Infécté pas Virtumonde

Résolu
Bonjour,
j'ai un probleme qui commence serieusement à le taper sur les nerf, je suis infecté par Virtumonde !
j'ai fait un scan nod32 et mon antivirus (firewall) mais ils n'ont rien trouvé, aidez moi :(
Configuration: Windows XP
Internet Explorer 7.0

26 réponses

Résumé de la discussion

Une infection présumée par Virtumonde sur Windows XP avec Internet Explorer 7 est signalée, alors que les scans antivirus et pare-feu semblent ne rien détecter pour autant. Les conseils privilégient l’usage de HijackThis pour effectuer un balayage système et générer un rapport clair permettant d’identifier les éléments suspects et les remettre en contexte. Concrètement, il faut télécharger et lancer l’outil, lancer l’analyse, sauvegarder le fichier de log et le partager pour examen, afin d’évaluer les modifications possibles sur le navigateur et les paramètres système. Les rapports évoquent une variété de processus et de services, mais seul l’analyse des correspondances et des entrées de démarrage permet de distinguer les composants légitimes des éléments potentiellement malveillants.

Bobot (l’IA à votre service)
  1. Contributeur sécurité
    Bonjour

    Télécharge le fichier d’installation d’Hijackthis en cliquant sur ce lien

    http://www.trendsecure.com/portal/en-US/tools/security_tools/hijackthis/download

    Enregistre HJTInstall.exe sur ton bureau.

    Double-clique sur HJTInstall.exe pour lancer le programme

    Tuto : https://www.malekal.com/tutoriel-hijackthis/
    http://pagesperso-orange.fr/rginformatique/section%20virus/Hijenr.gif
    http://pagesperso-orange.fr/rginformatique/section%20virus/demohijack.htm

    Accepte la license en cliquant sur le bouton "I Accept"
    Choisis l'option "Do a system scan and save a log file"
    Clique sur "Save log" pour enregistrer le rapport qui s'ouvrira avec le bloc-note
    Clique sur "Edition -> Sélectionner tout", puis sur "Edition -> Copier" pour copier tout le contenu du rapport

    Colle le rapport que tu viens de copier sur ce forum

    --
    2
    1. http://www.clubic.com/telecharger-fiche25107-vundofix.html

      télécharge le, et lance le scan

      ton pb sera réglé
      0
      1. Bah toptibal, si c'est vraiment vundo; le fix suffit ! déjà testé et marche vraiment bien (mais que pour vundo)
        0
        1. non,vundofix ne trouve rien !
          0
          1. voilà le rapport Hijathis :
            Logfile of Trend Micro HijackThis v2.0.2
            Scan saved at 14:33:23, on 28/09/2008
            Platform: Windows XP SP2 (WinNT 5.01.2600)
            MSIE: Internet Explorer v7.00 (7.00.6000.16705)
            Boot mode: Normal

            Running processes:
            C:\WINDOWS\System32\smss.exe
            C:\WINDOWS\system32\csrss.exe
            C:\WINDOWS\system32\winlogon.exe
            C:\WINDOWS\system32\services.exe
            C:\WINDOWS\system32\lsass.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\system32\svchost.exe
            C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe
            C:\WINDOWS\System32\svchost.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\system32\spoolsv.exe
            C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
            C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
            C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
            C:\PROGRA~1\ANTIVI~1\backweb\6588780\Program\SERVIC~1.EXE
            C:\Program Files\Bonjour\mDNSResponder.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\eHome\ehRecvr.exe
            C:\WINDOWS\eHome\ehSched.exe
            C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
            C:\Program Files\AntivirusFirewall\Anti-Virus\fsgk32st.exe
            C:\Program Files\AntivirusFirewall\Anti-Virus\FSGK32.EXE
            C:\Program Files\AntivirusFirewall\backweb\6588780\program\fsbwsys.exe
            C:\Program Files\AntivirusFirewall\Common\FSMA32.EXE
            C:\Program Files\AntivirusFirewall\Anti-Virus\fssm32.exe
            C:\WINDOWS\System32\FTRTSVC.exe
            C:\Program Files\AntivirusFirewall\Common\FSMB32.EXE
            C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
            C:\Program Files\AntivirusFirewall\Common\FCH32.EXE
            c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
            C:\Program Files\AntivirusFirewall\Common\FAMEH32.EXE
            C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
            C:\Program Files\AntivirusFirewall\Anti-Virus\fsqh.exe
            C:\Program Files\AntivirusFirewall\Anti-Virus\fsrw.exe
            C:\WINDOWS\system32\nvsvc32.exe
            C:\Program Files\Controle Parental\bin\optproxy.exe
            C:\WINDOWS\Explorer.EXE
            C:\WINDOWS\system32\PnkBstrA.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\ehome\mcrdsvc.exe
            C:\WINDOWS\ehome\ehtray.exe
            C:\Program Files\AntivirusFirewall\Anti-Virus\fsav32.exe
            C:\WINDOWS\RTHDCPL.EXE
            C:\Program Files\AntivirusFirewall\FWES\Program\fsdfwd.exe
            C:\WINDOWS\system32\wscntfy.exe
            C:\WINDOWS\system32\RUNDLL32.EXE
            C:\Acer\Empowering Technology\eRecovery\eRAgent.exe
            C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
            C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
            C:\WINDOWS\eHome\ehmsas.exe
            C:\WINDOWS\system32\dllhost.exe
            C:\WINDOWS\system32\SysMonitor.exe
            C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
            C:\WINDOWS\system32\rundll32.exe
            C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
            C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe
            C:\WINDOWS\System32\alg.exe
            C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
            C:\Program Files\Logitech\QuickCam\Quickcam.exe
            C:\Program Files\AntivirusFirewall\Common\FSM32.EXE
            C:\Program Files\AntivirusFirewall\FSGUI\ispnews.exe
            C:\PROGRA~1\ANTIVI~1\ANTI-S~1\fsaw.exe
            C:\WINDOWS\system32\ocntttdm.exe
            C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
            C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter3.exe
            C:\Program Files\AntivirusFirewall\FSGUI\fsguidll.exe
            C:\WINDOWS\system32\ctfmon.exe
            C:\Acer\Empowering Technology\Acer.Empowering.Framework.Launcher.exe
            C:\Program Files\Acer WLAN 11g USB Dongle\ZDWlan.exe
            C:\Program Files\AntivirusFirewall\backweb\6588780\Program\fspex.exe
            C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
            C:\Program Files\iPod\bin\iPodService.exe
            C:\Program Files\Google\Google Updater\GoogleUpdater.exe
            C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe
            C:\Program Files\BitDefender\BitDefender 2009\seccenter.exe
            C:\Program Files\Wanadoo\GestionnaireInternet.exe
            C:\Program Files\Wanadoo\ComComp.exe
            C:\PROGRA~1\Wanadoo\Toaster.exe
            C:\PROGRA~1\Wanadoo\Inactivity.exe
            C:\PROGRA~1\Wanadoo\PollingModule.exe
            C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
            C:\Program Files\Wanadoo\Watch.exe
            C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
            C:\WINDOWS\system32\rundll32.exe
            C:\WINDOWS\system32\rundll32.exe
            C:\Program Files\Windows Live\Messenger\usnsvc.exe
            C:\Program Files\Internet Explorer\IEXPLORE.EXE
            C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
            C:\Program Files\Internet Explorer\iexplore.exe
            C:\WINDOWS\System32\svchost.exe
            C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
            C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
            C:\WINDOWS\system32\wbem\wmiprvse.exe

            R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr
            R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
            R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
            R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://fr.yahoo.com/
            R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
            R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
            R3 - URLSearchHook: (no name) - {AEEC3B59-CA98-4EBA-A140-57B94E283583} - C:\PROGRA~1\ORANGE~1\TOOLBA~2.DLL
            R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
            R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
            O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\WINDOWS\system32\eDStoolbar.dll
            O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
            O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
            O3 - Toolbar: barre d'outils Orange - {D3028143-6145-4318-99D3-3EDCE54A95A9} - C:\Program Files\Orange Toolbar FR\ToolbarContainer255.dll
            O3 - Toolbar: BitDefender Toolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2009\IEToolbar.dll
            O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
            O4 - HKLM\..\Run: [LaunchApp] Alaunch
            O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
            O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
            O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
            O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
            O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
            O4 - HKLM\..\Run: [ntiMUI] c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe
            O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
            O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
            O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
            O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
            O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
            O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
            O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
            O4 - HKLM\..\Run: [Acer Empowering Technology Monitor] C:\WINDOWS\system32\SysMonitor.exe
            O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe 0
            O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\eRAgent.exe
            O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
            O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
            O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
            O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
            O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe"
            O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
            O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\AntivirusFirewall\Common\FSM32.EXE" /splash
            O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\AntivirusFirewall\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
            O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\AntivirusFirewall\FSGUI\FSSW.EXE" /reboot
            O4 - HKLM\..\Run: [News Service] "C:\Program Files\AntivirusFirewall\FSGUI\ispnews.exe"
            O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
            O4 - HKLM\..\Run: [EvqmopfVpbTdhce] C:\WINDOWS\system32\ocntttdm.exe
            O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
            O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
            O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
            O4 - HKLM\..\Run: [SpyHunter Security Suite] C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter3.exe
            O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe"
            O4 - HKLM\..\Run: [BitDefender Antiphishing Helper] "C:\Program Files\BitDefender\BitDefender 2009\IEShow.exe"
            O4 - HKLM\..\Run: [BM035c638e] Rundll32.exe "C:\WINDOWS\system32\svounvpe.dll",s
            O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
            O4 - HKCU\..\Run: [WOOKIT] C:\Program Files\Wanadoo\GestMaj.exe GestionnaireInternet.exe
            O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
            O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
            O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
            O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
            O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
            O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
            O4 - Startup: Deewoo.lnk = C:\WINDOWS\system32\ocntttdl.exe
            O4 - Startup: DW_Start.lnk = C:\WINDOWS\system32\rpwnw64j.exe
            O4 - Global Startup: Acer Empowering Technology.lnk = ?
            O4 - Global Startup: Acer WLAN 11g USB Dongle.lnk = C:\Program Files\Acer WLAN 11g USB Dongle\ZDWlan.exe
            O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
            O4 - Global Startup: Antivirus Firewall.lnk = C:\Program Files\AntivirusFirewall\backweb\6588780\Program\fspex.exe
            O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
            O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
            O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
            O8 - Extra context menu item: &Bloquer cette fenêtre publicitaire - C:\Program Files\AntivirusFirewall\Anti-Spyware\blockpopups.htm
            O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
            O8 - Extra context menu item: ajouter cette page à vos favoris Orange - C:\DOCUME~1\PACKBE~1\LOCALS~1\Temp\cceAE9.html
            O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
            O8 - Extra context menu item: traduire la page - C:\DOCUME~1\PACKBE~1\LOCALS~1\Temp\cceAE7.html
            O8 - Extra context menu item: traduire le texte sélectionné - C:\DOCUME~1\PACKBE~1\LOCALS~1\Temp\cceAE8.html
            O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
            O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
            O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
            O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
            O9 - Extra button: Protection Internet Explorer - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\AntivirusFirewall\Anti-Spyware\ieshield.dll
            O9 - Extra 'Tools' menuitem: Protection Internet Explorer... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\AntivirusFirewall\Anti-Spyware\ieshield.dll
            O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
            O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
            O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
            O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
            O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - https://www.systemrequirementslab.com/cyri
            O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w2/resources/MSNPUpld.cab
            O17 - HKLM\System\CCS\Services\Tcpip\..\{31774260-ADD8-4FA8-AB56-5A2EDEE86276}: NameServer = 80.10.246.1 81.253.149.2
            O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
            O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
            O20 - AppInit_DLLs: gzgscp.dll
            O23 - Service: Memory Check Service (AcerMemUsageCheckService) - Acer Inc. - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
            O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
            O23 - Service: BitDefender Arrakis Server (Arrakis3) - BitDefender S.R.L. https://www.bitdefender.fr/ - C:\Program Files\Fichiers communs\BitDefender\BitDefender Arrakis Server\bin\Arrakis3.exe
            O23 - Service: Antivirus Firewall (BackWeb Plug-in - 6588780) - Securitoo Portal - C:\PROGRA~1\ANTIVI~1\backweb\6588780\Program\SERVIC~1.EXE
            O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
            O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
            O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
            O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
            O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\AntivirusFirewall\Anti-Virus\fsgk32st.exe
            O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\AntivirusFirewall\backweb\6588780\program\fsbwsys.exe
            O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\AntivirusFirewall\FWES\Program\fsdfwd.exe
            O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\AntivirusFirewall\Common\FSMA32.EXE
            O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
            O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
            O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
            O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
            O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
            O23 - Service: BitDefender Desktop Update Service (LIVESRV) - BitDefender SRL - C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
            O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
            O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
            O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLnch.exe
            O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
            O23 - Service: Control Parental (OPTENET_FILTER) - Contrôle Parental - C:\Program Files\Controle Parental\bin\optproxy.exe
            O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
            O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S. R. L. - C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe
            O23 - Service: VundoFix Service (VundoFixSvc) - Atribune.org - C:\WINDOWS\SYSTEM32\VundoFixSVC.exe
            0
            1. voilà le rapport Hijathis :
              Logfile of Trend Micro HijackThis v2.0.2
              Scan saved at 14:33:23, on 28/09/2008
              Platform: Windows XP SP2 (WinNT 5.01.2600)
              MSIE: Internet Explorer v7.00 (7.00.6000.16705)
              Boot mode: Normal

              Running processes:
              C:\WINDOWS\System32\smss.exe
              C:\WINDOWS\system32\csrss.exe
              C:\WINDOWS\system32\winlogon.exe
              C:\WINDOWS\system32\services.exe
              C:\WINDOWS\system32\lsass.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\system32\svchost.exe
              C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe
              C:\WINDOWS\System32\svchost.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\system32\spoolsv.exe
              C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
              C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
              C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
              C:\PROGRA~1\ANTIVI~1\backweb\6588780\Program\SERVIC~1.EXE
              C:\Program Files\Bonjour\mDNSResponder.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\eHome\ehRecvr.exe
              C:\WINDOWS\eHome\ehSched.exe
              C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
              C:\Program Files\AntivirusFirewall\Anti-Virus\fsgk32st.exe
              C:\Program Files\AntivirusFirewall\Anti-Virus\FSGK32.EXE
              C:\Program Files\AntivirusFirewall\backweb\6588780\program\fsbwsys.exe
              C:\Program Files\AntivirusFirewall\Common\FSMA32.EXE
              C:\Program Files\AntivirusFirewall\Anti-Virus\fssm32.exe
              C:\WINDOWS\System32\FTRTSVC.exe
              C:\Program Files\AntivirusFirewall\Common\FSMB32.EXE
              C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
              C:\Program Files\AntivirusFirewall\Common\FCH32.EXE
              c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
              C:\Program Files\AntivirusFirewall\Common\FAMEH32.EXE
              C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
              C:\Program Files\AntivirusFirewall\Anti-Virus\fsqh.exe
              C:\Program Files\AntivirusFirewall\Anti-Virus\fsrw.exe
              C:\WINDOWS\system32\nvsvc32.exe
              C:\Program Files\Controle Parental\bin\optproxy.exe
              C:\WINDOWS\Explorer.EXE
              C:\WINDOWS\system32\PnkBstrA.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\ehome\mcrdsvc.exe
              C:\WINDOWS\ehome\ehtray.exe
              C:\Program Files\AntivirusFirewall\Anti-Virus\fsav32.exe
              C:\WINDOWS\RTHDCPL.EXE
              C:\Program Files\AntivirusFirewall\FWES\Program\fsdfwd.exe
              C:\WINDOWS\system32\wscntfy.exe
              C:\WINDOWS\system32\RUNDLL32.EXE
              C:\Acer\Empowering Technology\eRecovery\eRAgent.exe
              C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
              C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
              C:\WINDOWS\eHome\ehmsas.exe
              C:\WINDOWS\system32\dllhost.exe
              C:\WINDOWS\system32\SysMonitor.exe
              C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
              C:\WINDOWS\system32\rundll32.exe
              C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
              C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe
              C:\WINDOWS\System32\alg.exe
              C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
              C:\Program Files\Logitech\QuickCam\Quickcam.exe
              C:\Program Files\AntivirusFirewall\Common\FSM32.EXE
              C:\Program Files\AntivirusFirewall\FSGUI\ispnews.exe
              C:\PROGRA~1\ANTIVI~1\ANTI-S~1\fsaw.exe
              C:\WINDOWS\system32\ocntttdm.exe
              C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
              C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter3.exe
              C:\Program Files\AntivirusFirewall\FSGUI\fsguidll.exe
              C:\WINDOWS\system32\ctfmon.exe
              C:\Acer\Empowering Technology\Acer.Empowering.Framework.Launcher.exe
              C:\Program Files\Acer WLAN 11g USB Dongle\ZDWlan.exe
              C:\Program Files\AntivirusFirewall\backweb\6588780\Program\fspex.exe
              C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
              C:\Program Files\iPod\bin\iPodService.exe
              C:\Program Files\Google\Google Updater\GoogleUpdater.exe
              C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe
              C:\Program Files\BitDefender\BitDefender 2009\seccenter.exe
              C:\Program Files\Wanadoo\GestionnaireInternet.exe
              C:\Program Files\Wanadoo\ComComp.exe
              C:\PROGRA~1\Wanadoo\Toaster.exe
              C:\PROGRA~1\Wanadoo\Inactivity.exe
              C:\PROGRA~1\Wanadoo\PollingModule.exe
              C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
              C:\Program Files\Wanadoo\Watch.exe
              C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
              C:\WINDOWS\system32\rundll32.exe
              C:\WINDOWS\system32\rundll32.exe
              C:\Program Files\Windows Live\Messenger\usnsvc.exe
              C:\Program Files\Internet Explorer\IEXPLORE.EXE
              C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
              C:\Program Files\Internet Explorer\iexplore.exe
              C:\WINDOWS\System32\svchost.exe
              C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
              C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
              C:\WINDOWS\system32\wbem\wmiprvse.exe

              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr
              R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
              R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
              R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://fr.yahoo.com/
              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
              R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
              R3 - URLSearchHook: (no name) - {AEEC3B59-CA98-4EBA-A140-57B94E283583} - C:\PROGRA~1\ORANGE~1\TOOLBA~2.DLL
              R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
              R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
              O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\WINDOWS\system32\eDStoolbar.dll
              O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
              O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
              O3 - Toolbar: barre d'outils Orange - {D3028143-6145-4318-99D3-3EDCE54A95A9} - C:\Program Files\Orange Toolbar FR\ToolbarContainer255.dll
              O3 - Toolbar: BitDefender Toolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2009\IEToolbar.dll
              O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
              O4 - HKLM\..\Run: [LaunchApp] Alaunch
              O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
              O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
              O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
              O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
              O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
              O4 - HKLM\..\Run: [ntiMUI] c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe
              O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
              O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
              O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
              O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
              O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
              O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
              O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
              O4 - HKLM\..\Run: [Acer Empowering Technology Monitor] C:\WINDOWS\system32\SysMonitor.exe
              O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe 0
              O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\eRAgent.exe
              O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
              O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
              O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
              O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
              O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe"
              O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
              O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\AntivirusFirewall\Common\FSM32.EXE" /splash
              O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\AntivirusFirewall\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
              O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\AntivirusFirewall\FSGUI\FSSW.EXE" /reboot
              O4 - HKLM\..\Run: [News Service] "C:\Program Files\AntivirusFirewall\FSGUI\ispnews.exe"
              O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
              O4 - HKLM\..\Run: [EvqmopfVpbTdhce] C:\WINDOWS\system32\ocntttdm.exe
              O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
              O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
              O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
              O4 - HKLM\..\Run: [SpyHunter Security Suite] C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter3.exe
              O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe"
              O4 - HKLM\..\Run: [BitDefender Antiphishing Helper] "C:\Program Files\BitDefender\BitDefender 2009\IEShow.exe"
              O4 - HKLM\..\Run: [BM035c638e] Rundll32.exe "C:\WINDOWS\system32\svounvpe.dll",s
              O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
              O4 - HKCU\..\Run: [WOOKIT] C:\Program Files\Wanadoo\GestMaj.exe GestionnaireInternet.exe
              O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
              O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
              O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
              O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
              O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
              O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
              O4 - Startup: Deewoo.lnk = C:\WINDOWS\system32\ocntttdl.exe
              O4 - Startup: DW_Start.lnk = C:\WINDOWS\system32\rpwnw64j.exe
              O4 - Global Startup: Acer Empowering Technology.lnk = ?
              O4 - Global Startup: Acer WLAN 11g USB Dongle.lnk = C:\Program Files\Acer WLAN 11g USB Dongle\ZDWlan.exe
              O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
              O4 - Global Startup: Antivirus Firewall.lnk = C:\Program Files\AntivirusFirewall\backweb\6588780\Program\fspex.exe
              O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
              O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
              O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
              O8 - Extra context menu item: &Bloquer cette fenêtre publicitaire - C:\Program Files\AntivirusFirewall\Anti-Spyware\blockpopups.htm
              O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
              O8 - Extra context menu item: ajouter cette page à vos favoris Orange - C:\DOCUME~1\PACKBE~1\LOCALS~1\Temp\cceAE9.html
              O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
              O8 - Extra context menu item: traduire la page - C:\DOCUME~1\PACKBE~1\LOCALS~1\Temp\cceAE7.html
              O8 - Extra context menu item: traduire le texte sélectionné - C:\DOCUME~1\PACKBE~1\LOCALS~1\Temp\cceAE8.html
              O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
              O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
              O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
              O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
              O9 - Extra button: Protection Internet Explorer - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\AntivirusFirewall\Anti-Spyware\ieshield.dll
              O9 - Extra 'Tools' menuitem: Protection Internet Explorer... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\AntivirusFirewall\Anti-Spyware\ieshield.dll
              O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
              O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
              O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
              O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
              O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - https://www.systemrequirementslab.com/cyri
              O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w2/resources/MSNPUpld.cab
              O17 - HKLM\System\CCS\Services\Tcpip\..\{31774260-ADD8-4FA8-AB56-5A2EDEE86276}: NameServer = 80.10.246.1 81.253.149.2
              O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
              O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
              O20 - AppInit_DLLs: gzgscp.dll
              O23 - Service: Memory Check Service (AcerMemUsageCheckService) - Acer Inc. - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
              O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
              O23 - Service: BitDefender Arrakis Server (Arrakis3) - BitDefender S.R.L. https://www.bitdefender.fr/ - C:\Program Files\Fichiers communs\BitDefender\BitDefender Arrakis Server\bin\Arrakis3.exe
              O23 - Service: Antivirus Firewall (BackWeb Plug-in - 6588780) - Securitoo Portal - C:\PROGRA~1\ANTIVI~1\backweb\6588780\Program\SERVIC~1.EXE
              O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
              O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
              O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
              O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
              O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\AntivirusFirewall\Anti-Virus\fsgk32st.exe
              O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\AntivirusFirewall\backweb\6588780\program\fsbwsys.exe
              O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\AntivirusFirewall\FWES\Program\fsdfwd.exe
              O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\AntivirusFirewall\Common\FSMA32.EXE
              O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
              O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
              O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
              O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
              O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
              O23 - Service: BitDefender Desktop Update Service (LIVESRV) - BitDefender SRL - C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
              O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
              O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
              O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLnch.exe
              O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
              O23 - Service: Control Parental (OPTENET_FILTER) - Contrôle Parental - C:\Program Files\Controle Parental\bin\optproxy.exe
              O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
              O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S. R. L. - C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe
              O23 - Service: VundoFix Service (VundoFixSvc) - Atribune.org - C:\WINDOWS\SYSTEM32\VundoFixSVC.exe
              0
              1. alors la méthode à toptibal :)
                0
                1. bein c'est ce j'ai fait, et je vous ai envoyé le rapport Hijackthis !
                  0
                  1. Contributeur sécurité
                    Télécharges SDFix sur ton bureau :
                    http://downloads.andymanchesta.com/RemovalTools/SDFix.exe.

                    --->Double-cliques sur SDFix.exe et choisis "Install" .

                    ( tuto ici : https://www.malekal.com/slenfbot-still-an-other-irc-bot/ )

                    Puis une fois l'installe faite, redémarre en mode sans échec .

                    Comment aller en Mode sans échec :
                    1) Redémarre ton ordi
                    2) Tapote la touche F8 immédiatement, (F5 sur certains PC) juste après le "Bip"
                    3) Tu verras un écran avec options de démarrage apparaître
                    4) Choisis la première option : Sans Échec, et valide avec "Entrée"
                    5) Choisis ton compte habituel, et non Administrateur (si besoin ... )

                    Ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double clique sur RunThis.bat pour lancer le script.
                    --->Tapes Y pour lancer le script ...
                    Le Fix supprime les services du virus et nettoie le registre, de ce fait un redémarrage est nécessaire , donc :
                    presse une touche pour redémarrer quand il te le sera demandé .

                    Le PC va mettre du temps avant de démarrer ( c'est normal), après le chargement du Bureau presse une touche lorsque "Finished" s'affiche .

                    Le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier C:\SDFix sous le nom "Report.txt".
                    Poste ce dernier dans ta prochaine réponse
                    0
                    1. voilà le rapport SDfix " report.txt"

                      [b]SDFix: Version 1.229 [/b]
                      Run by Pack Bell on 29/09/2008 at 17:50

                      Microsoft Windows XP [version 5.1.2600]
                      Running From: C:\SDFix

                      [b]Checking Services [/b]:

                      Restoring Default Security Values
                      Restoring Default Hosts File
                      0
                      1. aidez moi :s
                        mon ordi rame, j'ai des pubs ...
                        0
                        1. Contributeur sécurité
                          Imprime ces instructions car il faudra fermer toutes les fenêtres et applications lors de l'installation et de l'analyse.

                          Télécharge Malwarebytes' Anti-Malware (MBAM) et enregistre-le sur ton Bureau à partir de ce lien :

                          http://www.commentcamarche.net/telecharger/telechargement 34055379 malwarebyte s anti malware

                          A la fin du téléchargement, ferme toutes les fenêtres et programmes, y compris celui-ci.

                          Double-clique sur l'icône Download_mbam-setup.exe sur ton bureau pour démarrer le programme d'installation.

                          Pendant l'installation, suis les indications (en particulier le choix de la langue et l'autorisation d'accession à Internet). N'apporte aucune modification aux réglages par défaut et, en fin d'installation, vérifie que les options Update Malwarebytes' Anti-Malware et Launch Malwarebytes' Anti-Malware sont cochées.

                          Redémarre ton ordinateur en mode sans échec

                          Relance MBAM grâce au raccourci présent sur ton bureau.

                          Dans l'onglet analyse, vérifie que "Exécuter un examen complet" est coché et clique sur le bouton Rechercher pour démarrer l'analyse.

                          MBAM analyse ton ordinateur. L'analyse peut prendre un certain temps. Il suffit de vérifier de temps en temps son avancement.

                          A la fin de l'analyse, un message s'affiche indiquant la fin de l'analyse. Clique sur OK pour poursuivre.

                          Si des malwares ont été détectés, leur liste s'affiche.
                          En cliquant sur Suppression (?) , MBAM va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.

                          MBAM va ouvrir le Bloc-notes et y copier le rapport d'analyse. Ferme le Bloc-notes. (Le rapport peut être retrouvé sous l'onglet Rapports/logs)

                          Ferme MBAM en cliquant sur Quitter.

                          Poste le rapport dans ta réponse

                          0
                          1. ok, je vais le faire, mais il n'y a aucun risque pour mon PC ?
                            0
                            1. Contributeur sécurité
                              Non, bien au contraite, ça ne peut lui faire que du bien.
                              0
                          2. Voici le log de MBAM :

                            Malwarebytes' Anti-Malware 1.28
                            Version de la base de données: 1225
                            Windows 5.1.2600 Service Pack 2

                            03/10/2008 18:20:48
                            mbam-log-2008-10-03 (18-20-48).txt

                            Type de recherche: Examen complet (C:\|D:\|)
                            Eléments examinés: 118641
                            Temps écoulé: 34 minute(s), 16 second(s)

                            Processus mémoire infecté(s): 0
                            Module(s) mémoire infecté(s): 2
                            Clé(s) du Registre infectée(s): 13
                            Valeur(s) du Registre infectée(s): 1
                            Elément(s) de données du Registre infecté(s): 3
                            Dossier(s) infecté(s): 0
                            Fichier(s) infecté(s): 69

                            Processus mémoire infecté(s):
                            (Aucun élément nuisible détecté)

                            Module(s) mémoire infecté(s):
                            C:\WINDOWS\system32\efcDUnOg.dll (Trojan.Vundo.H) -> Delete on reboot.
                            C:\WINDOWS\system32\igwntt.dll (Trojan.Vundo) -> Delete on reboot.

                            Clé(s) du Registre infectée(s):
                            HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2c376d91-fe31-4d43-b615-fe72c3ee89b3} (Trojan.Vundo.H) -> Quarantined and deleted successfully.
                            HKEY_CLASSES_ROOT\CLSID\{2c376d91-fe31-4d43-b615-fe72c3ee89b3} (Trojan.Vundo.H) -> Quarantined and deleted successfully.
                            HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c3cd8aaf-e7cb-4409-bf69-c09f39ecbedc} (Trojan.Vundo.H) -> Delete on reboot.
                            HKEY_CLASSES_ROOT\CLSID\{c3cd8aaf-e7cb-4409-bf69-c09f39ecbedc} (Trojan.Vundo.H) -> Delete on reboot.
                            HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Juan (Malware.Trace) -> Quarantined and deleted successfully.
                            HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> Quarantined and deleted successfully.
                            HKEY_CURRENT_USER\SOFTWARE\Microsoft\instbndlkeyldr (Trojan.Vundo) -> Quarantined and deleted successfully.
                            HKEY_CURRENT_USER\SOFTWARE\Microsoft\instkey (Trojan.Vundo) -> Quarantined and deleted successfully.
                            HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\dslcnnct (Trojan.Vundo) -> Quarantined and deleted successfully.
                            HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\IProxyProvider (Trojan.Vundo) -> Quarantined and deleted successfully.
                            HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Track System (Trojan.Vundo) -> Quarantined and deleted successfully.
                            HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> Quarantined and deleted successfully.
                            HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> Quarantined and deleted successfully.

                            Valeur(s) du Registre infectée(s):
                            HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\bm035c638e (Trojan.Agent) -> Quarantined and deleted successfully.

                            Elément(s) de données du Registre infecté(s):
                            HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\efcdunog -> Quarantined and deleted successfully.
                            HKEY_CLASSES_ROOT\scrfile\shell\open\command\ (Broken.OpenCommand) -> Bad: ("%1" %*) Good: ("%1" /S) -> Quarantined and deleted successfully.
                            HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\efcdunog -> Delete on reboot.

                            Dossier(s) infecté(s):
                            (Aucun élément nuisible détecté)

                            Fichier(s) infecté(s):
                            C:\WINDOWS\system32\igwntt.dll (Trojan.Vundo.H) -> Delete on reboot.
                            C:\WINDOWS\system32\efcDUnOg.dll (Trojan.Vundo.H) -> Delete on reboot.
                            C:\WINDOWS\system32\gOnUDcfe.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\gOnUDcfe.ini2 (Trojan.Vundo.H) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\lwelmwyv.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\vywmlewl.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.
                            C:\Documents and Settings\Pack Bell\Local Settings\Temporary Internet Files\Content.IE5\0HLHJJ27\nd82m0[1] (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\Documents and Settings\Pack Bell\Local Settings\Temporary Internet Files\Content.IE5\AG24BLAM\upd105320[1] (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP300\A0301747.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP302\A0303807.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP306\A0307355.0LL (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP307\A0310410.0LL (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP307\A0310411.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP307\A0311410.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP309\A0317479.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP310\A0320538.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP311\A0322538.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP312\A0327633.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP316\A0331881.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP316\A0331882.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP316\A0331883.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP317\A0336842.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP318\A0348946.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP318\A0348951.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP319\A0356778.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP319\A0356780.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP319\A0357149.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP319\A0357154.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP319\A0357155.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP320\A0370833.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP320\A0370835.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP320\A0371205.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP320\A0371210.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP320\A0371211.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP321\A0374109.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP321\A0374111.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP321\A0374479.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP321\A0374484.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP321\A0374485.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP321\A0381238.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\System Volume Information\_restore{B89CEA26-ECB5-40D8-BB54-F267A162670D}\RP321\A0382112.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\aqaolg.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\btubjjpv.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\csepoy.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\cvkjvqqv.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\gzgscp.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\jdilml.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\kawqwhsb.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\kjyvrmoy.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\lvhclt.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\MADWTCKP.0LL (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\prusdd.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\raomphdo.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\sofkkwvt.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\tpvfvw.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\tqggeryw.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\uwoevxfn.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\vpsxfuis.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\vweaojtt.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\wxximw.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\xesmpl.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\mcrh.tmp (Malware.Trace) -> Quarantined and deleted successfully.
                            C:\WINDOWS\cookies.ini (Malware.Trace) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\winpfz33.sys (Malware.Trace) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\cdewntkg.dll (Trojan.Agent) -> Quarantined and deleted successfully.
                            C:\WINDOWS\pskt.ini (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\system32\wvUOHAtQ.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\BM035c638e.xml (Trojan.Vundo) -> Quarantined and deleted successfully.
                            C:\WINDOWS\BM035c638e.txt (Trojan.Vundo) -> Quarantined and deleted successfully.
                            0
                            1. Contributeur sécurité
                              Refais un Hijackthis stp
                              0
                              1. Voilà le log hijackthis :

                                Logfile of Trend Micro HijackThis v2.0.2
                                Scan saved at 18:37:10, on 03/10/2008
                                Platform: Windows XP SP2 (WinNT 5.01.2600)
                                MSIE: Internet Explorer v7.00 (7.00.6000.16705)
                                Boot mode: Normal

                                Running processes:
                                C:\WINDOWS\System32\smss.exe
                                C:\WINDOWS\system32\winlogon.exe
                                C:\WINDOWS\system32\services.exe
                                C:\WINDOWS\system32\lsass.exe
                                C:\WINDOWS\system32\svchost.exe
                                C:\WINDOWS\System32\svchost.exe
                                C:\WINDOWS\system32\spoolsv.exe
                                C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
                                C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
                                C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
                                C:\PROGRA~1\ANTIVI~1\backweb\6588780\Program\SERVIC~1.EXE
                                C:\Program Files\Bonjour\mDNSResponder.exe
                                C:\WINDOWS\eHome\ehRecvr.exe
                                C:\WINDOWS\eHome\ehSched.exe
                                C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
                                C:\Program Files\AntivirusFirewall\Anti-Virus\fsgk32st.exe
                                C:\Program Files\AntivirusFirewall\Anti-Virus\FSGK32.EXE
                                C:\Program Files\AntivirusFirewall\backweb\6588780\program\fsbwsys.exe
                                C:\Program Files\AntivirusFirewall\Common\FSMA32.EXE
                                C:\WINDOWS\System32\FTRTSVC.exe
                                C:\Program Files\AntivirusFirewall\Common\FSMB32.EXE
                                C:\Program Files\AntivirusFirewall\Anti-Virus\fssm32.exe
                                C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                                C:\Program Files\AntivirusFirewall\Common\FCH32.EXE
                                c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
                                C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
                                C:\Program Files\AntivirusFirewall\Anti-Virus\fsqh.exe
                                C:\Program Files\AntivirusFirewall\Common\FAMEH32.EXE
                                C:\WINDOWS\system32\nvsvc32.exe
                                C:\Program Files\Controle Parental\bin\optproxy.exe
                                C:\Program Files\AntivirusFirewall\Anti-Virus\fsrw.exe
                                C:\WINDOWS\system32\PnkBstrA.exe
                                C:\WINDOWS\system32\svchost.exe
                                C:\WINDOWS\Explorer.EXE
                                C:\WINDOWS\ehome\ehtray.exe
                                C:\WINDOWS\system32\RUNDLL32.EXE
                                C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
                                C:\WINDOWS\system32\SysMonitor.exe
                                C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
                                C:\Acer\Empowering Technology\eRecovery\eRAgent.exe
                                C:\WINDOWS\system32\rundll32.exe
                                C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
                                C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe
                                C:\Program Files\Logitech\QuickCam\Quickcam.exe
                                C:\Program Files\AntivirusFirewall\Common\FSM32.EXE
                                C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
                                C:\Program Files\AntivirusFirewall\FSGUI\ispnews.exe
                                C:\WINDOWS\system32\ocntttdm.exe
                                C:\Program Files\iTunes\iTunesHelper.exe
                                C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
                                C:\Program Files\Internet Explorer\IEXPLORE.EXE
                                C:\WINDOWS\system32\ctfmon.exe
                                C:\Program Files\Windows Live\Messenger\msnmsgr.exe
                                C:\Acer\Empowering Technology\Acer.Empowering.Framework.Launcher.exe
                                C:\Program Files\AntivirusFirewall\FWES\Program\fsdfwd.exe
                                C:\Program Files\Acer WLAN 11g USB Dongle\ZDWlan.exe
                                C:\Program Files\AntivirusFirewall\backweb\6588780\Program\fspex.exe
                                C:\Program Files\Google\Google Updater\GoogleUpdater.exe
                                C:\WINDOWS\system32\wscntfy.exe
                                C:\WINDOWS\system32\dllhost.exe
                                C:\WINDOWS\eHome\ehmsas.exe
                                C:\Program Files\Wanadoo\GestionnaireInternet.exe
                                C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
                                C:\Program Files\iPod\bin\iPodService.exe
                                C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe
                                C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
                                C:\Program Files\Wanadoo\ComComp.exe
                                C:\PROGRA~1\Wanadoo\Toaster.exe
                                C:\PROGRA~1\Wanadoo\Inactivity.exe
                                C:\PROGRA~1\Wanadoo\PollingModule.exe
                                C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
                                C:\Program Files\Wanadoo\Watch.exe
                                C:\Program Files\AntivirusFirewall\Anti-Virus\fsav32.exe
                                C:\PROGRA~1\ANTIVI~1\ANTI-S~1\fsaw.exe
                                C:\Program Files\AntivirusFirewall\FSGUI\fsguidll.exe
                                C:\Program Files\Java\jre1.6.0_03\bin\jucheck.exe
                                C:\Program Files\Internet Explorer\iexplore.exe
                                C:\Program Files\Internet Explorer\iexplore.exe
                                C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

                                R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr
                                R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                                R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                                R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.orange.fr
                                R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
                                R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                                R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                                R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
                                R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://fr.yahoo.com/
                                R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                                R3 - URLSearchHook: (no name) - {AEEC3B59-CA98-4EBA-A140-57B94E283583} - C:\PROGRA~1\ORANGE~1\TOOLBA~2.DLL
                                R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
                                R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
                                O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
                                O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                                O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
                                O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
                                O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\WINDOWS\system32\eDStoolbar.dll
                                O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
                                O3 - Toolbar: barre d'outils Orange - {D3028143-6145-4318-99D3-3EDCE54A95A9} - C:\Program Files\Orange Toolbar FR\ToolbarContainer255.dll
                                O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
                                O4 - HKLM\..\Run: [LaunchApp] Alaunch
                                O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
                                O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
                                O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
                                O4 - HKLM\..\Run: [ntiMUI] c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe
                                O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
                                O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
                                O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
                                O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
                                O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
                                O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
                                O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
                                O4 - HKLM\..\Run: [Acer Empowering Technology Monitor] C:\WINDOWS\system32\SysMonitor.exe
                                O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe 0
                                O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\eRAgent.exe
                                O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
                                O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
                                O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
                                O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
                                O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe"
                                O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
                                O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\AntivirusFirewall\Common\FSM32.EXE" /splash
                                O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\AntivirusFirewall\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
                                O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\AntivirusFirewall\FSGUI\FSSW.EXE" /reboot
                                O4 - HKLM\..\Run: [News Service] "C:\Program Files\AntivirusFirewall\FSGUI\ispnews.exe"
                                O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
                                O4 - HKLM\..\Run: [EvqmopfVpbTdhce] C:\WINDOWS\system32\ocntttdm.exe
                                O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
                                O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
                                O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
                                O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
                                O4 - HKCU\..\Run: [WOOKIT] C:\Program Files\Wanadoo\GestMaj.exe GestionnaireInternet.exe
                                O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
                                O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
                                O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
                                O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
                                O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
                                O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
                                O4 - Startup: Deewoo.lnk = C:\WINDOWS\system32\ocntttdl.exe
                                O4 - Startup: DW_Start.lnk = C:\WINDOWS\system32\rpwnw64j.exe
                                O4 - Global Startup: Acer Empowering Technology.lnk = ?
                                O4 - Global Startup: Acer WLAN 11g USB Dongle.lnk = C:\Program Files\Acer WLAN 11g USB Dongle\ZDWlan.exe
                                O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
                                O4 - Global Startup: Antivirus Firewall.lnk = C:\Program Files\AntivirusFirewall\backweb\6588780\Program\fspex.exe
                                O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
                                O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
                                O8 - Extra context menu item: &Bloquer cette fenêtre publicitaire - C:\Program Files\AntivirusFirewall\Anti-Spyware\blockpopups.htm
                                O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
                                O8 - Extra context menu item: ajouter cette page à vos favoris Orange - C:\DOCUME~1\PACKBE~1\LOCALS~1\Temp\cce177.html
                                O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
                                O8 - Extra context menu item: traduire la page - C:\DOCUME~1\PACKBE~1\LOCALS~1\Temp\cce175.html
                                O8 - Extra context menu item: traduire le texte sélectionné - C:\DOCUME~1\PACKBE~1\LOCALS~1\Temp\cce176.html
                                O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                                O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                                O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
                                O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
                                O9 - Extra button: Protection Internet Explorer - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\AntivirusFirewall\Anti-Spyware\ieshield.dll
                                O9 - Extra 'Tools' menuitem: Protection Internet Explorer... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\AntivirusFirewall\Anti-Spyware\ieshield.dll
                                O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
                                O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                                O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                                O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
                                O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - https://www.systemrequirementslab.com/cyri
                                O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w2/resources/MSNPUpld.cab
                                O17 - HKLM\System\CCS\Services\Tcpip\..\{31774260-ADD8-4FA8-AB56-5A2EDEE86276}: NameServer = 81.253.149.1 80.10.246.3
                                O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
                                O20 - AppInit_DLLs: igwntt.dll
                                O23 - Service: Memory Check Service (AcerMemUsageCheckService) - Acer Inc. - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
                                O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
                                O23 - Service: BitDefender Arrakis Server (Arrakis3) - Unknown owner - C:\Program Files\Fichiers communs\BitDefender\BitDefender Arrakis Server\bin\Arrakis3.exe (file missing)
                                O23 - Service: Antivirus Firewall (BackWeb Plug-in - 6588780) - Securitoo Portal - C:\PROGRA~1\ANTIVI~1\backweb\6588780\Program\SERVIC~1.EXE
                                O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
                                O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
                                O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
                                O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
                                O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\AntivirusFirewall\Anti-Virus\fsgk32st.exe
                                O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\AntivirusFirewall\backweb\6588780\program\fsbwsys.exe
                                O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\AntivirusFirewall\FWES\Program\fsdfwd.exe
                                O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\AntivirusFirewall\Common\FSMA32.EXE
                                O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
                                O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                                O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
                                O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
                                O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
                                O23 - Service: BitDefender Desktop Update Service (LIVESRV) - Unknown owner - C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe (file missing)
                                O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
                                O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
                                O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLnch.exe
                                O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
                                O23 - Service: Control Parental (OPTENET_FILTER) - Contrôle Parental - C:\Program Files\Controle Parental\bin\optproxy.exe
                                O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
                                O23 - Service: BitDefender Virus Shield (VSSERV) - Unknown owner - C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe (file missing)
                                O23 - Service: VundoFix Service (VundoFixSvc) - Atribune.org - C:\WINDOWS\SYSTEM32\VundoFixSVC.exe
                                0
                                1. Contributeur sécurité
                                  Encore des problèmes ou pas ?
                                  Comment se comporte ton PC ?
                                  0
                                  1. pour l'instant bien.

                                    Que dit le log ?
                                    0
                                    1. Contributeur sécurité
                                      Il est propre, un peu d'optimisation à faire, je te prépare ça.
                                      -1
                                      • 1
                                      • 2