Tom's Guide > Forum > Sécurité - Virus > Mon ordinateur est bourré de virus help! rapport hijackthis

Mon ordinateur est bourré de virus help! rapport hijackthis

Forum Sécurité - Virus : Mon ordinateur est bourré de virus help! rapport hijackthis

TomsGuide.com : 800 000 inscrits répondent à toutes vos questions high-tech et informatique. Pour obtenir de l'aide, inscrivez-vous gratuitement !
Mot :    Pseudo :           
 

Bonjour a toutes et a tous,

J'ai visité une page web recemment qui je pense était bourrée de virus et de vers. On m'avait dis de la visiter en desactivant mon antivirus et moi comme un "c*n", je l'ai fait. J'ai reussi a virer une bonne partie des virus grace a spybot adaware et avast avec une analyse au demarrage de l'ordinateur. Mais j'ai encore des popups me disants que mon ordi est bourré de virus que je dois acheter leur logiciel etc...
Et vu que je ne suis pas un expert en virus je vous demande de l'aide.

Voici mon rapport HijackThis :

Logfile of HijackThis v1.99.1
Scan saved at 15:37:48, on 12/08/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\ASUS\Asus Probe\AsusProb.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Pando Networks\Pando\Pando.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Fichiers communs\{646197C3-0710-1036-0906-050526050021}\Update.exe
C:\WINDOWS\system32\ctfmon.exe
C:\program files\steam\steam.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\WINDOWS\WNSXS~1\scanregw.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\PROGRA~1\Wanadoo\Watch.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\svchost.exe
C:\Documents and Settings\Rémi Menotti\Bureau\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.orange.fr/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [NVMixerTray] "C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [ASUS Probe] C:\Program Files\ASUS\Asus Probe\AsusProb.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Pando] C:\Program Files\Pando Networks\Pando\Pando.exe /Automation
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [BitComet] "C:\Program Files\BitComet\BitComet.exe"
O4 - HKCU\..\Run: [VoipCheapCom] "C:\Program Files\VoipCheapCom\VoipCheapCom.exe" -nosplash -minimized
O4 - HKCU\..\Run: [VoipDiscount] "C:\Program Files\VoipDiscount.com\VoipDiscount\VoipDiscount.exe" -nosplash -minimized
O4 - HKCU\..\Run: [Pando] C:\Program Files\Pando Networks\Pando\pando.exe /Automation
O4 - HKCU\..\Run: [Eots] "C:\WINDOWS\WNSXS~1\scanregw.exe" -vt yazr
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\Xfire.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O8 - Extra context menu item: Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Télécharger tout avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU)
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537 [...] scan53.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://drivers1.free.fr/telecharge [...] 2&version=
O18 - Protocol: bw+0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: offline-8876480 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: McAfee.com Personal Firewall Service (MpfService) - McAfee.com Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

Voilà le tout merci d'avance :)

Liens sponsorisés
Inscrivez-vous ou connectez-vous pour masquer ceci.

Bonjour,

Installe Ewido
Lance Ewido puis mets le à jour en cliquant sur " Update Now "
Ferme le programme.
Aide sur Ewido de Rub_Mic

Redémarre en mode sans échec

Relance Ewido puis choisis l'onglet " Scanner "
Fais un " Complete System Scan "
* Si un fichier est infecté, choisis l'option " Apply All Actions " en fin d'analyse *
Clique sur " Save Report " puis sur " Save Report As "
Enregistre ce fichier .txt sur ton bureau, Copie/Colle le ici [b]en mode normal

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

voici le rapport :

---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 16:21:07 12/08/2006

+ Scan result:



C:\WINDOWS\system32\iifdaxu.dll -> Adware.Virtumonde : Cleaned with backup (quarantined).
C:\Documents and Settings\Rémi Menotti\Local Settings\Temp\!update.exe -> Downloader.PurityScan.cu : Cleaned with backup (quarantined).
C:\WINDOWS\WіnSxS\scanregw.exe -> Downloader.PurityScan.cu : Cleaned with backup (quarantined).
C:\Documents and Settings\Rémi Menotti\Local Settings\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\Cache\9568A9C6d01 -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignored.
C:\Documents and Settings\Rémi Menotti\Local Settings\Temp\df7mpxx6.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignored.
:mozilla.24:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.25:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.26:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
C:\Documents and Settings\Rémi Menotti\Cookies\rémi menotti@247realmedia[1].txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.118:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.119:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.120:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.121:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.122:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.123:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.124:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.133:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.241:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.259:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.260:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Rémi Menotti\Cookies\rémi menotti@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.368:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.434:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.98:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.99:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.144:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.145:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
C:\Documents and Settings\Rémi Menotti\Cookies\rémi menotti@adtech[2].txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.114:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.115:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\Rémi Menotti\Cookies\rémi menotti@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.35:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\Rémi Menotti\Cookies\rémi menotti@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.198:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.199:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.200:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
C:\Documents and Settings\Rémi Menotti\Cookies\rémi menotti@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.11:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\Rémi Menotti\Cookies\rémi menotti@doubleclick[2].txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.108:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
:mozilla.38:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.43:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.44:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.45:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.46:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.47:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.376:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.442:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.443:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.83:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.211:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Hotlog : Cleaned.
:mozilla.223:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Ivwbox : Cleaned.
:mozilla.12:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\Rémi Menotti\Cookies\rémi menotti@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.286:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.287:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.14:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.15:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.16:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.18:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.19:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
C:\Documents and Settings\Rémi Menotti\Cookies\rémi menotti@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.186:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.187:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.419:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.420:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.58:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.59:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.60:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.61:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.62:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
C:\Documents and Settings\Rémi Menotti\Cookies\rémi menotti@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.343:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.346:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.347:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.86:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.87:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.88:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.89:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
C:\Documents and Settings\Rémi Menotti\Cookies\rémi menotti@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.350:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.64:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.65:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.66:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.67:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
C:\Documents and Settings\Rémi Menotti\Cookies\rémi menotti@weborama[1].txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.382:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Yadro : Cleaned.
:mozilla.130:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.397:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.398:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.69:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.70:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.72:C:\Documents and Settings\Rémi Menotti\Application Data\Mozilla\Firefox\Profiles\8avpm0mw.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
C:\Documents and Settings\Rémi Menotti\Cookies\rémi menotti@zedo[1].txt -> TrackingCookie.Zedo : Cleaned.
C:\Program Files\Fichiers communs\{646197C3-0710-1036-0906-050526050021}\Update.exe -> Trojan.Starter.65 : Cleaned with backup (quarantined).


::Report end

Répondre à taillessterror

bonjour
vérifier si l'infection Vundo est entièrement nettoyée

Télécharger sur le Bureau.
Vundofix

= Double-clic VundoFix.exe.
=Cocher la case Run VundoFix as a task.
=Attendre le redemarrage de Vundofix

=Clic Scan for Vundo..
=Puis clic Remove Vundo.
= Puis yes
= Le Bureau disparaît un moment lors de la suppression des fichiers.
=Message shutdown; clic OK
=Redémarrage auto
=copier le rapport qui est dans C:\vundofix.txt

Répondre à mogadon

voila :


VundoFix V5.1.7

Running as SYSTEM
from c:\windows\system32\VundoFix.exe

Checking Java version...

Java version is 1.5.0.6

Scan started at 03:17:14 13/08/2006

Listing files found while scanning....

No infected files were found.


Beginning removal...



Alors jfé quoi maintenan c'est parti ???

Répondre à taillessterror

C:\Documents and Settings\Rémi Menotti\Bureau\HijackThis.exe <-- renomme le en scanner.Exe
double-clic sur scanner.Exe
colle un nouveau rapport ici.

Répondre à Malekal_morte

voila :

Logfile of HijackThis v1.99.1
Scan saved at 15:13:23, on 13/08/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\ASUS\Asus Probe\AsusProb.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Pando Networks\Pando\Pando.exe
C:\Program Files\Winamp\winampa.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\program files\steam\steam.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Xfire\Xfire.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Winamp\Winamp.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Rémi Menotti\Bureau\scanner.Exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.orange.fr/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: IeCatch5 Class - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\PROGRA~1\FlashGet\jccatch.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {8945AD4C-54EE-4DCC-B524-A5CF7952EF68} - C:\WINDOWS\system32\vtutt.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [NVMixerTray] "C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [ASUS Probe] C:\Program Files\ASUS\Asus Probe\AsusProb.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Pando] C:\Program Files\Pando Networks\Pando\Pando.exe /Automation
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [BitComet] "C:\Program Files\BitComet\BitComet.exe"
O4 - HKCU\..\Run: [VoipCheapCom] "C:\Program Files\VoipCheapCom\VoipCheapCom.exe" -nosplash -minimized
O4 - HKCU\..\Run: [VoipDiscount] "C:\Program Files\VoipDiscount.com\VoipDiscount\VoipDiscount.exe" -nosplash -minimized
O4 - HKCU\..\Run: [Pando] C:\Program Files\Pando Networks\Pando\pando.exe /Automation
O4 - HKCU\..\Run: [Eots] "C:\WINDOWS\WNSXS~1\scanregw.exe" -vt yazr
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\Xfire.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O8 - Extra context menu item: Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Télécharger tout avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU)
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537 [...] scan53.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://drivers1.free.fr/telecharge [...] 2&version=
O18 - Protocol: bw+0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: offline-8876480 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - Winlogon Notify: vtutt - C:\WINDOWS\system32\vtutt.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: McAfee.com Personal Firewall Service (MpfService) - McAfee.com Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

Répondre à taillessterror

Télécharge ce fichier - combofix.exe
et sauvegarde le sur ton bureau et pas ailleurs!


Clic sur le menu Démarrer puis executer et copie/colle ceci :
"%userprofile%\Bureau\combofix.exe" /v vtutt
puis clic sur OK.

Ne touche a rien et attends que combofix ait terminé, un rapport sera créé. Poste le rapport.
Copie/colle un nouveau rapport HijackThis avec.

Répondre à Malekal_morte

rapport combofix :

(((((((((((((((((((((((((((((((((((((((((((((((( Vundo Log )))))))))))))))))))))))))))))))))))))))))))))))))))))


C:\WINDOWS\SYSTEM32\VTUTT.DLL
C:\WINDOWS\SYSTEM32\TTUTV.INI


* * * POST RUN FILES/FOLDERS * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *


C:\WINDOWS\SYSTEM32\TTUTV.INI

21:07:36,78
(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))


2006-08-13 16:49:50 ( .D... ) "C:\Program Files\Street Hacker"
2006-08-13 16:43:38 ( .D... ) "C:\Program Files\Messenger Plus! Live"
2006-08-13 15:41:02 ( .D... ) "C:\Program Files\MessengerPlus! 3"
2006-08-12 16:00:50 ( .D... ) "C:\Program Files\ewido anti-spyware 4.0"
2006-08-11 19:33:24 176709 ( A.... ) "C:\WINDOWS\tsc.exe"
2006-08-11 19:33:24 71749 ( A.... ) "C:\WINDOWS\hcextoutput.dll"
2006-08-11 18:47:08 ( .D... ) "C:\Program Files\Fichiers communs\{646197C3-0710-1036-0906-050526050021}"
2006-08-11 13:38:08 131072 ( A.... ) "C:\WINDOWS\system32\SpoonUninstall.exe"
2006-08-11 13:38:00 ( .D... ) "C:\Program Files\Illustrate"
2006-08-11 13:26:16 133120 ( A.... ) "C:\WINDOWS\system32\zip32.dll"
2006-08-09 16:57:30 ( .D... ) "C:\Documents and Settings\R‚mi Menotti\Application Data\River Past G4"
2006-08-08 18:53:28 635520 ( A.... ) "C:\WINDOWS\system32\aswBoot.exe"
2006-08-08 01:26:18 ( .D... ) "C:\Program Files\Lavalys"
2006-08-07 14:21:12 118784 ( ....R ) "C:\WINDOWS\bwUnin-7.2.0.157-8876480SL.exe"
2006-08-06 22:52:06 ( .D... ) "C:\Documents and Settings\R‚mi Menotti\Application Data\Jasc"
2006-08-05 08:18:08 90112 ( A.... ) "C:\WINDOWS\system32\AVASTSS.scr"
2006-08-04 17:37:38 196608 ( A.... ) "C:\WINDOWS\system32\dtu100.dll"
2006-08-04 17:37:38 73728 ( A.... ) "C:\WINDOWS\system32\dpl100.dll"
2006-08-03 17:35:24 ( .D... ) "C:\Documents and Settings\R‚mi Menotti\Application Data\Talkback"
2006-08-03 17:34:58 ( .D... ) "C:\Documents and Settings\R‚mi Menotti\Application Data\Mozilla"
2006-08-03 17:34:50 ( .D... ) "C:\Program Files\Mozilla Firefox 2 Beta 1"
2006-08-03 17:14:12 ( .D... ) "C:\Program Files\Audacity"
2006-08-03 07:06:36 ( .D... ) "C:\Program Files\Microsoft Baseline Security Analyzer 2"
2006-08-03 07:01:32 ( .D... ) "C:\Program Files\Microsoft Baseline Security Analyzer"
2006-08-03 06:49:36 ( .D... ) "C:\Program Files\Fichiers communs\NSV"
2006-08-03 05:07:20 ( .D... ) "C:\Program Files\Winamp"
2006-08-03 00:03:16 ( .D... ) "C:\Program Files\Fake Webcam"
2006-08-02 23:23:58 ( .D... ) "C:\Documents and Settings\R‚mi Menotti\Application Data\VoipDiscount"
2006-08-02 17:08:08 ( .D... ) "C:\Program Files\Windows Media Connect 2"
2006-08-01 00:55:36 ( .D... ) "C:\Documents and Settings\R‚mi Menotti\Application Data\uTorrent"
2006-08-01 00:55:34 ( .D... ) "C:\Program Files\uTorrent"
2006-07-31 19:56:06 ( .D... ) "C:\Program Files\Cyanide"
2006-07-27 15:26:20 679424 ( A.... ) "C:\WINDOWS\system32\inetcomm.dll"
2006-07-27 04:06:00 3596288 ( A.... ) "C:\WINDOWS\system32\qt-dx331.dll"
2006-07-21 10:27:28 72704 ( A.... ) "C:\WINDOWS\system32\hlink.dll"
2006-07-14 17:41:06 332288 ( A.... ) "C:\WINDOWS\system32\netapi32.dll"
2006-07-13 15:36:02 8509952 ( A.... ) "C:\WINDOWS\system32\shell32.dll"
2006-07-08 16:36:38 1077328 ( A.... ) "C:\WINDOWS\vsapi32.dll"
2006-07-08 16:36:38 86094 ( A.... ) "C:\WINDOWS\BPMNT.dll"
2006-07-08 16:35:52 507904 ( A.... ) "C:\WINDOWS\TMUPDATE.DLL"
2006-07-08 16:35:52 69689 ( A.... ) "C:\WINDOWS\UNZIP.DLL"
2006-07-08 16:35:50 286720 ( A.... ) "C:\WINDOWS\PATCH.EXE"
2006-07-07 01:19:54 ( .D... ) "C:\Program Files\FlashGet"
2006-07-07 00:20:14 ( .D... ) "C:\Documents and Settings\R‚mi Menotti\Application Data\VoipCheapCom"
2006-07-05 12:56:38 1049088 ( A.... ) "C:\WINDOWS\system32\kernel32.dll"
2006-07-04 18:57:38 ( .D... ) "C:\Program Files\BitComet"
2006-07-03 23:40:52 778240 ( A.... ) "C:\WINDOWS\system32\divx_xx0c.dll"
2006-07-03 23:40:52 778240 ( A.... ) "C:\WINDOWS\system32\divx_xx07.dll"
2006-07-03 23:40:50 761856 ( A.... ) "C:\WINDOWS\system32\divx_xx11.dll"
2006-07-03 23:40:50 620180 ( A.... ) "C:\WINDOWS\system32\DivX.dll"
2006-07-01 23:37:36 ( .D... ) "C:\Program Files\MSN Messenger"
2006-06-29 15:27:06 ( .D... ) "C:\Program Files\Pando Networks"
2006-06-27 05:40:02 3584 ( A.... ) "C:\WINDOWS\system32\WgaLogon.dll"
2006-06-26 19:41:32 148480 ( A.... ) "C:\WINDOWS\system32\dnsapi.dll"
2006-06-26 19:41:32 8192 ( A.... ) "C:\WINDOWS\system32\rasadhlp.dll"
2006-06-26 14:47:40 ( .D... ) "C:\Program Files\HLSW"
2006-06-22 16:17:30 ( .D... ) "C:\Documents and Settings\R‚mi Menotti\Application Data\Xfire"
2006-06-22 16:17:28 ( .DS.. ) "C:\Program Files\Xfire"
2006-06-21 12:49:48 53248 ( A.... ) "C:\WINDOWS\system32\dpuGUI10.dll"
2006-06-21 12:43:10 520192 ( A.... ) "C:\WINDOWS\system32\DivXsm.exe"
2006-06-21 12:42:58 1044480 ( A.... ) "C:\WINDOWS\system32\libdivx.dll"
2006-06-21 12:42:58 200704 ( A.... ) "C:\WINDOWS\system32\ssldivx.dll"
2006-06-21 12:34:22 593920 ( A.... ) "C:\WINDOWS\system32\dpuGUI11.dll"
2006-06-21 12:34:22 344064 ( A.... ) "C:\WINDOWS\system32\dpus11.dll"
2006-06-21 12:34:22 294912 ( A.... ) "C:\WINDOWS\system32\dpu11.dll"
2006-06-21 12:34:22 294912 ( A.... ) "C:\WINDOWS\system32\dpu10.dll"
2006-06-21 12:34:22 57344 ( A.... ) "C:\WINDOWS\system32\dpv11.dll"
2006-06-21 12:33:42 118784 ( A.... ) "C:\WINDOWS\system32\DivXCodecUpdateChecker.exe"
2006-06-21 12:33:42 12288 ( A.... ) "C:\WINDOWS\system32\DivXWMPExtType.dll"
2006-06-20 19:36:10 ( .D... ) "C:\Program Files\directx"
2006-06-18 18:22:12 ( .D... ) "C:\Documents and Settings\R‚mi Menotti\Application Data\Symantec"
2006-06-18 18:21:54 ( .D... ) "C:\Program Files\Symantec"
2006-06-18 18:21:52 ( .D... ) "C:\Program Files\Fichiers communs\Symantec Shared"
2006-06-18 18:01:14 ( .D... ) "C:\Program Files\AxBx"
2006-06-18 17:57:24 ( .D... ) "C:\Program Files\GameSpy Arcade"
2006-06-18 15:53:24 36864 ( A.... ) "C:\WINDOWS\system32\frapsvid.dll"
2006-06-14 11:58:46 ( .D... ) "C:\Documents and Settings\R‚mi Menotti\Application Data\AdobeUM"
2006-06-07 21:33:48 845968 ( A.... ) "C:\WINDOWS\system32\AI - Series.scr"
2006-06-06 12:37:54 48936 ( A.... ) "C:\WINDOWS\system32\sirenacm.dll"
2006-06-02 16:52:14 81920 ( ....R ) "C:\WINDOWS\bwUnin-6.1.4.36-8876480L.exe"
2006-05-24 19:54:46 60416 ( A.... ) "C:\WINDOWS\ALCFDRTM.EXE"
2006-05-24 14:29:00 47564 ( A.SHR ) "C:\NTDETECT.COM"
2006-05-24 13:32:44 62 ( A.SH. ) "C:\Documents and Settings\R‚mi Menotti\Application Data\desktop.ini"
2006-05-24 12:52:50 0 ( A.... ) "C:\AUTOEXEC.BAT"
2006-05-19 15:23:36 112128 ( A.... ) "C:\WINDOWS\system32\dhcpcsvc.dll"
2006-05-19 15:23:36 95744 ( A.... ) "C:\WINDOWS\system32\iphlpapi.dll"


(((((((((((((((((((((((((((((((((((((( Files Created - Last 30days )))))))))))))))))))))))))))))))))))))))))))


2006-08-12 00:50 53ÿ248 C:\WINDOWS\system32\Process.exe
2006-08-12 00:50 42ÿ496 C:\WINDOWS\system32\swreg.exe
2006-08-12 00:50 40ÿ960 C:\WINDOWS\system32\swsc.exe
2006-08-12 00:50 288ÿ417 C:\WINDOWS\system32\SrchSTS.exe
2006-08-11 13:38 131ÿ072 C:\WINDOWS\system32\SpoonUninstall.exe
2006-08-11 13:26 133ÿ120 C:\WINDOWS\system32\zip32.dll
2006-08-07 15:41 118ÿ784 C:\WINDOWS\bwUnin-7.2.0.157-8876480SL.exe
2006-08-04 17:37 73ÿ728 C:\WINDOWS\system32\dpl100.dll
2006-08-04 17:37 196ÿ608 C:\WINDOWS\system32\dtu100.dll
2006-08-03 16:16 178ÿ408 C:\WINDOWS\system32\muweb.dll
2006-08-03 16:16 128ÿ744 C:\WINDOWS\system32\mucltui.dll
2006-07-27 04:05 3ÿ596ÿ288 C:\WINDOWS\system32\qt-dx331.dll
2006-07-08 16:36 86ÿ094 C:\WINDOWS\BPMNT.dll
2006-07-08 16:36 71ÿ749 C:\WINDOWS\hcextoutput.dll
2006-07-08 16:36 176ÿ709 C:\WINDOWS\tsc.exe
2006-07-08 16:36 1ÿ077ÿ328 C:\WINDOWS\vsapi32.dll
2006-07-08 16:35 69ÿ689 C:\WINDOWS\UNZIP.DLL
2006-07-08 16:35 507ÿ904 C:\WINDOWS\TMUPDATE.DLL
2006-07-08 16:35 286ÿ720 C:\WINDOWS\PATCH.EXE
2006-07-05 01:28 119ÿ568 C:\WINDOWS\system32\vb6fr.dll
2006-07-03 23:40 778ÿ240 C:\WINDOWS\system32\divx_xx0c.dll
2006-07-03 23:40 778ÿ240 C:\WINDOWS\system32\divx_xx07.dll
2006-07-03 23:40 761ÿ856 C:\WINDOWS\system32\divx_xx11.dll
2006-07-03 23:40 620ÿ180 C:\WINDOWS\system32\DivX.dll
2006-06-29 15:12 90ÿ112 C:\WINDOWS\system32\AVASTSS.scr
2006-06-29 15:12 635ÿ520 C:\WINDOWS\system32\aswBoot.exe
2006-06-29 04:37 2ÿ013ÿ265ÿ920 C:\pagefile.sys


(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))

*Note* empty entries are not shown

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\System32\\NvCpl.dll,NvStartup"
"nwiz"="nwiz.exe /install"
"NvMediaCenter"="RUNDLL32.EXE C:\\WINDOWS\\System32\\NvMcTray.dll,NvTaskbarInit"
"MPFExe"="C:\\PROGRA~1\\McAfee.com\\PERSON~1\\MpfTray.exe"
"SoundMan"="SOUNDMAN.EXE"
"SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_06\\bin\\jusched.exe"
"LVCOMSX"="C:\\WINDOWS\\system32\\LVCOMSX.EXE"
"LogitechVideoRepair"="C:\\Program Files\\Logitech\\Video\\ISStart.exe"
"LogitechVideoTray"="C:\\Program Files\\Logitech\\Video\\LogiTray.exe"
"NVMixerTray"="\"C:\\Program Files\\NVIDIA Corporation\\NvMixer\\NVMixerTray.exe\""
"BluetoothAuthenticationAgent"="rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent"
"WOOWATCH"="C:\\PROGRA~1\\Wanadoo\\Watch.exe"
"WOOTASKBARICON"="C:\\PROGRA~1\\Wanadoo\\GestMaj.exe TaskBarIcon.exe"
"ASUS Probe"="C:\\Program Files\\ASUS\\Asus Probe\\AsusProb.exe"
"avast!"="C:\\PROGRA~1\\ALWILS~1\\Avast4\\ashDisp.exe"
"Pando"="C:\\Program Files\\Pando Networks\\Pando\\Pando.exe /Automation"
@=""
"WinampAgent"="C:\\Program Files\\Winamp\\winampa.exe"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\ctfmon.exe"
"WOOKIT"="C:\\PROGRA~1\\Wanadoo\\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM="
"Steam"="\"c:\\program files\\steam\\steam.exe\" -silent"
"LDM"="C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe"
"BitComet"="\"C:\\Program Files\\BitComet\\BitComet.exe\""
"VoipCheapCom"="\"C:\\Program Files\\VoipCheapCom\\VoipCheapCom.exe\" -nosplash -minimized"
"VoipDiscount"="\"C:\\Program Files\\VoipDiscount.com\\VoipDiscount\\VoipDiscount.exe\" -nosplash -minimized"
"Pando"="C:\\Program Files\\Pando Networks\\Pando\\pando.exe /Automation"
"Eots"="\"C:\\WINDOWS\\WNSXS~1\\scanregw.exe\" -vt yazr"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runonceex]
"flags"=dword:00000008

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runonceex\000]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\run]
"{646197C3-0710-1036-0906-050526050021}"="\"C:\\Program Files\\Fichiers communs\\{646197C3-0710-1036-0906-050526050021}\\Update.exe\" mc-110-12-0000272"

[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000000

[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="Ma page d'accueil"
"Flags"=dword:00000002
"Position"=hex:2c,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,e2,02,00,00,00,\
00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=dword:40000004
"OriginalStateInfo"=hex:18,00,00,00,ff,ff,00,00,ff,ff,00,00,ff,ff,ff,ff,ff,ff,\
ff,ff,04,00,00,00
"RestoredStateInfo"=hex:18,00,00,00,6a,02,00,00,23,00,00,00,a4,00,00,00,9a,00,\
00,00,01,00,00,00

[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"CTFMON.EXE"="C:\\WINDOWS\\System32\\CTFMON.EXE"

[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091

[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\run]
"CTFMON.EXE"="C:\\WINDOWS\\System32\\CTFMON.EXE"

[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Pré-chargeur Browseui"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Démon de cache des catégories de composant"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="ewido anti-spyware 4.0"

HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system
DisableRegistryTools REG_DWORD 0 (0x0)



Contents of the 'Scheduled Tasks' folder
C:\WINDOWS\tasks\Symantec NetDetect.job

Completion time: 13/08/2006 21:07:43,59
ComboFix ver 06.07.15/30 - This logfile is located at C:\ComboFix.txt



Rapport HijackThis :

Logfile of HijackThis v1.99.1
Scan saved at 21:11:56, on 13/08/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\ASUS\Asus Probe\AsusProb.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Pando Networks\Pando\Pando.exe
C:\Program Files\Winamp\winampa.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\program files\steam\steam.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\Program Files\Xfire\Xfire.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\Watch.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Rémi Menotti\Bureau\hijackthis.Exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.orange.fr/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: IeCatch5 Class - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\PROGRA~1\FlashGet\jccatch.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {8945AD4C-54EE-4DCC-B524-A5CF7952EF68} - C:\WINDOWS\system32\vtutt.dll (file missing)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [NVMixerTray] "C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [ASUS Probe] C:\Program Files\ASUS\Asus Probe\AsusProb.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Pando] C:\Program Files\Pando Networks\Pando\Pando.exe /Automation
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [BitComet] "C:\Program Files\BitComet\BitComet.exe"
O4 - HKCU\..\Run: [VoipCheapCom] "C:\Program Files\VoipCheapCom\VoipCheapCom.exe" -nosplash -minimized
O4 - HKCU\..\Run: [VoipDiscount] "C:\Program Files\VoipDiscount.com\VoipDiscount\VoipDiscount.exe" -nosplash -minimized
O4 - HKCU\..\Run: [Pando] C:\Program Files\Pando Networks\Pando\pando.exe /Automation
O4 - HKCU\..\Run: [Eots] "C:\WINDOWS\WNSXS~1\scanregw.exe" -vt yazr
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\Xfire.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O8 - Extra context menu item: Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Télécharger tout avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU)
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537 [...] scan53.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://drivers1.free.fr/telecharge [...] 2&version=
O18 - Protocol: bw+0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: offline-8876480 - {DD2379D2-70F2-4FEC-B27B-82A06668D8AA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - Winlogon Notify: vtutt - C:\WINDOWS\system32\vtutt.dll (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: McAfee.com Personal Firewall Service (MpfService) - McAfee.com Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe



Répondre à taillessterror

Tu as plusieurs antivirus dont avast + panda.
Ce n'est pas bon du tout pour ton ordinateur.

un seul antivirus par machine

Sur HijackThis, coche ces lignes :
O2 - BHO: (no name) - {8945AD4C-54EE-4DCC-B524-A5CF7952EF68} - C:\WINDOWS\system32\vtutt.dll (file missing)
O4 - HKCU\..\Run: [Eots] "C:\WINDOWS\WNSXS~1\scanregw.exe" -vt yazr
O20 - Winlogon Notify: vtutt - C:\WINDOWS\system32\vtutt.dll (file missing)
--> clic sur fix checked


-- Ouvre le poste de travail
-- Clic sur le menu outils en haut à droite puis options des dossiers
-- Dans la nouvelle fenêtre, clic sur l'onglet Affichage en haut
-- Coche dans la liste "Afficher les fichiers cachés"
-- Décoche "Masquer les fichiers du système"

Supprime ces fichiers/dossiers, de préférences en mode sans échec :
C:\WINDOWS\system32\SpoonUninstall.exe
C:\WINDOWS\bwUnin-7.2.0.157-8876480SL.exe
C:\\Program Files\Fichiers communs\\{646197C3-0710-1036-0906-050526050021}\Update.exe\
C:\WINDOWS\WNSXS~1\

Après cela c'est OK :)

- Nettoye ton ordinateur avec CCleaner : http://www.malekal.com/tutorial_CCleaner.html
- Désactive puis réactive la restauration du système :
- Mode d'emploi Windows XP

Tu peux ensuite désinstaller tous les programmes que l'on a utilisé.

je t'invite à jeter un coup d'oeil à ces liens dans la mesure du possible, essaye de rapporter ton infection :

Comment se protéger des virus : - Tout ceci est résume sur cette page : Sécuriser son ordinateur et connaître les menaces

Rapporte ton infection pour faire condamner les auteurs - créer ton message pour faire avancer les choses sur Malware-Complaints, pour faire entendre notre voix, nous devons être le plus nombreux possibles, alors rapport ton infection :
- Voir les règles du forum
- Après t'être enregistré à l'aide du bouton en haut "register", tu as alors sous forme de liste un sujet par type d'infection (Look2Me, Smitfraud, SpywareQuake etc..).
Si le malware que tu as eu n'apparaît pas dans la liste, ou si tu ne sais pas par quoi tu étais infecté(e), créé un message dans le sujet "Autres infections" conforme au règle du forum (age, ville, département etc..)
---> http://www.malwarecomplaints.info/viewforum.php?f=10

Répondre à Malekal_morte

je n'ai pas panda ! nimporte quoi o_O

Répondre à taillessterror

oups oui au temps pour moi :)

Essaye de rapporter ton infection :)


Message édité par Malekal_morte le 14-08-2006 à 16:53:37
Répondre à Malekal_morte
Tom's Guide > Forum > Sécurité - Virus > Mon ordinateur est bourré de virus help! rapport hijackthis
Aller à :

Il y a 933 utilisateurs connus et inconnus. Pour voir la liste des connectés connus, cliquez ici.

Attention

Vous allez répondre sur un sujet resté inactif pendant plus de 6 mois.
Assurez-vous d'apporter des éléments nouveaux à la discussion avant de poursuivre.

Répondre Annuler
Liens