j´ai appuiyer sur scan il ma fait une liste et que dois je faires aprés?? c´est serieu!! merci ![]()
allo?? s´il vous plait
merci
Fais-moi un copier-coller de ta liste ici, stp
ça marche pas
Clique sur save log et choisis un nom de fichier. Ensuite ouvre ce fichier ( c´est un fichier texte txt) et fais ton copier-coller
il y a des mots interdis
Bon bah met des **** à la place alors !
meme ja connais pas les mots interdis
prize e ?
c´est pas ça y´a pas de priz ee
ah ben je sais pas alors.
Un peu d´imagination, enfin !
Mots interdits = gros mots = bite, couille, merde, con, etc, je te fais confiance pour imaginer la liste ![]()
Au passage je te fais remarquer que ces mots passent sans problème quand c´est moi qui les poste ![]()
non les insultes c´est pas interdit. Par exemple : j´encule jv.com ! !!!! ça, ça va...
Logfile of HijackThis v1.97.7
Scan saved at 20:18:39, on 13/08/2004
Platform: Windows XP SP1 ( WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 ( 6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\SYST*EM32\ZoneLabs\vsmon.exe
C:\WINDOWS\wanm*psvc.exe
C:\WINDOWS\Exp*lorer.EXE
C:\WINDOWS\sys*tem32\dla\tfswctrl.exe
C:\Program Fi*les\Dell\Media Experience\PCMService.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\PROGRA~1\MICROS~3\GAMECO~1\common\swtrayv4.exe
C:\Program Files\Microsoft Hardware\Keyboard\type32.exe
C:\Program Files\Microsoft Hardware\Mouse\point32.exe
C:\Program Files\Thrustmaster\Thrustmapper\TMTMTSR.exe
C:\Program Files\ScanSoft\OmniPageSE\opware32.exe
C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\WINDOWS\System32\LVComS.exe
C:\PROGRA~1\ZONELA~1\ZONEAL~1\zlclient.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\AOL 8.0\aoltray.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\bertonnet\Local Settings\Temp\Répertoire temporaire 3 pour hijackthis[1].zip\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://nkvd.us/1507/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://nkvd.us/1507/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://nkvd.us/1507/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://nkvd.us/1507/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://nkvd.us/1507/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://nkvd.us/1507/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://nkvd.us/1507/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://nkvd.us/1507/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://nk*vd.us/15*07/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://n*kv*d.us/1507/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://n*k*vd.us/1507/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://nk*v*d.us/1507/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R1 -
HKCU\Software\Microsoft\Windows\CurrentVersion\Int
ernet Settings,Prox*yServer = 192.100.100.243:80
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R1 - HKCU\Software\Microsoft\Internet Explorer,Search = http://nkvd.us/1507/
R1 - HKLM\Software\Microsoft\Internet Explorer,Search = http://nkvd.us/1507/
O2 - BHO: ( no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: ( no name) - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Too*lbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiV*irus\NavShExt.dll
O3 - Too*lbar: & - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [StorageGuard] " C:\Program Files\Fichiers communs\Sonic\Update Manager\sgtray.exe" / r
O4 - HKLM\..\Run: [PCMService] " C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [ccApp] " C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] " C:\Program Files\Fichiers communs\Symantec Shared\cc*Re*gVfy.exe"
O4 - HKLM\..\Run: [SideWinderTrayV4]
C:\PROGRA~1\MICROS~3\GAMECO~1\common\swtrayv4.exe
O4 - HKLM\..\Run: [IntelliType] " C:\Program Files\Microsoft Hardware\Keyboard\type32.exe"
O4 - HKLM\..\Run: [POINTER] point32.exe
O4 - HKLM\.*.\Run: [ThrustTSR] C:\Program Files\Thrustmaster\Thrustmapper\TMTMTSR.exe
O4 - HKLM\..\Run: [Omnipage] C:\Program Files\Scan*Soft\OmniPageSE\opware32.exe
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\*Task*barIcon.exe
O4 - HKLM\..\Run: [System Service] C:\WINDOWS\System32\msrexe.exe
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\Real*Play.exe SYSTEM*BOO*THIDEPLAYE*R
O4 - HKLM\..\Run: [LVCOMS] C:\WINDOWS\System32\LVComS.exe
O4 - HKLM\..\Run: [CashSurfers CashBar Navigator] C:\PROGRA~1\CASHSU~1\Cashbar.exe
O4 - HKLM\..\Run: [Zone Labs Client] C:\PROGRA~1\ZONELA~1\ZONEAL~1\zlclient.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] " C:\Program Files\MSN Messenger\MsnMsgr.Exe" / background
O4 - Startup: Eurob*arre.lnk = C:\Program Files\euro*barre\eb.exe
O4 - Global Startup: AOL 8.0 Icône AOL.lnk = C:\Program Files\AOL 8.0\ao*ltray.exe
O4 - Global Startup: AOL Com*pagnon.lnk = C:\Program Files*\AO*L Compagn*on\companion.exe
O9 - Extra ´Tools´ menuitem: Console Java ( Sun) ( HKLM)
O9 - Extra b*utton: Rel*ated ( HKLM)
O9 - Extra ´Tools´ menu*item: Show & Links ( HKLM)
O9 - Extra butt*on: Rea*l.com ( HKLM)
O9 - Extra butt*on: Messenger ( HKLM)
O9 - Extra ´Too*ls´ menuitem: Messenger ( HKLM)
O16 - DPF: {45E83043-1F6F-4D22-A5E7-0138EA171B49} ( FileS*har*ingCtrl Class) - http://appdirectory.mess*enger.msn.com/AppDirectory/P4Apps/File*Sharing/fr/filesharingctrl.cab
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} ( ExentInf Class) - http://met*aboli.wana*doo.fr/components/Met*aboli.ocx
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} ( Hou*seCall Control) - http://a840.g.akamai.net/7/840/537/2004033001/housecall.anti*virus.com/housecall/x*scan53.cab
O16 - DPF: {7DBFDA8E-D33B-11D4-9269-00600868E56E} ( WWWIn*stall Class) - http://go.secu*relive.com/speed/WebInstall.dll
O16 - DPF: {92ABACFE-EF6E-42C7-A824-D50A914B5B70} ( Masta**Cash Loader Class) - http://dx.ma**stacash.com/loader.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} ( Ac*tiveScan Installer Class) - http://www.panda*softw*are.com/activescan/as5/asinst.cab
O16 - DPF: {EFB22865-F3BC-4309-ADFA-C8E078A7F762} ( S*ysWebT*elecomInt Class) - http://www.spons*orad*ulto.com/fr/SysWe*bTelecom.cab
O16 - DPF: {FF8555B1-9CC3-11D2-AA8E-000000000000} - http://www.cash*surf*ers.com/cscbn.cab
![]()
R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://nkvd.us/1507/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://nkvd.us/1507/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://nkvd.us/1507/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://nkvd.us/1507/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://nkvd.us/1507/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://nkvd.us/1507/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://nkvd.us/1507/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://nkvd.us/1507/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://nk*vd.us/15*07/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://n*kv*d.us/1507/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://n*k*vd.us/1507/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://nk*v*d.us/1507/
R1 - HKCU\Software\Microsoft\Internet Explorer,Search = http://nkvd.us/1507/
R1 - HKLM\Software\Microsoft\Internet Explorer,Search = http://nkvd.us/1507/
O4 - HKLM\..\Run: [CashSurfers CashBar Navigator] C:\PROGRA~1\CASHSU~1\Cashbar.exe
O4 - Startup: Eurob*arre.lnk = C:\Program Files\euro*barre\eb.exe
O16 - DPF: {FF8555B1-9CC3-11D2-AA8E-000000000000} - http://www.cash*surf*ers.com/cscbn.cab
Tous ces trucs sont des saletés à virer
Relance un scan, coche les cases en question et vire-les.
Ensuite refais un log et reposte-le
c´est quoi comme logiciel ? Il sert à quoi ?
http://terroirs.denfrance.free.fr/p/internet/logiciel/hijackthis.html
j´ai tout viré sauf startup eur*obarre cash*surfer et le dernier
Bon, comme tu veux.
Redémarre et vérifie que c´est pas revenu