bon malgré tout après combo fix, le problème semble resolu!!!!!
Plus de barre d'outil et plus de programme bidon
je post quand même le rapport combo fix, histoire de voir si tout est correct:
ComboFix 07-11-08.1 - moi 2007-11-12 17:54:38.1 - NTFSx86 MINIMAL
Running from: C:\Documents and Settings\moi\Bureau\ComboFix.exe
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\2556~1
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\2556~1\À¬»øÇåÀí.url
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\2556~1\¹ã¸æÀ¹½Ø.url
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\2556~1\°ïÖúÖ¸ÄÏ.url
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\2556~1\°éµ¼º½.url
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\2556~1\ϵͳ¼ÓËÙ.url
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\2556~1\ÆÁ±ÎÁбí.url
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\2556~1\ÐÞ¸´¹¦ÄÜ.url
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\2556~1\Òþ˽±£»¤.url
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\2556~1\×Ô¶¨Òå°´Å¥.url
C:\Documents and Settings\moi\Local Settings\Application Data\baidu
C:\Program Files\baidu
C:\Program Files\baidu\bar\BaiduBar.dll
C:\Program Files\baidu\bar\bang.ini
C:\Program Files\baidu\bar\bang.ini.1
C:\Program Files\baidu\bar\img\imglist.bmp
C:\Program Files\baidu\bar\img\logo.bmp
C:\Program Files\baidu\bar\img\Thumbs.db
C:\Program Files\baidu\bar\loadmovie.swf
C:\WINDOWS\system32\BDGuard.DAT
C:\WINDOWS\system32\BDGuardS.DAT
C:\WINDOWS\system32\iexp_log.txt
C:\WINDOWS\system32\jdsthu1.exe
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\LEGACY_BDGUARD
-------\BdGuard
((((((((((((((((((((((((((((( Fichiers cr‚‚s 2007-10-12 to 2007-11-12 ))))))))))))))))))))))))))))))))))))
.
2007-11-12 17:45 51,200 --a------ C:\WINDOWS\NirCmd.exe
2007-11-12 17:11 <REP> d-------- C:\hijack
2007-11-09 17:45 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2007-11-09 17:41 <REP> d-------- C:\Program Files\Lavasoft
2007-11-09 17:41 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Lavasoft
2007-11-09 17:39 <REP> d-------- C:\Program Files\Fichiers communs\Wise Installation Wizard
2007-11-09 05:47 1,156 --a------ C:\WINDOWS\mozver.dat
2007-11-08 17:22 1,060,864 --a------ C:\WINDOWS\system32\MFC71.dll
2007-11-08 17:22 499,712 --a------ C:\WINDOWS\system32\MSVCP71.dll
2007-11-08 17:22 348,160 --a------ C:\WINDOWS\system32\MSVCR71.dll
2007-11-08 17:21 <REP> d-------- C:\Program Files\Alwil Software
2007-11-08 17:19 <REP> d-------- C:\Program Files\ANTIVIRUS
2007-11-07 07:28 0 --a------ C:\WINDOWS\nsreg.dat
2007-11-07 07:24 <REP> d-------- C:\firefox
2007-10-15 05:03 1 --a------ C:\WINDOWS\system32\index.dat
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-11-09 22:39 --------- d-----w C:\Documents and Settings\moi\Application Data\U3
2007-10-06 23:25 --------- d-----w C:\Program Files\iPod
2007-10-06 23:24 --------- d-----w C:\Program Files\iTunes
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les ‚l‚ments vides & les ‚l‚ments initiaux l‚gitimes ne sont pas list‚s
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{77FEF28E-EB96-44FF-B511-3185DEA48697}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"snpstd"="C:\WINDOWS\vsnpstd.exe" [2003-12-31 04:39]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2006-10-25 18:58]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe" [2005-04-13 03:48]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-05-11 02:06]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2006-10-30 09:36]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-19 15:09]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2007-08-31 16:46]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Adobe Gamma Loader.exe.lnk]
path=C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Adobe Gamma Loader.exe.lnk
backup=C:\WINDOWS\pss\Adobe Gamma Loader.exe.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Microsoft Office.lnk]
path=C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Microsoft Office.lnk
backup=C:\WINDOWS\pss\Microsoft Office.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Disk Monitor]
C:\Program Files\Generic\USB Card Reader Driver v2.2f\Disk_Monitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
"C:\Program Files\QuickTime\qttask.exe" -atboottime
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sunkist2k]
C:\Program Files\Multimedia Card Reader\shwicon2k.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{35653ec1-6a2f-11dc-8daa-0014d138e186}]
\Shell\AutoRun\command - E:\LaunchU3.exe -a
*Newly Created Service* - SJYPKT
.
Contenu du dossier 'Scheduled Tasks/Tƒches planifi‚es'
"2007-02-11 02:04:21 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
.
**************************************************************************
catchme 0.3.1250 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-11-12 18:01:27
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2007-11-12 18:06:23 - machine was rebooted
.
--- E O F ---