| virus fond écran impossible de modifier | |
|
|
|
Auteur | Message |
---|
plopus Helper
Nombre de messages : 238 Age : 38 Localisation : isere Date d'inscription : 20/01/2009
| Sujet: Re: virus fond écran impossible de modifier Mer 11 Mar - 11:04:15 | |
| re NORTON tu le paye ? car c'est un des pire antivirus
- Relance Toolbar-S&D en double-cliquant sur le raccourci.
- Tape sur "2" puis valide en appuyant sur "Entrée".
/!\ Ne ferme pas la fenêtre lors de la suppression /!\
- Un rapport sera généré, poste son contenu ici.
* NOTE : Si ton Bureau ne réapparait pas, appuie simultanément sur Ctrl+Alt+Suppr pour ouvrir le Gestionnaire des tâches. Rends-toi sur l'onglet "Processus". Clique en haut à gauche sur Fichier et choisis "Exécuter..." Tape explorer puis valide. si bitdefender ne marche pas fait un scan avec norton supprime tout ce qu'il trouve et poqte le rapport puis fait malwarebyte et poste le rapport en faisant bien la suppression des elements trouvés puis poste un nouveau RSIT juste le log.txt et si tu paye pas NORTON, je te ferais installer un meilleur antivirus gratuit | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Mer 11 Mar - 23:31:06 | |
| le pire c'est que je paye l'abonnement chaque année. | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Mer 11 Mar - 23:37:01 | |
| Malwarebytes' Anti-Malware 1.34 Version de la base de données: 1833 Windows 5.1.2600 Service Pack 3 11/03/2009 21:35:55 mbam-log-2009-03-11 (21-35-55).txt Type de recherche: Examen complet (C:\|D:\|) Eléments examinés: 172685 Temps écoulé: 2 hour(s), 8 minute(s), 35 second(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 17 Valeur(s) du Registre infectée(s): 0 Elément(s) de données du Registre infecté(s): 6 Dossier(s) infecté(s): 5 Fichier(s) infecté(s): 20 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): (Aucun élément nuisible détecté) Clé(s) du Registre infectée(s): HKEY_CLASSES_ROOT\mssar32.saras (Trojan.Dialer) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mssar32.saras.1 (Trojan.Dialer) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mssar32.sarpp (Trojan.Dialer) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mssar32.sarpp.1 (Trojan.Dialer) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{4d1c4e81-a32a-416b-bcdb-33b3ef3617d3} (Adware.Need2Find) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{014da6c9-189f-421a-88cd-07cfe51cff10} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{e56b8a14-3f49-4397-a003-316395fe68a7} (Trojan.Dialer) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{a6a44d8a-c6f2-4ec8-b70d-7a87a514ce25} (Trojan.Dialer) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{4d1c4e81-a32a-416b-bcdb-33b3ef3617d3} (Adware.Need2Find) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{e56b8a14-3f49-4397-a003-316395fe68a7} (Trojan.Dialer) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4d1c4e81-a32a-416b-bcdb-33b3ef3617d3} (Adware.Need2Find) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e56b8a14-3f49-4397-a003-316395fe68a7} (Trojan.Dialer) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\rxtoolbar.tbinfo (Adware.RXToolbar) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\rxtoolbar.tbinfo.1 (Adware.RXToolbar) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\RXToolBar (Adware.RXToolbar) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\RX ToolBar (Adware.RXToolbar) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\fcn (Rogue.Residue) -> Quarantined and deleted successfully. Valeur(s) du Registre infectée(s): (Aucun élément nuisible détecté) Elément(s) de données du Registre infecté(s): HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoChangingWallpaper (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\activedesktop\NoChangingWallpaper (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSetActiveDesktop (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSetActiveDesktop (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. Dossier(s) infecté(s): C:\Program Files\RXToolBar (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\Cache (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\graphics (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\HTML (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Documents and Settings\NEW\Application Data\cogad (Trojan.Agent) -> Quarantined and deleted successfully. Fichier(s) infecté(s): C:\Program Files\RXToolBar\CacheCatolog.rx (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\rxtoolbar.cfg (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\Cache\CTovh_dl_sourceforge_net_sourceforge_emule_eMule0_46c-Installer_exeNC (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\Cache\CTwww_01net_com (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\Cache\CTwww_club-vaio_sony-europe_com_fr_NC (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\Cache\CTwww_google_fr_ (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\graphics\additional.gif (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\graphics\additional_active.gif (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\graphics\background.jpg (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\graphics\blue_hr_horz.GIF (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\graphics\gray_hr_horz.GIF (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\graphics\thumbtack.gif (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\graphics\thumbtack_active.gif (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\graphics\thumbtack_click.gif (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\HTML\content.htm (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\HTML\main.htm (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\WINDOWS\Fonts\acrsecB.fon (Trojan.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\Fonts\acrsecI.fon (Trojan.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\smdat32a.sys (Rootkit.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\smdat32m.sys (Rootkit.Agent) -> Quarantined and deleted successfully. | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Mer 11 Mar - 23:50:41 | |
| ça a marché je peux remettre un fond d'écran normal. Tu es TROP FORT. mERCI MILLE fois. C'est trop génial. Tu es le meilleur. Franchement ça me fait plaisir de t'avoir rencontré, je n'y crois toujours pas. C'est génial. | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Mer 11 Mar - 23:52:55 | |
| Par contre je suis partant pour installer un meilleur anti virus que Norton | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Mer 11 Mar - 23:55:26 | |
| Logfile of random's system information tool 1.05 (written by random/random) Run by NEW at 2009-03-11 21:54:27 Microsoft Windows XP Édition familiale Service Pack 3 System drive C: has 2 GB (7%) free of 29 GB Total RAM: 1023 MB (47% free) Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:54:33, on 11/03/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Ahead\InCD\InCDsrv.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe C:\Program Files\Sony\vaio entertainment\VzTaskScheduler.exe C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe C:\Program Files\Canon\CAL\CALMAIN.exe C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\ALCWZRD.EXE C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\sony\vaio update 2\VAIOUpdt.exe C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe C:\Program Files\Sony\VAIO Zone Remote Commander\AvRmtCtr.exe C:\Program Files\Utimaco\SafeGuard PrivateDisk\pdservice.exe C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VMConsole.exe C:\Program Files\Ahead\InCD\InCD.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe C:\Program Files\Sony\sonicstage mastering studio\audio filter\SSMSFilter.exe C:\Program Files\Sony\vaio entertainment\VzTrayIcon.exe C:\Program Files\Sony\click to dvd 2\ctdatsvr.exe C:\Program Files\Sony\VAIO Launcher\Launcher.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\Internet Explorer\iexplore.exe C:\WINDOWS\system32\msiexec.exe C:\Program Files\Outlook Express\msimn.exe C:\Program Files\Messenger\msmsgs.exe C:\Documents and Settings\NEW\Bureau\RSIT.exe C:\Program Files\trend micro\NEW.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.club-vaio.sony-europe.com/ R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.club-vaio.com/fr R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (file missing) O2 - BHO: (no name) - {4E7BD74F-2B8D-469E-90F0-F66AB581A933} - (no file) O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll O2 - BHO: Web assistant - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O3 - Toolbar: RX Toolbar - {25D8BACF-3DE2-4B48-AE22-D659B8D835B0} - C:\Program Files\RXToolBar\RXToolBar.dll (file missing) O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [VAIO Update 2] "C:\Program Files\sony\vaio update 2\VAIOUpdt.exe" /Stationary O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [URLLSTCK.exe] C:\Program Files\Norton Internet Security\UrlLstCk.exe O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Program Files\Fichiers communs\Symantec Shared\Security Center\UsrPrmpt.exe O4 - HKLM\..\Run: [VZRemoteCommander] C:\Program Files\Sony\VAIO Zone Remote Commander\AvRmtCtr.exe O4 - HKLM\..\Run: [PDService.exe] C:\Program Files\Utimaco\SafeGuard PrivateDisk\pdservice.exe O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKLM\..\Run: [VMConsole.exe] "C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VMConsole.exe" /windowmin O4 - HKLM\..\Run: [KAZAA] C:\Program Files\Kazaa\Kazaa.exe /SYSTRAY O4 - HKLM\..\Run: [AltnetPointsManager] c:\program files\altnet\points manager\points manager.exe -s O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Startup: Programme de démarrage du Mode automatique Click to DVD.lnk = C:\Program Files\Sony\click to dvd 2\ctdatsvr.exe O4 - Startup: VAIO Launcher.lnk = C:\Program Files\Sony\VAIO Launcher\Launcher.exe O4 - Global Startup: Assistant d'Acrobat.lnk = C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe O4 - Global Startup: Audio Filter.lnk = C:\Program Files\Sony\sonicstage mastering studio\audio filter\SSMSFilter.exe O4 - Global Startup: État de l'enregistrement.lnk = C:\Program Files\Sony\vaio entertainment\VzTrayIcon.exe O8 - Extra context menu item: &Search - http://kx.bar.need2find.com/KX/menusearch.html?p=KX O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O14 - IERESET.INF: START_PAGE_URL=http://www.club-vaio.sony-europe.com/ O15 - Trusted Zone: v7.e-tmm.com O15 - Trusted Zone: *.sony-europe.com O15 - Trusted Zone: *.sonystyle-europe.com O15 - Trusted Zone: *.vaio-link.com O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1236725678453 O16 - DPF: {C7C7152F-6E85-44F3-A14B-A7F85FDDEA3B} (InstallerCtrl Class) - http://v7.e-tmm.com/bin/tol7inst.cab O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Program Files\Ahead\InCD\InCDsrv.exe O23 - Service: InCD Helper (read only) (InCDsrvR) - Ahead Software AG - C:\Program Files\Ahead\InCD\InCDsrv.exe O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe O23 - Service: VAIO Entertainment Aggregation and Control Service - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe O23 - Service: VAIO Entertainment File Import Service - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe O23 - Service: VAIO Entertainment Task Scheduler - Sony Corporation - C:\Program Files\Sony\vaio entertainment\VzTaskScheduler.exe O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe O23 - Service: VAIO Entertainment UPnP Client Adapter - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VCSW\VCSW.exe O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe O23 - Service: VAIO Cooporated Initialisation (VCI) - Sony Corporation - C:\Program Files\Sony\VAIO Cooperated Initialisation\VCI_SVC.exe -- End of file - 13899 bytes | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Mer 11 Mar - 23:56:50 | |
| ======Scheduled tasks folder====== C:\WINDOWS\tasks\AppleSoftwareUpdate.job C:\WINDOWS\tasks\Google Software Updater.job C:\WINDOWS\tasks\Norton AntiVirus - Analyser mon ordinateur - NEW.job C:\WINDOWS\tasks\Norton Security Scan for NEW.job C:\WINDOWS\tasks\Symantec NetDetect.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}] Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}] AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll [] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4E7BD74F-2B8D-469E-90F0-F66AB581A933}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9394EDE7-C8B5-483E-8773-474BF36AF6E4}] ST - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll [2004-08-13 155648] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9ECB9560-04F9-4bbc-943D-298DDF1699E1}] CNisExtBho Class - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll [2004-02-05 131072] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}] Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll [2009-03-11 657904] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0}] MSNToolBandBHO - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll [2006-01-17 282624] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDF3E430-B101-42AD-A544-FADC6B084872}] CNavExtBho Class - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll [2004-04-07 103536] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - Web assistant - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll [2004-02-05 131072] {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - Norton AntiVirus - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll [2004-04-07 103536] {25D8BACF-3DE2-4B48-AE22-D659B8D835B0} - RX Toolbar - C:\Program Files\RXToolBar\RXToolBar.dll [] {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - MSN - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll [2006-01-17 282624] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "Raccourci vers la page des propriétés de High Definition Audio"=C:\WINDOWS\system32\HDAudPropShortcut.exe [2004-03-17 61952] "SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2004-07-28 77824] "AlcWzrd"=C:\WINDOWS\ALCWZRD.EXE [2004-07-28 2551808] "Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2004-07-20 57344] "ATIPTA"=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [2004-06-01 335872] "VAIO Update 2"=C:\Program Files\sony\vaio update 2\VAIOUpdt.exe [2004-06-29 147456] "ccApp"=C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe [2006-04-04 71304] "URLLSTCK.exe"=C:\Program Files\Norton Internet Security\UrlLstCk.exe [2004-01-20 70760] "SSC_UserPrompt"=C:\Program Files\Fichiers communs\Symantec Shared\Security Center\UsrPrmpt.exe [2004-11-10 218240] "VZRemoteCommander"=C:\Program Files\Sony\VAIO Zone Remote Commander\AvRmtCtr.exe [2004-08-05 184320] "PDService.exe"=C:\Program Files\Utimaco\SafeGuard PrivateDisk\pdservice.exe [2004-07-06 40960] "Symantec NetDriver Monitor"=C:\PROGRA~1\SYMNET~1\SNDMon.exe [2005-05-28 100056] "VMConsole.exe"=C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VMConsole.exe [2004-06-23 557056] "KAZAA"=C:\Program Files\Kazaa\Kazaa.exe /SYSTRAY [] "AltnetPointsManager"=c:\program files\altnet\points manager\points manager.exe -s [] "NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648] "InCD"=C:\Program Files\Ahead\InCD\InCD.exe [2004-11-26 1349120] "NWEReboot"= [] "QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2007-04-27 282624] "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2007-06-28 270648] "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232] "swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-03-11 39408] C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage Assistant d'Acrobat.lnk - C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe Audio Filter.lnk - C:\Program Files\Sony\sonicstage mastering studio\audio filter\SSMSFilter.exe État de l'enregistrement.lnk - C:\Program Files\Sony\vaio entertainment\VzTrayIcon.exe C:\Documents and Settings\NEW\Menu Démarrer\Programmes\Démarrage Programme de démarrage du Mode automatique Click to DVD.lnk - C:\Program Files\Sony\click to dvd 2\ctdatsvr.exe VAIO Launcher.lnk - C:\Program Files\Sony\VAIO Launcher\Launcher.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon] C:\WINDOWS\system32\WgaLogon.dll [2006-06-19 702768] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=144 "NoSetActiveDesktop"=0 "NoActiveDesktopChanges"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "HonorAutoRunSetting"= "NoSetActiveDesktop"= "NoActiveDesktopChanges"= [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Program Files\Sony\vaio media 3.1\Vc.exe"="C:\Program Files\Sony\vaio media 3.1\Vc.exe:*:Disabled:[VAIO Media] VAIO Media" "C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe"="C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe:*:Enabled:[VAIO Media] HTTP Server" "C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe"="C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe:*:Enabled:[VAIO Media] UPnP Server" "C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VMConsole.exe"="C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VMConsole.exe:*:Enabled:[VAIO Media] SNAC Server" "C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VCSW\VCSW.exe"="C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VCSW\VCSW.exe:*:Enabled:VAIO Entertainment UPnP Client Adapter" "C:\Program Files\Sony\vaio media 3.1\VmpClient.exe"="C:\Program Files\Sony\vaio media 3.1\VmpClient.exe:*:Enabled:VAIO Media Client registry tool" "C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:MSN Messenger 7.5" "C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes" "C:\Program Files\Internet Explorer\iexplore.exe"="C:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer" "C:\Program Files\Ahead\Nero ShowTime\ShowTime.exe"="C:\Program Files\Ahead\Nero ShowTime\ShowTime.exe:*:Enabled:Nero ShowTime" "C:\Program Files\eMule\emule.exe"="C:\Program Files\eMule\emule.exe:*:Disabled:eMule" "C:\Program Files\Kazaa\kazaa.exe"="C:\Program Files\Kazaa\kazaa.exe:*:Disabled:Kazaa Media Desktop" "C:\Program Files\Freeplayer\vlc\vlc.exe"="C:\Program Files\Freeplayer\vlc\vlc.exe:*:Disabled:VLC media player" "D:\Film\eMule\emule.exe"="D:\Film\eMule\emule.exe:*:Enabled:eMule" "C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger" "C:\Program Files\HomePlayer\HomePlayer.exe"="C:\Program Files\HomePlayer\HomePlayer.exe:*:Enabled:HomePlayer" "C:\Program Files\HomePlayer\VLC\vlc.exe"="C:\Program Files\HomePlayer\VLC\vlc.exe:*:Enabled:VLC HomePlayer" "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:MSN Messenger 7.5" "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Mer 11 Mar - 23:57:48 | |
| ======List of files/folders created in the last 1 months====== 2009-03-11 21:48:44 ----D---- C:\Documents and Settings\All Users\Application Data\Google 2009-03-11 19:21:21 ----A---- C:\WINDOWS\system32\mucltui.dll.mui 2009-03-11 19:21:21 ----A---- C:\WINDOWS\system32\mucltui.dll 2009-03-11 03:02:26 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$ 2009-03-11 03:02:18 ----D---- C:\Program Files\Microsoft CAPICOM 2.1.0.2 2009-03-11 03:01:46 ----HDC---- C:\WINDOWS\$NtUninstallKB938464-v2$ 2009-03-11 03:01:34 ----HDC---- C:\WINDOWS\$NtUninstallKB958690$ 2009-03-11 03:00:40 ----HDC---- C:\WINDOWS\$NtUninstallKB959772_WM11$ 2009-03-11 02:33:27 ----D---- C:\Documents and Settings\NEW\Application Data\Malwarebytes 2009-03-11 02:33:21 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes 2009-03-11 02:33:20 ----D---- C:\Program Files\Malwarebytes' Anti-Malware 2009-03-11 01:49:51 ----D---- C:\Program Files\Norton Security Scan 2009-03-11 01:47:45 ----D---- C:\Documents and Settings\All Users\Application Data\Google Updater 2009-03-11 01:14:38 ----A---- C:\TB.txt 2009-03-11 01:13:31 ----D---- C:\ToolBar SD 2009-03-11 01:03:47 ----A---- C:\cleannavi.txt 2009-03-11 00:43:21 ----D---- C:\WINDOWS\Prefetch 2009-03-11 00:40:31 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$ 2009-03-11 00:40:10 ----HDC---- C:\WINDOWS\$NtUninstallKB960714$ 2009-03-11 00:39:53 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$ 2009-03-11 00:39:36 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$ 2009-03-11 00:39:16 ----HDC---- C:\WINDOWS\$NtUninstallKB958215$ 2009-03-11 00:38:58 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$ 2009-03-11 00:38:41 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$ 2009-03-11 00:38:22 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$ 2009-03-11 00:38:04 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$ 2009-03-11 00:37:47 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$ 2009-03-11 00:37:24 ----HDC---- C:\WINDOWS\$NtUninstallKB956390$ 2009-03-11 00:37:04 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$ 2009-03-11 00:36:46 ----HDC---- C:\WINDOWS\$NtUninstallKB954600$ 2009-03-11 00:36:27 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$ 2009-03-11 00:35:52 ----HDC---- C:\WINDOWS\$NtUninstallKB953838$ 2009-03-11 00:35:25 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$ 2009-03-11 00:35:07 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$ 2009-03-11 00:34:47 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$ 2009-03-11 00:34:29 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$ 2009-03-11 00:34:12 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$ 2009-03-11 00:33:53 ----HDC---- C:\WINDOWS\$NtUninstallKB951376$ 2009-03-11 00:33:34 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$ 2009-03-11 00:33:17 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$ 2009-03-11 00:33:01 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$ 2009-03-11 00:32:42 ----HDC---- C:\WINDOWS\$NtUninstallKB950759$ 2009-03-11 00:32:25 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$ 2009-03-11 00:32:08 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$ 2009-03-11 00:28:08 ----D---- C:\WINDOWS\system32\fr-fr 2009-03-11 00:28:05 ----D---- C:\WINDOWS\system32\fr 2009-03-11 00:28:05 ----D---- C:\WINDOWS\l2schemas 2009-03-11 00:28:04 ----D---- C:\WINDOWS\system32\bits 2009-03-11 00:23:10 ----D---- C:\WINDOWS\network diagnostic 2009-03-11 00:18:45 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$ 2009-03-10 23:27:25 ----A---- C:\fixnavi.txt 2009-03-10 23:24:37 ----D---- C:\Program Files\Navilog1 2009-03-10 22:32:05 ----D---- C:\Program Files\trend micro 2009-03-10 22:31:50 ----D---- C:\rsit 2009-03-10 22:13:30 ----A---- C:\rapport du 10-03-09.txt 2009-03-10 22:08:31 ----A---- C:\WINDOWS\system32\tmp.txt 2009-03-10 22:08:00 ----A---- C:\rapport.txt 2009-03-09 20:02:19 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP 2009-03-01 16:03:42 ----D---- C:\Documents and Settings\NEW\Application Data\PIFreePC 2009-03-01 15:08:23 ----D---- C:\Program Files\HomePlayer 2009-02-25 23:46:00 ----HDC---- C:\WINDOWS\$NtUninstallKB967715_0$ 2009-02-21 16:37:31 ----D---- C:\Program Files\vghd 2009-02-21 16:37:30 ----D---- C:\Documents and Settings\NEW\Application Data\vghd ======List of files/folders modified in the last 1 months====== 2009-03-11 21:52:54 ----D---- C:\WINDOWS\Temp 2009-03-11 21:48:44 ----SHD---- C:\WINDOWS\Installer 2009-03-11 21:48:44 ----SD---- C:\WINDOWS\Tasks 2009-03-11 21:48:44 ----D---- C:\Program Files\Google 2009-03-11 21:47:55 ----RD---- C:\Program Files 2009-03-11 21:47:37 ----D---- C:\Program Files\Fichiers communs\Symantec Shared 2009-03-11 21:40:38 ----D---- C:\Program Files\Fichiers communs 2009-03-11 21:40:21 ----D---- C:\WINDOWS 2009-03-11 21:38:24 ----D---- C:\WINDOWS\system32\drivers 2009-03-11 21:37:51 ----A---- C:\WINDOWS\SchedLgU.Txt 2009-03-11 21:35:55 ----RSD---- C:\WINDOWS\Fonts 2009-03-11 20:43:47 ----A---- C:\WINDOWS\NeroDigital.ini 2009-03-11 19:21:21 ----D---- C:\WINDOWS\system32 2009-03-11 19:21:20 ----HD---- C:\WINDOWS\inf 2009-03-11 19:21:20 ----D---- C:\WINDOWS\system32\CatRoot2 2009-03-11 03:02:28 ----RSHDC---- C:\WINDOWS\system32\dllcache 2009-03-11 03:01:53 ----A---- C:\WINDOWS\imsins.BAK 2009-03-11 03:01:49 ----D---- C:\WINDOWS\WinSxS 2009-03-11 03:00:33 ----D---- C:\WINDOWS\system32\CatRoot 2009-03-11 02:42:33 ----HD---- C:\Program Files\InstallShield Installation Information 2009-03-11 02:40:08 ----D---- C:\Documents and Settings\NEW\Application Data\Samsung 2009-03-11 02:00:26 ----D---- C:\Documents and Settings\NEW\Application Data\Google 2009-03-11 01:53:32 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe 2009-03-11 01:53:08 ----D---- C:\Program Files\Fichiers communs\Adobe 2009-03-11 01:52:50 ----D---- C:\Program Files\Adobe 2009-03-11 00:47:59 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2009-03-11 00:46:53 ----HD---- C:\WINDOWS\$hf_mig$ 2009-03-11 00:43:56 ----A---- C:\WINDOWS\OEWABLog.txt 2009-03-11 00:43:22 ----A---- C:\WINDOWS\setuplog.txt 2009-03-11 00:42:50 ----D---- C:\WINDOWS\system32\Setup 2009-03-11 00:42:50 ----D---- C:\WINDOWS\srchasst 2009-03-11 00:42:50 ----D---- C:\WINDOWS\AppPatch 2009-03-11 00:42:50 ----D---- C:\Program Files\Messenger 2009-03-11 00:42:50 ----D---- C:\Program Files\Internet Explorer 2009-03-11 00:42:49 ----D---- C:\WINDOWS\system32\wbem 2009-03-11 00:42:49 ----D---- C:\Program Files\Outlook Express 2009-03-11 00:42:49 ----D---- C:\Program Files\Fichiers communs\System 2009-03-11 00:37:45 ----D---- C:\WINDOWS\security 2009-03-11 00:28:25 ----D---- C:\WINDOWS\ServicePackFiles 2009-03-11 00:28:23 ----D---- C:\WINDOWS\ime 2009-03-11 00:28:23 ----D---- C:\WINDOWS\Help 2009-03-11 00:28:08 ----D---- C:\WINDOWS\system32\usmt 2009-03-11 00:28:04 ----D---- C:\WINDOWS\peernet 2009-03-11 00:28:04 ----D---- C:\Program Files\Movie Maker 2009-03-11 00:25:00 ----D---- C:\WINDOWS\system32\Restore 2009-03-11 00:25:00 ----D---- C:\WINDOWS\system32\npp 2009-03-11 00:24:59 ----D---- C:\WINDOWS\msagent 2009-03-11 00:24:57 ----D---- C:\Program Files\NetMeeting 2009-03-11 00:24:55 ----D---- C:\WINDOWS\system32\Com 2009-03-11 00:24:53 ----D---- C:\Program Files\Windows NT 2009-03-11 00:24:38 ----D---- C:\WINDOWS\system32\oobe 2009-03-11 00:24:36 ----D---- C:\WINDOWS\system 2009-03-11 00:22:06 ----D---- C:\WINDOWS\system32\ReinstallBackups 2009-03-11 00:15:45 ----D---- C:\WINDOWS\EHome 2009-03-10 23:54:56 ----SD---- C:\WINDOWS\Downloaded Program Files 2009-03-09 23:09:57 ----SD---- C:\Documents and Settings\NEW\Application Data\Microsoft 2009-03-09 22:30:35 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared 2009-03-01 09:52:42 ----D---- C:\Program Files\Freeplayer 2009-02-23 07:51:09 ----D---- C:\Documents and Settings\All Users\Application Data\ZoomBrowser 2009-02-23 07:51:03 ----D---- C:\Documents and Settings\NEW\Application Data\ZoomBrowser EX | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Mer 11 Mar - 23:58:12 | |
| ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R1 DMICall;Sony DMI Call service; C:\WINDOWS\system32\DRIVERS\DMICall.sys [2000-12-05 3952] R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Fichiers communs\Symantec Shared\EENGINE\eeCtrl.sys [] R1 InCDPass;InCDPass; C:\WINDOWS\System32\DRIVERS\InCDPass.sys [2004-11-26 28928] R1 incdrm;InCD Reader; C:\WINDOWS\system32\drivers\incdrm.sys [2004-11-26 27648] R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2008-04-14 40576] R1 kbdhid;Pilote HID de clavier; C:\WINDOWS\System32\DRIVERS\kbdhid.sys [2008-04-14 14720] R1 PrivateDisk;PrivateDisk; C:\WINDOWS\System32\Drivers\PrivateDiskM.sys [2004-07-06 45627] R1 SAVRT;SAVRT; \??\C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVRT.SYS [] R1 SAVRTPEL;SAVRTPEL; \??\C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVRTPEL.SYS [] R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2006-07-24 5632] R1 SYMTDI;SYMTDI; C:\WINDOWS\System32\Drivers\SYMTDI.SYS [2005-04-05 267192] R2 irda;Protocole IrDA; C:\WINDOWS\system32\DRIVERS\irda.sys [2008-04-13 88192] R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2004-03-17 13059] R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\System32\DRIVERS\arp1394.sys [2008-04-13 60800] R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2004-06-01 729088] R3 E1000;Intel(R) PRO/1000 Adapter Driver; C:\WINDOWS\System32\DRIVERS\e1000325.sys [2003-08-29 125952] R3 GEARAspiWDM;GEARAspiWDM; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2006-09-19 15664] R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384] R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-13 10368] R3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSF_DP.sys [2004-04-13 1041536] R3 HSFHWAZL;HSFHWAZL; C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys [2004-04-13 160640] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2004-07-29 2216128] R3 mouhid;Pilote HID de souris; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-08-23 12288] R3 NAVENG;NAVENG; \??\C:\PROGRA~1\FICHIE~1\SYMANT~1\VIRUSD~1\20090130.003\NAVENG.Sys [] R3 NAVEX15;NAVEX15; \??\C:\PROGRA~1\FICHIE~1\SYMANT~1\VIRUSD~1\20090130.003\NavEx15.Sys [] R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\System32\DRIVERS\nic1394.sys [2008-04-13 61824] R3 Rasirda;Miniport réseau étendu (IrDA); C:\WINDOWS\System32\DRIVERS\rasirda.sys [2001-08-17 19584] R3 smrt;Sony MPEG RealTime encoder board; C:\WINDOWS\System32\DRIVERS\smrt.sys [2004-07-07 774784] R3 SYMDNS;SYMDNS; C:\WINDOWS\System32\Drivers\SYMDNS.SYS [2005-04-05 11512] R3 SymEvent;SymEvent; \??\C:\Program Files\Symantec\SYMEVENT.SYS [] R3 SYMFW;SYMFW; C:\WINDOWS\System32\Drivers\SYMFW.SYS [2005-04-05 173208] R3 SYMIDS;SYMIDS; C:\WINDOWS\System32\Drivers\SYMIDS.SYS [2005-04-05 36984] R3 SYMIDSCO;SYMIDSCO; \??\C:\PROGRA~1\FICHIE~1\SYMANT~1\SymcData\idsdefs\20090303.001\symidsco.sys [] R3 SYMNDIS;SYMNDIS; C:\WINDOWS\System32\Drivers\SYMNDIS.SYS [2005-04-05 47192] R3 SYMREDRV;SYMREDRV; C:\WINDOWS\System32\Drivers\SYMREDRV.SYS [2005-04-05 17976] R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2008-04-13 32128] R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\System32\DRIVERS\usbehci.sys [2008-04-13 30208] R3 usbhub;Concentrateur USB2; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-13 59520] R3 usbstor;Pilote de stockage de masse USB; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-13 26368] R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-13 20608] R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [2004-04-13 682752] R4 InCDfs;InCD File System; C:\WINDOWS\system32\drivers\InCDfs.sys [2004-11-26 98176] S3 61883;Pilote d'unité 61883; C:\WINDOWS\system32\DRIVERS\61883.sys [2008-04-13 48128] S3 Avc;Périphérique AVC; C:\WINDOWS\system32\DRIVERS\avc.sys [2008-04-13 38912] S3 catchme;catchme; \??\C:\DOCUME~1\NEW\LOCALS~1\Temp\catchme.sys [] S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [2008-04-13 17024] S3 fbxusb;FreeBox USB Network Adapter; C:\WINDOWS\system32\DRIVERS\fbxusb.sys [2003-12-31 18848] S3 HdAudAddService;Pilote de fonction Microsoft UAA pour Service High Definition Audio; C:\WINDOWS\system32\drivers\HdAudio.sys [2004-03-17 113664] S3 irsir;Pilote série infrarouge Microsoft; C:\WINDOWS\system32\DRIVERS\irsir.sys [2001-08-17 18688] S3 MSDV;Microsoft DV Camera and VCR; C:\WINDOWS\system32\DRIVERS\msdv.sys [2008-04-13 51200] S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504] S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\System32\DRIVERS\NABTSFEC.sys [2008-04-13 85248] S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [2008-04-13 10880] S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\System32\DRIVERS\SLIP.sys [2008-04-13 11136] S3 streamip;BDA IPSink; C:\WINDOWS\System32\DRIVERS\StreamIP.sys [2008-04-13 15232] S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104] S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528] S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\System32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200] S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944] S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys [] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2007-06-28 106496] R2 CCALib8;Canon Camera Access Library 8; C:\Program Files\Canon\CAL\CALMAIN.exe [2006-03-30 96341] R2 ccEvtMgr;Symantec Event Manager; C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe [2006-04-04 255624] R2 ccProxy;Symantec Network Proxy; C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe [2005-03-21 218712] R2 ccSetMgr;Symantec Settings Manager; C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe [2006-04-04 235144] R2 InCDsrv;InCD Helper; C:\Program Files\Ahead\InCD\InCDsrv.exe [2004-11-26 812032] R2 Irmon;Moniteur infrarouge; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe [2007-01-17 61440] R2 navapsvc;Service Norton AntiVirus Auto-Protect; C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe [2004-05-12 158832] R2 Planificateur LiveUpdate automatique;Planificateur LiveUpdate automatique; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe [2006-08-03 100032] R2 SAVScan;SAVScan; C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe [2005-01-25 194272] R2 SNDSrvc;Symantec Network Drivers Service; C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe [2005-04-05 206552] R2 SymWSC;SymWMI Service; C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe [2004-11-02 316544] R2 VAIO Entertainment File Import Service;VAIO Entertainment File Import Service; C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe [2004-07-08 118877] R2 VAIO Entertainment Task Scheduler;VAIO Entertainment Task Scheduler; C:\Program Files\Sony\vaio entertainment\VzTaskScheduler.exe [2004-07-28 401408] R2 VAIOMediaPlatform-IntegratedServer-AppServer;VAIO Media Integrated Server; C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe [2004-07-09 1826816] R2 VAIOMediaPlatform-IntegratedServer-HTTP;VAIO Media Integrated Server (HTTP); C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [2004-06-16 57344] R2 VAIOMediaPlatform-IntegratedServer-UPnP;VAIO Media Integrated Server (UPnP); C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [2004-06-22 733184] R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] R3 iPod Service;Service de l'iPod; C:\Program Files\iPod\bin\iPodService.exe [2007-06-28 501048] R3 VAIO Entertainment Aggregation and Control Service;VAIO Entertainment Aggregation and Control Service; C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe [2004-07-08 118784] R3 VAIO Entertainment TV Device Arbitration Service;VAIO Entertainment TV Device Arbitration Service; C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe [2004-07-08 69632] S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-03-11 182768] S2 InCDsrvR;InCD Helper (read only); C:\Program Files\Ahead\InCD\InCDsrv.exe [2004-11-26 812032] S2 SBService;ScriptBlocking Service; C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe [2003-06-24 66784] S2 VCI;VAIO Cooporated Initialisation; C:\Program Files\Sony\VAIO Cooperated Initialisation\VCI_SVC.exe [2004-08-05 397824] S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe [2005-06-11 68096] S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800] S3 ccPwdSvc;Symantec Password Validation; C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe [2006-04-04 87688] S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144] S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632] S3 LiveUpdate;LiveUpdate; C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE [2006-08-03 2119360] S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136] S3 VAIO Entertainment UPnP Client Adapter;VAIO Entertainment UPnP Client Adapter; C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VCSW\VCSW.exe [2004-07-08 278528] S3 VAIOMediaPlatform-Mobile-Gateway;VAIO Media Gateway Server; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe [2004-06-16 188416] S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016] -----------------EOF----------------- | |
|
| |
plopus Helper
Nombre de messages : 238 Age : 38 Localisation : isere Date d'inscription : 20/01/2009
| Sujet: Re: virus fond écran impossible de modifier Jeu 12 Mar - 0:01:33 | |
| bonsoir me voila, je regarde un peu ton log et te dit la suite des evenments | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Jeu 12 Mar - 0:03:29 | |
| Tu supper génial. T'es top | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Jeu 12 Mar - 0:04:23 | |
| Tous les soirs tu dépannes comme ça les gens. C'est trop génial. | |
|
| |
plopus Helper
Nombre de messages : 238 Age : 38 Localisation : isere Date d'inscription : 20/01/2009
| Sujet: Re: virus fond écran impossible de modifier Jeu 12 Mar - 0:15:45 | |
| re, il te reste des traces
• Télécharge OTMoveIt3 (de OldTimer) sur ton Bureau : http://oldtimer.geekstogo.com/OTMoveIt3.exe • Double-clique sur OTMoveIt3.exe afin de le lancer. • Copie/colle le texte suivant dans le cadre « Paste Instructions for Items to be Moved » et clique sur Moveit :
:processes explorer.exe
:files c:\program files\altnet\points manager\points manager.exe -s
:reg [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4E7BD74F-2B8D-469E-90F0-F66AB581A933}] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "AltnetPointsManager"=- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {25D8BACF-3DE2-4B48-AE22-D659B8D835B0} =-
:services AltnetPointsManager
:commands [purity] [emptytemp] [start explorer] [reboot]
• Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer. Accepte en cliquant sur YES.
• Poste le rapport situé dans ce dossier : C:\_OTMoveIt\MovedFiles Le nom du rapport correspond au moment de sa création : date_heure.log
puis
puis telecharge CCleaner ici http://www.filehippo.com/download_ccleaner/ ouvre CCleaner va dans option/avanvé et decoche la premier ligne et nettoie ton registre et tes fichier temporaire au moins 2fois jusqu'a trouver 0erreur
puis poste un nouveau log.txt stp
as tu encore des problemes ?
edit : ben ce soir jsuis un peu occupé, jsuis venu repondre a toi au du moins sur ce forum la car il est vraiment conviviale donc fait passer le message a tes ami(e)s qu'ils viennent ce faire desinfecter ici dans la joie te le bonheur ^^ | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Jeu 12 Mar - 0:22:06 | |
| Merci tu es vraiement cool. | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Jeu 12 Mar - 1:15:32 | |
| Logfile of random's system information tool 1.05 (written by random/random) Run by NEW at 2009-03-11 23:14:51 Microsoft Windows XP Édition familiale Service Pack 3 System drive C: has 3 GB (11%) free of 29 GB Total RAM: 1023 MB (48% free) Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 23:14:57, on 11/03/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Ahead\InCD\InCDsrv.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe C:\Program Files\Sony\vaio entertainment\VzTaskScheduler.exe C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe C:\Program Files\Canon\CAL\CALMAIN.exe C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\ALCWZRD.EXE C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\sony\vaio update 2\VAIOUpdt.exe C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe C:\Program Files\Sony\VAIO Zone Remote Commander\AvRmtCtr.exe C:\Program Files\Utimaco\SafeGuard PrivateDisk\pdservice.exe C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VMConsole.exe C:\Program Files\Ahead\InCD\InCD.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\Outlook Express\msimn.exe C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe C:\Program Files\Sony\sonicstage mastering studio\audio filter\SSMSFilter.exe C:\Program Files\Sony\vaio entertainment\VzTrayIcon.exe C:\Program Files\Sony\click to dvd 2\ctdatsvr.exe C:\Program Files\Sony\VAIO Launcher\Launcher.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\NEW\Bureau\RSIT.exe C:\Program Files\trend micro\NEW.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.club-vaio.sony-europe.com/ R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.club-vaio.com/fr R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file) O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll O2 - BHO: Web assistant - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O3 - Toolbar: (no name) - {25D8BACF-3DE2-4B48-AE22-D659B8D835B0} - (no file) O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [VAIO Update 2] "C:\Program Files\sony\vaio update 2\VAIOUpdt.exe" /Stationary O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [URLLSTCK.exe] C:\Program Files\Norton Internet Security\UrlLstCk.exe O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Program Files\Fichiers communs\Symantec Shared\Security Center\UsrPrmpt.exe O4 - HKLM\..\Run: [VZRemoteCommander] C:\Program Files\Sony\VAIO Zone Remote Commander\AvRmtCtr.exe O4 - HKLM\..\Run: [PDService.exe] C:\Program Files\Utimaco\SafeGuard PrivateDisk\pdservice.exe O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKLM\..\Run: [VMConsole.exe] "C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VMConsole.exe" /windowmin O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Startup: Programme de démarrage du Mode automatique Click to DVD.lnk = C:\Program Files\Sony\click to dvd 2\ctdatsvr.exe O4 - Startup: VAIO Launcher.lnk = C:\Program Files\Sony\VAIO Launcher\Launcher.exe O4 - Global Startup: Assistant d'Acrobat.lnk = C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe O4 - Global Startup: Audio Filter.lnk = C:\Program Files\Sony\sonicstage mastering studio\audio filter\SSMSFilter.exe O4 - Global Startup: État de l'enregistrement.lnk = C:\Program Files\Sony\vaio entertainment\VzTrayIcon.exe O8 - Extra context menu item: &Search - http://kx.bar.need2find.com/KX/menusearch.html?p=KX O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O14 - IERESET.INF: START_PAGE_URL=http://www.club-vaio.sony-europe.com/ O15 - Trusted Zone: v7.e-tmm.com O15 - Trusted Zone: *.sony-europe.com O15 - Trusted Zone: *.sonystyle-europe.com O15 - Trusted Zone: *.vaio-link.com O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1236725678453 O16 - DPF: {C7C7152F-6E85-44F3-A14B-A7F85FDDEA3B} (InstallerCtrl Class) - http://v7.e-tmm.com/bin/tol7inst.cab O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Program Files\Ahead\InCD\InCDsrv.exe O23 - Service: InCD Helper (read only) (InCDsrvR) - Ahead Software AG - C:\Program Files\Ahead\InCD\InCDsrv.exe O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe O23 - Service: VAIO Entertainment Aggregation and Control Service - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe O23 - Service: VAIO Entertainment File Import Service - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe O23 - Service: VAIO Entertainment Task Scheduler - Sony Corporation - C:\Program Files\Sony\vaio entertainment\VzTaskScheduler.exe O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe O23 - Service: VAIO Entertainment UPnP Client Adapter - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VCSW\VCSW.exe O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe O23 - Service: VAIO Cooporated Initialisation (VCI) - Sony Corporation - C:\Program Files\Sony\VAIO Cooperated Initialisation\VCI_SVC.exe -- End of file - 14065 bytes | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Jeu 12 Mar - 1:17:17 | |
| ======Scheduled tasks folder====== C:\WINDOWS\tasks\AppleSoftwareUpdate.job C:\WINDOWS\tasks\Google Software Updater.job C:\WINDOWS\tasks\Norton AntiVirus - Analyser mon ordinateur - NEW.job C:\WINDOWS\tasks\Norton Security Scan for NEW.job C:\WINDOWS\tasks\Symantec NetDetect.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}] &Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2008-07-28 882416] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}] Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9394EDE7-C8B5-483E-8773-474BF36AF6E4}] ST - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll [2004-08-13 155648] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9ECB9560-04F9-4bbc-943D-298DDF1699E1}] CNisExtBho Class - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll [2004-02-05 131072] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}] Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll [2009-03-11 657904] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0}] MSNToolBandBHO - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll [2006-01-17 282624] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDF3E430-B101-42AD-A544-FADC6B084872}] CNavExtBho Class - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll [2004-04-07 103536] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}] SingleInstance Class - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll [2008-07-28 160496] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - Web assistant - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll [2004-02-05 131072] {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - Norton AntiVirus - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll [2004-04-07 103536] {25D8BACF-3DE2-4B48-AE22-D659B8D835B0} {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - MSN - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll [2006-01-17 282624] {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2008-07-28 882416] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "Raccourci vers la page des propriétés de High Definition Audio"=C:\WINDOWS\system32\HDAudPropShortcut.exe [2004-03-17 61952] "SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2004-07-28 77824] "AlcWzrd"=C:\WINDOWS\ALCWZRD.EXE [2004-07-28 2551808] "Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2004-07-20 57344] "ATIPTA"=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [2004-06-01 335872] "VAIO Update 2"=C:\Program Files\sony\vaio update 2\VAIOUpdt.exe [2004-06-29 147456] "ccApp"=C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe [2006-04-04 71304] "URLLSTCK.exe"=C:\Program Files\Norton Internet Security\UrlLstCk.exe [2004-01-20 70760] "SSC_UserPrompt"=C:\Program Files\Fichiers communs\Symantec Shared\Security Center\UsrPrmpt.exe [2004-11-10 218240] "VZRemoteCommander"=C:\Program Files\Sony\VAIO Zone Remote Commander\AvRmtCtr.exe [2004-08-05 184320] "PDService.exe"=C:\Program Files\Utimaco\SafeGuard PrivateDisk\pdservice.exe [2004-07-06 40960] "Symantec NetDriver Monitor"=C:\PROGRA~1\SYMNET~1\SNDMon.exe [2005-05-28 100056] "VMConsole.exe"=C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VMConsole.exe [2004-06-23 557056] "NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648] "InCD"=C:\Program Files\Ahead\InCD\InCD.exe [2004-11-26 1349120] "NWEReboot"= [] "QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2007-04-27 282624] "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2007-06-28 270648] "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232] "swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-03-11 39408] C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage Assistant d'Acrobat.lnk - C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe Audio Filter.lnk - C:\Program Files\Sony\sonicstage mastering studio\audio filter\SSMSFilter.exe État de l'enregistrement.lnk - C:\Program Files\Sony\vaio entertainment\VzTrayIcon.exe C:\Documents and Settings\NEW\Menu Démarrer\Programmes\Démarrage Programme de démarrage du Mode automatique Click to DVD.lnk - C:\Program Files\Sony\click to dvd 2\ctdatsvr.exe VAIO Launcher.lnk - C:\Program Files\Sony\VAIO Launcher\Launcher.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon] C:\WINDOWS\system32\WgaLogon.dll [2006-06-19 702768] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=144 "NoSetActiveDesktop"=0 "NoActiveDesktopChanges"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "HonorAutoRunSetting"= "NoSetActiveDesktop"= "NoActiveDesktopChanges"= [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Program Files\Sony\vaio media 3.1\Vc.exe"="C:\Program Files\Sony\vaio media 3.1\Vc.exe:*:Disabled:[VAIO Media] VAIO Media" "C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe"="C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe:*:Enabled:[VAIO Media] HTTP Server" "C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe"="C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe:*:Enabled:[VAIO Media] UPnP Server" "C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VMConsole.exe"="C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VMConsole.exe:*:Enabled:[VAIO Media] SNAC Server" "C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VCSW\VCSW.exe"="C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VCSW\VCSW.exe:*:Enabled:VAIO Entertainment UPnP Client Adapter" "C:\Program Files\Sony\vaio media 3.1\VmpClient.exe"="C:\Program Files\Sony\vaio media 3.1\VmpClient.exe:*:Enabled:VAIO Media Client registry tool" "C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:MSN Messenger 7.5" "C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes" "C:\Program Files\Internet Explorer\iexplore.exe"="C:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer" "C:\Program Files\Ahead\Nero ShowTime\ShowTime.exe"="C:\Program Files\Ahead\Nero ShowTime\ShowTime.exe:*:Enabled:Nero ShowTime" "C:\Program Files\eMule\emule.exe"="C:\Program Files\eMule\emule.exe:*:Disabled:eMule" "C:\Program Files\Kazaa\kazaa.exe"="C:\Program Files\Kazaa\kazaa.exe:*:Disabled:Kazaa Media Desktop" "C:\Program Files\Freeplayer\vlc\vlc.exe"="C:\Program Files\Freeplayer\vlc\vlc.exe:*:Disabled:VLC media player" "D:\Film\eMule\emule.exe"="D:\Film\eMule\emule.exe:*:Enabled:eMule" "C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger" "C:\Program Files\HomePlayer\HomePlayer.exe"="C:\Program Files\HomePlayer\HomePlayer.exe:*:Enabled:HomePlayer" "C:\Program Files\HomePlayer\VLC\vlc.exe"="C:\Program Files\HomePlayer\VLC\vlc.exe:*:Enabled:VLC HomePlayer" "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:MSN Messenger 7.5" "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Jeu 12 Mar - 1:18:25 | |
| ======List of files/folders created in the last 1 months====== 2009-03-11 22:57:56 ----D---- C:\Documents and Settings\NEW\Application Data\Yahoo! 2009-03-11 22:57:56 ----D---- C:\Documents and Settings\All Users\Application Data\Yahoo! Companion 2009-03-11 22:57:54 ----D---- C:\Program Files\Yahoo! 2009-03-11 22:57:51 ----D---- C:\Program Files\CCleaner 2009-03-11 22:24:39 ----D---- C:\_OTMoveIt 2009-03-11 21:48:44 ----D---- C:\Documents and Settings\All Users\Application Data\Google 2009-03-11 19:21:21 ----A---- C:\WINDOWS\system32\mucltui.dll.mui 2009-03-11 19:21:21 ----A---- C:\WINDOWS\system32\mucltui.dll 2009-03-11 03:02:26 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$ 2009-03-11 03:02:18 ----D---- C:\Program Files\Microsoft CAPICOM 2.1.0.2 2009-03-11 03:01:46 ----HDC---- C:\WINDOWS\$NtUninstallKB938464-v2$ 2009-03-11 03:01:34 ----HDC---- C:\WINDOWS\$NtUninstallKB958690$ 2009-03-11 03:00:40 ----HDC---- C:\WINDOWS\$NtUninstallKB959772_WM11$ 2009-03-11 02:33:27 ----D---- C:\Documents and Settings\NEW\Application Data\Malwarebytes 2009-03-11 02:33:21 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes 2009-03-11 02:33:20 ----D---- C:\Program Files\Malwarebytes' Anti-Malware 2009-03-11 01:49:51 ----D---- C:\Program Files\Norton Security Scan 2009-03-11 01:47:45 ----D---- C:\Documents and Settings\All Users\Application Data\Google Updater 2009-03-11 01:14:38 ----A---- C:\TB.txt 2009-03-11 01:13:31 ----D---- C:\ToolBar SD 2009-03-11 01:03:47 ----A---- C:\cleannavi.txt 2009-03-11 00:43:21 ----D---- C:\WINDOWS\Prefetch 2009-03-11 00:40:31 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$ 2009-03-11 00:40:10 ----HDC---- C:\WINDOWS\$NtUninstallKB960714$ 2009-03-11 00:39:53 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$ 2009-03-11 00:39:36 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$ 2009-03-11 00:39:16 ----HDC---- C:\WINDOWS\$NtUninstallKB958215$ 2009-03-11 00:38:58 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$ 2009-03-11 00:38:41 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$ 2009-03-11 00:38:22 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$ 2009-03-11 00:38:04 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$ 2009-03-11 00:37:47 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$ 2009-03-11 00:37:24 ----HDC---- C:\WINDOWS\$NtUninstallKB956390$ 2009-03-11 00:37:04 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$ 2009-03-11 00:36:46 ----HDC---- C:\WINDOWS\$NtUninstallKB954600$ 2009-03-11 00:36:27 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$ 2009-03-11 00:35:52 ----HDC---- C:\WINDOWS\$NtUninstallKB953838$ 2009-03-11 00:35:25 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$ 2009-03-11 00:35:07 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$ 2009-03-11 00:34:47 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$ 2009-03-11 00:34:29 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$ 2009-03-11 00:34:12 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$ 2009-03-11 00:33:53 ----HDC---- C:\WINDOWS\$NtUninstallKB951376$ 2009-03-11 00:33:34 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$ 2009-03-11 00:33:17 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$ 2009-03-11 00:33:01 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$ 2009-03-11 00:32:42 ----HDC---- C:\WINDOWS\$NtUninstallKB950759$ 2009-03-11 00:32:25 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$ 2009-03-11 00:32:08 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$ 2009-03-11 00:28:08 ----D---- C:\WINDOWS\system32\fr-fr 2009-03-11 00:28:05 ----D---- C:\WINDOWS\system32\fr 2009-03-11 00:28:05 ----D---- C:\WINDOWS\l2schemas 2009-03-11 00:28:04 ----D---- C:\WINDOWS\system32\bits 2009-03-11 00:23:10 ----D---- C:\WINDOWS\network diagnostic 2009-03-11 00:18:45 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$ 2009-03-10 23:27:25 ----A---- C:\fixnavi.txt 2009-03-10 23:24:37 ----D---- C:\Program Files\Navilog1 2009-03-10 22:32:05 ----D---- C:\Program Files\trend micro 2009-03-10 22:31:50 ----D---- C:\rsit 2009-03-10 22:13:30 ----A---- C:\rapport du 10-03-09.txt 2009-03-10 22:08:31 ----A---- C:\WINDOWS\system32\tmp.txt 2009-03-10 22:08:00 ----A---- C:\rapport.txt 2009-03-09 20:02:19 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP 2009-03-01 16:03:42 ----D---- C:\Documents and Settings\NEW\Application Data\PIFreePC 2009-03-01 15:08:23 ----D---- C:\Program Files\HomePlayer 2009-02-25 23:46:00 ----HDC---- C:\WINDOWS\$NtUninstallKB967715_0$ 2009-02-21 16:37:31 ----D---- C:\Program Files\vghd 2009-02-21 16:37:30 ----D---- C:\Documents and Settings\NEW\Application Data\vghd ======List of files/folders modified in the last 1 months====== 2009-03-11 23:11:50 ----D---- C:\WINDOWS\Temp 2009-03-11 22:58:05 ----D---- C:\Program Files\Fichiers communs\Symantec Shared 2009-03-11 22:57:54 ----RD---- C:\Program Files 2009-03-11 22:27:36 ----D---- C:\Program Files\Fichiers communs 2009-03-11 22:26:44 ----SD---- C:\WINDOWS\Tasks 2009-03-11 22:26:15 ----D---- C:\Program Files\Google 2009-03-11 22:25:13 ----A---- C:\WINDOWS\SchedLgU.Txt 2009-03-11 21:48:44 ----SHD---- C:\WINDOWS\Installer 2009-03-11 21:46:31 ----D---- C:\WINDOWS\system32\drivers 2009-03-11 21:40:21 ----D---- C:\WINDOWS 2009-03-11 21:35:55 ----RSD---- C:\WINDOWS\Fonts 2009-03-11 20:43:47 ----A---- C:\WINDOWS\NeroDigital.ini 2009-03-11 19:21:21 ----D---- C:\WINDOWS\system32 2009-03-11 19:21:20 ----HD---- C:\WINDOWS\inf 2009-03-11 19:21:20 ----D---- C:\WINDOWS\system32\CatRoot2 2009-03-11 03:02:32 ----D---- C:\WINDOWS\system32\CatRoot 2009-03-11 03:02:28 ----RSHDC---- C:\WINDOWS\system32\dllcache 2009-03-11 03:01:53 ----A---- C:\WINDOWS\imsins.BAK 2009-03-11 03:01:49 ----D---- C:\WINDOWS\WinSxS 2009-03-11 02:42:33 ----HD---- C:\Program Files\InstallShield Installation Information 2009-03-11 02:40:08 ----D---- C:\Documents and Settings\NEW\Application Data\Samsung 2009-03-11 02:00:26 ----D---- C:\Documents and Settings\NEW\Application Data\Google 2009-03-11 01:53:32 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe 2009-03-11 01:53:08 ----D---- C:\Program Files\Fichiers communs\Adobe 2009-03-11 01:52:50 ----D---- C:\Program Files\Adobe 2009-03-11 00:47:59 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2009-03-11 00:46:53 ----HD---- C:\WINDOWS\$hf_mig$ 2009-03-11 00:43:56 ----A---- C:\WINDOWS\OEWABLog.txt 2009-03-11 00:43:22 ----A---- C:\WINDOWS\setuplog.txt 2009-03-11 00:42:50 ----D---- C:\WINDOWS\system32\Setup 2009-03-11 00:42:50 ----D---- C:\WINDOWS\srchasst 2009-03-11 00:42:50 ----D---- C:\WINDOWS\AppPatch 2009-03-11 00:42:50 ----D---- C:\Program Files\Messenger 2009-03-11 00:42:50 ----D---- C:\Program Files\Internet Explorer 2009-03-11 00:42:49 ----D---- C:\WINDOWS\system32\wbem 2009-03-11 00:42:49 ----D---- C:\Program Files\Outlook Express 2009-03-11 00:42:49 ----D---- C:\Program Files\Fichiers communs\System 2009-03-11 00:37:45 ----D---- C:\WINDOWS\security 2009-03-11 00:28:25 ----D---- C:\WINDOWS\ServicePackFiles 2009-03-11 00:28:23 ----D---- C:\WINDOWS\ime 2009-03-11 00:28:23 ----D---- C:\WINDOWS\Help 2009-03-11 00:28:08 ----D---- C:\WINDOWS\system32\usmt 2009-03-11 00:28:04 ----D---- C:\WINDOWS\peernet 2009-03-11 00:28:04 ----D---- C:\Program Files\Movie Maker 2009-03-11 00:25:00 ----D---- C:\WINDOWS\system32\Restore 2009-03-11 00:25:00 ----D---- C:\WINDOWS\system32\npp 2009-03-11 00:24:59 ----D---- C:\WINDOWS\msagent 2009-03-11 00:24:57 ----D---- C:\Program Files\NetMeeting 2009-03-11 00:24:55 ----D---- C:\WINDOWS\system32\Com 2009-03-11 00:24:53 ----D---- C:\Program Files\Windows NT 2009-03-11 00:24:38 ----D---- C:\WINDOWS\system32\oobe 2009-03-11 00:24:36 ----D---- C:\WINDOWS\system 2009-03-11 00:22:06 ----D---- C:\WINDOWS\system32\ReinstallBackups 2009-03-11 00:15:45 ----D---- C:\WINDOWS\EHome 2009-03-10 23:54:56 ----SD---- C:\WINDOWS\Downloaded Program Files 2009-03-09 23:09:57 ----SD---- C:\Documents and Settings\NEW\Application Data\Microsoft 2009-03-09 22:30:35 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared 2009-03-01 09:52:42 ----D---- C:\Program Files\Freeplayer 2009-02-23 07:51:09 ----D---- C:\Documents and Settings\All Users\Application Data\ZoomBrowser 2009-02-23 07:51:03 ----D---- C:\Documents and Settings\NEW\Application Data\ZoomBrowser EX | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Jeu 12 Mar - 1:18:56 | |
| ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R1 DMICall;Sony DMI Call service; C:\WINDOWS\system32\DRIVERS\DMICall.sys [2000-12-05 3952] R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Fichiers communs\Symantec Shared\EENGINE\eeCtrl.sys [] R1 InCDPass;InCDPass; C:\WINDOWS\System32\DRIVERS\InCDPass.sys [2004-11-26 28928] R1 incdrm;InCD Reader; C:\WINDOWS\system32\drivers\incdrm.sys [2004-11-26 27648] R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2008-04-14 40576] R1 kbdhid;Pilote HID de clavier; C:\WINDOWS\System32\DRIVERS\kbdhid.sys [2008-04-14 14720] R1 PrivateDisk;PrivateDisk; C:\WINDOWS\System32\Drivers\PrivateDiskM.sys [2004-07-06 45627] R1 SAVRT;SAVRT; \??\C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVRT.SYS [] R1 SAVRTPEL;SAVRTPEL; \??\C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVRTPEL.SYS [] R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2006-07-24 5632] R1 SYMTDI;SYMTDI; C:\WINDOWS\System32\Drivers\SYMTDI.SYS [2005-04-05 267192] R2 irda;Protocole IrDA; C:\WINDOWS\system32\DRIVERS\irda.sys [2008-04-13 88192] R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2004-03-17 13059] R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\System32\DRIVERS\arp1394.sys [2008-04-13 60800] R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2004-06-01 729088] R3 E1000;Intel(R) PRO/1000 Adapter Driver; C:\WINDOWS\System32\DRIVERS\e1000325.sys [2003-08-29 125952] R3 GEARAspiWDM;GEARAspiWDM; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2006-09-19 15664] R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384] R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-13 10368] R3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSF_DP.sys [2004-04-13 1041536] R3 HSFHWAZL;HSFHWAZL; C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys [2004-04-13 160640] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2004-07-29 2216128] R3 mouhid;Pilote HID de souris; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-08-23 12288] R3 NAVENG;NAVENG; \??\C:\PROGRA~1\FICHIE~1\SYMANT~1\VIRUSD~1\20090130.003\NAVENG.Sys [] R3 NAVEX15;NAVEX15; \??\C:\PROGRA~1\FICHIE~1\SYMANT~1\VIRUSD~1\20090130.003\NavEx15.Sys [] R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\System32\DRIVERS\nic1394.sys [2008-04-13 61824] R3 Rasirda;Miniport réseau étendu (IrDA); C:\WINDOWS\System32\DRIVERS\rasirda.sys [2001-08-17 19584] R3 smrt;Sony MPEG RealTime encoder board; C:\WINDOWS\System32\DRIVERS\smrt.sys [2004-07-07 774784] R3 SYMDNS;SYMDNS; C:\WINDOWS\System32\Drivers\SYMDNS.SYS [2005-04-05 11512] R3 SymEvent;SymEvent; \??\C:\Program Files\Symantec\SYMEVENT.SYS [] R3 SYMFW;SYMFW; C:\WINDOWS\System32\Drivers\SYMFW.SYS [2005-04-05 173208] R3 SYMIDS;SYMIDS; C:\WINDOWS\System32\Drivers\SYMIDS.SYS [2005-04-05 36984] R3 SYMIDSCO;SYMIDSCO; \??\C:\PROGRA~1\FICHIE~1\SYMANT~1\SymcData\idsdefs\20090303.001\symidsco.sys [] R3 SYMNDIS;SYMNDIS; C:\WINDOWS\System32\Drivers\SYMNDIS.SYS [2005-04-05 47192] R3 SYMREDRV;SYMREDRV; C:\WINDOWS\System32\Drivers\SYMREDRV.SYS [2005-04-05 17976] R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2008-04-13 32128] R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\System32\DRIVERS\usbehci.sys [2008-04-13 30208] R3 usbhub;Concentrateur USB2; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-13 59520] R3 usbstor;Pilote de stockage de masse USB; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-13 26368] R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-13 20608] R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [2004-04-13 682752] R4 InCDfs;InCD File System; C:\WINDOWS\system32\drivers\InCDfs.sys [2004-11-26 98176] S3 61883;Pilote d'unité 61883; C:\WINDOWS\system32\DRIVERS\61883.sys [2008-04-13 48128] S3 Avc;Périphérique AVC; C:\WINDOWS\system32\DRIVERS\avc.sys [2008-04-13 38912] S3 catchme;catchme; \??\C:\DOCUME~1\NEW\LOCALS~1\Temp\catchme.sys [] S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [2008-04-13 17024] S3 fbxusb;FreeBox USB Network Adapter; C:\WINDOWS\system32\DRIVERS\fbxusb.sys [2003-12-31 18848] S3 HdAudAddService;Pilote de fonction Microsoft UAA pour Service High Definition Audio; C:\WINDOWS\system32\drivers\HdAudio.sys [2004-03-17 113664] S3 irsir;Pilote série infrarouge Microsoft; C:\WINDOWS\system32\DRIVERS\irsir.sys [2001-08-17 18688] S3 MSDV;Microsoft DV Camera and VCR; C:\WINDOWS\system32\DRIVERS\msdv.sys [2008-04-13 51200] S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504] S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\System32\DRIVERS\NABTSFEC.sys [2008-04-13 85248] S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [2008-04-13 10880] S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\System32\DRIVERS\SLIP.sys [2008-04-13 11136] S3 streamip;BDA IPSink; C:\WINDOWS\System32\DRIVERS\StreamIP.sys [2008-04-13 15232] S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104] S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528] S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\System32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200] S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944] S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys [] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2007-06-28 106496] R2 CCALib8;Canon Camera Access Library 8; C:\Program Files\Canon\CAL\CALMAIN.exe [2006-03-30 96341] R2 ccEvtMgr;Symantec Event Manager; C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe [2006-04-04 255624] R2 ccProxy;Symantec Network Proxy; C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe [2005-03-21 218712] R2 ccSetMgr;Symantec Settings Manager; C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe [2006-04-04 235144] R2 InCDsrv;InCD Helper; C:\Program Files\Ahead\InCD\InCDsrv.exe [2004-11-26 812032] R2 Irmon;Moniteur infrarouge; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe [2007-01-17 61440] R2 navapsvc;Service Norton AntiVirus Auto-Protect; C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe [2004-05-12 158832] R2 Planificateur LiveUpdate automatique;Planificateur LiveUpdate automatique; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe [2006-08-03 100032] R2 SAVScan;SAVScan; C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe [2005-01-25 194272] R2 SNDSrvc;Symantec Network Drivers Service; C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe [2005-04-05 206552] R2 SymWSC;SymWMI Service; C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe [2004-11-02 316544] R2 VAIO Entertainment File Import Service;VAIO Entertainment File Import Service; C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe [2004-07-08 118877] R2 VAIO Entertainment Task Scheduler;VAIO Entertainment Task Scheduler; C:\Program Files\Sony\vaio entertainment\VzTaskScheduler.exe [2004-07-28 401408] R2 VAIOMediaPlatform-IntegratedServer-AppServer;VAIO Media Integrated Server; C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe [2004-07-09 1826816] R2 VAIOMediaPlatform-IntegratedServer-HTTP;VAIO Media Integrated Server (HTTP); C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [2004-06-16 57344] R2 VAIOMediaPlatform-IntegratedServer-UPnP;VAIO Media Integrated Server (UPnP); C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [2004-06-22 733184] R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] R3 iPod Service;Service de l'iPod; C:\Program Files\iPod\bin\iPodService.exe [2007-06-28 501048] R3 VAIO Entertainment Aggregation and Control Service;VAIO Entertainment Aggregation and Control Service; C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe [2004-07-08 118784] R3 VAIO Entertainment TV Device Arbitration Service;VAIO Entertainment TV Device Arbitration Service; C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe [2004-07-08 69632] S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-03-11 182768] S2 InCDsrvR;InCD Helper (read only); C:\Program Files\Ahead\InCD\InCDsrv.exe [2004-11-26 812032] S2 SBService;ScriptBlocking Service; C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe [2003-06-24 66784] S2 VCI;VAIO Cooporated Initialisation; C:\Program Files\Sony\VAIO Cooperated Initialisation\VCI_SVC.exe [2004-08-05 397824] S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe [2005-06-11 68096] S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800] S3 ccPwdSvc;Symantec Password Validation; C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe [2006-04-04 87688] S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144] S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632] S3 LiveUpdate;LiveUpdate; C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE [2006-08-03 2119360] S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136] S3 VAIO Entertainment UPnP Client Adapter;VAIO Entertainment UPnP Client Adapter; C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VCSW\VCSW.exe [2004-07-08 278528] S3 VAIOMediaPlatform-Mobile-Gateway;VAIO Media Gateway Server; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe [2004-06-16 188416] S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016] -----------------EOF----------------- | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Jeu 12 Mar - 1:21:06 | |
| Je vais aller également me coucher. Merci pour tout. Je repasserai demain pour voir si tu ne trouves pas d'autres erreurs dans mon rapport. Sinon je suis partant pour l'anti virus plus performant que Norton. Je te remercie encore pour tout. Merci de ta patience | |
|
| |
plopus Helper
Nombre de messages : 238 Age : 38 Localisation : isere Date d'inscription : 20/01/2009
| Sujet: Re: virus fond écran impossible de modifier Jeu 12 Mar - 10:30:36 | |
| as tu fait otmoveit ?
fait le et poste moi le rapport
ici : Poste le rapport situé dans ce dossier : C:\_OTMoveIt\MovedFiles | |
|
| |
plopus Helper
Nombre de messages : 238 Age : 38 Localisation : isere Date d'inscription : 20/01/2009
| Sujet: Re: virus fond écran impossible de modifier Jeu 12 Mar - 20:50:26 | |
| et as tu fait aussi un scan complet avec NORTON supprime tout ce qu'il trouve et poste le rapport
ensuite je te le ferais desinstallé proprement | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Jeu 12 Mar - 21:19:07 | |
| Rapport Otmoveit : ========== PROCESSES ========== Process explorer.exe killed successfully. ========== FILES ========== File/Folder c:\program files\altnet\points manager\points manager.exe -s not found. ========== REGISTRY ========== Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4E7BD74F-2B8D-469E-90F0-F66AB581A933}\\ not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\AltnetPointsManager not found. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{25D8BACF-3DE2-4B48-AE22-D659B8D835B0} not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25D8BACF-3DE2-4B48-AE22-D659B8D835B0} \ not found. ========== SERVICES/DRIVERS ========== Unable to stop service AltnetPointsManager . ========== COMMANDS ========== File delete failed. C:\DOCUME~1\NEW\LOCALS~1\Temp\~DF865D.tmp scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\NEW\LOCALS~1\Temp\~WS1.tmp scheduled to be deleted on reboot. User's Temp folder emptied. User's Temporary Internet Files folder emptied. User's Internet Explorer cache folder emptied. Local Service Temp folder emptied. File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot. Local Service Temporary Internet Files folder emptied. File delete failed. C:\WINDOWS\temp\JETCE4C.tmp scheduled to be deleted on reboot. File delete failed. C:\WINDOWS\temp\JETCEAA.tmp scheduled to be deleted on reboot. File delete failed. C:\WINDOWS\temp\JETD234.tmp scheduled to be deleted on reboot. File delete failed. C:\WINDOWS\temp\JETE290.tmp scheduled to be deleted on reboot. File delete failed. C:\WINDOWS\temp\JETE37A.tmp scheduled to be deleted on reboot. Windows Temp folder emptied. Java cache emptied. Temp folders emptied. Explorer started successfully OTMoveIt3 by OldTimer - Version 1.0.8.0 log created on 03122009_190954 Files moved on Reboot... C:\DOCUME~1\NEW\LOCALS~1\Temp\~DF865D.tmp moved successfully. File C:\DOCUME~1\NEW\LOCALS~1\Temp\~WS1.tmp not found! File move failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be moved on reboot. File C:\WINDOWS\temp\JETCE4C.tmp not found! C:\WINDOWS\temp\JETCEAA.tmp moved successfully. File C:\WINDOWS\temp\JETD234.tmp not found! File C:\WINDOWS\temp\JETE290.tmp not found! File C:\WINDOWS\temp\JETE37A.tmp not found! | |
|
| |
plopus Helper
Nombre de messages : 238 Age : 38 Localisation : isere Date d'inscription : 20/01/2009
| Sujet: Re: virus fond écran impossible de modifier Jeu 12 Mar - 21:31:40 | |
| clic ici http://www.cijoint.fr/cjlink.php?file=cj200903/cijqHO1JtE.txt et fait ce qui a d'ecrit pour recuperer le fichier et suit les indication
ce sont les memes que les precedentes c'est normal !
et fait un scan avec NORTON et poste moi le rapport stp | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Jeu 12 Mar - 22:12:27 | |
| Le rapport ne donne rien sur Norton : Catégorie: Erreurs Date,Fonction,Message d'erreur,Code d'erreur,Version du produit,Nom d'utilisateur,Nom d'ordinateur,Détails
Alerte concernant les menaces : 10/03/2009 23:27:34,Blocage de script,Script suspect,Autorisé,Script,N/A,FileSystem Object : CreateTextFile,Inconnu,Inconnu,NEW,PAPA,Source :C:\OS.vbs 10/03/2009 22:09:53,Blocage de script,Script suspect,Autorisé,Script,N/A,FileSystem Object : CreateTextFile,Inconnu,Inconnu,NEW,PAPA,Source :C:\Documents and Settings\NEW\Bureau\SmitfraudFix\ScanDNS.vbs 10/03/2009 22:08:53,Blocage de script,Script suspect,Autorisé,Script,N/A,FileSystem Object : CreateTextFile,Inconnu,Inconnu,NEW,PAPA,Source :C:\Documents and Settings\NEW\Bureau\SmitfraudFix\GetValue.vbs 10/03/2009 22:08:46,Blocage de script,Script suspect,Accès autorisé,Script,N/A,FileSystem Object : CreateTextFile,Inconnu,Inconnu,NEW,PAPA,Source :C:\WINDOWS\system32\GetValue.vbs 10/03/2009 22:08:17,Blocage de script,Script suspect,Accès autorisé,Script,N/A,FileSystem Object : CreateTextFile,Inconnu,Inconnu,NEW,PAPA,Source :C:\Documents and Settings\NEW\Bureau\SmitfraudFix\ProcessList.vbs 10/03/2009 22:06:48,Blocage de script,Script suspect,Accès autorisé,Script,N/A,FileSystem Object : CreateTextFile,Inconnu,Inconnu,NEW,PAPA,Source :C:\Documents and Settings\NEW\Bureau\SmitfraudFix\GetPaths.vbs | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Jeu 12 Mar - 22:17:34 | |
| Je reviens vers 21 h. Je dois m'occuper de mon fils. A plus. Merci encore | |
|
| |
plopus Helper
Nombre de messages : 238 Age : 38 Localisation : isere Date d'inscription : 20/01/2009
| Sujet: Re: virus fond écran impossible de modifier Jeu 12 Mar - 22:44:59 | |
| ok, tu feras la manip de mon poste precedent puis :
- va dans demarrer
- panneau de configuration
- ajout et suppression de programmes
- desinstalle NORTON
- puis va ICI et telecharge l'outils de desinstallation de norton et execute le
puis telecharge CCleaner ici http://www.filehippo.com/download_ccleaner/ ouvre CCleaner va dans option/avanvé et decoche la premier ligne et nettoie ton registre et tes fichier temporaire au moins 2fois jusqu'a trouver 0erreur si tu le souhaite donc insatlle antivir en francais maintenant http://www.commentcamarche.net/telecharger/telecharger-55-antivir ensuite double clic sur le parapluie rouge dans la barre des tache en bas a droite : - a l'ecran d'accueil clic sur F8 - ensuite coche en haut a gauche "expert mode" - ensuite selectionne dessous SCANNER - ensuite dans le cadre de droite tu coche "tous les fichiers" et " Rech.rootkit au dem. de la recherche" puis met ok - et selectionne "TOUT les fichiers" puis fait une mise a jour et lance un scan complet supprime tout ce qu'il trouve (si c'est le cas tu auras des alertes au fur et a mesure) et POSTE le rapport | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Ven 13 Mar - 0:11:53 | |
| voici le résultat de l'analuse Norton : Enregistrements principaux d'amorce analysés : 2 Enregistrements principaux d'amorce infectés : 0 Enregistrements principaux d'amorce réparés : 0 Enregistrements d'amorce analysés : 2 Enregistrements d'amorce infectés : 0 Enregistrements d'amorce réparés : 0 Fichiers analysés : 248118 Menaces détectées : 0 Fichiers réparés : 0 Fichiers mis en quarantaine : 0 Fichiers supprimés : 0 Fichiers exclus : 0 | |
|
| |
antonio Membre
Nombre de messages : 40 Age : 55 Localisation : boulogne billancourt Date d'inscription : 10/03/2009
| Sujet: Re: virus fond écran impossible de modifier Ven 13 Mar - 0:18:01 | |
| Est ce que je peux télécharger Antivir et garder Norton comme 2°antivirus. Au cas ou Antivir fonctionne pas correctement. Il faut dire que je n'ai rien à perdre étant donné que norton ne détecte pas grand chose. Est que je peux le garder tout de même ? Par contre impossible de télécharger Antivir sur le bureau Antivir par ton lien http://www.commentcamarche.net/telecharger/telecharger-55-antivir
Par contre j'ai récupérer Antivir 8.2.0.51. Je peux l'utiliser ? | |
|
| |
plopus Helper
Nombre de messages : 238 Age : 38 Localisation : isere Date d'inscription : 20/01/2009
| Sujet: Re: virus fond écran impossible de modifier Ven 13 Mar - 10:16:14 | |
| bonjour
SURTOUT ne JAMAIS avoir 2 antivirus sur ta machine cela la ralentit enormement et en plus et surtout la le + genant les antivirus rentre en conflit et tu es moins bien protege donc desinstalle NORTON comme expliqué
puis telecharge antivir ici http://www.commentcamarche.net/telecharger/telecharger-55-antivir
ATTENTION sur certains site il te font telechargé la version payante en evaluation de 30 jours !! prends celle sur mon lien tu clic sur telecharger et fait ce que je te demande | |
|
| |
Contenu sponsorisé
| Sujet: Re: virus fond écran impossible de modifier | |
| |
|
| |
| virus fond écran impossible de modifier | |
|