If not please perform the following steps below so we can have a look at the current condition of your machine. iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exeO23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exeO23 - Service: avast! Also, please don't forget to resume the Kaspersky that you paused. c:\windows\system32\acovcnt.exe . ((((((((((((((((((((((((((((( Fichiers créés du 2009-03-21 au 2009-04-21 )))))))))))))))))))))))))))))))))))) . 2009-04-20 18:23 . 2009-04-21 02:39 -------- d-----w c:\programdata\wegagolu 2009-04-20 18:23 . 2009-04-21 02:39 -------- d-----w c:\programdata\hupetetu 2009-04-20 18:23 . 2009-04-20

S2 StkSSrv;Syntek AVStream USB2.0 WebCam Service;c:\windows\System32\StkCSrv.exe [2006-12-10 24576] S3 Atc002;NDIS Miniport Driver for Attansic L2 Fast Ethernet Controller;c:\windows\system32\DRIVERS\L260x86.sys [2006-12-13 25600] Register a free account to unlock additional features at BleepingComputer.com Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Save it to your desktop.DDS.comDDS.scrDDS.pifDouble click on the DDS icon, allow it to run.A small box will open, with an explaination about the tool.

J'ai lancé un scan avec Avast, puis sur conseil avec AVG anti spyware mais rien a été trouvé à part quelques cookies traceurs.

Merci en tout cas pour ta patience ;) Please note that your topic was not intentionally overlooked. Post them back to your topic.Download GMER here by clicking download exe -button and then saving it your desktop:Double-click .exe that you downloadedClick rootkit-tab and then scan.Don't check Show All box

Copie/colle ce rapport dans ta prochaine réponse.

Live 2009-02-13 08:49 . 2009-04-15 23:07 72704 ----a-w c:\windows\System32\secur32.dll 2009-02-13 08:49 . 2009-04-15 23:07 1255936 ----a-w c:\windows\System32\lsasrv.dll 2009-02-09 03:10 . 2009-03-11 09:48 2033152 ----a-w c:\windows\System32\win32k.sys 2008-12-15 20:33 . 2008-03-25 16:21 104424 Download and install RegUtility. 2. Good luck. Usually located in c:\combofix.txt , please attach it to your next post.

c:\windows\TEMP\TMP0000001CA5AAA19F28689B35 524288 bytes executable Scan terminé avec succès Fichiers cachés: 1 ************************************************************************** . ------------------------ Autres processus actifs ------------------------ . NOTE : Le rapport se trouve également ici : C:\Combofix.txt Donnez votre avis Utile +0 Signaler kisscool071 57Messages postés lundi 10 décembre 2007Date d'inscription 2 mai 2009 Dernière intervention 16 avril R, K The only easy day was yesterday. ...some do, some don't; some will, some won't (WR) Back to top Back to Virus, Trojan, Spyware, and Malware Removal Logs 0 user(s) Le scan a détecté 3 erreurs qui ont été réparées.

Heure de fin: 2009-04-16 12:59 ComboFix-quarantined-files.txt 2009-04-16 16:59 ComboFix2.txt 2009-04-16 14:43 Avant-CF: 19 094 130 688 octets libres Après-CF: 18 861 821 952 octets libres 218 --- E O F --- 2009-04-16 06:45 Durant le scan une Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Thinking a quick uninstall/reinstall would help I did so, but, again, I got the same message. When this started I tried to use the MBAM to kill it quick, but the exe file was 'gone' and I was unable to do anything.

Run this script, instructions linked in pinned topics at top of this forum page, PC will reboot:CODEbeginSetAVZGuardStatus(True);SearchRootkit(true, true); QuarantineFile('C:\WINDOWS\system32\luhakora.dll',''); QuarantineFile('C:\WINDOWS\system32\imxtwl.dll',''); QuarantineFile('C:\WINDOWS\system32\rosobogu.dll',''); QuarantineFile('C:\WINDOWS\system32\zerunuwa.dll',''); QuarantineFile('C:\WINDOWS\system32\wevusavi.dll',''); DelBHO('{ed99e9f4-49a1-4d2d-85ff-dddb3131ef5c}'); DelBHO('{2247d44b-d578-4dd5-8293-f3aba298089f}'); QuarantineFile('C:\WINDOWS\system32\goqxol.dll',''); QuarantineFile('C:\WINDOWS\system32\vomeduse.dll',''); DeleteFile('C:\WINDOWS\system32\vomeduse.dll'); DeleteFile('C:\WINDOWS\system32\goqxol.dll'); DeleteFile('C:\WINDOWS\system32\wevusavi.dll'); DeleteFile('C:\WINDOWS\system32\zerunuwa.dll'); When this started I tried to use the MBAM to kill it quick, but the exe file was 'gone' and I was unable to do anything.

c:\windows\System32\Ati2evxx.exe c:\windows\System32\audiodg.exe c:\windows\System32\Ati2evxx.exe c:\program files\ATK Hotkey\ASLDRSrv.exe c:\program files\Alwil Software\Avast4\aswUpdSv.exe c:\program files\Alwil Software\Avast4\ashServ.exe c:\program files\ATK Hotkey\HControl.exe c:\program files\ATKOSD2\ATKOSD2.exe c:\program files\Wireless Console 2\wcourier.exe c:\program files\P4G\BatteryLife.exe c:\program files\ASUS\Splendid\ACMON.exe c:\windows\System32\ACEngSvr.exe c:\program files\ATK Hotkey\ATKOSD.exe c:\program files\Common The best way to solve this problem is using a cleaner which iseasy to find online. J'ai aussi de nombreuses pubs en anglais qui arrivent pour me féliciter d'un gain ou pour l'achat d'un antivirus.

Ne touche à rien tant que le scan n'est pas terminé. [*]Une fois le scan achevé, un rapport va s'afficher : poste son contenu. [*]Si le fichier ne s'ouvre pas, il

La fenêtre reste bleue, mais quand je tape quelque chose puis appuie sur entrée ça me dit "....n'est pas reconnue en tant que commande interne ou externe, un programma executable ou Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up.

Mais je retire ce que j'ai dit, la connexion est toujours lente, j'ai toujours des pubs et mon anti virus avast se met souvent en route pour me prévenir d'un site This applies only to the originator of this thread.Other members who need assistance please start your own topic in a new thread. It didn't detect the error out either.Spyware Doctor, nothing came up.So I did a hijackthis.logHere it is:Logfile of Trend Micro HijackThis v2.0.2Scan saved at 3:53:53 AM, on 4/30/2009Platform: Windows XP SP2

or read our Welcome Guide to learn how to use this site. Combofix s'est remis à fonctionner, je n'ai pas compris le problème.