Virus photo.zip sur msn

Fermé
tomiche - 13 sept. 2007 à 20:06
tomiche Messages postés 4 Date d'inscription mardi 11 septembre 2007 Statut Membre Dernière intervention 27 septembre 2007 - 20 sept. 2007 à 13:34
Bonsoir, comme beaucoup d'autres je suis infecté par le virus répandu sur msn : photo.zip je vous poste des logs msnfix et hijck, par contre je ne suis pas un as en informatique merci de m'expliquer les demarches a suivre...

msnfix :

MSNFix 1.495

C:\Documents and Settings\tom\Bureau\MSNFix
Fix exécuté le 13/09/2007 - 19:42:53,75 By tom
mode normal

************************ Recherche les fichiers présents

... C:\WINDOWS\system32\microsoft\backup.ftp
... C:\WINDOWS\system32\microsoft\backup.tftp
... C:\WINDOWS\W139_jpg.zip

************************ Recherche les dossiers présents

Aucun dossier trouvé




************************ Suppression des fichiers

.. OK ... C:\WINDOWS\system32\microsoft\backup.ftp
.. OK ... C:\WINDOWS\system32\microsoft\backup.tftp
.. OK ... C:\WINDOWS\W139_jpg.zip



************************ Nettoyage du registre



************************ Fichiers suspects

Aucun Fichier trouvé


Les fichiers et clés de registre supprimés ont été sauvegardés dans le fichier 13092007_19434814.zip


------------------------------------------------------------------------
Auteur : !aur3n7 Contact: https://www.ionos.fr/
---------------------------------------------------------------




rapport hijack :


Logfile of HijackThis v1.99.1
Scan saved at 19:51:35, on 13/09/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16512)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\VIAudioi\SBADeck\ADeck.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\CameraAssistant.exe
C:\WINDOWS\system32\ElkCtrl.exe
C:\WINDOWS\services.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Hijackthis Version Française\hijackthis vf.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://actus.sfr.fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://actus.sfr.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://actus.sfr.fr
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = https://www.bing.com/?FORM=TOOLBR&cc=fr&toHttps=1&redig=4527FFF1C12746FC9EDB535C75E80ECC
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [AudioDeck] C:\Program Files\VIAudioi\SBADeck\ADeck.exe 1
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SsAAD.exe] C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechCameraAssistant] C:\Program Files\Logitech\Video\CameraAssistant.exe
O4 - HKLM\..\Run: [LogitechVideo[inspector]] C:\Program Files\Logitech\Video\InstallHelper.exe /inspect
O4 - HKLM\..\Run: [LogitechCameraService(E)] C:\WINDOWS\system32\ElkCtrl.exe /automation
O4 - HKLM\..\Run: [services.exe] C:\WINDOWS\services.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?963f2426f0c84d7f9e75b568850168f8
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?963f2426f0c84d7f9e75b568850168f8
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: bw+0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: offline-8876480 - {79765BC3-EFE2-420C-B34B-ABF993FB6B06} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Logitech Process Monitor (LVPrcSrv) - Logitech Inc. - c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SSScsiSV.exe

merci d'avance !!
A voir également:

5 réponses

rudyrital Messages postés 6230 Date d'inscription lundi 14 novembre 2005 Statut Membre Dernière intervention 10 octobre 2009 131
13 sept. 2007 à 20:42
Tout d'abord Bonjour et bienvenue sur le forum d'entraide COMMENT CA MARCHE

fait un scan ici
https://www.bitdefender.fr/

* En bas, à gauche de la fenêtre, clique sur BitDefender SCAN ONLINE
* Dans la nouvelle fenêtre, clique sur j‘accepte
* Accepte le contrôle Active X et Installe le. Le scanner se charge
* La fenêtre change encore, clique sur ’cliquez ici pour scanner’
* Les signatures se chargent, etc.

tuto en image :
http://pageperso.aol.fr/rginformatique/mapage/defender.htm

copie colle le résultat ici --
Ou sont les exorcistes quand on a besoin d'eux pour chasser la bete qui est en nous... Kurt Cobain
0
tomiche Messages postés 4 Date d'inscription mardi 11 septembre 2007 Statut Membre Dernière intervention 27 septembre 2007
17 sept. 2007 à 22:35
voici le rapport bitdefender, quelle est la marche a suivre ??

BitDefender Online Scanner







Rapport d'analyse généré à: Mon, Sep 17, 2007 - 22:11:46









Voie d'analyse: A:\;C:\;D:\;E:\;F:\;















Statistiques

Temps


00:59:18

Fichiers


179324

Directoires


4394

Secteurs de boot


3

Archives


1502

Paquets programmes


7108







Résultats

Virus identifiés


3

Fichiers infectés


18

Fichiers suspects


0

Avertissements


0

Désinfectés


0

Fichiers effacés


3







Info sur les moteurs

Définition virus


808218

Version des moteurs


AVCORE v1.0 (build 2411) (i386) (Jul 9 2007 12:10:22)

Analyse des plugins


14

Archive des plugins


38

Unpack des plugins


7

E-mail plugins


6

Système plugins


1







Paramètres d'analyse

Première action


Désinfecté

Seconde Action


Supprimé

Heuristique


Oui

Acceptez les avertissements


Oui

Extensions analysées


*;

Excludez les extensions




Analyse d'emails


Oui

Analyse des Archives


Oui

Analyser paquets programmes


Oui

Analyse des fichiers


Oui

Analyse de boot


Oui








Fichier analysé


Statut

C:\Documents and Settings\tom\Local Settings\Temporary Internet Files\Content.IE5\TQ1SJSOA\dualCA33EE58.jpg


Infecté par: Trojan.Dialer.VUY

C:\Documents and Settings\tom\Local Settings\Temporary Internet Files\Content.IE5\Z0VU6CP4\3[1].jpg


Infecté par: Backdoor.SDBot.DEWZ

C:\Documents and Settings\tom\Local Settings\Temporary Internet Files\Content.IE5\Z0VU6CP4\3[1].jpg


Echec de la désinfection

C:\Documents and Settings\tom\Local Settings\Temporary Internet Files\Content.IE5\Z0VU6CP4\3[1].jpg


Supprimé

C:\g7n4l2o4i4v4.exe


Infecté par: Trojan.Dialer.VUY

C:\Program Files\Fichiers communs\Carlson\carlton


Infecté par: Trojan.Dialer.VUY

C:\System Volume Information\_restore{7DEFC41F-D969-4B63-8372-D84AD3EBEFE3}\RP138\A0017644.exe


Infecté par: Trojan.Dialer.VUY

C:\System Volume Information\_restore{7DEFC41F-D969-4B63-8372-D84AD3EBEFE3}\RP138\A0017675.exe


Infecté par: Trojan.Dialer.VUY

C:\System Volume Information\_restore{7DEFC41F-D969-4B63-8372-D84AD3EBEFE3}\RP139\A0017684.exe


Infecté par: Backdoor.Sdbot.DEWR

C:\System Volume Information\_restore{7DEFC41F-D969-4B63-8372-D84AD3EBEFE3}\RP139\A0017684.exe


Echec de la désinfection

C:\System Volume Information\_restore{7DEFC41F-D969-4B63-8372-D84AD3EBEFE3}\RP139\A0017684.exe


Supprimé

C:\System Volume Information\_restore{7DEFC41F-D969-4B63-8372-D84AD3EBEFE3}\RP139\A0017721.exe


Infecté par: Trojan.Dialer.VUY

C:\System Volume Information\_restore{7DEFC41F-D969-4B63-8372-D84AD3EBEFE3}\RP139\A0017741.exe


Infecté par: Trojan.Dialer.VUY

C:\System Volume Information\_restore{7DEFC41F-D969-4B63-8372-D84AD3EBEFE3}\RP140\A0017767.exe


Infecté par: Trojan.Dialer.VUY

C:\System Volume Information\_restore{7DEFC41F-D969-4B63-8372-D84AD3EBEFE3}\RP140\A0017789.exe


Infecté par: Trojan.Dialer.VUY

C:\System Volume Information\_restore{7DEFC41F-D969-4B63-8372-D84AD3EBEFE3}\RP140\A0017809.exe


Infecté par: Trojan.Dialer.VUY

C:\System Volume Information\_restore{7DEFC41F-D969-4B63-8372-D84AD3EBEFE3}\RP141\A0017840.exe


Infecté par: Trojan.Dialer.VUY

C:\System Volume Information\_restore{7DEFC41F-D969-4B63-8372-D84AD3EBEFE3}\RP141\A0017863.exe


Infecté par: Trojan.Dialer.VUY

C:\System Volume Information\_restore{7DEFC41F-D969-4B63-8372-D84AD3EBEFE3}\RP142\A0017905.exe


Infecté par: Trojan.Dialer.VUY

C:\System Volume Information\_restore{7DEFC41F-D969-4B63-8372-D84AD3EBEFE3}\RP142\A0017958.exe


Infecté par: Trojan.Dialer.VUY

C:\WINDOWS\services.exe


Infecté par: Backdoor.SDBot.DEWZ

C:\WINDOWS\services.exe


Echec de la désinfection

C:\WINDOWS\services.exe


Echec de la suppression

C:\WINDOWS\W139_jpg.zip=>www.W139_jpg-msn.com


Infecté par: Backdoor.SDBot.DEWZ

C:\WINDOWS\W139_jpg.zip=>www.W139_jpg-msn.com


Echec de la désinfection

C:\WINDOWS\W139_jpg.zip=>www.W139_jpg-msn.com


Supprimé

C:\WINDOWS\W139_jpg.zip


Mis à jour
0
Quelqu'un pourrait t'il m'aider ?? MSN est vraiment en train de partir en vrille sur mon ordi !
0
lolo2405 Messages postés 2 Date d'inscription mercredi 19 septembre 2007 Statut Membre Dernière intervention 19 septembre 2007
19 sept. 2007 à 20:52
Bonsoir, comme tous le monde je suis infecté par un virus sur msn, n etant pas une pro j aimerai connaitre les demarches a suivre pour m en debarrasser. Merci d avance
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
tomiche Messages postés 4 Date d'inscription mardi 11 septembre 2007 Statut Membre Dernière intervention 27 septembre 2007
20 sept. 2007 à 13:34
Il faut que tu crée ton propre topic pour éviter que les réponses se croisent lolo2405 bon, sinon que donne mon rapport bitdefender ??
0