Actualité informatique
Test comparatif matériel informatique
Jeux vidéo
Astuces informatique
Vidéo
Télécharger
Services en ligne
Forum informatique
01Business

|-  SECURITE


|||-  

virtumonde ???? est ce un virus [RESOLU]

 

11 utilisateurs inconnus
Ajouter une réponse
 

 
Page photos
 
     
Vider la liste des messages à citer
 
 Page :
1
Auteur
 Sujet :

virtumonde ???? est ce un virus [RESOLU]

Prévenir les modérateurs en cas d'abus 
micky44
micky44
Sur la bonne voie (de 100 à 499 messages postés)
  1. Posté le 18/08/2008 à 00:15:04  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
bonsoir,

 j'ai lancé spybot, et pendant le scan, je regardais tous les dossiers qui scannait surtout un "virtumonde.dll" ou "virtumonde.sci" mais il les a pas mit comme probleme ou mouchards a resoudre.

 et quand j'ai regardé sur internet ce que c'était, j'ai vu que c'était un virus, est ce exacte ??? si oui comment l'enlever svp ????

 merci d'avance.

Profil : Equipe sécurité
dedetraque
Célèbre sur tout le forum (de 30 000 à 99 999 messages postés)
  1. Posté le 18/08/2008 à 00:23:02  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Salut micky44


 On va vérifier cela :

 Télécharge Hijackthis V 2.02 sur le bureau :

 http://www.trendsecure.com/por [...] nstall.exe


 - Double clique sur HJTInstall.exe sur le bureau

 - Clique sur Install ensuite sur I Accept

 - ferme toutes les fenêtres, HJT doit être exécuté seul (tout autre programme fermé).

 - lancer HJT et clic sur Do a system scan and save a logfile  

 Quand le rapport apparaît dans le bloc note, allez dans Edition, puis Sélectionner Tout, le texte est alors sélectionné, retourne dans Edition toujours en laissant le texte sélectionné, et cliquez sur copier.


 Dans ta prochaine réponse, faire un clic droit et coller.


 Aide : http://forum.telecharger.01net [...] ges-1.html


 @++

(Publicité)
tasha_jas
Présent de temps en temps (De 50 à 99 messages postés)
  1. Posté le 18/08/2008 à 01:17:58  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Bonjour, mon probleme a rapport a celui de mickey, moi aussi j'ai telecharger spybot aujourd'hui
 et un moment sonne a mon redemarrage, il a scanner des fichier durant vraiment tres tres longtemps, avant que mon windows soit entrer et c'etait tout des nom  de spyware ou virus... se peut-il qu'il les ai introduit ds mnos ordi??? merci beaucoup


---------------
[font=Geneva]   ~Be Proud Of What You Are~ [/font]
micky44
Sur la bonne voie (de 100 à 499 messages postés)
  1. Posté le 18/08/2008 à 09:08:51  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
salut dédétraqué, merci de t'occuper de moi.

 donc voila le rapport.

 Logfile of Trend Micro HijackThis v2.0.2
 Scan saved at 11:06, on 2008-08-18
 Platform: Windows XP SP3 (WinNT 5.01.2600)
 MSIE: Internet Explorer v7.00 (7.00.6000.16705)
 Boot mode: Normal

 Running processes:
 H:\WINDOWS\System32\smss.exe
 H:\WINDOWS\system32\winlogon.e​xe
 H:\WINDOWS\system32\services.e​xe
 H:\WINDOWS\system32\lsass.exe
 H:\WINDOWS\system32\svchost.ex​e
 H:\WINDOWS\System32\svchost.ex​e
 H:\WINDOWS\system32\spoolsv.ex​e
 H:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcS​rv.exe
 H:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
 H:\WINDOWS\Explorer.EXE
 H:\WINDOWS\RTHDCPL.EXE
 H:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
 H:\WINDOWS\system32\RUNDLL32.E​XE
 H:\Program Files\Java\jre1.6.0_07\bin\jus​ched.exe
 H:\Program Files\Wanadoo\taskbaricon.exe
 H:\PROGRA~1\Sony\SONICS~1\SsAA​D.exe
 H:\Program Files\Fichiers communs\Logitech\G-series Software\LGDCore.exe
 H:\Program Files\Google\GoogleToolbarNoti​fier\GoogleToolbarNotifier.exe
 H:\WINDOWS\system32\ctfmon.exe
 H:\Program Files\Logitech\Desktop Messenger\8876480\Program\Logi​techDesktopMessenger.exe
 H:\Program Files\Lavalys\EVEREST Ultimate Edition\everest.exe
 H:\Program Files\Logitech\SetPoint\SetPoi​nt.exe
 H:\Program Files\AMD\AMD Power Monitor\AMD_PwrMon.exe
 H:\Program Files\Fichiers communs\Logishrd\KHAL2\KHALMNP​R.EXE
 H:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
 H:\WINDOWS\System32\FTRTSVC.ex​e
 H:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVCo​mSer.exe
 H:\WINDOWS\system32\nvsvc32.ex​e
 H:\WINDOWS\system32\PnkBstrA.e​xe
 H:\WINDOWS\system32\svchost.ex​e
 H:\WINDOWS\system32\SearchInde​xer.exe
 H:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVCo​mSer.exe
 H:\Program Files\MSN Messenger\usnsvc.exe
 H:\Program Files\Trend Micro\HijackThis\HijackThis.ex​e
 H:\WINDOWS\system32\SearchProt​ocolHost.exe

 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Default_Search_U​RL = http://go.microsoft.com/fwlink/?LinkId=54896
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
 R0 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
 R1 - HKCU\Software\Microsoft\Intern​et Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
 R1 - HKCU\Software\Microsoft\Intern​et Explorer\Main,Window Title = Orange
 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Toolbar,LinksFolderNa​me = Liens
 R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A8​9362C85} - H:\PROGRA~1\Wanadoo\SEARCH~1.D​LL
 R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-00902​71D4F88} - H:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695E​CA05670} - H:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7​D6BE0B3} - H:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\​AcroIEHelper.dll
 O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF​1D92D43} - H:\Program Files\Java\jre1.6.0_07\bin\ssv​.dll
 O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5​E23E045} - (no file)
 O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-51647​60863C6} - H:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
 O2 - BHO: BHO Barre de Confiance - {988B07F5-7392-455A-8A1F-64935​CB8B6ED} - H:\Program Files\BarreConfCMCIC\TAPBar.dl​l
 O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF105​77473F7} - h:\program files\google\googletoolbar2.dl​l
 O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B​5AD205D} - H:\Program Files\Google\GoogleToolbarNoti​fier\2.0.301.7164\swg.dll
 O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B​4FF55D0} - H:\Program Files\Windows Live Toolbar\msntb.dll
 O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B​4FF55D0} - H:\Program Files\Windows Live Toolbar\msntb.dll
 O3 - Toolbar: Barre de confiance - {55BDF3B0-C0A8-481A-B8A6-01CD2​BE0F3FD} - H:\Program Files\BarreConfCMCIC\TAPBar.dl​l
 O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-00902​71D4F88} - H:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-00902​7A5CD4F} - h:\program files\google\googletoolbar2.dl​l
 O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
 O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE H:\WINDOWS\system32\NvCpl.dll,​NvStartup
 O4 - HKLM\..\Run: [avgnt] "H:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
 O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE H:\WINDOWS\system32\NvMcTray.d​ll,NvTaskbarInit
 O4 - HKLM\..\Run: [SunJavaUpdateSched] "H:\Program Files\Java\jre1.6.0_07\bin\jus​ched.exe"
 O4 - HKLM\..\Run: [WOOWATCH] H:\PROGRA~1\Wanadoo\Watch.exe
 O4 - HKLM\..\Run: [WOOTASKBARICON] H:\Program Files\Wanadoo\taskbaricon.exe
 O4 - HKLM\..\Run: [SsAAD.exe] H:\PROGRA~1\Sony\SONICS~1\SsAA​D.exe
 O4 - HKLM\..\Run: [Launch LGDCore] "H:\Program Files\Fichiers communs\Logitech\G-series Software\LGDCore.exe" /SHOWHIDE
 O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
 O4 - HKCU\..\Run: [swg] H:\Program Files\Google\GoogleToolbarNoti​fier\GoogleToolbarNotifier.exe
 O4 - HKCU\..\Run: [ctfmon.exe] H:\WINDOWS\system32\ctfmon.exe
 O4 - HKCU\..\Run: [LDM] H:\Program Files\Logitech\Desktop Messenger\8876480\Program\Logi​techDesktopMessenger.exe
 O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
 O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
 O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
 O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
 O4 - Startup: AMD Power Monitor.lnk = H:\Program Files\AMD\AMD Power Monitor\AMD_PwrMon.exe
 O4 - Global Startup: EVEREST Ultimate Edition.lnk = H:\Program Files\Lavalys\EVEREST Ultimate Edition\everest.exe
 O4 - Global Startup: Logitech SetPoint.lnk = H:\Program Files\Logitech\SetPoint\SetPoi​nt.exe
 O8 - Extra context menu item: &Windows Live Search - res://H:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
 O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
 O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://H:\Program Files\Windows Live Toolbar\Components\fr-fr\msnta​bres.dll.mui/229?068cc415a2024​a309088b274c0950a14
 O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://H:\Program Files\Windows Live Toolbar\Components\fr-fr\msnta​bres.dll.mui/230?068cc415a2024​a309088b274c0950a14
 O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C0​4F795683} - H:\Program Files\Messenger\msmsgs.exe
 O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C0​4F795683} - H:\Program Files\Messenger\msmsgs.exe
 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401​C608501} - H:\Program Files\Java\jre1.6.0_07\bin\ssv​.dll
 O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401​C608501} - H:\Program Files\Java\jre1.6.0_07\bin\ssv​.dll
 O9 - Extra button: Stop Pub - {10954C80-4F0F-11d3-B17C-00C0D​FE39736} - H:\Documents and Settings\Propriétaire\Mes documents\mickael.quintin\peti​t logiciel\StopPub.exe (file missing)
 O9 - Extra 'Tools' menuitem: Stop Pub - {10954C80-4F0F-11d3-B17C-00C0D​FE39736} - H:\Documents and Settings\Propriétaire\Mes documents\mickael.quintin\peti​t logiciel\StopPub.exe (file missing)
 O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba3​8496583} - H:\WINDOWS\Network Diagnostic\xpnetdiag.exe
 O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba3​8496583} - H:\WINDOWS\Network Diagnostic\xpnetdiag.exe
 O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284​D0FE16E} - http://www.orange.fr (file missing) (HKCU)
 O15 - Trusted Zone: *.canalplay.com
 O15 - Trusted Zone: *.canalplusactive.com
 O15 - Trusted Zone: *.canalplay.com (HKLM)
 O15 - Trusted Zone: *.canalplusactive.com (HKLM)
 O16 - DPF: {54B52E52-8000-4413-BD67-FC7FE​24B59F2} (EARTPatchX Class) - http://simcity.ea.com/update/EARTPX.cab
 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA​91D2FC3} (MUWebControl Class) - http://www.update.microsoft.co [...] 0172759328
 O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E​0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/h [...] _0_3_0.cab
 O16 - DPF: {BA162249-F2C5-4851-8ADC-FC58C​B424243} (Image Uploader Control) - http://copainsdavant.linternau [...] oader5.cab
 O16 - DPF: {C36661D7-3590-45B1-80B5-52083​9E94DAD} (MaxisSimCity4PatcherX Control) - http://simcity.ea.com/update/M [...] tcherX.cab
 O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-44455​3540000} (Shockwave Flash Object) - http://fpdownload2.macromedia. [...] wflash.cab
 O16 - DPF: {E8F628B5-259A-4734-97EE-BA914​D7BE941} - http://driveragent.com/files/driveragent.cab
 O18 - Protocol: bw+0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw+0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw-0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw-0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw00 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw00s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw10 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw10s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw20 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw20s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw30 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw30s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw40 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw40s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw50 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw50s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw60 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw60s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw70 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw70s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw80 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw80s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw90 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw90s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwa0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwa0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwb0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwb0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwc0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwc0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwd0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwd0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwe0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwe0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwf0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwf0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9​B80B32B} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPl​ugProtocol-8876480.dll
 O18 - Protocol: bwg0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwg0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwh0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwh0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwi0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwi0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwj0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwj0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwk0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwk0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwl0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwl0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwm0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwm0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwn0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwn0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwo0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwo0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwp0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwp0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwq0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwq0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwr0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwr0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bws0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bws0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwt0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwt0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwu0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwu0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwv0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwv0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bww0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bww0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwx0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwx0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwy0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwy0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwz0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwz0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: offline-8876480 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - H:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
 O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - H:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
 O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - H:\WINDOWS\System32\FTRTSVC.ex​e
 O23 - Service: Google Updater Service (gusvc) - Google - H:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.e​xe
 O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - H:\Program Files\Fichiers communs\Logishrd\Bluetooth\LBT​Serv.exe
 O23 - Service: LVCOMSer - Logitech Inc. - H:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVCo​mSer.exe
 O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - H:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcS​rv.exe
 O23 - Service: LVSrvLauncher - Logitech Inc. - H:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLn​ch.exe
 O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - H:\Program Files\ma-config.com\maconfserv​ice.exe
 O23 - Service: MSCSPTISRV - Sony Corporation - H:\Program Files\Fichiers communs\Sony Shared\AVLib\MSCSPTISRV.exe
 O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - H:\WINDOWS\system32\nvsvc32.ex​e
 O23 - Service: PACSPTISVR - Sony Corporation - H:\Program Files\Fichiers communs\Sony Shared\AVLib\PACSPTISVR.exe
 O23 - Service: PnkBstrA - Unknown owner - H:\WINDOWS\system32\PnkBstrA.e​xe
 O23 - Service: Service CANALPLAY - Canal+ Active - H:\Program Files\Lecteur CANALPLAY\CanalPlayService.exe
 O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - H:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
 O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - H:\Program Files\Fichiers communs\Sony Shared\AVLib\SSScsiSV.exe
 O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - H:\WINDOWS\System32\TuneUpDefr​agService.exe

 --
 End of file - 23415 bytes

micky44
Sur la bonne voie (de 100 à 499 messages postés)
  1. Posté le 18/08/2008 à 09:09:59  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
est ce que je peux dinstaller le logiciel que tu ma demandé de mettre ????

(Publicité)
Profil : Equipe sécurité
dedetraque
Célèbre sur tout le forum (de 30 000 à 99 999 messages postés)
  1. Posté le 18/08/2008 à 10:48:26  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Salut micky44


 Télécharge VirtumundoBegone sur le bureau:

 http://secured2k.home.comcast. [...] BeGone.exe


 Double clique sur VirtumundoBeGone.exe et suis les instructions.

 Une fois terminé, redémarre et poste le rapport VBG.TXT créé sur le bureau dans ta prochaine réponse.

 Note : Ne t'inquiète pas si tu vois un message Écran bleu "Erreur fatale", c'est normal et attendu.


 Poster avec un nouveau rapport HijackThis


 @++

micky44
Sur la bonne voie (de 100 à 499 messages postés)
  1. Posté le 18/08/2008 à 19:22:07  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
salut dédétraqué

 donc voici les 2 rapport que tu ma demandé.


 [08/18/2008, 21:14:40] - VirtumundoBeGone v1.5 ( "H:\Documents and Settings\Propriétaire\Bureau\V​irtumundoBeGone.exe" )
 [08/18/2008, 21:15:15] - Detected System Information:
 [08/18/2008, 21:15:15] -  Windows Version: 5.1.2600, Service Pack 3
 [08/18/2008, 21:15:15] -  Current Username: Propriétaire (Admin)
 [08/18/2008, 21:15:15] -  Windows is in NORMAL mode.
 [08/18/2008, 21:15:15] - Searching for Browser Helper Objects:
 [08/18/2008, 21:15:15] -  BHO 1: {02478D38-C3F9-4efb-9B51-7695E​CA05670} (&Yahoo! Toolbar Helper)
 [08/18/2008, 21:15:15] -  BHO 2: {06849E9F-C8D7-4D59-B87D-784B7​D6BE0B3} (Aide pour le lien d'Adobe PDF Reader)
 [08/18/2008, 21:15:15] -  BHO 3: {761497BB-D6F0-462C-B6EB-D4DAF​1D92D43} (SSVHelper Class)
 [08/18/2008, 21:15:15] -  BHO 4: {7E853D72-626A-48EC-A868-BA8D5​E23E045} ()
 [08/18/2008, 21:15:15] - WARNING: BHO has no default name. Checking for Winlogon reference.
 [08/18/2008, 21:15:15] -  No filename found. Continuing.
 [08/18/2008, 21:15:15] -  BHO 5: {9030D464-4C02-4ABF-8ECC-51647​60863C6} (Windows Live Sign-in Helper)
 [08/18/2008, 21:15:15] -  BHO 6: {988B07F5-7392-455A-8A1F-64935​CB8B6ED} (BHO Barre de Confiance)
 [08/18/2008, 21:15:15] -  BHO 7: {AA58ED58-01DD-4d91-8333-CF105​77473F7} (Google Toolbar Helper)
 [08/18/2008, 21:15:15] -  BHO 8: {AF69DE43-7D58-4638-B6FA-CE66B​5AD205D} (Google Toolbar Notifier BHO)
 [08/18/2008, 21:15:15] -  BHO 9: {BDBD1DAD-C946-4A17-ADC1-64B5B​4FF55D0} (Windows Live Toolbar Helper)
 [08/18/2008, 21:15:15] - Finished Searching Browser Helper Objects
 [08/18/2008, 21:15:15] - Finishing up...
 [08/18/2008, 21:15:15] - Nothing found! Exiting...


 Logfile of Trend Micro HijackThis v2.0.2
 Scan saved at 21:19, on 2008-08-18
 Platform: Windows XP SP3 (WinNT 5.01.2600)
 MSIE: Internet Explorer v7.00 (7.00.6000.16705)
 Boot mode: Normal

 Running processes:
 H:\WINDOWS\System32\smss.exe
 H:\WINDOWS\system32\winlogon.e​xe
 H:\WINDOWS\system32\services.e​xe
 H:\WINDOWS\system32\lsass.exe
 H:\WINDOWS\system32\svchost.ex​e
 H:\WINDOWS\System32\svchost.ex​e
 H:\WINDOWS\system32\spoolsv.ex​e
 H:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcS​rv.exe
 H:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
 H:\WINDOWS\Explorer.EXE
 H:\WINDOWS\RTHDCPL.EXE
 H:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
 H:\WINDOWS\system32\RUNDLL32.E​XE
 H:\Program Files\Java\jre1.6.0_07\bin\jus​ched.exe
 H:\Program Files\Wanadoo\taskbaricon.exe
 H:\PROGRA~1\Sony\SONICS~1\SsAA​D.exe
 H:\Program Files\Fichiers communs\Logitech\G-series Software\LGDCore.exe
 H:\Program Files\Google\GoogleToolbarNoti​fier\GoogleToolbarNotifier.exe
 H:\WINDOWS\system32\ctfmon.exe
 H:\Program Files\Logitech\Desktop Messenger\8876480\Program\Logi​techDesktopMessenger.exe
 H:\Program Files\Lavalys\EVEREST Ultimate Edition\everest.exe
 H:\Program Files\Logitech\SetPoint\SetPoi​nt.exe
 H:\Program Files\AMD\AMD Power Monitor\AMD_PwrMon.exe
 H:\Program Files\Fichiers communs\Logishrd\KHAL2\KHALMNP​R.EXE
 H:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
 H:\WINDOWS\System32\FTRTSVC.ex​e
 H:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVCo​mSer.exe
 H:\WINDOWS\system32\nvsvc32.ex​e
 H:\WINDOWS\system32\PnkBstrA.e​xe
 H:\WINDOWS\system32\svchost.ex​e
 H:\WINDOWS\system32\SearchInde​xer.exe
 H:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVCo​mSer.exe
 H:\WINDOWS\system32\wuauclt.ex​e
 H:\Program Files\MSN Messenger\usnsvc.exe
 H:\WINDOWS\system32\SearchProt​ocolHost.exe
 H:\Program Files\Windows Live Toolbar\msn_sl.exe
 H:\Program Files\Trend Micro\HijackThis\HijackThis.ex​e

 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Default_Search_U​RL = http://go.microsoft.com/fwlink/?LinkId=54896
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
 R0 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
 R1 - HKCU\Software\Microsoft\Intern​et Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
 R1 - HKCU\Software\Microsoft\Intern​et Explorer\Main,Window Title = Orange
 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Toolbar,LinksFolderNa​me = Liens
 R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A8​9362C85} - H:\PROGRA~1\Wanadoo\SEARCH~1.D​LL
 R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-00902​71D4F88} - H:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695E​CA05670} - H:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7​D6BE0B3} - H:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\​AcroIEHelper.dll
 O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF​1D92D43} - H:\Program Files\Java\jre1.6.0_07\bin\ssv​.dll
 O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5​E23E045} - (no file)
 O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-51647​60863C6} - H:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
 O2 - BHO: BHO Barre de Confiance - {988B07F5-7392-455A-8A1F-64935​CB8B6ED} - H:\Program Files\BarreConfCMCIC\TAPBar.dl​l
 O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF105​77473F7} - h:\program files\google\googletoolbar2.dl​l
 O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B​5AD205D} - H:\Program Files\Google\GoogleToolbarNoti​fier\2.0.301.7164\swg.dll
 O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B​4FF55D0} - H:\Program Files\Windows Live Toolbar\msntb.dll
 O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B​4FF55D0} - H:\Program Files\Windows Live Toolbar\msntb.dll
 O3 - Toolbar: Barre de confiance - {55BDF3B0-C0A8-481A-B8A6-01CD2​BE0F3FD} - H:\Program Files\BarreConfCMCIC\TAPBar.dl​l
 O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-00902​71D4F88} - H:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-00902​7A5CD4F} - h:\program files\google\googletoolbar2.dl​l
 O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
 O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE H:\WINDOWS\system32\NvCpl.dll,​NvStartup
 O4 - HKLM\..\Run: [avgnt] "H:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
 O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE H:\WINDOWS\system32\NvMcTray.d​ll,NvTaskbarInit
 O4 - HKLM\..\Run: [SunJavaUpdateSched] "H:\Program Files\Java\jre1.6.0_07\bin\jus​ched.exe"
 O4 - HKLM\..\Run: [WOOWATCH] H:\PROGRA~1\Wanadoo\Watch.exe
 O4 - HKLM\..\Run: [WOOTASKBARICON] H:\Program Files\Wanadoo\taskbaricon.exe
 O4 - HKLM\..\Run: [SsAAD.exe] H:\PROGRA~1\Sony\SONICS~1\SsAA​D.exe
 O4 - HKLM\..\Run: [Launch LGDCore] "H:\Program Files\Fichiers communs\Logitech\G-series Software\LGDCore.exe" /SHOWHIDE
 O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
 O4 - HKCU\..\Run: [swg] H:\Program Files\Google\GoogleToolbarNoti​fier\GoogleToolbarNotifier.exe
 O4 - HKCU\..\Run: [ctfmon.exe] H:\WINDOWS\system32\ctfmon.exe
 O4 - HKCU\..\Run: [LDM] H:\Program Files\Logitech\Desktop Messenger\8876480\Program\Logi​techDesktopMessenger.exe
 O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
 O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
 O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
 O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
 O4 - Startup: AMD Power Monitor.lnk = H:\Program Files\AMD\AMD Power Monitor\AMD_PwrMon.exe
 O4 - Global Startup: EVEREST Ultimate Edition.lnk = H:\Program Files\Lavalys\EVEREST Ultimate Edition\everest.exe
 O4 - Global Startup: Logitech SetPoint.lnk = H:\Program Files\Logitech\SetPoint\SetPoi​nt.exe
 O8 - Extra context menu item: &Windows Live Search - res://H:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
 O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
 O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://H:\Program Files\Windows Live Toolbar\Components\fr-fr\msnta​bres.dll.mui/229?068cc415a2024​a309088b274c0950a14
 O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://H:\Program Files\Windows Live Toolbar\Components\fr-fr\msnta​bres.dll.mui/230?068cc415a2024​a309088b274c0950a14
 O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C0​4F795683} - H:\Program Files\Messenger\msmsgs.exe
 O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C0​4F795683} - H:\Program Files\Messenger\msmsgs.exe
 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401​C608501} - H:\Program Files\Java\jre1.6.0_07\bin\ssv​.dll
 O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401​C608501} - H:\Program Files\Java\jre1.6.0_07\bin\ssv​.dll
 O9 - Extra button: Stop Pub - {10954C80-4F0F-11d3-B17C-00C0D​FE39736} - H:\Documents and Settings\Propriétaire\Mes documents\mickael.quintin\peti​t logiciel\StopPub.exe (file missing)
 O9 - Extra 'Tools' menuitem: Stop Pub - {10954C80-4F0F-11d3-B17C-00C0D​FE39736} - H:\Documents and Settings\Propriétaire\Mes documents\mickael.quintin\peti​t logiciel\StopPub.exe (file missing)
 O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba3​8496583} - H:\WINDOWS\Network Diagnostic\xpnetdiag.exe
 O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba3​8496583} - H:\WINDOWS\Network Diagnostic\xpnetdiag.exe
 O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284​D0FE16E} - http://www.orange.fr (file missing) (HKCU)
 O15 - Trusted Zone: *.canalplay.com
 O15 - Trusted Zone: *.canalplusactive.com
 O15 - Trusted Zone: *.canalplay.com (HKLM)
 O15 - Trusted Zone: *.canalplusactive.com (HKLM)
 O16 - DPF: {54B52E52-8000-4413-BD67-FC7FE​24B59F2} (EARTPatchX Class) - http://simcity.ea.com/update/EARTPX.cab
 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA​91D2FC3} (MUWebControl Class) - http://www.update.microsoft.co [...] 0172759328
 O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E​0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/h [...] _0_3_0.cab
 O16 - DPF: {BA162249-F2C5-4851-8ADC-FC58C​B424243} (Image Uploader Control) - http://copainsdavant.linternau [...] oader5.cab
 O16 - DPF: {C36661D7-3590-45B1-80B5-52083​9E94DAD} (MaxisSimCity4PatcherX Control) - http://simcity.ea.com/update/M [...] tcherX.cab
 O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-44455​3540000} (Shockwave Flash Object) - http://fpdownload2.macromedia. [...] wflash.cab
 O16 - DPF: {E8F628B5-259A-4734-97EE-BA914​D7BE941} - http://driveragent.com/files/driveragent.cab
 O18 - Protocol: bw+0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw+0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw-0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw-0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw00 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw00s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw10 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw10s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw20 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw20s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw30 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw30s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw40 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw40s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw50 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw50s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw60 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw60s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw70 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw70s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw80 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw80s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw90 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw90s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwa0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwa0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwb0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwb0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwc0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwc0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwd0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwd0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwe0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwe0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwf0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwf0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9​B80B32B} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPl​ugProtocol-8876480.dll
 O18 - Protocol: bwg0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwg0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwh0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwh0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwi0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwi0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwj0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwj0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwk0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwk0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwl0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwl0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwm0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwm0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwn0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwn0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwo0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwo0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwp0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwp0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwq0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwq0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwr0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwr0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bws0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bws0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwt0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwt0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwu0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwu0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwv0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwv0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bww0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bww0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwx0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwx0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwy0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwy0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwz0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwz0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: offline-8876480 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - H:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
 O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - H:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
 O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - H:\WINDOWS\System32\FTRTSVC.ex​e
 O23 - Service: Google Updater Service (gusvc) - Google - H:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.e​xe
 O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - H:\Program Files\Fichiers communs\Logishrd\Bluetooth\LBT​Serv.exe
 O23 - Service: LVCOMSer - Logitech Inc. - H:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVCo​mSer.exe
 O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - H:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcS​rv.exe
 O23 - Service: LVSrvLauncher - Logitech Inc. - H:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLn​ch.exe
 O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - H:\Program Files\ma-config.com\maconfserv​ice.exe
 O23 - Service: MSCSPTISRV - Sony Corporation - H:\Program Files\Fichiers communs\Sony Shared\AVLib\MSCSPTISRV.exe
 O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - H:\WINDOWS\system32\nvsvc32.ex​e
 O23 - Service: PACSPTISVR - Sony Corporation - H:\Program Files\Fichiers communs\Sony Shared\AVLib\PACSPTISVR.exe
 O23 - Service: PnkBstrA - Unknown owner - H:\WINDOWS\system32\PnkBstrA.e​xe
 O23 - Service: Service CANALPLAY - Canal+ Active - H:\Program Files\Lecteur CANALPLAY\CanalPlayService.exe
 O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - H:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
 O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - H:\Program Files\Fichiers communs\Sony Shared\AVLib\SSScsiSV.exe
 O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - H:\WINDOWS\System32\TuneUpDefr​agService.exe

 --
 End of file - 23498 bytes

 a+++

Profil : Equipe sécurité
dedetraque
Célèbre sur tout le forum (de 30 000 à 99 999 messages postés)
  1. Posté le 18/08/2008 à 21:58:23  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Salut micky44


 Procédure à appliquer en entier. Si tu as des difficultés à une étape passe la mais signale le dans ta prochaine réponse.
 - Si tu as des questions à poser n'hésite pas


 ---


 Télécharge et installe :

 - Ccleaner  http://www.01net.com/telecharg [...] 32599.html
 - Lors de son installation décoche la case devant : Ajouter la Barre d'Outils Yahoo! CCleaner


 - MalwareByte's Anti-Malware
 http://www.malwarebytes.org/mb [...] -setup.exe


 - Mets le à jour

 Tutoriel pour MalwareByte's ici :
 http://www.malekal.com/tutoria [...] alware.php


 -----


 Redémarre ton PC en mode sans échec

 Au redémarrage de ton PC tapote sur la touche F8 ou F5 sur l'écran suivant déplace toi avec les flèches de direction et choisis Mode sans échec. Choisis ta session habituelle et non la session Administrateur


 -----


 Relance Hijackthis, clique sur Do a scan system only coche la case devant les lignes suivantes

 O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5​E23E045} - (no file)
 O9 - Extra button: Stop Pub - {10954C80-4F0F-11d3-B17C-00C0D​FE39736} - H:\Documents and Settings\Propriétaire\Mes documents\mickael.quintin\peti​t logiciel\StopPub.exe (file missing)
 O9 - Extra 'Tools' menuitem: Stop Pub - {10954C80-4F0F-11d3-B17C-00C0D​FE39736} - H:\Documents and Settings\Propriétaire\Mes documents\mickael.quintin\peti​t logiciel\StopPub.exe (file missing)
 O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284​D0FE16E} - http://www.orange.fr (file missing) (HKCU)



 - Ferme les fenêtres en cours sauf HijackThis, clique sur Fix checked

 - Quitte HijackThis


 -----


 Démarre Ccleaner


 - Clique sur Options, onglet Avancé et décoche la case Effacer uniquement les fichiers, du dossier Temp de Windows, plus vieux que 48 heures.

 - Clique sur Registre décoche la case devant Intégrité du registre

 - Clique sur Nettoyeur
 - Onglet Windows ne coche pas la case Avancé
 - Onglet Applications laisse toutes les cases cochées


 - Clique sur le bouton Analyse puis celle-ci finie sur Lancer le nettoyage


 -----


 - Double clique sur le raccourci de MalwareByte's Anti-Malware qui est sur le bureau.
 - Sélectionne Exécuter un examen complet si ce n'est pas déjà fait
 - clique sur Rechercher

 - Une fois le scan terminé, une fenêtre s'ouvre, clique sur  sur Ok

 - Si MalwareByte's n'a rien détecté, clique sur Ok  Un rapport va apparaître ferme-le.

 - Si MalwareByte's a détecté des infections, clique sur Afficher les résultats  ensuite sur Supprimer la sélection

 - Enregistre le rapport sur ton Bureau comme cela il sera plus facile à retrouver

 Note : Si MalwareByte's  a besoin de redémarrer pour terminer la suppression, accepte en cliquant sur Ok


 -----


 Redémarre ton PC en mode normal poste :

 - Un nouveau rapport Hijackthis
 - Le rapport MalwareByte's Anti-Malware


 @++

(Publicité)
micky44
Sur la bonne voie (de 100 à 499 messages postés)
  1. Posté le 19/08/2008 à 19:31:22  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Salut dédétraqué,

 bon j'ai fait ce que tu m'a demandé mais un peu n'importe comment, je m'explique:

 - quand je me suis mit en mode sans echec, j'ai fait directement le scan malwarebyte (le rapport est ci-dessous), je me suis remit en mode normal et j'ai fait tout le reste a la lettre mais en mode normal (rapport Hijackthis ci-dessous)

 donc voila dit moi si tout est a refaire.

 les 2 rapports:

 Malwarebytes' Anti-Malware 1.25
 Version de la base de données: 1066
 Windows 5.1.2600 Service Pack 3

 20:53:19 2008-08-19
 mbam-log-08-19-2008 (20-53-19).txt

 Type de recherche: Examen complet (C:\|D:\|H:\|)
 Eléments examinés: 125383
 Temps écoulé: 4 hour(s), 22 minute(s), 51 second(s)

 Processus mémoire infecté(s): 0
 Module(s) mémoire infecté(s): 0
 Clé(s) du Registre infectée(s): 0
 Valeur(s) du Registre infectée(s): 0
 Elément(s) de données du Registre infecté(s): 0
 Dossier(s) infecté(s): 0
 Fichier(s) infecté(s): 0

 Processus mémoire infecté(s):
 (Aucun élément nuisible détecté)

 Module(s) mémoire infecté(s):
 (Aucun élément nuisible détecté)

 Clé(s) du Registre infectée(s):
 (Aucun élément nuisible détecté)

 Valeur(s) du Registre infectée(s):
 (Aucun élément nuisible détecté)

 Elément(s) de données du Registre infecté(s):
 (Aucun élément nuisible détecté)

 Dossier(s) infecté(s):
 (Aucun élément nuisible détecté)

 Fichier(s) infecté(s):
 (Aucun élément nuisible détecté)

 Logfile of Trend Micro HijackThis v2.0.2
 Scan saved at 21:22, on 2008-08-19
 Platform: Windows XP SP3 (WinNT 5.01.2600)
 MSIE: Internet Explorer v7.00 (7.00.6000.16705)
 Boot mode: Normal

 Running processes:
 H:\WINDOWS\System32\smss.exe
 H:\WINDOWS\system32\winlogon.e​xe
 H:\WINDOWS\system32\services.e​xe
 H:\WINDOWS\system32\lsass.exe
 H:\WINDOWS\system32\svchost.ex​e
 H:\WINDOWS\System32\svchost.ex​e
 H:\WINDOWS\system32\spoolsv.ex​e
 H:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcS​rv.exe
 H:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
 H:\WINDOWS\Explorer.EXE
 H:\WINDOWS\RTHDCPL.EXE
 H:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
 H:\WINDOWS\system32\RUNDLL32.E​XE
 H:\Program Files\Java\jre1.6.0_07\bin\jus​ched.exe
 H:\Program Files\Wanadoo\taskbaricon.exe
 H:\PROGRA~1\Sony\SONICS~1\SsAA​D.exe
 H:\Program Files\Fichiers communs\Logitech\G-series Software\LGDCore.exe
 H:\Program Files\Google\GoogleToolbarNoti​fier\GoogleToolbarNotifier.exe
 H:\WINDOWS\system32\ctfmon.exe
 H:\Program Files\Logitech\Desktop Messenger\8876480\Program\Logi​techDesktopMessenger.exe
 H:\Program Files\Lavalys\EVEREST Ultimate Edition\everest.exe
 H:\Program Files\Logitech\SetPoint\SetPoi​nt.exe
 H:\Program Files\AMD\AMD Power Monitor\AMD_PwrMon.exe
 H:\Program Files\Fichiers communs\Logishrd\KHAL2\KHALMNP​R.EXE
 H:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
 H:\WINDOWS\System32\FTRTSVC.ex​e
 H:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVCo​mSer.exe
 H:\WINDOWS\system32\nvsvc32.ex​e
 H:\WINDOWS\system32\PnkBstrA.e​xe
 H:\WINDOWS\system32\svchost.ex​e
 H:\WINDOWS\system32\SearchInde​xer.exe
 H:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVCo​mSer.exe
 H:\Program Files\Trend Micro\HijackThis\HijackThis.ex​e

 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Default_Search_U​RL = http://go.microsoft.com/fwlink/?LinkId=54896
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
 R0 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
 R1 - HKCU\Software\Microsoft\Intern​et Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
 R1 - HKCU\Software\Microsoft\Intern​et Explorer\Main,Window Title = Orange
 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Toolbar,LinksFolderNa​me = Liens
 R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A8​9362C85} - H:\PROGRA~1\Wanadoo\SEARCH~1.D​LL
 R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-00902​71D4F88} - H:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695E​CA05670} - H:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7​D6BE0B3} - H:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\​AcroIEHelper.dll
 O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF​1D92D43} - H:\Program Files\Java\jre1.6.0_07\bin\ssv​.dll
 O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-51647​60863C6} - H:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
 O2 - BHO: BHO Barre de Confiance - {988B07F5-7392-455A-8A1F-64935​CB8B6ED} - H:\Program Files\BarreConfCMCIC\TAPBar.dl​l
 O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF105​77473F7} - h:\program files\google\googletoolbar2.dl​l
 O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B​5AD205D} - H:\Program Files\Google\GoogleToolbarNoti​fier\2.0.301.7164\swg.dll
 O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B​4FF55D0} - H:\Program Files\Windows Live Toolbar\msntb.dll
 O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B​4FF55D0} - H:\Program Files\Windows Live Toolbar\msntb.dll
 O3 - Toolbar: Barre de confiance - {55BDF3B0-C0A8-481A-B8A6-01CD2​BE0F3FD} - H:\Program Files\BarreConfCMCIC\TAPBar.dl​l
 O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-00902​71D4F88} - H:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-00902​7A5CD4F} - h:\program files\google\googletoolbar2.dl​l
 O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
 O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE H:\WINDOWS\system32\NvCpl.dll,​NvStartup
 O4 - HKLM\..\Run: [avgnt] "H:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
 O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE H:\WINDOWS\system32\NvMcTray.d​ll,NvTaskbarInit
 O4 - HKLM\..\Run: [SunJavaUpdateSched] "H:\Program Files\Java\jre1.6.0_07\bin\jus​ched.exe"
 O4 - HKLM\..\Run: [WOOWATCH] H:\PROGRA~1\Wanadoo\Watch.exe
 O4 - HKLM\..\Run: [WOOTASKBARICON] H:\Program Files\Wanadoo\taskbaricon.exe
 O4 - HKLM\..\Run: [SsAAD.exe] H:\PROGRA~1\Sony\SONICS~1\SsAA​D.exe
 O4 - HKLM\..\Run: [Launch LGDCore] "H:\Program Files\Fichiers communs\Logitech\G-series Software\LGDCore.exe" /SHOWHIDE
 O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
 O4 - HKCU\..\Run: [swg] H:\Program Files\Google\GoogleToolbarNoti​fier\GoogleToolbarNotifier.exe
 O4 - HKCU\..\Run: [ctfmon.exe] H:\WINDOWS\system32\ctfmon.exe
 O4 - HKCU\..\Run: [LDM] H:\Program Files\Logitech\Desktop Messenger\8876480\Program\Logi​techDesktopMessenger.exe
 O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
 O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
 O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
 O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
 O4 - Startup: AMD Power Monitor.lnk = H:\Program Files\AMD\AMD Power Monitor\AMD_PwrMon.exe
 O4 - Global Startup: EVEREST Ultimate Edition.lnk = H:\Program Files\Lavalys\EVEREST Ultimate Edition\everest.exe
 O4 - Global Startup: Logitech SetPoint.lnk = H:\Program Files\Logitech\SetPoint\SetPoi​nt.exe
 O8 - Extra context menu item: &Windows Live Search - res://H:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
 O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
 O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://H:\Program Files\Windows Live Toolbar\Components\fr-fr\msnta​bres.dll.mui/229?068cc415a2024​a309088b274c0950a14
 O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://H:\Program Files\Windows Live Toolbar\Components\fr-fr\msnta​bres.dll.mui/230?068cc415a2024​a309088b274c0950a14
 O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C0​4F795683} - H:\Program Files\Messenger\msmsgs.exe
 O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C0​4F795683} - H:\Program Files\Messenger\msmsgs.exe
 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401​C608501} - H:\Program Files\Java\jre1.6.0_07\bin\ssv​.dll
 O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401​C608501} - H:\Program Files\Java\jre1.6.0_07\bin\ssv​.dll
 O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba3​8496583} - H:\WINDOWS\Network Diagnostic\xpnetdiag.exe
 O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba3​8496583} - H:\WINDOWS\Network Diagnostic\xpnetdiag.exe
 O15 - Trusted Zone: *.canalplay.com
 O15 - Trusted Zone: *.canalplusactive.com
 O15 - Trusted Zone: *.canalplay.com (HKLM)
 O15 - Trusted Zone: *.canalplusactive.com (HKLM)
 O16 - DPF: {54B52E52-8000-4413-BD67-FC7FE​24B59F2} (EARTPatchX Class) - http://simcity.ea.com/update/EARTPX.cab
 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA​91D2FC3} (MUWebControl Class) - http://www.update.microsoft.co [...] 0172759328
 O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E​0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/h [...] _0_3_0.cab
 O16 - DPF: {BA162249-F2C5-4851-8ADC-FC58C​B424243} (Image Uploader Control) - http://copainsdavant.linternau [...] oader5.cab
 O16 - DPF: {C36661D7-3590-45B1-80B5-52083​9E94DAD} (MaxisSimCity4PatcherX Control) - http://simcity.ea.com/update/M [...] tcherX.cab
 O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-44455​3540000} (Shockwave Flash Object) - http://fpdownload2.macromedia. [...] wflash.cab
 O16 - DPF: {E8F628B5-259A-4734-97EE-BA914​D7BE941} - http://driveragent.com/files/driveragent.cab
 O18 - Protocol: bw+0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw+0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw-0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw-0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw00 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw00s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw10 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw10s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw20 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw20s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw30 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw30s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw40 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw40s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw50 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw50s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw60 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw60s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw70 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw70s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw80 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw80s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw90 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bw90s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwa0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwa0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwb0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwb0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwc0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwc0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwd0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwd0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwe0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwe0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwf0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwf0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9​B80B32B} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPl​ugProtocol-8876480.dll
 O18 - Protocol: bwg0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwg0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwh0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwh0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwi0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwi0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwj0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwj0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwk0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwk0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwl0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwl0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwm0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwm0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwn0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwn0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwo0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwo0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwp0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwp0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwq0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwq0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwr0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwr0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bws0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bws0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwt0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwt0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwu0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwu0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwv0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwv0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bww0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bww0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwx0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwx0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwy0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwy0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwz0 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: bwz0s - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O18 - Protocol: offline-8876480 - {003FCABC-96AF-40AB-BD01-91322​046F273} - H:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPl​ugProtocol-8876480.dll
 O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - H:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
 O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - H:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
 O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - H:\WINDOWS\System32\FTRTSVC.ex​e
 O23 - Service: Google Updater Service (gusvc) - Google - H:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.e​xe
 O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - H:\Program Files\Fichiers communs\Logishrd\Bluetooth\LBT​Serv.exe
 O23 - Service: LVCOMSer - Logitech Inc. - H:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVCo​mSer.exe
 O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - H:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcS​rv.exe
 O23 - Service: LVSrvLauncher - Logitech Inc. - H:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLn​ch.exe
 O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - H:\Program Files\ma-config.com\maconfserv​ice.exe
 O23 - Service: MSCSPTISRV - Sony Corporation - H:\Program Files\Fichiers communs\Sony Shared\AVLib\MSCSPTISRV.exe
 O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - H:\WINDOWS\system32\nvsvc32.ex​e
 O23 - Service: PACSPTISVR - Sony Corporation - H:\Program Files\Fichiers communs\Sony Shared\AVLib\PACSPTISVR.exe
 O23 - Service: PnkBstrA - Unknown owner - H:\WINDOWS\system32\PnkBstrA.e​xe
 O23 - Service: Service CANALPLAY - Canal+ Active - H:\Program Files\Lecteur CANALPLAY\CanalPlayService.exe
 O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - H:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
 O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - H:\Program Files\Fichiers communs\Sony Shared\AVLib\SSScsiSV.exe
 O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - H:\WINDOWS\System32\TuneUpDefr​agService.exe

 --
 End of file - 22765 bytes

 @++

Profil : Equipe sécurité
dedetraque
Célèbre sur tout le forum (de 30 000 à 99 999 messages postés)
  1. Posté le 19/08/2008 à 22:01:31  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Salut micky44


 Ton dernier rapport est OK, on va faire un petit nettoyage de ton PC en supprimant les utilitaires téléchargés :

 Télécharge OTMoveIt (de Old_Timer) sur le bureau :

 http://download.bleepingcomput [...] oveIt2.exe

 Double-clique sur OTMoveIt2.exe sur le bureau

 Clique sur CleanUp! (le programme va télécharger un fichier texte qui servira a nettoyer les programmes que l'on a téléchargé).

 NOTE : Normalement, ton firewall (parefeu) devrait te demander si OTmoveIT peut accéder a Internet, Autorise le.

 Une liste apparaît dans la partie gauche d'OTmoveIT.

 Un message apparaît pour confirmer le nettoyage. Confirme.

 Tu pourras aussi supprimer tous les rapports qui on été généré lors de la désinfection.


 -----


 - Je te donne quelques consignes de sécurité :

 -  Windows Update  parfaitement à jour http://www.windowsupdate.com/ (catégories critique, Services Pack et Services Release)
 - pare-feu bien paramétré
 - antivirus bien paramétré et mis à jour régulièrement (quotidiennement s'il le faut) avec un scan complet régulier (journalier s'il le faut).
 - une attitude prudente vis à vis de la navigation (pas de sites douteux : cracks, warez, sexe...) et vis à vis de la messagerie (fichiers joints aux messages doivent être scannés avant d'être ouverts)
 - une attitude vigilante (être à l'affût d'un fonctionnement inhabituel de son système)
 - nettoyage hebdomadaire du système (suppression des fichiers inutiles, nettoyage de la base de registre, scandisk, defrag)
 - scan hebdomadaire antispyware
 - un contôle régulier de la console JAVA pour s'assurer qu'elle est à jour http://www.java.com/en/download/help/testvm.xml
 - un scan de vulnérabilités afin de vérifier que tes logiciels soit à jour sans failles de sécurités :
 http://www.malekal.com/scan_vulnerabilite.php


 Si tu considère ton problème comme résolu, édite [:jlj:3] ton premier poste et ajoute [résolu] dans le titre.


 @++

micky44
Sur la bonne voie (de 100 à 499 messages postés)
  1. Posté le 19/08/2008 à 22:33:39  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
ces bon merci dédétraqué de ton aide.

 et pas mal pour le scan de vulnerabilité ces impec ca.

 merci encore @+++

(Publicité)
 Page :
1

Aller à :
 

Sujets relatifs
Besoin d'aide, virus RESOLU : Mots soulignés en vert
virtumonde.sci / merci pour l'aide [résolu] Trojan vundo/virtumonde
Virtumonde + Purity Scan virtumonde m'a "détruit" mon pc.... que faire
Infecté par Win32:Virtumonde-Cs Infection Virtumonde
virtumonde Infection Win32.Agent.chh et Virtumonde.prx + Détection Dropper.Gen
Plus de sujets relatifs à : virtumonde ???? est ce un virus [RESOLU]

Les 5 sujets de discussion précédents Nombre de réponses Dernier message
clé usb programme copiant la clé en cachette 1
PC infecté par Trojan-clicker.win32 [résolu] 9
Pages qui ne s'ouvrent pas (PC infecté?) 13
Analyse scan antivir 4
Spyware et virus " xp antivirus 2008" 1