Voila mon problème.
Depuis quelques temps je me coltine un processus IEXPLORE qui bloque mon CPU à 100%, je peux le tuer mais bien-sûr il revient.
J'ai AVAST(à jour)
J'ai passé SPYBOT, AD-AWARE, combofix et a2free ça m'a enlevé pas mal de saletés mais j'ai toujours mon problème.
Ci-dessous le rapport de HijackThis.
Ci quelqu'un pouvait m'aider ce serait vraiment sympa.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:48:09, on 05/01/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
D:WINDOWSSystem32smss.exe
D:WINDOWSsystem32winlogon.exe
D:WINDOWSsystem32services.exe
D:WINDOWSsystem32lsass.exe
D:WINDOWSsystem32svchost.exe
D:WINDOWSSystem32svchost.exe
D:Program FilesAlwil SoftwareAvast4aswUpdSv.exe
D:Program FilesAlwil SoftwareAvast4ashServ.exe
D:WINDOWSsystem32spoolsv.exe
D:Program Filesa-squared Freea2service.exe
D:WINDOWSsystem32agrsmsvc.exe
D:Program FilesLogMeInx86RaMaint.exe
D:Program FilesLogMeInx86LogMeIn.exe
D:Program FilesLogMeInx86LMIGuardian.exe
D:Program FilesAlcohol SoftAlcohol 120StarWindStarWindServiceAE.exe
D:WINDOWSsystem32svchost.exe
D:Program FilesRealVNCVNC4WinVNC4.exe
D:Program FilesAlwil SoftwareAvast4ashMaiSv.exe
D:Program FilesAlwil SoftwareAvast4ashWebSv.exe
D:WINDOWSExplorer.EXE
D:WINDOWSsystem32igfxtray.exe
D:WINDOWSsystem32hkcmd.exe
D:WINDOWSsystem32igfxpers.exe
D:WINDOWSRTHDCPL.EXE
D:WINDOWSSystem32driversieudinit.exe
D:Program FilesFichiers communsNokiaNCLToolsNclTray.exe
D:Program FilesLogMeInx86LogMeInSystray.exe
D:Program FilesJavajre1.6.0_05injusched.exe
D:Program FilesSlySoftCloneCDCloneCDTray.exe
D:PROGRA~1ALWILS~1Avast4ashDisp.exe
D:WINDOWSsystem32 undll32.exe
D:WINDOWSsystem32ctfmon.exe
D:Program FilesDAEMON Tools Litedaemon.exe
D:Program FilesFichiers communsNeroLibNMBgMonitor.exe
D:Program FilesMicrosoft ActiveSyncwcescomm.exe
D:Program FilesSpybot - Search & DestroyTeaTimer.exe
D:Program FilesLogMeInx86LMIGuardian.exe
D:Program FilesAccessoiresOutils systèmeTClock clock.exe
D:WINDOWSsystem32igfxsrvc.exe
D:Program FilesOpenOffice.org 2.4programsoffice.exe
D:PROGRA~1FICHIE~1NokiaServicesSERVIC~1.EXE
D:Program FilesOpenOffice.org 2.4programsoffice.BIN
D:Program FilesFichiers communsNeroLibNMIndexingService.exe
D:PROGRA~1MICROS~2 apimgr.exe
D:Program FilesFichiers communsNeroLibNMIndexStoreSvr.exe
D:Program FilesMicro ApplicationVotre PC prend la paroleMDVox.exe
D:DOCUME~1ADMINI~1LOCALS~1TempRtkBtMnt.exe
D:WINDOWSsystem32wuauclt.exe
D:WINDOWSsystem32 askmgr.exe
D:Program FilesMozilla Firefoxfirefox.exe
D:Program FilesRealVNCVNC4vncviewer.exe
D:Program FilesJavajre1.6.0_05injucheck.exe
D:Documents and SettingsAdministrateurBureausniffle.exe
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.google.fr/
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Local Page =
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName =
R3 - URLSearchHook: Come2PlayK2P Toolbar - {b8a5b62c-517f-42a5-85ae-29b5497fb15f} - D:Program FilesCome2PlayK2P bCome.dll
F3 - REG:win.ini: load=D:WINDOWSSystem32driversieudinit.exe
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:Program FilesFichiers communsAdobeAcrobatActiveXAcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - D:PROGRA~1SPYBOT~1SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:Program FilesJavajre1.6.0_05inssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - D:Program FilesFichiers communsMicrosoft SharedWindows LiveWindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - D:Program FilesMSN AppsST1.03.0000.1005en-xustmain.dll
O2 - BHO: Phishing Agent - {B34E20E5-96B2-46AC-9D68-C6B2CD293C2C} - D:WINDOWSDriversPhishAgnt.dll
O2 - BHO: Come2PlayK2P Toolbar - {b8a5b62c-517f-42a5-85ae-29b5497fb15f} - D:Program FilesCome2PlayK2P bCome.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - D:Program FilesMSN AppsMSN Toolbar1.02.5000.1021frmsntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - D:Program FilesMSN AppsMSN Toolbar1.02.5000.1021frmsntb.dll
O3 - Toolbar: Come2PlayK2P Toolbar - {b8a5b62c-517f-42a5-85ae-29b5497fb15f} - D:Program FilesCome2PlayK2P bCome.dll
O3 - Toolbar: Votre PC prend la parole - {CEDDA62B-5FBE-4AB2-AE2E-5E069F555555} - D:Program FilesMicro ApplicationVotre PC prend la paroleIEMediaDICOIEToolbarSonLocal.dll
O4 - HKLM..Run: [IgfxTray] D:WINDOWSsystem32igfxtray.exe
O4 - HKLM..Run: [HotKeysCmds] D:WINDOWSsystem32hkcmd.exe
O4 - HKLM..Run: [Persistence] D:WINDOWSsystem32igfxpers.exe
O4 - HKLM..Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM..Run: [Nokia Tray Application] D:Program FilesFichiers communsNokiaNCLToolsNclTray.exe
O4 - HKLM..Run: [REGSHAVE] D:Program FilesREGSHAVEREGSHAVE.EXE /AUTORUN
O4 - HKLM..Run: [NeroFilterCheck] D:Program FilesFichiers communsNeroLibNeroCheck.exe
O4 - HKLM..Run: [LogMeIn GUI] "D:Program FilesLogMeInx86LogMeInSystray.exe"
O4 - HKLM..Run: [Adobe Reader Speed Launcher] "D:Program FilesAdobeReader 8.0ReaderReader_sl.exe"
O4 - HKLM..Run: [SunJavaUpdateSched] "D:Program FilesJavajre1.6.0_05injusched.exe"
O4 - HKLM..Run: [CloneCDTray] "D:Program FilesSlySoftCloneCDCloneCDTray.exe" /s
O4 - HKLM..Run: [avast!] D:PROGRA~1ALWILS~1Avast4ashDisp.exe
O4 - HKLM..Run: [IgfxSys] rundll32.exe "D:WINDOWSDriversIgfxSys.dll",StartProtector
O4 - HKCU..Run: [CTFMON.EXE] D:WINDOWSsystem32ctfmon.exe
O4 - HKCU..Run: [DAEMON Tools Lite] "D:Program FilesDAEMON Tools Litedaemon.exe"
O4 - HKCU..Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "D:Program FilesFichiers communsNeroLibNMBgMonitor.exe"
O4 - HKCU..Run: [AlcoholAutomount] "D:Program FilesAlcohol SoftAlcohol 120axcmd.exe" /automount
O4 - HKCU..Run: [H/PC Connection Agent] "D:Program FilesMicrosoft ActiveSyncwcescomm.exe"
O4 - HKCU..Run: [SpybotSD TeaTimer] D:Program FilesSpybot - Search & DestroyTeaTimer.exe
O4 - HKCU..Run: [LMDVox] D:Program FilesMicro ApplicationVotre PC prend la paroleLMDVox.exe Lancement
O4 - HKLM..PoliciesExplorerRun: [ClipSrv] D:DOCUME~1ADMINI~1LOCALS~1APPLIC~1clipsrv.exe /waitservice
O4 - HKCU..PoliciesExplorerRun: [Cisvc] D:DOCUME~1ADMINI~1APPLIC~1MICROS~1cisvc.exe /waitservice
O4 - HKUSS-1-5-18..Run: [CTFMON.EXE] D:WINDOWSsystem32CTFMON.EXE (User 'SYSTEM')
O4 - HKUSS-1-5-18..RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%System32syssetub.dll" "%SystemRoot%System32syssetup.dll" (User 'SYSTEM')
O4 - HKUSS-1-5-18..RunOnce: [tscuninstall] %systemroot%system32 scupgrd.exe (User 'SYSTEM')
O4 - HKUSS-1-5-18..PoliciesExplorerRun: [IEudinit] D:DOCUME~1ADMINI~1APPLIC~1ieudinit.exe /waitservice (User 'SYSTEM')
O4 - HKUS.DEFAULT..Run: [CTFMON.EXE] D:WINDOWSsystem32CTFMON.EXE (User 'Default user')
O4 - HKUS.DEFAULT..RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%System32syssetub.dll" "%SystemRoot%System32syssetup.dll" (User 'Default user')
O4 - HKUS.DEFAULT..PoliciesExplorerRun: [IEudinit] D:DOCUME~1ADMINI~1APPLIC~1ieudinit.exe /waitservice (User 'Default user')
O4 - Startup: OpenOffice.org 2.4.lnk = D:Program FilesOpenOffice.org 2.4programquickstart.exe
O4 - Global Startup: TClock.lnk = ?
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:Program FilesJavajre1.6.0_05inssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:Program FilesJavajre1.6.0_05inssv.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - D:PROGRA~1MICROS~2INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - D:PROGRA~1MICROS~2INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - D:PROGRA~1MICROS~2INetRepl.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:PROGRA~1SPYBOT~1SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:PROGRA~1SPYBOT~1SDHelper.dll
O17 - HKLMSystemCCSServicesTcpip..{A53161C7-6AC3-4C96-8F82-43A2E640557B}: NameServer = 212.27.53.252,212.27.54.252
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - D:Program Filesa-squared Freea2service.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - D:WINDOWSsystem32agrsmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - D:Program FilesAlwil SoftwareAvast4aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - D:Program FilesAlwil SoftwareAvast4ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - D:Program FilesAlwil SoftwareAvast4ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - D:Program FilesAlwil SoftwareAvast4ashWebSv.exe
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - D:Program FilesLogMeInx86RaMaint.exe
O23 - Service: LogMeIn - LogMeIn, Inc. - D:Program FilesLogMeInx86LogMeIn.exe
O23 - Service: Network Connection - Unknown owner - D:WINDOWSsystem32setbug.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - D:Program FilesFichiers communsNeroLibNMIndexingService.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - D:Program FilesWinPcap pcapd.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - D:Program FilesAlcohol SoftAlcohol 120StarWindStarWindServiceAE.exe
O23 - Service: VNC Server Version 4 (WinVNC4) - RealVNC Ltd. - D:Program FilesRealVNCVNC4WinVNC4.exe
--
End of file - 10346 bytes
MERCI D'AVANCE.
