J'ai depuis près d'une semaine des problèmes avec mon PC de boulot.
Au départ, Internet Explorer ne fonctionnait pas, mais j'ai opté pour Firefox, comme à la maison.
Ensuite, des fenêtres se sont mises à apparaître, ainsi que les processus suivants
hki154.exe, hki887.exe, hki952.exe, ainsi que uF0djNql.exe.
Spybot, Malwarebyte et Symntec Antivirus ont tourné, même en mode sans échec. Seul Spybot trouve des trucs, mais apparemment pas détruits...
Souvent des erreurs, des plantages et des ralentissements, pas accès à Windows Update, ni à la restauration du système...
Je joins un fichier de rapport HiJackthis pour ceux qui auraient la gentillesse de me venir en aide.
Merci d'avance, et n'hésitez pas à me demander des infos supplémentaires ! Je suis prêt à tout, sauf à tenter des choses risquées (PC de boulot oblige..).
Hijackthis report
- Code: Tout sélectionner
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 125152, on 10012011
Platform Windows XP SP3 (WinNT 5.01.2600)
MSIE Internet Explorer v8.00 (8.00.6001.18702)
Boot mode Normal
Running processes
CWINDOWSSystem32smss.exe
CWINDOWSsystem32winlogon.exe
CWINDOWSsystem32services.exe
CWINDOWSsystem32lsass.exe
CWINDOWSsystem32nvsvc32.exe
CWINDOWSsystem32svchost.exe
CWINDOWSSystem32svchost.exe
CProgram FilesWTouchWTouchService.exe
CProgram FilesSymantecSymantec Endpoint ProtectionSmc.exe
CProgram FilesFichiers communsSymantec SharedccSvcHst.exe
CWINDOWSsystem32spoolsv.exe
CProgram FilesBonjourmDNSResponder.exe
CProgram FilesFichiers communsInterVideoRegMgriviRegMgr.exe
CProgram FilesJavajre6binjqs.exe
CProgram FilesLogMeInx86LMIGuardianSvc.exe
CProgram FilesMicrosoftSearch Enhancement PackSeaPortSeaPort.exe
CWINDOWSsystem32svchost.exe
CProgram FilesSymantecSymantec Endpoint ProtectionRtvscan.exe
CWINDOWSsystem32Pen_Tablet.exe
cProgram FilesFichiers communsLenovotvt_reg_monitor_svc.exe
CProgram FilesLenovoRescue and Recoveryrrpservice.exe
CProgram FilesLenovoRescue and Recoveryrrservice.exe
cProgram FilesFichiers communsLenovoSchedulertvtsched.exe
CProgram FilesLenovoRescue and RecoveryUpdateMonitor.exe
cprogram fileslenovosystem updatesuservice.exe
CWINDOWSsystem32wuauclt.exe
CProgram FilesWTouchWTouchUser.exe
CWINDOWSsystem32WTabletPen_TabletUser.exe
CWINDOWSsystem32Pen_Tablet.exe
CWINDOWSExplorer.EXE
CProgram FilesLenovoFanSpeedControlLenovoFSC.exe
CWINDOWSsystem32RUNDLL32.EXE
CWINDOWSsystem32ctfmon.exe
CProgram FilesMicrosoft ActiveSyncwcescomm.exe
CPROGRA~1MI3AA1~1rapimgr.exe
CProgram FilesLenovoFanSpeedControlLenovoFSC .exe
CProgram FilesFichiers communsSymantec SharedccApp .exe
CProgram FilesSymantecSymantec Endpoint ProtectionSmcGui.exe
CWINDOWSsystem32wbemwmiapsrv.exe
CProgram FilesMicrosoft OfficeOffice12OUTLOOK.EXE
CDocuments and SettingsUTILISATEURBureauHiJackThis.exe
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = httpgo.microsoft.comfwlinklinkid=54896
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = httpwww.google.fr
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = httpgo.microsoft.comfwlinkLinkId=54896
R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = httpfr.msn.com
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant =
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch =
R1 - HKCUSoftwareMicrosoftInternet Connection Wizard,ShellNext = httpwindowsupdate.microsoft.com
R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = .local
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Liens
O2 - BHO AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - CProgram FilesFichiers communsAdobeAcrobatActiveXAcroIEHelperShim.dll
O2 - BHO Password Manager Browser Helper Object - {BF468356-BB7E-42D7-9F15-4F3B9BCFCED2} - CProgram FilesLenovoClient Security Solutiontvtpwm_ie_com.dll
O2 - BHO Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - CProgram FilesJavajre6binjp2ssv.dll
O2 - BHO JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - CProgram FilesJavajre6libdeployjqsiejqs_plugin.dll
O4 - HKLM..Run [LenovoFSC] CProgram FilesLenovoFanSpeedControlLenovoFSC.exe
O4 - HKLM..Run [ccApp] CProgram FilesFichiers communsSymantec SharedccApp.exe
O4 - HKLM..Run [LogMeIn GUI] CProgram FilesLogMeInx86LogMeInSystray.exe
O4 - HKLM..Run [nwiz] CProgram FilesNVIDIA CorporationnViewnwiz.exe installquiet
O4 - HKLM..Run [NvCplDaemon] RUNDLL32.EXE CWINDOWSsystem32NvCpl.dll,NvStartup
O4 - HKLM..Run [NvMediaCenter] RUNDLL32.EXE CWINDOWSsystem32NvMcTray.dll,NvTaskbarInit
O4 - HKLM..Run [Mouse Suite 98 Daemon] ICO.EXE
O4 - HKCU..Run [ctfmon.exe] CWINDOWSsystem32ctfmon.exe
O4 - HKCU..Run [HPC Connection Agent] CProgram FilesMicrosoft ActiveSyncwcescomm.exe
O4 - HKUSS-1-5-19..Run [CTFMON.EXE] CWINDOWSsystem32CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUSS-1-5-20..Run [CTFMON.EXE] CWINDOWSsystem32CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUSS-1-5-18..Run [CTFMON.EXE] CWINDOWSsystem32CTFMON.EXE (User 'SYSTEM')
O4 - HKUS.DEFAULT..Run [CTFMON.EXE] CWINDOWSsystem32CTFMON.EXE (User 'Default user')
O4 - Startup MD5 Checksum.lnk = CProgrammesMD5 ChecksumMD5Checksum.exe
O4 - Startup Raccourci vers TAF.lnk = CDocuments and SettingsUTILISATEURBureauTAF.txt
O6 - HKCUSoftwarePoliciesMicrosoftInternet ExplorerControl Panel present
O8 - Extra context menu item E&xporter vers Microsoft Excel - resCPROGRA~1MI1933~1Office12EXCEL.EXE3000
O8 - Extra context menu item Google Sidewiki... - resCProgram FilesGoogleGoogle ToolbarComponentGoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dllcmsidewiki.html
O9 - Extra button Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - CProgram FilesWindows LiveWriterWriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - CProgram FilesWindows LiveWriterWriterBrowserExtension.dll
O9 - Extra button Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - CPROGRA~1MI3AA1~1INetRepl.dll
O9 - Extra button (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - CPROGRA~1MI3AA1~1INetRepl.dll
O9 - Extra 'Tools' menuitem Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - CPROGRA~1MI3AA1~1INetRepl.dll
O9 - Extra button Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - CPROGRA~1MI1933~1Office12REFIEBAR.DLL
O9 - Extra button (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - CWINDOWSNetwork Diagnosticxpnetdiag.exe
O9 - Extra 'Tools' menuitem @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - CWINDOWSNetwork Diagnosticxpnetdiag.exe
O9 - Extra button (no name) - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - CProgram FilesLenovoClient Security Solutiontvtpwm_ie_com.dll
O9 - Extra 'Tools' menuitem Lenovo Password Manager... - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - CProgram FilesLenovoClient Security Solutiontvtpwm_ie_com.dll
O9 - Extra button Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - CProgram FilesMessengermsmsgs.exe
O9 - Extra 'Tools' menuitem Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - CProgram FilesMessengermsmsgs.exe
O16 - DPF {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) - http3dlifeplayer.dl.3dvia.complayerinstall3DVIA_player_installer.exe
O23 - Service AMService - Unknown owner - CWINDOWSTEMPmdwfsetup.exe (file missing)
O23 - Service ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - CProgram FilesBonjourmDNSResponder.exe
O23 - Service Symantec Event Manager (ccEvtMgr) - Symantec Corporation - CProgram FilesFichiers communsSymantec SharedccSvcHst.exe
O23 - Service Symantec Settings Manager (ccSetMgr) - Symantec Corporation - CProgram FilesFichiers communsSymantec SharedccSvcHst.exe
O23 - Service FLEXnet Licensing Service - Macrovision Europe Ltd. - CProgram FilesFichiers communsMacrovision SharedFLEXnet PublisherFNPLicensingService.exe
O23 - Service Service Google Update (gupdate) (gupdate) - Google Inc. - CProgram FilesGoogleUpdateGoogleUpdate.exe
O23 - Service IviRegMgr - InterVideo - CProgram FilesFichiers communsInterVideoRegMgriviRegMgr.exe
O23 - Service Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - CProgram FilesJavajre6binjqs.exe
O23 - Service LiveUpdate - Symantec Corporation - CPROGRA~1SymantecLIVEUP~1LUCOMS~1.EXE
O23 - Service LMIGuardianSvc - LogMeIn, Inc. - CProgram FilesLogMeInx86LMIGuardianSvc.exe
O23 - Service NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - CWINDOWSsystem32nvsvc32.exe
O23 - Service Roxio UPnP Renderer 10 - Sonic Solutions - CProgram FilesRoxioDigital Home 10RoxioUPnPRenderer10.exe
O23 - Service Roxio Upnp Server 10 - Sonic Solutions - CProgram FilesRoxioDigital Home 10RoxioUpnpService10.exe
O23 - Service LiveShare P2P Server 10 (RoxLiveShare10) - Sonic Solutions - CProgram FilesFichiers communsRoxio Shared10.0SharedCOMRoxLiveShare10.exe
O23 - Service RoxMediaDB10 - Sonic Solutions - CProgram FilesFichiers communsRoxio Shared10.0SharedCOMRoxMediaDB10.exe
O23 - Service Roxio Hard Drive Watcher 10 (RoxWatch10) - Sonic Solutions - CProgram FilesFichiers communsRoxio Shared10.0SharedCOMRoxWatch10.exe
O23 - Service Client de gestion Symantec (SmcService) - Symantec Corporation - CProgram FilesSymantecSymantec Endpoint ProtectionSmc.exe
O23 - Service Symantec Network Access Control (SNAC) - Symantec Corporation - CProgram FilesSymantecSymantec Endpoint ProtectionSNAC.EXE
O23 - Service stllssvr - MicroVision Development, Inc. - CProgram FilesFichiers communsSureThing Sharedstllssvr.exe
O23 - Service System Update (SUService) - Lenovo Group Limited - cprogram fileslenovosystem updatesuservice.exe
O23 - Service Symantec Endpoint Protection (Symantec AntiVirus) - Symantec Corporation - CProgram FilesSymantecSymantec Endpoint ProtectionRtvscan.exe
O23 - Service TabletServicePen - Wacom Technology, Corp. - CWINDOWSsystem32Pen_Tablet.exe
O23 - Service ThinkVantage Registry Monitor Service - Lenovo Group Limited - cProgram FilesFichiers communsLenovotvt_reg_monitor_svc.exe
O23 - Service TVT Backup Protection Service - Unknown owner - CProgram FilesLenovoRescue and Recoveryrrpservice.exe
O23 - Service TVT Backup Service - Lenovo Group Limited - CProgram FilesLenovoRescue and Recoveryrrservice.exe
O23 - Service TVT Scheduler - Lenovo Group Limited - cProgram FilesFichiers communsLenovoSchedulertvtsched.exe
O23 - Service TVT Windows Update Monitor (TVT_UpdateMonitor) - Lenovo Group Limited - CProgram FilesLenovoRescue and RecoveryUpdateMonitor.exe
O23 - Service WTouch Service (WTouchService) - Wacom Technology, Corp. - CProgram FilesWTouchWTouchService.exe
--
End of file - 10577 bytes