[trojan+adware]supprimer 4 trojan

b-i-b-i Messages postés 166 Statut Membre -  
Séb08 Messages postés 18169 Date d'inscription   Statut Contributeur Dernière intervention   -
bonjour a tous.
je ne suis pas tres fort en suppresion de logiciel malveillant donc comme d'habitude je fais appel a vous.
avast m'a signalé la presence de ces 4 logiciels malveillants:

Win32:Adware-gen.[Adw]
dans c:\system volume information\_restore{3CBA739B6FBOD-4C81-B601-7DECO6E9AA8C}-\RP150

Win32:Zlob-LT[Trj]
dans c:\system volume information\_restore{3CBA739B6FBOD-4C81-B601-7DECO6E9AA8C}-\RP156

Win32:Zlob-IF[Trj]
dans c:\system volume information\_restore{3CBA739B6FBOD-4C81-B601-7DECO6E9AA8C}-\RP156

Win32:Zlob-BN[Trj]
dans c:\WINDOWS\system32\1024

je vous remercie d'avance pour votre aide et je tiens a preciser que suite a l'arrivée de ces trojan le son ne marche plus sur mon PC et mes enceintes ne sont plus detectées ...
romain

11 réponses

  1. ^^Marie^^ Messages postés 41884 Date d'inscription   Statut Membre Dernière intervention   3 280
     
    Salut,

    Fais les rapports demandés sur ce lien
    Stp
    Merci

    virus methode preliminaire de desinfection version fr

    A++

    0
  2. b-i-b-i Messages postés 166 Statut Membre 14
     
    voila j'ai fait un scan avec ewidoo et voila le rapport.
    j'espere que c'est bien sa qu'il fallait faire car le logiciel ewidoo anti spyware du lien n'est pa tt a fait le meme que celui des demo (ewido anti malaware)
    raport:
    ---------------------------------------------------------
    ewido anti-spyware - Scan Report
    ---------------------------------------------------------

    + Created at: 12:29:53 07/10/2006

    + Scan result:

    HKU\S-1-5-21-1708537768-220523388-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{56F1D444-11BF-4879-A12B-79CF0177F038} -> Adware.180Solutions : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@247realmedia[1].txt -> TrackingCookie.247realmedia : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@2o7[1].txt -> TrackingCookie.2o7 : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@microsofteup.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@paypal.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@sfr.122.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@adbrite[2].txt -> TrackingCookie.Adbrite : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@adtech[2].txt -> TrackingCookie.Adtech : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@bluestreak[1].txt -> TrackingCookie.Bluestreak : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@iv2.bluestreak[1].txt -> TrackingCookie.Bluestreak : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@as.casalemedia[1].txt -> TrackingCookie.Casalemedia : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@casalemedia[2].txt -> TrackingCookie.Casalemedia : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@promo.casinotropez[1].txt -> TrackingCookie.Casinotropez : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@cz3.clickzs[2].txt -> TrackingCookie.Clickzs : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@cz4.clickzs[1].txt -> TrackingCookie.Clickzs : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@cz7.clickzs[2].txt -> TrackingCookie.Clickzs : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@com[1].txt -> TrackingCookie.Com : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@www.archivesvideosx.com.0.fb.dbbsrv[1].txt -> TrackingCookie.Dbbsrv : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@estat[1].txt -> TrackingCookie.Estat : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@adopt.euroclick[1].txt -> TrackingCookie.Euroclick : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@as-eu.falkag[1].txt -> TrackingCookie.Falkag : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@as1.falkag[2].txt -> TrackingCookie.Falkag : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@ivwbox[2].txt -> TrackingCookie.Ivwbox : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@server.iad.liveperson[1].txt -> TrackingCookie.Liveperson : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@image.masterstats[1].txt -> TrackingCookie.Masterstats : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@stat.onestat[1].txt -> TrackingCookie.Onestat : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@perf.overture[1].txt -> TrackingCookie.Overture : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@paycounter[1].txt -> TrackingCookie.Paycounter : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@ads.pointroll[2].txt -> TrackingCookie.Pointroll : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@qksrv[2].txt -> TrackingCookie.Qksrv : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@questionmarket[2].txt -> TrackingCookie.Questionmarket : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@revenue[2].txt -> TrackingCookie.Revenue : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@serving-sys[2].txt -> TrackingCookie.Serving-sys : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@cs.sexcounter[2].txt -> TrackingCookie.Sexcounter : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@statcounter[2].txt -> TrackingCookie.Statcounter : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@trafic[1].txt -> TrackingCookie.Trafic : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@weborama[2].txt -> TrackingCookie.Weborama : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@yadro[1].txt -> TrackingCookie.Yadro : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : No action taken.
    C:\Documents and Settings\Romain\Cookies\romain@zedo[1].txt -> TrackingCookie.Zedo : No action taken.
    C:\Program Files\Media-Codec -> Trojan.Small : No action taken.
    C:\WINDOWS\system32\1024 -> Trojan.Small : No action taken.

    ::Report end
    0
  3. b-i-b-i Messages postés 166 Statut Membre 14
     
    sacan avec bit defender

    Scanned File
    Status

    C:\Documents and Settings\Romain\Mes documents\recuperation 2\Incoming\[New Version] vso convertxtodvd 2.0.9.119 serial(1).zip=>YSB_toolBar.exe=>(NSIS o)=>lzma_solid_nsis0004
    Infected with: Trojan.Downloader.IstBar.OK

    C:\Documents and Settings\Romain\Mes documents\recuperation 2\Incoming\[New Version] vso convertxtodvd 2.0.9.119 serial(1).zip=>YSB_toolBar.exe=>(NSIS o)=>lzma_solid_nsis0004
    Disinfection failed

    C:\Documents and Settings\Romain\Mes documents\recuperation 2\Incoming\[New Version] vso convertxtodvd 2.0.9.119 serial(1).zip=>YSB_toolBar.exe=>(NSIS o)=>lzma_solid_nsis0004
    Deleted

    C:\Documents and Settings\Romain\Mes documents\recuperation 2\Incoming\[New Version] vso convertxtodvd 2.0.9.119 serial(1).zip=>YSB_toolBar.exe=>(NSIS o)
    Update failed
    0
  4. b-i-b-i Messages postés 166 Statut Membre 14
     
    et pour finir les resultat du scan avec hijack this.
    voila donc pour le premier scan j'ai mis 2 fichiers en quarantaine et j'ai supprimé les autres comme le logiciel m'a conseillé et puis maintenant pour le dernier scan j'avoue que je ne comprend rien donc je serais heureux que vous m'aidiez.
    ps: j'ai toujours pas de son sur mon ordi depuis l'arivée de ces trojan et des que j'ai un message d'erreur ou quoi j'ai un petit "bip" provenant de mon unité centrale que je n'avais pas avant.
    merci
    resultats:

    Logfile of HijackThis v1.99.1
    Scan saved at 13:51:23, on 07/10/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\WINDOWS\System32\hkcmd.exe
    C:\Program Files\MessengerPlus! 3\MsgPlus.exe
    C:\Program Files\Dell Photo AIO Printer 922\dlbtbmgr.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\Dell Photo AIO Printer 922\dlbtbmon.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE
    C:\WINDOWS\system32\NOTEPAD.EXE
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\ewido anti-spyware 4.0\guard.exe
    C:\Program Files\ewido anti-spyware 4.0\ewido.exe
    C:\Program Files\hijack this\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.fr/
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
    O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
    O4 - HKLM\..\Run: [Dell Photo AIO Printer 922] "C:\Program Files\Dell Photo AIO Printer 922\dlbtbmgr.exe"
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE
    O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
    O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
    O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - download.bitdefender.com/resources/scan8/oscan8.cab
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
    O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
    O23 - Service: dlbt_device - Dell - C:\WINDOWS\System32\dlbtcoms.exe
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
    0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. b-i-b-i Messages postés 166 Statut Membre 14
     
    personne pour m'aider?
    svp
    0
  7. ^^Marie^^ Messages postés 41884 Date d'inscription   Statut Membre Dernière intervention   3 280
     
    Slt,

    Ewido n'a pas fonctionné==> no action taken
    Donc, refais le stp et suis la procédure du tuto...

    A++
    0
  8. b-i-b-i Messages postés 166 Statut Membre 14
     
    voila les resultats du scan que tu m'a demandé :

    ---------------------------------------------------------
    ewido anti-spyware - Scan Report
    ---------------------------------------------------------

    + Created at: 19:06:42 07/10/2006

    + Scan result:

    Nothing found.

    ::Report end

    je suppose donc que c'est bon mon ordinateur est propore.
    par contre je sais pa comment faire pour remettre le son...
    0
  9. b-i-b-i Messages postés 166 Statut Membre 14
     
    bon si vous voyez quelque chause en particulier vous me le dite et sinon pour le son c'est reglé en voulant supprimer les fichiers qui m'ont foutu le bordel j'ai supprimer le driver !!!!
    0
  10. Séb08 Messages postés 18169 Date d'inscription   Statut Contributeur Dernière intervention   1 430
     
    pas la peine de t'enerver mon garçon !

    remet un log Hijack .

    A+
    0
  11. b-i-b-i Messages postés 166 Statut Membre 14
     
    voila le log hijack :

    Logfile of HijackThis v1.99.1
    Scan saved at 09:34:50, on 08/10/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\System32\hkcmd.exe
    C:\Program Files\MessengerPlus! 3\MsgPlus.exe
    C:\Program Files\Dell Photo AIO Printer 922\dlbtbmgr.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\Dell Photo AIO Printer 922\dlbtbmon.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE
    C:\Program Files\ewido anti-spyware 4.0\ewido.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\Program Files\ewido anti-spyware 4.0\guard.exe
    C:\Program Files\Analog Devices\SoundMAX\spkrmon.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\Program Files\eMule\emule.exe
    C:\Program Files\Windows Media Player\wmplayer.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Documents and Settings\Romain\Mes documents\nettoyage PC\hijack this\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
    O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
    O4 - HKLM\..\Run: [Dell Photo AIO Printer 922] "C:\Program Files\Dell Photo AIO Printer 922\dlbtbmgr.exe"
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE
    O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
    O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
    O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
    O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
    O23 - Service: dlbt_device - Dell - C:\WINDOWS\System32\dlbtcoms.exe
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
    O23 - Service: spkrmon - Unknown owner - C:\Program Files\Analog Devices\SoundMAX\spkrmon.exe
    0
  12. Séb08 Messages postés 18169 Date d'inscription   Statut Contributeur Dernière intervention   1 430
     
    ton log me parait clean !

    Installe un parefeu :

    Kério (pare feu):
    www.01net.com
    lire le tuto: pour configurer et comprendre Kerio
    https://kerio.probb.fr/

    tu as encore des probs ?

    a+
    0