En lisant le forum j'ai téléchargé et exécuté hijackthis
ce qui donne :
Logfile of HijackThis v1.99.1
Scan saved at 16:07:32, on 22/10/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSsystem32rundll32.exe
C:WINDOWSExplorer.EXE
C:WINDOWSSystem32nvraidservice.exe
C:WINDOWSSOUNDMAN.EXE
C:WINDOWSSystem32RUNDLL32.EXE
C:WINDOWSSystem32spooldriversw32x863hpztsb04.exe
C:WINDOWSSystem32hphmon03.exe
C:Program FilesHewlett-PackardPhotoSmartPhoto ImagingHpi_Monitor.exe
C:Program FilesHewlett-PackardPhotoSmartHP Share-to-Webhpgs2wnd.exe
C:Program FilesISTsvcistsvc.exe
C:WINDOWSlogon.exe
C:PROGRA~1SoftwinBITDEF~1bdmcon.exe
C:Program FilesSoftwinBitDefender8bdoesrv.exe
C:Program FilesSoftwinBitDefender8bdswitch.exe
C:WINDOWSSystem32ctfmon.exe
C:Program FilesMessengermsmsgs.exe
C:Program FilesATnotesATnotes.exe
C:Program FilesWinZipWZQKPICK.EXE
C:Program FilesSony HandheldHOTSYNC.EXE
C:PROGRA~1HEWLET~1PHOTOS~1HPSHAR~1hpgs2wnf.exe
C:WINDOWSSystem32nvsvc32.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystemsvchost.exe
C:Program FilesFichiers communsSoftwinBitDefender Communicatorxcommsvr.exe
C:Program FilesFichiers communsSoftwinBitDefender Scan Serverbdss.exe
C:Program FilesSoftwinBitDefender8vsserv.exe
C:WINDOWSSystem32HPHipm09.exe
C:WINDOWSSystem32wbemunsecapp.exe
C:Program FilesInternet Exploreriexplore.exe
C:WINDOWSSystem32wuauclt.exe
C:Documents and SettingsWINBureauHijackThis.exe
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = c:secure32.html
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.wanadoo.fr/
R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = c:secure32.html
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Local Page = c:secure32.html
R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Local Page = c:secure32.html
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:WINDOWSSystem32msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:program filesgooglegoogletoolbar1.dll
O3 - Toolbar: YourSiteBar - {86227D9C-0EFE-4f8a-AA55-30386A3F5686} - C:Program FilesYourSiteBarysb.dll
O4 - HKLM..Run: [NVRaidService] C:WINDOWSSystem32nvraidservice.exe
O4 - HKLM..Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSSystem32NvCpl.dll,NvStartup
O4 - HKLM..Run: [nwiz] nwiz.exe /install
O4 - HKLM..Run: [SW20] C:WINDOWSSystem32sw20.exe
O4 - HKLM..Run: [SW24] C:WINDOWSSystem32sw24.exe
O4 - HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINDOWSSystem32NvMcTray.dll,NvTaskbarInit
O4 - HKLM..Run: [HPDJ Taskbar Utility] C:WINDOWSSystem32spooldriversw32x863hpztsb04.exe
O4 - HKLM..Run: [HPHmon03] C:WINDOWSSystem32hphmon03.exe
O4 - HKLM..Run: [CXMon] "C:Program FilesHewlett-PackardPhotoSmartPhoto ImagingHpi_Monitor.exe"
O4 - HKLM..Run: [Share-to-Web Namespace Daemon] C:Program FilesHewlett-PackardPhotoSmartHP Share-to-Webhpgs2wnd.exe
O4 - HKLM..Run: [IST Service] C:Program FilesISTsvcistsvc.exe
O4 - HKLM..Run: [3xC0WAC3K] C:WINDOWSigjiu.exe
O4 - HKLM..Run: [Internet Optimizer] "C:Program FilesInternet Optimizeroptimize.exe"
O4 - HKLM..Run: [WinLogon] C:WINDOWSlogon.exe
O4 - HKLM..Run: [Windows Update 63] shupd64.exe
O4 - HKLM..Run: [BDMCon] C:PROGRA~1SoftwinBITDEF~1bdmcon.exe
O4 - HKLM..Run: [BDOESRV] C:Program FilesSoftwinBitDefender8bdoesrv.exe
O4 - HKLM..Run: [BDNewsAgent] C:PROGRA~1SoftwinBITDEF~1bdnagent.exe
O4 - HKLM..Run: [BDSwitchAgent] C:Program FilesSoftwinBitDefender8bdswitch.exe
O4 - HKLM..RunServices: [Windows Update 63] shupd64.exe
O4 - HKCU..Run: [CTFMON.EXE] C:WINDOWSSystem32ctfmon.exe
O4 - HKCU..Run: [MSMSGS] "C:Program FilesMessengermsmsgs.exe" /background
O4 - HKCU..Run: [ATnotes.exe] C:Program FilesATnotesATnotes.exe
O4 - HKCU..Run: [Windows Update 63] shupd64.exe
O4 - HKCU..RunOnce: [Windows Update 63] shupd64.exe
O4 - Startup: HotSync Manager.lnk = C:Program FilesSony HandheldHOTSYNC.EXE
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:Program FilesAdobeAcrobat 7.0Readerreader_sl.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:Program FilesWinZipWZQKPICK.EXE
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://C:Program FilesGoogleGoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:PROGRA~1MICROS~2OFFICE11EXCEL.EXE/3000
O8 - Extra context menu item: Pages liées - res://C:Program FilesGoogleGoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://C:Program FilesGoogleGoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://C:Program FilesGoogleGoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://C:Program FilesGoogleGoogleToolbar1.dll/cmcache.html
O9 - Extra button: SideFind - {10E42047-DEB9-4535-A118-B3F6EC39B807} - C:Program FilesSideFindsidefind.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:PROGRA~1MICROS~2OFFICE11REFIEBAR.DLL
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:WINDOWSwebrelated.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:WINDOWSwebrelated.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengerMSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengerMSMSGS.EXE
O15 - Trusted Zone: *.coolwebsearch.com
O15 - Trusted Zone: *.searchmeup.com
O16 - DPF: {42F2C9BA-614F-47C0-B3E3-ECFD34EED658} (Installer Class) - http://www.ysbweb.co...ysb_regular.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.micros...b?1129920700062
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game06.zylom....gamesplayer.cab
O20 - Winlogon Notify: mcfG7A - mcfG7A.dll (file missing)
O20 - Winlogon Notify: st3 - C:WINDOWSsystem32st3.dll
O20 - Winlogon Notify: style2 - C:WINDOWSq3166140.dll
O20 - Winlogon Notify: style32 - C:WINDOWS
O20 - Winlogon Notify: tcpG4T - C:WINDOWSSYSTEM32tcpG4T.dll
O20 - Winlogon Notify: WindowsUpdate - C:WINDOWSsystem32n6p40g7qe6.dll
O21 - SSODL: SysTray.Exys - {7368D5FC-6F5C-4f5b-B964-E67214F67852} - (no file)
O21 - SSODL: SysTray.Excn - {1722ECFF-4356-4f5b-B534-E67294FE75E9} - (no file)
O21 - SSODL: SysTray.Exsh - {1768ECFC-4F5C-4f5b-B134-D67294FC78E9} - (no file)
O21 - SSODL: fgsrv - {98AA388F-B29F-4FFE-8EF1-6500F20FA88C} - fgsrv.dll (file missing)
O21 - SSODL: SysTray.Exsn - {2368D1FC-2F5C-4f1b-B124-E67214FC78E2} - (no file)
O21 - SSODL: Internet Explorer - {F28A40D7-AD0E-034A-C651-5F0ED76232E6} - (no file)
O23 - Service: Adobe LM Service - Adobe Systems - C:Program FilesFichiers communsAdobe Systems SharedServiceAdobelmsvc.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - Unknown owner - C:PROGRA~1GrisoftAVGFRE~1avgamsvr.exe (file missing)
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - Unknown owner - C:PROGRA~1GrisoftAVGFRE~1avgupsvc.exe (file missing)
O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:Program FilesFichiers communsSoftwinBitDefender Scan Serverbdss.exe" /service (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:WINDOWSSystem32nvsvc32.exe
O23 - Service: Pml Driver - HP - C:WINDOWSSystem32HPHipm09.exe
O23 - Service: System optimizer (SystemOptimizer) - Unknown owner - C:WINDOWSSystemsvchost.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - Unknown owner - C:Program FilesSoftwinBitDefender8vsserv.exe" /service (file missing)
O23 - Service: BitDefender Communicator (XCOMM) - Unknown owner - C:Program FilesFichiers communsSoftwinBitDefender Communicatorxcommsvr.exe" /service (file missing)
Si quelqu'un peutr m'aider merci mille fois
Connexion
Inscription
Aide


Retour en haut
Multi-citation