Chargement en cours...
Connexion au forum informatique de Sur-la-Toile
La discussion « trojan swizzor.1 » se trouve dans le forum « Virus, troyens, etc... »
Statut de la discussion » trojan swizzor.1 « ( normale)

trojan swizzor.1

Le 27 août à 11:24 #

Salut à tous voila mon probleme j'ai chopé le virus au doux non de trojan swizzor.1 il a ete détecté par bitdefender mais ce dernier n'arrive pas à le désinfecter ni à le déplacer.
mon pc ralentit méchament depuis voici le rapport hijackthis. aidez moi svp merci:

Code:
  1.   Logfile of HijackThis v1.99.1
  2.   Scan saved at 11:07:40, on 27/08/2008
  3.   Platform: Windows XP SP3 (WinNT 5.01.2600)
  4.   MSIE: Internet Explorer v7.00 (7.00.6000.16705)
  5.   
  6.   Running processes:
  7.   C:\WINDOWS\System32\smss.exe
  8.   C:\WINDOWS\system32\csrss.exe
  9.   C:\WINDOWS\system32\winlogon.exe
  10.   C:\WINDOWS\system32\services.exe
  11.   C:\WINDOWS\system32\lsass.exe
  12.   C:\WINDOWS\system32\Ati2evxx.exe
  13.   C:\WINDOWS\system32\svchost.exe
  14.   C:\WINDOWS\system32\svchost.exe
  15.   C:\WINDOWS\System32\svchost.exe
  16.   C:\WINDOWS\system32\Ati2evxx.exe
  17.   C:\WINDOWS\System32\svchost.exe
  18.   C:\WINDOWS\system32\svchost.exe
  19.   C:\WINDOWS\system32\spoolsv.exe
  20.   C:\WINDOWS\Explorer.EXE
  21.   C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
  22.   C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
  23.   C:\WINDOWS\system32\HPZipm12.exe
  24.   C:\Program Files\Spyware Doctor\pctsAuxs.exe
  25.   C:\Program Files\Spyware Doctor\pctsSvc.exe
  26.   C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
  27.   C:\Program Files\Spyware Doctor\pctsTray.exe
  28.   C:\Program Files\Belgacom\bin\sprtsvc.exe
  29.   C:\WINDOWS\System32\svchost.exe
  30.   C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
  31.   C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
  32.   C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
  33.   C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
  34.   C:\Program Files\Softwin\BitDefender10\vsserv.exe
  35.   C:\WINDOWS\System32\alg.exe
  36.   C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
  37.   C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
  38.   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
  39.   C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
  40.   C:\Program Files\Creative\Creative Live! Cam\VideoFX\StartFX.exe
  41.   C:\WINDOWS\V0220Mon.exe
  42.   C:\Program Files\Belgacom\bin\sprtcmd.exe
  43.   C:\PROGRA~1\Softwin\BITDEF~1\bdmcon.exe
  44.   C:\Program Files\Softwin\BitDefender10\bdagent.exe
  45.   C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
  46.   F:\Ancien Disque Sauvegarde\ClocX\ClocX.exe
  47.   C:\WINDOWS\system32\ctfmon.exe
  48.   C:\Program Files\Creative\Creative Live! Cam\Live! Cam Manager\CTLCMgr.exe
  49.   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
  50.   C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
  51.   C:\Program Files\Logitech\Desktop Messenger76480\Program\LogitechDesktopMessenger.exe
  52.   C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
  53.   C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
  54.   C:\Program Files\Windows Live\Messenger\msnmsgr.exe
  55.   C:\Program Files\Windows Live\Messenger\usnsvc.exe
  56.   C:\Program Files\Spyware Doctor\pctsGui.exe
  57.   C:\PROGRA~1\Softwin\BITDEF~1\bdlite.exe
  58.   C:\Program Files\Mozilla Firefox\firefox.exe
  59.   C:\Program Files\WinRAR\WinRAR.exe
  60.   C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.734\HijackThis.exe
  61.   
  62.   R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
  63.   R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
  64.   R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
  65.   R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
  66.   R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
  67.   R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
  68.   R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
  69.   R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
  70.   R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://go.microsoft.com/fwlink/?LinkId=54843
  71.   R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
  72.   O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
  73.   O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
  74.   O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
  75.   O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
  76.   O2 - BHO: (no name) - {a981dcd2-ad48-4260-9e35-7e7602f76027} - (no file)
  77.   O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier.1.1119.1736\swg.dll
  78.   O4 - HKLM\..\Run: [Smapp] C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
  79.   O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
  80.   O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
  81.   O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
  82.   O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
  83.   O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
  84.   O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
  85.   O4 - HKLM\..\Run: [AVFX Engine] C:\Program Files\Creative\Creative Live! Cam\VideoFX\StartFX.exe
  86.   O4 - HKLM\..\Run: [V0220Mon.exe] C:\WINDOWS\V0220Mon.exe
  87.   O4 - HKLM\..\Run: [Belgacom] "C:\Program Files\Belgacom\bin\sprtcmd.exe" /P Belgacom
  88.   O4 - HKLM\..\Run: [BDMCon] C:\PROGRA~1\Softwin\BITDEF~1\bdmcon.exe
  89.   O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\Softwin\BitDefender10\bdagent.exe"
  90.   O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
  91.   O4 - HKLM\..\Run: [ISTray] "C:\Program Files\Spyware Doctor\pctsTray.exe"
  92.   O4 - HKLM\..\Run: [ClocX] F:\Ancien Disque Sauvegarde\ClocX\ClocX.exe
  93.   O4 - HKLM\..\RunOnce: [vmc] C:\PROGRA~1\FICHIE~1\SONYSH~1\OpenMG\Regsvr32.exe /s C:\PROGRA~1\FICHIE~1\SONYSH~1\AVLib\vmc.dll
  94.   O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
  95.   O4 - HKCU\..\Run: [Creative Live! Cam Manager] "C:\Program Files\Creative\Creative Live! Cam\Live! Cam Manager\CTLCMgr.exe"
  96.   O4 - HKCU\..\Run: [SpybotSD TeaTimer] "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"
  97.   O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger76480\Program\LogitechDesktopMessenger.exe
  98.   O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
  99.   O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger76480\Program\LDMConf.exe
  100.   O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
  101.   O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
  102.   O9 - Extra button: (no name) - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - (no file)
  103.   O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
  104.   O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
  105.   O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
  106.   O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
  107.   O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
  108.   O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
  109.   O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
  110.   O11 - Options group: [INTERNATIONAL] International*
  111.   O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1214850095921
  112.   O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111401/housecall.trendmicro.com/housecall/xscan53.cab
  113.   O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - http://fichiers.touslesdrivers.com/fichiers/hardwaredetection/hardwaredetection_3_0_0_32.cab
  114.   O16 - DPF: {B7D07999-2ADB-4AEB-997E-F61CB7B2E2CD} (TSEasyInstallX Control) - http://www.trendsecure.com/easy_install/_activex/fr/TSEasyInstallX.CAB
  115.   O18 - Protocol: bw+0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  116.   O18 - Protocol: bw+0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  117.   O18 - Protocol: bw-0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  118.   O18 - Protocol: bw-0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  119.   O18 - Protocol: bw00 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  120.   O18 - Protocol: bw00s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  121.   O18 - Protocol: bw10 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  122.   O18 - Protocol: bw10s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  123.   O18 - Protocol: bw20 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  124.   O18 - Protocol: bw20s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  125.   O18 - Protocol: bw30 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  126.   O18 - Protocol: bw30s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  127.   O18 - Protocol: bw40 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  128.   O18 - Protocol: bw40s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  129.   O18 - Protocol: bw50 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  130.   O18 - Protocol: bw50s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  131.   O18 - Protocol: bw60 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  132.   O18 - Protocol: bw60s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  133.   O18 - Protocol: bw70 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  134.   O18 - Protocol: bw70s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  135.   O18 - Protocol: bw80 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  136.   O18 - Protocol: bw80s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  137.   O18 - Protocol: bw90 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  138.   O18 - Protocol: bw90s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  139.   O18 - Protocol: bwa0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  140.   O18 - Protocol: bwa0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  141.   O18 - Protocol: bwb0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  142.   O18 - Protocol: bwb0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  143.   O18 - Protocol: bwc0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  144.   O18 - Protocol: bwc0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  145.   O18 - Protocol: bwd0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  146.   O18 - Protocol: bwd0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  147.   O18 - Protocol: bwe0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  148.   O18 - Protocol: bwe0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  149.   O18 - Protocol: bwf0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  150.   O18 - Protocol: bwf0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  151.   O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger76480\Program\GAPlugProtocol-8876480.dll
  152.   O18 - Protocol: bwg0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  153.   O18 - Protocol: bwg0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  154.   O18 - Protocol: bwh0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  155.   O18 - Protocol: bwh0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  156.   O18 - Protocol: bwi0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  157.   O18 - Protocol: bwi0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  158.   O18 - Protocol: bwj0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  159.   O18 - Protocol: bwj0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  160.   O18 - Protocol: bwk0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  161.   O18 - Protocol: bwk0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  162.   O18 - Protocol: bwl0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  163.   O18 - Protocol: bwl0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  164.   O18 - Protocol: bwm0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  165.   O18 - Protocol: bwm0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  166.   O18 - Protocol: bwn0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  167.   O18 - Protocol: bwn0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  168.   O18 - Protocol: bwo0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  169.   O18 - Protocol: bwo0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  170.   O18 - Protocol: bwp0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  171.   O18 - Protocol: bwp0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  172.   O18 - Protocol: bwq0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  173.   O18 - Protocol: bwq0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  174.   O18 - Protocol: bwr0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  175.   O18 - Protocol: bwr0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  176.   O18 - Protocol: bws0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  177.   O18 - Protocol: bws0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  178.   O18 - Protocol: bwt0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  179.   O18 - Protocol: bwt0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  180.   O18 - Protocol: bwu0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  181.   O18 - Protocol: bwu0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  182.   O18 - Protocol: bwv0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  183.   O18 - Protocol: bwv0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  184.   O18 - Protocol: bww0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  185.   O18 - Protocol: bww0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  186.   O18 - Protocol: bwx0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  187.   O18 - Protocol: bwx0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  188.   O18 - Protocol: bwy0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  189.   O18 - Protocol: bwy0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  190.   O18 - Protocol: bwz0 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  191.   O18 - Protocol: bwz0s - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  192.   O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
  193.   O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
  194.   O18 - Protocol: offline-8876480 - {7052EC66-E84E-4C1F-AD81-81FB117D9144} - C:\Program Files\Logitech\Desktop Messenger76480\Program\BWPlugProtocol-8876480.dll
  195.   O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll
  196.   O20 - Winlogon Notify: dimsntfy - %SystemRoot%\System32\dimsntfy.dll (file missing)
  197.   O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
  198.   O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
  199.   O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
  200.   O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
  201.   O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe" /service (file missing)
  202.   O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
  203.   O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver50\Intel 32\IDriverT.exe
  204.   O23 - Service: BitDefender Desktop Update Service (LIVESRV) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe" /service (file missing)
  205.   O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\MSCSPTISRV.exe
  206.   O23 - Service: PACSPTISVR - Unknown owner - C:\Program Files\Fichiers communs\Sony Shared\AVLib\PACSPTISVR.exe
  207.   O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
  208.   O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
  209.   O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
  210.   O23 - Service: SonicStage Back-End Service - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SsBeSvc.exe
  211.   O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
  212.   O23 - Service: SupportSoft Sprocket Service (belgacom) (sprtsvc_belgacom) - SupportSoft, Inc. - C:\Program Files\Belgacom\bin\sprtsvc.exe
  213.   O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
  214.   O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SSScsiSV.exe
  215.   O23 - Service: SupportSoft RemoteAssist - SupportSoft, Inc. - C:\Program Files\Fichiers communs\Supportsoft\bin\ssrc.exe
  216.   O23 - Service: BitDefender Virus Shield (VSSERV) - Unknown owner - C:\Program Files\Softwin\BitDefender10\vsserv.exe" /service (file missing)
  217.   O23 - Service: Moteur Webroot Spy Sweeper (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
  218.   O23 - Service: BitDefender Communicator (XCOMM) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe" /service (file missing)



    (Modifié par tout_pour_la_science le 27-08-2008 à 11:35)

    Le 27 août à 11:32 #

    Salut,

    Fait ceci :

    Télécharger sur le bureau Malwarebyte's Anti-Malware

    => double-clic sur mbam-setup pour lancer l'installation
    => Installer simplement sans rien modifier

    Si Windows Vista faire ceci sinon ne pas le faire :
    => démarrer ==> panneau de configuration
    => Double Clic sur Comptes utilisateurs
    => Clic Activer ou désactiver le contrôle des comptes utilisateurs
    => Décocher Utiliser le contrôle des comptes utilisateurs pour vous aider à protéger votre ordinateur
    => clic ok
    => redémarrer le PC


    => Quand le programme lancé ==> onglet Mise à jour cliquer sur => Recherche de mise à jour
    Onglet Recherche => cocher Exécuter un examen complet
    => Clic Rechercher
    => Eventuellement décocher les disque à ne pas analyser
    => Clic Lancer l'examen
    => En fin de scan , si infection trouvée
    ==> Clic Afficher résultat
    => Fermer vos applications en cours
    => Vérifier si tout est coché et clic Supprimer la sélection

    => un rapport s'ouvre le copier et le coller dans la réponse


    --------------------------------------------------------------------------------------

    Télécharger et enregistrer sur le bureau Combofix

    => Double-clic sur Combofix
    => Presser 1 quand demandé
    => Attendre la fermeture de l’outil ( 5 à 10 mn)
    => Copier/coller le rapport dans la réponse
    => Un rapport dans C:\Combofix.txt à mettre dans la réponse
    => Qoobox dans C:\ à supprimer

    -------------------------------------------------------------------------

    Télécharge sur le bureau Hijackthis
    => Double-clic dessus
    => Clic Do a system scan and save the log
    => Copier le rapport, le coller dans la réponse

    +++

    Le 27 août à 14:21 #

    voici le rapport de malwarbytes, j'ai scanné encore avec bitdefender mais tjs la présence de trojan.swizzor.1 des que je 'ai le rapport de bitdefender je le met . merci de ton aide


    Malwarebytes' Anti-Malware 1.25
    Version de la base de données: 1088
    Windows 5.1.2600 Service Pack 3

    14:07:26 27/08/2008
    mbam-log-08-27-2008 (14-07-26).txt

    Type de recherche: Examen complet (C:\|E:\|F:\|)
    Eléments examinés: 134007
    Temps écoulé: 1 hour(s), 49 minute(s), 39 second(s)

    Processus mémoire infecté(s): 0
    Module(s) mémoire infecté(s): 0
    Clé(s) du Registre infectée(s): 1
    Valeur(s) du Registre infectée(s): 0
    Elément(s) de données du Registre infecté(s): 0
    Dossier(s) infecté(s): 0
    Fichier(s) infecté(s): 0

    Processus mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Module(s) mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Clé(s) du Registre infectée(s):
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> Quarantined and deleted successfully.

    Valeur(s) du Registre infectée(s):
    (Aucun élément nuisible détecté)

    Elément(s) de données du Registre infecté(s):
    (Aucun élément nuisible détecté)





    Le 27-08-2008 à 11:32, leman-74 :
    Salut,

    Fait ceci :

    Télécharger sur le bureau Malwarebyte's Anti-Malware

    => double-clic sur mbam-setup pour lancer l'installation
    => Installer simplement sans rien modifier

    Si Windows Vista faire ceci sinon ne pas le faire :
    => démarrer ==> panneau de configuration
    => Double Clic sur Comptes utilisateurs
    => Clic Activer ou désactiver le contrôle des comptes utilisateurs
    => Décocher Utiliser le contrôle des comptes utilisateurs pour vous aider à protéger votre ordinateur
    => clic ok
    => redémarrer le PC


    => Quand le programme lancé ==> onglet Mise à jour cliquer sur => Recherche de mise à jour
    Onglet Recherche => cocher Exécuter un examen complet
    => Clic Rechercher
    => Eventuellement décocher les disque à ne pas analyser
    => Clic Lancer l'examen
    => En fin de scan , si infection trouvée
    ==> Clic Afficher résultat
    => Fermer vos applications en cours
    => Vérifier si tout est coché et clic Supprimer la sélection

    => un rapport s'ouvre le copier et le coller dans la réponse


    --------------------------------------------------------------------------------------

    Télécharger et enregistrer sur le bureau Combofix

    => Double-clic sur Combofix
    => Presser 1 quand demandé
    => Attendre la fermeture de l’outil ( 5 à 10 mn)
    => Copier/coller le rapport dans la réponse
    => Un rapport dans C:\Combofix.txt à mettre dans la réponse
    => Qoobox dans C:\ à supprimer

    -------------------------------------------------------------------------

    Télécharge sur le bureau Hijackthis
    => Double-clic dessus
    => Clic Do a system scan and save the log
    => Copier le rapport, le coller dans la réponse

    +++

    Le 27 août à 15:56 #

    Euh , peut-etre faire en entier ce que je t'ai demander ! Nan ?
    Maintenant tu fais un ComboFix + un HijackThis !

    ++
    » Liste des Forums » Virus, troyens, etc...




    Ces discussions pourraient vous intéresser également:


    TROJAN.SWIZZOR.DH
    trojan Win32:Swizzor-gen [Trj]
    Trojan Swizzor dh virus
    Trojan win32: swizzor
    Trojan- Donloader.Win32.Swiz zor.do

    Sujets Connexes

    Arakien & WéWé


    Forums

    Navigation


    Publicité

    Connectés

    Il y a actuellement 668 visiteurs et 12 toiliens en ligne, ainsi que 9 connectés sur le tchat.

    Recherche

    Annonces


    Sauf mention contraire, le contenu du blog et du forum est sous licence Creative Commons By-Sa. Vous avez le droit de le reproduire à condition de citer l'auteur, de faire un lien vers la page d'origine, et de partager vos travaux dérivés selon les mêmes conditions.

    Conditions d'utilisation -

    Partenaires: [Informatique Multimédia] [Portail du Maroc] [Actualité High Tech]
    [Tutoriaux Photoshop] [éligibilité ADSL] [Astuces Windows]

    Page générée en 719 millisecondes sur WWW1.