mecsympadu74 | Bonjour,
Hier ma collègue m'appelle car sa session Windows (XP) ne s'ouvre plus. Je vais donc voir, et effectivement lorsqu'on se connecte, un message d'erreur "Inituser.exe - L'application n'a pas réussi à s'initialiser correctement (0xc0000005). Cliquez sur OK pour arrêter l'application" apparaît. En cliquant sur ok le message revient à nouveau, il faut cliquer une 2ème fois pour que celui ci disparaisse. Le hic c'est que plus rien ne se charge, mise à part le papier peint du bureau, rien d'autre n'apparaît à l'écran.
J'ai l'idée de lancer le gestionnaire des tâches par CTRL + ALT + DELETE, et de lancer une nouvelle tâche explorer.exe. Là ça marche tout réapparaît, mais une succession de message d'erreur survient toujours avec le même message, sauf que ce n'est plus Inituser mais cmd.exe, runddl32.exe...
Je décide donc de chercher sur Internet ce que cela peut signifier, et là je suis bombardé de pop-ups et je me dit tout de suite "ça sent les spywares à plein nez". J'avais raison puisqu'après de nombreux scans avec Ad-Aware, Spybot S&D, A2 Squared free, ces 3 logiciels trouveront chacun plus d'une 100taine de spywares, adwares, trojans... Le problème est que même après suppression de toutes ces salop*****, il y a toujours quelques pop-up qui reviennent (surtout une pour un test d'amour en allemand "der blindes test" un truc dans le genre)...
J'ai fais hijackthis, qui a trouvé quelques méchantes lignes que j'ai supprimé, mais le problème reste le même, toujours ces pops-up, et ce message d'erreur qui empêche de travailler correctement (impossible d'installer Firefox par exemple (même erreur qu'au départ mais avec setup.exe), d'aller dans les paramètres systèmes pour désactiver la restauration du système par exemple (même erreur qu'au départ mais avec Rundll32.exe)...
Après un ultime scan avec Spybot, celui-ci détecte le spyware Zango.ShoppingReport mais n'arrive pas à le supprimer...
Après recherche sur ce forum, j'ai vu qu'on renvoyait sur ce topic.
J'ai donc commencé par essayer combofix puisque la personne dit avoir résolu son problème avec ce logiciel. Mais si je suis les étapes de ce tutoriel, au moment où je veux lancer combofix, j'ai toujours cette foutu erreur qui revient avec différents noms de fichiers, le 1er étant Rundll32.exe, ensuite cmd.exe, ensuite find.exe, puis ensuite à nouveau Rundll32.exe, cmd.exe et find.exe. En cliquant une nouvelle fois sur "ok" pour le dernier find.exe, cette fois j'ai un message d'erreur de combofix qui me dit "OS incompatible. Combofix ne fonctionne que pour Windows 2000 et XP", alors que pourtant l'ordinateur infecté possède Windows XP...
Vu que Combofix ne veut pas marcher, j'ai décidé d'essayer la méthode décrire par papyber sur l'autre forum. Comme pour actaris51, SDFix ne marche pas, même erreur que lui en mode sans échec.
J'essaye donc la suite, à savoir eScan Antivirus Toolkit, mais au moment de le lancer, là encore ça ne fonctionne pas, j'ai un message d'erreur qui me dit "Virus Database is older than 30-days!" et qui m'invite à visiter le site officiel pour acheter ce logiciel (http://www.mwti.net/)...
Donc je ne sais plus quoi faire et c'est pourquoi je viens à vous pour trouvez de l'aide !! Le message d'erreur que j'ai est sûrement lié à un de ces spywares... Mais comment le supprimer ? Comment rendre cet ordinateur propre ?
Voici le log d'hijackthis que j'ai fais ce matin :
Citation :
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 09:41:50, on 06.08.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\a-squared Free\a2service.exe
C:\Program Files\Fichiers communs\InterVideo\RegMgr\iviRegMgr.exe
C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\Mcshield.exe
C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\PDF Complete\pdfsvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Sesam\Security\SPISLMGR.exe
C:\Program Files\Sesam\Servers\LicSrv.exe
C:\Program Files\Sesam\Security\SvcCtrl.exe
C:\Program Files\Sesam\Servers\UsrMgmS.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\PDF Complete\pdfsty.exe
C:\WINDOWS\SMINST\Scheduler.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
C:\Program Files\Fichiers communs\Network Associates\TalkBack\TBMon.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe
C:\Program Files\Windows Live\Contrôle parental\fssui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\documents and settings\yd\local settings\application data\bdsmbf.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Documents and Settings\yd\Mes documents\SetPoint\SetPoint.exe
C:\PVSW\Bin\W3DBSMGR.EXE
C:\Program Files\Sesam\Servers\LicMon.exe
C:\Program Files\OpenOffice.org 2.2\program\soffice.exe
C:\Program Files\OpenOffice.org 2.2\program\soffice.BIN
C:\Program Files\Fichiers communs\Logitech\khalshared\KHALMNPR.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.fr.msn.ch/0SEFRCH/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.fr.msn.ch/0SEFRCH/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.fr.msn.ch/0SEFRCH/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: (no name) - {32341E7E-C319-46DE-91D0-E30BB1A3CABA} - (no file)
O2 - BHO: {eb7a2301-070d-7438-a044-bc39fe2b1064} - {4601b2ef-93cb-440a-8347-d0701032a7be} - C:\WINDOWS\system32\jajvml.dll
O2 - BHO: (no name) - {721DD6AA-A7DC-42BA-8D2F-31B2380A9C46} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [PDF Complete] "C:\Program Files\PDF Complete\pdfsty.exe"
O4 - HKLM\..\Run: [SDMSSplash] "C:\Program Files\HP_SDMS\SDMSSplash\launcher.exe" "launchdir=C:\Program Files\HP_SDMS\SDMSSplash"
O4 - HKLM\..\Run: [SetRefresh] C:\Program Files\Compaq\SetRefresh\SetRefresh.exe
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\Sminst\Recguard.exe
O4 - HKLM\..\Run: [Scheduler] C:\WINDOWS\SMINST\Scheduler.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Fichiers communs\Network Associates\TalkBack\TBMon.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [MMTray] "C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe"
O4 - HKLM\..\Run: [mmtask] "C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe"
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Contrôle parental\fssui.exe" -autorun
O4 - HKLM\..\Run: [68249cf9] rundll32.exe "C:\WINDOWS\system32\bdfpaqnb.dll",b
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\RunOnce: [Spybot - Search & Destroy] "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe" /autocheck
O4 - HKLM\..\RunOnce: [SpybotDeletingA9444] command /c del "C:\Documents and Settings\yd\Application Data\ShoppingReport\cs\dwld\WhiteList.xip"
O4 - HKLM\..\RunOnce: [SpybotDeletingC2565] cmd /c del "C:\Documents and Settings\yd\Application Data\ShoppingReport\cs\dwld\WhiteList.xip"
O4 - HKLM\..\RunOnce: [SpybotDeletingA3851] command /c del "C:\WINDOWS\system32\xxyAssSL.dll_old"
O4 - HKLM\..\RunOnce: [SpybotDeletingC5969] cmd /c del "C:\WINDOWS\system32\xxyAssSL.dll_old"
O4 - HKLM\..\RunOnce: [SpybotSnD] "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe" /autocheck
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [LDM] C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [bdsmbf] c:\documents and settings\yd\local settings\application data\bdsmbf.exe bdsmbf
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\RunOnce: [SpybotDeletingD8271] cmd /c del "C:\Documents and Settings\yd\Application Data\ShoppingReport\cs\dwld\WhiteList.xip"
O4 - HKCU\..\RunOnce: [SpybotDeletingB3491] command /c del "C:\WINDOWS\system32\xxyAssSL.dll_old"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: OpenOffice.org 2.2.lnk = C:\Program Files\OpenOffice.org 2.2\program\quickstart.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Logitech SetPoint.lnk = ?
O4 - Global Startup: Pervasive.SQL Workgroup Engine.lnk = C:\PVSW\Bin\W3DBSMGR.EXE
O4 - Global Startup: SAGE SESAM Service Monitor.lnk = C:\Program Files\Sesam\Servers\LicMon.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/ [...] wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = verifid.ch
O17 - HKLM\Software\..\Telephony: DomainName = verifid.ch
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = verifid.ch
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: Domain = verifid.ch
O18 - Protocol: bw+0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {A8779599-10EA-415D-B253-EA867190ADAB} - C:\Documents and Settings\yd\Mes documents\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - AppInit_DLLs: bykkgmkl.dll jajvml.dll
O20 - Winlogon Notify: iifGvSkL - C:\WINDOWS\
O20 - Winlogon Notify: __c0047E27 - C:\WINDOWS\
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Port Resolver - Hewlett-Packard Company - C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\HPBPRO.EXE
O23 - Service: HP Status Server - Hewlett-Packard Company - C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\HPBOID.EXE
O23 - Service: IviRegMgr - InterVideo - C:\Program Files\Fichiers communs\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: Service Framework McAfee (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
O23 - Service: PC Angel (PCA) - SoftThinks - C:\WINDOWS\SMINST\PCAngel.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files\PDF Complete\pdfsvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAGE SESAM manager de licence (SESAM Licence Manager) - Sage Sesam Ltd - C:\Program Files\Sesam\Security\SPISLMGR.exe
O23 - Service: SAGE SESAM serveur de licence (SESAM Licence Server) - Sage Sesam Ltd - C:\Program Files\Sesam\Servers\LicSrv.exe
O23 - Service: SAGE SESAM Service Agent (SESAM Service Agent) - Sage Sesam Ltd - C:\Program Files\Sesam\Security\SvcCtrl.exe
O23 - Service: SAGE SESAM server des utilisateurs et des droits (SESAM User Management Server) - Sage Sesam Ltd - C:\Program Files\Sesam\Servers\UsrMgmS.exe
--
End of file - 26942 bytes
|
Et voilà le rapport d'un scan que j'ai fais hier après-midi sur l'antivirus Kasperksy en ligne :
lien yousendit contenant le fichier word du rapport Kasperksy
Merci d'avance pour vos réponses !! Bonne journée !  Message édité par mecsympadu74 le 07-08-2008 à 10:13:11 ---------------
Venez lire toutes mes reviews de concerts !
Visitez et votez pour mon blog sur les illusions d'optique !
|