Bonjour,
Je te remercie pour tous ces conseils.
Après avoir effectué tout ce que tu m'as dit, je n'ai effectivement plus de problème pour surfer (les pages Internet s'affichent bien)
MERCI beaucoup !!!
En revanche, un nouveau problème est apparu. Au bout d'une vingtaine de minutes d'utilisation du PC, j'ai un message d'alerte qui dit :
"Le processus système
C\WINDOWS\system32\services.exe s'est terminé de manière inattendue avec le code d'état 203. Le système va maintenant s'éteindre et redémarrer."
Après ça, les programmes en cours ne répondent plus et je suis obligée d'éteindre violemment le PC et de le redémarrer (=> perte de tout ce que j'avais en cours).
As-tu une idée sur la provenance de ce problème ?
D'autre part, tu trouveras ci dessus les 2 rapports que tu m'avais demandé en fin de manipulations
RAPPORT HijackThis
------------------------
Logfile of HijackThis v1.99.1
Scan saved at 17:55:22, on 10/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
C:\Program Files\AVAST Antivirus\Avast 4\aswUpdSv.exe
C:\Program Files\AVAST Antivirus\Avast 4\ashServ.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\Program Files\CA\SharedComponents\CA_LIC\LogWatNT.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\AVAST Antivirus\Avast 4\ashMaiSv.exe
C:\Program Files\AVAST Antivirus\Avast 4\ashWebSv.exe
C:\WINDOWS\system32\RunDll32.exe
C:\WINDOWS\Dit.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\mHotkey.exe
C:\WINDOWS\CNYHKey.exe
C:\Program Files\Fichiers communs\AOL\ACS\AOLDial.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9EE.EXE
C:\PROGRA~1\AVASTA~1\AVAST4~1\ashDisp.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\WINDOWS\system32\notepad.exe
C:\Documents and Settings\Nous deux\Bureau\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.aldi.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.aldi.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: (no name) - {1C044AAD-7955-4cbd-8175-501A165C4E5D} - (no file)
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [Dit] Dit.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [CHotkey] mHotkey.exe
O4 - HKLM\..\Run: [ledpointer] CNYHKey.exe
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Fichiers communs\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [EPSON Stylus CX6600 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9EE.EXE /P26 "EPSON Stylus CX6600 Series" /O6 "USB002" /M "Stylus CX6600"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\AVASTA~1\AVAST4~1\ashDisp.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - Global Startup: BlueSoleil.lnk = ?
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O8 - Extra context menu item: &Recherche AOL Toolbar - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Fichiers communs\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=
http://www.aldi.com
O16 - DPF: {09C21411-B9A2-4DE6-8416-4E3B58577BE0} (France Telecom MDM ActiveX Control) -
http://minitelweb.minitel.com/imin_data/ocx/MDM.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://v5.windowsupdate.microsoft.com/...
O17 - HKLM\System\CCS\Services\Tcpip\..\{77D471C2-BFB4-415A-9C12-8C549D6A31B4}: NameServer = 213.36.80.1 213.36.80.1
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\AVAST Antivirus\Avast 4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\AVAST Antivirus\Avast 4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\AVAST Antivirus\Avast 4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\AVAST Antivirus\Avast 4\ashWebSv.exe" /service (file missing)
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: Client de licence CA (CA_LIC_CLNT) - Computer Associates - C:\Program Files\CA\SharedComponents\CA_LIC\lic98rmt.exe
O23 - Service: Serveur de licence CA (CA_LIC_SRVR) - Computer Associates - C:\Program Files\CA\SharedComponents\CA_LIC\lic98rmtd.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: Event Log Watch (LogWatch) - Computer Associates - C:\Program Files\CA\SharedComponents\CA_LIC\LogWatNT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe
-----------------------------------------------------------------------
RAPPORT Ewido
-------------------
C:\WINDOWS\system32:lzx32.sys -> Backdoor.Pakes : No action taken.
C:\gaxe.exe -> Backdoor.Pakes : No action taken.
:mozilla.23:C:\Documents and Settings\sabrina\Application Data\Mozilla\Profiles\default\z52h7d8o.slt\cookies.txt -> TrackingCookie.Adtech : No action taken.
:mozilla.24:C:\Documents and Settings\sabrina\Application Data\Mozilla\Profiles\default\z52h7d8o.slt\cookies.txt -> TrackingCookie.Adtech : No action taken.
:mozilla.25:C:\Documents and Settings\sabrina\Application Data\Mozilla\Profiles\default\z52h7d8o.slt\cookies.txt -> TrackingCookie.Bfast : No action taken.
:mozilla.26:C:\Documents and Settings\sabrina\Application Data\Mozilla\Profiles\default\z52h7d8o.slt\cookies.txt -> TrackingCookie.Bluestreak : No action taken.
:mozilla.28:C:\Documents and Settings\SOGS Popsound\Application Data\Mozilla\Profiles\default\xf82oyrc.slt\cookies.txt -> TrackingCookie.Bluestreak : No action taken.
:mozilla.16:C:\Documents and Settings\sabrina\Application Data\Mozilla\Profiles\default\z52h7d8o.slt\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.22:C:\Documents and Settings\SOGS Popsound\Application Data\Mozilla\Profiles\default\xf82oyrc.slt\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.35:C:\Documents and Settings\sabrina\Application Data\Mozilla\Profiles\default\z52h7d8o.slt\cookies.txt -> TrackingCookie.Estat : No action taken.
:mozilla.29:C:\Documents and Settings\sabrina\Application Data\Mozilla\Profiles\default\z52h7d8o.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.48:C:\Documents and Settings\SOGS Popsound\Application Data\Mozilla\Profiles\default\xf82oyrc.slt\cookies.txt -> TrackingCookie.Mediaplex : No action taken.
:mozilla.49:C:\Documents and Settings\SOGS Popsound\Application Data\Mozilla\Profiles\default\xf82oyrc.slt\cookies.txt -> TrackingCookie.Questionmarket : No action taken.
:mozilla.29:C:\Documents and Settings\SOGS Popsound\Application Data\Mozilla\Profiles\default\xf82oyrc.slt\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.30:C:\Documents and Settings\SOGS Popsound\Application Data\Mozilla\Profiles\default\xf82oyrc.slt\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.31:C:\Documents and Settings\SOGS Popsound\Application Data\Mozilla\Profiles\default\xf82oyrc.slt\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.6:C:\Documents and Settings\sabrina\Application Data\Mozilla\Profiles\default\z52h7d8o.slt\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.7:C:\Documents and Settings\sabrina\Application Data\Mozilla\Profiles\default\z52h7d8o.slt\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.8:C:\Documents and Settings\sabrina\Application Data\Mozilla\Profiles\default\z52h7d8o.slt\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
C:\Documents and Settings\Nous deux\Cookies\nous deux@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : No action taken.
C:\Documents and Settings\SOGS Popsound\Cookies\sogs popsound@webstat[1].txt -> TrackingCookie.Web-stat : No action taken.
:mozilla.19:C:\Documents and Settings\sabrina\Application Data\Mozilla\Profiles\default\z52h7d8o.slt\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.20:C:\Documents and Settings\sabrina\Application Data\Mozilla\Profiles\default\z52h7d8o.slt\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.21:C:\Documents and Settings\sabrina\Application Data\Mozilla\Profiles\default\z52h7d8o.slt\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.25:C:\Documents and Settings\SOGS Popsound\Application Data\Mozilla\Profiles\default\xf82oyrc.slt\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.26:C:\Documents and Settings\SOGS Popsound\Application Data\Mozilla\Profiles\default\xf82oyrc.slt\cookies.txt -> TrackingCookie.Weborama : No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1C044AAD-7955-4cbd-8175-501A165C4E5D} -> Trojan.Conhook.b : No action taken.
HKU\S-1-5-21-104560143-3855359732-2918711456-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1C044AAD-7955-4CBD-8175-501A165C4E5D} -> Trojan.Conhook.b : No action taken.
C:\taqxxtc.exe -> Trojan.Sinowal.bh : No action taken.
::Report end
Trouves-tu encore quelque chose d'anormal ?
Encore un grand merci pour ton aide
@+