Se connecter avec
S'enregistrer | Connectez-vous

hacked by godzilla

Dernière réponse : dans Sécurité
Lassé par la pub ? Créez un compte

voilà mon rapport,
je n'y comprends rien , merci de ton aide
Logfile of HijackThis v1.99.1
Scan saved at 21:46:49, on 26/03/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\sm56hlpr.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\System32\WScript.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\svchost.exe
C:\DOCUME~1\demik\LOCALS~1\Temp\Répertoire temporaire 1 pour hijackthis.zip\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Hacked by Godzilla
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Lexmark_X79-55] C:\WINDOWS\system32\lsasss.exe
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [MS32DLL] C:\WINDOWS\MS32DLL.dll.vbs
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [fsc-reminder.exe] C:\WINDOWS\reminder\fsc-reminder.exe 2453773 10
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?f38357cb7691497093945a41c6c45631
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?f38357cb7691497093945a41c6c45631
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://momancherry.spaces.live.com//PhotoUpload/MsnPUpl...
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111401/housecall...
O16 - DPF: {BF3CD111-6278-11D2-9EA3-00A0C9251384} (O2C-Player Version 1.x) - http://www.o2c.de/download/O2CPlayer.CAB
O16 - DPF: {C36112BF-2FA3-4694-8603-3B510EA3B465} (Lycos File Upload Component) - http://f003.mail.caramail.lycos.fr/app/uploader/FileUpl...
O18 - Protocol: bw+0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: offline-8876480 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - AppInit_DLLs:
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

Re,

Télécharge Clean.zip (de Malekal),
Décompresse-le sur ton bureau (Clique-Droit/Extraire tout), tu dois obtenir un dossier Clean.
Ouvre le dossier clean, double-clique sur clean.cmd.
Choisis l'option 1 puis patiente. Poste ensuite le contenu du rapport.

&

Télécharge [#FF0000]FindAWF.exe[/#F] (par Noahdfear) sur ton Bureau.

Double-clique FindAWF.exe
Un fichier texte sera produit et s'affichera à l'écran (awf.txt)
Copie/colle le contenu du fichier dans ta prochaine réponse.

Logfile of HijackThis v1.99.1
Scan saved at 21:48:51, on 26/03/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\sm56hlpr.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\System32\WScript.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Windows Live Toolbar\msn_sl.exe
C:\DOCUME~1\demik\LOCALS~1\Temp\Répertoire temporaire 2 pour hijackthis.zip\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Hacked by Godzilla
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Lexmark_X79-55] C:\WINDOWS\system32\lsasss.exe
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [MS32DLL] C:\WINDOWS\MS32DLL.dll.vbs
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [fsc-reminder.exe] C:\WINDOWS\reminder\fsc-reminder.exe 2453773 10
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?f38357cb7691497093945a41c6c45631
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?f38357cb7691497093945a41c6c45631
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://momancherry.spaces.live.com//PhotoUpload/MsnPUpl...
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111401/housecall...
O16 - DPF: {BF3CD111-6278-11D2-9EA3-00A0C9251384} (O2C-Player Version 1.x) - http://www.o2c.de/download/O2CPlayer.CAB
O16 - DPF: {C36112BF-2FA3-4694-8603-3B510EA3B465} (Lycos File Upload Component) - http://f003.mail.caramail.lycos.fr/app/uploader/FileUpl...
O18 - Protocol: bw+0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: offline-8876480 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - AppInit_DLLs:
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

apport clean par Malekal_morte - http://www.malekal.com
Option 1, executee le 26/03/2007 a 21:56:02,09

*** Recherche de fichiers sur C:
C:\autorun.inf FOUND

*** Recherche des fichiers dans C:\WINDOWS\

*** Recherche des fichiers dans C:\WINDOWS\system32

"C:\Program Files\DivX\Google\Firefox\ffinstaller.exe" FOUND
"C:\Program Files\MSN\" FOUND
*** Fin du rapport !


Find AWF report by noahdfear ©2006


bak folders found
~~~~~~~~~~~

Le volume dans le lecteur C s'appelle N00785
Le num‚ro de s‚rie du volume est 5489-7640

R‚pertoire de C:\PROGRA~1\ITUNES\BAK

05/03/2007 12:33 <REP> .
05/03/2007 12:33 <REP> ..
30/10/2006 10:36 256ÿ576 iTunesHelper.exe
1 fichier(s) 256ÿ576 octets
2 R‚p(s) 32ÿ609ÿ746ÿ944 octets libres
Le volume dans le lecteur C s'appelle N00785
Le num‚ro de s‚rie du volume est 5489-7640

R‚pertoire de C:\PROGRA~1\MSNMES~1\BAK

05/03/2007 12:33 <REP> .
05/03/2007 12:33 <REP> ..
0 fichier(s) 0 octets
2 R‚p(s) 32ÿ609ÿ746ÿ944 octets libres
Le volume dans le lecteur C s'appelle N00785
Le num‚ro de s‚rie du volume est 5489-7640

R‚pertoire de C:\PROGRA~1\QUICKT~1\BAK

05/03/2007 12:33 <REP> .
05/03/2007 12:33 <REP> ..
25/10/2006 19:58 282ÿ624 qttask.exe
1 fichier(s) 282ÿ624 octets
2 R‚p(s) 32ÿ609ÿ742ÿ848 octets libres
Le volume dans le lecteur C s'appelle N00785
Le num‚ro de s‚rie du volume est 5489-7640

R‚pertoire de C:\PROGRA~1\SHAREAZA\BAK

05/03/2007 12:33 <REP> .
05/03/2007 12:33 <REP> ..
04/11/2006 04:28 4ÿ468ÿ736 Shareaza.exe
1 fichier(s) 4ÿ468ÿ736 octets
2 R‚p(s) 32ÿ609ÿ742ÿ848 octets libres
Le volume dans le lecteur C s'appelle N00785
Le num‚ro de s‚rie du volume est 5489-7640

R‚pertoire de C:\WINDOWS\REMINDER\BAK

05/03/2007 12:33 <REP> .
05/03/2007 12:33 <REP> ..
19/01/2005 18:10 28ÿ672 fsc-reminder.exe
1 fichier(s) 28ÿ672 octets
2 R‚p(s) 32ÿ609ÿ742ÿ848 octets libres
Le volume dans le lecteur C s'appelle N00785
Le num‚ro de s‚rie du volume est 5489-7640

R‚pertoire de C:\WINDOWS\SYSTEM32\BAK

11/03/2007 21:50 <REP> .
11/03/2007 21:50 <REP> ..
05/08/2004 14:00 15ÿ360 ctfmon.exe
09/09/2005 09:25 77ÿ824 hkcmd.exe
09/09/2005 09:25 114ÿ688 igfxpers.exe
09/09/2005 09:25 94ÿ208 igfxtray.exe
05/03/2007 12:32 36ÿ732 lsasss.exe
27/05/2005 09:18 221ÿ184 LVCOMSX.EXE
09/07/2001 11:50 155ÿ648 NeroCheck.exe
7 fichier(s) 715ÿ644 octets
2 R‚p(s) 32ÿ609ÿ742ÿ848 octets libres
Le volume dans le lecteur C s'appelle N00785
Le num‚ro de s‚rie du volume est 5489-7640

R‚pertoire de C:\PROGRA~1\ALWILS~1\AVAST4\BAK

05/03/2007 12:33 <REP> .
05/03/2007 12:33 <REP> ..
25/09/2006 18:42 108ÿ160 ashDisp.exe
1 fichier(s) 108ÿ160 octets
2 R‚p(s) 32ÿ609ÿ742ÿ848 octets libres
Le volume dans le lecteur C s'appelle N00785
Le num‚ro de s‚rie du volume est 5489-7640

R‚pertoire de C:\PROGRA~1\HP\HPSOFT~1\BAK

05/03/2007 12:33 <REP> .
05/03/2007 12:33 <REP> ..
19/02/2006 02:41 49ÿ152 HPWuSchd2.exe
1 fichier(s) 49ÿ152 octets
2 R‚p(s) 32ÿ609ÿ742ÿ848 octets libres
Le volume dans le lecteur C s'appelle N00785
Le num‚ro de s‚rie du volume est 5489-7640

R‚pertoire de C:\PROGRA~1\LOGITECH\VIDEO\BAK

05/03/2007 12:33 <REP> .
05/03/2007 12:33 <REP> ..
08/06/2005 15:24 458ÿ752 ISStart.exe
08/06/2005 15:14 217ÿ088 LogiTray.exe
08/06/2005 14:44 196ÿ608 ManifestEngine.exe
3 fichier(s) 872ÿ448 octets
2 R‚p(s) 32ÿ609ÿ742ÿ848 octets libres
Le volume dans le lecteur C s'appelle N00785
Le num‚ro de s‚rie du volume est 5489-7640

R‚pertoire de C:\PROGRA~1\SYNAPT~1\SYNTP\BAK

05/03/2007 12:33 <REP> .
05/03/2007 12:33 <REP> ..
15/04/2005 09:48 708ÿ697 SynTPEnh.exe
1 fichier(s) 708ÿ697 octets
2 R‚p(s) 32ÿ609ÿ742ÿ848 octets libres
Le volume dans le lecteur C s'appelle N00785
Le num‚ro de s‚rie du volume est 5489-7640

R‚pertoire de C:\PROGRA~1\GOOGLE\GOOGLE~1\121128~1.546\BAK

11/03/2007 21:50 <REP> .
11/03/2007 21:50 <REP> ..
06/03/2007 20:35 171ÿ448 GoogleToolbarNotifier.exe
1 fichier(s) 171ÿ448 octets
2 R‚p(s) 32ÿ609ÿ738ÿ752 octets libres
Le volume dans le lecteur C s'appelle N00785
Le num‚ro de s‚rie du volume est 5489-7640

R‚pertoire de C:\PROGRA~1\ADOBE\PHOTOS~1\3.0\APPS\BAK

11/03/2007 21:50 <REP> .
11/03/2007 21:50 <REP> ..
23/06/2005 21:33 57ÿ344 apdproxy.exe
1 fichier(s) 57ÿ344 octets
2 R‚p(s) 32ÿ609ÿ738ÿ752 octets libres
Le volume dans le lecteur C s'appelle N00785
Le num‚ro de s‚rie du volume est 5489-7640

R‚pertoire de C:\PROGRA~1\LOGITECH\DESKTO~1\8876480\PROGRAM\BAK

05/03/2007 12:33 <REP> .
05/03/2007 12:33 <REP> ..
29/10/2006 18:44 36ÿ864 LogitechDesktopMessenger.exe
1 fichier(s) 36ÿ864 octets
2 R‚p(s) 32ÿ609ÿ738ÿ752 octets libres


Duplicate files of bak directory contents
~~~~~~~~~~~~~~~~~~~~~~~

257088 2 Mar 2007 "C:\Program Files\iTunes\iTunesHelper.exe"
256576 30 Oct 2006 "C:\Program Files\iTunes\bak\iTunesHelper.exe"
102400 14 Mar 2007 "C:\WINDOWS\Installer\{01B51908-02EF-453B-87A9-815182E8C2F2}\iTunesIco.exe"
116288 14 Mar 2007 "C:\Documents and Settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 7.1.0.59\iTunesSetupAdmin.exe"
282624 16 Feb 2007 "C:\Program Files\QuickTime\qttask.exe"
282624 25 Oct 2006 "C:\Program Files\QuickTime\bak\qttask.exe"
37631 11 Mar 2007 "C:\Program Files\Shareaza\Shareaza.exe"
4468736 4 Nov 2006 "C:\Program Files\Shareaza\bak\Shareaza.exe"
37631 11 Mar 2007 "C:\WINDOWS\reminder\fsc-reminder.exe"
28672 19 Jan 2005 "C:\WINDOWS\reminder\bak\fsc-reminder.exe"
15360 5 Aug 2004 "C:\WINDOWS\system32\ctfmon.exe"
15360 5 Aug 2004 "C:\WINDOWS\system32\bak\ctfmon.exe"
37631 11 Mar 2007 "C:\WINDOWS\system32\hkcmd.exe"
77824 9 Sep 2005 "C:\WINDOWS\system32\bak\hkcmd.exe"
37631 11 Mar 2007 "C:\WINDOWS\system32\igfxpers.exe"
114688 9 Sep 2005 "C:\WINDOWS\system32\bak\igfxpers.exe"
37631 11 Mar 2007 "C:\WINDOWS\system32\igfxtray.exe"
94208 9 Sep 2005 "C:\WINDOWS\system32\bak\igfxtray.exe"
37631 11 Mar 2007 "C:\WINDOWS\system32\lsasss.exe"
36732 5 Mar 2007 "C:\WINDOWS\system32\bak\lsasss.exe"
37631 11 Mar 2007 "C:\WINDOWS\system32\LVCOMSX.EXE"
221184 27 May 2005 "C:\WINDOWS\system32\bak\LVCOMSX.EXE"
37631 11 Mar 2007 "C:\WINDOWS\system32\NeroCheck.exe"
155648 9 Jul 2001 "C:\WINDOWS\system32\bak\NeroCheck.exe"
108160 15 Jan 2007 "C:\Program Files\Alwil Software\Avast4\ashDisp.exe"
108160 25 Sep 2006 "C:\Program Files\Alwil Software\Avast4\bak\ashDisp.exe"
37631 11 Mar 2007 "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe"
49152 19 Feb 2006 "C:\Program Files\HP\HP Software Update\bak\HPWuSchd2.exe"
37631 11 Mar 2007 "C:\Program Files\Logitech\Video\ISStart.exe"
458752 8 Jun 2005 "C:\Program Files\Logitech\Video\bak\ISStart.exe"
37631 11 Mar 2007 "C:\Program Files\Logitech\Video\LogiTray.exe"
217088 8 Jun 2005 "C:\Program Files\Logitech\Video\bak\LogiTray.exe"
37631 11 Mar 2007 "C:\Program Files\Logitech\Video\ManifestEngine.exe"
196608 8 Jun 2005 "C:\Program Files\Logitech\Video\bak\ManifestEngine.exe"
37631 11 Mar 2007 "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
708697 15 Apr 2005 "C:\fsc.tmp\driver\touchpad\1003205_synaptics_8_0_4_0\SynTPEnh.exe"
708697 15 Apr 2005 "C:\Program Files\Synaptics\SynTP\bak\SynTPEnh.exe"
708697 15 Apr 2005 "C:\Program Files\Synaptics\SynTP\Media\SynTPEnh.exe"
52272 6 Mar 2007 "C:\Program Files\Google\googletoolbar2user.exe"
867424 6 Mar 2007 "C:\Documents and Settings\demik\Mes documents\GoogleToolbarInstaller_ADBx_fr_401019_signed.exe"
138168 6 Mar 2007 "C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"
37631 11 Mar 2007 "C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe"
171448 6 Mar 2007 "C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\bak\GoogleToolbarNotifier.exe"
37631 11 Mar 2007 "C:\Program Files\Adobe\Photoshop Album Edition D‚couverte\3.0\Apps\apdproxy.exe"
57344 23 Jun 2005 "C:\Program Files\Adobe\Photoshop Album Edition D‚couverte\3.0\Apps\bak\apdproxy.exe"
37631 11 Mar 2007 "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe"
36864 29 Oct 2006 "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\bak\LogitechDesktopMessenger.exe"


end of report

Je verrai tout ça demain.

Télécharge puis installe AVG Anti-Spyware (AVG AS)
Une fois AVG AS lancé, clique sur "Mise à jour"
Ferme le programme.
AIDE : Tuto sur AVG Antispyware (Malekal)

Redémarre en mode sans échec

Relance AVG AS puis choisis l'onglet "Analyse"
Puis l'onglet "Paramètres"
Sous la question "Comment réagir ?", clique sur "Actions recommandées" et choisis "Quarantaine"
Re-clique sur l'onglet "Analyse" puis réalise une "Analyse complète du système"

/!\ Si un fichier est infecté en fin d'analyse /!\
Clique sur "Appliquer toutes les actions"

Clique sur "Enregistrer le rapport" puis sur "Enregistrer le rapport sous"
Enregistre ce fichier texte sur ton bureau.

Redémarre normalement
Copie/Colle le rapport AVG AS ainsi qu'un rapport Hijackthis.

G Anti-Spyware - Rapport d'analyse
---------------------------------------------------------

+ Créé à: 00:34:21 28/03/2007

+ Résultat de l'analyse:



C:\Program Files\Synaptics\SynTP\SynTPEnh.exe1173642626 -> Downloader.Agent.awf : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009702.exe -> Downloader.Agent.awf : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009703.exe -> Downloader.Agent.awf : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009704.exe -> Downloader.Agent.awf : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009705.exe -> Downloader.Agent.awf : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009706.exe -> Downloader.Agent.awf : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009707.exe -> Downloader.Agent.awf : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009708.exe -> Downloader.Agent.awf : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009709.EXE -> Downloader.Agent.awf : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009710.exe -> Downloader.Agent.awf : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009711.exe -> Downloader.Agent.awf : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009712.exe -> Downloader.Agent.awf : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009713.exe -> Downloader.Agent.awf : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009714.exe -> Downloader.Agent.awf : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009715.exe -> Downloader.Agent.awf : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009716.exe -> Downloader.Agent.awf : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009717.exe -> Downloader.Agent.awf : Aucune action entreprise.
C:\WINDOWS\system32\bak\lsasss.exe -> Downloader.Agent.awf : Aucune action entreprise.
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\Program Files\Logitech\Video\ISStart.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\Program Files\Logitech\Video\LogiTray.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\Program Files\Logitech\Video\ManifestEngine.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\Program Files\Shareaza\Shareaza.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP78\A0010893.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP78\A0011039.rbf -> Hijacker.Agent.jh : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP78\A0011150.rbf -> Hijacker.Agent.jh : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011735.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011755.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011768.EXE -> Hijacker.Agent.jh : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011769.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011770.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011771.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011772.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011773.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011774.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011775.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011777.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011778.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\WINDOWS\reminder\fsc-reminder.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\WINDOWS\system32\LVCOMSX.EXE -> Hijacker.Agent.jh : Aucune action entreprise.
C:\WINDOWS\system32\NeroCheck.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\WINDOWS\system32\hkcmd.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\WINDOWS\system32\igfxpers.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\WINDOWS\system32\igfxtray.exe -> Hijacker.Agent.jh : Aucune action entreprise.
C:\WINDOWS\system32\lsasss.exe -> Hijacker.Agent.jh : Aucune action entreprise.
:mozilla.213:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.247realmedia : Aucune action entreprise.
:mozilla.214:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.247realmedia : Aucune action entreprise.
:mozilla.215:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.247realmedia : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@247realmedia[1].txt -> TrackingCookie.247realmedia : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@247realmedia[1].txt -> TrackingCookie.247realmedia : Aucune action entreprise.
:mozilla.142:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
:mozilla.158:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
:mozilla.217:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
:mozilla.48:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
:mozilla.50:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
:mozilla.51:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
:mozilla.52:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
:mozilla.53:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@divx.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@homestore.122.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@karavel.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@mistergooddeal.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@msnaccountservices.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@notrefamille.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@opodo.122.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@paypal.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@viamtvcom.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
:mozilla.101:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Adbrite : Aucune action entreprise.
:mozilla.102:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Adbrite : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@adbrite[2].txt -> TrackingCookie.Adbrite : Aucune action entreprise.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@adbrite[1].txt -> TrackingCookie.Adbrite : Aucune action entreprise.
:mozilla.49:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Adobe : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@www.adobe[1].txt -> TrackingCookie.Adobe : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@adrevolver[1].txt -> TrackingCookie.Adrevolver : Aucune action entreprise.
:mozilla.20:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Adtech : Aucune action entreprise.
:mozilla.22:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Adtech : Aucune action entreprise.
:mozilla.87:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Adtech : Aucune action entreprise.
:mozilla.88:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Adtech : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@adtech[2].txt -> TrackingCookie.Adtech : Aucune action entreprise.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@adtech[2].txt -> TrackingCookie.Adtech : Aucune action entreprise.
:mozilla.32:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Advertising : Aucune action entreprise.
:mozilla.33:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Advertising : Aucune action entreprise.
:mozilla.34:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Advertising : Aucune action entreprise.
:mozilla.35:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Advertising : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@advertising[2].txt -> TrackingCookie.Advertising : Aucune action entreprise.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@advertising[2].txt -> TrackingCookie.Advertising : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@advertising[1].txt -> TrackingCookie.Advertising : Aucune action entreprise.
:mozilla.36:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Atdmt : Aucune action entreprise.
:mozilla.69:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Atdmt : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
:mozilla.216:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Bluestreak : Aucune action entreprise.
:mozilla.29:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Bluestreak : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@bluestreak[1].txt -> TrackingCookie.Bluestreak : Aucune action entreprise.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@bluestreak[1].txt -> TrackingCookie.Bluestreak : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@bluestreak[2].txt -> TrackingCookie.Bluestreak : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@casalemedia[2].txt -> TrackingCookie.Casalemedia : Aucune action entreprise.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@casalemedia[2].txt -> TrackingCookie.Casalemedia : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@com[1].txt -> TrackingCookie.Com : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@fl01.ct2.comclick[2].txt -> TrackingCookie.Comclick : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@data.coremetrics[1].txt -> TrackingCookie.Coremetrics : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@data.coremetrics[1].txt -> TrackingCookie.Coremetrics : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@stat.dealtime[2].txt -> TrackingCookie.Dealtime : Aucune action entreprise.
:mozilla.11:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@doubleclick[2].txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@doubleclick[2].txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@doubleclick[1].txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
:mozilla.177:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Estat : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@estat[1].txt -> TrackingCookie.Estat : Aucune action entreprise.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@estat[1].txt -> TrackingCookie.Estat : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@estat[1].txt -> TrackingCookie.Estat : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@as-eu.falkag[1].txt -> TrackingCookie.Falkag : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@as1.falkag[1].txt -> TrackingCookie.Falkag : Aucune action entreprise.
:mozilla.23:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Fastclick : Aucune action entreprise.
:mozilla.65:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Fastclick : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@fastclick[2].txt -> TrackingCookie.Fastclick : Aucune action entreprise.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@fastclick[2].txt -> TrackingCookie.Fastclick : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@fastclick[2].txt -> TrackingCookie.Fastclick : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@media.fastclick[2].txt -> TrackingCookie.Fastclick : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@hit.gemius[1].txt -> TrackingCookie.Gemius : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@ehg-danieljouvance.hitbox[2].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@ehg-ifilm.hitbox[2].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@ehg-neuftelecom.hitbox[2].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@ehg-telecomitalia.hitbox[1].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@ehg-yvesrocher.hitbox[1].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@hitbox[1].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
:mozilla.25:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Imrworldwide : Aucune action entreprise.
:mozilla.26:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Imrworldwide : Aucune action entreprise.
:mozilla.167:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Live : Aucune action entreprise.
:mozilla.168:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Live : Aucune action entreprise.
:mozilla.169:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Live : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@search.live[2].txt -> TrackingCookie.Live : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@search.live[1].txt -> TrackingCookie.Live : Aucune action entreprise.
:mozilla.23:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Mediaplex : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@mediaplex[1].txt -> TrackingCookie.Mediaplex : Aucune action entreprise.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@mediaplex[1].txt -> TrackingCookie.Mediaplex : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@mediaplex[1].txt -> TrackingCookie.Mediaplex : Aucune action entreprise.
:mozilla.42:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Netflame : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@ssl-hints.netflame[1].txt -> TrackingCookie.Netflame : Aucune action entreprise.
:mozilla.164:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Overture : Aucune action entreprise.
:mozilla.165:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Overture : Aucune action entreprise.
:mozilla.166:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Overture : Aucune action entreprise.
:mozilla.218:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Overture : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@data3.perf.overture[1].txt -> TrackingCookie.Overture : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@overture[2].txt -> TrackingCookie.Overture : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@perf.overture[1].txt -> TrackingCookie.Overture : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@overture[1].txt -> TrackingCookie.Overture : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@perf.overture[1].txt -> TrackingCookie.Overture : Aucune action entreprise.
:mozilla.103:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Paypal : Aucune action entreprise.
:mozilla.27:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Paypal : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@www.paypal[1].txt -> TrackingCookie.Paypal : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Aucune action entreprise.
:mozilla.143:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Questionmarket : Aucune action entreprise.
:mozilla.144:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Questionmarket : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@questionmarket[1].txt -> TrackingCookie.Questionmarket : Aucune action entreprise.
:mozilla.89:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Realmedia : Aucune action entreprise.
:mozilla.90:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Realmedia : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@realmedia[2].txt -> TrackingCookie.Realmedia : Aucune action entreprise.
:mozilla.95:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Revsci : Aucune action entreprise.
:mozilla.96:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Revsci : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@ads.revsci[1].txt -> TrackingCookie.Revsci : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@revsci[1].txt -> TrackingCookie.Revsci : Aucune action entreprise.
:mozilla.126:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
:mozilla.127:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
:mozilla.128:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
:mozilla.129:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
:mozilla.130:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
:mozilla.131:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@bs.serving-sys[2].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@serving-sys[1].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@serving-sys[1].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@serving-sys[1].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@cs.sexcounter[2].txt -> TrackingCookie.Sexcounter : Aucune action entreprise.
:mozilla.12:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
:mozilla.13:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
:mozilla.14:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
:mozilla.15:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
:mozilla.16:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
:mozilla.24:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
:mozilla.25:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
:mozilla.26:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@smartadserver[2].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@smartadserver[1].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@statcounter[2].txt -> TrackingCookie.Statcounter : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@statcounter[1].txt -> TrackingCookie.Statcounter : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@toplist[1].txt -> TrackingCookie.Toplist : Aucune action entreprise.
:mozilla.179:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
:mozilla.28:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Aucune action entreprise.
:mozilla.6:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Weborama : Aucune action entreprise.
:mozilla.7:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Weborama : Aucune action entreprise.
:mozilla.8:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Weborama : Aucune action entreprise.
:mozilla.9:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Weborama : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@weborama[1].txt -> TrackingCookie.Weborama : Aucune action entreprise.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@weborama[2].txt -> TrackingCookie.Weborama : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@weborama[2].txt -> TrackingCookie.Weborama : Aucune action entreprise.
:mozilla.145:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Webtrends : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@m.webtrends[1].txt -> TrackingCookie.Webtrends : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@m.webtrends[2].txt -> TrackingCookie.Webtrends : Aucune action entreprise.
:mozilla.206:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Webtrendslive : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Aucune action entreprise.
:mozilla.85:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
C:\Documents and Settings\demik\Cookies\demik@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
C:\Documents and Settings\lenormand\Cookies\lenormand@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
C:\MS32DLL.dll.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\RECYCLER\S-1-5-21-671335772-812489646-693594120-1007\Dc42.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP83\A0011438.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP83\A0011439.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011456.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011457.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011491.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011492.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011523.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011524.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011560.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011561.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP85\A0011582.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP85\A0011583.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP86\A0011594.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP86\A0011595.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP86\A0011632.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP86\A0011633.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011644.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011645.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011680.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011681.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011696.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011697.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011709.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011710.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011723.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011724.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011746.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011747.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011776.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011825.vbs -> Worm.Solow.a : Aucune action entreprise.
C:\WINDOWS\MS32DLL.dll.vbs -> Worm.Solow.a : Aucune action entreprise.
E:\MS32DLL.dll.vbs -> Worm.Solow.a : Aucune action entreprise.
E:\RECYCLER\S-1-5-21-671335772-812489646-693594120-1007\De4.vbs -> Worm.Solow.a : Aucune action entreprise.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP83\A0011441.vbs -> Worm.Solow.a : Aucune action entreprise.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011459.vbs -> Worm.Solow.a : Aucune action entreprise.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011495.vbs -> Worm.Solow.a : Aucune action entreprise.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011527.vbs -> Worm.Solow.a : Aucune action entreprise.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011564.vbs -> Worm.Solow.a : Aucune action entreprise.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP85\A0011586.vbs -> Worm.Solow.a : Aucune action entreprise.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP86\A0011597.vbs -> Worm.Solow.a : Aucune action entreprise.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP86\A0011636.vbs -> Worm.Solow.a : Aucune action entreprise.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011647.vbs -> Worm.Solow.a : Aucune action entreprise.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011683.vbs -> Worm.Solow.a : Aucune action entreprise.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011700.vbs -> Worm.Solow.a : Aucune action entreprise.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011712.vbs -> Worm.Solow.a : Aucune action entreprise.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011726.vbs -> Worm.Solow.a : Aucune action entreprise.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011749.vbs -> Worm.Solow.a : Aucune action entreprise.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011827.vbs -> Worm.Solow.a : Aucune action entreprise.


Fin du rapport

Anti-Spyware - Rapport d'analyse
---------------------------------------------------------

+ Créé à: 18:29:51 28/03/2007

+ Résultat de l'analyse:



C:\Program Files\Synaptics\SynTP\SynTPEnh.exe1173642626 -> Downloader.Agent.awf : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009702.exe -> Downloader.Agent.awf : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009703.exe -> Downloader.Agent.awf : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009704.exe -> Downloader.Agent.awf : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009705.exe -> Downloader.Agent.awf : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009706.exe -> Downloader.Agent.awf : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009707.exe -> Downloader.Agent.awf : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009708.exe -> Downloader.Agent.awf : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009709.EXE -> Downloader.Agent.awf : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009710.exe -> Downloader.Agent.awf : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009711.exe -> Downloader.Agent.awf : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009712.exe -> Downloader.Agent.awf : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009713.exe -> Downloader.Agent.awf : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009714.exe -> Downloader.Agent.awf : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009715.exe -> Downloader.Agent.awf : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009716.exe -> Downloader.Agent.awf : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP74\A0009717.exe -> Downloader.Agent.awf : Nettoyé.
C:\WINDOWS\system32\bak\lsasss.exe -> Downloader.Agent.awf : Nettoyé.
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe -> Hijacker.Agent.jh : Nettoyé.
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe -> Hijacker.Agent.jh : Nettoyé.
C:\Program Files\Logitech\Video\ISStart.exe -> Hijacker.Agent.jh : Nettoyé.
C:\Program Files\Logitech\Video\LogiTray.exe -> Hijacker.Agent.jh : Nettoyé.
C:\Program Files\Logitech\Video\ManifestEngine.exe -> Hijacker.Agent.jh : Nettoyé.
C:\Program Files\Shareaza\Shareaza.exe -> Hijacker.Agent.jh : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP78\A0010893.exe -> Hijacker.Agent.jh : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP78\A0011039.rbf -> Hijacker.Agent.jh : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP78\A0011150.rbf -> Hijacker.Agent.jh : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011735.exe -> Hijacker.Agent.jh : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011755.exe -> Hijacker.Agent.jh : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011768.EXE -> Hijacker.Agent.jh : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011769.exe -> Hijacker.Agent.jh : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011770.exe -> Hijacker.Agent.jh : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011771.exe -> Hijacker.Agent.jh : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011772.exe -> Hijacker.Agent.jh : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011773.exe -> Hijacker.Agent.jh : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011774.exe -> Hijacker.Agent.jh : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011775.exe -> Hijacker.Agent.jh : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011777.exe -> Hijacker.Agent.jh : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011778.exe -> Hijacker.Agent.jh : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011858.exe -> Hijacker.Agent.jh : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011879.exe -> Hijacker.Agent.jh : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011937.exe -> Hijacker.Agent.jh : Nettoyé.
C:\WINDOWS\reminder\fsc-reminder.exe -> Hijacker.Agent.jh : Nettoyé.
C:\WINDOWS\system32\LVCOMSX.EXE -> Hijacker.Agent.jh : Nettoyé.
C:\WINDOWS\system32\NeroCheck.exe -> Hijacker.Agent.jh : Nettoyé.
C:\WINDOWS\system32\hkcmd.exe -> Hijacker.Agent.jh : Nettoyé.
C:\WINDOWS\system32\igfxpers.exe -> Hijacker.Agent.jh : Nettoyé.
C:\WINDOWS\system32\igfxtray.exe -> Hijacker.Agent.jh : Nettoyé.
C:\WINDOWS\system32\lsasss.exe -> Hijacker.Agent.jh : Nettoyé.
:mozilla.213:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé.
:mozilla.214:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé.
:mozilla.215:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@247realmedia[1].txt -> TrackingCookie.247realmedia : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@247realmedia[1].txt -> TrackingCookie.247realmedia : Nettoyé.
:mozilla.142:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.158:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.217:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.48:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.50:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.51:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.52:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.53:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@divx.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@homestore.122.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@karavel.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@mistergooddeal.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@msnaccountservices.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@notrefamille.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@opodo.122.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@paypal.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@viamtvcom.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.101:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
:mozilla.102:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@adbrite[2].txt -> TrackingCookie.Adbrite : Nettoyé.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@adbrite[1].txt -> TrackingCookie.Adbrite : Nettoyé.
:mozilla.49:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Adobe : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@www.adobe[1].txt -> TrackingCookie.Adobe : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@adrevolver[1].txt -> TrackingCookie.Adrevolver : Nettoyé.
:mozilla.20:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé.
:mozilla.22:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé.
:mozilla.87:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé.
:mozilla.88:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@adtech[2].txt -> TrackingCookie.Adtech : Nettoyé.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@adtech[2].txt -> TrackingCookie.Adtech : Nettoyé.
:mozilla.32:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.33:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.34:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.35:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@advertising[2].txt -> TrackingCookie.Advertising : Nettoyé.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@advertising[2].txt -> TrackingCookie.Advertising : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@advertising[1].txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.36:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Atdmt : Nettoyé.
:mozilla.69:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Atdmt : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@atdmt[2].txt -> TrackingCookie.Atdmt : Nettoyé.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@atdmt[2].txt -> TrackingCookie.Atdmt : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@atdmt[2].txt -> TrackingCookie.Atdmt : Nettoyé.
:mozilla.216:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Bluestreak : Nettoyé.
:mozilla.29:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Bluestreak : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@bluestreak[2].txt -> TrackingCookie.Bluestreak : Nettoyé.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@bluestreak[1].txt -> TrackingCookie.Bluestreak : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@bluestreak[2].txt -> TrackingCookie.Bluestreak : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@casalemedia[2].txt -> TrackingCookie.Casalemedia : Nettoyé.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@casalemedia[2].txt -> TrackingCookie.Casalemedia : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@com[1].txt -> TrackingCookie.Com : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@fl01.ct2.comclick[2].txt -> TrackingCookie.Comclick : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@data.coremetrics[1].txt -> TrackingCookie.Coremetrics : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@data.coremetrics[1].txt -> TrackingCookie.Coremetrics : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@stat.dealtime[2].txt -> TrackingCookie.Dealtime : Nettoyé.
:mozilla.11:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Doubleclick : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@doubleclick[2].txt -> TrackingCookie.Doubleclick : Nettoyé.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@doubleclick[2].txt -> TrackingCookie.Doubleclick : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@doubleclick[1].txt -> TrackingCookie.Doubleclick : Nettoyé.
:mozilla.177:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Estat : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@estat[1].txt -> TrackingCookie.Estat : Nettoyé.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@estat[1].txt -> TrackingCookie.Estat : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@estat[1].txt -> TrackingCookie.Estat : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@as-eu.falkag[1].txt -> TrackingCookie.Falkag : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@as1.falkag[1].txt -> TrackingCookie.Falkag : Nettoyé.
:mozilla.23:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.65:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@fastclick[2].txt -> TrackingCookie.Fastclick : Nettoyé.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@fastclick[2].txt -> TrackingCookie.Fastclick : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@fastclick[2].txt -> TrackingCookie.Fastclick : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@media.fastclick[2].txt -> TrackingCookie.Fastclick : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@hit.gemius[1].txt -> TrackingCookie.Gemius : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@ehg-danieljouvance.hitbox[2].txt -> TrackingCookie.Hitbox : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@ehg-ifilm.hitbox[2].txt -> TrackingCookie.Hitbox : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@ehg-neuftelecom.hitbox[2].txt -> TrackingCookie.Hitbox : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@ehg-telecomitalia.hitbox[1].txt -> TrackingCookie.Hitbox : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@ehg-yvesrocher.hitbox[1].txt -> TrackingCookie.Hitbox : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@hitbox[1].txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.25:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Imrworldwide : Nettoyé.
:mozilla.26:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Imrworldwide : Nettoyé.
:mozilla.167:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Live : Nettoyé.
:mozilla.168:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Live : Nettoyé.
:mozilla.169:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Live : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@search.live[2].txt -> TrackingCookie.Live : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@search.live[1].txt -> TrackingCookie.Live : Nettoyé.
:mozilla.23:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Mediaplex : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@mediaplex[1].txt -> TrackingCookie.Mediaplex : Nettoyé.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@mediaplex[1].txt -> TrackingCookie.Mediaplex : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@mediaplex[1].txt -> TrackingCookie.Mediaplex : Nettoyé.
:mozilla.42:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Netflame : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@ssl-hints.netflame[1].txt -> TrackingCookie.Netflame : Nettoyé.
:mozilla.164:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Overture : Nettoyé.
:mozilla.165:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Overture : Nettoyé.
:mozilla.166:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Overture : Nettoyé.
:mozilla.218:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Overture : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@data3.perf.overture[1].txt -> TrackingCookie.Overture : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@overture[2].txt -> TrackingCookie.Overture : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@perf.overture[1].txt -> TrackingCookie.Overture : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@overture[1].txt -> TrackingCookie.Overture : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@perf.overture[1].txt -> TrackingCookie.Overture : Nettoyé.
:mozilla.103:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Paypal : Nettoyé.
:mozilla.27:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Paypal : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@www.paypal[1].txt -> TrackingCookie.Paypal : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Nettoyé.
:mozilla.143:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Questionmarket : Nettoyé.
:mozilla.144:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Questionmarket : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@questionmarket[1].txt -> TrackingCookie.Questionmarket : Nettoyé.
:mozilla.89:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Realmedia : Nettoyé.
:mozilla.90:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Realmedia : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@realmedia[2].txt -> TrackingCookie.Realmedia : Nettoyé.
:mozilla.95:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Revsci : Nettoyé.
:mozilla.96:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Revsci : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@ads.revsci[1].txt -> TrackingCookie.Revsci : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@revsci[1].txt -> TrackingCookie.Revsci : Nettoyé.
:mozilla.126:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.127:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.128:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.129:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.130:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.131:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@serving-sys[2].txt -> TrackingCookie.Serving-sys : Nettoyé.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Nettoyé.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@serving-sys[1].txt -> TrackingCookie.Serving-sys : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@serving-sys[1].txt -> TrackingCookie.Serving-sys : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@cs.sexcounter[2].txt -> TrackingCookie.Sexcounter : Nettoyé.
:mozilla.12:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.13:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.14:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.15:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.16:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.24:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.25:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.26:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@smartadserver[2].txt -> TrackingCookie.Smartadserver : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Nettoyé.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@smartadserver[1].txt -> TrackingCookie.Smartadserver : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@statcounter[2].txt -> TrackingCookie.Statcounter : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@statcounter[1].txt -> TrackingCookie.Statcounter : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@toplist[1].txt -> TrackingCookie.Toplist : Nettoyé.
:mozilla.179:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
:mozilla.28:C:\Documents and Settings\lenormand\Application Data\Mozilla\Firefox\Profiles\hd949p4e.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Nettoyé.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Nettoyé.
:mozilla.6:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
:mozilla.7:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
:mozilla.8:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
:mozilla.9:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@weborama[1].txt -> TrackingCookie.Weborama : Nettoyé.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@weborama[2].txt -> TrackingCookie.Weborama : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@weborama[2].txt -> TrackingCookie.Weborama : Nettoyé.
:mozilla.145:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Webtrends : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@m.webtrends[1].txt -> TrackingCookie.Webtrends : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@m.webtrends[2].txt -> TrackingCookie.Webtrends : Nettoyé.
:mozilla.206:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Webtrendslive : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Nettoyé.
:mozilla.85:C:\Documents and Settings\demik\Application Data\Mozilla\Firefox\Profiles\mkqsmjg2.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
C:\Documents and Settings\demik\Cookies\demik@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Nettoyé.
C:\Documents and Settings\demik\Local Settings\Temp\Cookies\demik@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Nettoyé.
C:\Documents and Settings\lenormand\Cookies\lenormand@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Nettoyé.
C:\MS32DLL.dll.vbs -> Worm.Solow.a : Nettoyé.
C:\RECYCLER\S-1-5-21-671335772-812489646-693594120-1007\Dc42.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP83\A0011438.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP83\A0011439.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011456.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011457.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011491.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011492.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011523.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011524.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011560.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011561.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP85\A0011582.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP85\A0011583.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP86\A0011594.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP86\A0011595.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP86\A0011632.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP86\A0011633.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011644.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011645.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011680.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011681.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011696.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011697.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011709.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011710.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011723.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011724.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011746.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011747.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011776.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011825.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011845.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011849.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011869.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011870.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011926.vbs -> Worm.Solow.a : Nettoyé.
C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011928.vbs -> Worm.Solow.a : Nettoyé.
C:\WINDOWS\MS32DLL.dll.vbs -> Worm.Solow.a : Nettoyé.
E:\MS32DLL.dll.vbs -> Worm.Solow.a : Nettoyé.
E:\RECYCLER\S-1-5-21-671335772-812489646-693594120-1007\De4.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP83\A0011441.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011459.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011495.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011527.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP84\A0011564.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP85\A0011586.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP86\A0011597.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP86\A0011636.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011647.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011683.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011700.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011712.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011726.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP87\A0011749.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011827.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011851.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011872.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011930.vbs -> Worm.Solow.a : Nettoyé.
E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011961.vbs -> Worm.Solow.a : Nettoyé.


Fin du rapport

Logfile of HijackThis v1.99.1
Scan saved at 18:39:14, on 28/03/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\sm56hlpr.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\DOCUME~1\demik\LOCALS~1\Temp\Répertoire temporaire 3 pour hijackthis.zip\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Hacked by Godzilla
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?f38357cb7691497093945a41c6c45631
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?f38357cb7691497093945a41c6c45631
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://momancherry.spaces.live.com//PhotoUpload/MsnPUpl...
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111401/housecall...
O16 - DPF: {BF3CD111-6278-11D2-9EA3-00A0C9251384} (O2C-Player Version 1.x) - http://www.o2c.de/download/O2CPlayer.CAB
O16 - DPF: {C36112BF-2FA3-4694-8603-3B510EA3B465} (Lycos File Upload Component) - http://f003.mail.caramail.lycos.fr/app/uploader/FileUpl...
O18 - Protocol: bw+0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: offline-8876480 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - AppInit_DLLs:
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

Logfile of HijackThis v1.99.1
Scan saved at 18:39:14, on 28/03/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\sm56hlpr.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\DOCUME~1\demik\LOCALS~1\Temp\Répertoire temporaire 3 pour hijackthis.zip\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Hacked by Godzilla
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?f38357cb7691497093945a41c6c45631
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?f38357cb7691497093945a41c6c45631
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://momancherry.spaces.live.com//PhotoUpload/MsnPUpl...
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111401/housecall...
O16 - DPF: {BF3CD111-6278-11D2-9EA3-00A0C9251384} (O2C-Player Version 1.x) - http://www.o2c.de/download/O2CPlayer.CAB
O16 - DPF: {C36112BF-2FA3-4694-8603-3B510EA3B465} (Lycos File Upload Component) - http://f003.mail.caramail.lycos.fr/app/uploader/FileUpl...
O18 - Protocol: bw+0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: offline-8876480 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - AppInit_DLLs:
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

Re,

- Lance Hijackthis ->Do a system scan only
->Coche les lignes ci-dessous :

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Hacked by Godzilla
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

Clique sur Fix checked (en bas à gauche)

  • Fais un scan en ligne Kaspersky avec Internet Explorer :
  • Clique sur
  • Clique maintenant sur J'accepte.
  • Valide l'installation d'un ou de plusieurs ActiveX si c'est nécessaire.
  • Patiente pendant l'installation des Mises à jour.
  • Choisis par la suite l'analyse du Poste de travail
  • Sauvegarde puis colle le rapport généré en fin d'analyse.

    AIDE : Tuto sur le scan en ligne

    NOTE : Si tu reçois le message "La licence de Kaspersky On-line Scanner est périmée", va dans Ajout/Suppression de programmes puis désinstalle On-Line Scanner, reconnecte toi sur le site de Kaspersky pour retenter le scan en ligne.

    KASPERSKY ON-LINE SCANNER REPORT
    Wednesday, March 28, 2007 8:13:30 PM
    Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
    Kaspersky On-line Scanner version : 5.0.83.0
    Dernière mise à jour de la base antivirus Kaspersky : 28/03/2007
    Enregistrements dans la base antivirus Kaspersky : 271941


    Paramètres d'analyse
    Analyser avec la base antivirus suivante standard
    Analyser les archives vrai
    Analyser les bases de messagerie vrai

    Cible de l'analyse Poste de travail
    C:\
    D:\
    E:\

    Statistiques de l'analyse
    Total d'objets analysés 77924
    Nombre de virus trouvés 3
    Nombre d'objets infectés 19 / 0
    Nombre d'objets suspects 0
    Durée de l'analyse 01:13:58

    Nom de l'objet infecté Nom du virus Dernière action
    C:\Documents and Settings\demik\Cookies\demik@edt02[2].txt L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\Cookies\index.dat L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\Local Settings\Application Data\Microsoft\Messenger\fadila.demik@hotmail.fr\SharingMetadata\Logs\Dfsr00005.log L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\Local Settings\Application Data\Microsoft\Messenger\fadila.demik@hotmail.fr\SharingMetadata\pending.dat L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\Local Settings\Application Data\Microsoft\Messenger\fadila.demik@hotmail.fr\SharingMetadata\Working\database_B454_89B0_5489_7640\dfsr.db L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\Local Settings\Application Data\Microsoft\Messenger\fadila.demik@hotmail.fr\SharingMetadata\Working\database_B454_89B0_5489_7640\fsr.log L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\Local Settings\Application Data\Microsoft\Messenger\fadila.demik@hotmail.fr\SharingMetadata\Working\database_B454_89B0_5489_7640\fsrtmp.log L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\Local Settings\Application Data\Microsoft\Messenger\fadila.demik@hotmail.fr\SharingMetadata\Working\database_B454_89B0_5489_7640\tmp.edb L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\Local Settings\Application Data\Microsoft\Windows Live Contacts\fadila.demik@hotmail.fr\real\members.stg L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\Local Settings\Application Data\Microsoft\Windows Live Contacts\fadila.demik@hotmail.fr\shadow\members.stg L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\Local Settings\Historique\History.IE5\MSHist012007032820070329\index.dat L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\Local Settings\Temp\~DF3477.tmp L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\Local Settings\Temp\~DF3489.tmp L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\Local Settings\Temp\~DFBEF7.tmp L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\Local Settings\Temp\~DFBF3D.tmp L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\NTUSER.DAT L'objet est verrouillé ignoré

    C:\Documents and Settings\demik\ntuser.dat.LOG L'objet est verrouillé ignoré

    C:\Documents and Settings\LocalService\Cookies\index.dat L'objet est verrouillé ignoré

    C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré

    C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré

    C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré

    C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré

    C:\Documents and Settings\LocalService\NTUSER.DAT L'objet est verrouillé ignoré

    C:\Documents and Settings\LocalService\ntuser.dat.LOG L'objet est verrouillé ignoré

    C:\Documents and Settings\NetworkService\Cookies\index.dat L'objet est verrouillé ignoré

    C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré

    C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré

    C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré

    C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré

    C:\Documents and Settings\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré

    C:\Documents and Settings\NetworkService\ntuser.dat.LOG L'objet est verrouillé ignoré

    C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat L'objet est verrouillé ignoré

    C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db L'objet est verrouillé ignoré

    C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws L'objet est verrouillé ignoré

    C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log L'objet est verrouillé ignoré

    C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log L'objet est verrouillé ignoré

    C:\Program Files\Alwil Software\Avast4\DATA\report\Protection résidente.txt L'objet est verrouillé ignoré

    C:\Program Files\Sunbelt Software\Personal Firewall\logs\debug.log L'objet est verrouillé ignoré

    C:\Program Files\Sunbelt Software\Personal Firewall\logs\debug.log.idx L'objet est verrouillé ignoré

    C:\Program Files\Sunbelt Software\Personal Firewall\logs\error.log L'objet est verrouillé ignoré

    C:\Program Files\Sunbelt Software\Personal Firewall\logs\error.log.idx L'objet est verrouillé ignoré

    C:\Program Files\Sunbelt Software\Personal Firewall\logs\hips.log L'objet est verrouillé ignoré

    C:\Program Files\Sunbelt Software\Personal Firewall\logs\hips.log.idx L'objet est verrouillé ignoré

    C:\Program Files\Sunbelt Software\Personal Firewall\logs\ids.log L'objet est verrouillé ignoré

    C:\Program Files\Sunbelt Software\Personal Firewall\logs\ids.log.idx L'objet est verrouillé ignoré

    C:\Program Files\Sunbelt Software\Personal Firewall\logs\network.log L'objet est verrouillé ignoré

    C:\Program Files\Sunbelt Software\Personal Firewall\logs\network.log.idx L'objet est verrouillé ignoré

    C:\Program Files\Sunbelt Software\Personal Firewall\logs\system.log L'objet est verrouillé ignoré

    C:\Program Files\Sunbelt Software\Personal Firewall\logs\system.log.idx L'objet est verrouillé ignoré

    C:\Program Files\Sunbelt Software\Personal Firewall\logs\warning.log L'objet est verrouillé ignoré

    C:\Program Files\Sunbelt Software\Personal Firewall\logs\warning.log.idx L'objet est verrouillé ignoré

    C:\Program Files\Sunbelt Software\Personal Firewall\logs\web.log L'objet est verrouillé ignoré

    C:\Program Files\Sunbelt Software\Personal Firewall\logs\web.log.idx L'objet est verrouillé ignoré

    C:\System Volume Information\MountPointManagerRemoteDatabase L'objet est verrouillé ignoré

    C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011958.vbs Infecté : Worm.VBS.Solow.a ignoré

    C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011959.vbs Infecté : Worm.VBS.Solow.a ignoré

    C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011969.vbs Infecté : Worm.VBS.Solow.a ignoré

    C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011971.exe Infecté : Trojan-Clicker.Win32.Agent.jh ignoré

    C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011972.exe Infecté : Trojan-Clicker.Win32.Agent.jh ignoré

    C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011973.exe Infecté : Trojan-Clicker.Win32.Agent.jh ignoré

    C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011974.exe Infecté : Trojan-Clicker.Win32.Agent.jh ignoré

    C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011975.exe Infecté : Trojan-Clicker.Win32.Agent.jh ignoré

    C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011976.exe Infecté : Trojan-Clicker.Win32.Agent.jh ignoré

    C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011977.exe Infecté : Trojan-Clicker.Win32.Agent.jh ignoré

    C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011978.EXE Infecté : Trojan-Clicker.Win32.Agent.jh ignoré

    C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011979.exe Infecté : Trojan-Clicker.Win32.Agent.jh ignoré

    C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011980.exe Infecté : Trojan-Clicker.Win32.Agent.jh ignoré

    C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011981.exe Infecté : Trojan-Clicker.Win32.Agent.jh ignoré

    C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011982.exe Infecté : Trojan-Clicker.Win32.Agent.jh ignoré

    C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011983.exe Infecté : Trojan-Clicker.Win32.Agent.jh ignoré

    C:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011984.exe Infecté : Trojan-Downloader.Win32.Agent.awf ignoré

    C:\WINDOWS\Debug\PASSWD.LOG L'objet est verrouillé ignoré

    C:\WINDOWS\SchedLgU.Txt L'objet est verrouillé ignoré

    C:\WINDOWS\SoftwareDistribution\EventCache\{6B9DDC1F-D565-45DE-842B-79AC0DFD6F6F}.bin L'objet est verrouillé ignoré

    C:\WINDOWS\SoftwareDistribution\EventCache\{BEB16010-4BD2-434C-871F-8EEB1AE14A46}.bin L'objet est verrouillé ignoré

    C:\WINDOWS\SoftwareDistribution\ReportingEvents.log L'objet est verrouillé ignoré

    C:\WINDOWS\Sti_Trace.log L'objet est verrouillé ignoré

    C:\WINDOWS\system32\CatRoot2\edb.log L'objet est verrouillé ignoré

    C:\WINDOWS\system32\CatRoot2\tmp.edb L'objet est verrouillé ignoré

    C:\WINDOWS\system32\config\Antivirus.Evt L'objet est verrouillé ignoré

    C:\WINDOWS\system32\config\AppEvent.Evt L'objet est verrouillé ignoré

    C:\WINDOWS\system32\config\default L'objet est verrouillé ignoré

    C:\WINDOWS\system32\config\default.LOG L'objet est verrouillé ignoré

    C:\WINDOWS\system32\config\Internet.evt L'objet est verrouillé ignoré

    C:\WINDOWS\system32\config\SAM L'objet est verrouillé ignoré

    C:\WINDOWS\system32\config\SAM.LOG L'objet est verrouillé ignoré

    C:\WINDOWS\system32\config\SecEvent.Evt L'objet est verrouillé ignoré

    C:\WINDOWS\system32\config\SECURITY L'objet est verrouillé ignoré

    C:\WINDOWS\system32\config\SECURITY.LOG L'objet est verrouillé ignoré

    C:\WINDOWS\system32\config\software L'objet est verrouillé ignoré

    C:\WINDOWS\system32\config\software.LOG L'objet est verrouillé ignoré

    C:\WINDOWS\system32\config\SysEvent.Evt L'objet est verrouillé ignoré

    C:\WINDOWS\system32\config\system L'objet est verrouillé ignoré

    C:\WINDOWS\system32\config\system.LOG L'objet est verrouillé ignoré

    C:\WINDOWS\system32\h323log.txt L'objet est verrouillé ignoré

    C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR L'objet est verrouillé ignoré

    C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP L'objet est verrouillé ignoré

    C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER L'objet est verrouillé ignoré

    C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP L'objet est verrouillé ignoré

    C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP L'objet est verrouillé ignoré

    C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA L'objet est verrouillé ignoré

    C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP L'objet est verrouillé ignoré

    C:\WINDOWS\Temp\Cookies\index.dat L'objet est verrouillé ignoré

    C:\WINDOWS\Temp\Historique\History.IE5\index.dat L'objet est verrouillé ignoré

    C:\WINDOWS\Temp\Perflib_Perfdata_7e0.dat L'objet est verrouillé ignoré

    C:\WINDOWS\Temp\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré

    C:\WINDOWS\Temp\_avast4_\Webshlock.txt L'objet est verrouillé ignoré

    C:\WINDOWS\wiadebug.log L'objet est verrouillé ignoré

    C:\WINDOWS\wiaservc.log L'objet est verrouillé ignoré

    C:\WINDOWS\WindowsUpdate.log L'objet est verrouillé ignoré

    E:\System Volume Information\MountPointManagerRemoteDatabase L'objet est verrouillé ignoré

    E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011970.vbs Infecté : Worm.VBS.Solow.a ignoré

    E:\System Volume Information\_restore{CB09F90C-70C6-4BC8-9827-4AFD818DB8DC}\RP88\A0011986.vbs Infecté : Worm.VBS.Solow.a ignoré

    Analyse terminée.

    Logfile of HijackThis v1.99.1
    Scan saved at 21:10:34, on 28/03/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
    C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\SOUNDMAN.EXE
    C:\WINDOWS\sm56hlpr.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\MSN Messenger\MsnMsgr.Exe
    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\MSN Messenger\usnsvc.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
    C:\Program Files\Adobe\Reader 8.0\Reader\AcroRd32.exe
    C:\DOCUME~1\demik\LOCALS~1\Temp\Répertoire temporaire 4 pour hijackthis.zip\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll
    O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
    O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll
    O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
    O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
    O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
    O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
    O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?f38357cb7691497093945a41c6c45631
    O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?f38357cb7691497093945a41c6c45631
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
    O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O11 - Options group: [INTERNATIONAL] International*
    O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://momancherry.spaces.live.com//PhotoUpload/MsnPUpl...
    O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111401/housecall...
    O16 - DPF: {BF3CD111-6278-11D2-9EA3-00A0C9251384} (O2C-Player Version 1.x) - http://www.o2c.de/download/O2CPlayer.CAB
    O16 - DPF: {C36112BF-2FA3-4694-8603-3B510EA3B465} (Lycos File Upload Component) - http://f003.mail.caramail.lycos.fr/app/uploader/FileUpl...
    O18 - Protocol: bw+0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw+0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw-0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw-0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw00 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw00s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw10 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw10s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw20 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw20s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw30 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw30s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw40 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw40s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw50 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw50s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw60 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw60s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw70 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw70s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw80 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw80s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw90 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw90s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwa0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwa0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwb0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwb0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwc0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwc0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwd0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwd0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwe0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwe0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwf0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwf0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
    O18 - Protocol: bwg0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwg0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwh0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwh0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwi0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwi0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwj0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwj0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwk0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwk0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwl0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwl0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwm0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwm0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwn0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwn0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwo0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwo0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwp0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwp0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwq0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwq0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwr0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwr0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bws0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bws0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwt0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwt0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwu0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwu0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwv0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwv0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bww0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bww0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwx0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwx0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwy0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwy0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwz0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwz0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: offline-8876480 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O20 - AppInit_DLLs:
    O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
    O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
    O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

    je peux pas ouvrir C messsage d'erreur:"impossible de trouver le fichier script"C:\MS32DLL.dll.vbs"
    et toujours ce message hacked by godzilla sur mes pages internet(IE) mais j'ai l'impression qu'elle s'ouvre plus vite quand même

    Logfile of HijackThis v1.99.1
    Scan saved at 20:55:37, on 29/03/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
    C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
    C:\WINDOWS\sm56hlpr.exe
    C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\MSN Messenger\MsnMsgr.Exe
    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
    C:\Program Files\MSN Messenger\usnsvc.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Windows Live Toolbar\msn_sl.exe
    C:\DOCUME~1\demik\LOCALS~1\Temp\Répertoire temporaire 5 pour hijackthis.zip\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll
    O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
    O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll
    O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
    O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
    O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
    O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
    O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?f38357cb7691497093945a41c6c45631
    O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?f38357cb7691497093945a41c6c45631
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
    O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O11 - Options group: [INTERNATIONAL] International*
    O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://momancherry.spaces.live.com//PhotoUpload/MsnPUpl...
    O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111401/housecall...
    O16 - DPF: {BF3CD111-6278-11D2-9EA3-00A0C9251384} (O2C-Player Version 1.x) - http://www.o2c.de/download/O2CPlayer.CAB
    O16 - DPF: {C36112BF-2FA3-4694-8603-3B510EA3B465} (Lycos File Upload Component) - http://f003.mail.caramail.lycos.fr/app/uploader/FileUpl...
    O18 - Protocol: bw+0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw+0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw-0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw-0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw00 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw00s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw10 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw10s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw20 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw20s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw30 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw30s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw40 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw40s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw50 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw50s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw60 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw60s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw70 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw70s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw80 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw80s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw90 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw90s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwa0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwa0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwb0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwb0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwc0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwc0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwd0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwd0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwe0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwe0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwf0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwf0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
    O18 - Protocol: bwg0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwg0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwh0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwh0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwi0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwi0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwj0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwj0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwk0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwk0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwl0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwl0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwm0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwm0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwn0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwn0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwo0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwo0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwp0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwp0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwq0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwq0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwr0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwr0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bws0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bws0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwt0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwt0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwu0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwu0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwv0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwv0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bww0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bww0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwx0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwx0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwy0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwy0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwz0 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwz0s - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: offline-8876480 - {98B8E6E1-B1F8-49F3-9E15-94C75D7D41C0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O20 - AppInit_DLLs:
    O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
    O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
    O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

    Find AWF report by noahdfear ©2006


    bak folders found
    ~~~~~~~~~~~

    Le volume dans le lecteur C s'appelle N00785
    Le num‚ro de s‚rie du volume est 5489-7640

    R‚pertoire de C:\PROGRA~1\ITUNES\BAK

    05/03/2007 12:33 <REP> .
    05/03/2007 12:33 <REP> ..
    30/10/2006 10:36 256ÿ576 iTunesHelper.exe
    1 fichier(s) 256ÿ576 octets
    2 R‚p(s) 35ÿ103ÿ064ÿ064 octets libres
    Le volume dans le lecteur C s'appelle N00785
    Le num‚ro de s‚rie du volume est 5489-7640

    R‚pertoire de C:\PROGRA~1\MSNMES~1\BAK

    05/03/2007 12:33 <REP> .
    05/03/2007 12:33 <REP> ..
    0 fichier(s) 0 octets
    2 R‚p(s) 35ÿ103ÿ064ÿ064 octets libres
    Le volume dans le lecteur C s'appelle N00785
    Le num‚ro de s‚rie du volume est 5489-7640

    R‚pertoire de C:\PROGRA~1\QUICKT~1\BAK

    05/03/2007 12:33 <REP> .
    05/03/2007 12:33 <REP> ..
    25/10/2006 19:58 282ÿ624 qttask.exe
    1 fichier(s) 282ÿ624 octets
    2 R‚p(s) 35ÿ103ÿ059ÿ968 octets libres
    Le volume dans le lecteur C s'appelle N00785
    Le num‚ro de s‚rie du volume est 5489-7640

    R‚pertoire de C:\PROGRA~1\SHAREAZA\BAK

    05/03/2007 12:33 <REP> .
    05/03/2007 12:33 <REP> ..
    04/11/2006 04:28 4ÿ468ÿ736 Shareaza.exe
    1 fichier(s) 4ÿ468ÿ736 octets
    2 R‚p(s) 35ÿ103ÿ059ÿ968 octets libres
    Le volume dans le lecteur C s'appelle N00785
    Le num‚ro de s‚rie du volume est 5489-7640

    R‚pertoire de C:\WINDOWS\REMINDER\BAK

    05/03/2007 12:33 <REP> .
    05/03/2007 12:33 <REP> ..
    19/01/2005 18:10 28ÿ672 fsc-reminder.exe
    1 fichier(s) 28ÿ672 octets
    2 R‚p(s) 35ÿ103ÿ059ÿ968 octets libres
    Le volume dans le lecteur C s'appelle N00785
    Le num‚ro de s‚rie du volume est 5489-7640

    R‚pertoire de C:\WINDOWS\SYSTEM32\BAK

    11/03/2007 21:50 <REP> .
    11/03/2007 21:50 <REP> ..
    05/08/2004 14:00 15ÿ360 ctfmon.exe
    09/09/2005 09:25 77ÿ824 hkcmd.exe
    09/09/2005 09:25 114ÿ688 igfxpers.exe
    09/09/2005 09:25 94ÿ208 igfxtray.exe
    27/05/2005 09:18 221ÿ184 LVCOMSX.EXE
    09/07/2001 11:50 155ÿ648 NeroCheck.exe
    6 fichier(s) 678ÿ912 octets
    2 R‚p(s) 35ÿ103ÿ059ÿ968 octets libres
    Le volume dans le lecteur C s'appelle N00785
    Le num‚ro de s‚rie du volume est 5489-7640

    R‚pertoire de C:\PROGRA~1\ALWILS~1\AVAST4\BAK

    05/03/2007 12:33 <REP> .
    05/03/2007 12:33 <REP> ..
    25/09/2006 18:42 108ÿ160 ashDisp.exe
    1 fichier(s) 108ÿ160 octets
    2 R‚p(s) 35ÿ103ÿ059ÿ968 octets libres
    Le volume dans le lecteur C s'appelle N00785
    Le num‚ro de s‚rie du volume est 5489-7640

    R‚pertoire de C:\PROGRA~1\HP\HPSOFT~1\BAK

    05/03/2007 12:33 <REP> .
    05/03/2007 12:33 <REP> ..
    19/02/2006 02:41 49ÿ152 HPWuSchd2.exe
    1 fichier(s) 49ÿ152 octets
    2 R‚p(s) 35ÿ103ÿ059ÿ968 octets libres
    Le volume dans le lecteur C s'appelle N00785
    Le num‚ro de s‚rie du volume est 5489-7640

    R‚pertoire de C:\PROGRA~1\LOGITECH\VIDEO\BAK

    05/03/2007 12:33 <REP> .
    05/03/2007 12:33 <REP> ..
    08/06/2005 15:24 458ÿ752 ISStart.exe
    08/06/2005 15:14 217ÿ088 LogiTray.exe
    08/06/2005 14:44 196ÿ608 ManifestEngine.exe
    3 fichier(s) 872ÿ448 octets
    2 R‚p(s) 35ÿ103ÿ059ÿ968 octets libres
    Le volume dans le lecteur C s'appelle N00785
    Le num‚ro de s‚rie du volume est 5489-7640

    R‚pertoire de C:\PROGRA~1\SYNAPT~1\SYNTP\BAK

    05/03/2007 12:33 <REP> .
    05/03/2007 12:33 <REP> ..
    15/04/2005 09:48 708ÿ697 SynTPEnh.exe
    1 fichier(s) 708ÿ697 octets
    2 R‚p(s) 35ÿ103ÿ059ÿ968 octets libres
    Le volume dans le lecteur C s'appelle N00785
    Le num‚ro de s‚rie du volume est 5489-7640

    R‚pertoire de C:\PROGRA~1\GOOGLE\GOOGLE~1\121128~1.546\BAK

    11/03/2007 21:50 <REP> .
    11/03/2007 21:50 <REP> ..
    06/03/2007 20:35 171ÿ448 GoogleToolbarNotifier.exe
    1 fichier(s) 171ÿ448 octets
    2 R‚p(s) 35ÿ103ÿ055ÿ872 octets libres
    Le volume dans le lecteur C s'appelle N00785
    Le num‚ro de s‚rie du volume est 5489-7640

    R‚pertoire de C:\PROGRA~1\ADOBE\PHOTOS~1\3.0\APPS\BAK

    11/03/2007 21:50 <REP> .
    11/03/2007 21:50 <REP> ..
    23/06/2005 21:33 57ÿ344 apdproxy.exe
    1 fichier(s) 57ÿ344 octets
    2 R‚p(s) 35ÿ103ÿ055ÿ872 octets libres
    Le volume dans le lecteur C s'appelle N00785
    Le num‚ro de s‚rie du volume est 5489-7640

    R‚pertoire de C:\PROGRA~1\LOGITECH\DESKTO~1\8876480\PROGRAM\BAK

    05/03/2007 12:33 <REP> .
    05/03/2007 12:33 <REP> ..
    29/10/2006 18:44 36ÿ864 LogitechDesktopMessenger.exe
    1 fichier(s) 36ÿ864 octets
    2 R‚p(s) 35ÿ103ÿ055ÿ872 octets libres


    Duplicate files of bak directory contents
    ~~~~~~~~~~~~~~~~~~~~~~~

    257088 2 Mar 2007 "C:\Program Files\iTunes\iTunesHelper.exe"
    256576 30 Oct 2006 "C:\Program Files\iTunes\bak\iTunesHelper.exe"
    102400 14 Mar 2007 "C:\WINDOWS\Installer\{01B51908-02EF-453B-87A9-815182E8C2F2}\iTunesIco.exe"
    116288 14 Mar 2007 "C:\Documents and Settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 7.1.0.59\iTunesSetupAdmin.exe"
    282624 16 Feb 2007 "C:\Program Files\QuickTime\qttask.exe"
    282624 25 Oct 2006 "C:\Program Files\QuickTime\bak\qttask.exe"
    4468736 4 Nov 2006 "C:\Program Files\Shareaza\bak\Shareaza.exe"
    28672 19 Jan 2005 "C:\WINDOWS\reminder\bak\fsc-reminder.exe"
    15360 5 Aug 2004 "C:\WINDOWS\system32\ctfmon.exe"
    15360 5 Aug 2004 "C:\WINDOWS\system32\bak\ctfmon.exe"
    77824 9 Sep 2005 "C:\WINDOWS\system32\bak\hkcmd.exe"
    114688 9 Sep 2005 "C:\WINDOWS\system32\bak\igfxpers.exe"
    94208 9 Sep 2005 "C:\WINDOWS\system32\bak\igfxtray.exe"
    221184 27 May 2005 "C:\WINDOWS\system32\bak\LVCOMSX.EXE"
    155648 9 Jul 2001 "C:\WINDOWS\system32\bak\NeroCheck.exe"
    108160 15 Jan 2007 "C:\Program Files\Alwil Software\Avast4\ashDisp.exe"
    108160 25 Sep 2006 "C:\Program Files\Alwil Software\Avast4\bak\ashDisp.exe"
    49152 19 Feb 2006 "C:\Program Files\HP\HP Software Update\hpwuSchd2.exe"
    49152 19 Feb 2006 "C:\Program Files\HP\HP Software Update\bak\HPWuSchd2.exe"
    458752 8 Jun 2005 "C:\Program Files\Logitech\Video\bak\ISStart.exe"
    217088 8 Jun 2005 "C:\Program Files\Logitech\Video\bak\LogiTray.exe"
    196608 8 Jun 2005 "C:\Program Files\Logitech\Video\bak\ManifestEngine.exe"
    708697 15 Apr 2005 "C:\fsc.tmp\driver\touchpad\1003205_synaptics_8_0_4_0\SynTPEnh.exe"
    708697 15 Apr 2005 "C:\Program Files\Synaptics\SynTP\bak\SynTPEnh.exe"
    708697 15 Apr 2005 "C:\Program Files\Synaptics\SynTP\Media\SynTPEnh.exe"
    52272 6 Mar 2007 "C:\Program Files\Google\googletoolbar2user.exe"
    867424 6 Mar 2007 "C:\Documents and Settings\demik\Mes documents\GoogleToolbarInstaller_ADBx_fr_401019_signed.exe"
    138168 6 Mar 2007 "C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"
    171448 6 Mar 2007 "C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\bak\GoogleToolbarNotifier.exe"
    57344 23 Jun 2005 "C:\Program Files\Adobe\Photoshop Album Edition D‚couverte\3.0\Apps\bak\apdproxy.exe"
    36864 29 Oct 2006 "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\bak\LogitechDesktopMessenger.exe"


    end of report

    Re,

    **********
    Exemple à faire pour les autres :
    C:\Program Files\iTunes\bak\iTunesHelper.exe <- coupe le fichier
    C:\Program Files\iTunes\ <- colle le fichier
    C:\Program Files\iTunes\bak\ <- supprime ce dossier
    **********
    C:\Program Files\QuickTime\bak\qttask.exe
    C:\Program Files\QuickTime\

    C:\Program Files\Shareaza\bak\Shareaza.exe
    C:\Program Files\Shareaza\

    C:\WINDOWS\reminder\bak\fsc-reminder.exe
    C:\WINDOWS\reminder\

    C:\WINDOWS\system32\bak\ctfmon.exe - hkcmd.exe - igfxpers.exe - igfxtray.exe - LVCOMSX.EXE - NeroCheck.exe
    C:\WINDOWS\system32\

    C:\Program Files\Alwil Software\Avast4\bak\ashDisp.exe
    C:\Program Files\Alwil Software\Avast4\

    C:\Program Files\HP\HP Software Update\bak\HPWuSchd2.exe
    C:\Program Files\HP\HP Software Update\

    C:\Program Files\Logitech\Video\bak\ISStart.exe - LogiTray.exe - ManifestEngine.exe
    C:\Program Files\Logitech\Video\

    C:\Program Files\Synaptics\SynTP\bak\SynTPEnh.exe
    C:\Program Files\Synaptics\SynTP\

    C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\bak\GoogleToolbarNotifier.exe
    C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\

    C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\bak\apdproxy.exe
    C:\Program Files\Adobe\Photoshop Album Edition D‚couverte\3.0\Apps\

    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\bak\LogitechDesktopMessenger.exe
    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\
    Lassé par la pub ? Créez un compte
    Tom's guide dans le monde