Bonjour,
alors en mode sans échec j'ai réussi à supprimer presque tout sauf 2 qui font bogué le programme donc il ne sont pas supprimé
voici le rapport:
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 10:28:36 2006-10-07
+ Scan result:
C:\Documents and Settings\All Users\Documents\Mes images\Noël\Christmas_Cursors.exe/MyCometCursor.exe -> Adware.Comet : Cleaned.
C:\Documents and Settings\All Users\Documents\Mes images\Noël\Christmas_Cursors.exe/comet.dll -> Adware.Comet : Cleaned.
C:\Program Files\DeluxeCommunications -> Adware.DeluxeCommunications : Ignored.
C:\Program Files\DeluxeCommunications\Dxc.exe -> Adware.DeluxeCommunications : Ignored.
C:\Program Files\DeluxeCommunications\DxcBho.dll -> Adware.DeluxeCommunications : Ignored.
C:\Program Files\DeluxeCommunications\DxcCore.dll -> Adware.DeluxeCommunications : Ignored.
HKLM\SOFTWARE\Classes\CLSID\{A8BD6820-6ED7-423E-9558-2D1486B0FEEA} -> Adware.DeluxeCommunications : Ignored.
HKLM\SOFTWARE\DeluxeCommunications -> Adware.DeluxeCommunications : Ignored.
HKLM\SOFTWARE\DeluxeCommunications\Internet Explorer -> Adware.DeluxeCommunications : Ignored.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\DeluxeCommunications -> Adware.DeluxeCommunications : Ignored.
HKU\S-1-5-21-789336058-1409082233-839522115-1003\Software\DeluxeCommunications -> Adware.DeluxeCommunications : Ignored.
HKU\S-1-5-21-789336058-1409082233-839522115-1003\Software\DeluxeCommunications\Internet Explorer -> Adware.DeluxeCommunications : Ignored.
HKU\S-1-5-21-789336058-1409082233-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Run\\DeluxeCommunications -> Adware.DeluxeCommunications : Ignored.
HKU\S-1-5-21-789336058-1409082233-839522115-500\Software\Microsoft\Windows\CurrentVersion\Run\\DeluxeCommunications -> Adware.DeluxeCommunications : Ignored.
C:\WINDOWS\system32\e2jm0c11ef.dll -> Adware.Look2Me : Cleaned.
C:\WINDOWS\system32\fp4603hse.dll -> Adware.Look2Me : Cleaned.
HKU\S-1-5-21-789336058-1409082233-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4A2AACF3-ADF6-11D5-98A9-00E018981B9E} -> Adware.NewDotNet : Cleaned.
C:\WINDOWS\system32\dxclib303562752.dll -> Adware.SurfSide : Cleaned.
[396] C:\WINDOWS\System32\dxclib303562752.dll -> Adware.SurfSide : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@247realmedia[1].txt -> TrackingCookie.247realmedia : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@amazonsearsca.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@cpvfeed[2].txt -> TrackingCookie.Cpvfeed : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@epilot[1].txt -> TrackingCookie.Epilot : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@e-2dj6whkyaiajacp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@e-2dj6wjlikpczegq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@e-2dj6wjliqjajsgp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@e-2dj6wjmyckczabp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@e-2dj6wjmykicpeao.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@e-2dj6wjnyggcjilq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@weborama[2].txt -> TrackingCookie.Weborama : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[10].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[11].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[12].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[13].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[14].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[15].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[16].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[17].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[18].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[19].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[20].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[21].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[22].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[23].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[24].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[25].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[26].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[27].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[28].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[29].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[30].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[31].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[32].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[33].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[34].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[35].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[36].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[37].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[38].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[39].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[3].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[40].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[41].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[42].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[43].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[44].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[45].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[46].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[47].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[48].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[49].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[4].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[50].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[51].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[52].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[53].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[54].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[55].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[56].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[57].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[58].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[59].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[5].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[60].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[61].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[62].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[63].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[64].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[65].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[66].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[67].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[68].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[69].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[6].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[70].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[7].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[8].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Propriétaire\Cookies\propriétaire@ad.yieldmanager[9].txt -> TrackingCookie.Yieldmanager : Cleaned.
::Report end
-Ceux ignoré c'est moi qui l'a fait car c'est ceux là qui fesait bogué le programme quand j'essayais de les supprimer.
Adware.jDeluxecommunication et AdwareSurfSide pas capable de les enlevers!
Voici le rapport HiJackThis:
Logfile of HijackThis v1.99.1
Scan saved at 12:11:38, on 2006-10-07
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Keyboard\Ikeymain.exe
C:\PROGRA~1\PRINTV~1\pvmodule.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\System32\ctfmon.exe
C:\program files\MétéoMédia\MétéoIMédia\WeatherEye.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS\System32\crunner\cproc.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe
C:\Documents and Settings\Propriétaire\Bureau\Nouveau dossier\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://searchbar.findthewebsiteyouneed.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://searchbar.findthewebsiteyouneed.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://searchbar.findthewebsiteyouneed.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.findthewebsiteyouneed.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://searchbar.findthewebsiteyouneed.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
http://searchbar.findthewebsiteyouneed.com
R3 - URLSearchHook: (no name) - {A8BD6820-6ED7-423E-9558-2D1486B0FEEA} - C:\Program Files\DeluxeCommunications\DxcBho.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DeskbarBHO - {A8B28872-3324-4CD2-8AA3-7D555C872D96} - C:\Program Files\Deskbar\deskbar.dll (file missing)
O2 - BHO: PrintViewBHO Class - {D4E0C464-30CE-4075-9A10-71FD106C2847} - C:\PROGRA~1\PRINTV~1\PRINTH~1.DLL
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [iKeyWorks] C:\PROGRA~1\Keyboard\Ikeymain.exe
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [PVModule] C:\PROGRA~1\PRINTV~1\pvmodule.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DeluxeCommunications] C:\Program Files\DeluxeCommunications\Dxc.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MétéoIMédia] C:\program files\MétéoMédia\MétéoIMédia\WeatherEye.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [cprocsvc] C:\WINDOWS\System32\crunner\cproc.exe
O4 - HKCU\..\Run: [DeluxeCommunications] C:\Program Files\DeluxeCommunications\Dxc.exe
O4 - Global Startup: Exif Launcher.lnk = ?
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: dxclib303562752.dll
O23 - Service: AntiVir Service (AntiVirService) - Unknown owner - C:\Program Files\AVPersonal\AVGUARD.EXE (file missing)
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
Merci!
Logfile of HijackThis v1.99.1
Scan saved at 10:46:41, on 2006-10-06
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Keyboard\Ikeymain.exe
C:\kybrdff_e23.exe
C:\PROGRA~1\PRINTV~1\pvmodule.exe
C:\dfndrff_e23.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Fichiers communs\{34B27EF5-067B-3084-0312-041028030002}\Update.exe
C:\WINDOWS\System32\ctfmon.exe
C:\program files\MétéoMédia\MétéoIMédia\WeatherEye.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS\System32\crunner\cproc.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
c:\kybrdff_e24.exe
c:\dfndrff_e24.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Propriétaire\Bureau\Nouveau dossier\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://searchbar.findthewebsiteyouneed.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://searchbar.findthewebsiteyouneed.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbar.findthewebsiteyouneed.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.findthewebsiteyouneed.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbar.findthewebsiteyouneed.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://searchbar.findthewebsiteyouneed.com
R3 - URLSearchHook: (no name) - {A8BD6820-6ED7-423E-9558-2D1486B0FEEA} - C:\Program Files\DeluxeCommunications\DxcBho.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DeskbarBHO - {A8B28872-3324-4CD2-8AA3-7D555C872D96} - C:\Program Files\Deskbar\deskbar.dll
O2 - BHO: PrintViewBHO Class - {D4E0C464-30CE-4075-9A10-71FD106C2847} - C:\PROGRA~1\PRINTV~1\PRINTH~1.DLL
O3 - Toolbar: (no name) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [iKeyWorks] C:\PROGRA~1\Keyboard\Ikeymain.exe
O4 - HKLM\..\Run: [keyboard] c:\\kybrdff_e24.exe
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [PVModule] C:\PROGRA~1\PRINTV~1\pvmodule.exe
O4 - HKLM\..\Run: [defender] c:\\dfndrff_e24.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DeluxeCommunications] C:\Program Files\DeluxeCommunications\Dxc.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MétéoIMédia] C:\program files\MétéoMédia\MétéoIMédia\WeatherEye.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [cprocsvc] C:\WINDOWS\System32\crunner\cproc.exe
O4 - HKCU\..\Run: [DeluxeCommunications] C:\Program Files\DeluxeCommunications\Dxc.exe
O4 - Global Startup: Exif Launcher.lnk = ?
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab30149.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {3AF4DACE-36ED-42EF-9DFC-ADC34DA30CFF} (PatchInstaller.Installer) - file://D:\content\include\XPPatchInstaller.CAB
O16 - DPF: {4E888414-DB8F-11D1-9CD9-00C04F98436A} (Microsoft.WinRep) - https://webresponse.one.microsoft.com/oas/ActiveX/winrep.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by17fd.bay17.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {511F9316-771B-4953-A268-1C36DA667FE9} - http://ip.sponsoradulto.com/cab/3/fr/SysWebTelecomInt.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - a840.g.akamai.net
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab28578.cab
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://audio.gov.pe.ca/islandcam/AxisCamControl.ocx
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
O16 - DPF: {A1426AC5-8CE5-4A00-B71E-011D35709AC6} - http://advnt01.com/dialer/int_ver34.CAB
O16 - DPF: {A18962F6-E6ED-40B1-97C9-1FB36F38BFA8} (Aurigma Image Uploader 3.5 Control) - http://www.photolab.ca/fr/Photo/ImageUploader3.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B817734E-046C-11D3-B674-00104BA25195} - http://pmb001.3m.com/pub/psnotes/psnudate.cab
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab30149.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game14.zylomgames.com/activex/zylomgamesplayer.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} (Yahoo! Toolbar) - http://us.dl1.yimg.com/download.companion.yahoo.com/dl/toolbar/yiebio5_1_6_0.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab28578.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: dxclib303562752.dll
O23 - Service: AntiVir Service (AntiVirService) - Unknown owner - C:\Program Files\AVPersonal\AVGUARD.EXE (file missing)
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe