Salut tlm
Depuis qqes temps j'ai des pubs cid qui s'ouvrent et qui m'embetes, mon pc est ralentit aussi mais je sais pas si c'est lié ou pas.
J'ai desinstaller les sponsor msn mais sa a rien changé.
Merci de m'aider précisement car je suis pas très doué.
Merci
Salut,
Il faut que tu désinstalles MSN Plus et que tu le réinstalles sans sponsor.
- Télécharge Hijackthis V 2.02 (HijackThis Installer) :
http://www.trendsecure.com/portal/en-US/threat_analytics/HJTInstall.exe
- Fais un double-clic sur HJTInstall.exe afin de lancer l'installation
- Clique sur Install ensuite sur I Accept
- Clique sur Do a scan system and save log file
- Le bloc-notes s'ouvrira, fais un copier-coller de tout son contenu ici dans ta prochaine réponse.
Pour msn plus c'est fait parcontre jai pas redemarré donc je sais pas si c'est indispensable
Et pour le rapport le voila:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:23:56, on 25/04/2008
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
C:\WINDOWS\System32\RUNDLL32.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program
Files\Google\GoogleToolbarNotifier\GoogleToolbarNo
tifier.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\PnkBstrA.exe
C:\Program Files\Shareaza\Shareaza.exe
C:\Program Files\Hercules\WiFi Station\WifiStation.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?linkid=677
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program
Files\Google\GoogleToolbarNotifier\2.1.1119.1736\s
wg.dll
O3 - Toolbar: Barre d'outils MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar\01.01.2607.0\fr\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [bait deaf idle setup] C:\Documents and Settings\All Users\Application Data\Htm Support Bait Deaf\Vc Flaw.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Program
Files\Google\GoogleToolbarNotifier\GoogleToolbarNo
tifier.exe
O4 - HKCU\..\Run:
[BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
"C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [bind 4]
C:\DOCUME~1\Tom\APPLIC~1\MODEDO~1\LiteSurfBrowse.e
xe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: WiFi Station.lnk = ?
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\System32\PnkBstrA.exe
--
End of file - 6443 bytes
---> Désactive l'antivirus
---> Télécharge Lop S&D sur ton Bureau
http://eric.71.mespages.googlepages.com/LopSD.exe
---> Double-clique dessus pour lancer l'installation
---> Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau
---> Séléctionne la langue souhaitée, puis choisis l'option 1 (Recherche)
---> Patiente jusqu'à la fin du scan
---> Poste le rapport généré (C:\lopR.txt)
(Si le Bureau ne réapparait pas, presse Ctrl+Alt+Suppr, Onglet Fichier, Nouvelle tâche, tape explorer.exe et valide)
Si tu as un problème pour utiliser Lop S&D, regarde dans le tutorial :
http://bibou0007.com/outils-specifiques-f78/tutorial-lop-sd-t956.htm#11431
voila
-----------------------[ Lop S&D 4.1.1-8 XP/Vista ]---------------------
[ Windows XP (NT 5.1) Build 2600, Service Pack 1 ]
[ USER : Tom ] [ "C:\Lop SD" ]
[ 25/04/2008 | 23:31:13,81 ] [ PC : TOM-H1EHZ2TL1O5 ]
[ MAJ : 23-04-2008 | 20:06 ]
-------------[ Listing des dossiers dans Application Data ]------------
[25/04/2008|22:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\.
[25/04/2008|22:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\..
[13/04/2008|19:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\addr_file.html
[10/04/2008|16:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[10/04/2008|19:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Creative
[09/04/2008|20:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\desktop.ini
[09/04/2008|20:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[09/04/2008|20:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Htm Support Bait Deaf
[09/04/2008|20:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[11/04/2008|19:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[25/04/2008|23:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sony
[11/04/2008|15:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[25/04/2008|21:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[10/04/2008|16:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[09/04/2008|20:12] C:\DOCUME~1\DEFAUL~1\APPLIC~1\.
[09/04/2008|20:12] C:\DOCUME~1\DEFAUL~1\APPLIC~1\..
[09/04/2008|20:12] C:\DOCUME~1\DEFAUL~1\APPLIC~1\desktop.ini
[09/04/2008|19:17] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[10/04/2008|22:05] C:\DOCUME~1\LOCALS~1\APPLIC~1\.
[10/04/2008|22:05] C:\DOCUME~1\LOCALS~1\APPLIC~1\..
[09/04/2008|19:17] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[10/04/2008|22:05] C:\DOCUME~1\LOCALS~1\APPLIC~1\Xfire
[09/04/2008|19:21] C:\DOCUME~1\NETWOR~1\APPLIC~1\.
[09/04/2008|19:21] C:\DOCUME~1\NETWOR~1\APPLIC~1\..
[09/04/2008|19:17] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[25/04/2008|21:26] C:\DOCUME~1\Tom\APPLIC~1\.
[25/04/2008|21:26] C:\DOCUME~1\Tom\APPLIC~1\..
[09/04/2008|19:37] C:\DOCUME~1\Tom\APPLIC~1\Adobe
[10/04/2008|16:17] C:\DOCUME~1\Tom\APPLIC~1\Ahead
[25/04/2008|22:27] C:\DOCUME~1\Tom\APPLIC~1\Creative
[09/04/2008|20:12] C:\DOCUME~1\Tom\APPLIC~1\desktop.ini
[09/04/2008|20:26] C:\DOCUME~1\Tom\APPLIC~1\Google
[09/04/2008|19:21] C:\DOCUME~1\Tom\APPLIC~1\Identities
[09/04/2008|19:31] C:\DOCUME~1\Tom\APPLIC~1\InstallShield
[10/04/2008|19:09] C:\DOCUME~1\Tom\APPLIC~1\ma-config.com
[09/04/2008|19:37] C:\DOCUME~1\Tom\APPLIC~1\Macromedia
[18/04/2008|22:03] C:\DOCUME~1\Tom\APPLIC~1\Microsoft
[13/04/2008|19:12] C:\DOCUME~1\Tom\APPLIC~1\Mode Dog Debug
[09/04/2008|20:21] C:\DOCUME~1\Tom\APPLIC~1\PnkBstrK.sys
[25/04/2008|21:26] C:\DOCUME~1\Tom\APPLIC~1\Publish Providers
[25/04/2008|14:47] C:\DOCUME~1\Tom\APPLIC~1\Shareaza
[25/04/2008|21:26] C:\DOCUME~1\Tom\APPLIC~1\Sony
[10/04/2008|23:29] C:\DOCUME~1\Tom\APPLIC~1\Sony Setup
[09/04/2008|20:45] C:\DOCUME~1\Tom\APPLIC~1\Sun
[10/04/2008|16:30] C:\DOCUME~1\Tom\APPLIC~1\WinRAR
[25/04/2008|17:23] C:\DOCUME~1\Tom\APPLIC~1\Xfire
----------------[ Tâches planifiées dans C:\WINDOWS\tasks ]---------------
[25/04/2008 23:00][--ah-----] C:\WINDOWS\tasks\A89F8F44918005B4.job
[25/04/2008 22:56][--ah-----] C:\WINDOWS\tasks\SA.DAT
[28/08/2001 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
---------------[ Listing des dossiers dans C:\Program Files ]--------------
[25/04/2008|23:23] C:\Program Files\.
[25/04/2008|23:23] C:\Program Files\..
[09/04/2008|19:57] C:\Program Files\Activision
[10/04/2008|16:38] C:\Program Files\Avira
[09/04/2008|19:16] C:\Program Files\ComPlus Applications
[10/04/2008|19:19] C:\Program Files\Creative
[10/04/2008|19:19] C:\Program Files\Creative Installation Information
[10/04/2008|19:19] C:\Program Files\Fichiers communs
[25/04/2008|22:31] C:\Program Files\Google
[09/04/2008|19:31] C:\Program Files\Hercules
[10/04/2008|19:19] C:\Program Files\InstallShield Installation Information
[10/04/2008|23:31] C:\Program Files\Internet Explorer
[09/04/2008|20:42] C:\Program Files\Java
[09/04/2008|20:48] C:\Program Files\ma-config.com
[09/04/2008|19:16] C:\Program Files\Messenger
[25/04/2008|23:14] C:\Program Files\Messenger Plus! Live
[09/04/2008|19:18] C:\Program Files\microsoft frontpage
[10/04/2008|23:37] C:\Program Files\Microsoft SQL Server
[09/04/2008|20:25] C:\Program Files\Mode Dog Debug
[25/04/2008|21:26] C:\Program Files\Modules VST
[09/04/2008|19:17] C:\Program Files\Movie Maker
[09/04/2008|19:16] C:\Program Files\MSN
[09/04/2008|19:16] C:\Program Files\MSN Gaming Zone
[25/04/2008|23:14] C:\Program Files\MSN Messenger
[09/04/2008|19:38] C:\Program Files\MSN Toolbar
[10/04/2008|16:38] C:\Program Files\MUSK Codec Pack v6
[25/04/2008|23:05] C:\Program Files\Navilog1
[10/04/2008|16:14] C:\Program Files\Nero
[09/04/2008|19:16] C:\Program Files\NetMeeting
[09/04/2008|19:16] C:\Program Files\Outlook Express
[10/04/2008|16:17] C:\Program Files\Philips Intelligent Agent
[09/04/2008|19:27] C:\Program Files\Realtek
[09/04/2008|19:16] C:\Program Files\Services en ligne
[25/04/2008|14:47] C:\Program Files\Shareaza
[25/04/2008|23:07] C:\Program Files\Sony
[25/04/2008|20:59] C:\Program Files\Sony Setup
[11/04/2008|15:07] C:\Program Files\Spybot - Search & Destroy
[25/04/2008|23:23] C:\Program Files\Trend Micro
[09/04/2008|19:21] C:\Program Files\Uninstall Information
[25/04/2008|21:18] C:\Program Files\Vstplugins
[10/04/2008|19:23] C:\Program Files\Windows Media Player
[09/04/2008|19:15] C:\Program Files\Windows NT
[25/04/2008|18:14] C:\Program Files\WindowsUpdate
[10/04/2008|16:30] C:\Program Files\WinRAR
[09/04/2008|19:18] C:\Program Files\xerox
[25/04/2008|03:43] C:\Program Files\Xfire
[19/04/2008|09:37] C:\Program Files\Yahoo!
------[ Listing des dossiers dans C:\Program Files\Fichiers communs ]------
[10/04/2008|19:19] C:\Program Files\Fichiers communs\.
[10/04/2008|19:19] C:\Program Files\Fichiers communs\..
[10/04/2008|16:17] C:\Program Files\Fichiers communs\Ahead
[10/04/2008|19:19] C:\Program Files\Fichiers communs\Creative
[10/04/2008|19:18] C:\Program Files\Fichiers communs\InstallShield
[09/04/2008|20:41] C:\Program Files\Fichiers communs\Java
[10/04/2008|23:33] C:\Program Files\Fichiers communs\Microsoft Shared
[09/04/2008|19:16] C:\Program Files\Fichiers communs\MSSoap
[09/04/2008|20:12] C:\Program Files\Fichiers communs\ODBC
[09/04/2008|19:16] C:\Program Files\Fichiers communs\Services
[09/04/2008|20:12] C:\Program Files\Fichiers communs\SpeechEngines
[09/04/2008|19:16] C:\Program Files\Fichiers communs\System
----------------------[ Recherche avec S_Lop ]---------------------
Aucun fichier / dossier Lop trouvé !
-----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Htm Support Bait Deaf
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Htm Support Bait Deaf\Vc Flaw.exe
C:\WINDOWS\Tasks\A89F8F44918005B4.job
----------------------[ Verification du Registre ]----------------------
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curr
entVersion\Run]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Cur
rentVersion\Run]
"bait deaf idle setup"="C:\\Documents and Settings\\All Users\\Application Data\\Htm Support Bait Deaf\\Vc Flaw.exe"
--------------------[ Verification du fichier Hosts ]---------------------
Fichier Hosts MODIFIE
127.0.0.1 bin.errorprotector.com ## added by CiD
127.0.0.1 br.errorsafe.com ## added by CiD
127.0.0.1 br.winantivirus.com ## added by CiD
127.0.0.1 br.winfixer.com ## added by CiD
127.0.0.1 cdn.drivecleaner.com ## added by CiD
127.0.0.1 cdn.errorsafe.com ## added by CiD
127.0.0.1 cdn.winsoftware.com ## added by CiD
127.0.0.1 de.errorsafe.com ## added by CiD
127.0.0.1 de.winantivirus.com ## added by CiD
127.0.0.1 download.cdn.drivecleaner.com ## added by CiD
127.0.0.1 download.cdn.errorsafe.com ## added by CiD
127.0.0.1 download.cdn.winsoftware.com ## added by CiD
127.0.0.1 download.errorsafe.com ## added by CiD
127.0.0.1 download.systemdoctor.com ## added by CiD
127.0.0.1 download.winantispyware.com ## added by CiD
127.0.0.1 download.windrivecleaner.com ## added by CiD
127.0.0.1 download.winfixer.com ## added by CiD
127.0.0.1 drivecleaner.com ## added by CiD
127.0.0.1 dynamique.drivecleaner.com ## added by CiD
127.0.0.1 errorprotector.com ## added by CiD
127.0.0.1 errorsafe.com ## added by CiD
127.0.0.1 es.winantivirus.com ## added by CiD
127.0.0.1 fr.winantivirus.com ## added by CiD
127.0.0.1 fr.winfixer.com ## added by CiD
127.0.0.1 go.drivecleaner.com ## added by CiD
127.0.0.1 go.errorsafe.com ## added by CiD
127.0.0.1 go.winantispyware.com ## added by CiD
127.0.0.1 go.winantivirus.com ## added by CiD
127.0.0.1 hk.winantivirus.com ## added by CiD
127.0.0.1 instlog.errorsafe.com ## added by CiD
127.0.0.1 instlog.winantivirus.com ## added by CiD
127.0.0.1 instlog.winfixer.com ## added by CiD
127.0.0.1 jsp.drivecleaner.com ## added by CiD
127.0.0.1 kb.errorsafe.com ## added by CiD
127.0.0.1 kb.winantivirus.com ## added by CiD
127.0.0.1 nl.errorsafe.com ## added by CiD
127.0.0.1 se.errorsafe.com ## added by CiD
127.0.0.1 secure.drivecleaner.com ## added by CiD
127.0.0.1 secure.errorsafe.com ## added by CiD
127.0.0.1 secure.winantispam.com ## added by CiD
127.0.0.1 secure.winantispy.com ## added by CiD
127.0.0.1 secure.winantivirus.com ## added by CiD
127.0.0.1 support.winantivirus.com ## added by CiD
127.0.0.1 trial.updates.winsoftware.com ## added by CiD
127.0.0.1 ulog.winantivirus.com ## added by CiD
127.0.0.1 utils.errorsafe.com ## added by CiD
127.0.0.1 utils.winantivirus.com ## added by CiD
127.0.0.1 utils.winfixer.com ## added by CiD
127.0.0.1 winantispyware.com ## added by CiD
127.0.0.1 winantivirus.com ## added by CiD
127.0.0.1 winfixer.com ## added by CiD
127.0.0.1 winfixer2006.com ## added by CiD
127.0.0.1 winsoftware.com ## added by CiD
127.0.0.1 www.drivecleaner.com ## added by CiD
127.0.0.1 www.errorprotector.com ## added by CiD
127.0.0.1 www.errorsafe.com ## added by CiD
127.0.0.1 www.systemdoctor.com ## added by CiD
127.0.0.1 www.utils.winfixer.com ## added by CiD
127.0.0.1 www.win-anti-virus-pro.com ## added by CiD
127.0.0.1 www.win-virus-pro.com ## added by CiD
127.0.0.1 www.winantispam.com ## added by CiD
127.0.0.1 www.winantispy.com ## added by CiD
127.0.0.1 www.winantispyware.com ## added by CiD
127.0.0.1 www.winantivirus.com ## added by CiD
127.0.0.1 www.winantiviruspro.com ## added by CiD
127.0.0.1 www.windrivecleaner.com ## added by CiD
127.0.0.1 www.windrivesafe.com ## added by CiD
127.0.0.1 www.winfixer.com ## added by CiD
127.0.0.1 www.winfixer2006.com ## added by CiD
127.0.0.1 www.winsoftware.com ## added by CiD
-> 8317 ( 70 ## added by CiD )
/!\ 1 Not 127.0.0.1 !!
----------------[ Recherche de fichiers avec Catchme ]-----------------
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-04-25 23:31:23
Windows 5.1.2600 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------[ Recherche d'autres infections ]---------------------
Aucune autre infection trouvée !
/!\ [Fich:49][Doss:3] C:\DOCUME~1\Tom\LOCALS~1\Temp
/!\ [Fich:55][Doss:0] C:\DOCUME~1\Tom\Cookies
/!\ [Fich:1488][Doss:4] C:\DOCUME~1\Tom\LOCALS~1\TEMPOR~1\content.IE5
--------------------[ Fin du rapport a 23:32:00,32 ]----------------------
---> Relance Lop S&D
---> Choisis cette fois-ci l'option 2 (Suppression)
---> Ne ferme pas la fenêtre lors de la suppression !
---> Poste le rapport généré (C:\lopR.txt)
(Si le Bureau ne réapparait pas, presse Ctrl+Alt+Suppr, Onglet Fichier, Nouvelle tâche, tape explorer.exe et valide)
![]()
voila
-----------------------[ Lop S&D 4.1.1-8 XP/Vista ]---------------------
[ Windows XP (NT 5.1) Build 2600, Service Pack 1 ]
[ USER : Tom ] [ "C:\Lop SD" ]
[ 25/04/2008 | 23:39:24,56 ] [ PC : TOM-H1EHZ2TL1O5 ]
[ MAJ : 23-04-2008 | 20:06 ]
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION /////////////////////////////
Supprimé! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Htm Support Bait Deaf\Vc Flaw.exe
Supprimé! - C:\WINDOWS\Tasks\A89F8F44918005B4.job
Supprimé! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Htm Support Bait Deaf
Restauré! - Fichier Hosts
//////////////////////////////////////-\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\\\\\\\\\\\
-------------[ Listing des dossiers dans Application Data ]------------
[25/04/2008|23:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\.
[25/04/2008|23:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\..
[13/04/2008|19:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\addr_file.html
[10/04/2008|16:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[10/04/2008|19:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Creative
[09/04/2008|20:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\desktop.ini
[09/04/2008|20:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[09/04/2008|20:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[11/04/2008|19:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[25/04/2008|23:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sony
[11/04/2008|15:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[25/04/2008|21:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[10/04/2008|16:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[09/04/2008|20:12] C:\DOCUME~1\DEFAUL~1\APPLIC~1\.
[09/04/2008|20:12] C:\DOCUME~1\DEFAUL~1\APPLIC~1\..
[09/04/2008|20:12] C:\DOCUME~1\DEFAUL~1\APPLIC~1\desktop.ini
[09/04/2008|19:17] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[10/04/2008|22:05] C:\DOCUME~1\LOCALS~1\APPLIC~1\.
[10/04/2008|22:05] C:\DOCUME~1\LOCALS~1\APPLIC~1\..
[09/04/2008|19:17] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[10/04/2008|22:05] C:\DOCUME~1\LOCALS~1\APPLIC~1\Xfire
[09/04/2008|19:21] C:\DOCUME~1\NETWOR~1\APPLIC~1\.
[09/04/2008|19:21] C:\DOCUME~1\NETWOR~1\APPLIC~1\..
[09/04/2008|19:17] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[25/04/2008|21:26] C:\DOCUME~1\Tom\APPLIC~1\.
[25/04/2008|21:26] C:\DOCUME~1\Tom\APPLIC~1\..
[09/04/2008|19:37] C:\DOCUME~1\Tom\APPLIC~1\Adobe
[10/04/2008|16:17] C:\DOCUME~1\Tom\APPLIC~1\Ahead
[25/04/2008|22:27] C:\DOCUME~1\Tom\APPLIC~1\Creative
[09/04/2008|20:12] C:\DOCUME~1\Tom\APPLIC~1\desktop.ini
[09/04/2008|20:26] C:\DOCUME~1\Tom\APPLIC~1\Google
[09/04/2008|19:21] C:\DOCUME~1\Tom\APPLIC~1\Identities
[09/04/2008|19:31] C:\DOCUME~1\Tom\APPLIC~1\InstallShield
[10/04/2008|19:09] C:\DOCUME~1\Tom\APPLIC~1\ma-config.com
[09/04/2008|19:37] C:\DOCUME~1\Tom\APPLIC~1\Macromedia
[18/04/2008|22:03] C:\DOCUME~1\Tom\APPLIC~1\Microsoft
[13/04/2008|19:12] C:\DOCUME~1\Tom\APPLIC~1\Mode Dog Debug
[09/04/2008|20:21] C:\DOCUME~1\Tom\APPLIC~1\PnkBstrK.sys
[25/04/2008|21:26] C:\DOCUME~1\Tom\APPLIC~1\Publish Providers
[25/04/2008|14:47] C:\DOCUME~1\Tom\APPLIC~1\Shareaza
[25/04/2008|21:26] C:\DOCUME~1\Tom\APPLIC~1\Sony
[10/04/2008|23:29] C:\DOCUME~1\Tom\APPLIC~1\Sony Setup
[09/04/2008|20:45] C:\DOCUME~1\Tom\APPLIC~1\Sun
[10/04/2008|16:30] C:\DOCUME~1\Tom\APPLIC~1\WinRAR
[25/04/2008|17:23] C:\DOCUME~1\Tom\APPLIC~1\Xfire
----------------[ Tâches planifiées dans C:\WINDOWS\tasks ]---------------
[25/04/2008 22:56][--ah-----] C:\WINDOWS\tasks\SA.DAT
[28/08/2001 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
---------------[ Listing des dossiers dans C:\Program Files ]--------------
[25/04/2008|23:23] C:\Program Files\.
[25/04/2008|23:23] C:\Program Files\..
[09/04/2008|19:57] C:\Program Files\Activision
[10/04/2008|16:38] C:\Program Files\Avira
[09/04/2008|19:16] C:\Program Files\ComPlus Applications
[10/04/2008|19:19] C:\Program Files\Creative
[10/04/2008|19:19] C:\Program Files\Creative Installation Information
[10/04/2008|19:19] C:\Program Files\Fichiers communs
[25/04/2008|22:31] C:\Program Files\Google
[09/04/2008|19:31] C:\Program Files\Hercules
[10/04/2008|19:19] C:\Program Files\InstallShield Installation Information
[10/04/2008|23:31] C:\Program Files\Internet Explorer
[09/04/2008|20:42] C:\Program Files\Java
[09/04/2008|20:48] C:\Program Files\ma-config.com
[09/04/2008|19:16] C:\Program Files\Messenger
[25/04/2008|23:14] C:\Program Files\Messenger Plus! Live
[09/04/2008|19:18] C:\Program Files\microsoft frontpage
[10/04/2008|23:37] C:\Program Files\Microsoft SQL Server
[09/04/2008|20:25] C:\Program Files\Mode Dog Debug
[25/04/2008|21:26] C:\Program Files\Modules VST
[09/04/2008|19:17] C:\Program Files\Movie Maker
[09/04/2008|19:16] C:\Program Files\MSN
[09/04/2008|19:16] C:\Program Files\MSN Gaming Zone
[25/04/2008|23:14] C:\Program Files\MSN Messenger
[09/04/2008|19:38] C:\Program Files\MSN Toolbar
[10/04/2008|16:38] C:\Program Files\MUSK Codec Pack v6
[25/04/2008|23:05] C:\Program Files\Navilog1
[10/04/2008|16:14] C:\Program Files\Nero
[09/04/2008|19:16] C:\Program Files\NetMeeting
[09/04/2008|19:16] C:\Program Files\Outlook Express
[10/04/2008|16:17] C:\Program Files\Philips Intelligent Agent
[09/04/2008|19:27] C:\Program Files\Realtek
[09/04/2008|19:16] C:\Program Files\Services en ligne
[25/04/2008|14:47] C:\Program Files\Shareaza
[25/04/2008|23:07] C:\Program Files\Sony
[25/04/2008|20:59] C:\Program Files\Sony Setup
[11/04/2008|15:07] C:\Program Files\Spybot - Search & Destroy
[25/04/2008|23:23] C:\Program Files\Trend Micro
[09/04/2008|19:21] C:\Program Files\Uninstall Information
[25/04/2008|21:18] C:\Program Files\Vstplugins
[10/04/2008|19:23] C:\Program Files\Windows Media Player
[09/04/2008|19:15] C:\Program Files\Windows NT
[25/04/2008|18:14] C:\Program Files\WindowsUpdate
[10/04/2008|16:30] C:\Program Files\WinRAR
[09/04/2008|19:18] C:\Program Files\xerox
[25/04/2008|03:43] C:\Program Files\Xfire
[19/04/2008|09:37] C:\Program Files\Yahoo!
------[ Listing des dossiers dans C:\Program Files\Fichiers communs ]------
[10/04/2008|19:19] C:\Program Files\Fichiers communs\.
[10/04/2008|19:19] C:\Program Files\Fichiers communs\..
[10/04/2008|16:17] C:\Program Files\Fichiers communs\Ahead
[10/04/2008|19:19] C:\Program Files\Fichiers communs\Creative
[10/04/2008|19:18] C:\Program Files\Fichiers communs\InstallShield
[09/04/2008|20:41] C:\Program Files\Fichiers communs\Java
[10/04/2008|23:33] C:\Program Files\Fichiers communs\Microsoft Shared
[09/04/2008|19:16] C:\Program Files\Fichiers communs\MSSoap
[09/04/2008|20:12] C:\Program Files\Fichiers communs\ODBC
[09/04/2008|19:16] C:\Program Files\Fichiers communs\Services
[09/04/2008|20:12] C:\Program Files\Fichiers communs\SpeechEngines
[09/04/2008|19:16] C:\Program Files\Fichiers communs\System
----------------------[ Recherche avec S_Lop ]---------------------
Aucun fichier / dossier Lop trouvé !
-----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------
Aucun fichier / dossier Lop trouvé !
----------------------[ Verification du Registre ]----------------------
..... OK !
--------------------[ Verification du fichier Hosts ]---------------------
Fichier Hosts PROPRE
----------------[ Recherche de fichiers avec Catchme ]-----------------
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-04-25 23:39:33
Windows 5.1.2600 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------[ Recherche d'autres infections ]---------------------
Aucune autre infection trouvée !
/!\ [Fich:51][Doss:3] C:\DOCUME~1\Tom\LOCALS~1\Temp
/!\ [Fich:65][Doss:0] C:\DOCUME~1\Tom\Cookies
/!\ [Fich:1946][Doss:4] C:\DOCUME~1\Tom\LOCALS~1\TEMPOR~1\content.IE5
--------------------[ Fin du rapport a 23:40:07,65 ]----------------------
Salut,
Déjà partir dans une désinfection sur un système pas à jour, ce n'est pas le bon plan :
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:23:56, on 25/04/2008
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Alors installe le SP2 de suite ![]()
Mon window est piraté donc bon si je fais les maj j'ai peut que sa arrete de marcher
Dans ce cas t'étonne pas de te faire infecter. Et crier à l'aide à chaque fois sera inutile !
demande de ban ?
---> Reposte un rapport HijackThis s'il te plaît.
Pas la peine de s'exciter comme sa 90% des gens doivent l'avoir piraté et vu le prix que sa coute .... il ont pas assez de sous peut etre ... c'est pas moi qui vais les pleindre au contraire sa me degoute ce contraste riche/ pauvre
bon je m'egare
Merci de m'aider c'est cool ;)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:48:25, on 25/04/2008
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
C:\WINDOWS\System32\RUNDLL32.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program
Files\Google\GoogleToolbarNotifier\GoogleToolbarNo
tifier.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\PnkBstrA.exe
C:\Program Files\Shareaza\Shareaza.exe
C:\Program Files\Hercules\WiFi Station\WifiStation.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Xfire\xfire.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?linkid=677
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program
Files\Google\GoogleToolbarNotifier\2.1.1119.1736\s
wg.dll
O3 - Toolbar: Barre d'outils MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar\01.01.2607.0\fr\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Program
Files\Google\GoogleToolbarNotifier\GoogleToolbarNo
tifier.exe
O4 - HKCU\..\Run:
[BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
"C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [bind 4]
C:\DOCUME~1\Tom\APPLIC~1\MODEDO~1\LiteSurfBrowse.e
xe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: WiFi Station.lnk = ?
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\System32\PnkBstrA.exe
--
End of file - 6247 bytes
Je ne m'énerve pas, simple remarque. ;)
---> Désinstalle Lop S&D
Il te reste un morceau de l'infection.
Fais ceci :
---> Télécharge OTMoveIt2 à partir du lien ci-dessous :
http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe
---> Enregistre le fichier sur le Bureau.
---> Double-clique sur le fichier OTMoveIt2.exe pour lancer l'outil.
---> Copie l'intégralité du texte dans le cadre ci-dessous et colle le dans la fenêtre intitulée Paste Standard List of Files/Folders to be moved.
C:\DOCUME~1\Tom\APPLIC~1\MODEDO~1\
---> Clique sur le bouton MoveIt! et attends la fin du travail de l'outil puis ferme OTMoveIt2.
Remarque : Un redémarrage du PC est parfois nécessaire pour déplacer certains fichiers. S'il est demandé, clique sur Oui/Yes.
---> Pense à enregistrer le rapport et poste-le ici.
Il me mette C:\DOCUME~1\Tom\APPLIC~1\MODEDO~1\ not found
Trouve et supprime le dossier manuellement.
je le trouve pas peut etre qui l'est parti
Bon je vais me couché ++
Merci sa a l'air d'aller mieux ;)
C'est un dossier cacher, avant fais ceci :
Explorateur Windows > Outils > Options des dossiers > Affichage
« Afficher les fichiers cachés » : coché
« Masquer les extensions.. » : décoché
Et supprime le dossier.
Ensuite décoche et recoche les options.