Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:03:35, on 17/03/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:Program FilesLavasoftAd-Awareaawservice.exe
C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe
C:WINDOWSsystem32spoolsv.exe
C:Program FilesAviraAntiVir PersonalEdition Classicsched.exe
C:Program Filesa-squared Anti-Dialera2service.exe
C:WINDOWSeHomeehRecvr.exe
C:WINDOWSeHomeehSched.exe
C:Program FilesJavajre6injqs.exe
C:PROGRA~1EFFICI~1ENTERN~1apppppoeservice.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32dllhost.exe
C:WINDOWSsystem32wbemwmiapsrv.exe
C:WINDOWSsystem32ctfmon.exe
C:PROGRA~1BABYLO~1abylon.exe
C:Program FilesRocketDockRocketDock.exe
C:Program FilesFree Download Managerfdm.exe
C:Program FilesHuawei TechnologiesHuawei SmartAX MT810dslmon.exe
C:Program FilesCalendariumCalendarium.exe
C:WINDOWSexplorer.exe
C:Program FilesAviraAntiVir PersonalEdition Classicavgnt.exe
C:Program FilesAviraAntiVir PersonalEdition Classicavguard.exe
C:Program FilesMozilla Firefoxfirefox.exe
C:Program FilesBitCometBitComet.exe
C:Documents and SettingsAdministrateurBureauSniffle.exe
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Program FilesFichiers communsAdobeAcrobatActiveXAcroIEHelper.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:Program FilesBitComet oolsBitCometBHO_1.2.6.26.dll
O2 - BHO: (no name) - {7033bf5a-4b87-4be7-89a7-a0a7305517d0} - C:WINDOWSsystem32avifil.dll (file missing)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:Program FilesJavajre6inssv.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:Program FilesFree Download Manageriefdm2.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:Program FilesJavajre6injp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:Program FilesJavajre6libdeployjqsiejqs_plugin.dll
O4 - HKLM..Run: [a-squared Anti-Dialer] "C:Program Filesa-squared Anti-Dialera2adguard.exe" /d=60
O4 - HKLM..Run: [avgnt] "C:Program FilesAviraAntiVir PersonalEdition Classicavgnt.exe" /min
O4 - HKLM..Run: [CTFMON] C:WINDOWSsystem32wscript.exe /E:vbs C:WINDOWSsystem32winjpg.jpg
O4 - HKCU..Run: [CTFMON.EXE] C:WINDOWSsystem32ctfmon.exe
O4 - HKCU..Run: [Babylon Translator] C:PROGRA~1BABYLO~1abylon.exe
O4 - HKCU..Run: [RocketDock] "C:Program FilesRocketDockRocketDock.exe"
O4 - HKCU..Run: [Dancer] "C:Program FilesWindows PlusDancerDancer.exe"
O4 - HKCU..Run: [Free Download Manager] "C:Program FilesFree Download Managerfdm.exe" -autorun
O4 - Startup: Calendarium.exe.lnk = C:Program FilesCalendariumCalendarium.exe
O4 - Startup: wbload.exe.lnk = C:Program FilesStardockObject DesktopWindowBlindswbload.exe
O4 - Global Startup: DSLMON.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:Program FilesMicrosoft OfficeOffice10OSA.EXE
O8 - Extra context menu item: &D&ownload &with BitComet -
res://C:Program FilesBitCometBitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet -
res://C:Program FilesBitCometBitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet -
res://C:Program FilesBitCometBitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Tout télécharger avec Free Download Manager -
file://C:Program FilesFree Download Managerdlall.htm
O8 - Extra context menu item: Télécharger avec Free Download Manager -
file://C:Program FilesFree Download Managerdllink.htm
O8 - Extra context menu item: Télécharger la sélection avec Free Download Manager -
file://C:Program FilesFree Download Managerdlselected.htm
O8 - Extra context menu item: Télécharger la vidéo avec Free Download Manager -
file://C:Program FilesFree Download Managerdlfvideo.htm
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} -
res://C:Program FilesBitComet oolsBitCometBHO_1.2.6.26.dll/206 (file missing)
O17 - HKLMSystemCCSServicesTcpip..{2237CE6E-0EF2-405E-845E-D968CDEBACD2}: NameServer = 41.221.20.4 193.251.169.165
O23 - Service: a-squared Anti-Dialer Service (a2AntiDialer) - Emsi Software GmbH - C:Program Filesa-squared Anti-Dialera2service.exe
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:Program FilesLavasoftAd-Awareaawservice.exe
O23 - Service: Planificateur Avira AntiVir Personal - Free Antivirus (AntiVirScheduler) - Avira GmbH - C:Program FilesAviraAntiVir PersonalEdition Classicsched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:Program FilesAviraAntiVir PersonalEdition Classicavguard.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:Program FilesAlwil SoftwareAvast4ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:Program FilesAlwil SoftwareAvast4ashWebSv.exe
O23 - Service: Service de transfert intelligent en arrière-plan (BITS) - Unknown owner - C:WINDOWS
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:Program FilesJavajre6injqs.exe
O23 - Service: Visibroker Activation Daemon (oad) - Unknown owner - C:PROGRA~1Borlandvbrokerinoad.exe (file missing)
O23 - Service: VisiBroker Smart Agent (osagent) - Unknown owner - C:PROGRA~1Borlandvbrokerinosagent.exe (file missing)
O23 - Service: PPPoE Service (PPPoEService) - Unknown owner - C:PROGRA~1EFFICI~1ENTERN~1apppppoeservice.exe
O23 - Service: Mises à jour automatiques (wuauserv) - Unknown owner - C:WINDOWS
--
End of file - 6599 bytes
Ps: j'ai supprimé MalwareBytes (j'ai lu quelque part qu'il contenait un Rogue ?) ainsi que AVG spyware...
Merci pour votre aide !