Problème d'affichage clic droit suite à virus

tomcat75 -  
Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   -
Bonjour,
suite à une attaque (mon ordi fait un truc bizarre: le menu clic droit ne s'affiche que lorsque je passe mon pointeur dessus. J'ai avast vesrion familiale+ spybot + ad-adware.

Voici le journal avast:

24/06/2005 18:28:11 Administrateur 1200 Sign of "Win32:Trojan-gen. {UPX!}" has been found in "D:\Documents and Settings\Vrac\EXE\coeur.exe" file.
26/06/2005 12:17:52 SYSTEM 512 Sign of "Win32:Adan-061 [Adw]" has been found in "http://static.topconverting.com/activex/mp3.ocx" file.
26/06/2005 19:29:00 SYSTEM 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
26/06/2005 19:29:24 SYSTEM 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
26/06/2005 19:29:32 SYSTEM 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
26/06/2005 19:29:42 SYSTEM 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
26/06/2005 19:29:53 SYSTEM 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
26/06/2005 19:30:00 SYSTEM 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
26/06/2005 19:30:22 SYSTEM 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
26/06/2005 19:30:42 SYSTEM 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
26/06/2005 19:30:51 SYSTEM 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
26/06/2005 19:33:05 SYSTEM 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\RECYCLER\S-1-5-21-790525478-1682526488-1343024091-500\Dc26.exe" file.
26/06/2005 19:36:26 Administrateur 1172 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
26/06/2005 19:38:29 Administrateur 1172 Function setifaceUpdatePackages() has failed. Return code is 0x000004C7, dwRes is 000004C7.
26/06/2005 21:15:36 SYSTEM 508 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
26/06/2005 21:15:37 SYSTEM 508 An error has occured while attempting to update. Please check the logs.
26/06/2005 23:16:31 Administrateur 904 Function setifaceUpdatePackages() has failed. Return code is 0x00000002, dwRes is 00000002.
27/06/2005 01:18:00 SYSTEM 508 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
27/06/2005 01:18:00 SYSTEM 508 An error has occured while attempting to update. Please check the logs.
27/06/2005 07:20:07 SYSTEM 508 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
27/06/2005 07:20:08 SYSTEM 508 An error has occured while attempting to update. Please check the logs.
27/06/2005 07:42:22 Administrateur 1792 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
27/06/2005 11:22:24 SYSTEM 508 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
27/06/2005 11:22:24 SYSTEM 508 An error has occured while attempting to update. Please check the logs.
27/06/2005 17:24:26 SYSTEM 508 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
27/06/2005 17:24:26 SYSTEM 508 An error has occured while attempting to update. Please check the logs.
27/06/2005 17:31:26 SYSTEM 508 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
27/06/2005 17:31:27 SYSTEM 508 An error has occured while attempting to update. Please check the logs.
27/06/2005 19:29:00 SYSTEM 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
27/06/2005 20:58:07 SYSTEM 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
27/06/2005 20:58:15 SYSTEM 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
27/06/2005 20:58:27 SYSTEM 508 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
27/06/2005 20:58:35 SYSTEM 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
27/06/2005 20:58:42 SYSTEM 508 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
27/06/2005 20:58:56 SYSTEM 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
27/06/2005 20:59:03 SYSTEM 508 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
27/06/2005 20:59:11 SYSTEM 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
28/06/2005 19:29:00 SYSTEM 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
28/06/2005 19:29:24 SYSTEM 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
28/06/2005 19:29:31 SYSTEM 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
28/06/2005 19:29:41 SYSTEM 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
28/06/2005 19:29:49 SYSTEM 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
29/06/2005 19:29:02 SYSTEM 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
29/06/2005 19:29:23 SYSTEM 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
29/06/2005 19:29:31 SYSTEM 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
29/06/2005 19:29:46 SYSTEM 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
29/06/2005 19:29:53 SYSTEM 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
29/06/2005 19:30:00 SYSTEM 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
29/06/2005 19:30:06 SYSTEM 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
29/06/2005 19:30:13 SYSTEM 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
29/06/2005 19:30:20 SYSTEM 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
30/06/2005 19:29:00 SYSTEM 528 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
30/06/2005 19:29:17 SYSTEM 528 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
30/06/2005 19:29:25 SYSTEM 528 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
30/06/2005 19:29:33 SYSTEM 528 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
30/06/2005 19:29:40 SYSTEM 528 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
30/06/2005 19:29:47 SYSTEM 528 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
30/06/2005 19:30:05 SYSTEM 528 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
01/07/2005 19:29:00 SYSTEM 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
01/07/2005 19:29:18 SYSTEM 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
01/07/2005 19:29:32 SYSTEM 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
03/07/2005 20:29:29 SYSTEM 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
03/07/2005 20:30:21 SYSTEM 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
03/07/2005 20:30:52 SYSTEM 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
03/07/2005 20:31:00 SYSTEM 516 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
03/07/2005 20:31:06 SYSTEM 516 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
03/07/2005 20:31:14 SYSTEM 516 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
04/07/2005 20:29:14 SYSTEM 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
04/07/2005 20:29:35 SYSTEM 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
04/07/2005 20:29:43 SYSTEM 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
04/07/2005 20:29:52 SYSTEM 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
04/07/2005 20:29:59 SYSTEM 508 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
04/07/2005 20:30:07 SYSTEM 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
04/07/2005 20:30:14 SYSTEM 508 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
04/07/2005 20:30:24 SYSTEM 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
04/07/2005 20:30:32 SYSTEM 508 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
05/07/2005 20:29:12 SYSTEM 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
05/07/2005 20:29:32 SYSTEM 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
05/07/2005 20:29:40 SYSTEM 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
05/07/2005 20:29:45 SYSTEM 516 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
05/07/2005 20:29:47 SYSTEM 516 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
05/07/2005 20:29:55 SYSTEM 516 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
05/07/2005 20:30:03 SYSTEM 516 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
05/07/2005 20:30:11 SYSTEM 516 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
05/07/2005 20:30:21 SYSTEM 516 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
05/07/2005 20:30:28 SYSTEM 516 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
06/07/2005 20:29:12 SYSTEM 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
06/07/2005 20:30:14 SYSTEM 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
06/07/2005 20:31:10 SYSTEM 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
06/07/2005 20:31:18 SYSTEM 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
06/07/2005 20:31:26 SYSTEM 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
06/07/2005 20:31:33 SYSTEM 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
06/07/2005 20:31:40 SYSTEM 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
06/07/2005 20:31:48 SYSTEM 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
06/07/2005 20:31:55 SYSTEM 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
07/07/2005 20:29:10 SYSTEM 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
07/07/2005 20:29:35 SYSTEM 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
07/07/2005 20:29:41 SYSTEM 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
07/07/2005 20:29:48 SYSTEM 516 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
07/07/2005 20:29:55 SYSTEM 516 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
07/07/2005 20:30:01 SYSTEM 516 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
07/07/2005 20:30:08 SYSTEM 516 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
07/07/2005 20:30:14 SYSTEM 516 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
08/07/2005 20:29:11 SYSTEM 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
09/07/2005 00:17:38 SYSTEM 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
09/07/2005 00:17:49 SYSTEM 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
09/07/2005 00:17:58 SYSTEM 516 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
09/07/2005 00:18:06 SYSTEM 516 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
09/07/2005 00:18:12 SYSTEM 516 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
09/07/2005 00:18:19 SYSTEM 516 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
09/07/2005 00:18:31 SYSTEM 516 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
09/07/2005 00:18:40 SYSTEM 516 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
11/07/2005 07:56:34 SYSTEM 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
11/07/2005 07:57:25 SYSTEM 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
11/07/2005 08:10:57 SYSTEM 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
11/07/2005 08:11:05 SYSTEM 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
11/07/2005 08:11:12 SYSTEM 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
11/07/2005 08:11:18 SYSTEM 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
11/07/2005 08:12:08 SYSTEM 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
12/07/2005 08:55:19 SYSTEM 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
12/07/2005 08:56:07 SYSTEM 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
12/07/2005 08:56:36 SYSTEM 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
12/07/2005 08:56:46 SYSTEM 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
12/07/2005 08:56:54 SYSTEM 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
12/07/2005 08:57:02 SYSTEM 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
12/07/2005 08:57:09 SYSTEM 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
12/07/2005 08:57:16 SYSTEM 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
12/07/2005 08:57:23 SYSTEM 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
13/07/2005 08:55:07 SYSTEM 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
13/07/2005 16:45:30 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\8OMKFVQL\famille-logo-onglets-doctissimo-grossesse[1].gif (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\8OMKFVQL\famille-logo-onglets-doctissimo-grossesse[1].gif) returning error, 0000A474.
13/07/2005 16:45:32 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\26UU7AHT\sky_sms[1].swf (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\26UU7AHT\sky_sms[1].swf) returning error, 0000A474.
13/07/2005 16:45:33 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\8OMKFVQL\forum_grossesse[1].gif (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\8OMKFVQL\forum_grossesse[1].gif) returning error, 0000A474.
13/07/2005 16:46:22 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\L1EXDN3G\1816258254@Top,Right,Bottom,TopRight,Right1,Bottom2[1] (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\L1EXDN3G\1816258254@Top,Right,Bottom,TopRight,Right1,Bottom2[1]) returning error, 0000A474.
13/07/2005 16:46:23 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\8OMKFVQL\nut_quizz_nutrition[1].gif (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\8OMKFVQL\nut_quizz_nutrition[1].gif) returning error, 0000A474.
13/07/2005 16:46:23 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\26UU7AHT\bebe_gauche[2].php (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\26UU7AHT\bebe_gauche[2].php) returning error, 0000A474.
13/07/2005 16:46:23 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\L1EXDN3G\masse_corporelle[1].gif (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\L1EXDN3G\masse_corporelle[1].gif) returning error, 0000A474.
13/07/2005 16:46:39 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\L1EXDN3G\chirurgie_esthetique[1].gif (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\L1EXDN3G\chirurgie_esthetique[1].gif) returning error, 0000A474.
13/07/2005 16:46:41 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\8OMKFVQL\sky_sms[1].swf (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\8OMKFVQL\sky_sms[1].swf) returning error, 0000A474.
13/07/2005 16:50:47 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\XROGCPBM\1092796525@Top,Right,Bottom,TopRight,Right1,Bottom2[1] (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\XROGCPBM\1092796525@Top,Right,Bottom,TopRight,Right1,Bottom2[1]) returning error, 0000A474.
13/07/2005 16:50:48 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\8OMKFVQL\psy_quizz_psycho_02[1].gif (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\8OMKFVQL\psy_quizz_psycho_02[1].gif) returning error, 0000A474.
13/07/2005 16:50:48 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\26UU7AHT\bebe_gauche[4].php (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\26UU7AHT\bebe_gauche[4].php) returning error, 0000A474.
13/07/2005 16:50:49 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\XROGCPBM\sky_120X400[1].swf (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\XROGCPBM\sky_120X400[1].swf) returning error, 0000A474.
13/07/2005 16:51:04 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\26UU7AHT\liste_sujet-1[2].htm (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\26UU7AHT\liste_sujet-1[2].htm) returning error, 0000A474.
13/07/2005 16:51:04 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\XROGCPBM\1890457335@Top,Right,Bottom,TopRight,Right1,Bottom2[1] (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\XROGCPBM\1890457335@Top,Right,Bottom,TopRight,Right1,Bottom2[1]) returning error, 0000A474.
13/07/2005 16:51:05 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\L1EXDN3G\sex_quizz_sexo_01[1].gif (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\L1EXDN3G\sex_quizz_sexo_01[1].gif) returning error, 0000A474.
13/07/2005 16:51:05 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\XROGCPBM\bebe_gauche[1].php (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\XROGCPBM\bebe_gauche[1].php) returning error, 0000A474.
13/07/2005 16:51:05 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\8OMKFVQL\regimes_az_01[1].gif (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\8OMKFVQL\regimes_az_01[1].gif) returning error, 0000A474.
13/07/2005 16:51:06 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\L1EXDN3G\sky_regimes_doctissimo_fond_rose[1].gif (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\L1EXDN3G\sky_regimes_doctissimo_fond_rose[1].gif) returning error, 0000A474.
13/07/2005 16:52:19 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Application Data\Microsoft\Office\Shortcut Bar\Bur17.tmp (C:\Documents and Settings\Administrateur\Application Data\Microsoft\Office\Shortcut Bar\Bur17.tmp) returning error, 0000A474.
14/07/2005 10:28:48 SYSTEM 504 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
14/07/2005 10:29:46 SYSTEM 504 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
14/07/2005 10:30:05 SYSTEM 504 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
14/07/2005 10:30:18 SYSTEM 504 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
14/07/2005 10:30:31 SYSTEM 504 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
14/07/2005 10:30:43 SYSTEM 504 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
14/07/2005 10:30:48 SYSTEM 504 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
14/07/2005 10:31:01 SYSTEM 504 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
14/07/2005 10:31:11 SYSTEM 504 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
14/07/2005 10:31:28 SYSTEM 504 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
15/07/2005 19:52:06 Administrateur 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Del4.tmp" file.
15/07/2005 19:53:02 Administrateur 508 Sign of "Win32:SrchAssist [Adw]" has been found in "C:\Program Files\180searchassistant\salm.exe\[UPX]" file.
15/07/2005 20:01:15 Administrateur 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
15/07/2005 20:01:27 Administrateur 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
15/07/2005 20:01:37 Administrateur 508 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
15/07/2005 20:01:46 Administrateur 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
15/07/2005 20:01:53 Administrateur 508 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
15/07/2005 20:01:59 Administrateur 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
15/07/2005 20:02:05 Administrateur 508 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
15/07/2005 20:02:12 Administrateur 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
16/07/2005 19:51:14 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
16/07/2005 20:50:57 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
16/07/2005 20:51:07 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
16/07/2005 20:51:16 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
16/07/2005 20:51:23 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
16/07/2005 20:51:29 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
16/07/2005 20:51:36 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
16/07/2005 20:51:43 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
16/07/2005 20:51:49 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
17/07/2005 19:51:14 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
17/07/2005 19:51:44 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
17/07/2005 19:52:01 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
17/07/2005 19:52:08 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
17/07/2005 19:52:14 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
17/07/2005 19:52:21 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
17/07/2005 19:52:27 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
17/07/2005 19:52:33 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
17/07/2005 19:52:39 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
18/07/2005 19:51:13 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
18/07/2005 20:03:23 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
18/07/2005 20:03:33 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
18/07/2005 20:03:41 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
18/07/2005 20:03:49 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
18/07/2005 20:03:57 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
18/07/2005 20:04:03 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
18/07/2005 20:04:10 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
18/07/2005 20:04:17 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
19/07/2005 19:51:14 Administrateur 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
19/07/2005 19:51:37 Administrateur 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
19/07/2005 19:51:46 Administrateur 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
19/07/2005 19:51:55 Administrateur 516 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
19/07/2005 19:52:06 Administrateur 516 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
19/07/2005 19:52:17 Administrateur 516 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
19/07/2005 19:52:25 Administrateur 516 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
19/07/2005 19:52:33 Administrateur 516 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
19/07/2005 19:52:41 Administrateur 516 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
20/07/2005 19:51:14 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
20/07/2005 20:54:00 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
20/07/2005 20:54:24 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
20/07/2005 20:54:38 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
20/07/2005 20:54:45 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
20/07/2005 20:54:53 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
20/07/2005 20:55:00 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
20/07/2005 20:55:08 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
20/07/2005 20:55:16 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
20/07/2005 21:54:13 Administrateur 512 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
20/07/2005 21:54:13 Administrateur 512 An error has occured while attempting to update. Please check the logs.
21/07/2005 19:01:53 SYSTEM 508 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
21/07/2005 19:01:53 SYSTEM 508 An error has occured while attempting to update. Please check the logs.
21/07/2005 19:51:13 SYSTEM 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
21/07/2005 19:52:02 SYSTEM 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
21/07/2005 19:52:11 SYSTEM 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
21/07/2005 19:52:27 SYSTEM 508 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
21/07/2005 19:52:39 SYSTEM 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
21/07/2005 19:52:46 SYSTEM 508 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
22/07/2005 19:51:15 Administrateur 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
22/07/2005 19:51:38 Administrateur 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
22/07/2005 19:51:49 Administrateur 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
22/07/2005 19:51:59 Administrateur 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
22/07/2005 19:52:10 Administrateur 508 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
22/07/2005 19:52:21 Administrateur 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
22/07/2005 19:52:30 Administrateur 508 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
22/07/2005 19:52:38 Administrateur 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
22/07/2005 19:52:48 Administrateur 508 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
23/07/2005 15:27:06 Administrateur 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\Program Files\Altnet\Download Manager\asm.exe" file.
23/07/2005 15:27:28 Administrateur 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\Program Files\Altnet\Download Manager\asmps.dll" file.
23/07/2005 15:28:27 Administrateur 508 Sign of "Win32:Adan-102 [Adw]" has been found in "C:\WINNT\Temp\Adware\FSGe69b.rra" file.
23/07/2005 15:28:41 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\SNa02248\adverck\cd_clint.dll" file.
23/07/2005 15:28:51 Administrateur 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\InocuLAN\TMP\$7.tmp" file.
23/07/2005 15:28:58 Administrateur 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\InocuLAN\TMP\$8.tmp" file.
23/07/2005 15:29:08 Administrateur 508 Sign of "Win32:Trojano-1403 [Trj]" has been found in "C:\InocuLAN\TMP\$11.tmp" file.
23/07/2005 15:29:19 Administrateur 508 Sign of "Win32:Adan-057 [Adw]" has been found in "C:\Program Files\INSTAFINK\instafink.dll" file.
23/07/2005 15:29:29 Administrateur 508 Sign of "Win32:Findbar [Adw]" has been found in "C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\cabA09D.tmp" file.
23/07/2005 15:29:36 Administrateur 508 Sign of "Win32:Findbar [Adw]" has been found in "C:\InocuLAN\TMP\$89.tmp" file.
23/07/2005 19:51:14 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
23/07/2005 19:54:58 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
23/07/2005 19:55:29 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
23/07/2005 19:55:39 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
23/07/2005 19:55:48 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
23/07/2005 19:55:57 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
23/07/2005 19:56:05 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
23/07/2005 19:56:14 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
23/07/2005 19:56:34 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
23/07/2005 20:09:41 Administrateur 1208 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temp\asmfiles.cab\asm.exe" file.
23/07/2005 20:09:50 Administrateur 1208 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temp\asmfiles.cab\asmps.dll" file.
23/07/2005 20:12:50 Administrateur 1208 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\4VV3MK15\asmfiles[1].cab\asm.exe" file.
23/07/2005 20:12:53 Administrateur 1208 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\4VV3MK15\asmfiles[1].cab\asmps.dll" file.
23/07/2005 20:37:52 Administrateur 1208 Sign of "Win32:Trojano-1403 [Trj]" has been found in "C:\Program Files\Kazaa\My Shared Folder\kazaa267_fr.exe" file.
23/07/2005 21:28:15 Administrateur 1208 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SA3013.exe" file.
23/07/2005 22:03:09 Administrateur 1208 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\WINNT\Temp\Altnet\dmfiles.cab\AltnetUninstall.exe" file.
23/07/2005 22:03:19 Administrateur 1208 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\WINNT\Temp\Altnet\dmfiles.cab\asmend.exe" file.
23/07/2005 22:03:22 Administrateur 1208 Sign of "Win32:Findbar [Adw]" has been found in "C:\WINNT\Temp\Altnet\mysearch.cab\mySetp.exe" file.
23/07/2005 22:03:34 Administrateur 1208 Sign of "Win32:Trojano-1403 [Trj]" has been found in "C:\WINNT\Temp\Altnet\pmexe.cab\Points Manager.exe" file.
24/07/2005 18:18:21 SYSTEM 524 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
24/07/2005 18:18:22 SYSTEM 524 An error has occured while attempting to update. Please check the logs.
24/07/2005 18:25:11 SYSTEM 512 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
24/07/2005 18:25:12 SYSTEM 512 An error has occured while attempting to update. Please check the logs.
24/07/2005 18:39:33 Administrateur 1180 Function setifaceUpdatePackages() has failed. Return code is 0x000004C7, dwRes is 000004C7.
24/07/2005 19:02:52 SYSTEM 524 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
24/07/2005 19:02:53 SYSTEM 524 An error has occured while attempting to update. Please check the logs.
25/07/2005 08:12:22 SYSTEM 508 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
25/07/2005 08:12:22 SYSTEM 508 An error has occured while attempting to update. Please check the logs.
25/07/2005 19:51:14 SYSTEM 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
25/07/2005 20:03:43 SYSTEM 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
25/07/2005 20:03:51 SYSTEM 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
25/07/2005 20:04:07 SYSTEM 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
25/07/2005 20:04:18 SYSTEM 508 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
25/07/2005 20:04:28 SYSTEM 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
25/07/2005 20:04:39 SYSTEM 508 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
25/07/2005 20:04:46 SYSTEM 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
25/07/2005 20:04:53 SYSTEM 508 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
26/07/2005 19:51:15 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
26/07/2005 21:03:35 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
26/07/2005 21:03:44 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
26/07/2005 21:03:53 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
26/07/2005 21:04:00 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
26/07/2005 21:04:08 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
26/07/2005 21:04:19 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
26/07/2005 21:04:33 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
26/07/2005 21:04:42 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
27/07/2005 20:36:27 Administrateur 520 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
27/07/2005 20:37:19 Administrateur 520 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
27/07/2005 20:37:53 Administrateur 520 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
27/07/2005 20:38:02 Administrateur 520 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
27/07/2005 20:38:10 Administrateur 520 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
27/07/2005 20:38:19 Administrateur 520 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
27/07/2005 20:38:26 Administrateur 520 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
27/07/2005 20:38:34 Administrateur 520 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
27/07/2005 20:38:40 Administrateur 520 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
28/07/2005 20:36:11 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
28/07/2005 20:51:30 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
28/07/2005 20:51:49 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
28/07/2005 20:52:03 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
28/07/2005 20:52:10 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
28/07/2005 20:52:19 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
28/07/2005 20:52:27 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
28/07/2005 20:52:35 Administrateur 512 Sign of "Win32:DyfucDldr-AA [Trj]" has been found in "C:\temp\optimize.exe" file.
28/07/2005 20:52:51 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
30/07/2005 01:42:04 Administrateur 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Del8.tmp" file.
30/07/2005 01:43:21 Administrateur 508 Sign of "Win32:SrchAssist [Adw]" has been found in "C:\Program Files\180searchassistant\salm.exe\[UPX]" file.
30/07/2005 01:51:15 Administrateur 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
30/07/2005 01:51:27 Administrateur 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
30/07/2005 01:51:35 Administrateur 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
30/07/2005 01:51:44 Administrateur 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
30/07/2005 01:51:51 Administrateur 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
30/07/2005 13:51:52 Administrateur 516 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\7JDRJ5OW\nem220[1].dll" file.
30/07/2005 13:52:33 Administrateur 516 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\WINNT\nem220.dll" file.
30/07/2005 13:52:54 Administrateur 516 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\45QBOTYV\nem220[1].dll" file.
30/07/2005 13:53:06 Administrateur 516 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\WINNT\nem220.dll" file.
30/07/2005 13:53:23 Administrateur 516 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\GDCHKX4P\nem220[1].dll" file.
30/07/2005 13:53:31 Administrateur 516 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\WINNT\nem220.dll" file.
31/07/2005 11:09:19 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
31/07/2005 11:10:00 Administrateur 512 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\29YB878F\nem220[1].dll" file.
31/07/2005 11:10:18 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
31/07/2005 11:10:32 Administrateur 512 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\WINNT\nem220.dll" file.
31/07/2005 11:10:39 Administrateur 512 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
31/07/2005 11:10:48 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
31/07/2005 11:10:54 Administrateur 512 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\0HEJS16B\nem220[1].dll" file.
31/07/2005 11:11:00 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
31/07/2005 11:11:06 Administrateur 512 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\WINNT\nem220.dll" file.
31/07/2005 11:11:11 Administrateur 512 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
31/07/2005 11:11:21 Administrateur 512 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\8XEZS5UJ\nem220[1].dll" file.
31/07/2005 11:11:28 Administrateur 512 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\WINNT\nem220.dll" file.
31/07/2005 11:11:46 Administrateur 2000 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SA3013.exe" file.
01/08/2005 03:15:13 Administrateur 512 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
01/08/2005 03:15:14 Administrateur 512 An error has occured while attempting to update. Please check the logs.
01/08/2005 18:30:16 Administrateur 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
01/08/2005 18:31:22 Administrateur 516 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\29YB878F\nem220[1].dll" file.
01/08/2005 18:31:50 Administrateur 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
01/08/2005 18:32:05 Administrateur 516 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\WINNT\nem220.dll" file.
01/08/2005 18:32:14 Administrateur 516 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
01/08/2005 18:32:22 Administrateur 516 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\4VV3MK15\wsem303[1].dll" file.
01/08/2005 18:32:35 Administrateur 516 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
01/08/2005 18:32:42 Administrateur 516 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\WINNT\wsem303.dll" file.
01/08/2005 18:32:56 Administrateur 516 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
01/08/2005 18:33:05 Administrateur 516 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
02/08/2005 18:57:05 Administrateur 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
02/08/2005 18:58:29 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\UXKVSJAZ\nem220[1].dll" file.
02/08/2005 18:58:53 Administrateur 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
02/08/2005 18:59:00 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\WINNT\nem220.dll" file.
02/08/2005 18:59:10 Administrateur 508 Sign of "Win32:Astubin [Adw]" has been found in "C:\temp\180SAPack.exe\[UPX]" file.
02/08/2005 18:59:18 Administrateur 508 Sign of "Win32:DyfucDldr-W [Trj]" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\OPMRSTUV\actalert[1].exe" file.
02/08/2005 18:59:26 Administrateur 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
02/08/2005 18:59:32 Administrateur 508 Sign of "Win32:DyfucDldr-W [Trj]" has been found in "C:\Program Files\Internet Optimizer\update\actalert.exe" file.
02/08/2005 18:59:38 Administrateur 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
02/08/2005 18:59:44 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\U5N8XKF2\wsem303[1].dll" file.
02/08/2005 18:59:49 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\WINNT\wsem303.dll" file.
02/08/2005 18:59:55 Administrateur 508 Sign of "Win32:Adware-gen. [Adw]" has been found in "C:\temp\sahagent-cdt1004.exe" file.
02/08/2005 19:00:10 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\7JDRJ5OW\nem220[1].dll" file.
02/08/2005 19:00:18 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\WINNT\nem220.dll" file.
02/08/2005 19:00:26 Administrateur 508 Sign of "Win32:DyfucDldr-W [Trj]" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\0HEJS16B\actalert[1].exe" file.
02/08/2005 19:00:34 Administrateur 508 Sign of "Win32:DyfucDldr-W [Trj]" has been found in "C:\Program Files\Internet Optimizer\update\actalert.exe" file.
02/08/2005 19:00:39 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\OPMRSTUV\wsem303[1].dll" file.
02/08/2005 19:00:45 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\WINNT\wsem303.dll" file.
02/08/2005 19:01:24 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\8XEZS5UJ\nem220[1].dll" file.
02/08/2005 19:01:30 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\WINNT\nem220.dll" file.
02/08/2005 19:01:38 Administrateur 508 Sign of "Win32:DyfucDldr-W [Trj]" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\7JDRJ5OW\actalert[1].exe" file.
02/08/2005 19:01:48 Administrateur 508 Sign of "Win32:DyfucDldr-W [Trj]" has been found in "C:\Program Files\Internet Optimizer\update\actalert.exe" file.
02/08/2005 19:01:58 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\0HEJS16B\wsem303[1].dll" file.
02/08/2005 19:02:04 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\WINNT\wsem303.dll" file.
03/08/2005 18:06:00 Administrateur 508 Sign of "Win32:DyfucDldr-W [Trj]" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\7JDRJ5OW\actalert[1].exe" file.
03/08/2005 18:06:59 Administrateur 508 Sign of "Win32:DyfucDldr-W [Trj]" has been found in "C:\Program Files\Internet Optimizer\update\actalert.exe" file.
03/08/2005 18:07:12 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\U5N8XKF2\nem220[1].dll" file.
03/08/2005 18:07:28 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\WINNT\nem220.dll" file.
03/08/2005 18:08:15 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\4XU3OLIJ\wsem303[1].dll" file.
03/08/2005 18:08:23 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\WINNT\wsem303.dll" file.
03/08/2005 18:08:33 Administrateur 508 Sign of "Win32:Trojano-1035 [Trj]" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\4VV3MK15\rogue[1].exe" file.
03/08/2005 18:08:42 Administrateur 508 Sign of "Win32:Trojano-1035 [Trj]" has been found in "C:\Program Files\Internet Optimizer\update\rogue.exe" file.
03/08/2005 18:09:00 Administrateur 508 Sign of "Win32:DyfucDldr-W [Trj]" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\7JDRJ5OW\actalert[1].exe" file.
03/08/2005 18:09:11 Administrateur 508 Sign of "Win32:DyfucDldr-W [Trj]" has been found in "C:\Program Files\Internet Optimizer\update\actalert.exe" file.
03/08/2005 18:09:19 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\GDCHKX4P\nem220[1].dll" file.
03/08/2005 18:09:27 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\WINNT\nem220.dll" file.
03/08/2005 18:09:34 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\OPMRSTUV\wsem303[1].dll" file.
03/08/2005 18:09:40 Administrateur 508 Sign of "Win32:Trojan-gen. {Other}" has been found in "C:\WINNT\wsem303.dll" file.
03/08/2005 18:09:46 Administrateur 508 Sign of "Win32:Trojano-1035 [Trj]" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\4XU3OLIJ\rogue[1].exe" file.
03/08/2005 18:09:52 Administrateur 508 Sign of "Win32:Trojano-1035 [Trj]" has been found in "C:\Program Files\Internet Optimizer\update\rogue.exe" file.
03/08/2005 18:10:08 Administrateur 508 Sign of "Win32:DyfucDldr-W [Trj]" has been found in "C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\4VV3MK15\actalert[1].exe" file.
03/08/2005 18:10:14 Administrateur 508 Sign of "Win32:DyfucDldr-W [Trj]" has been found in

12 réponses

  1. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 324
     
    Salut,

    - Télécharge HijackThis V 2.02 (HijackThis Installer) :
    http://www.trendsecure.com/portal/en-US/threat_analytics/HJTInstall.exe

    - Fais un double-clic sur HJTInstall.exe afin de lancer l'installation

    - Clique sur Install ensuite sur I Accept

    - Clique sur Do a scan system and save log file

    - Le bloc-notes s'ouvrira, fais un copier-coller de tout son contenu ici dans ta prochaine réponse.
    0
  2. tomcat75
     
    journal avast trop long voici les éléments les plus récents :
    28/04/2008 20:31:43 SYSTEM 512 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    04/05/2008 16:41:36 SYSTEM 512 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: F:\DCIM\101_PANA\P1010715.JPG (F:\DCIM\101_PANA\P1010715.JPG) returning error, 0000001E.
    26/05/2008 16:05:59 SYSTEM 504 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    31/05/2008 09:37:12 SYSTEM 504 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    04/06/2008 21:01:10 SYSTEM 516 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    10/06/2008 11:25:04 SYSTEM 516 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    16/06/2008 01:50:23 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: G:\My Secret Life Cd1 (Justine Joli,Jelena Jensen,Crissy Morgan,Bella Starr,Sophia,Victoria Sweet).avi (G:\My Secret Life Cd1 (Justine Joli,Jelena Jensen,Crissy Morgan,Bella Starr,Sophia,Victoria Sweet).avi) returning error, 0000001E.
    16/06/2008 08:37:01 SYSTEM 516 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: F:\P1010951.JPG (F:\P1010951.JPG) returning error, 0000001E.
    18/06/2008 02:44:07 SYSTEM 516 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    18/06/2008 06:47:02 SYSTEM 516 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    18/06/2008 09:09:37 SYSTEM 508 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    18/06/2008 09:12:09 SYSTEM 508 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    18/06/2008 09:47:43 SYSTEM 512 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    18/06/2008 09:50:14 SYSTEM 512 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    18/06/2008 13:53:52 SYSTEM 512 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    18/06/2008 17:56:09 SYSTEM 512 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    18/06/2008 18:30:35 SYSTEM 500 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    18/06/2008 18:32:49 SYSTEM 500 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    18/06/2008 19:05:45 SYSTEM 504 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    18/06/2008 19:07:50 SYSTEM 504 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    18/06/2008 23:11:03 SYSTEM 504 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    19/06/2008 03:13:20 SYSTEM 504 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    19/06/2008 07:15:35 SYSTEM 504 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    19/06/2008 11:17:50 SYSTEM 504 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    19/06/2008 15:20:06 SYSTEM 504 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    19/06/2008 19:22:21 SYSTEM 504 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    19/06/2008 23:24:37 SYSTEM 504 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    20/06/2008 03:26:52 SYSTEM 504 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    20/06/2008 07:29:08 SYSTEM 504 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    20/06/2008 11:31:25 SYSTEM 504 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    20/06/2008 14:17:33 SYSTEM 504 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    20/06/2008 14:19:53 SYSTEM 504 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    23/06/2008 07:44:56 SYSTEM 500 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    23/06/2008 07:47:09 SYSTEM 500 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    26/06/2008 18:06:41 SYSTEM 504 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    26/06/2008 22:20:58 SYSTEM 504 Function setifaceUpdatePackages() has failed. Return code is 0xC0000142, dwRes is C0000142.
    27/06/2008 07:16:38 SYSTEM 512 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    28/06/2008 10:03:37 SYSTEM 508 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    29/06/2008 09:06:51 SYSTEM 500 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    29/06/2008 09:09:00 SYSTEM 500 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    01/07/2008 21:43:40 SYSTEM 500 AAVM - scanning warning: x_AavmCheckFileDirectEx [UNI]: C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\4P2XEP8H\v320[1].swf (C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\4P2XEP8H\v320[1].swf) returning error, 0000A413.
    04/07/2008 17:14:48 SYSTEM 504 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    04/07/2008 17:16:56 SYSTEM 504 Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.
    08/07/2008 22:02:58 SYSTEM 496 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    09/07/2008 15:26:37 SYSTEM 508 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    10/07/2008 20:13:00 SYSTEM 508 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    11/07/2008 17:06:25 SYSTEM 512 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    13/07/2008 16:56:45 SYSTEM 512 Sign of "Win32:VB-EUR [Wrm]" has been found in "G:\System\System.exe" file.
    13/07/2008 17:03:37 SYSTEM 512 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "C:\WINNT\system32\SVCH0ST.EXE\[ASProtect]" file.
    13/07/2008 17:06:37 Administrateur 1872 Sign of "Win32:Hupigon-HVS [Trj]" has been found in "c:\winnt\system32\svch0st.exe\[ASProtect]" file.
    14/07/2008 14:15:28 Administrateur 752 Sign of "Win32:VB-EUR [Wrm]" has been found in "G:\System\Apps\Apps.exe" file.
    14/07/2008 14:15:38 Administrateur 752 Sign of "Win32:VB-EUR [Wrm]" has been found in "G:\System\System.exe" file.
    14/07/2008 14:56:10 Administrateur 2092 Sign of "Win32:Trojan-gen {Other}" has been found in "C:\Documents and Settings\Administrateur\Mes documents\Office_Firewall\Office Pro 2007-fr.rar\Office Pro 2007-fr\MS Office 2007 Enterprise Keygen.exe\[UPX]" file.
    14/07/2008 18:01:56 Administrateur 1704 Sign of "Win32:Trojan-gen {Other}" has been found in "C:\Documents and Settings\Administrateur\Mes documents\Office_Firewall\Office Pro 2007-fr.rar\Office Pro 2007-fr\MS Office 2007 Enterprise Keygen.exe\[UPX]" file.
    0
  3. tomcat75
     
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 16:06:13, on 15/07/2008
    Platform: Windows 2000 SP4 (WinNT 5.00.2195)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
    Boot mode: Normal

    Running processes:
    C:\WINNT\System32\smss.exe
    C:\WINNT\system32\winlogon.exe
    C:\WINNT\system32\services.exe
    C:\WINNT\system32\lsass.exe
    C:\WINNT\system32\svchost.exe
    C:\WINNT\system32\spoolsv.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\Program Files\MSI\BToes Bluetooth Software\bin\btwdins.exe
    C:\WINNT\System32\cisvc.exe
    C:\WINNT\System32\svchost.exe
    c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
    C:\WINNT\system32\regsvc.exe
    C:\WINNT\system32\MSTask.exe
    C:\WINNT\system32\stisvc.exe
    C:\WINNT\System32\WBEM\WinMgmt.exe
    C:\WINNT\system32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\Program Files\Logitech\iTouch\iTouch.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
    C:\WINNT\system32\LVCOMSX.EXE
    C:\Program Files\Logitech\Video\CameraAssistant.exe
    C:\WINNT\system32\ElkCtrl.exe
    C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    C:\Program Files\MSI\BToes Bluetooth Software\BTTray.exe
    C:\WINNT\System32\cidaemon.exe
    C:\Program Files\Neuf\Media Center\MediaCenter.exe
    C:\Program Files\Neuf\Media Center\httpd\httpd.exe
    C:\Program Files\Neuf\Media Center\httpd\httpd.exe
    C:\WINNT\explorer.exe
    C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\W1IZOZW1\HiJackThis[1].exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://actus.sfr.fr
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://actus.sfr.fr
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://actus.sfr.fr
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 75.*;*.mdp
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
    O4 - HKLM\..\Run: [NeroCheck] C:\WINNT\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe
    O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
    O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINNT\system32\spool\drivers\w32x86\3\hpztsb08.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
    O4 - HKLM\..\Run: [LVCOMSX] C:\WINNT\system32\LVCOMSX.EXE
    O4 - HKLM\..\Run: [LogitechCameraAssistant] C:\Program Files\Logitech\Video\CameraAssistant.exe
    O4 - HKLM\..\Run: [LogitechVideo[inspector]] C:\Program Files\Logitech\Video\InstallHelper.exe /inspect
    O4 - HKLM\..\Run: [LogitechCameraService(E)] C:\WINNT\system32\ElkCtrl.exe /automation
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKCU\..\Run: [Neuf Media Center] "C:\Program Files\Neuf\Media Center\MediaCenter.exe"
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKCU\..\Run: [ccleaner] "D:\nettoyage ccleaner\CCleaner\ccleaner.exe" /AUTO
    O4 - HKUS\.DEFAULT\..\Run: [internat.exe] internat.exe (User 'Default user')
    O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background (User 'Default user')
    O4 - HKUS\.DEFAULT\..\RunOnce: [^SetupICWDesktop] C:\Program Files\Internet Explorer\Connection Wizard\icwconn1.exe /desktop (User 'Default user')
    O4 - Global Startup: BTTray.lnk = C:\Program Files\MSI\BToes Bluetooth Software\BTTray.exe
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
    O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie_ctx.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Companion\Modules\messmod4\v6\yhexbmes.dll
    O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Companion\Modules\messmod4\v6\yhexbmes.dll
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINNT\bdoscandel.exe
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINNT\bdoscandel.exe
    O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
    O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
    O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie.htm
    O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie.htm
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O16 - DPF: {120136E3-6AC5-11D0-95E6-00C04FD8A1B0} (Contrôle de lancement de Winsurf Mainframe Access) - http://webtohost1.mdp/wmasec/wmald32.ocx
    O16 - DPF: {15AD6789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/MediaAccessVerisign/ie/bridge-c5.cab
    O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) - https://www.msn.com/fr-fr/
    O16 - DPF: {1D6711C8-7154-40BB-8380-3DEA45B69CBF} -
    O16 - DPF: {1F83CD9E-505E-4F87-BECE-0832A763E36F} (Image Uploader 3.0 Control) - http://www.mypixmania.com/fr/fr/importer/MypixUploader.cab
    O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/dl/yinst/yinst_current.cab
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
    O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/23ec64231ae4d3caa405/netzip/RdxIE601_fr.cab
    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
    O16 - DPF: {6DB731A3-B074-4118-8B1C-32511C65D836} (FotovistaPhotoUploader.ctrFpu) - http://www.mypixmania.com/fr/fr/tools/activex/fpu.cab
    O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.mypix.com/importer/ImageUploader4.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
    O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP-1.1.cab
    O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://www.photoways.com/clients/uploader_v2.2.0.6.cab
    O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab
    O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\MSI\BToes Bluetooth Software\bin\btwdins.exe
    O23 - Service: DCOMLoduoher (DDOM DechLunuocCOMD) - Unknown owner - C:\WINNT\system32\log2.txt (file missing)
    O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: WorkWebClient (Instrumentation) - Unknown owner - C:\WINNT\system32\scvhost.ini (file missing)
    O23 - Service: Logitech Process Monitor (LVPrcSrv) - Logitech Inc. - c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
    0
  4. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 324
     
    - Télécharge et installe MalwareByte's Anti-Malware :
    http://www.download.com/Malwarebytes-Anti-Malware/3000-8022_4-10804572.htm

    - Mets-le à jour

    - Redémarre en mode sans échec (Recommandé) :
    https://www.malekal.com/demarrer-windows-mode-sans-echec/

    - Choisis ta session habituelle

    - Fais un scan complet avec MalwareByte's Anti-Malware

    - Supprime tout ce que le logiciel trouve, enregistre le rapport

    - Redémarre en mode normal et poste le rapport ici

    Tutorial :
    https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
    0
    1. tomcat75
       
      merci destrio.Voilà le log.

      Malwarebytes' Anti-Malware 1.20
      Version de la base de données: 951
      Windows 5.0.2195 Service Pack 4

      18:54:22 15/07/2008
      mbam-log-7-15-2008 (18-54-22).txt

      Type de recherche: Examen complet (C:\|D:\|)
      Eléments examinés: 122452
      Temps écoulé: 2 hour(s), 24 minute(s), 40 second(s)

      Processus mémoire infecté(s): 0
      Module(s) mémoire infecté(s): 0
      Clé(s) du Registre infectée(s): 0
      Valeur(s) du Registre infectée(s): 0
      Elément(s) de données du Registre infecté(s): 0
      Dossier(s) infecté(s): 0
      Fichier(s) infecté(s): 1

      Processus mémoire infecté(s):
      (Aucun élément nuisible détecté)

      Module(s) mémoire infecté(s):
      (Aucun élément nuisible détecté)

      Clé(s) du Registre infectée(s):
      (Aucun élément nuisible détecté)

      Valeur(s) du Registre infectée(s):
      (Aucun élément nuisible détecté)

      Elément(s) de données du Registre infecté(s):
      (Aucun élément nuisible détecté)

      Dossier(s) infecté(s):
      (Aucun élément nuisible détecté)

      Fichier(s) infecté(s):
      C:\WINNT\system32\dllcache\WINLOGON.EXE.in2 (Heuristics.Reserved.Word.Exploit) -> Quarantined and deleted successfully.

      problème du clic résolu. jusqu'ici tout va bien.

      Par contre, le résident de spybot me demande si je veux autoriser la modification du registre suivante:
      in SCR Extension handler!
      Ancienne valeur "%1"/S
      Nouvelle valeur: "%1" %*


      dois-je autoriser cette modif?
      0
    2. tomcat75
       
      voilà:

      Logfile of Trend Micro HijackThis v2.0.2
      Scan saved at 19:34:24, on 15/07/2008
      Platform: Windows 2000 SP4 (WinNT 5.00.2195)
      MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
      Boot mode: Normal

      Running processes:
      C:\WINNT\System32\smss.exe
      C:\WINNT\system32\winlogon.exe
      C:\WINNT\system32\services.exe
      C:\WINNT\system32\lsass.exe
      C:\WINNT\system32\svchost.exe
      C:\WINNT\system32\spoolsv.exe
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\Program Files\MSI\BToes Bluetooth Software\bin\btwdins.exe
      C:\WINNT\System32\cisvc.exe
      C:\WINNT\System32\svchost.exe
      c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
      C:\WINNT\system32\regsvc.exe
      C:\WINNT\system32\MSTask.exe
      C:\WINNT\system32\stisvc.exe
      C:\WINNT\System32\WBEM\WinMgmt.exe
      C:\WINNT\system32\svchost.exe
      C:\WINNT\Explorer.EXE
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\Program Files\Logitech\iTouch\iTouch.exe
      C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
      C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      C:\WINNT\system32\spool\drivers\w32x86\3\hpztsb08.exe
      C:\Program Files\QuickTime\qttask.exe
      C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
      C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
      C:\WINNT\system32\LVCOMSX.EXE
      C:\Program Files\Logitech\Video\CameraAssistant.exe
      C:\WINNT\system32\ElkCtrl.exe
      C:\Program Files\Neuf\Media Center\MediaCenter.exe
      C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
      C:\Program Files\MSI\BToes Bluetooth Software\BTTray.exe
      C:\Program Files\Internet Explorer\iexplore.exe
      C:\Program Files\Neuf\Media Center\httpd\httpd.exe
      C:\Program Files\Neuf\Media Center\httpd\httpd.exe
      C:\WINNT\System32\cidaemon.exe
      C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\W8LM3VWL\HiJackThis[1].exe

      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://actus.sfr.fr
      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://actus.sfr.fr
      R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://actus.sfr.fr
      R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 75.*;*.mdp
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
      O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
      O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
      O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
      O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
      O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
      O4 - HKLM\..\Run: [NeroCheck] C:\WINNT\system32\NeroCheck.exe
      O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe
      O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
      O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
      O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINNT\system32\spool\drivers\w32x86\3\hpztsb08.exe
      O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
      O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
      O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
      O4 - HKLM\..\Run: [LVCOMSX] C:\WINNT\system32\LVCOMSX.EXE
      O4 - HKLM\..\Run: [LogitechCameraAssistant] C:\Program Files\Logitech\Video\CameraAssistant.exe
      O4 - HKLM\..\Run: [LogitechVideo[inspector]] C:\Program Files\Logitech\Video\InstallHelper.exe /inspect
      O4 - HKLM\..\Run: [LogitechCameraService(E)] C:\WINNT\system32\ElkCtrl.exe /automation
      O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
      O4 - HKCU\..\Run: [Neuf Media Center] "C:\Program Files\Neuf\Media Center\MediaCenter.exe"
      O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
      O4 - HKCU\..\Run: [ccleaner] "D:\nettoyage ccleaner\CCleaner\ccleaner.exe" /AUTO
      O4 - HKUS\.DEFAULT\..\Run: [internat.exe] internat.exe (User 'Default user')
      O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background (User 'Default user')
      O4 - HKUS\.DEFAULT\..\RunOnce: [^SetupICWDesktop] C:\Program Files\Internet Explorer\Connection Wizard\icwconn1.exe /desktop (User 'Default user')
      O4 - Global Startup: BTTray.lnk = C:\Program Files\MSI\BToes Bluetooth Software\BTTray.exe
      O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
      O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
      O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie_ctx.htm
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
      O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Companion\Modules\messmod4\v6\yhexbmes.dll
      O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Companion\Modules\messmod4\v6\yhexbmes.dll
      O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINNT\bdoscandel.exe
      O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINNT\bdoscandel.exe
      O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
      O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
      O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie.htm
      O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie.htm
      O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O16 - DPF: {120136E3-6AC5-11D0-95E6-00C04FD8A1B0} (Contrôle de lancement de Winsurf Mainframe Access) - http://webtohost1.mdp/wmasec/wmald32.ocx
      O16 - DPF: {15AD6789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/MediaAccessVerisign/ie/bridge-c5.cab
      O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) - https://www.msn.com/fr-fr/
      O16 - DPF: {1D6711C8-7154-40BB-8380-3DEA45B69CBF} -
      O16 - DPF: {1F83CD9E-505E-4F87-BECE-0832A763E36F} (Image Uploader 3.0 Control) - http://www.mypixmania.com/fr/fr/importer/MypixUploader.cab
      O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/dl/yinst/yinst_current.cab
      O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
      O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/23ec64231ae4d3caa405/netzip/RdxIE601_fr.cab
      O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
      O16 - DPF: {6DB731A3-B074-4118-8B1C-32511C65D836} (FotovistaPhotoUploader.ctrFpu) - http://www.mypixmania.com/fr/fr/tools/activex/fpu.cab
      O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.mypix.com/importer/ImageUploader4.cab
      O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
      O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP-1.1.cab
      O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://www.photoways.com/clients/uploader_v2.2.0.6.cab
      O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab
      O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
      O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\MSI\BToes Bluetooth Software\bin\btwdins.exe
      O23 - Service: DCOMLoduoher (DDOM DechLunuocCOMD) - Unknown owner - C:\WINNT\system32\log2.txt (file missing)
      O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
      O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
      O23 - Service: WorkWebClient (Instrumentation) - Unknown owner - C:\WINNT\system32\scvhost.ini (file missing)
      O23 - Service: Logitech Process Monitor (LVPrcSrv) - Logitech Inc. - c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
      0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 324
     
    Oui, il faut accepter.
    0
  7. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 324
     
    Poste un nouveau rapport HijackThis.
    0
  8. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 324
     
    ---> Relance HijackThis et choisis Do a system scan only

    ---> Coche les cases qui sont devant les lignes suivantes :

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot

    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"

    O4 - HKLM\..\Run: [LVCOMSX] C:\WINNT\system32\LVCOMSX.EXE

    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

    O16 - DPF: {120136E3-6AC5-11D0-95E6-00C04FD8A1B0} (Contrôle de lancement de Winsurf Mainframe Access) - http://webtohost1.mdp/wmasec/wmald32.ocx

    O16 - DPF: {1D6711C8-7154-40BB-8380-3DEA45B69CBF} -

    O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/23ec64231ae4d3caa405/netzip/RdxI­E601_fr.cab

    O23 - Service: DCOMLoduoher (DDOM DechLunuocCOMD) - Unknown owner - C:\WINNT\system32\log2.txt (file missing)

    O23 - Service: WorkWebClient (Instrumentation) - Unknown owner - C:\WINNT\system32\scvhost.ini (file missing)

    ---> Clique en bas sur Fix checked. Mets oui si HijackThis te demande quelque chose.

    ---> Redémarre et poste un nouveau rapport HijackThis
    0
    1. tomcat75
       
      et hop!

      Logfile of Trend Micro HijackThis v2.0.2
      Scan saved at 20:27:12, on 15/07/2008
      Platform: Windows 2000 SP4 (WinNT 5.00.2195)
      MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
      Boot mode: Normal

      Running processes:
      C:\WINNT\System32\smss.exe
      C:\WINNT\system32\winlogon.exe
      C:\WINNT\system32\services.exe
      C:\WINNT\system32\lsass.exe
      C:\WINNT\system32\svchost.exe
      C:\WINNT\system32\spoolsv.exe
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\Program Files\MSI\BToes Bluetooth Software\bin\btwdins.exe
      C:\WINNT\System32\cisvc.exe
      C:\WINNT\System32\svchost.exe
      c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
      C:\WINNT\system32\regsvc.exe
      C:\WINNT\system32\MSTask.exe
      C:\WINNT\system32\stisvc.exe
      C:\WINNT\System32\WBEM\WinMgmt.exe
      C:\WINNT\system32\svchost.exe
      C:\WINNT\Explorer.EXE
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\Program Files\Logitech\iTouch\iTouch.exe
      C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
      C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      C:\WINNT\system32\spool\drivers\w32x86\3\hpztsb08.exe
      C:\Program Files\Logitech\Video\CameraAssistant.exe
      C:\WINNT\system32\ElkCtrl.exe
      C:\Program Files\Neuf\Media Center\MediaCenter.exe
      C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
      C:\Program Files\MSI\BToes Bluetooth Software\BTTray.exe
      C:\WINNT\system32\lvcomsx.exe
      C:\Program Files\Neuf\Media Center\httpd\httpd.exe
      C:\Program Files\Neuf\Media Center\httpd\httpd.exe
      C:\Program Files\Internet Explorer\iexplore.exe
      C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\1ENU4BWS\HiJackThis[1].exe

      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://actus.sfr.fr
      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://actus.sfr.fr
      R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://actus.sfr.fr
      R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 75.*;*.mdp
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
      O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
      O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
      O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
      O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
      O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
      O4 - HKLM\..\Run: [NeroCheck] C:\WINNT\system32\NeroCheck.exe
      O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe
      O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
      O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
      O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINNT\system32\spool\drivers\w32x86\3\hpztsb08.exe
      O4 - HKLM\..\Run: [LogitechCameraAssistant] C:\Program Files\Logitech\Video\CameraAssistant.exe
      O4 - HKLM\..\Run: [LogitechVideo[inspector]] C:\Program Files\Logitech\Video\InstallHelper.exe /inspect
      O4 - HKLM\..\Run: [LogitechCameraService(E)] C:\WINNT\system32\ElkCtrl.exe /automation
      O4 - HKCU\..\Run: [Neuf Media Center] "C:\Program Files\Neuf\Media Center\MediaCenter.exe"
      O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
      O4 - HKCU\..\Run: [ccleaner] "D:\nettoyage ccleaner\CCleaner\ccleaner.exe" /AUTO
      O4 - HKUS\.DEFAULT\..\Run: [internat.exe] internat.exe (User 'Default user')
      O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background (User 'Default user')
      O4 - HKUS\.DEFAULT\..\RunOnce: [^SetupICWDesktop] C:\Program Files\Internet Explorer\Connection Wizard\icwconn1.exe /desktop (User 'Default user')
      O4 - Global Startup: BTTray.lnk = C:\Program Files\MSI\BToes Bluetooth Software\BTTray.exe
      O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
      O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
      O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie_ctx.htm
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
      O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Companion\Modules\messmod4\v6\yhexbmes.dll
      O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Companion\Modules\messmod4\v6\yhexbmes.dll
      O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINNT\bdoscandel.exe
      O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINNT\bdoscandel.exe
      O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
      O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
      O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie.htm
      O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie.htm
      O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O16 - DPF: {15AD6789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/MediaAccessVerisign/ie/bridge-c5.cab
      O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) - https://www.msn.com/fr-fr/
      O16 - DPF: {1F83CD9E-505E-4F87-BECE-0832A763E36F} (Image Uploader 3.0 Control) - http://www.mypixmania.com/fr/fr/importer/MypixUploader.cab
      O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/dl/yinst/yinst_current.cab
      O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
      O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
      O16 - DPF: {6DB731A3-B074-4118-8B1C-32511C65D836} (FotovistaPhotoUploader.ctrFpu) - http://www.mypixmania.com/fr/fr/tools/activex/fpu.cab
      O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.mypix.com/importer/ImageUploader4.cab
      O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
      O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP-1.1.cab
      O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://www.photoways.com/clients/uploader_v2.2.0.6.cab
      O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab
      O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
      O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\MSI\BToes Bluetooth Software\bin\btwdins.exe
      O23 - Service: DCOMLoduoher (DDOM DechLunuocCOMD) - Unknown owner - C:\WINNT\system32\log2.txt (file missing)
      O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
      O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
      O23 - Service: WorkWebClient (Instrumentation) - Unknown owner - C:\WINNT\system32\scvhost.ini (file missing)
      O23 - Service: Logitech Process Monitor (LVPrcSrv) - Logitech Inc. - c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
      0
    2. tomcat75
       
      et hop!

      Logfile of Trend Micro HijackThis v2.0.2
      Scan saved at 20:27:12, on 15/07/2008
      Platform: Windows 2000 SP4 (WinNT 5.00.2195)
      MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
      Boot mode: Normal

      Running processes:
      C:\WINNT\System32\smss.exe
      C:\WINNT\system32\winlogon.exe
      C:\WINNT\system32\services.exe
      C:\WINNT\system32\lsass.exe
      C:\WINNT\system32\svchost.exe
      C:\WINNT\system32\spoolsv.exe
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\Program Files\MSI\BToes Bluetooth Software\bin\btwdins.exe
      C:\WINNT\System32\cisvc.exe
      C:\WINNT\System32\svchost.exe
      c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
      C:\WINNT\system32\regsvc.exe
      C:\WINNT\system32\MSTask.exe
      C:\WINNT\system32\stisvc.exe
      C:\WINNT\System32\WBEM\WinMgmt.exe
      C:\WINNT\system32\svchost.exe
      C:\WINNT\Explorer.EXE
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\Program Files\Logitech\iTouch\iTouch.exe
      C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
      C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      C:\WINNT\system32\spool\drivers\w32x86\3\hpztsb08.exe
      C:\Program Files\Logitech\Video\CameraAssistant.exe
      C:\WINNT\system32\ElkCtrl.exe
      C:\Program Files\Neuf\Media Center\MediaCenter.exe
      C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
      C:\Program Files\MSI\BToes Bluetooth Software\BTTray.exe
      C:\WINNT\system32\lvcomsx.exe
      C:\Program Files\Neuf\Media Center\httpd\httpd.exe
      C:\Program Files\Neuf\Media Center\httpd\httpd.exe
      C:\Program Files\Internet Explorer\iexplore.exe
      C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\1ENU4BWS\HiJackThis[1].exe

      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://actus.sfr.fr
      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://actus.sfr.fr
      R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://actus.sfr.fr
      R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 75.*;*.mdp
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
      O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
      O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
      O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
      O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
      O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
      O4 - HKLM\..\Run: [NeroCheck] C:\WINNT\system32\NeroCheck.exe
      O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe
      O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
      O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
      O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINNT\system32\spool\drivers\w32x86\3\hpztsb08.exe
      O4 - HKLM\..\Run: [LogitechCameraAssistant] C:\Program Files\Logitech\Video\CameraAssistant.exe
      O4 - HKLM\..\Run: [LogitechVideo[inspector]] C:\Program Files\Logitech\Video\InstallHelper.exe /inspect
      O4 - HKLM\..\Run: [LogitechCameraService(E)] C:\WINNT\system32\ElkCtrl.exe /automation
      O4 - HKCU\..\Run: [Neuf Media Center] "C:\Program Files\Neuf\Media Center\MediaCenter.exe"
      O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
      O4 - HKCU\..\Run: [ccleaner] "D:\nettoyage ccleaner\CCleaner\ccleaner.exe" /AUTO
      O4 - HKUS\.DEFAULT\..\Run: [internat.exe] internat.exe (User 'Default user')
      O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background (User 'Default user')
      O4 - HKUS\.DEFAULT\..\RunOnce: [^SetupICWDesktop] C:\Program Files\Internet Explorer\Connection Wizard\icwconn1.exe /desktop (User 'Default user')
      O4 - Global Startup: BTTray.lnk = C:\Program Files\MSI\BToes Bluetooth Software\BTTray.exe
      O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
      O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
      O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie_ctx.htm
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
      O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Companion\Modules\messmod4\v6\yhexbmes.dll
      O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Companion\Modules\messmod4\v6\yhexbmes.dll
      O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINNT\bdoscandel.exe
      O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINNT\bdoscandel.exe
      O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
      O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
      O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie.htm
      O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie.htm
      O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O16 - DPF: {15AD6789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/MediaAccessVerisign/ie/bridge-c5.cab
      O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) - https://www.msn.com/fr-fr/
      O16 - DPF: {1F83CD9E-505E-4F87-BECE-0832A763E36F} (Image Uploader 3.0 Control) - http://www.mypixmania.com/fr/fr/importer/MypixUploader.cab
      O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/dl/yinst/yinst_current.cab
      O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
      O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
      O16 - DPF: {6DB731A3-B074-4118-8B1C-32511C65D836} (FotovistaPhotoUploader.ctrFpu) - http://www.mypixmania.com/fr/fr/tools/activex/fpu.cab
      O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.mypix.com/importer/ImageUploader4.cab
      O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
      O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP-1.1.cab
      O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://www.photoways.com/clients/uploader_v2.2.0.6.cab
      O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab
      O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
      O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\MSI\BToes Bluetooth Software\bin\btwdins.exe
      O23 - Service: DCOMLoduoher (DDOM DechLunuocCOMD) - Unknown owner - C:\WINNT\system32\log2.txt (file missing)
      O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
      O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
      O23 - Service: WorkWebClient (Instrumentation) - Unknown owner - C:\WINNT\system32\scvhost.ini (file missing)
      O23 - Service: Logitech Process Monitor (LVPrcSrv) - Logitech Inc. - c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
      0
  9. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 324
     
    ---> Télécharge CCleaner (N'installe pas la Yahoo Toolbar) :
    https://www.ccleaner.com/ccleaner/download

    ---> Lance-le. Va dans "Options" puis "Avancé", tu décoches la case "Effacer uniquement les fichiers etc...". Tu vas dans "Nettoyeur", tu fais "Analyse". Une fois terminé, tu lances le nettoyage. Puis tu vas dans "Registre", tu fais "Chercher des erreurs". Une fois terminé, tu répares toutes les erreurs sans sauvegarder la base de registre.

    ---> Redémarre et poste un nouveau rapport HijackThis
    0
    1. tomcat75
       
      Bonjour comme convenu yahoo desinstallé

      Logfile of Trend Micro HijackThis v2.0.2
      Scan saved at 07:02:53, on 16/07/2008
      Platform: Windows 2000 SP4 (WinNT 5.00.2195)
      MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
      Boot mode: Normal

      Running processes:
      C:\WINNT\System32\smss.exe
      C:\WINNT\system32\winlogon.exe
      C:\WINNT\system32\services.exe
      C:\WINNT\system32\lsass.exe
      C:\WINNT\system32\svchost.exe
      C:\WINNT\system32\spoolsv.exe
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\Program Files\MSI\BToes Bluetooth Software\bin\btwdins.exe
      C:\WINNT\System32\cisvc.exe
      C:\WINNT\System32\svchost.exe
      c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
      C:\WINNT\system32\regsvc.exe
      C:\WINNT\system32\MSTask.exe
      C:\WINNT\system32\stisvc.exe
      C:\WINNT\System32\WBEM\WinMgmt.exe
      C:\WINNT\system32\svchost.exe
      C:\WINNT\Explorer.EXE
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\Program Files\Logitech\iTouch\iTouch.exe
      C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      C:\WINNT\system32\spool\drivers\w32x86\3\hpztsb08.exe
      C:\Program Files\Logitech\Video\CameraAssistant.exe
      C:\WINNT\system32\ElkCtrl.exe
      C:\Program Files\Neuf\Media Center\MediaCenter.exe
      C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
      C:\Program Files\MSI\BToes Bluetooth Software\BTTray.exe
      C:\WINNT\system32\lvcomsx.exe
      C:\Program Files\Neuf\Media Center\httpd\httpd.exe
      C:\Program Files\Neuf\Media Center\httpd\httpd.exe
      C:\Program Files\Internet Explorer\iexplore.exe
      C:\Program Files\Internet Explorer\iexplore.exe
      C:\Program Files\Internet Explorer\iexplore.exe
      C:\WINNT\System32\cidaemon.exe
      D:\HiJackThis.exe
      D:\HiJackThis.exe

      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://actus.sfr.fr
      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://actus.sfr.fr
      R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://actus.sfr.fr
      R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 75.*;*.mdp
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
      O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
      O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
      O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
      O4 - HKLM\..\Run: [NeroCheck] C:\WINNT\system32\NeroCheck.exe
      O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe
      O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
      O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
      O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINNT\system32\spool\drivers\w32x86\3\hpztsb08.exe
      O4 - HKLM\..\Run: [LogitechCameraAssistant] C:\Program Files\Logitech\Video\CameraAssistant.exe
      O4 - HKLM\..\Run: [LogitechVideo[inspector]] C:\Program Files\Logitech\Video\InstallHelper.exe /inspect
      O4 - HKLM\..\Run: [LogitechCameraService(E)] C:\WINNT\system32\ElkCtrl.exe /automation
      O4 - HKCU\..\Run: [Neuf Media Center] "C:\Program Files\Neuf\Media Center\MediaCenter.exe"
      O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
      O4 - HKCU\..\Run: [ccleaner] "D:\nettoyage ccleaner\CCleaner\ccleaner.exe" /AUTO
      O4 - HKUS\.DEFAULT\..\Run: [internat.exe] internat.exe (User 'Default user')
      O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background (User 'Default user')
      O4 - HKUS\.DEFAULT\..\RunOnce: [^SetupICWDesktop] C:\Program Files\Internet Explorer\Connection Wizard\icwconn1.exe /desktop (User 'Default user')
      O4 - Global Startup: BTTray.lnk = C:\Program Files\MSI\BToes Bluetooth Software\BTTray.exe
      O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
      O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
      O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie_ctx.htm
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
      O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINNT\bdoscandel.exe
      O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINNT\bdoscandel.exe
      O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
      O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
      O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie.htm
      O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie.htm
      O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O16 - DPF: {15AD6789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/MediaAccessVerisign/ie/bridge-c5.cab
      O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) - https://www.msn.com/fr-fr/
      O16 - DPF: {1F83CD9E-505E-4F87-BECE-0832A763E36F} (Image Uploader 3.0 Control) - http://www.mypixmania.com/fr/fr/importer/MypixUploader.cab
      O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
      O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
      O16 - DPF: {6DB731A3-B074-4118-8B1C-32511C65D836} (FotovistaPhotoUploader.ctrFpu) - http://www.mypixmania.com/fr/fr/tools/activex/fpu.cab
      O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.mypix.com/importer/ImageUploader4.cab
      O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
      O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP-1.1.cab
      O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://www.photoways.com/clients/uploader_v2.2.0.6.cab
      O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab
      O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
      O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\MSI\BToes Bluetooth Software\bin\btwdins.exe
      O23 - Service: DCOMLoduoher (DDOM DechLunuocCOMD) - Unknown owner - C:\WINNT\system32\log2.txt (file missing)
      O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
      O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
      O23 - Service: WorkWebClient (Instrumentation) - Unknown owner - C:\WINNT\system32\scvhost.ini (file missing)
      O23 - Service: Logitech Process Monitor (LVPrcSrv) - Logitech Inc. - c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
      0
  10. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 324
     
    J'ai demandé à ne pas installer Yahoo Toolbar pour ne pas avoir "je ne sais pas combien" de toolbars. Mais si tu en as besoin, tu peux la réinstaller.

    Fix les deux lignes suivantes avec HijackThis :

    O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm

    O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm

    Puis fais ceci :

    ---> Menu démarrer > Exécuter > services.msc > OK

    ---> Double-clique sur DDOM DechLunuocCOMD

    ---> Mets le type de démarrage en désactivé

    ---> Fais pareil avec Instrumentation

    ---> Redémarre et poste un nouveau rapport HijackThis
    0
    1. tomcat75
       
      Bonsoir, merci pour votre aide.

      Logfile of Trend Micro HijackThis v2.0.2
      Scan saved at 19:13:58, on 16/07/2008
      Platform: Windows 2000 SP4 (WinNT 5.00.2195)
      MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
      Boot mode: Normal

      Running processes:
      C:\WINNT\System32\smss.exe
      C:\WINNT\system32\winlogon.exe
      C:\WINNT\system32\services.exe
      C:\WINNT\system32\lsass.exe
      C:\WINNT\system32\svchost.exe
      C:\WINNT\system32\spoolsv.exe
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\Program Files\MSI\BToes Bluetooth Software\bin\btwdins.exe
      C:\WINNT\System32\cisvc.exe
      C:\WINNT\System32\svchost.exe
      c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
      C:\WINNT\system32\regsvc.exe
      C:\WINNT\system32\MSTask.exe
      C:\WINNT\system32\stisvc.exe
      C:\WINNT\System32\WBEM\WinMgmt.exe
      C:\WINNT\system32\svchost.exe
      C:\WINNT\Explorer.EXE
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\Program Files\Logitech\iTouch\iTouch.exe
      C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
      C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      C:\Program Files\Logitech\Video\CameraAssistant.exe
      C:\WINNT\system32\ElkCtrl.exe
      C:\Program Files\Neuf\Media Center\MediaCenter.exe
      C:\WINNT\system32\lvcomsx.exe
      C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
      C:\Program Files\MSI\BToes Bluetooth Software\BTTray.exe
      C:\Program Files\Neuf\Media Center\httpd\httpd.exe
      C:\Program Files\Neuf\Media Center\httpd\httpd.exe
      C:\Program Files\Alwil Software\Avast4\setup\avast.setup
      D:\HiJackThis.exe

      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://actus.sfr.fr
      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://actus.sfr.fr
      R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://actus.sfr.fr
      R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 75.*;*.mdp
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
      O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
      O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
      O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
      O4 - HKLM\..\Run: [NeroCheck] C:\WINNT\system32\NeroCheck.exe
      O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe
      O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
      O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
      O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINNT\system32\spool\drivers\w32x86\3\hpztsb08.exe
      O4 - HKLM\..\Run: [LogitechCameraAssistant] C:\Program Files\Logitech\Video\CameraAssistant.exe
      O4 - HKLM\..\Run: [LogitechVideo[inspector]] C:\Program Files\Logitech\Video\InstallHelper.exe /inspect
      O4 - HKLM\..\Run: [LogitechCameraService(E)] C:\WINNT\system32\ElkCtrl.exe /automation
      O4 - HKCU\..\Run: [Neuf Media Center] "C:\Program Files\Neuf\Media Center\MediaCenter.exe"
      O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
      O4 - HKCU\..\Run: [ccleaner] "D:\nettoyage ccleaner\CCleaner\ccleaner.exe" /AUTO
      O4 - HKUS\.DEFAULT\..\Run: [internat.exe] internat.exe (User 'Default user')
      O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background (User 'Default user')
      O4 - HKUS\.DEFAULT\..\RunOnce: [^SetupICWDesktop] C:\Program Files\Internet Explorer\Connection Wizard\icwconn1.exe /desktop (User 'Default user')
      O4 - Global Startup: BTTray.lnk = C:\Program Files\MSI\BToes Bluetooth Software\BTTray.exe
      O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
      O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
      O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie_ctx.htm
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
      O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINNT\bdoscandel.exe
      O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINNT\bdoscandel.exe
      O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie.htm
      O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie.htm
      O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O16 - DPF: {15AD6789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/MediaAccessVerisign/ie/bridge-c5.cab
      O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) - https://www.msn.com/fr-fr/
      O16 - DPF: {1F83CD9E-505E-4F87-BECE-0832A763E36F} (Image Uploader 3.0 Control) - http://www.mypixmania.com/fr/fr/importer/MypixUploader.cab
      O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
      O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
      O16 - DPF: {6DB731A3-B074-4118-8B1C-32511C65D836} (FotovistaPhotoUploader.ctrFpu) - http://www.mypixmania.com/fr/fr/tools/activex/fpu.cab
      O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.mypix.com/importer/ImageUploader4.cab
      O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
      O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP-1.1.cab
      O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://www.photoways.com/clients/uploader_v2.2.0.6.cab
      O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab
      O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
      O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\MSI\BToes Bluetooth Software\bin\btwdins.exe
      O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
      O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
      O23 - Service: Logitech Process Monitor (LVPrcSrv) - Logitech Inc. - c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
      0
  11. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 324
     
    As-tu encore des problèmes ?
    0
    1. tomcat75
       
      jusqu'ici tout va bien!
      Le dernier rapport indique-t-il un retour à la normal?

      Si oui encore merci.
      0
  12. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 324
     
    Plus de trace d'infection dans le rapport HijackThis.

    Ça m'a l'air bon.
    0
    1. tomcat75
       
      OK je remet un post s'il y a un soucis.
      Le pb peut être consdérer comme résolu.

      Un salut respectueux!

      Bonne soirée.
      0
  13. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 324
     
    Bonne soirée.
    0