PC infesté de chevaux de troie, HELP

Fermé
NEWman - 17 août 2008 à 23:08
 NEWman - 20 août 2008 à 20:55
Bonsoir à tous,
J'aurai besoin d'aide, mon pc est infecté par un ou plusieurs chevaux de troie, Avast les détecte mais est imcapable de les supprimer, si quelqu'un pouvait m'aider ce seria super sympa, merci pour vos réponses, voici déjà mon rapport hijack this


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:01:30, on 17/08/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\WINDOWS\system32\taskswitch.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Fichiers communs\ACD Systems\FR\DevDetect.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Adobe\Adobe Acrobat 6.0\Distillr\acrotray.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\Program Files\Executive Software\Diskeeper\DkService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\setup\avast.setup
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?redirfallthru=http%3a%2f%2fwww.msn.be%2f%3f
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.google.fr/?gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {9B236311-C9DD-4167-AADF-81A1A8B73266} - C:\Program Files\Fichiers communs\horefC:\WINDOWS\system32\k4\mper83122.exe.dll (file missing)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O2 - BHO: (no name) - {E966D446-F1A5-4128-AAF9-84570F5672DB} - C:\WINDOWS\system32\awvvs.dll (file missing)
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\MSDXM.OCX
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [NettoyeurTitan] C:\Program Files\OutilsTITAN\NettoyeurTitan\LauncherNTI.exe
O4 - HKLM\..\Run: [NeroFilterCheck] "C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] "SOUNDMAN.EXE"
O4 - HKLM\..\Run: [LVCOMSX] "C:\WINDOWS\system32\LVCOMSX.EXE"
O4 - HKLM\..\Run: [LogitechVideoRepair] "C:\Program Files\Logitech\Video\ISStart.exe"
O4 - HKLM\..\Run: [LogitechVideoTray] "C:\Program Files\Logitech\Video\LogiTray.exe"
O4 - HKLM\..\Run: [CoolSwitch] "C:\WINDOWS\system32\taskswitch.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [Device Detector] DevDetect.exe -autorun
O4 - HKLM\..\Run: [d0804923] rundll32.exe "C:\WINDOWS\system32\pwnwuafb.dll",b
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [PlaySafe] C:\DOCUME~1\Jason\APPLIC~1\1LOGOF~1\Boldelsebleh.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Assistant d'Acrobat.lnk = C:\Program Files\Adobe\Adobe Acrobat 6.0\Distillr\acrotray.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O14 - IERESET.INF: START_PAGE_URL=https://www.google.fr/?gws_rd=ssl
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w2/pr02/resources/MSNPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-BE/a-UNO1/GAME_UNO1.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
O16 - DPF: {A1F2F2CE-06AF-483C-9F12-D3BAA72477D6} (BatchDownloader Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/DigWXMSN.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O18 - Protocol: bw+0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - (no file)
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~4\GOEC62~1.DLL
O20 - Winlogon Notify: ieraxtdk - ieraxtdk.dll (file missing)
O20 - Winlogon Notify: opnkkhi - opnkkhi.dll (file missing)
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\Diskeeper\DkService.exe
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
A voir également:

70 réponses

ok, qui y a=t=il comme problème ?
0
y à t'il encore quelqu'un ?
0
Hadrienen Messages postés 716 Date d'inscription mercredi 31 octobre 2007 Statut Membre Dernière intervention 23 décembre 2010 25
19 août 2008 à 00:06
Scan avec Avast, et regarde ce qu'il trouve et supprime.
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 294
19 août 2008 à 00:10
Tu as installé le SP3 ?
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Hadrienen Messages postés 716 Date d'inscription mercredi 31 octobre 2007 Statut Membre Dernière intervention 23 décembre 2010 25
19 août 2008 à 00:12
Destrio5 , le SP3 n'est pas encore recommandé suite à des petits problèmes...on va dire que c'est un SP3 beta...
0
j'ai scanné avec avast et il a encore découvert un cheval de troie que j'ai supprimé. que faut il faire ensuite ?
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 294
19 août 2008 à 17:13
Quel est le nom du fichier ? Et son emplacement si possible ?
0
voici son nom : Win32:Swizzor [Trj]

voici son emplacement : C:\Documents and Settings\Jason\Application Data\1logofunk\Build Vga Five For.exe
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 294
19 août 2008 à 17:50
- Télécharge LopxpMH2 :
http://www.alt-shift-return.org/Info/Fichiers/lopxpMH2.zip

- Dézippe-le (clic droit >> Extraire ici).

- Double-clique sur le fichier lopxpMH2.

- Poste le contenu du rapport qui va s'ouvrir.
0
voici le rapport lopxpMH2

Rapport lopxpMH2 version 2.0 fait à 23:24:59,23 le 19/08/2008
C:\Documents and Settings\Jason\Bureau\lopxpMH2

******************************************
## Répertoires Application Data

Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\Administrateur\Application Data

12/08/2008 20:33 <REP> .
12/08/2008 20:33 <REP> ..
12/08/2008 20:33 <REP> Macromedia
12/08/2008 20:33 <REP> Microsoft
12/08/2008 20:33 62 desktop.ini
1 fichier(s) 62 octets
4 Rép(s) 66 563 899 392 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\Administrateur\Local Settings\Application Data

12/08/2008 20:33 <REP> .
12/08/2008 20:33 <REP> ..
12/08/2008 20:33 <REP> Adobe
12/08/2008 20:33 <REP> Microsoft
12/08/2008 20:36 3 184 656 IconCache.db
1 fichier(s) 3 184 656 octets
4 Rép(s) 66 563 895 296 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\All Users\Application Data

01/09/2006 02:10 <REP> .
01/09/2006 02:10 <REP> ..
01/09/2006 21:03 <REP> ACD Systems
01/09/2006 21:13 <REP> Adobe
08/11/2006 18:56 <REP> Ahead
01/09/2006 21:16 <REP> DVD Shrink
27/11/2006 18:39 <REP> Google
12/07/2007 13:12 <REP> Google Updater
01/09/2006 21:14 <REP> Macrovision
25/08/2007 15:14 <REP> MailFrontier
12/08/2008 20:47 <REP> Malwarebytes
16/05/2007 17:26 <REP> Messenger Plus!
01/09/2006 02:10 <REP> Microsoft
12/07/2007 13:13 <REP> Mozilla
17/03/2007 20:13 <REP> NVIDIA
17/09/2006 09:45 <REP> Skype
31/10/2006 17:16 <REP> Softdisk LLC
01/09/2006 12:45 <REP> Spybot - Search & Destroy
27/01/2007 11:59 <REP> Support.com
07/04/2007 14:54 <REP> Trymedia
01/11/2006 12:24 <REP> WhiteCap (Holiday Edition)
12/09/2006 18:37 <REP> Windows Genuine Advantage
03/03/2007 19:18 <REP> Zylom
01/09/2006 02:11 62 desktop.ini
13/09/2006 14:19 3 175 hpzinstall.log
2 fichier(s) 3 237 octets
23 Rép(s) 66 563 895 296 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\Default User\Application Data

01/09/2006 02:10 <REP> .
01/09/2006 02:10 <REP> ..
08/08/2008 19:23 <REP> Macromedia
01/09/2006 02:10 <REP> Microsoft
01/09/2006 02:11 62 desktop.ini
1 fichier(s) 62 octets
4 Rép(s) 66 563 895 296 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\Default User\Local Settings\Application Data

01/09/2006 02:11 <REP> .
01/09/2006 02:11 <REP> ..
27/07/2008 23:24 <REP> Adobe
01/09/2006 00:18 <REP> Microsoft
0 fichier(s) 0 octets
4 Rép(s) 66 563 895 296 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\Invité\Application Data

27/03/2007 18:51 <REP> .
27/03/2007 18:51 <REP> ..
27/03/2007 19:19 <REP> ACD Systems
27/03/2007 18:56 <REP> Google
27/03/2007 18:57 <REP> Macromedia
27/03/2007 18:51 <REP> Microsoft
07/04/2007 11:41 <REP> Mozilla
27/03/2007 18:51 62 desktop.ini
1 fichier(s) 62 octets
7 Rép(s) 66 563 891 200 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\Invité\Local Settings\Application Data

27/03/2007 18:51 <REP> .
27/03/2007 18:51 <REP> ..
27/03/2007 19:19 <REP> ACDSee
27/03/2007 18:56 <REP> Google
27/03/2007 18:51 <REP> Microsoft
07/04/2007 11:41 <REP> Mozilla
27/03/2007 19:23 4 297 080 IconCache.db
1 fichier(s) 4 297 080 octets
6 Rép(s) 66 563 891 200 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\InvitÚ

Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\InvitÚ\Local Settings

Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\Jason\Application Data

28/11/2007 16:06 <REP> .
28/11/2007 16:06 <REP> ..
18/12/2007 15:33 <REP> 1logofunk
28/11/2007 16:30 <REP> ACD Systems
08/01/2008 21:45 <REP> Ahead
28/11/2007 16:13 <REP> Google
30/11/2007 19:53 <REP> LimeWire
28/11/2007 16:12 <REP> Macromedia
23/02/2008 11:53 <REP> MailFrontier
12/08/2008 20:47 <REP> Malwarebytes
28/11/2007 16:06 <REP> Microsoft
28/11/2007 16:06 62 desktop.ini
1 fichier(s) 62 octets
11 Rép(s) 66 563 891 200 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\Jason\Local Settings\Application Data

28/11/2007 16:06 <REP> .
28/11/2007 16:06 <REP> ..
28/11/2007 16:30 <REP> ACDSee
12/03/2008 21:21 <REP> Ahead
28/11/2007 16:08 <REP> Google
28/11/2007 16:39 <REP> Logitech-LS
28/11/2007 16:06 <REP> Microsoft
28/11/2007 16:10 63 512 GDIPFONTCACHEV1.DAT
28/11/2007 17:55 8 031 132 IconCache.db
2 fichier(s) 8 094 644 octets
7 Rép(s) 66 563 891 200 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\LocalService\Application Data

01/09/2006 07:15 <REP> .
01/09/2006 07:15 <REP> ..
01/09/2006 07:15 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 66 563 891 200 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\LocalService\Local Settings\Application Data

01/09/2006 07:15 <REP> .
01/09/2006 07:15 <REP> ..
01/09/2006 07:15 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 66 563 891 200 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\megan\Application Data

08/09/2006 16:35 <REP> .
08/09/2006 16:35 <REP> ..
13/10/2006 21:20 <REP> ACD Systems
28/10/2006 13:00 <REP> Adobe
13/09/2006 14:57 <REP> FotoWire
28/11/2006 19:41 <REP> Google
13/09/2006 14:19 <REP> HP
02/08/2007 14:26 <REP> LimeWire
13/10/2006 19:15 <REP> Macromedia
23/02/2008 23:36 <REP> MailFrontier
08/09/2006 16:35 <REP> Microsoft
14/01/2008 16:56 <REP> Skype
08/09/2006 16:35 62 desktop.ini
1 fichier(s) 62 octets
12 Rép(s) 66 563 887 104 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\megan\Local Settings\Application Data

08/09/2006 16:35 <REP> .
08/09/2006 16:35 <REP> ..
13/10/2006 21:20 <REP> ACDSee
02/08/2007 16:23 <REP> Adobe
24/12/2006 09:30 <REP> Ahead
03/06/2008 13:49 <REP> Apple Computer
28/11/2006 19:41 <REP> Google
13/09/2006 15:08 <REP> Logitech-LS
08/09/2006 16:35 <REP> Microsoft
13/09/2006 14:08 63 512 GDIPFONTCACHEV1.DAT
08/09/2006 17:08 10 244 574 IconCache.db
2 fichier(s) 10 308 086 octets
9 Rép(s) 66 563 887 104 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\NetworkService\Application Data

01/09/2006 07:15 <REP> .
01/09/2006 07:15 <REP> ..
01/09/2006 07:15 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 66 563 887 104 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\NetworkService\Local Settings\Application Data

01/09/2006 07:15 <REP> .
01/09/2006 07:15 <REP> ..
01/09/2006 07:15 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 66 563 887 104 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\Quodbach\Application Data

24/03/2007 17:46 <REP> .
24/03/2007 17:46 <REP> ..
10/07/2008 15:44 <REP> 1logofunk
24/03/2007 19:01 <REP> ACD Systems
29/03/2007 10:38 <REP> Adobe
29/03/2007 10:39 <REP> AdobeUM
13/05/2008 21:18 <REP> Ahead
24/03/2007 17:48 <REP> Google
01/12/2007 22:36 <REP> Help
16/10/2007 20:33 <REP> HP
18/09/2007 17:59 <REP> Hulabee
13/10/2007 13:50 <REP> LimeWire
24/03/2007 18:23 <REP> Macromedia
19/02/2008 13:12 <REP> MailFrontier
24/03/2007 17:46 <REP> Microsoft
20/07/2007 15:36 <REP> Mozilla
16/05/2007 17:26 <REP> Screenshot Sender
07/04/2007 18:33 <REP> Skype
05/08/2007 21:30 <REP> Talkback
05/08/2007 22:04 <REP> WebCallDirect
24/03/2007 17:46 62 desktop.ini
1 fichier(s) 62 octets
20 Rép(s) 66 563 887 104 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Documents and Settings\Quodbach\Local Settings\Application Data

24/03/2007 17:46 <REP> .
24/03/2007 17:46 <REP> ..
24/03/2007 19:01 <REP> ACDSee
29/03/2007 10:39 <REP> Adobe
24/03/2007 19:19 <REP> Ahead
24/03/2007 17:48 <REP> Google
01/12/2007 22:36 <REP> Help
08/04/2007 16:10 <REP> Logitech-LS
24/03/2007 17:46 <REP> Microsoft
20/07/2007 15:36 <REP> Mozilla
24/03/2007 19:19 5 632 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
03/04/2007 08:44 63 512 GDIPFONTCACHEV1.DAT
24/03/2007 17:55 10 139 808 IconCache.db
3 fichier(s) 10 208 952 octets
10 Rép(s) 66 563 887 104 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\WINDOWS\system32\config\systemprofile\Application Data

01/09/2006 00:19 <REP> .
01/09/2006 00:19 <REP> ..
01/09/2006 00:19 <REP> Microsoft
01/09/2006 00:19 62 desktop.ini
1 fichier(s) 62 octets
3 Rép(s) 66 563 883 008 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data

01/09/2006 00:19 <REP> .
01/09/2006 00:19 <REP> ..
08/08/2008 19:25 <REP> Google
01/09/2006 00:19 <REP> Microsoft
0 fichier(s) 0 octets
4 Rép(s) 66 563 883 008 octets libres

******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks

******************************************
## Répertoires de C:\Program Files

Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est D080-498C

Répertoire de C:\Program Files

18/08/2008 01:34 <REP> .
18/08/2008 01:34 <REP> ..
28/06/2008 13:25 <REP> 1logofunk
01/09/2006 21:03 <REP> ACD Systems
27/07/2008 23:27 <REP> Adobe
01/09/2006 17:22 <REP> Alcohol Soft
05/08/2007 19:06 <REP> Alwil Software
13/01/2008 12:52 <REP> Aspyr
12/08/2007 15:53 <REP> Auran
05/04/2007 12:07 <REP> AviSynth 2.5
01/09/2006 22:10 <REP> AvRack
02/04/2007 21:43 <REP> AVS4YOU
01/11/2006 12:02 <REP> BeamFile
12/08/2008 22:10 <REP> CCleaner
10/03/2007 17:30 <REP> City Interactive
27/01/2007 11:58 <REP> Common Files
01/09/2006 00:15 <REP> ComPlus Applications
29/01/2007 13:47 <REP> DIFX
05/12/2007 14:01 <REP> Disney Interactive
14/05/2008 01:59 <REP> DivX
16/12/2007 14:59 <REP> DVD Shrink
08/05/2007 15:40 <REP> Eidos Interactive
05/02/2008 21:12 <REP> Elektrogames
05/08/2007 23:38 <REP> Executive Software
02/04/2007 21:51 <REP> FairUse Wizard 2
17/08/2008 23:16 <REP> Fichiers communs
24/12/2007 15:21 <REP> Frogster
21/05/2007 13:59 <REP> Gamenext
13/11/2007 16:51 <REP> GameTop.com
05/02/2007 17:38 <REP> Global Star Software
06/11/2007 14:16 <REP> Google
18/09/2007 17:57 <REP> Hulabee
12/01/2008 12:20 <REP> Incomplete
01/11/2006 11:53 <REP> Intel
14/12/2006 15:19 <REP> InterActual
25/12/2006 01:03 <REP> Internet Explorer
18/08/2008 01:34 <REP> Java
13/01/2008 13:19 <REP> LimeWire
11/11/2006 23:14 <REP> Logitech
12/08/2008 20:47 <REP> Malwarebytes' Anti-Malware
05/12/2007 14:58 <REP> Maxis
24/05/2008 21:21 <REP> Messenger Plus! Live
22/04/2007 17:54 <REP> MessengerPlus! 3
01/09/2006 17:29 <REP> Microsoft Office
31/08/2007 12:02 <REP> Mozilla Firefox
24/05/2008 21:21 <REP> MSN Messenger
01/09/2006 21:20 <REP> Nero
01/09/2006 21:37 <REP> NVIDIA
14/01/2008 11:03 <REP> OpenAL
01/09/2006 00:19 <REP> OutilsTITAN
10/12/2007 18:18 <REP> PCFriendly
24/05/2008 21:32 <REP> Picasa2
07/06/2008 16:54 <REP> Realtek AC97
01/09/2006 22:10 <REP> Realtek Sound Manager
01/11/2006 23:22 <REP> ReflexiveArcade
01/09/2006 00:17 <REP> Services en ligne
11/07/2007 22:27 <REP> sixteen tons entertainment
12/09/2007 17:34 <REP> Skype
16/05/2007 16:10 <REP> SotS Gold
25/08/2007 15:56 <REP> Spybot - Search & Destroy
18/08/2008 01:34 <REP> Sun
02/02/2007 22:08 <REP> Support.com
12/06/2007 15:48 <REP> Team6
01/09/2006 21:35 <REP> Totalcmd
17/08/2008 23:01 <REP> Trend Micro
31/08/2007 12:02 <REP> Vstep
10/03/2007 18:56 <REP> VVSN
18/12/2006 20:11 <REP> Winamp
02/04/2007 21:31 <REP> WinAVI MP4 Converter
16/06/2007 19:52 <REP> Windows Live
27/02/2008 14:20 <REP> Windows Media Player
01/09/2006 00:15 <REP> Windows NT
18/09/2007 22:15 <REP> WinRAR
01/09/2006 21:30 <REP> Zone Labs
0 fichier(s) 0 octets
74 Rép(s) 66 563 878 912 octets libres

******************************************
## Popups autorisées

* Internet Explorer

! REG.EXE VERSION 3.0

HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\New Windows\Allow
*.zylom.com REG_BINARY 00000000
fr.radiocontact.be REG_BINARY
zonenxt.msn-int.com REG_BINARY
zonenxt.msn-ppe.com REG_BINARY
zone.msn.com REG_BINARY
PopupMgr REG_SZ yes

* Mozilla Firefox (1 autorisé 2 interdit)

******************************************
## Registre

* [HKEY_CURRENT_USER\\Software\Microsoft\Internet Explorer\Main]
Search Bar REG_SZ http://www.google.com/toolbar/ie8/sidebar.html

******************************************
## Zones de sécurité

* HKCU Domains (4)

* P3P History (5)

******************************************
## Recherche C:\WINDOWS\*.htm, "C:\WINDOWS\*.gif"


*************** Fin du rapport ****************
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 294
19 août 2008 à 23:41
---> Télécharge OTMoveIt2 à partir du lien ci-dessous :
http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe

---> Enregistre le fichier sur le Bureau.

---> Double-clique sur le fichier OTMoveIt2.exe pour lancer l'outil.
Assure-toi que la case Unregister Dll's and Ocx's soit bien cochée.

---> Copie l'intégralité du texte ci-dessous et colle-le dans la fenêtre intitulée Paste Standard List of Files/Folders to be moved.




C:\Documents and Settings\Jason\Application Data\1logofunk\
C:\Program Files\1logofunk\
C:\Documents and Settings\Quodbach\Application Data\1logofunk\




---> Clique sur MoveIt! pour lancer la suppression.
Lorsqu'un résultat apparaît dans le cadre Results, clique sur Exit.

Note : Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer. Accepte en cliquant sur YES.

---> Poste le rapport de OTMoveIt qui se trouve dans C:\_OTMoveIt\MovedFiles.
0
voici le rapport ot move it

C:\Documents and Settings\Jason\Application Data\1logofunk moved successfully.
C:\Program Files\1logofunk moved successfully.
C:\Documents and Settings\Quodbach\Application Data\1logofunk moved successfully.

OTMoveIt2 by OldTimer - Version 1.0.4.3 log created on 08192008_234246
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 294
19 août 2008 à 23:53
Ok bien. Tu as fait le scan avec MalwareByte's Anti-Malware ?
0
oui je l'avais fait avant de demander de l'aide sur CCm, il avait détecté 29 menaces qu'il a supprimé.

Il y a encore d'autres choses a faire ?
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 294
20 août 2008 à 00:03
Poste un nouveau rapport HijackThis.
0
voila :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:30, on 20/08/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Executive Software\Diskeeper\DkService.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\WINDOWS\system32\taskswitch.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Adobe\Adobe Acrobat 6.0\Distillr\acrotray.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMIndexStoreSvr.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?redirfallthru=http%3a%2f%2fwww.msn.be%2f%3f
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\MSDXM.OCX
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [NettoyeurTitan] C:\Program Files\OutilsTITAN\NettoyeurTitan\LauncherNTI.exe
O4 - HKLM\..\Run: [NeroFilterCheck] "C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] "SOUNDMAN.EXE"
O4 - HKLM\..\Run: [LVCOMSX] "C:\WINDOWS\system32\LVCOMSX.EXE"
O4 - HKLM\..\Run: [LogitechVideoRepair] "C:\Program Files\Logitech\Video\ISStart.exe"
O4 - HKLM\..\Run: [LogitechVideoTray] "C:\Program Files\Logitech\Video\LogiTray.exe"
O4 - HKLM\..\Run: [CoolSwitch] "C:\WINDOWS\system32\taskswitch.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Assistant d'Acrobat.lnk = C:\Program Files\Adobe\Adobe Acrobat 6.0\Distillr\acrotray.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O14 - IERESET.INF: START_PAGE_URL=https://www.google.fr/?gws_rd=ssl
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w2/pr02/resources/MSNPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-BE/a-UNO1/GAME_UNO1.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
O16 - DPF: {A1F2F2CE-06AF-483C-9F12-D3BAA72477D6} (BatchDownloader Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/DigWXMSN.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O18 - Protocol: bw+0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {E9D90B05-71BE-45BE-A3BE-FDFEA503C754} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\Diskeeper\DkService.exe
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: Uninterruptible Power Supply (UPS) - Unknown owner - C:\WINDOWS\System32\ups.exe (file missing)
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 294
20 août 2008 à 00:50
---> Relance HijackThis et choisis Do a system scan only

---> Coche les cases qui sont devant les lignes suivantes :

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [SoundMan] "SOUNDMAN.EXE"

O4 - HKLM\..\Run: [LVCOMSX] "C:\WINDOWS\system32\LVCOMSX.EXE"

O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"

O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot

O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

018 - Toutes les lignes Logitech

O23 - Service: Uninterruptible Power Supply (UPS) - Unknown owner - C:\WINDOWS\System32\ups.exe (file missing)

---> Clique en bas sur Fix checked. Mets oui si HijackThis te demande quelque chose.

---> Redémarre et poste un nouveau rapport HijackThis
0
voila le nouveau rapport hijack :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:16, on 20/08/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\WINDOWS\system32\taskswitch.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Executive Software\Diskeeper\DkService.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Adobe\Adobe Acrobat 6.0\Distillr\acrotray.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\WINDOWS\system32\LVComsX.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?redirfallthru=http%3a%2f%2fwww.msn.be%2f%3f
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\MSDXM.OCX
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [NettoyeurTitan] C:\Program Files\OutilsTITAN\NettoyeurTitan\LauncherNTI.exe
O4 - HKLM\..\Run: [NeroFilterCheck] "C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [LogitechVideoRepair] "C:\Program Files\Logitech\Video\ISStart.exe"
O4 - HKLM\..\Run: [LogitechVideoTray] "C:\Program Files\Logitech\Video\LogiTray.exe"
O4 - HKLM\..\Run: [CoolSwitch] "C:\WINDOWS\system32\taskswitch.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Assistant d'Acrobat.lnk = C:\Program Files\Adobe\Adobe Acrobat 6.0\Distillr\acrotray.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O14 - IERESET.INF: START_PAGE_URL=https://www.google.fr/?gws_rd=ssl
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w2/pr02/resources/MSNPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-BE/a-UNO1/GAME_UNO1.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
O16 - DPF: {A1F2F2CE-06AF-483C-9F12-D3BAA72477D6} (BatchDownloader Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/DigWXMSN.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\Diskeeper\DkService.exe
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: Uninterruptible Power Supply (UPS) - Unknown owner - C:\WINDOWS\System32\ups.exe (file missing)
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 294
20 août 2008 à 15:25
Plus de trace d'infection.

As-tu encore des problèmes ou on peut passer à la dernière étape ?
0
y a pas l'air d'avoir encore des prob.
On peut passer à la dernière étape
0