Pages internet s'ouvrent seules windows vista

Fermé
riadh09 Messages postés 17 Date d'inscription mardi 19 février 2008 Statut Membre Dernière intervention 20 octobre 2008 - 19 févr. 2008 à 20:39
riadh09 Messages postés 17 Date d'inscription mardi 19 février 2008 Statut Membre Dernière intervention 20 octobre 2008 - 21 févr. 2008 à 23:05
Bonjour,
j'ai un petit probleme sur mon pc c'est quand j'ouvre une page internet une autre page s'ouvre avec c'est trés ennuyeux svp aidez moi j'ai le programme vista
merci d'avance
A voir également:

33 réponses

Saiyen75 Messages postés 2696 Date d'inscription jeudi 8 mars 2007 Statut Membre Dernière intervention 23 novembre 2014 184
19 févr. 2008 à 21:17
Salut,

Désactiver le contrôle des comptes utilisateurs (tu le réactiveras après ta désinfection):

---> Démarrer
---> Panneau de configuration
--->
Double Clique sur l'icône "Comptes d'utilisateurs"
--->
Clique ensuite sur désactiver
---> Valider


_____________________________________________________

- Télécharger et installer AVG Anti-Spyware 7.5 (si tu ne l'as pas déjà si tu l'as vérifie bien les paramètres).

https://www.avg.com/en-ww/free-antivirus-download

Lancer AVG Anti-Spyware.
Cliquer sur le menu Mise à jour.
Dans le paragraphe "Mise à jour manuelle", cliquer sur le bouton "Commencer la mise à jour".
Attendre la fin de cette mise à jour puis fermer le programme.


- Lance AVG Anti-Spyware 7.5

Cliquer sur le menu" Analyse" (de la barre d'outils).
Cliquer sur l'onglet "Paramètres".
Dans "Comment réagir"? cliquer sur "Actions recommandées" et choisir "Quarantaine".
Dans Comment faire l'analyse ? et dans Programmes potentiellement dangereux, vérifier que toutes les cases soient cochées.
Vérifier que le bouton-radio "Générer un rapport après chaque analyse" soit aussi coché.
Dans l'onglet "Analyse"
Cliquer sur "Analyse complète du système".
Important : Ne pas ouvrir de fenêtre, ne pas lancer de programme pendant l'exécution de AVG Anti-Spyware, car cela pourrait interférer avec le processus de recherche.
Très important : A la fin de l'analyse, cocher tout ce qui a été trouvé puis cliquer sur " Appliquer toutes les actions"
Ensuite.
Cliquer sur "Enregistrer le rapport". Ceci génère un rapport en fichier texte qui se trouve dans le dossier Reports du dossier d'AVG Anti-Spyware.
(C:\Programfiles\Grisoft\AVG Antispyware 7.5\Reports )
Puis fermer AVG Anti-Spyware.

_____________________________________________________

Colle un Log hijackthis :

télécharge HijackThis ici :
http://telechargement.zebulon.fr/138-hijackthis-1991.html

Dézippe le dans un dossier
Par exemple C:\hijackthis < Enregistre le bien dans c:\

Lance le puis:
clique sur "do a system scan and save logfile"
faire un copier coller du log et le poster sur le forum

Tuto ici: http://cybersecurite.xooit.com/t138-HijackThis-2-0-2.htm

_____________________________________________________
0
riadh09 Messages postés 17 Date d'inscription mardi 19 février 2008 Statut Membre Dernière intervention 20 octobre 2008
20 févr. 2008 à 08:40
merci saiyen75 de votre reponse voila j'ai fais ce que vous m'avaez demandé de faire:
Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 08:37:09, on 20/02/2008
Platform: Windows Vista (WinNT 6.00.1904)
Boot mode: Normal

Running processes:
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Valve\Steam\Steam.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Microsoft Etudes\Microsoft Encarta 2008 - Études DVD\EDICT.EXE
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\System32\rundll32.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\HiJackThis_v2.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr?cobrand=hp-notebook.msn.com&ocid=HPDHP&pc=HPNTDF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr?cobrand=hp-notebook.msn.com&ocid=HPDHP&pc=HPNTDF
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: BrowsingAdvisor - {F1E96EDC-E0C8-BE98-1F15-C29DBED83B53} - C:\Program Files\BrowsingAdvisor\BrowsingAdvisor-2.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [HP Health Check Scheduler] C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Windows\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Valve\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [L08FXLRD_80990087] "C:\Program Files\Microsoft Etudes\Microsoft Encarta 2008 - Études DVD\EDICT.EXE" -m
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Barre de recherche Encarta - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: @%SystemRoot%\system32\aelupsvc.dll,-1 (AeLookupSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe
O23 - Service: @%systemroot%\system32\appinfo.dll,-100 (Appinfo) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-204 (AudioEndpointBuilder) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (Audiosrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000 (BITS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\browser.dll,-100 (Browser) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-11 (CertPropSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe
O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001 (CryptSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @oleres.dll,-5012 (DcomLaunch) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dhcpcsvc.dll,-100 (Dhcp) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101 (Dnscache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102 (dot3svc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\eapsvc.dll,-1 (EapHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\ehome\ehrecvr.exe,-101 (ehRecvr) - Unknown owner - C:\Windows\ehome\ehRecvr.exe
O23 - Service: @%SystemRoot%\ehome\ehsched.exe,-101 (ehSched) - Unknown owner - C:\Windows\ehome\ehsched.exe
O23 - Service: @%SystemRoot%\ehome\ehstart.dll,-101 (ehstart) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\emdmgmt.dll,-1000 (EMDMgmt) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200 (Eventlog) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fdPHost.dll,-100 (fdPHost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fdrespub.dll,-100 (FDResPub) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101 (hidserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\kmsvc.dll,-6 (hkmsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501 (IKEEXT) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\IPBusEnum.dll,-102 (IPBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-200 (iphlpsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\srvsvc.dll,-100 (LanmanServer) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wkssvc.dll,-100 (LanmanWorkstation) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1 (lltdsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101 (lmhosts) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-100 (MMCSS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-23090 (MpsSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe
O23 - Service: @%SystemRoot%\system32\iscsidsc.dll,-5000 (MSiSCSI) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) - Unknown owner - C:\Windows\system32\msiexec.exe
O23 - Service: @%SystemRoot%\system32\qagentrt.dll,-6 (napagent) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @%SystemRoot%\system32\netman.dll,-109 (Netman) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\netprof.dll,-246 (netprofm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1 (NlaSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8004 (p2pimsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006 (p2psvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: Panda Process Protection Service (PavPrSrv) - Unknown owner - C:\Program Files\Common Files\Panda Software\PavShld\pavprsrv.exe
O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1 (PcaSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100 (PlugPlay) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8002 (PNRPAutoReg) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8000 (PNRPsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010 (PolicyAgent) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\profsvc.dll,-300 (ProfSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasauto.dll,-200 (RasAuto) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasmans.dll,-200 (RasMan) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @regsvc.dll,-1 (RemoteRegistry) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe
O23 - Service: @oleres.dll,-5010 (RpcSs) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @%SystemRoot%\System32\SCardSvr.dll,-1 (SCardSvr) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100 (Schedule) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-13 (SCPolicySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sdrsvc.dll,-107 (SDRSVC) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Sens.dll,-200 (SENS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026 (SessionEnv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\ipnathlp.dll,-106 (SharedAccess) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288 (ShellHWDetection) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe
O23 - Service: @%SystemRoot%\system32\SLUINotify.dll,-103 (SLUINotify) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe
O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100 (SSDPSRV) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9 (stisvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: @%SystemRoot%\System32\swprv.dll,-103 (swprv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sysmain.dll,-1000 (SysMain) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100 (TabletInputService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100 (TapiSrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tbssvc.dll,-100 (TBS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268 (TermService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-8192 (Themes) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-102 (THREADORDER) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1 (TrkWks) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\servicing\TrustedInstaller.exe,-100 (TrustedInstaller) - Unknown owner - C:\Windows\servicing\TrustedInstaller.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe
O23 - Service: @%systemroot%\system32\upnphost.dll,-213 (upnphost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dwm.exe,-2000 (UxSms) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe
O23 - Service: @%SystemRoot%\system32\w32time.dll,-200 (W32Time) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3 (wcncsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\WcsPlugInService.dll,-200 (WcsPlugInService) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-502 (WdiServiceHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-500 (WdiSystemHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\webclnt.dll,-100 (WebClient) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200 (Wecsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wercplsupport.dll,-101 (wercplsupport) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100 (WerSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100 (WinHttpAutoProxySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-205 (Winmgmt) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101 (WinRM) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257 (Wlansvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files\Windows Media Player\wmpnetwk.exe
O23 - Service: @%SystemRoot%\system32\wpcsvc.dll,-100 (WPCSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-100 (WPDBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wscsvc.dll,-200 (wscsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\SearchIndexer.exe,-103 (WSearch) - Unknown owner - C:\Windows\system32\SearchIndexer.exe
O23 - Service: @%systemroot%\system32\wuaueng.dll,-105 (wuauserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000 (wudfsvc) - Unknown owner - C:\Windows\system32\svchost.exe
0
riadh09 Messages postés 17 Date d'inscription mardi 19 février 2008 Statut Membre Dernière intervention 20 octobre 2008
20 févr. 2008 à 08:46
désolé j'ai oublié de vous dire que l'analyse avec AVG j'ai rien trouvé(rien a signalé) et depuis hier avec les pages qui s'ouvrent seules y a meme un programme qui veut s'exécuté
0
Saiyen75 Messages postés 2696 Date d'inscription jeudi 8 mars 2007 Statut Membre Dernière intervention 23 novembre 2014 184
20 févr. 2008 à 08:55
Salut,

Jolie infection :)

Télécharge bien la version d'HijackThis que je t'ai donné. (dernière version)
http://telechargement.zebulon.fr/138-hijackthis-1991.html
Tuto ici: http://cybersecurite.xooit.com/t138-HijackThis-2-0-2.htm

Aprés enchaine avec :

SDFix :

Télécharger sur le bureau :
http://downloads.andymanchesta.com/RemovalTools/SDFix.exe

= Double-clic SDFix.
= Clic Install

= Redémarrer en mode Sans Échec (le démarrage peut prendre plusieurs minutes).
Attention, pas d’accès à internet dans ce mode. Enregistrer ou imprimer les consignes.

Pour démarrer en mode sans échec :

1/ -Démarrez Windows, ou s’il s’exécute, fermez Windows puis éteignez l'ordinateur.
2/ -Redémarrez l’ordinateur.
3/ -Au début du chargement du BIOS (mais pas trop tôt), commencez à appuyer sur la touche F8 de votre clavier plusieurs fois de suite. Procédez ainsi jusqu'à ce que le menu des options avancées de Windows apparaissent.
4/ -En utilisant les flèches de votre clavier, sélectionnez "Mode sans échec" dans le menu puis appuyez sur Entrée.

Une fois sous windows :

------
= Double-clic SDFix.
= Clic Install
= Double-clic sur le nouveau dossier SDFix qui est dans C:\
= Double-clic RunThis
= Presser Y
= A l’invitation ==> appuyer sur une touche pour redémarrer
= Redémarrage ( qui sera plus long ,car nettoyage en cours )
Continuer si un message d’erreurs apparaît ,dans ce cas aller directement au rapport dans SDfix
= apparition de Finished
= Appuyer sur une touche
= Dans SDFix , un rapport est généré, Report.txt
= Copier/Coller sur le forum.

_____________________________________________________
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
salut j'ai fait ce que vous m'avez dit mais quand je fais un double clique sur runthis ça repond pas y a rien qui se passe merci de me repondre
0
Saiyen75 Messages postés 2696 Date d'inscription jeudi 8 mars 2007 Statut Membre Dernière intervention 23 novembre 2014 184
20 févr. 2008 à 17:24
Re, erreur de ma part, SDFix non-compatible avec Vista.
Tu peux supprimer SDFix

Navilog1 :

Télécharger et Install Navilog1 sur le bureau :
http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe

= double-clic dessus pour l'installer et le lancer
Quand installé
= taper F
= Appuyer sur une touche jusqu' arriver aux options
= Choisir option 1 ( = taper 1 )
ne pas utiliser les autres sans avis , il peut y avoir des processus légitimes

un rapport : fixnavi.txt
dans ==> C :
le copier/coller dans la réponse

_____________________________________________________

Refait un Log HijackThis avec la derniere version.
0
Search Navipromo version 3.4.5 commencé le 20/02/2008 à 18:54:09,19

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

Outil exécuté depuis C:\Program Files\navilog1
Mise à jour le 20.02.2008 à 18h00 par IL-MAFIOSO

Microsoft Windows Vista 6.0.6000
Internet Explorer : 7.0.6000.16609
Système de fichiers : NTFS

Executé en mode normal

*** Recherche Programmes installés ***




*** Recherche dossiers dans C:\Windows ***



*** Recherche dossiers dans C:\Program Files ***


*** Recherche dossiers dans C:\ProgramData ***


*** Recherche dossiers dans C:\ProgramData\Microsoft\Windows\Start Menu\Programs ***


*** Recherche dossiers dans C:\Users\riadh\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs ***


*** Recherche dossiers dans C:\Users\riadh\AppData\Local\virtualstore\Program Files ***



*** Recherche dossiers dans C:\Users\riadh\AppData\Roaming ***


*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net

Aucun Fichier trouvé



*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!

* Recherche dans C:\Windows\system32 *
0
Saiyen75 Messages postés 2696 Date d'inscription jeudi 8 mars 2007 Statut Membre Dernière intervention 23 novembre 2014 184
20 févr. 2008 à 19:27
Re

Refait un Navilog1, mais post le rapport complet (il ne l'est pas)

Merci

En suivant fait ça :

VundoFix :

Télécharge VundoFix.exe sur ton Bureau.
http://www.atribune.org/ccount/click.php?id=4

Double-clique VundoFix.exe afin de le lancer.
Coche Run VundoFix as a task.
Un message t'avertira que l'outil va se fermer et s'ouvrir à nouveau : clique Ok
Clique sur le bouton Scan for Vundo.
Lorsque le scan est complété, clique sur le bouton Remove Vundo.
Une invite te demandera si tu veux supprimer les fichiers, clique YES
Après avoir cliqué "Yes", le Bureau disparaîtra un moment lors de la suppression des fichiers.
Tu verras une invite qui t'annonce que ton PC va s'éteindre ("shutdown") ; clique OK
Démarre ton PC à nouveau.
Copie/colle le contenu du rapport situé dans C:\vundofix.txt ainsi qu'un nouveau rapport HijackThis! dans ta prochaine réponse.

-----------------------------------------------------------

Télécharge VirtumondoBegone :
http://secured2k.home.comcast.net/tools/VirtumundoBeGone.exe

Lance le, et poste le rapport dans le forum.

_____________________________________________________

++
0
Search Navipromo version 3.4.5 commencé le 20/02/2008 à 19:34:25,58

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

Outil exécuté depuis C:\Program Files\navilog1
Mise à jour le 20.02.2008 à 18h00 par IL-MAFIOSO

Microsoft Windows Vista 6.0.6000
Internet Explorer : 7.0.6000.16609
Système de fichiers : NTFS

Executé en mode normal

*** Recherche Programmes installés ***




*** Recherche dossiers dans C:\Windows ***



*** Recherche dossiers dans C:\Program Files ***


*** Recherche dossiers dans C:\ProgramData ***


*** Recherche dossiers dans C:\ProgramData\Microsoft\Windows\Start Menu\Programs ***


*** Recherche dossiers dans C:\Users\riadh\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs ***


*** Recherche dossiers dans C:\Users\riadh\AppData\Local\virtualstore\Program Files ***



*** Recherche dossiers dans C:\Users\riadh\AppData\Roaming ***


*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net

Aucun Fichier trouvé



*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!

* Recherche dans C:\Windows\system32 *

* Recherche dans C:\Users\riadh\AppData\Local\Microsoft *

* Recherche dans C:\Users\riadh\AppData\Local\virtualstore\windows\system32 *

* Recherche dans C:\Users\riadh\AppData\Local *



*** Recherche fichiers ***




*** Recherche clés spécifiques dans le Registre ***


*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche nouveaux fichiers Instant Access :


2)Recherche Heuristique :

* Dans C:\Windows\system32 :


* Dans C:\Users\riadh\AppData\Local\Microsoft :


* Dans C:\Users\riadh\AppData\Local\virtualstore\windows\system32 :


* Dans C:\Users\riadh\AppData\Local :


3)Recherche Certificats :

Certificat Egroup absent !

4)Recherche fichiers connus :



*** Analyse terminée le 20/02/2008 à 19:45:17,04 ***









Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:07:46, on 20/02/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16609)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Valve\Steam\Steam.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Microsoft Etudes\Microsoft Encarta 2008 - Études DVD\EDICT.EXE
C:\Windows\ehome\ehmsas.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\conime.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\explorer.exe
C:\HijackThis.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr?cobrand=hp-notebook.msn.com&ocid=HPDHP&pc=HPNTDF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr?cobrand=hp-notebook.msn.com&ocid=HPDHP&pc=HPNTDF
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: BrowsingAdvisor - {F1E96EDC-E0C8-BE98-1F15-C29DBED83B53} - C:\Program Files\BrowsingAdvisor\BrowsingAdvisor-2.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [HP Health Check Scheduler] C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Windows\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Valve\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [L08FXLRD_80990087] "C:\Program Files\Microsoft Etudes\Microsoft Encarta 2008 - Études DVD\EDICT.EXE" -m
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Barre de recherche Encarta - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Panda Process Protection Service (PavPrSrv) - Panda Software - C:\Program Files\Common Files\Panda Software\PavShld\pavprsrv.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
0
le vundofix n'a rien trouvé
0
Saiyen75 Messages postés 2696 Date d'inscription jeudi 8 mars 2007 Statut Membre Dernière intervention 23 novembre 2014 184
20 févr. 2008 à 21:06
bitdefender en ligne :

Utilise Internet Explorer
accepte l'active X
la barre anti pop-up du SP2 (en haut) se met à clignoter, clic dessus et choisis "accepter l'active X"

http://www.bitdefender.fr/scan_fr/scan8/ie.html

- Cliquer sur J'accepte
- Start Scan
- Une fois terminé, Dans l'onglet "Problèmes détectés"
- "Cliquer ici pour exporter le rapport"
- Enregistrer sur le bureau (choisir un nom)
- Fermer le scan
- Ouvrir le fichier enregistré le copier/coller sur le forum.

_____________________________________________________
0
BitDefender Online Scanner



Scan report generated at: Wed, Feb 20, 2008 - 22:59:08





Scan path: C:\;D:\;E:\;







Statistics

Time
00:51:54

Files
294943

Folders
14019

Boot Sectors
3

Archives
3098

Packed Files
22850




Results

Identified Viruses
1

Infected Files
1

Suspect Files
0

Warnings
0

Disinfected
0

Deleted Files
1




Engines Info

Virus Definitions
982513

Engine build
AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)

Scan plugins
16

Archive plugins
41

Unpack plugins
7

E-mail plugins
6

System plugins
5




Scan Settings

First Action
Désinfecté

Second Action
Supprimé

Heuristics
Oui

Enable Warnings
Oui

Scanned Extensions
*;

Exclude Extensions


Scan Emails
Oui

Scan Archives
Oui

Scan Packed
Oui

Scan Files
Oui

Scan Boot
Oui




Scanned File
Status

C:\Program Files\Common Files\ErreurChasseur\strpmon.exe
Détecté avec: Adware.SystemErrorFixer.B

C:\Program Files\Common Files\ErreurChasseur\strpmon.exe
Supprimé

C:\Program Files\Common Files\System\Ole DB\msdaosp.dll
Nettoyé

C:\Program Files\Common Files\System\Ole DB\msdaps.dll
Nettoyé

C:\Program Files\Common Files\System\Ole DB\msdasc.dll
Nettoyé

C:\Program Files\Common Files\System\Ole DB\msdasql.dll
Nettoyé

C:\Program Files\Common Files\System\Ole DB\msdasqlr.dll
Nettoyé

C:\Program Files\Common Files\System\Ole DB\msdatl3.dll
Nettoyé

C:\Program Files\Common Files\System\Ole DB\msdatt.dll
Nettoyé

C:\Program Files\Common Files\System\Ole DB\msdaurl.dll
Nettoyé

C:\Program Files\Common Files\System\Ole DB\MSDMENG.DLL
Nettoyé

C:\Program Files\Common Files\System\Ole DB\MSDMINE.DLL
Nettoyé

C:\Program Files\Common Files\System\Ole DB\MSMDCB80.DLL
Nettoyé

C:\Program Files\Common Files\System\Ole DB\MSMDGD80.DLL
Nettoyé

C:\Program Files\Common Files\System\Ole DB\msmdlocal.dll
Nettoyé

C:\Program Files\Common Files\System\Ole DB\MSMDUN80.DLL
Nettoyé

C:\Program Files\Common Files\System\Ole DB\msmgdsrv.dll
Nettoyé

C:\Program Files\Common Files\System\Ole DB\MSOLAP80.DLL
Nettoyé

C:\Program Files\Common Files\System\Ole DB\msolap90.dll
Nettoyé

C:\Program Files\Common Files\System\Ole DB\MSOLUI80.DLL
Nettoyé

C:\Program Files\Common Files\WindowsLiveInstaller\MsiSources\Install_{BADF6744-3787-48F6-B8C9-4C4995401D65}.msi=>(Embedded CAB)=>msnmsgrexe
Nettoyé

C:\Program Files\Common Files\WindowsLiveInstaller\MsiSources\Install_{BADF6744-3787-48F6-B8C9-4C4995401D65}.msi=>(Embedded CAB)=>msncoredll
Nettoyé

C:\Program Files\Common Files\WindowsLiveInstaller\MsiSources\Install_{BADF6744-3787-48F6-B8C9-4C4995401D65}.msi=>(Embedded CAB)=>ctxUXdll
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/UsingHelp.htm=>(JAVASCRIPT 11)
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/What_Youll_Need.htm
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Browsing_Your_Computer_for_Music.htm
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Browsing_Your_Computer_for_Music.htm=>(JAVASCRIPT 1)
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Browsing_Your_Computer_for_Music.htm=>(JAVASCRIPT 7)
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Legal_Information.htm
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Getting_Started2.htm
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Getting_Started2.htm=>(JAVASCRIPT 1)
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Getting_Started2.htm=>(JAVASCRIPT 6)
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Extracting_audio_from_CD.htm
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/The_List_Pane.htm
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/The_Source_Pane.htm
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Transferring_Files_to_Your_Memory_Stick.htm
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Viewing_the_Contents_of_Your_Memory_Stick.htm
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Viewing_the_Contents_of_Your_Memory_Stick.htm=>(JAVASCRIPT 1)
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Viewing_the_Contents_of_Your_Memory_Stick.htm=>(JAVASCRIPT 8)
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/The_Disc2Phone_Window.htm
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/The_Disc2Phone_Window.htm=>(JAVASCRIPT 1)
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/The_Disc2Phone_Window.htm=>(JAVASCRIPT 5)
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Modifying_Disc2Phone_Options.htm
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Modifying_Disc2Phone_Options.htm=>(JAVASCRIPT 1)
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Modifying_Disc2Phone_Options.htm=>(JAVASCRIPT 14)
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Selecting,_Shuffling,_and_Automatically_Transferring_a_Random_Collection_of_Tracks.htm
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Manually_Selecting_Tracks.htm
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Selecting_and_shuffling_a_random_collection_of_tracks.htm
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Getting_CD_Information.htm
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Getting_CD_Information.htm=>(JAVASCRIPT 1)
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/Getting_CD_Information.htm=>(JAVASCRIPT 11)
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/The_Destination_Pane.htm
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/eHelp.xml
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/RoboHHRE.lng
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/D2P.brs
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/#BSSC
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/help.css
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/remove_all.gif
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/D2P_logo.jpg
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/play.gif
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/page.gif
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.chm=>/BUTTON.GIF
Nettoyé

C:\Program Files\Disc2Phone\de\D2P.resources.dll
Nettoyé

C:\Program Files\Disc2Phone\es\
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/#SYSTEM
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Welcome.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/support.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/UsingHelp.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/UsingHelp.htm=>(JAVASCRIPT 1)
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/UsingHelp.htm=>(JAVASCRIPT 11)
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/What_Youll_Need.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Browsing_Your_Computer_for_Music.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Browsing_Your_Computer_for_Music.htm=>(JAVASCRIPT 1)
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Browsing_Your_Computer_for_Music.htm=>(JAVASCRIPT 7)
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Legal_Information.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Getting_Started2.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Getting_Started2.htm=>(JAVASCRIPT 1)
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Getting_Started2.htm=>(JAVASCRIPT 6)
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Extracting_audio_from_CD.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/The_List_Pane.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/The_Source_Pane.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Transferring_Files_to_Your_Memory_Stick.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Viewing_the_Contents_of_Your_Memory_Stick.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Viewing_the_Contents_of_Your_Memory_Stick.htm=>(JAVASCRIPT 1)
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Viewing_the_Contents_of_Your_Memory_Stick.htm=>(JAVASCRIPT 8)
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/The_Disc2Phone_Window.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/The_Disc2Phone_Window.htm=>(JAVASCRIPT 1)
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/The_Disc2Phone_Window.htm=>(JAVASCRIPT 5)
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Modifying_Disc2Phone_Options.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Modifying_Disc2Phone_Options.htm=>(JAVASCRIPT 1)
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Modifying_Disc2Phone_Options.htm=>(JAVASCRIPT 14)
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Selecting,_Shuffling,_and_Automatically_Transferring_a_Random_Collection_of_Tracks.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Manually_Selecting_Tracks.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Selecting_and_shuffling_a_random_collection_of_tracks.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Getting_CD_Information.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Getting_CD_Information.htm=>(JAVASCRIPT 1)
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/Getting_CD_Information.htm=>(JAVASCRIPT 11)
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/The_Destination_Pane.htm
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/eHelp.xml
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/RoboHHRE.lng
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/D2P.brs
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/#BSSC
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/help.css
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/page.gif
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/tableleft.gif
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/NOTE.GIF
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/options.gif
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.chm=>/destinationfolder.gif
Nettoyé

C:\Program Files\Disc2Phone\es\D2P.resources.dll
Nettoyé

C:\Program Files\Disc2Phone\fi\
Nettoyé

C:\Program Files\Disc2Phone\fi\D2P.chm
Nettoyé

C:\Program Files\Disc2Phone\fi\D2P.chm=>/#SYSTEM
Nettoyé

C:\Program Files\Disc2Phone\fi\D2P.chm=>/Welcome.htm
Nettoyé

C:\Program Files\Disc2Phone\fi\D2P.chm=>/support.htm
Nettoyé

C:\Program Files\Disc2Phone\fi\D2P.chm=>/UsingHelp.htm
Nettoyé

C:\Program Files\Disc2Phone\fi\D2P.chm=>/UsingHelp.htm=>(JAVASCRIPT 1)
Nettoyé

C:\Program Files\Disc2Phone\fi\D2P.chm=>/UsingHelp.htm=>(JAVASCRIPT 11)
Nettoyé

C:\Program Files\Disc2Phone\fi\D2P.chm=>/What_Youll_Need.htm
Nettoyé

C:\Program Files\Disc2Phone\fi\D2P.chm=>/Browsing_Your_Computer_for_Music.htm
Nettoyé

C:\Program Files\Disc2Phone\fi\D2P.chm=>/Browsing_Your_Computer_for_Music.htm=>(JAVASCRIPT 1)
Nettoyé

C:\Program Files\Disc2Phone\fi\D2P.chm=>/Browsing_Your_Computer_for_Music.htm=>(JAVASCRIPT 7)
Nettoyé

C:\Program Files\Disc2Phone\fi\D2P.chm=>/Legal_Information.htm
Nettoyé

C:\Program Files\Disc2Phone\fi\D2P.chm=>/Getting_Started2.htm
Nettoyé

C:\Program Files\Disc2Phone\fi\D2P.chm=>/Getting_Started2.htm=>(JAVASCRIPT 1)
Nettoyé

C:\Program Files\Disc2Phone\fi\D2P.chm=>/Getting_Started2.htm=>(JAVASCRIPT 6)
Nettoyé

C:\Program Files\Disc2Phone\fi\D2P.chm=>/Extracting_audio_from_CD.htm
Nettoyé
0
Saiyen75 Messages postés 2696 Date d'inscription jeudi 8 mars 2007 Statut Membre Dernière intervention 23 novembre 2014 184
20 févr. 2008 à 23:26
Re

Tu utilise quoi comme antivirus ? En verrsion payante ?

La suite :

Fixe les lignes dans Hijackthis :

Relance HijackThis, choisis "do a scan only" coche la case devant les lignes ci-dessous et clic en bas sur "fix checked".

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Windows\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe

S'il te demande un redémarrage, relance ton PC.
_____________________________________________________

Avira Rootkit Detection 1.0.1.17 :

Télécharger Avira Rootkit :
http://dl.antivir.de/down/windows/antivir_rootkit.zip

Double clic sur le fichier téléchargé
Ceci va lancer l'installation.
Une fois installé, le lancer
Cliquer sur "Start Scan"

une fois le Scan terminé, cliquer sur : "View report"
un rapport va s'ouvrir dans le bloc note.
Copier/Coller ce rapport sur le forum :

Edition
Selectionner tout
Edition
Copier
Aller sur le forum et le coller.


Fermer le bloc note (pas obligé de l'enregistrer) puis
Si des fichiers sont trouvés ----> "Quarantine all"
Fermer Avira Anti-Rootkit.

_____________________________________________________

Si tu n'utilise pas d'Antivirus :

Pour installer Antivir :

Telecharge Antivir: http://www.commentcamarche.net/telecharger/telecharger 55 antivir

Installe le.
Pendant l'installation, cocher la case "generate random serial..."
Lance Antivir,
fais les mises à jours, puis lance un scan (si des virus sont découverts, mets les en quarantaine. Si tu ne peux pas alors supprime les).
A la fin du scan clique sur 'report', enregistre ce rapport sur le bureau (fichier => enregistrer sous), puis fait un copier/coller de ce rapport dans ton prochain message.

----> Relance ton PC


Tutos : https://www.malekal.com/avira-free-security-antivirus-gratuit/

Si problème - mise à jour :
Telecharge la licence sur le site officiel :
http://dl1.avgate.net/down/windows/hbedv.key
Une fois telechargé, déplace le fichier téléchargé (hbedv.key) dans le dossier Antivir.
Par defaut : C:\Program Files\AntiVir PersonalEdition Classic

Refait la mise à jour, puis il ne sera plus périmé.
Et fait le scan comme indiqué plus haut.

_____________________________________________________

++
0
21.02.2008 00:03:16 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
21.02.2008 00:03:16 - Backup Directory: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\BACKUP\
21.02.2008 00:03:16 - Temp Directory: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\
21.02.2008 00:03:17 - Start the Update GUI... Displaymode: 0

21.02.2008 00:03:16 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
21.02.2008 00:03:16 - Backup Directory: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\BACKUP\
21.02.2008 00:03:16 - Temp Directory: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\
21.02.2008 00:03:17 - Start the Update GUI... Displaymode: 0

21.02.2008 00:03:19 - Keyfile: OK [FULL Mode]

21.02.2008 00:03:19 - Avira AntiVir PersonalEdition Classic

21.02.2008 00:03:20 - Master IDX file has changed
21.02.2008 00:03:25 - Keyfile: OK [FULL Mode]

21.02.2008 00:03:25 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/classic-nt-en.info.gz
21.02.2008 00:03:26 - File basic-nt/2k/avgntflt.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/avgio64.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/imp64b.exe's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/psapi.dll's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/shlext64.dll's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/vista64/avgntflt.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/xp64/avgntflt.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/2k/avgntdd.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/2k/avgntmgr.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/nt/avgntdd.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/nt/avgntmgr.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/vista64/avgntflt.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/vdf.info.gz
21.02.2008 00:03:29 - Keyfile: OK [FULL Mode]

21.02.2008 00:03:29 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/specvir-nt.info.gz
21.02.2008 00:03:29 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/engine.info.gz
21.02.2008 00:03:30 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/engine-nt-en.info.gz
21.02.2008 00:03:31 - Module: SELFUPDATE Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 15
21.02.2008 00:03:31 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlib.dll 1.2.10.20 < 1.2.10.21
21.02.2008 00:03:31 - Module: MAIN Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 77
21.02.2008 00:03:31 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe 7.2.0.12 < 7.2.0.14
21.02.2008 00:03:31 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe 7.2.0.13 < 7.2.0.16
21.02.2008 00:03:31 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe 7.0.0.81 < 7.0.0.82
21.02.2008 00:03:31 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccguard.dll 7.0.1.34 < 7.0.1.35
21.02.2008 00:03:31 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\preupd.exe 7.0.0.34 < 7.0.0.36
21.02.2008 00:03:32 - Module: COMMAPPDATA Source: winwks\en\ Destination: C:\ProgramData\ Files: 1
21.02.2008 00:03:32 - Module: TEXT Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 3
21.02.2008 00:03:32 - Module: VDF Source: vdf\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 4
21.02.2008 00:03:32 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir1.vdf 7.0.0.0 < 7.0.1.95
21.02.2008 00:03:32 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir2.vdf 7.0.0.1 < 7.0.2.113
21.02.2008 00:03:32 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir3.vdf 7.0.0.2 < 7.0.2.169
21.02.2008 00:03:32 - Module: AVREP_NT Source: engine\nt\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
21.02.2008 00:03:32 - Module: ENGINE Source: engine\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 2
21.02.2008 00:03:32 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avewin32.dll 7.6.0.15 < 7.6.0.67
21.02.2008 00:03:32 - Module: ENGINE_NT_EN Source: engine\nt\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
21.02.2008 00:03:32 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avpack32.dll 7.3.0.15 < 7.6.0.3
21.02.2008 00:03:32 - Module: DRV Source: winwks\en\ Destination: C:\Windows\SYSTEM32\drivers\ Files: 4
21.02.2008 00:03:32 - C:\Windows\SYSTEM32\drivers\avipbb.sys 1.0.2.11 < 1.0.2.13
21.02.2008 00:03:32 - Minifilter is installed

21.02.2008 00:03:32 - Minifilter is possible

21.02.2008 00:03:32 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | FilterType

21.02.2008 00:03:32 - File basic-nt/xp/avgntdd.sys which was recognized as modified, must not be updated
21.02.2008 00:03:32 - File basic-nt/xp/avgntmgr.sys which was recognized as modified, must not be updated
21.02.2008 00:03:32 - Initialize avnotify.exe

21.02.2008 00:03:32 - Starting avnotify.exe successful

21.02.2008 00:03:32 - Preparing to download files
21.02.2008 00:03:32 - 13 files need to be downloaded / copied from http://dl8.freeav.net/upd/
21.02.2008 00:03:32 - #1: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/updlib.dll.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt/updlib.dll
21.02.2008 00:03:35 - #2: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/avcenter.exe.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt/avcenter.exe
21.02.2008 00:03:38 - #3: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/avgnt.exe.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt/avgnt.exe
21.02.2008 00:03:40 - #4: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/avguard.exe.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt/avguard.exe
21.02.2008 00:03:42 - #5: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/ccguard.dll.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt/ccguard.dll
21.02.2008 00:03:44 - #6: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/preupd.exe.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt/preupd.exe
21.02.2008 00:03:45 - #7: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/addr_file.html.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt/addr_file.html
21.02.2008 00:03:46 - #8: Downloading and extracting http://dl8.freeav.net/upd/vdf/antivir1.vdf.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\vdf\antivir1.vdf
21.02.2008 00:04:34 - #9: Downloading and extracting http://dl8.freeav.net/upd/vdf/antivir2.vdf.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\vdf\antivir2.vdf
21.02.2008 00:04:55 - #10: Downloading and extracting http://dl8.freeav.net/upd/vdf/antivir3.vdf.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\vdf\antivir3.vdf
21.02.2008 00:04:59 - #11: Downloading and extracting http://dl8.freeav.net/upd/engine/avewin32.dll.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\engine\avewin32.dll
21.02.2008 00:05:12 - #12: Downloading and extracting http://dl8.freeav.net/upd/engine/nt/avpack32.dll.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\engine\nt\avpack32.dll
21.02.2008 00:05:14 - #13: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/avipbb.sys.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt/avipbb.sys
21.02.2008 00:05:22 - Service AVEService is not installed

21.02.2008 00:05:22 - Service AntiVirMailService is not installed

21.02.2008 00:05:22 - Initialize fwinst.exe

21.02.2008 00:05:22 - Initialize fwinst.exe

21.02.2008 00:05:22 - Service AntiVirFirewallService is not installed

21.02.2008 00:05:22 - Service antivirwebservice is not installed

21.02.2008 00:05:22 - Status of service AntiVirService is running

21.02.2008 00:05:22 - Initialize avgnt.exe

21.02.2008 00:05:22 - Status of service AntiVirScheduler is running

21.02.2008 00:05:22 - Minifilter is installed

21.02.2008 00:05:22 - Minifilter is possible

21.02.2008 00:05:22 - Initialize avscan.exe

21.02.2008 00:05:22 - Initialize avconfig.cpl

21.02.2008 00:05:22 - Initialize avcenter.exe

21.02.2008 00:05:22 - shell extension is installed

21.02.2008 00:05:22 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | RootkitsInstalled

21.02.2008 00:05:22 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | RootkitsInstalled

21.02.2008 00:05:22 - Service AVEService is not installed

21.02.2008 00:05:22 - Service AntiVirMailService is not installed

21.02.2008 00:05:22 - Initialize fwinst.exe

21.02.2008 00:05:22 - Initialize fwinst.exe

21.02.2008 00:05:22 - Service AntiVirFirewallService is not installed

21.02.2008 00:05:22 - shell extension is installed

21.02.2008 00:05:22 - Initialize regsvr32.exe

21.02.2008 00:05:22 - shell extension removed successfully

21.02.2008 00:05:22 - avgnt.exe closed.

21.02.2008 00:05:22 - Status of service AntiVirScheduler is running

21.02.2008 00:05:23 - Service AntiVirScheduler successfully stopped

21.02.2008 00:05:23 - Status of service AntiVirService is running

21.02.2008 00:05:24 - Service AntiVirService successfully stopped

21.02.2008 00:05:24 - Starting to install
21.02.2008 00:05:24 - Processing module SELFUPDATE Source: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
21.02.2008 00:05:25 - Current Direcory:C:\Program Files\Avira\AntiVir PersonalEdition Classic, About to execute C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\SelfUpdateTemp\update.exe --log-template="${DAY}.${MONTH}.${YEAR} ${HOUR}:${MINUTE}:${SECOND} - ${MSG}".Self Update helper
21.02.2008 00:05:26 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
21.02.2008 00:05:26 - Backup Directory: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\BACKUP\
21.02.2008 00:05:26 - Temp Directory: C:\Windows\TEMP\Update_Temp\
21.02.2008 00:05:26 - Avira AntiVir PersonalEdition Classic

21.02.2008 00:05:26 - Self update: Copying file C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt/updlib.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlib.dll
21.02.2008 00:05:26 - Executing original update application
21.02.2008 00:05:26 - Current Direcory:C:\Program Files\Avira\AntiVir PersonalEdition Classic, About to execute C:\Program Files\Avira\AntiVir PersonalEdition Classic\update.exe --config-file="C:\ProgramData\Avira\AntiVir PersonalEdition Classic\update.conf" --install-path="C:\Program Files\Avira\AntiVir PersonalEdition Classic" --log-template="${DAY}.${MONTH}.${YEAR} ${HOUR}:${MINUTE}:${SECOND} - ${MSG}" --NoSelfUpdate "--TmpDir=C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4" "--LogFile=C:\ProgramData\Avira\AntiVir PersonalEdition Classic\LOGFILES\Upd-2008-02-21-00-03-16.log" "--TmpFilesList=C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\ToRemove.txt".Executing original update application
21.02.2008 00:05:26 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
21.02.2008 00:05:26 - Backup Directory: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\BACKUP\
21.02.2008 00:05:26 - Temp Directory: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\
21.02.2008 00:05:27 - Start the Update GUI... Displaymode: 0

21.02.2008 00:05:27 - Avira AntiVir PersonalEdition Classic

21.02.2008 00:05:27 - Master IDX file has changed
21.02.2008 00:05:27 - File basic-nt/2k/avgntflt.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/avgio64.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/imp64b.exe's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/psapi.dll's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/shlext64.dll's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/vista64/avgntflt.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/xp64/avgntflt.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/2k/avgntdd.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/2k/avgntmgr.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/nt/avgntdd.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/nt/avgntmgr.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/vista64/avgntflt.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - Downloading the product.info file from http://dl5.avgate.net/upd/idx/vdf.info.gz
21.02.2008 00:05:27 - Downloading the product.info file from http://dl5.avgate.net/upd/idx/specvir-nt.info.gz
21.02.2008 00:05:27 - Downloading the product.info file from http://dl5.avgate.net/upd/idx/engine.info.gz
21.02.2008 00:05:27 - Downloading the product.info file from http://dl5.avgate.net/upd/idx/engine-nt-en.info.gz
21.02.2008 00:05:27 - Module: SELFUPDATE Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 15
21.02.2008 00:05:27 - Module: MAIN Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 77
21.02.2008 00:05:28 - Module: COMMAPPDATA Source: winwks\en\ Destination: C:\ProgramData\ Files: 1
21.02.2008 00:05:28 - Module: TEXT Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 3
21.02.2008 00:05:28 - Module: VDF Source: vdf\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 4
21.02.2008 00:05:28 - Module: AVREP_NT Source: engine\nt\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
21.02.2008 00:05:28 - Module: ENGINE Source: engine\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 2
21.02.2008 00:05:28 - Module: ENGINE_NT_EN Source: engine\nt\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
21.02.2008 00:05:28 - Module: DRV Source: winwks\en\ Destination: C:\Windows\SYSTEM32\drivers\ Files: 4
21.02.2008 00:05:28 - Minifilter is installed

21.02.2008 00:05:28 - Minifilter is possible

21.02.2008 00:05:28 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | FilterType

21.02.2008 00:05:28 - File basic-nt/xp/avgntdd.sys which was recognized as modified, must not be updated
21.02.2008 00:05:28 - File basic-nt/xp/avgntmgr.sys which was recognized as modified, must not be updated
21.02.2008 00:05:28 - Preparing to download files
21.02.2008 00:05:28 - 12 files need to be downloaded / copied from http://dl5.avgate.net/upd/
21.02.2008 00:05:28 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt\avcenter.exe.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:29 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt\avgnt.exe.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:29 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt\avguard.exe.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:29 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt\ccguard.dll.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:29 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt\preupd.exe.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:29 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt\addr_file.html.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:30 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\vdf\antivir1.vdf.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:31 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\vdf\antivir2.vdf.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:31 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\vdf\antivir3.vdf.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:31 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\engine\avewin32.dll.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:32 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\engine\nt\avpack32.dll.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:32 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt\avipbb.sys.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:32 - Starting to install
21.02.2008 00:05:32 - Processing module MAIN Source: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
21.02.2008 00:05:32 - File C:\ProgramData\addr_file.html will not be backed up because it doesn't exist
21.02.2008 00:05:32 - Processing module COMMAPPDATA Source: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\ Destination: C:\ProgramData\
21.02.2008 00:05:32 - Processing module VDF Source: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\vdf\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
21.02.2008 00:05:32 - Processing module ENGINE Source: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\engine\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
21.02.2008 00:05:32 - Processing module ENGINE_NT_EN Source: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\engine\nt\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
21.02.2008 00:05:32 - Processing module DRV Source: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\ Destination: C:\Windows\SYSTEM32\drivers\
21.02.2008 00:05:32 - A total of 12 files were updated
21.02.2008 00:05:32 - Registry entry created successfully: Software\Avira\AntiVir PersonalEdition Classic |UpdateInProgress

21.02.2008 00:05:32 - Service AVEService is not installed

21.02.2008 00:05:32 - Service AntiVirMailService is not installed

21.02.2008 00:05:32 - Initialize fwinst.exe

21.02.2008 00:05:32 - Initialize fwinst.exe

21.02.2008 00:05:32 - Service AntiVirFirewallService is not installed

21.02.2008 00:05:32 - Service antivirwebservice is not installed

21.02.2008 00:05:32 - Status of service AntiVirService is stopped

21.02.2008 00:05:32 - Initialize avgnt.exe

21.02.2008 00:05:32 - Status of service AntiVirScheduler is stopped

21.02.2008 00:05:32 - Minifilter is installed

21.02.2008 00:05:32 - Minifilter is possible

21.02.2008 00:05:32 - Initialize avscan.exe

21.02.2008 00:05:32 - Initialize avconfig.cpl

21.02.2008 00:05:32 - Initialize avcenter.exe

21.02.2008 00:05:32 - shell extension is installed

21.02.2008 00:05:32 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | RootkitsInstalled

21.02.2008 00:05:32 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | RootkitsInstalled

21.02.2008 00:05:37 - Service AntiVirService successfully started

21.02.2008 00:05:38 - Starting avgnt.exe successful

21.02.2008 00:05:41 - Service AntiVirScheduler successfully started

21.02.2008 00:05:41 - shell extension is installed

21.02.2008 00:05:41 - Initialize regsvr32.exe

21.02.2008 00:05:41 - installation of shell extension successful

21.02.2008 00:05:41 - Cannot start the service antivirwebservice

21.02.2008 00:05:41 - Dialup: 0

21.02.2008 00:05:41 - Downloaded bytes: 7550798

21.02.2008 00:05:41 - Downloaded file(s): 13

21.02.2008 00:05:41 - Downloaded file(s): updlib.dll; avcenter.exe; avgnt.exe; avguard.exe; ccguard.dll; preupd.exe; addr_file.html; antivir1.vdf; antivir2.vdf; antivir3.vdf; avewin32.dll; avpack32.dll; avipbb.sys

21.02.2008 00:05:41 - Engine version local : 7.6.0.15

21.02.2008 00:05:41 - Engine version internet: 7.6.0.67

21.02.2008 00:05:41 - 0. VDF version local : 6.40.0.0

21.02.2008 00:05:41 - 0. VDF version internet: 6.40.0.0

21.02.2008 00:05:41 - 1. VDF version local : 7.0.0.0

21.02.2008 00:05:41 - 1. VDF version internet: 7.0.1.95

21.02.2008 00:05:41 - 2. VDF version local : 7.0.0.1

21.02.2008 00:05:41 - 2. VDF version internet: 7.0.2.113

21.02.2008 00:05:41 - 3. VDF version local : 7.0.0.2

21.02.2008 00:05:41 - 3. VDF version internet: 7.0.2.169

21.02.2008 00:05:41 - Required time: 00:14

21.02.2008 00:05:41 - Registry entry created successfully: Software\Avira\AntiVir PersonalEdition Classic |LastUpdate

21.02.2008 00:05:42 - Update finished successfully
0
21.02.2008 00:03:16 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
21.02.2008 00:03:16 - Backup Directory: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\BACKUP\
21.02.2008 00:03:16 - Temp Directory: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\
21.02.2008 00:03:17 - Start the Update GUI... Displaymode: 0

21.02.2008 00:03:16 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
21.02.2008 00:03:16 - Backup Directory: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\BACKUP\
21.02.2008 00:03:16 - Temp Directory: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\
21.02.2008 00:03:17 - Start the Update GUI... Displaymode: 0

21.02.2008 00:03:19 - Keyfile: OK [FULL Mode]

21.02.2008 00:03:19 - Avira AntiVir PersonalEdition Classic

21.02.2008 00:03:20 - Master IDX file has changed
21.02.2008 00:03:25 - Keyfile: OK [FULL Mode]

21.02.2008 00:03:25 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/classic-nt-en.info.gz
21.02.2008 00:03:26 - File basic-nt/2k/avgntflt.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/avgio64.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/imp64b.exe's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/psapi.dll's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/shlext64.dll's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/vista64/avgntflt.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/xp64/avgntflt.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/2k/avgntdd.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/2k/avgntmgr.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/nt/avgntdd.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/nt/avgntmgr.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - File basic-nt/vista64/avgntflt.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:03:26 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/vdf.info.gz
21.02.2008 00:03:29 - Keyfile: OK [FULL Mode]

21.02.2008 00:03:29 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/specvir-nt.info.gz
21.02.2008 00:03:29 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/engine.info.gz
21.02.2008 00:03:30 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/engine-nt-en.info.gz
21.02.2008 00:03:31 - Module: SELFUPDATE Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 15
21.02.2008 00:03:31 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlib.dll 1.2.10.20 < 1.2.10.21
21.02.2008 00:03:31 - Module: MAIN Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 77
21.02.2008 00:03:31 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe 7.2.0.12 < 7.2.0.14
21.02.2008 00:03:31 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe 7.2.0.13 < 7.2.0.16
21.02.2008 00:03:31 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe 7.0.0.81 < 7.0.0.82
21.02.2008 00:03:31 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccguard.dll 7.0.1.34 < 7.0.1.35
21.02.2008 00:03:31 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\preupd.exe 7.0.0.34 < 7.0.0.36
21.02.2008 00:03:32 - Module: COMMAPPDATA Source: winwks\en\ Destination: C:\ProgramData\ Files: 1
21.02.2008 00:03:32 - Module: TEXT Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 3
21.02.2008 00:03:32 - Module: VDF Source: vdf\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 4
21.02.2008 00:03:32 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir1.vdf 7.0.0.0 < 7.0.1.95
21.02.2008 00:03:32 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir2.vdf 7.0.0.1 < 7.0.2.113
21.02.2008 00:03:32 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir3.vdf 7.0.0.2 < 7.0.2.169
21.02.2008 00:03:32 - Module: AVREP_NT Source: engine\nt\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
21.02.2008 00:03:32 - Module: ENGINE Source: engine\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 2
21.02.2008 00:03:32 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avewin32.dll 7.6.0.15 < 7.6.0.67
21.02.2008 00:03:32 - Module: ENGINE_NT_EN Source: engine\nt\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
21.02.2008 00:03:32 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avpack32.dll 7.3.0.15 < 7.6.0.3
21.02.2008 00:03:32 - Module: DRV Source: winwks\en\ Destination: C:\Windows\SYSTEM32\drivers\ Files: 4
21.02.2008 00:03:32 - C:\Windows\SYSTEM32\drivers\avipbb.sys 1.0.2.11 < 1.0.2.13
21.02.2008 00:03:32 - Minifilter is installed

21.02.2008 00:03:32 - Minifilter is possible

21.02.2008 00:03:32 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | FilterType

21.02.2008 00:03:32 - File basic-nt/xp/avgntdd.sys which was recognized as modified, must not be updated
21.02.2008 00:03:32 - File basic-nt/xp/avgntmgr.sys which was recognized as modified, must not be updated
21.02.2008 00:03:32 - Initialize avnotify.exe

21.02.2008 00:03:32 - Starting avnotify.exe successful

21.02.2008 00:03:32 - Preparing to download files
21.02.2008 00:03:32 - 13 files need to be downloaded / copied from http://dl8.freeav.net/upd/
21.02.2008 00:03:32 - #1: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/updlib.dll.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt/updlib.dll
21.02.2008 00:03:35 - #2: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/avcenter.exe.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt/avcenter.exe
21.02.2008 00:03:38 - #3: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/avgnt.exe.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt/avgnt.exe
21.02.2008 00:03:40 - #4: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/avguard.exe.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt/avguard.exe
21.02.2008 00:03:42 - #5: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/ccguard.dll.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt/ccguard.dll
21.02.2008 00:03:44 - #6: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/preupd.exe.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt/preupd.exe
21.02.2008 00:03:45 - #7: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/addr_file.html.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt/addr_file.html
21.02.2008 00:03:46 - #8: Downloading and extracting http://dl8.freeav.net/upd/vdf/antivir1.vdf.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\vdf\antivir1.vdf
21.02.2008 00:04:34 - #9: Downloading and extracting http://dl8.freeav.net/upd/vdf/antivir2.vdf.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\vdf\antivir2.vdf
21.02.2008 00:04:55 - #10: Downloading and extracting http://dl8.freeav.net/upd/vdf/antivir3.vdf.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\vdf\antivir3.vdf
21.02.2008 00:04:59 - #11: Downloading and extracting http://dl8.freeav.net/upd/engine/avewin32.dll.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\engine\avewin32.dll
21.02.2008 00:05:12 - #12: Downloading and extracting http://dl8.freeav.net/upd/engine/nt/avpack32.dll.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\engine\nt\avpack32.dll
21.02.2008 00:05:14 - #13: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/avipbb.sys.gz to C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt/avipbb.sys
21.02.2008 00:05:22 - Service AVEService is not installed

21.02.2008 00:05:22 - Service AntiVirMailService is not installed

21.02.2008 00:05:22 - Initialize fwinst.exe

21.02.2008 00:05:22 - Initialize fwinst.exe

21.02.2008 00:05:22 - Service AntiVirFirewallService is not installed

21.02.2008 00:05:22 - Service antivirwebservice is not installed

21.02.2008 00:05:22 - Status of service AntiVirService is running

21.02.2008 00:05:22 - Initialize avgnt.exe

21.02.2008 00:05:22 - Status of service AntiVirScheduler is running

21.02.2008 00:05:22 - Minifilter is installed

21.02.2008 00:05:22 - Minifilter is possible

21.02.2008 00:05:22 - Initialize avscan.exe

21.02.2008 00:05:22 - Initialize avconfig.cpl

21.02.2008 00:05:22 - Initialize avcenter.exe

21.02.2008 00:05:22 - shell extension is installed

21.02.2008 00:05:22 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | RootkitsInstalled

21.02.2008 00:05:22 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | RootkitsInstalled

21.02.2008 00:05:22 - Service AVEService is not installed

21.02.2008 00:05:22 - Service AntiVirMailService is not installed

21.02.2008 00:05:22 - Initialize fwinst.exe

21.02.2008 00:05:22 - Initialize fwinst.exe

21.02.2008 00:05:22 - Service AntiVirFirewallService is not installed

21.02.2008 00:05:22 - shell extension is installed

21.02.2008 00:05:22 - Initialize regsvr32.exe

21.02.2008 00:05:22 - shell extension removed successfully

21.02.2008 00:05:22 - avgnt.exe closed.

21.02.2008 00:05:22 - Status of service AntiVirScheduler is running

21.02.2008 00:05:23 - Service AntiVirScheduler successfully stopped

21.02.2008 00:05:23 - Status of service AntiVirService is running

21.02.2008 00:05:24 - Service AntiVirService successfully stopped

21.02.2008 00:05:24 - Starting to install
21.02.2008 00:05:24 - Processing module SELFUPDATE Source: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
21.02.2008 00:05:25 - Current Direcory:C:\Program Files\Avira\AntiVir PersonalEdition Classic, About to execute C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\SelfUpdateTemp\update.exe --log-template="${DAY}.${MONTH}.${YEAR} ${HOUR}:${MINUTE}:${SECOND} - ${MSG}".Self Update helper
21.02.2008 00:05:26 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
21.02.2008 00:05:26 - Backup Directory: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\BACKUP\
21.02.2008 00:05:26 - Temp Directory: C:\Windows\TEMP\Update_Temp\
21.02.2008 00:05:26 - Avira AntiVir PersonalEdition Classic

21.02.2008 00:05:26 - Self update: Copying file C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt/updlib.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlib.dll
21.02.2008 00:05:26 - Executing original update application
21.02.2008 00:05:26 - Current Direcory:C:\Program Files\Avira\AntiVir PersonalEdition Classic, About to execute C:\Program Files\Avira\AntiVir PersonalEdition Classic\update.exe --config-file="C:\ProgramData\Avira\AntiVir PersonalEdition Classic\update.conf" --install-path="C:\Program Files\Avira\AntiVir PersonalEdition Classic" --log-template="${DAY}.${MONTH}.${YEAR} ${HOUR}:${MINUTE}:${SECOND} - ${MSG}" --NoSelfUpdate "--TmpDir=C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4" "--LogFile=C:\ProgramData\Avira\AntiVir PersonalEdition Classic\LOGFILES\Upd-2008-02-21-00-03-16.log" "--TmpFilesList=C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\ToRemove.txt".Executing original update application
21.02.2008 00:05:26 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
21.02.2008 00:05:26 - Backup Directory: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\BACKUP\
21.02.2008 00:05:26 - Temp Directory: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\
21.02.2008 00:05:27 - Start the Update GUI... Displaymode: 0

21.02.2008 00:05:27 - Avira AntiVir PersonalEdition Classic

21.02.2008 00:05:27 - Master IDX file has changed
21.02.2008 00:05:27 - File basic-nt/2k/avgntflt.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/avgio64.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/imp64b.exe's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/psapi.dll's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/shlext64.dll's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/vista64/avgntflt.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/xp64/avgntflt.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/2k/avgntdd.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/2k/avgntmgr.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/nt/avgntdd.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/nt/avgntmgr.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - File basic-nt/vista64/avgntflt.sys's operating system doesn't match the current one. File ignored.
21.02.2008 00:05:27 - Downloading the product.info file from http://dl5.avgate.net/upd/idx/vdf.info.gz
21.02.2008 00:05:27 - Downloading the product.info file from http://dl5.avgate.net/upd/idx/specvir-nt.info.gz
21.02.2008 00:05:27 - Downloading the product.info file from http://dl5.avgate.net/upd/idx/engine.info.gz
21.02.2008 00:05:27 - Downloading the product.info file from http://dl5.avgate.net/upd/idx/engine-nt-en.info.gz
21.02.2008 00:05:27 - Module: SELFUPDATE Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 15
21.02.2008 00:05:27 - Module: MAIN Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 77
21.02.2008 00:05:28 - Module: COMMAPPDATA Source: winwks\en\ Destination: C:\ProgramData\ Files: 1
21.02.2008 00:05:28 - Module: TEXT Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 3
21.02.2008 00:05:28 - Module: VDF Source: vdf\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 4
21.02.2008 00:05:28 - Module: AVREP_NT Source: engine\nt\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
21.02.2008 00:05:28 - Module: ENGINE Source: engine\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 2
21.02.2008 00:05:28 - Module: ENGINE_NT_EN Source: engine\nt\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
21.02.2008 00:05:28 - Module: DRV Source: winwks\en\ Destination: C:\Windows\SYSTEM32\drivers\ Files: 4
21.02.2008 00:05:28 - Minifilter is installed

21.02.2008 00:05:28 - Minifilter is possible

21.02.2008 00:05:28 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | FilterType

21.02.2008 00:05:28 - File basic-nt/xp/avgntdd.sys which was recognized as modified, must not be updated
21.02.2008 00:05:28 - File basic-nt/xp/avgntmgr.sys which was recognized as modified, must not be updated
21.02.2008 00:05:28 - Preparing to download files
21.02.2008 00:05:28 - 12 files need to be downloaded / copied from http://dl5.avgate.net/upd/
21.02.2008 00:05:28 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt\avcenter.exe.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:29 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt\avgnt.exe.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:29 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt\avguard.exe.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:29 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt\ccguard.dll.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:29 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt\preupd.exe.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:29 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt\addr_file.html.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:30 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\vdf\antivir1.vdf.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:31 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\vdf\antivir2.vdf.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:31 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\vdf\antivir3.vdf.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:31 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\engine\avewin32.dll.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:32 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\engine\nt\avpack32.dll.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:32 - File C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\basic-nt\avipbb.sys.gz already exists in temporary folder and it will not be downloaded again
21.02.2008 00:05:32 - Starting to install
21.02.2008 00:05:32 - Processing module MAIN Source: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
21.02.2008 00:05:32 - File C:\ProgramData\addr_file.html will not be backed up because it doesn't exist
21.02.2008 00:05:32 - Processing module COMMAPPDATA Source: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\ Destination: C:\ProgramData\
21.02.2008 00:05:32 - Processing module VDF Source: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\vdf\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
21.02.2008 00:05:32 - Processing module ENGINE Source: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\engine\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
21.02.2008 00:05:32 - Processing module ENGINE_NT_EN Source: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\engine\nt\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
21.02.2008 00:05:32 - Processing module DRV Source: C:\ProgramData\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47bcb1b4\winwks\en\ Destination: C:\Windows\SYSTEM32\drivers\
21.02.2008 00:05:32 - A total of 12 files were updated
21.02.2008 00:05:32 - Registry entry created successfully: Software\Avira\AntiVir PersonalEdition Classic |UpdateInProgress

21.02.2008 00:05:32 - Service AVEService is not installed

21.02.2008 00:05:32 - Service AntiVirMailService is not installed

21.02.2008 00:05:32 - Initialize fwinst.exe

21.02.2008 00:05:32 - Initialize fwinst.exe

21.02.2008 00:05:32 - Service AntiVirFirewallService is not installed

21.02.2008 00:05:32 - Service antivirwebservice is not installed

21.02.2008 00:05:32 - Status of service AntiVirService is stopped

21.02.2008 00:05:32 - Initialize avgnt.exe

21.02.2008 00:05:32 - Status of service AntiVirScheduler is stopped

21.02.2008 00:05:32 - Minifilter is installed

21.02.2008 00:05:32 - Minifilter is possible

21.02.2008 00:05:32 - Initialize avscan.exe

21.02.2008 00:05:32 - Initialize avconfig.cpl

21.02.2008 00:05:32 - Initialize avcenter.exe

21.02.2008 00:05:32 - shell extension is installed

21.02.2008 00:05:32 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | RootkitsInstalled

21.02.2008 00:05:32 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | RootkitsInstalled

21.02.2008 00:05:37 - Service AntiVirService successfully started

21.02.2008 00:05:38 - Starting avgnt.exe successful

21.02.2008 00:05:41 - Service AntiVirScheduler successfully started

21.02.2008 00:05:41 - shell extension is installed

21.02.2008 00:05:41 - Initialize regsvr32.exe

21.02.2008 00:05:41 - installation of shell extension successful

21.02.2008 00:05:41 - Cannot start the service antivirwebservice

21.02.2008 00:05:41 - Dialup: 0

21.02.2008 00:05:41 - Downloaded bytes: 7550798

21.02.2008 00:05:41 - Downloaded file(s): 13

21.02.2008 00:05:41 - Downloaded file(s): updlib.dll; avcenter.exe; avgnt.exe; avguard.exe; ccguard.dll; preupd.exe; addr_file.html; antivir1.vdf; antivir2.vdf; antivir3.vdf; avewin32.dll; avpack32.dll; avipbb.sys

21.02.2008 00:05:41 - Engine version local : 7.6.0.15

21.02.2008 00:05:41 - Engine version internet: 7.6.0.67

21.02.2008 00:05:41 - 0. VDF version local : 6.40.0.0

21.02.2008 00:05:41 - 0. VDF version internet: 6.40.0.0

21.02.2008 00:05:41 - 1. VDF version local : 7.0.0.0

21.02.2008 00:05:41 - 1. VDF version internet: 7.0.1.95

21.02.2008 00:05:41 - 2. VDF version local : 7.0.0.1

21.02.2008 00:05:41 - 2. VDF version internet: 7.0.2.113

21.02.2008 00:05:41 - 3. VDF version local : 7.0.0.2

21.02.2008 00:05:41 - 3. VDF version internet: 7.0.2.169

21.02.2008 00:05:41 - Required time: 00:14

21.02.2008 00:05:41 - Registry entry created successfully: Software\Avira\AntiVir PersonalEdition Classic |LastUpdate

21.02.2008 00:05:42 - Update finished successfully
0
Saiyen75 Messages postés 2696 Date d'inscription jeudi 8 mars 2007 Statut Membre Dernière intervention 23 novembre 2014 184
21 févr. 2008 à 00:12
Ce que tu m'as envoyé, c'est la mise à jour d'Antivir.
Maintenant fait un scan et post le rapport comme je t'ai indiqué plus haut.
Suis bien les indications, dans le bon ordre. N'oulibe pas le Avira antirootkit.

Je vais me coucher, je regarderai les rapports demain,

bonne nuit

++
0
bonne nuit merci beaucoup de votre aide c'est trés gentille
0
AntiVir PersonalEdition Classic
Report file date: jeudi 21 février 2008 00:10

Scanning for 1118450 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows Vista
Windows version: (plain) [6.0.6000]
Username: SYSTEM
Computer name: PC-DE-RIADH

Version information:
BUILD.DAT : 270 15603 Bytes 19/09/2007 13:32:00
AVSCAN.EXE : 7.0.6.1 290856 Bytes 23/08/2007 13:16:29
AVSCAN.DLL : 7.0.6.0 49192 Bytes 16/08/2007 12:23:51
LUKE.DLL : 7.0.5.3 147496 Bytes 14/08/2007 15:32:47
LUKERES.DLL : 7.0.6.1 10280 Bytes 21/08/2007 12:35:20
ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 14:27:15
ANTIVIR1.VDF : 7.0.1.95 3367424 Bytes 14/12/2007 23:05:32
ANTIVIR2.VDF : 7.0.2.113 1673728 Bytes 08/02/2008 23:05:32
ANTIVIR3.VDF : 7.0.2.169 308736 Bytes 20/02/2008 23:05:32
AVEWIN32.DLL : 7.6.0.67 3293696 Bytes 20/02/2008 23:05:32
AVWINLL.DLL : 1.0.0.7 14376 Bytes 26/02/2007 10:36:26
AVPREF.DLL : 7.0.2.2 25640 Bytes 18/07/2007 07:39:17
AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 13:16:24
AVPACK32.DLL : 7.6.0.3 360488 Bytes 20/02/2008 23:05:32
AVREG.DLL : 7.0.1.6 30760 Bytes 18/07/2007 07:17:06
AVARKT.DLL : 1.0.0.20 278568 Bytes 28/08/2007 12:26:33
AVEVTLOG.DLL : 7.0.0.20 86056 Bytes 18/07/2007 07:10:18
NETNT.DLL : 7.0.0.0 7720 Bytes 08/03/2007 11:09:42
RCIMAGE.DLL : 7.0.1.30 2342952 Bytes 07/08/2007 12:38:13
RCTEXT.DLL : 7.0.62.0 86056 Bytes 21/08/2007 12:50:37
SQLITE3.DLL : 3.3.17.1 339968 Bytes 23/07/2007 09:37:21

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: off
Scan boot sector.................: on
Boot sectors.....................: D:,
Scan memory......................: on
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: jeudi 21 février 2008 00:10

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'notepad.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'VSSVC.exe' - '1' Module(s) have been scanned
Scan process 'iexplore.exe' - '1' Module(s) have been scanned
Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'usnsvc.exe' - '1' Module(s) have been scanned
Scan process 'conime.exe' - '1' Module(s) have been scanned
Scan process 'HPHC_Service.exe' - '1' Module(s) have been scanned
Scan process 'SteamService.exe' - '1' Module(s) have been scanned
Scan process 'unsecapp.exe' - '1' Module(s) have been scanned
Scan process 'HpqToaster.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'wmpnetwk.exe' - '1' Module(s) have been scanned
Scan process 'WmiPrvSE.exe' - '1' Module(s) have been scanned
Scan process 'taskeng.exe' - '1' Module(s) have been scanned
Scan process 'CLSched.exe' - '1' Module(s) have been scanned
Scan process 'hpqwmiex.exe' - '1' Module(s) have been scanned
Scan process 'SearchIndexer.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'LSSrvc.exe' - '1' Module(s) have been scanned
Scan process 'CLCapSvc.exe' - '1' Module(s) have been scanned
Scan process 'guard.exe' - '0' Module(s) have been scanned
Scan process 'rundll32.exe' - '1' Module(s) have been scanned
Scan process 'ehmsas.exe' - '1' Module(s) have been scanned
Scan process 'EDICT.EXE' - '1' Module(s) have been scanned
Scan process 'wmpnscfg.exe' - '1' Module(s) have been scanned
Scan process 'Skype.exe' - '1' Module(s) have been scanned
Scan process 'NMBgMonitor.exe' - '1' Module(s) have been scanned
Scan process 'Steam.exe' - '1' Module(s) have been scanned
Scan process 'ehtray.exe' - '1' Module(s) have been scanned
Scan process 'LightScribeControlPanel.exe' - '1' Module(s) have been scanned
Scan process 'sidebar.exe' - '1' Module(s) have been scanned
Scan process 'avgas.exe' - '1' Module(s) have been scanned
Scan process 'realsched.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'hpwuSchd2.exe' - '1' Module(s) have been scanned
Scan process 'WiFiMsg.exe' - '1' Module(s) have been scanned
Scan process 'HPWAMain.exe' - '1' Module(s) have been scanned
Scan process 'rundll32.exe' - '1' Module(s) have been scanned
Scan process 'QLBCTRL.exe' - '1' Module(s) have been scanned
Scan process 'QPService.exe' - '1' Module(s) have been scanned
Scan process 'SynTPEnh.exe' - '1' Module(s) have been scanned
Scan process 'MSASCui.exe' - '1' Module(s) have been scanned
Scan process 'dwm.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'taskeng.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'SLsvc.exe' - '1' Module(s) have been scanned
Scan process 'audiodg.exe' - '0' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'lsm.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'wininit.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
71 processes with 71 modules were scanned

Start scanning boot sectors:
Boot sector 'C:\'
[NOTE] No virus was found!
Boot sector 'D:\'
[NOTE] No virus was found!

Starting to scan the registry.
The registry was scanned ( '14' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
Begin scan in 'D:\' <HP_RECOVERY>


End of the scan: jeudi 21 février 2008 00:56
Used time: 46:03 min

The scan has been done completely.

14442 Scanning directories
310542 Files were scanned
0 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
0 files were moved to quarantine
0 files were renamed
1 Files cannot be scanned
310542 Files not concerned
2426 Archives were scanned
1 Warnings
12 Notes
0
Saiyen75 Messages postés 2696 Date d'inscription jeudi 8 mars 2007 Statut Membre Dernière intervention 23 novembre 2014 184
21 févr. 2008 à 08:41
Salut,

Y'a pas de problème pour l'aide :)
Trés bien, à présent j'attend le rapport Avira Antirootkit.

++
0
bonjour saiyen merci pour ton aide normalement maintenant les ne s'ouvreent pas j'ai éssayé plusier fois(j'espere) mais avant de t'ecrire ce message une page bleu apparait c'etait marqué le systeme a un prob et d'un coup il c'est redemarré tout seul j'ai remarqué que le pc est devenu trop lent il resté 5min au demarrage repond moi stp dit moi pourquoi
et pour le rapport avira je te l'ai envoyé ce matin si c pas ça dit moi quoi faire merci
0