gskin Posté(e) le 30 octobre 2008 Partager Posté(e) le 30 octobre 2008 bonsoir a tous !! J'ai une copine qui est venu chez moi avec son pc port et elle a un problème. Quand elle double clic sur l'icône de internet explorer le logiciel ne se lance pas, et certaines fois il y a un message d'erreur pour envoyer un rapport d'erreur a microsoft. J'ai installer firefox et il fonctionne bien et elle arrive aussi a se connecter sur msn. J'ai alors installer la version 8 de internet explorer mains pas de changement. J'avoue que je suis un peu perdu !!! Si vous avez des idées elles sont les bienvenue !!!! ++ Lien vers le commentaire Partager sur d’autres sites More sharing options...
yamxx Posté(e) le 30 octobre 2008 Partager Posté(e) le 30 octobre 2008 Rester sur firefox? ============> Gigot Lien vers le commentaire Partager sur d’autres sites More sharing options...
gskin Posté(e) le 30 octobre 2008 Auteur Partager Posté(e) le 30 octobre 2008 si il n'y avais que moi internet explorer serais supprimer du pc !!!! mais le problémes c'est que n'est pas mon pc !!! Lien vers le commentaire Partager sur d’autres sites More sharing options...
snooky Posté(e) le 30 octobre 2008 Partager Posté(e) le 30 octobre 2008 Salut , poste un rapport Hijackthis . si il n'y avais que moi internet explorer serais supprimer du pc Mauvaise idée ! Lien vers le commentaire Partager sur d’autres sites More sharing options...
gskin Posté(e) le 30 octobre 2008 Auteur Partager Posté(e) le 30 octobre 2008 Mauvaise idée ! bein pk ??? Sinon voila le rapport Hijackthis: Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:24:27, on 30/10/2008 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16735) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\spoolsv.exe C:\Acer\eManager\anbmServ.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Synaptics\SynTP\SynTPLpr.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\AGRSMMSG.exe C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\keyhook.exe C:\Program Files\Arcade\PCMService.exe C:\Program Files\Launch Manager\QtZgAcer.EXE C:\PROGRA~1\MESSAG~1\StartMessager.exe C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe C:\WINDOWS\system32\LVCOMSX.EXE C:\Program Files\Logitech\Video\LogiTray.exe C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe C:\Program Files\MessengerPlus! 3\MsgPlus.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\Messenger\msmsgs.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\acer\eRecovery\Monitor.exe C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe C:\Program Files\Logitech\Video\FxSvr2.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe G:\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://recherche.neuf.fr/ie/default.html R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://recherche.neuf.fr/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ouragandefraicheur.skyblog.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://recherche.neuf.fr/ie/default.html R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O4 - HKLM\..\Run: [LaunchApp] Alaunch O4 - HKLM\..\Run: [synTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe O4 - HKLM\..\Run: [siSPower] Rundll32.exe SiSPower.dll,ModeAgent O4 - HKLM\..\Run: [siS Windows KeyHook] C:\WINDOWS\system32\keyhook.exe O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Arcade\PCMService.exe" O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName O4 - HKLM\..\Run: [LManager] C:\Program Files\Launch Manager\QtZgAcer.EXE O4 - HKLM\..\Run: [eRecoveryService] C:\Windows\System32\Check.exe O4 - HKLM\..\Run: [MessagerStarter Wanadoo] C:\PROGRA~1\MESSAG~1\StartMessager.exe Messager Wanadoo O4 - HKLM\..\Run: [EPSON Stylus Photo RX420 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE /P31 "EPSON Stylus Photo RX420 Series" /O6 "USB001" /M "Stylus Photo RX420" O4 - HKLM\..\Run: [iSUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart O4 - HKCU\..\Run: [book ante] C:\DOCUME~1\GRENET~1\APPLIC~1\ELSEPL~1\AXISNEW.exe O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [amva] C:\WINDOWS\system32\amvo.exe O4 - HKCU\..\Run: [kamsoft] C:\WINDOWS\system32\ckvo.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: BTTray.lnk = ? O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll/search.htm O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?c91f516310384476b8a3667db72681ec O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?c91f516310384476b8a3667db72681ec O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1197895845468 O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://cid-4a1657a25247cc74.spaces.live.co...ad/MsnPUpld.cab O18 - Protocol: bw+0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw+0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: bwg0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwg0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: offline-8876480 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O23 - Service: Notebook Manager Service (anbmService) - OSA Technologies Inc. - C:\Acer\eManager\anbmServ.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe -- End of file - 22622 bytes Merci !!! Lien vers le commentaire Partager sur d’autres sites More sharing options...
snooky Posté(e) le 30 octobre 2008 Partager Posté(e) le 30 octobre 2008 Coche et fixe toutes les lines 04 avec Hijackthis . Désinstalle Avast via ajout/supp des programmes . Installe MBAM , analyse complète , puis supprime tout ce qu'il trouve . Poste le rapport créé. Redémarre le pc , lance Clean v2.0 bu FRUiT , procédure 1. Redémarre le pc et poste un nouveau rapport Hijackthis . Lien vers le commentaire Partager sur d’autres sites More sharing options...
gskin Posté(e) le 30 octobre 2008 Auteur Partager Posté(e) le 30 octobre 2008 ok bon ma copine est parti et je n'ai plus le pc ce soir mais je ferais ça la prochaine fois que je le voie et je vous tient au courant. Merci beaucoup. Lien vers le commentaire Partager sur d’autres sites More sharing options...
snooky Posté(e) le 30 octobre 2008 Partager Posté(e) le 30 octobre 2008 Vaut mieux ... le pc est bien vérolé ! Lien vers le commentaire Partager sur d’autres sites More sharing options...
gskin Posté(e) le 8 novembre 2008 Auteur Partager Posté(e) le 8 novembre 2008 bon je retrouve le pc ce soir mais j'ai chercher le logiciel Clean v2.0 bu FRUiT que snooky m'as indiquer mais je n'ai rien trouver Quelqu'un a un lien please ??? Lien vers le commentaire Partager sur d’autres sites More sharing options...
snooky Posté(e) le 8 novembre 2008 Partager Posté(e) le 8 novembre 2008 Coche et fixe toutes les lines 04 avec Hijackthis . Désinstalle Avast via ajout/supp des programmes . Après avoir désinstallé Avast , passe également cet outil : http://files.avast.com/files/eng/aswclear.exe Installe MBAM , analyse complète , puis supprime tout ce qu'il trouve . Poste le rapport créé. Redémarre le pc , lance Clean v2.0 bu FRUiT , procédure 1. Vise ma signature pour Clean v2.0 by FRUiT et MBAM ... Redémarre le pc et poste un nouveau rapport Hijackthis . Puis lance ComboFix et poste le rapport créé : http://download.bleepingcomputer.com/sUBs/ComboFix.exe Lien vers le commentaire Partager sur d’autres sites More sharing options...
gskin Posté(e) le 9 novembre 2008 Auteur Partager Posté(e) le 9 novembre 2008 Coucou bon alors j'ai passer ma soirée pres du pc et j'ai effectuer la procédure que snooky m'as indiquer (mais bien long pour faire tout ca !!!!) donc voici les différent rapport que j'ai eut. j'ai bien supprimer les lignes indiquer via hijackthis, j'ai voulu désinstaller avast mais les fichier ne sont plus dans le programme file mais l'icône dans la liste des programmes dans la fonction ajout supp de prog reste a l'ecran !!!! Je continue donc avec MBAM et voici le rapport : Malwarebytes' Anti-Malware 1.30 Version de la base de données: 1306 Windows 5.1.2600 Service Pack 3 09/11/2008 01:24:47 mbam-log-2008-11-09 (01-24-47).txt Type de recherche: Examen complet (C:\|D:\|) Eléments examinés: 151325 Temps écoulé: 5 hour(s), 53 minute(s), 33 second(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 1 Clé(s) du Registre infectée(s): 0 Valeur(s) du Registre infectée(s): 3 Elément(s) de données du Registre infecté(s): 1 Dossier(s) infecté(s): 0 Fichier(s) infecté(s): 6 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): C:\WINDOWS\system32\ckvo1.dll (Trojan.Agent) -> Delete on reboot. Clé(s) du Registre infectée(s): (Aucun élément nuisible détecté) Valeur(s) du Registre infectée(s): HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\kamsoft (Trojan.FakeAlert.H) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\mysearchnow.com (Malware.Trace) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\www.mysearchnow.com (Malware.Trace) -> Quarantined and deleted successfully. Elément(s) de données du Registre infecté(s): HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL\CheckedValue (Hijack.System.Hidden) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully. Dossier(s) infecté(s): (Aucun élément nuisible détecté) Fichier(s) infecté(s): C:\WINDOWS\system32\ckvo.exe (Trojan.FakeAlert.H) -> Quarantined and deleted successfully. C:\WINDOWS\system32\_004551_.tmp.dll (Trojan.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\_004583_.tmp.dll (Trojan.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\ckvo0.dll (Trojan.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\ckvo1.dll (Trojan.Agent) -> Delete on reboot. C:\xih9.cmd (Trojan.Agent) -> Quarantined and deleted successfully. j'ai ensuite passer le pc avec clean v2.0 et voici un nouveau rapport hijackthis: Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 15:11:17, on 09/11/2008 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16735) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\spoolsv.exe C:\Acer\eManager\anbmServ.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\system32\LVComsX.exe C:\WINDOWS\system32\NOTEPAD.EXE C:\WINDOWS\system32\NOTEPAD.EXE C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://recherche.neuf.fr/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ouragandefraicheur.skyblog.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://recherche.neuf.fr/ie/default.html R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll/search.htm O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?c91f516310384476b8a3667db72681ec O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?c91f516310384476b8a3667db72681ec O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1197895845468 O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://cid-4a1657a25247cc74.spaces.live.co...ad/MsnPUpld.cab O18 - Protocol: bw+0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw+0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: bwg0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwg0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: offline-8876480 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O23 - Service: Notebook Manager Service (anbmService) - OSA Technologies Inc. - C:\Acer\eManager\anbmServ.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe -- End of file - 18721 bytes J'ai ensuite lancer combofix et voici le rapport: ComboFix 08-11-07.01 - GRENET JESSICA 2008-11-09 15:14:49.1 - FAT32x86 Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.147 [GMT 1:00] Lancé depuis: f:\jess\ComboFix.exe * Un nouveau point de restauration a été créé AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !! . (((((((((((((((((((((((((((((((((((( Autres suppressions )))))))))))))))))))))))))))))))))))))))))))))))) . C:\0u.cmd C:\9.cmd C:\autorun.inf C:\vva0hc0p.cmd c:\windows\system32\_000006_.tmp.dll c:\windows\system32\_004540_.tmp.dll c:\windows\system32\_004541_.tmp.dll c:\windows\system32\_004542_.tmp.dll c:\windows\system32\_004543_.tmp.dll c:\windows\system32\_004550_.tmp.dll c:\windows\system32\_004552_.tmp.dll c:\windows\system32\_004553_.tmp.dll c:\windows\system32\_004555_.tmp.dll c:\windows\system32\_004556_.tmp.dll c:\windows\system32\_004559_.tmp.dll c:\windows\system32\_004560_.tmp.dll c:\windows\system32\_004562_.tmp.dll c:\windows\system32\_004563_.tmp.dll c:\windows\system32\_004564_.tmp.dll c:\windows\system32\_004566_.tmp.dll c:\windows\system32\_004569_.tmp.dll c:\windows\system32\_004570_.tmp.dll c:\windows\system32\_004574_.tmp.dll c:\windows\system32\_004575_.tmp.dll c:\windows\system32\_004577_.tmp.dll c:\windows\system32\_004580_.tmp.dll c:\windows\system32\_004582_.tmp.dll c:\windows\system32\_004584_.tmp.dll c:\windows\system32\_004585_.tmp.dll c:\windows\system32\_004586_.tmp.dll c:\windows\system32\_004589_.tmp.dll c:\windows\system32\_004590_.tmp.dll c:\windows\system32\_004591_.tmp.dll c:\windows\system32\_004592_.tmp.dll c:\windows\system32\_004593_.tmp.dll c:\windows\system32\_004598_.tmp.dll c:\windows\system32\autorun.ini c:\windows\system32\Bitkv0.dll c:\windows\system32\Bitkv1.dll c:\windows\system32\ckvo2.dll c:\windows\system32\ckvo3.dll C:\yew.bat D:\0u.cmd D:\9.cmd D:\Autorun.inf D:\vva0hc0p.cmd D:\xih9.cmd D:\yew.bat . ((((((((((((((((((((((((((((( Fichiers créés du 2008-10-09 au 2008-11-09 )))))))))))))))))))))))))))))))))))) . 2008-11-09 14:59 . 2008-03-22 01:30 254,553 --a------ C:\clean.cmd 2008-11-09 14:57 . 2008-11-09 15:02 58 --a------ C:\SCRIPT.CLN 2008-11-09 00:28 . 2008-11-09 00:27 108,973 -r-hs---- C:\sq.com 2008-11-08 23:28 . 2008-11-08 23:28 <REP> d-------- c:\windows\system32\NtmsData 2008-11-08 19:27 . 2008-11-08 19:27 <REP> d-------- c:\program files\Malwarebytes' Anti-Malware 2008-11-08 19:27 . 2008-11-08 19:27 <REP> d-------- c:\documents and settings\GRENET JESSICA\Application Data\Malwarebytes 2008-11-08 19:27 . 2008-11-08 19:27 <REP> d-------- c:\documents and settings\All Users\Application Data\Malwarebytes 2008-11-08 19:27 . 2008-10-22 16:10 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys 2008-11-08 19:27 . 2008-10-22 16:10 15,504 --a------ c:\windows\system32\drivers\mbam.sys 2008-11-08 19:06 . 2008-11-08 19:06 <REP> d-------- c:\program files\Trend Micro 2008-11-08 19:03 . 2008-11-08 19:03 <REP> d-------- c:\documents and settings\GRENET JESSICA\Application Data\U3 2008-10-30 19:38 . 2008-10-30 19:39 <REP> d--h----- c:\windows\ie8 2008-10-30 18:16 . 2008-10-30 18:17 8,840 --a------ c:\windows\SEC12BC.PNF 2008-10-30 18:12 . 2008-10-30 18:12 <REP> d-------- c:\windows\system32\fr 2008-10-30 18:12 . 2008-10-30 18:12 <REP> d-------- c:\windows\system32\bits 2008-10-30 18:12 . 2008-10-30 18:12 <REP> d-------- c:\windows\l2schemas 2008-10-30 18:09 . 2008-10-30 18:09 <REP> d-------- c:\windows\ServicePackFiles 2008-10-30 18:06 . 2008-10-30 18:06 2,948 --a------ c:\windows\SEC7.PNF 2008-10-30 18:00 . 2008-10-30 18:00 <REP> d-------- c:\windows\EHome 2008-10-30 16:07 . 2008-10-30 16:07 <REP> d-------- c:\documents and settings\GRENET JESSICA\Application Data\Talkback 2008-10-30 16:07 . 2008-10-30 16:07 0 --a------ c:\windows\nsreg.dat 2008-10-30 15:47 . 2007-09-26 18:32 66,048 --a------ c:\windows\ieResetIcons.exe 2008-10-26 17:00 . 2008-10-03 18:12 6,066,176 --------- c:\windows\system32\dllcache\ieframe.dll 2008-10-26 17:00 . 2007-04-17 10:32 2,455,488 --------- c:\windows\system32\dllcache\ieapfltr.dat 2008-10-26 17:00 . 2007-03-08 06:10 1,048,576 --------- c:\windows\system32\dllcache\ieframe.dll.mui 2008-10-26 17:00 . 2008-08-26 09:11 459,264 --------- c:\windows\system32\dllcache\msfeeds.dll 2008-10-26 17:00 . 2008-08-26 09:11 383,488 --------- c:\windows\system32\dllcache\ieapfltr.dll 2008-10-26 17:00 . 2008-08-26 09:11 267,776 --------- c:\windows\system32\dllcache\iertutil.dll 2008-10-26 17:00 . 2008-08-26 09:11 63,488 --------- c:\windows\system32\dllcache\icardie.dll 2008-10-26 17:00 . 2008-08-26 09:11 52,224 --------- c:\windows\system32\dllcache\msfeedsbs.dll 2008-10-26 17:00 . 2008-08-25 09:38 13,824 --------- c:\windows\system32\dllcache\ieudinit.exe 2008-10-26 16:59 . 2008-10-26 16:59 <REP> d-------- c:\windows\system32\fr-fr 2008-10-26 16:23 . 2008-10-26 16:23 <REP> d-------- C:\9bba83c6cfa1d3f377a8a65f 2008-10-26 16:21 . 2003-02-28 18:26 139,536 --a------ c:\windows\system32\javaee.dll 2008-10-24 22:45 . 2008-10-18 21:32 104,758 -r-hs---- C:\2fiji.com 2008-10-23 21:23 . 2008-10-15 18:35 337,408 --------- c:\windows\system32\dllcache\netapi32.dll 2008-10-19 15:55 . 2008-09-08 12:41 333,824 --------- c:\windows\system32\dllcache\srv.sys 2008-10-19 15:53 . 2008-09-15 17:26 1,846,528 --------- c:\windows\system32\dllcache\win32k.sys 2008-10-19 15:52 . 2008-08-14 15:23 2,191,232 --------- c:\windows\system32\dllcache\ntoskrnl.exe 2008-10-19 15:52 . 2008-08-14 15:23 2,147,328 --------- c:\windows\system32\dllcache\ntkrnlmp.exe 2008-10-19 15:52 . 2008-08-14 15:23 2,068,096 --------- c:\windows\system32\dllcache\ntkrnlpa.exe 2008-10-19 15:52 . 2008-08-14 15:23 2,025,984 --------- c:\windows\system32\dllcache\ntkrpamp.exe . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2008-10-02 20:58 --------- d-----w c:\program files\Alwil Software 2008-09-15 16:26 1,846,528 ----a-w c:\windows\system32\win32k.sys 2008-08-27 13:41 3,593,216 ------w c:\windows\system32\dllcache\mshtml.dll 2008-08-25 08:39 70,656 ------w c:\windows\system32\dllcache\ie4uinit.exe 2008-08-23 05:56 635,848 ------w c:\windows\system32\dllcache\iexplore.exe 2008-08-23 05:54 161,792 ------w c:\windows\system32\dllcache\ieakui.dll 2008-08-22 02:08 43,008 ------w c:\windows\system32\dllcache\licmgr10.dll 2008-08-22 02:07 18,944 ------w c:\windows\system32\dllcache\corpol.dll 2008-08-22 02:06 94,720 ------w c:\windows\system32\dllcache\inseng.dll 2008-08-22 02:06 72,704 ------w c:\windows\system32\dllcache\admparse.dll 2008-08-22 02:06 71,680 ------w c:\windows\system32\dllcache\iesetup.dll 2008-08-22 02:06 552,960 ------w c:\windows\system32\dllcache\jscript.dll 2008-08-22 02:06 434,176 ------w c:\windows\system32\dllcache\vbscript.dll 2008-08-22 02:05 48,640 ------w c:\windows\system32\PrivacIE.dll 2008-08-22 02:05 48,128 ------w c:\windows\system32\dllcache\mshtmler.dll 2008-08-22 02:05 35,840 ------w c:\windows\system32\dllcache\imgutil.dll 2008-08-22 02:05 186,880 ------w c:\windows\system32\dllcache\iepeers.dll 2008-08-22 02:04 45,568 ------w c:\windows\system32\dllcache\mshta.exe 2008-08-22 02:00 68,608 ------w c:\windows\system32\dllcache\hmmapi.dll 2008-08-20 06:37 663,552 ------w c:\windows\system32\wininet.dll 2008-08-14 14:23 2,191,232 ----a-w c:\windows\system32\ntoskrnl.exe 2008-08-14 14:23 2,068,096 ----a-w c:\windows\system32\ntkrnlpa.exe 2008-08-14 11:04 138,496 ------w c:\windows\system32\dllcache\afd.sys . ((((((((((((((((((((((((((((((((( Points de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2004-08-05 15360] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "VIDC.X264"= x264vfw.dll "VIDC.3iv2"= 3ivxVfWCodec.dll "VIDC.VP31"= vp31vfw.dll "msacm.l3fhg"= mp3fhg.acm "VIDC.MJPG"= pvmjpg21.dll [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusDisableNotify"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "c:\\Program Files\\Messenger\\MSMSGS.EXE"= "c:\\WINDOWS\\System32\\mcoinstall.exe"= "c:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe"= "c:\\Program Files\\LimeWire\\LimeWire.exe"= "c:\\Program Files\\eMule\\emule.exe"= "c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"= "c:\\Program Files\\Windows Live\\Messenger\\livecall.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "1723:TCP"= 1723:TCP:@xpsp2res.dll,-22015 "1701:UDP"= 1701:UDP:@xpsp2res.dll,-22016 "500:UDP"= 500:UDP:@xpsp2res.dll,-22017 R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2008-07-19 78416] R2 aswFsBlk;aswFsBlk;c:\windows\system32\DRIVERS\aswFsBlk.sys [2008-07-19 20560] R2 DbgMsg;Debug Message;c:\windows\System32\Drivers\DbgMsg.sys [2004-08-23 18240] R3 SISNICXP;SiS PCI Fast Ethernet Adapter Driver for NDIS51;c:\windows\system32\DRIVERS\sisnicxp.sys [2004-11-05 32768] R3 USBSTOR;Pilote de stockage de masse USB;c:\windows\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368] S3 int15.sys;int15.sys;c:\program files\acer\eRecovery\int15.sys [2005-01-13 69632] S3 MosSir;MosSir.sys;c:\windows\system32\DRIVERS\MosSir.sys [2004-08-23 47360] S3 NBXG7031;NB 802.11g XG703 SP1 Driver;c:\windows\system32\DRIVERS\WlanUIG.sys [2004-09-17 381312] S3 PCASp50;PCASp50 NDIS Protocol Driver;c:\windows\system32\Drivers\PCASp50.sys [2005-11-19 20096] S3 usbscan;Pilote de scanneur USB;c:\windows\system32\DRIVERS\usbscan.sys [2008-04-13 15104] [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\F] \Shell\AutoRun\command - F:\LaunchU3.exe -a [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{2b313f9c-1674-11dc-8ccb-0060b3dc1e95}] \Shell\AutoRun\command - H:\ps.bat \Shell\explore\Command - H:\ps.bat \Shell\open\Command - H:\ps.bat [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{3aacab8a-34bb-11dd-8e1e-0060b3dc1e95}] \Shell\AutoRun\command - F:\vva0hc0p.cmd \Shell\explore\Command - F:\vva0hc0p.cmd \Shell\open\Command - F:\vva0hc0p.cmd [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{445f2bc4-54fc-11dd-8e47-0060b3dc1e95}] \Shell\AutoRun\command - F:\jfvkcsy.bat \Shell\explore\Command - F:\jfvkcsy.bat \Shell\open\Command - F:\jfvkcsy.bat [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{cf1ce328-a907-11dd-8eae-00c09fa8dacc}] \Shell\AutoRun\command - F:\xih9.cmd \Shell\explore\Command - F:\xih9.cmd \Shell\open\Command - F:\xih9.cmd [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{dd4fe499-adbe-11dd-8eb0-00c09fa8dacc}] \Shell\AutoRun\command - G:\xih9.cmd \Shell\explore\Command - G:\xih9.cmd \Shell\open\Command - G:\xih9.cmd [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{f0c3b51a-9681-11da-8b51-00c09fa8dacc}] \Shell\AutoRun\command - F:\xih9.cmd \Shell\explore\Command - F:\xih9.cmd \Shell\open\Command - F:\xih9.cmd . Contenu du dossier 'Tâches planifiées' 2008-08-22 c:\windows\Tasks\Maintenance en 1 clic.job - c:\program files\TuneUp Utilities 2004\SystemOptimizer.exe [] 2008-11-09 c:\windows\Tasks\A8DFB46C91842A9C.job - c:\docume~1\grenet~1\applic~1\elsepl~1\Thunkdeafgreat.exe [] . . ------- Examen supplémentaire ------- . FireFox -: Profile - c:\documents and settings\GRENET JESSICA\Application Data\Mozilla\Firefox\Profiles\oovyhyoc.default\ . ************************************************************************** catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-11-09 15:18:41 Windows 5.1.2600 Service Pack 3 FAT NTAPI Recherche de processus cachés ... Recherche d'éléments en démarrage automatique cachés ... Recherche de fichiers cachés ... Scan terminé avec succès Fichiers cachés: 0 ************************************************************************** . ------------------------ Autres processus actifs ------------------------ . c:\program files\WIDCOMM\Bluetooth Software\bin\btwdins.exe c:\program files\Alwil Software\Avast4\aswUpdSv.exe c:\program files\Alwil Software\Avast4\ashServ.exe c:\acer\eManager\anbmServ.exe c:\program files\Alwil Software\Avast4\ashMaiSv.exe c:\program files\Alwil Software\Avast4\ashWebSv.exe . ************************************************************************** . Heure de fin: 2008-11-09 15:21:22 - La machine a redémarré ComboFix-quarantined-files.txt 2008-11-09 14:21:14 Avant-CF: 25 310 724 096 octets libres Après-CF: 25,323,929,600 octets libres 231 --- E O F --- 2008-10-30 20:29:44 Voila donc dsl pour le post un peu long mais les rapport sont bien long eux aussi !! maintenant j'ai le pc chez moi donc je vais pouvoir bosser plus rapidement dessus !!!! ++ Lien vers le commentaire Partager sur d’autres sites More sharing options...
snooky Posté(e) le 9 novembre 2008 Partager Posté(e) le 9 novembre 2008 Avast n'est pas désinstallé !!! Désinstalle Avast via ajout/supp des programmes .Après avoir désinstallé Avast , passe également cet outil : http://files.avast.com/files/eng/aswclear.exe Installe ensuite Antivir fr ( vise ma signature ) Lien vers le commentaire Partager sur d’autres sites More sharing options...
gskin Posté(e) le 9 novembre 2008 Auteur Partager Posté(e) le 9 novembre 2008 OK j'ai désinstaller avast je n'avais aps enlever l'auto défense de avast c'est pour ça !!! J'ai installer antivir et je suis entrain de la passer a Malwarebyte's antimalware. Je poste un rapport hijackthis apres. Lien vers le commentaire Partager sur d’autres sites More sharing options...
gskin Posté(e) le 9 novembre 2008 Auteur Partager Posté(e) le 9 novembre 2008 re !!! voici le nouveau rapport hijackthis Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:41:40, on 09/11/2008 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16735) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe C:\Acer\eManager\anbmServ.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\Program Files\MessengerPlus! 3\MsgPlus.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\MSN Toolbar Suite\SL\02.05.0001.1119\fr-fr\msn_sl.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ouragandefraicheur.skyblog.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll/search.htm O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?c91f516310384476b8a3667db72681ec O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?c91f516310384476b8a3667db72681ec O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1197895845468 O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://cid-4a1657a25247cc74.spaces.live.co...ad/MsnPUpld.cab O18 - Protocol: bw+0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw+0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: bwg0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwg0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0s - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: offline-8876480 - {02E827CD-A305-4044-93C7-95CA570FE090} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O23 - Service: Notebook Manager Service (anbmService) - OSA Technologies Inc. - C:\Acer\eManager\anbmServ.exe O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe -- End of file - 18085 bytes Lien vers le commentaire Partager sur d’autres sites More sharing options...
snooky Posté(e) le 10 novembre 2008 Partager Posté(e) le 10 novembre 2008 Désinstalle les toolbar : SweetIMBar et MSN Toolbar Suite via Ajout/suppr des programmes . Coche et fixe toutes les lignes 018 + O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe avec Hijackthis . Comment se comporte le pc ? Lien vers le commentaire Partager sur d’autres sites More sharing options...
gskin Posté(e) le 10 novembre 2008 Auteur Partager Posté(e) le 10 novembre 2008 j'ai déjà voulu supprimer certains programmes mais quand j'essaie de supprimer les programme en rapport avec messenger j'ai le message d'erreur : " impossible d'accéder au service windows installer. Ceci peut se produire si vous exécuter Windows en mode sans échec. Contactez votre support technique." Le problème c'est que je ne suis pas en mode sans échec !!!! Lien vers le commentaire Partager sur d’autres sites More sharing options...
snooky Posté(e) le 10 novembre 2008 Partager Posté(e) le 10 novembre 2008 Redémarre le pc . Désactive et remet sur " Manuel " le service Windows Installer via services.msc ( à taper dans Exécuter ) Désactive ces 2 toolbar via les Modules complémentaires " de Internet Explorer et les caches les via Affichage / Barre d'outils de Internet Explorer . Recommence la désinstallation de SweetIMBar et MSN Toolbar Suite . Installe Hosts ( vise ma signature ) Comment se comporte le pc ? ( bis ) Lien vers le commentaire Partager sur d’autres sites More sharing options...
gskin Posté(e) le 10 novembre 2008 Auteur Partager Posté(e) le 10 novembre 2008 ok bon le souci c'est que justement je n'ai pas accès a internet explorer car le logiciel ne veut pas se lancer. Le pc se comporte bien il n'y a pas de chute de perf notable, et les programmes se lancent tous sans pb ( sauf I.E !!!) Lien vers le commentaire Partager sur d’autres sites More sharing options...
snooky Posté(e) le 10 novembre 2008 Partager Posté(e) le 10 novembre 2008 Désinstalle IE8 ( via Ajout/supp des programmes si tu y arrives , sinon , tant pis LOL ) >>> Installe le SP3 : ( télécharge et lance l'installation , rien d'autre à faire ) http://www.clubic.com/actualite-138066-ser...-diponible.html Lien vers le commentaire Partager sur d’autres sites More sharing options...
gskin Posté(e) le 10 novembre 2008 Auteur Partager Posté(e) le 10 novembre 2008 oki je pense que c'est mal parti car quand j'ai eut le problème la première chose que j'ai fait c'est d'installer le sp3 car le pc n'était que en sp2 et j'ai mis la dernières version d'I.E !!! Vive les pc acheter en magasin !!!!!! Lien vers le commentaire Partager sur d’autres sites More sharing options...
snooky Posté(e) le 10 novembre 2008 Partager Posté(e) le 10 novembre 2008 ... et tu as installé IE 8 par la suite , non ? Lien vers le commentaire Partager sur d’autres sites More sharing options...
snooky Posté(e) le 10 novembre 2008 Partager Posté(e) le 10 novembre 2008 Télécharge Flash Disinfector sur ton Bureau http://www.techsupportforum.com/sectools/s...Disinfector.exe Connecte tous les périphériques externes infectés (DD, USB, etc ...) Ne les ouvre pas. Double clique sur Flash Disinfector et laisse-toi guider. PS : si ta copine ne t'a rien laissé ( Clé USB , etc ... ) il faudra lui demander ce qu'elle connecte d'habitude sur son pc et doit te les donner ! Saute cette étape pour le moment , si tu n'as pas sa clé USB . 1) Ouvre C:\WINDOWS\Tasks et supprime les tâches planifiées présentes . 2) La suite , c'est le SP3 : ( installe le SP3 ! ) 3) Puis installe Antivir fr et lance une analyse complète . Lien vers le commentaire Partager sur d’autres sites More sharing options...
gskin Posté(e) le 11 novembre 2008 Auteur Partager Posté(e) le 11 novembre 2008 en fait quand elle m'as parler de son soucis j'ai lancer une analyse complète avec avast et comme il n'as rien trouver j'ai réinstaller IE8 mais comme cela n'as pas marcher j'ai mis a jour le pc au niveau du sp3. Mais comme cela ne marchais toujours pas j'ai poster un message. Je vais suivre la procédure avec flash disinfector et je te tient au courant, en tout cas merci a toi de prendre le temps de t'occuper de moi. Juste pour savoir, tu pense que le problème vient d'où ??? c'est une virus, une brèche de sécurité ou autre chose ???? Lien vers le commentaire Partager sur d’autres sites More sharing options...
snooky Posté(e) le 11 novembre 2008 Partager Posté(e) le 11 novembre 2008 Virus , oui . [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{445f2bc4-54fc-11dd-8e47-0060b3dc1e95}]\Shell\AutoRun\command - F:\jfvkcsy.bat \Shell\explore\Command - F:\jfvkcsy.bat \Shell\open\Command - F:\jfvkcsy.bat Lien vers le commentaire Partager sur d’autres sites More sharing options...
gskin Posté(e) le 11 novembre 2008 Auteur Partager Posté(e) le 11 novembre 2008 bon mauvaise nouvelle malgré la procédure décrite un peu plus haut rien ne change. Je sent que elle vas tourner sous firefox et ça va être bon si ça continue !!!! Lien vers le commentaire Partager sur d’autres sites More sharing options...
Messages recommandés
Archivé
Ce sujet est désormais archivé et ne peut plus recevoir de nouvelles réponses.