : [1]
-----------\\ Fin du rapport a 12:08:46,12
Bon c'est bizarre quand même j'ai installer un ou deux freewar récemment (PDF creator et je sais plus quoi) mais j'ai tjrs fait attention à bien décocher la Askbar etc à l'installation.
Sinon pour les lags en jeu, ça ne me le fait que sur colin mcrae dirt, et plus précisément lorsque je ne suis pas connecté à internet. Quand je branche mon cable réseau, l'utilisation de l'UC en jeu redevient normal et donc le jeu redevient beaucoup plus jouable, et je ne parle que des courses hors ligne (mode carrière etc...)
-----------\\ ToolBar S&D 1.2.9 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : AMD Turion(tm) X2 Dual-Core Mobile RM-74 )
BIOS : BIOS Date: 11/13/09 14:13:44 Ver: 08.00.14
USER : Sertek ( Administrator )
BOOT : Normal boot
Antivirus : AntiVir Desktop 9.0.1.32 (Activated)
C:\ (Local Disk) - NTFS - Total:150 Go (Free:80 Go)
D:\ (Local Disk) - NTFS - Total:303 Go (Free:133 Go)
E:\ (CD or DVD)
L:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 22-08-2009|18:42 )
Option : [1] ( 20/01/2010|12:08 )
-----------\\ Recherche de Fichiers / Dossiers ...
C:\Program Files\AskBarDis
C:\Program Files\AskBarDis\bar
C:\Program Files\AskBarDis\unins000.dat
C:\Program Files\AskBarDis\unins000.exe
C:\Program Files\AskBarDis\bar\bin
C:\Program Files\AskBarDis\bar\Cache
C:\Program Files\AskBarDis\bar\History
C:\Program Files\AskBarDis\bar\Settings
C:\Program Files\AskBarDis\bar\bin\askBar.dll
C:\Program Files\AskBarDis\bar\bin\askPopStp.dll
C:\Program Files\AskBarDis\bar\bin\psvince.dll
C:\Program Files\AskBarDis\bar\Cache\0041B2AA
C:\Program Files\AskBarDis\bar\Cache\0042B034.bin
C:\Program Files\AskBarDis\bar\Cache\0042D1D5.bin
C:\Program Files\AskBarDis\bar\Cache\0043247A.bin
C:\Program Files\AskBarDis\bar\Cache\00433AB1.bin
C:\Program Files\AskBarDis\bar\Cache\00435907.bin
C:\Program Files\AskBarDis\bar\Cache\00435F40.bin
C:\Program Files\AskBarDis\bar\Cache\004364FD.bin
C:\Program Files\AskBarDis\bar\Cache\00436B08.bin
C:\Program Files\AskBarDis\bar\Cache\004373E2.bin
C:\Program Files\AskBarDis\bar\Cache\00437818.bin
C:\Program Files\AskBarDis\bar\Cache\files.ini
C:\Program Files\AskBarDis\bar\History\search
C:\Program Files\AskBarDis\bar\Settings\config.dat
C:\Program Files\AskBarDis\bar\Settings\config.dat.bak
C:\Program Files\AskBarDis\bar\Settings\prevcfg.htm
-----------\\ Extensions
(Sertek) - {20a82645-c095-46ed-80e3-08825760534b} => chrome_user
(Sertek) - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} => adblockplus
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"=" fficial" target="_blank">http://fr.start3.mozilla.com/firefox?client=firefox-a&r..."
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iese..."
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 20/01/2010|12:08 - Option : [1]
-----------\\ Fin du rapport a 12:08:46,12
Bon c'est bizarre quand même j'ai installer un ou deux freewar récemment (PDF creator et je sais plus quoi) mais j'ai tjrs fait attention à bien décocher la Askbar etc à l'installation.
Sinon pour les lags en jeu, ça ne me le fait que sur colin mcrae dirt, et plus précisément lorsque je ne suis pas connecté à internet. Quand je branche mon cable réseau, l'utilisation de l'UC en jeu redevient normal et donc le jeu redevient beaucoup plus jouable, et je ne parle que des courses hors ligne (mode carrière etc...)
re
1
Relance Toolbar S&D
Choisis cette fois-ci l'option 2. ( Suppression )
Ton bureau va disparaitre, c'est normal. Laisse l'outil travailler.
Ne ferme pas la fenêtre lors de la suppression !
Poste le rapport généré. ( C:\TB.txt )
2
Télécharge Rooter.exe (d’ Eric 71) sur ton Bureau.
Double-clique dessus, une fenêtre va s'ouvrir, il te faudra patienter.
Poste le rapport qui s'ouvre.
Note : Il se trouve ici : %SystemDrive%\Rooter.txt (%SystemDrive% étant la partition où est installée Windows; C:\ en général)
1
Relance Toolbar S&D
Ton bureau va disparaitre, c'est normal. Laisse l'outil travailler.
2
Télécharge Rooter.exe (d’ Eric 71) sur ton Bureau.
Note : Il se trouve ici : %SystemDrive%\Rooter.txt (%SystemDrive% étant la partition où est installée Windows; C:\ en général)
Re Sham_rock merci pour l'aide.
Voilà le rapport Toolbar S&D :
-----------\\ ToolBar S&D 1.2.9 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : AMD Turion(tm) X2 Dual-Core Mobile RM-74 )
BIOS : BIOS Date: 11/13/09 14:13:44 Ver: 08.00.14
USER : Sertek ( Administrator )
BOOT : Normal boot
Antivirus : AntiVir Desktop 9.0.1.32 (Activated)
C:\ (Local Disk) - NTFS - Total:150 Go (Free:80 Go)
D:\ (Local Disk) - NTFS - Total:303 Go (Free:133 Go)
E:\ (CD or DVD)
L:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 22-08-2009|18:42 )
Option : [2] ( 20/01/2010|17:01 )
-----------\\ SUPPRESSION
Supprime! - C:\Program Files\AskBarDis\bar
Supprime! - C:\Program Files\AskBarDis\unins000.dat
Supprime! - C:\Program Files\AskBarDis\unins000.exe
Supprime! - C:\Program Files\AskBarDis
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ Extensions
(Sertek) - {20a82645-c095-46ed-80e3-08825760534b} => chrome_user
(Sertek) - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} => adblockplus
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"=" fficial" target="_blank">http://fr.start3.mozilla.com/firefox?client=firefox-a&r..."
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iese..."
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="http://www.msn.com/"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 20/01/2010|12:08 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 20/01/2010|17:01 - Option : [2]
-----------\\ Fin du rapport a 17:01:50,92
Enfin pour Rooter.exe, Antivir me l'a signaler comme positif, j'ai mis ignorer.
J'ai ensuite lancé le logiciel et appuyé sur le gros bouton vert (SCAN) voici le rapport :
Rooter.exe (v1.0.2) by Eric_71
.
SeDebugPrivilege granted successfully ...
.
Windows XP . (5.1.2600) Service Pack 3
[32_bits] - x86 Family 17 Model 3 Stepping 1, AuthenticAMD
.
[wscsvc] (Security Center) RUNNING (state:4)
[SharedAccess] RUNNING (state:4)
.
Internet Explorer 8.0.6001.18702
Mozilla Firefox 3.6 (fr)
.
C:\ [Fixed-NTFS] .. ( Total:150 Go - Free:80 Go )
D:\ [Fixed-NTFS] .. ( Total:303 Go - Free:133 Go )
E:\ [CD_Rom]
L:\ [CD_Rom]
.
Scan : 17:07.26
Path : C:\Documents and Settings\Sertek\Mes documents\Downloads\Rooter.exe
User : Sertek ( Administrator -> YES )
.
----------------------\\ Processes
.
Locked [System Process] (0)
______ System (4)
______ \SystemRoot\System32\smss.exe (784)
______ \??\C:\WINDOWS\system32\csrss.exe (1072)
______ \??\C:\WINDOWS\system32\winlogon.exe (1304)
______ C:\WINDOWS\system32\services.exe (1348)
______ C:\WINDOWS\system32\lsass.exe (1360)
______ C:\WINDOWS\system32\Ati2evxx.exe (1600)
______ C:\WINDOWS\system32\svchost.exe (1616)
______ C:\WINDOWS\system32\svchost.exe (1684)
______ C:\WINDOWS\System32\svchost.exe (1852)
______ C:\WINDOWS\system32\svchost.exe (1960)
______ C:\WINDOWS\system32\svchost.exe (232)
______ C:\WINDOWS\system32\Ati2evxx.exe (376)
______ C:\Program Files\ATKGFNEX\GFNEXSrv.exe (576)
______ C:\WINDOWS\system32\spoolsv.exe (660)
______ C:\Program Files\Avira\AntiVir Desktop\sched.exe (840)
______ C:\Program Files\K10STATS\K10STAT.exe (1948)
______ C:\WINDOWS\Explorer.EXE (1984)
______ C:\Program Files\Avira\AntiVir Desktop\avguard.exe (188)
______ C:\Program Files\Dassault Systemes\B17\intel_a\code\bin\CATSysDemon.exe (296)
______ C:\Program Files\Java\jre6\bin\jqs.exe (836)
______ C:\Program Files\ASUS\ATK Media\DMedia.exe (848)
______ C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe (932)
______ C:\Program Files\ASUS\ATK Hotkey\HControl.exe (936)
______ C:\Program Files\ATKOSD2\ATKOSD2.exe (908)
______ C:\Program Files\Wireless Console 2\wcourier.exe (920)
______ C:\Program Files\Elantech\ETDCtrl.exe (968)
______ C:\program files\unlocker\unlockerassistant.exe (2028)
______ C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (1016)
______ C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe (1064)
______ C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe (1100)
______ C:\Program Files\PowerISO\PWRISOVM.EXE (1112)
______ C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe (1208)
______ C:\Program Files\Java\jre6\bin\jusched.exe (1220)
______ C:\Program Files\CDBurnerXP\NMSAccessU.exe (1256)
______ C:\WINDOWS\system32\ctfmon.exe (1260)
______ C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (1516)
______ C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Update\1.2.183.13\GoogleCrashHandler.exe (1816)
______ C:\Program Files\Free Download Manager\fdm.exe (1928)
______ C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (1940)
______ C:\PROGRAM FILES\FRAPS\FRAPS.EXE (1992)
______ C:\WINDOWS\system32\svchost.exe (2404)
______ C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe (2480)
______ C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSVC.EXE (2532)
______ C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSvcM.exe (4088)
______ C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe (1284)
______ C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe (2732)
______ C:\Program Files\ASUS\ATK Hotkey\ATKOSD.exe (1376)
______ C:\WINDOWS\System32\alg.exe (2964)
______ C:\Program Files\ASUS\ATK Hotkey\KBFiltr.exe (3296)
______ C:\Program Files\ASUS\ATK Hotkey\WDC.exe (3448)
______ C:\WINDOWS\system32\wbem\wmiapsrv.exe (2568)
______ C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (3208)
______ C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (3524)
______ C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (224)
______ C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (3032)
______ C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2616)
______ C:\Documents and Settings\Sertek\Mes documents\Downloads\Rooter.exe (2596)
.
----------------------\\ Device\Harddisk0\
.
\Device\Harddisk0 [Sectors : 63 x 512 Bytes]
.
\Device\Harddisk0\Partition1 (Start_Offset:32256 | Length:12584646144)
\Device\Harddisk0\Partition2 --[ MBR ]-- (Start_Offset:12584678400 | Length:161848834560)
\Device\Harddisk0\Partition0 (Start_Offset:174433512960 | Length:325674349056)
\Device\Harddisk0\Partition0 (Start_Offset:174433544704 | Length:325674317312)
\Device\Harddisk0\Partition3 (Start_Offset:174433545216 | Length:325674316800)
.
----------------------\\ Scheduled Tasks
.
C:\WINDOWS\Tasks\desktop.ini
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1801674531-790525478-1417001333-1003Core.job
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1801674531-790525478-1417001333-1003UA.job
C:\WINDOWS\Tasks\K10STAT.job
C:\WINDOWS\Tasks\Recherche de problèmes automatique.job
C:\WINDOWS\Tasks\SA.DAT
.
----------------------\\ Registry
.
.
----------------------\\ Files & Folders
.
----------------------\\ Scan completed at 17:07.28
.
C:\Rooter$\Rooter_2.txt - (20/01/2010 | 17:07.28)
Voilà le rapport Toolbar S&D :
-----------\\ ToolBar S&D 1.2.9 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : AMD Turion(tm) X2 Dual-Core Mobile RM-74 )
BIOS : BIOS Date: 11/13/09 14:13:44 Ver: 08.00.14
USER : Sertek ( Administrator )
BOOT : Normal boot
Antivirus : AntiVir Desktop 9.0.1.32 (Activated)
C:\ (Local Disk) - NTFS - Total:150 Go (Free:80 Go)
D:\ (Local Disk) - NTFS - Total:303 Go (Free:133 Go)
E:\ (CD or DVD)
L:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 22-08-2009|18:42 )
Option : [2] ( 20/01/2010|17:01 )
-----------\\ SUPPRESSION
Supprime! - C:\Program Files\AskBarDis\bar
Supprime! - C:\Program Files\AskBarDis\unins000.dat
Supprime! - C:\Program Files\AskBarDis\unins000.exe
Supprime! - C:\Program Files\AskBarDis
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ Extensions
(Sertek) - {20a82645-c095-46ed-80e3-08825760534b} => chrome_user
(Sertek) - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} => adblockplus
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"=" fficial" target="_blank">http://fr.start3.mozilla.com/firefox?client=firefox-a&r..."
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iese..."
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="http://www.msn.com/"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 20/01/2010|12:08 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 20/01/2010|17:01 - Option : [2]
-----------\\ Fin du rapport a 17:01:50,92
Enfin pour Rooter.exe, Antivir me l'a signaler comme positif, j'ai mis ignorer.
J'ai ensuite lancé le logiciel et appuyé sur le gros bouton vert (SCAN) voici le rapport :
Rooter.exe (v1.0.2) by Eric_71
.
SeDebugPrivilege granted successfully ...
.
Windows XP . (5.1.2600) Service Pack 3
[32_bits] - x86 Family 17 Model 3 Stepping 1, AuthenticAMD
.
[wscsvc] (Security Center) RUNNING (state:4)
[SharedAccess] RUNNING (state:4)
.
Internet Explorer 8.0.6001.18702
Mozilla Firefox 3.6 (fr)
.
C:\ [Fixed-NTFS] .. ( Total:150 Go - Free:80 Go )
D:\ [Fixed-NTFS] .. ( Total:303 Go - Free:133 Go )
E:\ [CD_Rom]
L:\ [CD_Rom]
.
Scan : 17:07.26
Path : C:\Documents and Settings\Sertek\Mes documents\Downloads\Rooter.exe
User : Sertek ( Administrator -> YES )
.
----------------------\\ Processes
.
Locked [System Process] (0)
______ System (4)
______ \SystemRoot\System32\smss.exe (784)
______ \??\C:\WINDOWS\system32\csrss.exe (1072)
______ \??\C:\WINDOWS\system32\winlogon.exe (1304)
______ C:\WINDOWS\system32\services.exe (1348)
______ C:\WINDOWS\system32\lsass.exe (1360)
______ C:\WINDOWS\system32\Ati2evxx.exe (1600)
______ C:\WINDOWS\system32\svchost.exe (1616)
______ C:\WINDOWS\system32\svchost.exe (1684)
______ C:\WINDOWS\System32\svchost.exe (1852)
______ C:\WINDOWS\system32\svchost.exe (1960)
______ C:\WINDOWS\system32\svchost.exe (232)
______ C:\WINDOWS\system32\Ati2evxx.exe (376)
______ C:\Program Files\ATKGFNEX\GFNEXSrv.exe (576)
______ C:\WINDOWS\system32\spoolsv.exe (660)
______ C:\Program Files\Avira\AntiVir Desktop\sched.exe (840)
______ C:\Program Files\K10STATS\K10STAT.exe (1948)
______ C:\WINDOWS\Explorer.EXE (1984)
______ C:\Program Files\Avira\AntiVir Desktop\avguard.exe (188)
______ C:\Program Files\Dassault Systemes\B17\intel_a\code\bin\CATSysDemon.exe (296)
______ C:\Program Files\Java\jre6\bin\jqs.exe (836)
______ C:\Program Files\ASUS\ATK Media\DMedia.exe (848)
______ C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe (932)
______ C:\Program Files\ASUS\ATK Hotkey\HControl.exe (936)
______ C:\Program Files\ATKOSD2\ATKOSD2.exe (908)
______ C:\Program Files\Wireless Console 2\wcourier.exe (920)
______ C:\Program Files\Elantech\ETDCtrl.exe (968)
______ C:\program files\unlocker\unlockerassistant.exe (2028)
______ C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (1016)
______ C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe (1064)
______ C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe (1100)
______ C:\Program Files\PowerISO\PWRISOVM.EXE (1112)
______ C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe (1208)
______ C:\Program Files\Java\jre6\bin\jusched.exe (1220)
______ C:\Program Files\CDBurnerXP\NMSAccessU.exe (1256)
______ C:\WINDOWS\system32\ctfmon.exe (1260)
______ C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (1516)
______ C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Update\1.2.183.13\GoogleCrashHandler.exe (1816)
______ C:\Program Files\Free Download Manager\fdm.exe (1928)
______ C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (1940)
______ C:\PROGRAM FILES\FRAPS\FRAPS.EXE (1992)
______ C:\WINDOWS\system32\svchost.exe (2404)
______ C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe (2480)
______ C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSVC.EXE (2532)
______ C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSvcM.exe (4088)
______ C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe (1284)
______ C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe (2732)
______ C:\Program Files\ASUS\ATK Hotkey\ATKOSD.exe (1376)
______ C:\WINDOWS\System32\alg.exe (2964)
______ C:\Program Files\ASUS\ATK Hotkey\KBFiltr.exe (3296)
______ C:\Program Files\ASUS\ATK Hotkey\WDC.exe (3448)
______ C:\WINDOWS\system32\wbem\wmiapsrv.exe (2568)
______ C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (3208)
______ C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (3524)
______ C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (224)
______ C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (3032)
______ C:\Documents and Settings\Sertek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2616)
______ C:\Documents and Settings\Sertek\Mes documents\Downloads\Rooter.exe (2596)
.
----------------------\\ Device\Harddisk0\
.
\Device\Harddisk0 [Sectors : 63 x 512 Bytes]
.
\Device\Harddisk0\Partition1 (Start_Offset:32256 | Length:12584646144)
\Device\Harddisk0\Partition2 --[ MBR ]-- (Start_Offset:12584678400 | Length:161848834560)
\Device\Harddisk0\Partition0 (Start_Offset:174433512960 | Length:325674349056)
\Device\Harddisk0\Partition0 (Start_Offset:174433544704 | Length:325674317312)
\Device\Harddisk0\Partition3 (Start_Offset:174433545216 | Length:325674316800)
.
----------------------\\ Scheduled Tasks
.
C:\WINDOWS\Tasks\desktop.ini
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1801674531-790525478-1417001333-1003Core.job
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1801674531-790525478-1417001333-1003UA.job
C:\WINDOWS\Tasks\K10STAT.job
C:\WINDOWS\Tasks\Recherche de problèmes automatique.job
C:\WINDOWS\Tasks\SA.DAT
.
----------------------\\ Registry
.
.
----------------------\\ Files & Folders
.
----------------------\\ Scan completed at 17:07.28
.
C:\Rooter$\Rooter_2.txt - (20/01/2010 | 17:07.28)
re
c'est pas infectieux...
retour à l'envoyeur:
http://www.infos-du-net.com/forum/262979-14-colin-mcrae...
c'est pas infectieux...
retour à l'envoyeur:
http://www.infos-du-net.com/forum/262979-14-colin-mcrae...
Lassé par la pub ? Créez un compte
- Contenus similaires :
Tags :