Bonjour à tous, je suis nouveau sur ce forum et j'espère que vous pourrez faire quelque chose pour moi.
Voila mon problème.
Depuis quelques temps je me coltine un processus IEXPLORE qui bloque mon CPU à 100%, je peux le tuer mais bien-sûr il revient.
J'ai AVAST(à jour)
J'ai passé SPYBOT, AD-AWARE, combofix et a2free ça m'a enlevé pas mal de saletés mais j'ai toujours mon problème.
Ci-dessous le rapport de HijackThis.
Ci quelqu'un pouvait m'aider ce serait vraiment sympa.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:48:09, on 05/01/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
D:WINDOWSSystem32smss.exe
D:WINDOWSsystem32winlogon.exe
D:WINDOWSsystem32services.exe
D:WINDOWSsystem32lsass.exe
D:WINDOWSsystem32svchost.exe
D:WINDOWSSystem32svchost.exe
D:Program FilesAlwil SoftwareAvast4aswUpdSv.exe
D:Program FilesAlwil SoftwareAvast4ashServ.exe
D:WINDOWSsystem32spoolsv.exe
D:Program Filesa-squared Freea2service.exe
D:WINDOWSsystem32agrsmsvc.exe
D:Program FilesLogMeInx86RaMaint.exe
D:Program FilesLogMeInx86LogMeIn.exe
D:Program FilesLogMeInx86LMIGuardian.exe
D:Program FilesAlcohol SoftAlcohol 120StarWindStarWindServiceAE.exe
D:WINDOWSsystem32svchost.exe
D:Program FilesRealVNCVNC4WinVNC4.exe
D:Program FilesAlwil SoftwareAvast4ashMaiSv.exe
D:Program FilesAlwil SoftwareAvast4ashWebSv.exe
D:WINDOWSExplorer.EXE
D:WINDOWSsystem32igfxtray.exe
D:WINDOWSsystem32hkcmd.exe
D:WINDOWSsystem32igfxpers.exe
D:WINDOWSRTHDCPL.EXE
D:WINDOWSSystem32driversieudinit.exe
D:Program FilesFichiers communsNokiaNCLToolsNclTray.exe
D:Program FilesLogMeInx86LogMeInSystray.exe
D:Program FilesJavajre1.6.0_05injusched.exe
D:Program FilesSlySoftCloneCDCloneCDTray.exe
D:PROGRA~1ALWILS~1Avast4ashDisp.exe
D:WINDOWSsystem32
undll32.exe
D:WINDOWSsystem32ctfmon.exe
D:Program FilesDAEMON Tools Litedaemon.exe
D:Program FilesFichiers communsNeroLibNMBgMonitor.exe
D:Program FilesMicrosoft ActiveSyncwcescomm.exe
D:Program FilesSpybot - Search & DestroyTeaTimer.exe
D:Program FilesLogMeInx86LMIGuardian.exe
D:Program FilesAccessoiresOutils systèmeTClock clock.exe
D:WINDOWSsystem32igfxsrvc.exe
D:Program FilesOpenOffice.org 2.4programsoffice.exe
D:PROGRA~1FICHIE~1NokiaServicesSERVIC~1.EXE
D:Program FilesOpenOffice.org 2.4programsoffice.BIN
D:Program FilesFichiers communsNeroLibNMIndexingService.exe
D:PROGRA~1MICROS~2
apimgr.exe
D:Program FilesFichiers communsNeroLibNMIndexStoreSvr.exe
D:Program FilesMicro ApplicationVotre PC prend la paroleMDVox.exe
D:DOCUME~1ADMINI~1LOCALS~1TempRtkBtMnt.exe
D:WINDOWSsystem32wuauclt.exe
D:WINDOWSsystem32 askmgr.exe
D:Program FilesMozilla Firefoxfirefox.exe
D:Program FilesRealVNCVNC4vncviewer.exe
D:Program FilesJavajre1.6.0_05injucheck.exe
D:Documents and SettingsAdministrateurBureausniffle.exe
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.google.fr/
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Local Page =
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName =
R3 - URLSearchHook: Come2PlayK2P Toolbar - {b8a5b62c-517f-42a5-85ae-29b5497fb15f} - D:Program FilesCome2PlayK2P bCome.dll
F3 - REG:win.ini: load=D:WINDOWSSystem32driversieudinit.exe
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:Program FilesFichiers communsAdobeAcrobatActiveXAcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - D:PROGRA~1SPYBOT~1SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:Program FilesJavajre1.6.0_05inssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - D:Program FilesFichiers communsMicrosoft SharedWindows LiveWindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - D:Program FilesMSN AppsST 1.03.0000.1005en-xustmain.dll
O2 - BHO: Phishing Agent - {B34E20E5-96B2-46AC-9D68-C6B2CD293C2C} - D:WINDOWSDriversPhishAgnt.dll
O2 - BHO: Come2PlayK2P Toolbar - {b8a5b62c-517f-42a5-85ae-29b5497fb15f} - D:Program FilesCome2PlayK2P bCome.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - D:Program FilesMSN AppsMSN Toolbar 1.02.5000.1021frmsntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - D:Program FilesMSN AppsMSN Toolbar 1.02.5000.1021frmsntb.dll
O3 - Toolbar: Come2PlayK2P Toolbar - {b8a5b62c-517f-42a5-85ae-29b5497fb15f} - D:Program FilesCome2PlayK2P bCome.dll
O3 - Toolbar: Votre PC prend la parole - {CEDDA62B-5FBE-4AB2-AE2E-5E069F555555} - D:Program FilesMicro ApplicationVotre PC prend la paroleIEMediaDICOIEToolbarSonLocal.dll
O4 - HKLM..Run: [IgfxTray] D:WINDOWSsystem32igfxtray.exe
O4 - HKLM..Run: [HotKeysCmds] D:WINDOWSsystem32hkcmd.exe
O4 - HKLM..Run: [Persistence] D:WINDOWSsystem32igfxpers.exe
O4 - HKLM..Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM..Run: [Nokia Tray Application] D:Program FilesFichiers communsNokiaNCLToolsNclTray.exe
O4 - HKLM..Run: [REGSHAVE] D:Program FilesREGSHAVEREGSHAVE.EXE /AUTORUN
O4 - HKLM..Run: [NeroFilterCheck] D:Program FilesFichiers communsNeroLibNeroCheck.exe
O4 - HKLM..Run: [LogMeIn GUI] "D:Program FilesLogMeInx86LogMeInSystray.exe"
O4 - HKLM..Run: [Adobe Reader Speed Launcher] "D:Program FilesAdobeReader 8.0ReaderReader_sl.exe"
O4 - HKLM..Run: [SunJavaUpdateSched] "D:Program FilesJavajre1.6.0_05injusched.exe"
O4 - HKLM..Run: [CloneCDTray] "D:Program FilesSlySoftCloneCDCloneCDTray.exe" /s
O4 - HKLM..Run: [avast!] D:PROGRA~1ALWILS~1Avast4ashDisp.exe
O4 - HKLM..Run: [IgfxSys] rundll32.exe "D:WINDOWSDriversIgfxSys.dll",StartProtector
O4 - HKCU..Run: [CTFMON.EXE] D:WINDOWSsystem32ctfmon.exe
O4 - HKCU..Run: [DAEMON Tools Lite] "D:Program FilesDAEMON Tools Litedaemon.exe"
O4 - HKCU..Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "D:Program FilesFichiers communsNeroLibNMBgMonitor.exe"
O4 - HKCU..Run: [AlcoholAutomount] "D:Program FilesAlcohol SoftAlcohol 120axcmd.exe" /automount
O4 - HKCU..Run: [H/PC Connection Agent] "D:Program FilesMicrosoft ActiveSyncwcescomm.exe"
O4 - HKCU..Run: [SpybotSD TeaTimer] D:Program FilesSpybot - Search & DestroyTeaTimer.exe
O4 - HKCU..Run: [LMDVox] D:Program FilesMicro ApplicationVotre PC prend la paroleLMDVox.exe Lancement
O4 - HKLM..PoliciesExplorerRun: [ClipSrv] D:DOCUME~1ADMINI~1LOCALS~1APPLIC~1clipsrv.exe /waitservice
O4 - HKCU..PoliciesExplorerRun: [Cisvc] D:DOCUME~1ADMINI~1APPLIC~1MICROS~1cisvc.exe /waitservice
O4 - HKUSS-1-5-18..Run: [CTFMON.EXE] D:WINDOWSsystem32CTFMON.EXE (User 'SYSTEM')
O4 - HKUSS-1-5-18..RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%System32syssetub.dll" "%SystemRoot%System32syssetup.dll" (User 'SYSTEM')
O4 - HKUSS-1-5-18..RunOnce: [tscuninstall] %systemroot%system32 scupgrd.exe (User 'SYSTEM')
O4 - HKUSS-1-5-18..PoliciesExplorerRun: [IEudinit] D:DOCUME~1ADMINI~1APPLIC~1ieudinit.exe /waitservice (User 'SYSTEM')
O4 - HKUS.DEFAULT..Run: [CTFMON.EXE] D:WINDOWSsystem32CTFMON.EXE (User 'Default user')
O4 - HKUS.DEFAULT..RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%System32syssetub.dll" "%SystemRoot%System32syssetup.dll" (User 'Default user')
O4 - HKUS.DEFAULT..PoliciesExplorerRun: [IEudinit] D:DOCUME~1ADMINI~1APPLIC~1ieudinit.exe /waitservice (User 'Default user')
O4 - Startup: OpenOffice.org 2.4.lnk = D:Program FilesOpenOffice.org 2.4programquickstart.exe
O4 - Global Startup: TClock.lnk = ?
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:Program FilesJavajre1.6.0_05inssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:Program FilesJavajre1.6.0_05inssv.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - D:PROGRA~1MICROS~2INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - D:PROGRA~1MICROS~2INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - D:PROGRA~1MICROS~2INetRepl.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:PROGRA~1SPYBOT~1SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:PROGRA~1SPYBOT~1SDHelper.dll
O17 - HKLMSystemCCSServicesTcpip..{A53161C7-6AC3-4C96-8F82-43A2E640557B}: NameServer = 212.27.53.252,212.27.54.252
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - D:Program Filesa-squared Freea2service.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - D:WINDOWSsystem32agrsmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - D:Program FilesAlwil SoftwareAvast4aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - D:Program FilesAlwil SoftwareAvast4ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - D:Program FilesAlwil SoftwareAvast4ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - D:Program FilesAlwil SoftwareAvast4ashWebSv.exe
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - D:Program FilesLogMeInx86RaMaint.exe
O23 - Service: LogMeIn - LogMeIn, Inc. - D:Program FilesLogMeInx86LogMeIn.exe
O23 - Service: Network Connection - Unknown owner - D:WINDOWSsystem32setbug.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - D:Program FilesFichiers communsNeroLibNMIndexingService.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - D:Program FilesWinPcap
pcapd.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - D:Program FilesAlcohol SoftAlcohol 120StarWindStarWindServiceAE.exe
O23 - Service: VNC Server Version 4 (WinVNC4) - RealVNC Ltd. - D:Program FilesRealVNCVNC4WinVNC4.exe
--
End of file - 10346 bytes
MERCI D'AVANCE.