Mon msn a été piraté rapport hijackthis

rugbyman_en_mousse Messages postés 2 Statut Membre -  
philae83 Messages postés 12854 Statut Contributeur sécurité -
Voila j'aurais voulu savoir si un logiciel ou autre chose etait rentré dans mon pc svp et si possible j'aimerais retrouver qui m'a pirater

Logfile of HijackThis v1.99.1
Scan saved at 14:13:00, on 07/01/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\Fichiers communs\Sony Shared\AVLib\SSScsiSV.exe
C:\WINDOWS\System32\HPZipm12.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe
C:\WINDOWS\System32\hphmon05.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
c:\progra~1\intern~1\iexplore.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqimzone.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqSTE08.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\Nyco\LOCALS~1\Temp\Rar$EX00.922\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?redirfallthru=http%3a%2f%2fwww.msn.fr%2fhelp%2fHelp4%2f%3f
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {D73F49B6-B51B-4d32-A3B7-BD04B8342F53} - C:\Program Files\MorpheusBar\SrchAstt\2.bin\MBSRCAS.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: MorpheusToolbar BHO - {3F3714A1-89A4-46be-8AF3-D0C9D1FB03F9} - C:\Program Files\MorpheusBar\bar\2.bin\MORPHBAR.DLL
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {D73F49B1-B51B-4d32-A3B7-BD04B8342F53} - C:\Program Files\MorpheusBar\SrchAstt\2.bin\MBSRCAS.DLL
O3 - Toolbar: Morpheus Toolbar - {3F3714A9-89A4-46be-8AF3-D0C9D1FB03F9} - C:\Program Files\MorpheusBar\bar\2.bin\MORPHBAR.DLL
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [NVIDIA nTune] "C:\Program Files\NVIDIA Corporation\nTune\\nTune.exe" clear
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [nTrayFw] C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe
O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\System32\hphmon05.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [kav] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
O4 - HKLM\..\Run: [SsAAD.exe] C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [intrainfo] C:\DOCUME~1\Nyco\APPLIC~1\ITCHPO~1\dentcomp.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Démarrage rapide de HP Photosmart Premier.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: SATARAID5.lnk = ?
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Web Anti-Virus - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll
O9 - Extra button: Réglage rapide de Outpost Firewall Pro - {44627E97-789B-40d4-B5C2-58BD171129A1} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O12 - Plugin for .goa: C:\Program Files\Internet Explorer\Plugins\nppmp.dll
O12 - Plugin for .goac: C:\Program Files\Internet Explorer\Plugins\npchatg.dll
O12 - Plugin for .gob: C:\Program Files\Internet Explorer\Plugins\nppmp2.dll
O16 - DPF: {00330010-0000-0000-0000-000020160010} - http://207.234.185.217/ABoxInst_int25.exe
O16 - DPF: {22945A69-1191-4DCF-9E6F-409BDE94D101} - http://dl-ak.solidworks.com/nonsecure/edrawings/e2020sp01/28.1.0.0091-PCK0T79I/cab//eModelsStandard.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://rorofac.spaces.live.com/PhotoUpload/MsnPUpld.cab?10,0,912,0
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {983AB2CC-3D50-11D9-ADFE-00062919A34C} (ActiveXUpload.UserCtrl) - http://www.photoservice.com/activeX/newUpload.CAB
O17 - HKLM\System\CCS\Services\Tcpip\..\{28D47166-DC18-4805-B45A-7FE6CF13AFB4}: NameServer = 212.151.136.242 212.151.137.170
O18 - Protocol: bw+0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: offline-8876480 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - Winlogon Notify: klogon - C:\WINDOWS\System32\klogon.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Kaspersky Anti-Virus 6.0 (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe" -k runservice (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
O23 - Service: ForceWare user log service (nSvcLog) - NVIDIA - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SSScsiSV.exe
A voir également:

3 réponses

philae83 Messages postés 12854 Statut Contributeur sécurité 206
 
bonsoir,

* Télécharge LopXPMH sur ton Bureau.
http://perso.numericable.fr/~altshift/Info/Fichiers/lopxpMH2.zip

* Dézippe-le (clic droit >> Extraire ici) et double clique sur le fichier lopxpMH.bat.
* Poste le contenu du rapport qui va s'ouvrir.
0
rugbyman_en_mousse Messages postés 2 Statut Membre
 
Rapport fait à 21:59:13,01 le 07/01/2007

******************************************
## Répertoires Application Data

Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est B84A-688A

R‚pertoire de C:\Documents and Settings\All Users\Application Data

24/09/2006 11:09 <REP> .
24/09/2006 11:09 <REP> ..
04/10/2006 20:26 <REP> Adobe
28/10/2006 18:29 <REP> Adobe Systems
13/11/2006 23:10 <REP> DVD Shrink
28/10/2006 16:24 <REP> Dvd trust mp3 grim
06/01/2007 18:10 <REP> HP
18/11/2006 00:24 <REP> Kaspersky Lab
24/09/2006 12:47 <REP> Logitech
29/10/2006 18:15 <REP> Messenger Plus!
24/09/2006 11:09 <REP> Microsoft
06/01/2007 18:06 <REP> Sonic
05/10/2006 20:01 <REP> Sony Corporation
18/11/2006 00:41 <REP> Symantec
18/11/2006 00:21 <REP> Windows Genuine Advantage
24/09/2006 11:09 62 desktop.ini
01/10/2006 09:29 1ÿ461 hpzinstall.log
2 fichier(s) 1ÿ523 octets
15 R‚p(s) 4ÿ673ÿ523ÿ712 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est B84A-688A

R‚pertoire de C:\Documents and Settings\Aurore\Application Data

24/09/2006 22:56 <REP> .
24/09/2006 22:56 <REP> ..
07/10/2006 17:12 <REP> Adobe
07/10/2006 17:13 <REP> AdobeUM
24/09/2006 22:56 <REP> ATI
22/11/2006 11:05 <REP> dvdcss
08/10/2006 10:40 <REP> Hewlett-Packard
07/01/2007 11:06 <REP> HP
21/12/2006 21:39 <REP> ICAClient
24/09/2006 22:56 <REP> Identities
24/09/2006 22:56 <REP> Logitech
25/09/2006 12:18 <REP> Macromedia
24/09/2006 22:56 <REP> Microsoft
28/10/2006 18:11 <REP> Morpheus
01/10/2006 17:36 <REP> Mozilla
01/10/2006 17:36 <REP> Talkback
28/09/2006 11:13 <REP> vlc
24/09/2006 22:56 62 desktop.ini
1 fichier(s) 62 octets
17 R‚p(s) 4ÿ673ÿ523ÿ712 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est B84A-688A

R‚pertoire de C:\Documents and Settings\Aurore\Local Settings\Application Data

24/09/2006 22:56 <REP> .
24/09/2006 22:56 <REP> ..
07/10/2006 17:12 <REP> Adobe
24/09/2006 22:56 <REP> ApplicationHistory
24/09/2006 22:56 <REP> ATI
07/01/2007 11:06 <REP> HP
04/11/2006 21:35 <REP> IAResearch
12/10/2006 14:46 <REP> Identities
07/01/2007 11:06 <REP> IsolatedStorage
18/10/2006 07:20 <REP> Mes Cr‚ations
24/09/2006 22:56 <REP> Microsoft
01/10/2006 17:36 <REP> Mozilla
08/10/2006 10:59 25ÿ088 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
24/09/2006 22:56 129 fusioncache.dat
24/09/2006 22:57 51ÿ400 GDIPFONTCACHEV1.DAT
25/09/2006 00:12 2ÿ807ÿ812 IconCache.db
4 fichier(s) 2ÿ884ÿ429 octets
12 R‚p(s) 4ÿ673ÿ523ÿ712 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est B84A-688A

R‚pertoire de C:\Documents and Settings\Default User\Application Data

24/09/2006 11:09 <REP> .
24/09/2006 11:09 <REP> ..
24/09/2006 11:09 <REP> Microsoft
24/09/2006 11:09 62 desktop.ini
1 fichier(s) 62 octets
3 R‚p(s) 4ÿ673ÿ523ÿ712 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est B84A-688A

R‚pertoire de C:\Documents and Settings\Default User\Local Settings\Application Data

24/09/2006 11:09 <REP> .
24/09/2006 11:09 <REP> ..
0 fichier(s) 0 octets
2 R‚p(s) 4ÿ673ÿ519ÿ616 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est B84A-688A

R‚pertoire de C:\Documents and Settings\LocalService\Application Data

24/09/2006 10:20 <REP> .
24/09/2006 10:20 <REP> ..
24/09/2006 10:20 <REP> Microsoft
0 fichier(s) 0 octets
3 R‚p(s) 4ÿ673ÿ519ÿ616 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est B84A-688A

R‚pertoire de C:\Documents and Settings\LocalService\Local Settings\Application Data

24/09/2006 10:20 <REP> .
24/09/2006 10:20 <REP> ..
24/09/2006 10:20 <REP> Microsoft
0 fichier(s) 0 octets
3 R‚p(s) 4ÿ673ÿ519ÿ616 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est B84A-688A

R‚pertoire de C:\Documents and Settings\NetworkService\Application Data

24/09/2006 10:20 <REP> .
24/09/2006 10:20 <REP> ..
24/09/2006 10:20 <REP> Microsoft
0 fichier(s) 0 octets
3 R‚p(s) 4ÿ673ÿ519ÿ616 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est B84A-688A

R‚pertoire de C:\Documents and Settings\NetworkService\Local Settings\Application Data

24/09/2006 10:20 <REP> .
24/09/2006 10:20 <REP> ..
24/09/2006 10:20 <REP> Microsoft
0 fichier(s) 0 octets
3 R‚p(s) 4ÿ673ÿ519ÿ616 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est B84A-688A

R‚pertoire de C:\Documents and Settings\Nyco\Application Data

24/09/2006 10:20 <REP> .
24/09/2006 10:20 <REP> ..
04/10/2006 20:17 <REP> Adobe
04/10/2006 20:17 <REP> AdobeUM
24/09/2006 11:23 <REP> ATI
29/10/2006 18:02 <REP> CyberLink
11/10/2006 20:36 <REP> dvdcss
30/10/2006 22:14 <REP> Hewlett-Packard
06/01/2007 18:11 <REP> HP
16/10/2006 11:51 <REP> ICAClient
24/09/2006 10:21 <REP> Identities
28/10/2006 16:24 <REP> itch poke
25/09/2006 17:12 <REP> Logitech
24/09/2006 18:21 <REP> Macromedia
24/09/2006 10:20 <REP> Microsoft
24/09/2006 18:20 <REP> Mozilla
05/10/2006 20:00 <REP> Sony Corporation
18/11/2006 00:41 <REP> Symantec
24/09/2006 18:20 <REP> Talkback
24/09/2006 12:35 <REP> vlc
24/09/2006 10:20 62 desktop.ini
24/09/2006 12:08 32 sversion.ini
2 fichier(s) 94 octets
20 R‚p(s) 4ÿ673ÿ519ÿ616 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est B84A-688A

R‚pertoire de C:\Documents and Settings\Nyco\Local Settings\Application Data

24/09/2006 10:20 <REP> .
24/09/2006 10:20 <REP> ..
06/11/2006 22:22 <REP> {3248F0A6-6813-11D6-A77B-00B0D0150030}
04/10/2006 20:17 <REP> Adobe
24/09/2006 11:22 <REP> ApplicationHistory
24/09/2006 11:23 <REP> ATI
14/11/2006 12:07 <REP> Help
06/01/2007 18:10 <REP> HP
12/11/2006 16:12 <REP> IAResearch
01/10/2006 09:49 <REP> Identities
06/01/2007 18:10 <REP> IsolatedStorage
29/10/2006 18:01 <REP> MediaLife
08/10/2006 13:25 <REP> Mes Cr‚ations
24/09/2006 10:20 <REP> Microsoft
24/09/2006 18:20 <REP> Mozilla
29/10/2006 18:01 <REP> Powercinema
24/09/2006 12:41 32ÿ768 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
24/09/2006 11:22 127 fusioncache.dat
24/09/2006 11:24 51ÿ400 GDIPFONTCACHEV1.DAT
24/09/2006 11:19 2ÿ287ÿ554 IconCache.db
4 fichier(s) 2ÿ371ÿ849 octets
16 R‚p(s) 4ÿ673ÿ515ÿ520 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est B84A-688A

R‚pertoire de C:\WINDOWS\system32\config\systemprofile\Application Data

24/09/2006 10:18 <REP> .
24/09/2006 10:18 <REP> ..
24/09/2006 10:18 <REP> Microsoft
24/09/2006 10:18 62 desktop.ini
1 fichier(s) 62 octets
3 R‚p(s) 4ÿ673ÿ515ÿ520 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est B84A-688A

R‚pertoire de C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data

24/09/2006 10:18 <REP> .
24/09/2006 10:18 <REP> ..
0 fichier(s) 0 octets
2 R‚p(s) 4ÿ673ÿ515ÿ520 octets libres

******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks

Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est B84A-688A

R‚pertoire de C:\WINDOWS\Tasks

18/11/2006 00:44 278 Norton SystemWorks One Button Checkup.job
28/10/2006 16:26 254 AD95EEF090829C00.job
01/10/2006 09:35 348 HPpromotions hp photosmart 7700 series.job
01/10/2006 09:35 340 HP Usg Daily.job
24/09/2006 10:17 6 SA.DAT
24/09/2006 10:15 65 desktop.ini
24/09/2006 10:15 <REP> ..
24/09/2006 10:15 <REP> .
6 fichier(s) 1ÿ291 octets
2 R‚p(s) 4ÿ673ÿ515ÿ520 octets libres

******************************************
## Répertoires de Program files

Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est B84A-688A

R‚pertoire de C:\Program Files

07/01/2007 13:56 <REP> .
07/01/2007 13:56 <REP> ..
28/10/2006 18:32 <REP> Adobe
28/10/2006 16:24 <REP> Adverts
24/09/2006 10:26 <REP> Agnitum
17/10/2006 09:24 <REP> Ahead
04/11/2006 18:52 <REP> Alwil Software
24/09/2006 11:12 <REP> AMD
24/09/2006 11:08 <REP> ASUS
24/09/2006 11:03 <REP> ATI Technologies
24/09/2006 11:19 <REP> AvRack
24/09/2006 11:26 <REP> BeWAN ADSL V1.9.0.5
16/10/2006 11:50 <REP> Citrix
24/09/2006 10:14 <REP> ComPlus Applications
24/09/2006 12:47 <REP> CyberLink
24/09/2006 19:39 <REP> DJ show
24/09/2006 19:32 <REP> d-lusion
29/11/2006 23:05 <REP> EA GAMES
06/01/2007 18:06 <REP> Fichiers communs
22/10/2006 21:42 <REP> GOA
02/12/2006 16:26 <REP> HabilitationEleve
24/09/2006 20:19 <REP> Happy Note
06/01/2007 18:02 <REP> Hewlett-Packard
06/01/2007 17:58 <REP> HP
04/11/2006 21:34 <REP> I and A Research
03/11/2006 12:09 <REP> IdolMusicStar
18/11/2006 16:11 <REP> Internet Explorer
28/10/2006 16:26 <REP> itch poke
06/11/2006 22:23 <REP> Java
28/11/2006 21:24 <REP> Kaspersky Lab
06/11/2006 22:23 <REP> LimeWire
24/09/2006 12:47 <REP> Logitech
24/09/2006 10:14 <REP> Messenger
05/12/2006 22:52 <REP> Messenger Plus! Live
28/10/2006 16:24 <REP> MessengerPlus! 3
24/09/2006 10:17 <REP> microsoft frontpage
23/10/2006 18:55 <REP> Microsoft Games
03/10/2006 13:59 <REP> Microsoft Office
03/10/2006 13:57 <REP> Microsoft.NET
30/10/2006 11:39 <REP> MorpheusBar
24/09/2006 10:15 <REP> Movie Maker
07/01/2007 21:54 <REP> Mozilla Firefox 2 Beta 2
24/09/2006 10:14 <REP> MSN
24/09/2006 10:14 <REP> MSN Gaming Zone
28/10/2006 16:26 <REP> MSN Messenger
24/09/2006 14:04 <REP> MUSICMATCH
24/09/2006 10:15 <REP> NetMeeting
29/11/2006 00:03 <REP> Norton SystemWorks
24/09/2006 11:17 <REP> NVIDIA Corporation
13/11/2006 22:55 <REP> OOBOX
24/09/2006 10:15 <REP> Outlook Express
24/09/2006 11:19 <REP> Realtek AC97
24/09/2006 11:19 <REP> Realtek Sound Manager
24/09/2006 10:14 <REP> Services en ligne
28/10/2006 18:40 <REP> Shareaza
17/01/2006 23:17 <REP> Silicon Image
05/10/2006 20:04 <REP> Sony
05/10/2006 20:04 <REP> Sony Corporation
18/11/2006 00:49 <REP> Symantec
24/09/2006 11:28 <REP> Thomson
24/09/2006 12:35 <REP> VideoLAN
28/10/2006 16:53 <REP> VirtualDJ
24/09/2006 11:33 <REP> Wanadoo
01/11/2006 00:04 <REP> WinAntiSpyware 2006 Scanner
05/12/2006 23:22 <REP> Windows Media Player
24/09/2006 10:14 <REP> Windows NT
24/09/2006 12:25 <REP> WinRAR
24/09/2006 10:17 <REP> xerox
0 fichier(s) 0 octets
68 R‚p(s) 4ÿ673ÿ511ÿ424 octets libres

******************************************
## Popups autorisées

* Internet Explorer

* Mozilla Firefox (1 autorisé 2 interdit)

******************************************
## Registre

* [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
intrainfo REG_SZ C:\DOCUME~1\Nyco\APPLIC~1\ITCHPO~1\dentcomp.exe

* [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]
command REG_SZ C:\Documents and Settings\All Users\Application Data\Dvd trust mp3 grim\mags error.exe

******************************************
## Zones de sécurité

* HKCU Domains (4)

* P3P History (5)

******************************************
## Recherche C:\WINDOWS\*.htm, "C:\WINDOWS\*.gif"

Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est B84A-688A

R‚pertoire de C:\WINDOWS

Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est B84A-688A

R‚pertoire de C:\WINDOWS

24/09/2006 11:21 49 transp.gif
1 fichier(s) 49 octets
0 R‚p(s) 4ÿ673ÿ437ÿ696 octets libres

*************** Fin du rapport ****************

Voila pour le rapport merci de m'aider philae83
0
philae83 Messages postés 12854 Statut Contributeur sécurité 206
 
bonsoir,

* désinstalle MESSENGERPLUS3, tu le ré installeras sans les sponsors ensuite.

puis

* lance hijackthis pour un scan seulement coche et fixe ces lignes
(toutes fenêtres fermées y compris IE)

O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [intrainfo] C:\DOCUME~1\Nyco\APPLIC~1\ITCHPO~1\dentcomp.exe
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O16 - DPF: {00330010-0000-0000-0000-000020160010} - http://207.234.185.217/ABoxInst_int25.exe
O16 - DPF: {22945A69-1191-4DCF-9E6F-409BDE94D101} - http://dl-ak.solidworks.com/nonsecure/edrawings/e2020sp01/28.1.0.0091-PCK0T79I/cab//eModelsStandard.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://rorofac.spaces.live.com/PhotoUpload/MsnPUpld.cab?10,0,912,0
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {983AB2CC-3D50-11D9-ADFE-00062919A34C} (ActiveXUpload.UserCtrl) - http://www.photoservice.com/activeX/newUpload.CAB
O18 - Protocol: bw+0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {C7B8908B-2E1D-4EC3-873F-E0FA9D229878} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

puis

* Assure toi d'avoir accès à tous les fichiers

-démarrer

-poste de travail ou autre dossier

-menu outils

-options de dossier

-onglet affichage

puis

- activer la case : Afficher les fichiers et dossiers cachés

- désactiver la case : Masquer les extensions des fichiers dont le type est connu

- désactiver la case : Masquer les fichier protégés du système d'exploitation

Puis - Appliquer

* et Supprime le(s) fichier(s) ci dessous si il(s) est (sont) présent(s) :

C:\Documents and Settings\Nyco\Application Data\itch poke
C:\Program Files\ Adverts
C:\DOCUMENTS & SETTINGS\Nyco\APPLICATION DATA\ITCHPO~1

* Dans l'Explorateur Windows recache les fichiers système afin de ne pas faire d'erreur à l'avenir. Retourne à la fenêtre Paramètres de dossiers et sélectionne Ne pas afficher les fichiers cachés ou les fichiers système

* connais tu Dvd trust mp3 grim

* reposte un nouveau rapport HijackThis
0