(pas de sujet)

Le
ludo
bon ben je crois avoir trouvé. J'ai installé un programme contenant le
spyware Win32.Agent.chh par contre, pas moyen de le supprimer ou meme de
le retrouver.

Scan:
Kaspersky
Secuser.com (en ligne)
Ad-aware
Spybot
WIndows Defender
a-squared anti-malware
a-squared Free

Alors je poste un rapport hijackthis en espérant que quelqu'un puisse me
venir en aide, en vous remerciant, surtout que "ça me semble propre"
Running processes:
C:Windowssystem32taskeng.exe
C:Windowssystem32Dwm.exe
C:WindowsExplorer.EXE
C:Program FilesWindows DefenderMSASCui.exe
C:WindowsRtHDVCpl.exe
C:Program FilesJavajre1.6.0_05binjusched.exe
C:WindowsSystem32oodtray.exe
C:Program FilesCyberLinkPowerDVDPDVDServ.exe
C:Program FilesWindows Media Playerwmpnscfg.exe
C:Program FilesKaspersky LabKaspersky Anti-Virus 2009avp.exe
C:Program FilesCOMODOFirewallcfp.exe
C:WindowsSystem32undll32.exe
C:Program FilesRocketDockRocketDock.exe
C:Program FilesLogitechSetPointSetPoint.exe
C:Program FilesCommon FilesLogishrdKHAL2KHALMNPR.EXE
C:Program FilesSpybot - Search & DestroyTeaTimer.exe
C:PROGRAM FILESA-SQUARED FREEA2FREE.EXE
C:Program FilesInternet Exploreriexplore.exe
C:Program Filesa-squared Anti-Malwarea2wizard.exe
C:Program FilesMozilla Firefoxfirefox.exe
C:Program FilesMozilla Thunderbirdthunderbird.exe
C:UsersAUBOEUF-97cdaedDesktopHiJackThis.exe
C:Windowssystem32SearchFilterHost.exe

R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page =
http://go.microsoft.com/fwlink/?LinkIdT896
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page =
http://go.microsoft.com/fwlink/?LinkIdi157
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkIdi157
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkIdT896
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page =
http://go.microsoft.com/fwlink/?LinkIdT896
R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page =
http://go.microsoft.com/fwlink/?LinkIdi157
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant =
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch =
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader -
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Program FilesCommon
FilesAdobeAcrobatActiveXAcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer -
{3049C3E9-B461-4BC5-8870-4C09146192CA} - C:Program
FilesRealRealPlayerpbrowserrecordplugin.dll
O2 - BHO: Spybot-S&D IE Protection -
{53707962-6F74-2D53-2644-206D7942484F} - C:PROGRA~1SPYBOT~1SDHelper.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} -
C:Program FilesKaspersky LabKaspersky Anti-Virus 2009ievkbd.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -
C:Program FilesJavajre1.6.0_05binssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM..Run: [Windows Defender] %ProgramFiles%Windows
DefenderMSASCui.exe -hide
O4 - HKLM..Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM..Run: [Adobe Reader Speed Launcher] "C:Program
FilesAdobeReader 8.0ReaderReader_sl.exe"
O4 - HKLM..Run: [SunJavaUpdateSched] "C:Program
FilesJavajre1.6.0_05binjusched.exe"
O4 - HKLM..Run: [OODefragTray] C:Windowssystem32oodtray.exe
O4 - HKLM..Run: [RemoteControl] "C:Program
FilesCyberLinkPowerDVDPDVDServ.exe"
O4 - HKLM..Run: [LanguageShortcut] "C:Program
FilesCyberLinkPowerDVDLanguageLanguage.exe"
O4 - HKLM..Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM..Run: [TkBellExe] "C:Program FilesCommon
FilesRealUpdate_OBealsched.exe" -osboot
O4 - HKLM..Run: [AVP] "C:Program FilesKaspersky LabKaspersky
Anti-Virus 2009avp.exe"
O4 - HKLM..Run: [COMODO Firewall Pro] "C:Program
FilesCOMODOFirewallcfp.exe" -h
O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE
C:Windowssystem32NvCpl.dll,NvStartup
O4 - HKLM..Run: [NvMediaCenter] RUNDLL32.EXE
C:Windowssystem32NvMcTray.dll,NvTaskbarInit
O4 - HKLM..Run: [NeroFilterCheck] C:Program FilesCommon
FilesNeroLibNeroCheck.exe
O4 - HKLM..Run: [a-squared] "C:Program Filesa-squared
Anti-Malwarea2guard.exe"
O4 - HKCU..Run: [RocketDock] "C:Program FilesRocketDockRocketDock.exe"
O4 - HKCU..Run: [WMPNSCFG] C:Program FilesWindows Media
PlayerWMPNSCFG.exe
O4 - HKCU..Run: [SpybotSD TeaTimer] C:Program FilesSpybot - Search &
DestroyTeaTimer.exe
O4 - HKUSS-1-5-19..Run: [Sidebar] %ProgramFiles%Windows
SidebarSidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUSS-1-5-19..Run: [WindowsWelcomeCenter] rundll32.exe
oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUSS-1-5-20..Run: [Sidebar] %ProgramFiles%Windows
SidebarSidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:Program FilesCommon
FilesAdobeCalibrationAdobe Gamma Loader.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:Program
FilesLogitechSetPointSetPoint.exe
O4 - Global Startup: Microsoft Office.lnk = C:Program FilesMicrosoft
Office 2oooOfficeOSA9.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel -
res://C:PROGRA~1MICROS~2OFFICE11EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
C:Program FilesJavajre1.6.0_05binssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) -
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program
FilesJavajre1.6.0_05binssv.dll
O9 - Extra button: Statistiques de la protection du trafic Internet -
{1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:Program FilesKaspersky
LabKaspersky Anti-Virus 2009SCIEPlgn.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} -
C:PROGRA~1MICROS~2OFFICE11REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} -
C:PROGRA~1SPYBOT~1SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration -
{DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:PROGRA~1SPYBOT~1SDHelper.dll
O13 - Gopher Prefix:
O15 - Trusted Zone: http://www.secuser.com
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) -
http://a840.g.akamai.net/7/840/537/2005111401/housecall.trendmicro.com/housecall/xscan53.cab
O17 -
HKLMSystemCCSServicesTcpip..{21C18CEF-1FAF-4445-92F7-15B476DFC954}:
NameServer = 192.168.1.1
O17 -
HKLMSystemCS1ServicesTcpip..{21C18CEF-1FAF-4445-92F7-15B476DFC954}:
NameServer = 192.168.1.1
O17 -
HKLMSystemCS2ServicesTcpip..{21C18CEF-1FAF-4445-92F7-15B476DFC954}:
NameServer = 192.168.1.1
O20 - AppInit_DLLs: C:PROGRA~1KASPER~1KASPER~1mzvkbd.dll
C:Windowssystem32guard32.dll
O23 - Service: a-squared Anti-Malware Service (a2AntiMalware) - Emsi
Software GmbH - C:Program Filesa-squared Anti-Malwarea2service.exe
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH -
C:Program Filesa-squared Freea2service.exe
O23 - Service: Adobe LM Service - Unknown owner - C:Program
FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe
O23 - Service: Kaspersky Anti-Virus (avp) - Kaspersky Lab - C:Program
FilesKaspersky LabKaspersky Anti-Virus 2009avp.exe
O23 - Service: COMODO Firewall Pro Helper Service (cmdAgent) - Unknown
owner - C:Program FilesCOMODOFirewallcmdagent.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. -
C:Program FilesCommon FilesLogishrdBluetoothLBTServ.exe
O23 - Service: NMIndexingService - Nero AG - C:Program FilesCommon
FilesNeroLibNMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA
Corporation - C:Windowssystem32vvsvc.exe
O23 - Service: O&O Defrag - O&O Software GmbH -
C:Windowssystem32oodag.exe
O23 - Service: PnkBstrA - Unknown owner - C:Windowssystem32PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:Windowssystem32PnkBstrB.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown
owner - C:Program FilesCyberLinkShared filesRichVideo.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer
Networking Ltd. - C:Program FilesSpybot - Search & DestroySDWinSec.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division
Software - C:Program FilesAlcohol SoftAlcohol
120StarWindStarWindServiceAE.exe
O23 - Service: Steam Client Service - Valve Corporation - C:Program
FilesCommon FilesSteamSteamService.exe

--
End of file - 8516 bytes
Vidéos High-Tech et Jeu Vidéo
Téléchargements
Vos réponses
Gagnez chaque mois un abonnement Premium avec GNT : Inscrivez-vous !
Trier par : date / pertinence
MCI \(ex do ré Mi chel la si do\) [MVP]
Le #11201161
Réponse dans l'autre fil.
Publicité
Poster une réponse
Anonyme