je n'ai que le pare feu Window
a chaque fois que j'allume le PC, Window fait une vérification des fichiers et de la mémoire, pendant 7 heures
(l'écan était bleu, il parait que ce n'est pas bon ?????).
Skipp : voilà ce que le logiciel me dit:
dit moi, si c'est ça que tu demandait ?
je la mets sur 2 postes,
1 poste :
Logfile of HijackThis v1.99.1
Scan saved at 17:53:04, on 29/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Running processes:
C:\\WINDOWS\\System32\\smss.exe
C:\\WINDOWS\\system32\\winlogon.exe
C:\\WINDOWS\\system32\\services.exe
C:\\WINDOWS\\system32\\lsass.exe
C:\\WINDOWS\\system32\\svchost.exe
C:\\WINDOWS\\System32\\svchost.exe
C:\\Program Files\\Intel\\Wireless\\Bin\\EvtEng.exe
C:\\Program Files\\Intel\\Wireless\\Bin\\S24EvMon.exe
C:\\Program Files\\Fichiers communs\\Symantec Shared\\CCPD-LC\\symlcsvc.exe
C:\\Program Files\\Alwil Software\\Avast4\\aswUpdSv.exe
C:\\WINDOWS\\Explorer.EXE
C:\\Program Files\\Alwil Software\\Avast4\\ashServ.exe
C:\\WINDOWS\\system32\\spoolsv.exe
c:\\program files\\fichiers communs\\logitech\\lvmvfm\\LVPrcSrv.exe
C:\\Acer\\eManager\\anbmServ.exe
C:\\Program Files\\Acer\\Acer Arcade\\Kernel\\TV\\CLCapSvc.exe
C:\\Program Files\\Acer\\Acer Arcade\\Kernel\\CLML_NTService\\CLMLServer.exe
C:\\WINDOWS\\system32\\igfxtray.exe
C:\\WINDOWS\\system32\\hkcmd.exe
C:\\Program Files\\Acer\\Acer Arcade\\Kernel\\CLML_NTService\\CLMLService.exe
C:\\WINDOWS\\system32\\igfxpers.exe
C:\\Program Files\\Windows Live\\Family Safety\\fsssvc.exe
C:\\Program Files\\Synaptics\\SynTP\\SynTPLpr.exe
C:\\Program Files\\Synaptics\\SynTP\\SynTPEnh.exe
C:\\Program Files\\Acer\\eRecovery\\Monitor.exe
C:\\WINDOWS\\System32\\FTRTSVC.exe
C:\\WINDOWS\\RTHDCPL.EXE
C:\\Program Files\\Controle Parental\\bin\\optproxy.exe
C:\\Program Files\\Acer\\Acer Arcade\\PCMService.exe
C:\\acer\\epm\\epm-dm.exe
C:\\WINDOWS\\system32\\HPZipm12.exe
C:\\PROGRA~1\\LAUNCH~1\\QtZgAcer.EXE
C:\\Program Files\\QuickTime\\qttask.exe
C:\\Program Files\\Intel\\Wireless\\Bin\\RegSrvc.exe
C:\\Program Files\\CyberLink\\Shared Files\\RichVideo.exe
C:\\Program Files\\Microsoft\\Search Enhancement Pack\\SeaPort\\SeaPort.exe
C:\\WINDOWS\\system32\\LVCOMSX.EXE
C:\\Program Files\\Logitech\\Video\\CameraAssistant.exe
C:\\WINDOWS\\system32\\svchost.exe
C:\\WINDOWS\\system32\\ElkCtrl.exe
C:\\Program Files\\Acer\\Acer Arcade\\Kernel\\TV\\CLSched.exe
C:\\Program Files\\Java\\jre1.6.0_07\\bin\\jusched.exe
C:\\PROGRA~1\\WANADOO\\TaskBarIcon.exe
C:\\Program Files\\HP\\hpcoretech\\hpcmpmgr.exe
C:\\WINDOWS\\system32\\fxssvc.exe
C:\\PROGRA~1\\ALWILS~1\\Avast4\\ashDisp.exe
C:\\Program Files\\Windows Live\\Family Safety\\fsui.exe
C:\\Program Files\\MessengerPlus! 3\\MsgPlus.exe
C:\\WINDOWS\\system32\\rundll32.exe
C:\\Program Files\\HP\\HP Software Update\\HPWuSchd2.exe
C:\\WINDOWS\\system32\\ctfmon.exe
C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe
C:\\PROGRA~1\\WANADOO\\EspaceWanadoo.exe
C:\\Program Files\\TomTom HOME 2\\HOMERunner.exe
C:\\PROGRA~1\\WANADOO\\ComComp.exe
C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe
C:\\PROGRA~1\\WANADOO\\Toaster.exe
C:\\PROGRA~1\\WANADOO\\Inactivity.exe
C:\\Program Files\\Microsoft Office\\Office\\1036\\OLFSNT40.EXE
C:\\PROGRA~1\\WANADOO\\PollingModule.exe
C:\\WINDOWS\\System32\\ALERTM~1\\ALERTM~1.EXE
C:\\PROGRA~1\\WANADOO\\Watch.exe
C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqgalry.exe
C:\\WINDOWS\\system32\\wscntfy.exe
C:\\Program Files\\Windows Live\\Messenger\\MsnMsgr.Exe
C:\\Program Files\\Windows Live\\Contacts\\wlcomm.exe
C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe
C:\\Program Files\\Windows Live\\Toolbar\\wltuser.exe
C:\\Program Files\\Internet Explorer\\iexplore.exe
C:\\Program Files\\Internet Explorer\\iexplore.exe
C:\\Program Files\\Alwil Software\\Avast4\\ashMaiSv.exe
C:\\Program Files\\Alwil Software\\Avast4\\ashWebSv.exe
C:\\Program Files\\WinRAR\\WinRAR.exe
C:\\DOCUME~1\\DAVIDL~1\\LOCALS~1\\Temp\\Rar$EX00.062\\HijackThis.exe
R0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = http://www.google.fr/
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Default_Page_URL = http://fr.yahoo.com
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = http://fr.yahoo.com
R1 - HKCU\\Software\\Microsoft\\Internet Explorer\\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R1 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Window Title = Wanadoo
R0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\\PROGRA~1\\WANADOO\\SEARCH~1.DLL
R3 - URLSearchHook: (no name) - {9CB65206-89C4-402c-BA80-02D8C59F9B1D} - C:\\Program Files\\AskTBar\\SrchAstt\\1.bin\\A5SRCHAS.DLL (file missing)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\\program files\\google\\googletoolbar1.dll
O3 - Toolbar: Ask Toolbar - {FE063DB9-4EC0-403e-8DD8-394C54984B2C} - C:\\Program Files\\AskTBar\\bar\\1.bin\\ASKTBAR.DLL (file missing)
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\\Program Files\\Windows Live\\Toolbar\\wltcore.dll
O4 - HKLM\\..\\Run: [LaunchApp] Alaunch
O4 - HKLM\\..\\Run: [IgfxTray] C:\\WINDOWS\\system32\\igfxtray.exe
O4 - HKLM\\..\\Run: [HotKeysCmds] C:\\WINDOWS\\system32\\hkcmd.exe
O4 - HKLM\\..\\Run: [Persistence] C:\\WINDOWS\\system32\\igfxpers.exe
O4 - HKLM\\..\\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\\..\\Run: [AzMixerSel] C:\\Program Files\\Realtek\\InstallShield\\AzMixerSel.exe
O4 - HKLM\\..\\Run: [SynTPLpr] C:\\Program Files\\Synaptics\\SynTP\\SynTPLpr.exe
O4 - HKLM\\..\\Run: [SynTPEnh] C:\\Program Files\\Synaptics\\SynTP\\SynTPEnh.exe
O4 - HKLM\\..\\Run: [IMJPMIG8.1] "C:\\WINDOWS\\IME\\imjp8_1\\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\\..\\Run: [MSPY2002] C:\\WINDOWS\\system32\\IME\\PINTLGNT\\ImScInst.exe /SYNC
O4 - HKLM\\..\\Run: [PHIME2002ASync] C:\\WINDOWS\\system32\\IME\\TINTLGNT\\TINTSETP.EXE /SYNC
O4 - HKLM\\..\\Run: [PHIME2002A] C:\\WINDOWS\\system32\\IME\\TINTLGNT\\TINTSETP.EXE /IMEName
O4 - HKLM\\..\\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\\..\\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\\..\\Run: [PCMService] "C:\\Program Files\\Acer\\Acer Arcade\\PCMService.exe"
O4 - HKLM\\..\\Run: [EPM-DM] c:\\acer\\epm\\epm-dm.exe
O4 - HKLM\\..\\Run: [ePowerManagement] C:\\Acer\\ePM\\ePM.exe boot
O4 - HKLM\\..\\Run: [LManager] C:\\PROGRA~1\\LAUNCH~1\\QtZgAcer.EXE