Probleme recurent clignotant a cote de l horl

Résolu/Fermé
dabeul Messages postés 228 Date d'inscription mardi 9 octobre 2007 Statut Membre Dernière intervention 10 décembre 2016 - 7 juin 2008 à 00:29
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 - 11 juin 2008 à 19:31
Bonjour a tout les ccmistes, j ai un soucis depuis ces derniers temps , j ai une icône dans la barre de tache cote horloge
( point d interrogation qui clignote bleu tanto et tanto une croix rouge ) j ai l impression que sa n appartient pas a windows et que ces qlqes chose d espion , peut on m aider a résoudre cette chose ,cordialement.

33 réponses

dabeul Messages postés 228 Date d'inscription mardi 9 octobre 2007 Statut Membre Dernière intervention 10 décembre 2016
8 juin 2008 à 11:59
voici le premier rapport hidjaki pour siuvre:



Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:01:04, on 08/06/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\system32\pctspk.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\PAStiSvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\Program Files\OLITEC\Moniteur WiFi OLITEC\Moniteur WiFi OLITEC.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://auto.search.msn.com/response.asp?MT=alice+fa11&srch=0&prov=gogl&utf8
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {BE89472C-B803-4D1D-9A9A-0A63660E0FE3} - (no file)
R3 - URLSearchHook: (no name) - {309C1368-1FED-4b82-BF9C-685F79A0005F} - (no file)
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
R3 - URLSearchHook: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Ript - {91D9091B-2046-42f7-903E-1215A29E21EA} - C:\Program Files\Ript\mscoree.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
O3 - Toolbar: (no name) - {0D045BAA-4BD3-4C94-BE8B-21536BD6BD9F} - (no file)
O3 - Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - (no file)
O4 - HKLM\..\Run: [AliceSAV] C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [LSAnniversaire] C:\Program Files\LSAnniversaire\LSAnniversaire.exe A
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [SRUUninstall] "C:\WINDOWS\System32\msiexec.exe" /x {6AF90EF6-F7F9-466C-99F4-1774826FBB40} /qn REBOOT=ReallySuppress (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [SRUUninstall] "C:\WINDOWS\System32\msiexec.exe" /x {6AF90EF6-F7F9-466C-99F4-1774826FBB40} /qn REBOOT=ReallySuppress (User 'Default user')
O4 - Global Startup: Moniteur WiFi OLITEC.exe.lnk = C:\Program Files\OLITEC\Moniteur WiFi OLITEC\Moniteur WiFi OLITEC.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Créer un Favori de l'appareil mobile - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: Translate - {87680762-4A83-11B4-885B-0000E8ECA40F} - C:\Program Files\LingoCom\Translator.lnk
O9 - Extra 'Tools' menuitem: LingoWare Translator... - {87680762-4A83-11B4-885B-0000E8ECA40F} - C:\Program Files\LingoCom\Translator.lnk
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\LAURENTM\Menu Démarrer\Programmes\IMVU\Run IMVU.lnk (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Alice ADSL - {9A571B86-0B63-45BE-9297-600861D5F3FA} - https://portail.free.fr/ (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://portail.free.fr/
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2357B3CF-7F8D-4451-8D81-FD6097610AEE} (CamfrogWEB Advanced Unicode Control) - http://activex.camfrogweb.com/advanced/2.0.2.3/cfweb_activex.camfrogweb.com-advanced-2.0.2.3_instmodule.exe
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://doublejohn1963.spaces.live.com/PhotoUpload/MsnPUpld.cab
O16 - DPF: {B49C4597-8721-4789-9250-315DFBD9F525} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/radio/ampx/ampx2.6.1.11_fr_dl.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe
O23 - Service: STI Simulator - Unknown owner - C:\WINDOWS\System32\PAStiSvc.exe
0
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
8 juin 2008 à 12:08
salut dabeul,

malwarebytes a bien fais le menage ;-)

A l´aide de hijack this coche et fix les lignes suivantes :

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R3 - URLSearchHook: (no name) - {BE89472C-B803-4D1D-9A9A-0A63660E0FE3} - (no file)
R3 - URLSearchHook: (no name) - {309C1368-1FED-4b82-BF9C-685F79A0005F} - (no file)
R3 - URLSearchHook: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - (no file)
O3 - Toolbar: (no name) - {0D045BAA-4BD3-4C94-BE8B-21536BD6BD9F} - (no file)
O3 - Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - (no file)
O4 - HKUS\S-1-5-18\..\RunOnce: [SRUUninstall] "C:\WINDOWS\System32\msiexec.exe" /x {6AF90EF6-F7F9-466C-99F4-1774826FBB40} /qn REBOOT=ReallySuppress (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SRUUninstall] "C:\WINDOWS\System32\msiexec.exe" /x {6AF90EF6-F7F9-466C-99F4-1774826FBB40} /qn REBOOT=ReallySuppress (User 'Default user')
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\LAURENTM\Menu Démarrer\Programmes\IMVU\Run IMVU.lnk (file missing)

comment fixer :

Tutoriel d´utilisation (video) : (Merci a Balltrap34 pour cette réalisation)

-> http://perso.orange.fr/rginformatique/section%20virus/demohijack.htm

puis

regarde ceci concernant avast :

antivir vs avast :

-> http://forum.malekal.com/ftopic3528.php

alors je te conseille de le desinstaller et d´installer antivir a la place

Telecharge et instales l'antivirus Antivir Personal Edition Classic :

->https://www.malekal.com/avira-free-security-antivirus-gratuit/

https://www.avira.com/en/prime

http://mickael.barroux.free.fr/securite/antivir.php
http://speedweb1.free.fr/frames2.php?page=tuto5
<- tutoriel configuration du scanner...

une fois antivir ouvert click surconfiguration et coche la case "expert mode" puis sur l´onglet scanner dans la fenetre du dessous tu va voir : rootkit search click sur le petit + pour deployer et coche la case a coté de ton disk dur
ceux qui ne voie pas root kit search : clcik sur le parapluie dans ta barre des tache > dans la fenetre d´antivir click sur local protection click en suite sur scanner
dans la fenetre de droite : tu a rootkit search vers le bas > tu developpe en appuyant sur le petit +
et coche tes disques...
puis click sur configuration en haut a droite; dans la nouvelle fenetre a gauche >scanner > coche "scan all files" et en dessous >scanner priority = High
coche : allow stopping the scanner, comme cela tu peux faire une pause pendant le scan si tu le desir.
puis sur la droite coche les case suivantes :
scan boot sectors of selected drives
scan master boot sectors
scan memory
search foe rootkit before scan
decoche :
ignore off line files
toujours a gauche > scan > deploie > heuristique > macrovirus heuristic = coché et en dessous > win32 heuristic la case coché et high detection level

Je te dis tous ca car j´aimerais que tu performes un scan entier de ta machine a l´aide d´antivir avec les reglages stipulés ci dessus et que tu post le rapport généré ici stp

ps : fais le scan en mode sans echec :

Comment redémarrer en mode sans echec?

Tu redemarre le pc et tapote la touche F8 des le début de l allumage sans t´arrêter.
Une fenêtre sur fond noir va s’ouvrir, tu te déplaces avec les flèches du clavier sur démarrer en mode sans échec puis tape entrée.
Une fois sur le bureau si il n y a pas toutes les couleurs et autres c´est normal!
Ps : si F8 ne marche pas utilise la touche F5.

@+
0
dabeul Messages postés 228 Date d'inscription mardi 9 octobre 2007 Statut Membre Dernière intervention 10 décembre 2016
8 juin 2008 à 12:59
--
ON A TOUS EN NOUS QUELQUES CHOSE DE TENNESSE.....Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:01:14, on 08/06/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\system32\pctspk.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\PAStiSvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\Program Files\OLITEC\Moniteur WiFi OLITEC\Moniteur WiFi OLITEC.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://auto.search.msn.com/response.asp?MT=alice+fa11&srch=0&prov=gogl&utf8
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Ript - {91D9091B-2046-42f7-903E-1215A29E21EA} - C:\Program Files\Ript\mscoree.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
O4 - HKLM\..\Run: [AliceSAV] C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [LSAnniversaire] C:\Program Files\LSAnniversaire\LSAnniversaire.exe A
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')
O4 - Global Startup: Moniteur WiFi OLITEC.exe.lnk = C:\Program Files\OLITEC\Moniteur WiFi OLITEC\Moniteur WiFi OLITEC.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Créer un Favori de l'appareil mobile - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: Translate - {87680762-4A83-11B4-885B-0000E8ECA40F} - C:\Program Files\LingoCom\Translator.lnk
O9 - Extra 'Tools' menuitem: LingoWare Translator... - {87680762-4A83-11B4-885B-0000E8ECA40F} - C:\Program Files\LingoCom\Translator.lnk
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Alice ADSL - {9A571B86-0B63-45BE-9297-600861D5F3FA} - https://portail.free.fr/ (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://portail.free.fr/
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2357B3CF-7F8D-4451-8D81-FD6097610AEE} (CamfrogWEB Advanced Unicode Control) - http://activex.camfrogweb.com/advanced/2.0.2.3/cfweb_activex.camfrogweb.com-advanced-2.0.2.3_instmodule.exe
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://doublejohn1963.spaces.live.com/PhotoUpload/MsnPUpld.cab
O16 - DPF: {B49C4597-8721-4789-9250-315DFBD9F525} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/radio/ampx/ampx2.6.1.11_fr_dl.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe
O23 - Service: STI Simulator - Unknown owner - C:\WINDOWS\System32\PAStiSvc.exe
0
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
8 juin 2008 à 13:42
tennesee ;-)
je peux voir le scan d´antivir ?
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
dabeul Messages postés 228 Date d'inscription mardi 9 octobre 2007 Statut Membre Dernière intervention 10 décembre 2016
8 juin 2008 à 17:41
--
ON A TOUS EN NOUS QUELQUES CHOSE DE TENNESSE...Avira AntiVir Personal- Free AntiVirus
*************************************

Copyright © 2008 Avira GmbH.
All rights reserved.


Inhalt
******

0 Important information
1 System requirements
2 Important requirements for an installation
3 Support service
4 Contact address


0 Important information
***********************

Users who have up to now installed an ANSI version of the Avira
AntiVir Personal software pack on a Microsoft Windows NT, Microsoft
Windows 2000 or Microsoft Windows XP operating system, receive
update information when attempting to update.

When updating, please proceed as follows:

1. Deinstall the installed version of the Avira AntiVir
Personal.
2. Download a current software pack from the downoad section of the
Avira AntiVir Personal website
https://www.avira.com/
3. Install this software pack on your computer.

1 System requirements
*********************

In order for Avira AntiVir Personal to run properly, the computer
system must fulfill the following requirements:

- Computer: Pentium or higher, at least 133 MHz

- Operating system
- Microsoft Windows Vista (32 or 64 bit) or
- Microsoft Windows XP Home or Professional (32 or 64 bit), SP 2 recommended or
- Microsoft Windows 2000, SP 4 recommended

The display of the program interfaces can differ, depending on the
operating system used.

- 30 MB free memory on the hard disk (more if quarantine is used)

- Min. 100 MB temporary memory on the hard disk

- Min. 192 MB RAM (Windows XP or Professional)

- Min. 512 MB RAM (Windows Vista)

- For the installation of Avira AntiVir Personal:
administrator rights



2 Important requirements for an installation
********************************************

Ensure that the following requirements are fulfilled so that Avira
AntiVir Personal works properly on your computer:

- System requirements fulfilled
- No other on-access scanner (also called Guard) installed
- Installer has administrator rights
- Internet/Intranet connection available
- All running programs on the computer exited


3 Support service
*****************

If you have problems please try first to solve them using the
integrated help system and the user manual (Download at:
http://www.free-av.com). For harder problem, please feel free to
post a message to our bulletin board at https://support.avira.com/hc/de/community/topics or
to call our Support-Hotline.

Please also feel free to post bug reports, hints, feature requests
and anything else related to the Avira AntiVir Personal to this
Bulletin Board.

Please note that technical inquiries can only be anserwered via our
Support-Forum or our Support-Hotline.


Support-Forum
-------------

...our forum is available for you at any time!

The forum, which is subdivided into clear categories offers you the
possibility to exchange yourself online with other users and our
employees of the customer support. An up-to-date, electronic
bulletin board that is coordinated by our moderators is available.
Our experience multiplies with the experience from the users of
AntiVir all over the world. Have a look on it without any
obligation...

https://support.avira.com/hc/de/community/topics


Support-Hotline
---------------

Germany: 0900 10 11 333 (1,99 Euro/Min* for calls from the local
network)

Austria: 0900 51 03 61 121 (2,16 Euro/Min* for calls from the local
network)

Switzerland: 0900 51 03 61 (4,23 CHF/Min* for calls from the local
network)

* Prices are subject to change.

Mo - Fr between 10 a.m. and 7 p.m.


4 Contact
*********

Avira GmbH
Lindauer Str. 21
D-88069 Tettnang
Germany

Internet: https://www.avira.com/
..
0
dabeul Messages postés 228 Date d'inscription mardi 9 octobre 2007 Statut Membre Dernière intervention 10 décembre 2016
9 juin 2008 à 13:07
--
ON A TOUS EN NOUS QUELQUES CHOSE DE TENNESSE..... voici j espere que c est ca car c est pas simple et dans tout les cas je te remercie g!rly pour tous , je pense que le nettoyage a ete fait en grande partie.cordialement.


09.06.2008 13:02:05 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
09.06.2008 13:02:05 - Backup Directory: C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\
09.06.2008 13:02:05 - Temp Directory: C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\
09.06.2008 13:02:05 - Using System's global Proxy settings
09.06.2008 13:02:05 - Start the Update GUI... Displaymode: 0
09.06.2008 13:02:05 - selftest successful: C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlib.dll
09.06.2008 13:02:06 - selftest successful: C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlibrc.dll
09.06.2008 13:02:05 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
09.06.2008 13:02:05 - Backup Directory: C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\
09.06.2008 13:02:05 - Temp Directory: C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\
09.06.2008 13:02:05 - Using System's global Proxy settings
09.06.2008 13:02:05 - Start the Update GUI... Displaymode: 0
09.06.2008 13:02:05 - selftest successful: C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlib.dll
09.06.2008 13:02:06 - selftest successful: C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlibrc.dll
09.06.2008 13:02:09 - Avira AntiVir Personal – Free Antivirus
09.06.2008 13:02:20 - Copy file C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\idx/master.idx to C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\IDX\master.idx
09.06.2008 13:02:20 - Master IDX file has changed
09.06.2008 13:02:53 - Keyfile: OK [FULL Mode]
09.06.2008 13:02:55 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/vdf.info.gz
09.06.2008 13:02:58 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/specvir-nt.info.gz
09.06.2008 13:02:59 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/ave2.info.gz
09.06.2008 13:02:59 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/info-wks-classic-nt-en.info.gz
09.06.2008 13:03:01 - Module: SELFUPDATE Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 15
09.06.2008 13:03:05 - antivir.oem c08abeaabfe76ca6b5ae14a772d50c04 != e09b3c5d301930a8c93e7cda4bf5df14
09.06.2008 13:03:06 - Module: MAIN Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 78
09.06.2008 13:03:08 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.dll 8.0.0.4 < 8.0.1.3
09.06.2008 13:03:08 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe 8.0.1.15 < 8.0.1.18
09.06.2008 13:03:10 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avwsc.exe 8.0.0.9 < 8.0.0.12
09.06.2008 13:03:19 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\setup.exe 8.0.0.11 < 8.0.0.17
09.06.2008 13:03:21 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\wksstats.dll 8.0.0.4 < 8.0.0.5
09.06.2008 13:03:21 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys 7.0.1.8 < 7.0.2.6
09.06.2008 13:03:22 - build.dat 3440f5072f109b314342daf5ce6de635 != 7dc891d8430a7b4d921e5879a9182cea
09.06.2008 13:03:23 - Module: TEXT Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 3
09.06.2008 13:03:24 - Module: ANTISPAM_BETA02 Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
09.06.2008 13:03:24 - antivir.oem c08abeaabfe76ca6b5ae14a772d50c04 != e09b3c5d301930a8c93e7cda4bf5df14
09.06.2008 13:03:24 - Module: VDF Source: vdf\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 4
09.06.2008 13:03:24 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir2.vdf 7.0.3.62 < 7.0.4.120
09.06.2008 13:03:24 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir3.vdf 7.0.3.68 < 7.0.4.162
09.06.2008 13:03:24 - Module: AVREP_NT Source: engine\nt\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
09.06.2008 13:03:25 - Module: AVE2 Source: ave2\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 13
09.06.2008 13:03:25 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aecore.dll 8.1.0.25 < 8.1.0.31
09.06.2008 13:03:25 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeemu.dll 8.1.0.5 < 8.1.0.6
09.06.2008 13:03:25 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aegen.dll 8.1.0.15 < 8.1.0.28
09.06.2008 13:03:25 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aehelp.dll 8.1.0.11 < 8.1.0.15
09.06.2008 13:03:25 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeheur.dll 8.1.0.15 < 8.1.0.30
09.06.2008 13:03:25 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeoffice.dll 8.1.0.15 < 8.1.0.18
09.06.2008 13:03:25 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aepack.dll 8.1.1.0 < 8.1.1.5
09.06.2008 13:03:26 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aerdl.dll 8.1.0.19 < 8.1.0.20
09.06.2008 13:03:26 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescn.dll 8.1.0.12 < 8.1.0.21
09.06.2008 13:03:26 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescript.dll 8.1.0.19 < 8.1.0.40
09.06.2008 13:03:26 - aeset.dat be93edc240f6b51f65a680428e041bfe != 07471f7c879687e545828abbaae70a1b
09.06.2008 13:03:26 - Module: DRV Source: winwks\en\ Destination: C:\WINDOWS\SYSTEM32\drivers\ Files: 4
09.06.2008 13:03:27 - Module: PRODINFO Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
09.06.2008 13:03:27 - Minifilter is installed
09.06.2008 13:03:27 - Minifilter is possible
09.06.2008 13:03:27 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | FilterType
09.06.2008 13:03:31 - File classic-nt/antivir.oem which was recognized as modified, must not be updated
09.06.2008 13:03:31 - File basic-nt/avgio.dll which was recognized as modified, must not be updated
09.06.2008 13:03:31 - File basic-nt/avguard.exe which was recognized as modified, must not be updated
09.06.2008 13:03:31 - File basic-nt/avwsc.exe which was recognized as modified, must not be updated
09.06.2008 13:03:31 - File basic-nt/setup.exe which was recognized as modified, must not be updated
09.06.2008 13:03:31 - File basic-nt/wksstats.dll which was recognized as modified, must not be updated
09.06.2008 13:03:31 - File basic-nt/xp/avgntflt.sys which was recognized as modified, must not be updated
09.06.2008 13:03:31 - File classic-nt/build.dat which was recognized as modified, must not be updated
09.06.2008 13:03:31 - The Module SELFUPDATE which was recognized as modified, must not be updated
09.06.2008 13:03:31 - The Module MAIN which was recognized as modified, must not be updated
09.06.2008 13:03:31 - Initialize avnotify.exe
09.06.2008 13:03:33 - Starting avnotify.exe successful
09.06.2008 13:03:33 - Preparing to download files
09.06.2008 13:03:33 - 14 files need to be downloaded / copied from http://dl8.freeav.net/upd/
09.06.2008 13:03:33 - #1: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/classic-nt/antivir.oem.gz to C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\winwks\en\classic-nt/antivir.oem
09.06.2008 13:03:33 - #2: Downloading and extracting http://dl8.freeav.net/upd/vdf/antivir2.vdf.gz to C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\vdf\antivir2.vdf
09.06.2008 13:03:52 - #3: Downloading and extracting http://dl8.freeav.net/upd/vdf/antivir3.vdf.gz to C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\vdf\antivir3.vdf
09.06.2008 13:03:54 - #4: Downloading and extracting http://dl8.freeav.net/upd/ave2/aecore.dll.gz to C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aecore.dll
09.06.2008 13:04:03 - #5: Downloading and extracting http://dl8.freeav.net/upd/ave2/aeemu.dll.gz to C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aeemu.dll
09.06.2008 13:04:05 - #6: Downloading and extracting http://dl8.freeav.net/upd/ave2/aegen.dll.gz to C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aegen.dll
09.06.2008 13:04:08 - #7: Downloading and extracting http://dl8.freeav.net/upd/ave2/aehelp.dll.gz to C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aehelp.dll
09.06.2008 13:04:09 - #8: Downloading and extracting http://dl8.freeav.net/upd/ave2/aeheur.dll.gz to C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aeheur.dll
09.06.2008 13:04:14 - #9: Downloading and extracting http://dl8.freeav.net/upd/ave2/aeoffice.dll.gz to C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aeoffice.dll
09.06.2008 13:04:15 - #10: Downloading and extracting http://dl8.freeav.net/upd/ave2/aepack.dll.gz to C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aepack.dll
09.06.2008 13:04:18 - #11: Downloading and extracting http://dl8.freeav.net/upd/ave2/aerdl.dll.gz to C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aerdl.dll
09.06.2008 13:04:23 - #12: Downloading and extracting http://dl8.freeav.net/upd/ave2/aescn.dll.gz to C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aescn.dll
09.06.2008 13:04:24 - #13: Downloading and extracting http://dl8.freeav.net/upd/ave2/aescript.dll.gz to C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aescript.dll
09.06.2008 13:04:27 - #14: Downloading and extracting http://dl8.freeav.net/upd/ave2/aeset.dat.gz to C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aeset.dat
09.06.2008 13:05:31 - Status of service AntiVirService is running
09.06.2008 13:05:31 - Initialize avgnt.exe
09.06.2008 13:05:31 - Status of service AntiVirScheduler is running
09.06.2008 13:05:31 - Initialize avconfig.cpl
09.06.2008 13:05:32 - Initialize avcenter.exe
09.06.2008 13:05:32 - shell extension is installed
09.06.2008 13:05:32 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | RootkitsInstalled
09.06.2008 13:05:32 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | RootkitsInstalled
09.06.2008 13:05:33 - Minifilter is installed
09.06.2008 13:05:33 - Minifilter is possible
09.06.2008 13:05:33 - Initialize avscan.exe
09.06.2008 13:05:33 - shell extension is installed
09.06.2008 13:05:33 - Initialize regsvr32.exe
09.06.2008 13:05:40 - shell extension removed successfully
09.06.2008 13:05:45 - avgnt.exe closed.
09.06.2008 13:05:47 - avscan.exe closed.
09.06.2008 13:05:49 - Status of service AntiVirScheduler is running
09.06.2008 13:05:49 - Cannot stop the service AntiVirScheduler
09.06.2008 13:05:53 - Service AntiVirScheduler successfully stopped
09.06.2008 13:05:53 - Status of service AntiVirService is running
09.06.2008 13:05:53 - Cannot stop the service AntiVirService
09.06.2008 13:06:04 - Service AntiVirService successfully stopped
09.06.2008 13:06:04 - avconfig.cpl closed.
09.06.2008 13:06:04 - Starting to install
09.06.2008 13:06:04 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir.oem to C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\antivir.oem
09.06.2008 13:06:04 - Processing module ANTISPAM_BETA02 Source: C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
09.06.2008 13:06:04 - Copy file C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\winwks\en\classic-nt/antivir.oem to C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir.oem
09.06.2008 13:06:04 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir2.vdf to C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\antivir2.vdf
09.06.2008 13:06:04 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir3.vdf to C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\antivir3.vdf
09.06.2008 13:06:04 - Processing module VDF Source: C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\vdf\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
09.06.2008 13:06:04 - Copy file C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\vdf\antivir2.vdf to C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir2.vdf
09.06.2008 13:06:04 - Copy file C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\vdf\antivir3.vdf to C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir3.vdf
09.06.2008 13:06:04 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aecore.dll to C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aecore.dll
09.06.2008 13:06:04 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeemu.dll to C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aeemu.dll
09.06.2008 13:06:04 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aegen.dll to C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aegen.dll
09.06.2008 13:06:04 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aehelp.dll to C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aehelp.dll
09.06.2008 13:06:04 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeheur.dll to C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aeheur.dll
09.06.2008 13:06:04 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeoffice.dll to C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aeoffice.dll
09.06.2008 13:06:04 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aepack.dll to C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aepack.dll
09.06.2008 13:06:04 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aerdl.dll to C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aerdl.dll
09.06.2008 13:06:04 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescn.dll to C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aescn.dll
09.06.2008 13:06:04 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescript.dll to C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aescript.dll
09.06.2008 13:06:04 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeset.dat to C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aeset.dat
09.06.2008 13:06:04 - Processing module AVE2 Source: C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
09.06.2008 13:06:04 - Copy file C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aecore.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aecore.dll
09.06.2008 13:06:05 - Copy file C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aeemu.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeemu.dll
09.06.2008 13:06:05 - Copy file C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aegen.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aegen.dll
09.06.2008 13:06:05 - Copy file C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aehelp.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aehelp.dll
09.06.2008 13:06:05 - Copy file C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aeheur.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeheur.dll
09.06.2008 13:06:06 - Copy file C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aeoffice.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeoffice.dll
09.06.2008 13:06:06 - Copy file C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aepack.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aepack.dll
09.06.2008 13:06:06 - Copy file C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aerdl.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aerdl.dll
09.06.2008 13:06:06 - Copy file C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aescn.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescn.dll
09.06.2008 13:06:06 - Copy file C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aescript.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescript.dll
09.06.2008 13:06:07 - Copy file C:\Documents and Settings\LAURENTM\Mes documents\Mes images\TEMP\AVUPDATE_484d0da7\ave2\aeset.dat to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeset.dat
09.06.2008 13:06:07 - A total of 14 files were updated
09.06.2008 13:06:07 - Initialize AVWSC.EXE
09.06.2008 13:06:07 - Registry entry created successfully: Software\Avira\AntiVir PersonalEdition Classic |UpdateInProgress
09.06.2008 13:06:19 - Service AntiVirService successfully started
09.06.2008 13:06:20 - Starting avgnt.exe successful
09.06.2008 13:06:26 - Service AntiVirScheduler successfully started
09.06.2008 13:06:26 - shell extension is installed
09.06.2008 13:06:26 - Initialize regsvr32.exe
09.06.2008 13:06:29 - installation of shell extension successful
09.06.2008 13:06:29 - Dialup: 0
09.06.2008 13:06:29 - Downloaded bytes: 4516116
09.06.2008 13:06:29 - Downloaded file(s): 14
09.06.2008 13:06:29 - Downloaded file(s): antivir.oem; antivir2.vdf; antivir3.vdf; aecore.dll; aeemu.dll; aegen.dll; aehelp.dll; aeheur.dll; aeoffice.dll; aepack.dll; aerdl.dll; aescn.dll; aescript.dll; aeset.dat
09.06.2008 13:06:29 - Required time: 04:30
09.06.2008 13:06:29 - Registry entry created successfully: Software\Avira\AntiVir PersonalEdition Classic |LastUpdate
09.06.2008 13:06:46 - Update finished successfully
0
dabeul Messages postés 228 Date d'inscription mardi 9 octobre 2007 Statut Membre Dernière intervention 10 décembre 2016
9 juin 2008 à 13:11
--
ON A TOUS EN NOUS QUELQUES CHOSE DE TENNESSE..... autr question , peut tu me dire pourquoi quand je vais sur un site et, que sur ce site il y a des liens je l ai est en bleu tres transluside du fait je ne voie pas grand chose, peut ton changer c est couleur
0
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
9 juin 2008 à 19:23
salut dabeul,

non pas moyen de changer la couleur des liens...

le rapport de scan est ici : ouvre antivir > click sur l´onglet rapports > dans la liste tu recherche scan click dessus et l´envoie ici, car la les deux rapports que tu m´as envoyés ce n´est pas ca

@+
0
dabeul Messages postés 228 Date d'inscription mardi 9 octobre 2007 Statut Membre Dernière intervention 10 décembre 2016
10 juin 2008 à 01:06
--VOICI






Avira AntiVir Personal
Report file date: dimanche 8 juin 2008 23:17

Scanning for 1165085 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Boot mode: Normally booted
Username: SYSTEM
Computer name: HUEJEAN

Version information:
BUILD.DAT : 8.1.00.295 16479 Bytes 09/04/2008 16:24:00
AVSCAN.EXE : 8.1.2.12 311553 Bytes 18/03/2008 09:02:56
AVSCAN.DLL : 8.1.1.0 53505 Bytes 07/02/2008 08:43:37
LUKE.DLL : 8.1.2.9 151809 Bytes 28/02/2008 08:41:23
LUKERES.DLL : 8.1.2.1 12033 Bytes 21/02/2008 08:28:40
ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 10:33:34
ANTIVIR1.VDF : 7.0.3.2 5447168 Bytes 07/03/2008 13:08:58
ANTIVIR2.VDF : 7.0.3.62 337408 Bytes 21/03/2008 19:12:34
ANTIVIR3.VDF : 7.0.3.68 57856 Bytes 25/03/2008 08:27:50
Engineversion : 8.1.0.28
AEVDF.DLL : 8.1.0.5 102772 Bytes 25/02/2008 09:58:21
AESCRIPT.DLL : 8.1.0.19 229754 Bytes 07/04/2008 15:34:44
AESCN.DLL : 8.1.0.12 115060 Bytes 07/04/2008 15:34:44
AERDL.DLL : 8.1.0.19 418164 Bytes 07/04/2008 15:34:44
AEPACK.DLL : 8.1.1.0 364918 Bytes 18/03/2008 11:20:42
AEOFFICE.DLL : 8.1.0.15 192889 Bytes 07/04/2008 15:34:44
AEHEUR.DLL : 8.1.0.15 1147253 Bytes 07/04/2008 15:34:44
AEHELP.DLL : 8.1.0.11 115061 Bytes 07/04/2008 15:34:43
AEGEN.DLL : 8.1.0.15 299379 Bytes 07/04/2008 15:34:43
AEEMU.DLL : 8.1.0.5 430450 Bytes 07/04/2008 15:34:43
AECORE.DLL : 8.1.0.25 168309 Bytes 08/04/2008 09:58:32
AVWINLL.DLL : 1.0.0.7 14593 Bytes 23/01/2008 17:07:53
AVPREF.DLL : 8.0.0.1 25857 Bytes 18/02/2008 10:37:50
AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 13:26:47
AVREG.DLL : 8.0.0.0 30977 Bytes 23/01/2008 17:07:49
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23
AVEVTLOG.DLL : 8.0.0.11 114945 Bytes 28/02/2008 08:31:31
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
SMTPLIB.DLL : 1.2.0.19 28929 Bytes 23/01/2008 17:08:39
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10
RCIMAGE.DLL : 8.0.0.35 2371841 Bytes 10/03/2008 14:37:25
RCTEXT.DLL : 8.0.32.0 86273 Bytes 06/03/2008 12:02:11

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:,
Scan memory......................: on
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: on
Scan all files...................: All files
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: high

Start of the scan: dimanche 8 juin 2008 23:17

Starting search for hidden objects.
'57349' objects were checked, '0' hidden objects were found.

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'GoogleUpdater.exe' - '1' Module(s) have been scanned
Scan process 'Moniteur WiFi OLITEC.exe' - '1' Module(s) have been scanned
Scan process 'CALMAIN.exe' - '1' Module(s) have been scanned
Scan process 'wcescomm.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'issch.exe' - '1' Module(s) have been scanned
Scan process 'MsPMSPSv.exe' - '1' Module(s) have been scanned
Scan process 'AliceAgent.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'PAStiSvc.exe' - '1' Module(s) have been scanned
Scan process 'pctspk.exe' - '1' Module(s) have been scanned
Scan process 'GoogleUpdaterService.exe' - '1' Module(s) have been scanned
Scan process 'AppleMobileDeviceService.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
30 processes with 30 modules were scanned

Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Master boot sector HD1
[INFO] No virus was found!

Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!

Starting to scan the registry.
The registry was scanned ( '21' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\hiberfil.sys
[WARNING] The file could not be opened!
C:\pagefile.sys
[WARNING] The file could not be opened!


End of the scan: dimanche 8 juin 2008 23:30
Used time: 13:04 min

The scan has been canceled!

2078 Scanning directories
13539 Files were scanned
0 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
0 files were moved to quarantine
0 files were renamed
2 Files cannot be scanned
13539 Files not concerned
478 Archives were scanned
2 Warnings
0 Notes
57349 Objects were scanned with rootkit scan
0 Hidden objects were found





























ON A TOUS EN NOUS QUELQUES CHOSE DE TENNESSE.....
0
dabeul Messages postés 228 Date d'inscription mardi 9 octobre 2007 Statut Membre Dernière intervention 10 décembre 2016
10 juin 2008 à 10:52
--MERCI , A CCM ET EN PARTICULIER A G!RLY pour cette intervention musclée , j espere que tout vas bien sur mon ordi , CORDIALEMENT

DABEUL



























ON A TOUS EN NOUS QUELQUES CHOSE DE TENNESSE.....
0
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
10 juin 2008 à 19:04
Salut dabeul,

ca l´air plutot cool ;-)

post un dernier rapport hijack this stp avant que nous nous quittions ;-)

@+
0
dabeul Messages postés 228 Date d'inscription mardi 9 octobre 2007 Statut Membre Dernière intervention 10 décembre 2016
11 juin 2008 à 00:59
--


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 01:01:12, on 11/06/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\OLITEC\Moniteur WiFi OLITEC\Moniteur WiFi OLITEC.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\system32\pctspk.exe
C:\WINDOWS\System32\PAStiSvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://auto.search.msn.com/response.asp?MT=alice+fa11&srch=0&prov=gogl&utf8
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Ript - {91D9091B-2046-42f7-903E-1215A29E21EA} - C:\Program Files\Ript\mscoree.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
O4 - HKLM\..\Run: [AliceSAV] C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [LSAnniversaire] C:\Program Files\LSAnniversaire\LSAnniversaire.exe A
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')
O4 - Global Startup: Moniteur WiFi OLITEC.exe.lnk = C:\Program Files\OLITEC\Moniteur WiFi OLITEC\Moniteur WiFi OLITEC.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Créer un Favori de l'appareil mobile - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: Translate - {87680762-4A83-11B4-885B-0000E8ECA40F} - C:\Program Files\LingoCom\Translator.lnk
O9 - Extra 'Tools' menuitem: LingoWare Translator... - {87680762-4A83-11B4-885B-0000E8ECA40F} - C:\Program Files\LingoCom\Translator.lnk
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Alice ADSL - {9A571B86-0B63-45BE-9297-600861D5F3FA} - https://portail.free.fr/ (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://portail.free.fr/
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2357B3CF-7F8D-4451-8D81-FD6097610AEE} (CamfrogWEB Advanced Unicode Control) - http://activex.camfrogweb.com/advanced/2.0.2.3/cfweb_activex.camfrogweb.com-advanced-2.0.2.3_instmodule.exe
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://doublejohn1963.spaces.live.com/PhotoUpload/MsnPUpld.cab
O16 - DPF: {B49C4597-8721-4789-9250-315DFBD9F525} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/radio/ampx/ampx2.6.1.11_fr_dl.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe
O23 - Service: STI Simulator - Unknown owner - C:\WINDOWS\System32\PAStiSvc.exe
0
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
11 juin 2008 à 19:31
Salut

A l´aide de hijack this coche et fix les lignes suivantes :

R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

puis

meme si tu surf avec firefox :

internet explorer 6.0 = failles de securitées importantes

alors fais les mises a jour windows : tu veux la version 7.0

https://support.microsoft.com/en-US/topic/internet-explorer-downloads-d49e1f0d-571c-9a7b-d97e-be248806ca70

puis

instale :

Comodo 3 pro :

http://www.commentcamarche.net/telecharger/telecharger 34055041 comodo firewall pro

tuto : https://www.malekal.com/tutorial-comodo-firewall/

ou

Online armor :

http://www.commentcamarche.net/telecharger/telecharger 34055356 online armor personal firewall

tuto : https://www.malekal.com/tutorial-online-armor-free/

ou zone alarm plus facil a configurer mais moins performant

https://www.malekal.com/tutoriel-zonealarm-firewall/

anti spyware :

spywareblaster :

http://www.brightfort.com/spywareblaster.html

c´est un resident, il suffit de le mettre a jour de temps en temps car la version gratuite ne le fait pas toute seul , une fois installé et mis a jour tu mets toutes les protections sur "enable"

tuto : https://www.malekal.com/tutorial-spywareblaster/

spyware gard :

https://www.zebulon.fr/dossiers/securite/47-spywareguard.html

pour supprimer les outils/fix :

Télécharge ToolsCleaner sur ton bureau.
--> http://www.commentcamarche.net/telecharger/telechargement 34055291 toolsclean(...)
# Clique sur Recherche et laisse le scan agir ...
# Clique sur Suppression pour finaliser.
# Tu peux, si tu le souhaites, te servir des Options facultatives.
# Clique sur Quitter pour obtenir le rapport.
# Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).

Bonne continuation`

bye`

g!rly`
0