page : 1
2
|
pseudo |
sujet : bullseye network |
poupetto
|
salut j'ai un petit souci;j'ai pris un jour une salopperie qui s'apelle bullseye network et qui m'a installe une barre d'outils sur le bas de mon bureau;j'ai reussi a m'en debarrasser mais il me reste une barre blanche a la place et je n'arrive pas a m'en debarasser,meme en changeant de fond;l'un de vous a-t-il deja connu ce probleme et si oui comment s'en est-il debarasse? |
droopy45 lecteur mp3
|
|
poupetto
|
Scan saved at 22:16:14, on 15/05/2005
Platform: Windows ME (Win9x 4.90.3000)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\\WINDOWS\\SYSTEM\\KERNEL32.DLL
C:\\WINDOWS\\SYSTEM\\MSGSRV32.EXE
C:\\WINDOWS\\SYSTEM\\mmtask.tsk
C:\\WINDOWS\\SYSTEM\\MPREXE.EXE
C:\\WINDOWS\\SYSTEM\\MSTASK.EXE
C:\\WINDOWS\\SYSTEM\\SSDPSRV.EXE
C:\\PROGRAM FILES\\FICHIERS COMMUNS\\SYMANTEC SHARED\\CCEVTMGR.EXE
C:\\PROGRAM FILES\\FICHIERS COMMUNS\\SYMANTEC SHARED\\CCSETMGR.EXE
C:\\PROGRAM FILES\\NORTON ANTIVIRUS\\IWP\\NPFMNTOR.EXE
C:\\MES DOCUMENTS\\ADSL AUTOCONNECT.EXE
C:\\WINDOWS\\SYSTEM\\KB891711\\KB891711.EXE
C:\\WINDOWS\\SYSTEM\\RNAAPP.EXE
C:\\WINDOWS\\SYSTEM\\TAPISRV.EXE
C:\\WINDOWS\\EXPLORER.EXE
C:\\WINDOWS\\SYSTEM\\RESTORE\\STMGR.EXE
C:\\WINDOWS\\TASKMON.EXE
C:\\WINDOWS\\SYSTEM\\SYSTRAY.EXE
C:\\WINDOWS\\SYSTEM\\HKCMD.EXE
C:\\WINDOWS\\SYSTEM\\DDHELP.EXE
C:\\WINDOWS\\SYSTEM\\WMIEXE.EXE
C:\\PROGRAM FILES\\HEWLETT-PACKARD\\HP SHARE-TO-WEB\\HPGS2WND.EXE
C:\\PROGRAM FILES\\AHEAD\\INCD\\INCD.EXE
C:\\PROGRAM FILES\\HEWLETT-PACKARD\\HP SHARE-TO-WEB\\HPGS2WNF.EXE
C:\\WINDOWS\\SYSTEM\\LVCOMS.EXE
C:\\WINDOWS\\LOADQM.EXE
C:\\PROGRAM FILES\\FICHIERS COMMUNS\\REAL\\UPDATE_OB\\REALSCHED.EXE
C:\\PROGRAM FILES\\WHENUSEARCH\\WHSE.EXE
C:\\PROGRAM FILES\\E-CARTE BLEUE\\LA POSTE\\CVD ADESIO\\ECB.EXE
C:\\PROGRAM FILES\\FICHIERS COMMUNS\\SYMANTEC SHARED\\CCPD-LC\\SYMLCSVC.EXE
C:\\PROGRAM FILES\\FICHIERS COMMUNS\\SYMANTEC SHARED\\CCAPP.EXE
C:\\WINDOWS\\RunDLL.exe
C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\LOGITECHDESKTOPMESSENGER.EXE
C:\\PROGRAM FILES\\FICHIERS COMMUNS\\MICROSOFT SHARED\\WORKS SHARED\\WKCALREM.EXE
C:\\PROGRAM FILES\\WINDOWS MEDIA COMPONENTS\\ENCODER\\WMENCAGT.EXE
C:\\PROGRAM FILES\\9TELECOM\\MODEM_ADSL_USB_COMTREND_CT-350\\DSLMON.EXE
C:\\MES DOCUMENTS\\LOGICIELS PHOTO\\CM_CAMERA.EXE
C:\\PROGRAM FILES\\FINEPIXVIEWER\\QUICKDCF.EXE
C:\\WINDOWS\\SYSTEM\\SPOOL32.EXE
C:\\WINDOWS\\SYSTEM\\WBEM\\WINMGMT.EXE
C:\\MES DOCUMENTS\\P2P\\EMULE\\EMULE.EXE
C:\\MES DOCUMENTS\\LECTEURS\\HIJACKTHIS.EXE
C:\\PROGRAM FILES\\INTERNET EXPLORER\\IEXPLORE.EXE
R1 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Default_Page_URL = http://www.9online.fr
R1 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Search Page = http://www.heretofind.com/show.php?id=2&q=%s
R0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = mk:@MSITStore:C:\\spe\\start.chm::/start.html#
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Search Page = http://www.heretofind.com/show.php?id=2&q=%s
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = mk:@MSITStore:C:\\spe\\start.chm::/start.html#
R0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Toolbar,LinksFolderName = Liens
R3 - Default URLSearchHook is missing
F1 - win.ini: run=C:\\WINDOWS\\svcinit.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\\PROGRAM FILES\\ADOBE\\ACROBAT 5.0\\READER\\ACTIVEX\\ACROIEHELPER.OCX
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\\Program Files\\Spybot - Search & Destroy\\SDHelper.dll
O2 - BHO: e-Carte Bleue Browser Helper Object - {2E03C0FD-4C48-43A7-9A54-00240C70FF16} - C:\\WINDOWS\\SYSTEM\\BHOECART.DLL
O2 - BHO: LocalNRDObj Class - {00320615-B6C2-40A6-8F99-F1C52D674FAD} - C:\\WINDOWS\\LOCALNRD.DLL (file missing)
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\\Program Files\\Norton AntiVirus\\NavShExt.dll
O2 - BHO: CDownCom Class - {031B6D43-CBC4-46A5-8E46-CF8B407C1A33} - C:\\WINDOWS\\DOWNLO~1\\IPREG32.DLL (file missing)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\\program files\\google\\googletoolbar1.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\\WINDOWS\\SYSTEM\\MSDXM.OCX
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\\Program Files\\Norton AntiVirus\\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\\program files\\google\\googletoolbar1.dll
O4 - HKLM\\..\\Run: [ScanRegistry] C:\\WINDOWS\\scanregw.exe /autorun
O4 - HKLM\\..\\Run: [TaskMonitor] C:\\WINDOWS\\taskmon.exe
O4 - HKLM\\..\\Run: [PCHealth] C:\\WINDOWS\\PCHealth\\Support\\PCHSchd.exe -s
O4 - HKLM\\..\\Run: [SystemTray] SysTray.Exe
O4 - HKLM\\..\\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\\..\\Run: [IgfxTray] C:\\WINDOWS\\SYSTEM\\igfxtray.exe
O4 - HKLM\\..\\Run: [HotKeysCmds] C:\\WINDOWS\\SYSTEM\\hkcmd.exe
O4 - HKLM\\..\\Run: [WorksFUD] C:\\Program Files\\Microsoft Works\\wkfud.exe
O4 - HKLM\\..\\Run: [Microsoft Works Portfolio] C:\\Program Files\\Microsoft Works\\WksSb.exe /AllUsers
O4 - HKLM\\..\\Run: [Share-to-Web Namespace Daemon] C:\\Program Files\\Hewlett-Packard\\HP Share-to-Web\\hpgs2wnd.exe
O4 - HKLM\\..\\Run: [InCD] C:\\Program Files\\ahead\\InCD\\InCD.exe
O4 - HKLM\\..\\Run: [LVComs] C:\\WINDOWS\\SYSTEM\\LVComS.exe
O4 - HKLM\\..\\Run: [LogitechGalleryRepair] C:\\Program Files\\Logitech\\ImageStudio\\ISStart.exe
O4 - HKLM\\..\\Run: [LogitechImageStudioTray] C:\\Program Files\\Logitech\\ImageStudio\\LogiTray.exe
O4 - HKLM\\..\\Run: [LoadQM] loadqm.exe
O4 - HKLM\\..\\Run: [webHancer Survey Companion] "C:\\Program Files\\webHancer\\Programs\\whSurvey.exe"
O4 - HKLM\\..\\Run: [QuickTime Task] "C:\\WINDOWS\\SYSTEM\\QTTASK.EXE" -atboottime
O4 - HKLM\\..\\Run: [XXXmovie] C:\\Program Files\\SCom\\Dialers\\XXXmovie\\XXXmovie.exe /dontdial
O4 - HKLM\\..\\Run: [TkBellExe] "C:\\Program Files\\Fichiers communs\\Real\\Update_OB\\realsched.exe" -osboot
O4 - HKLM\\..\\Run: [WhenUSearchWHSE] C:\\Program Files\\WhenUSearch\\whse.exe
O4 - HKLM\\..\\Run: [hmmlyesejm] C:\\WINDOWS\\SYSTEM\\uhtxog.exe
O4 - HKLM\\..\\Run: [eCarteBleue-LP-P1] "C:\\PROGRA~1\\E-CART~1\\LAPOST~1\\CVDADE~1\\ECB.exe" /dontopenmycards
O4 - HKLM\\..\\Run: [Symantec Core LC] C:\\Program Files\\Fichiers communs\\Symantec Shared\\CCPD-LC\\symlcsvc.exe start
O4 - HKLM\\..\\Run: [ccApp] "C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccApp.exe"
O4 - HKLM\\..\\Run: [Symantec NetDriver Monitor] C:\\PROGRA~1\\SYMNET~1\\SNDMON.EXE
O4 - HKLM\\..\\Run: [REGSHAVE] C:\\Program Files\\REGSHAVE\\REGSHAVE.EXE /AUTORUN
O4 - HKLM\\..\\Run: [DXDllRegExe] C:\\WINDOWS\\SYSTEM\\dxdllreg.exe
O4 - HKLM\\..\\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\\..\\RunServices: [SchedulingAgent] mstask.exe
O4 - HKLM\\..\\RunServices: [SSDPSRV] C:\\WINDOWS\\SYSTEM\\ssdpsrv.exe
O4 - HKLM\\..\\RunServices: [*StateMgr] C:\\WINDOWS\\System\\Restore\\StateMgr.exe
O4 - HKLM\\..\\RunServices: [StillImageMonitor] C:\\WINDOWS\\SYSTEM\\STIMON.EXE
O4 - HKLM\\..\\RunServices: [SVC Service] C:\\WINDOWS\\SYSTEM\\svcinit.exe
O4 - HKLM\\..\\RunServices: [ccEvtMgr] "C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccEvtMgr.exe"
O4 - HKLM\\..\\RunServices: [ccSetMgr] "C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccSetMgr.exe"
O4 - HKLM\\..\\RunServices: [NPFMonitor] C:\\Program Files\\Norton AntiVirus\\IWP\\NPFMntor.exe
O4 - HKLM\\..\\RunServices: [ScriptBlocking] "C:\\Program Files\\Fichiers communs\\Symantec Shared\\Script Blocking\\SBServ.exe" -reg
O4 - HKLM\\..\\RunServices: [ADSLAutoconnect] C:\\Mes documents\\ADSL Autoconnect.exe -z
O4 - HKLM\\..\\RunServices: [KB891711] C:\\WINDOWS\\SYSTEM\\KB891711\\KB891711.EXE
O4 - HKLM\\..\\RunOnce: [MPE0] rundll32.exe streamci,StreamingDeviceSetup {8E60217D-A2EE-47f8-B0C5-0F44C55F66DC},GLOBAL,{FD0A5AF4-B41D-11d2-9C95-00C04F7971E0},C:\\WINDOWS\\INF\\mpe.inf,BDAcodec
O4 - HKLM\\..\\RunOnce: [STREAMIP0] rundll32.exe streamci,StreamingDeviceSetup {D84D449B-62FB-4ebb-B969-5183ED3DFB51},GLOBAL,{71985F4A-1CA1-11d3-9CC8-00C04F7971E0},C:\\WINDOWS\\INF\\streamip.inf,BDAcodec
O4 - HKLM\\..\\RunOnce: [SLIP0] rundll32.exe streamci,StreamingDeviceSetup {03884CB6-E89A-4deb-B69E-8DC621686E6A},GLOBAL,{FD0A5AF4-B41D-11d2-9C95-00C04F7971E0},C:\\WINDOWS\\INF\\slip.inf,VBIcodec
O4 - HKLM\\..\\RunOnce: [CCDECODE0] rundll32.exe streamci,StreamingDeviceSetup {562370a8-f8dd-11d2-bc64-00a0c95ec22e},GLOBAL,{07DAD660-22F1-11d1-A9F4-00C04FBBDE8F},C:\\WINDOWS\\INF\\CCDECODE.inf,CCDECODE.Interface.Install
O4 - HKLM\\..\\RunOnce: [NABTSFEC0] rundll32.exe streamci,StreamingDeviceSetup {07DAD662-22F1-11d1-A9F4-00C04FBBDE8F},GLOBAL,{07DAD660-22F1-11d1-A9F4-00C04FBBDE8F},C:\\WINDOWS\\INF\\NABTSFEC.inf,NABTSFEC.Interface.Install
O4 - HKLM\\..\\RunOnce: [WSTCODEC0] rundll32.exe streamci,StreamingDeviceSetup {70BC06E0-5666-11d3-A184-00105AEF9F33},GLOBAL,{07DAD660-22F1-11d1-A9F4-00C04FBBDE8F},C:\\WINDOWS\\INF\\WSTCODEC.inf,WSTCODEC.Interface.Install
O4 - HKCU\\..\\Run: [Taskbar Display Controls] RunDLL deskcp16.dll,QUICKRES_RUNDLLENTRY
O4 - HKCU\\..\\Run: [AOLMIcon] C:\\AOLMICONK2.EXE
O4 - HKCU\\..\\Run: [LDM] C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe
O4 - HKCU\\..\\Run: [iedll] C:\\WINDOWS\\iedll.exe
O4 - HKCU\\..\\Run: [Microsoft Works Update Detection] C:\\Program Files\\Microsoft Works\\WkDetect.exe
O4 - Startup: Rappels du Calendrier Microsoft Works.lnk = C:\\Program Files\\Fichiers communs\\Microsoft Shared\\Works Shared\\wkcalrem.exe
O4 - Startup: Pense-bête.lnk = C:\\Program Files\\Broderbund\\PrintMaster\\PMREMIND.EXE
O4 - Startup: Encoder Agent.lnk = C:\\Program Files\\Windows Media Components\\Encoder\\WMENCAGT.EXE
O4 - Startup: Agenda SAMCOMPHP.lnk = C:\\Program Files\\samcomphp\\agenda\\agenda_alerte.exe
O4 - Startup: DSLMON.lnk = C:\\Program Files\\9Telecom\\modem_ADSL_USB_Comtrend_CT-350\\dslmon.exe
O4 - Startup: Logitech Desktop Messenger.lnk = C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LDMConf.exe
O4 - Startup: Adobe Gamma Loader.lnk = C:\\Program Files\\Fichiers communs\\Adobe\\Calibration\\Adobe Gamma Loader.exe
O4 - Startup: CAMEDIA Master.lnk = C:\\Mes documents\\logiciels photo\\CM_camera.exe
O4 - Startup: Exif Launcher.lnk = C:\\Program Files\\FinePixViewer\\QuickDCF.exe
O6 - HKCU\\Software\\Policies\\Microsoft\\Internet Explorer\\Restrictions present
O6 - HKCU\\Software\\Policies\\Microsoft\\Internet Explorer\\Control Panel present
O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\\PROGRA~1\\INCRED~1\\bin\\resources\\WebMenuImg.htm
O8 - Extra context menu item: &Google Search - res://C:\\PROGRAM FILES\\GOOGLE\\GOOGLETOOLBAR1.DLL/cmsearch.html
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://C:\\PROGRAM FILES\\GOOGLE\\GOOGLETOOLBAR1.DLL/cmcache.html
O8 - Extra context menu item: Pages similaires - res://C:\\PROGRAM FILES\\GOOGLE\\GOOGLETOOLBAR1.DLL/cmsimilar.html
O8 - Extra context menu item: Pages liées - res://C:\\PROGRAM FILES\\GOOGLE\\GOOGLETOOLBAR1.DLL/cmbacklinks.html
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\\WINDOWS\\SYSTEM\\Shdocvw.dll
O9 - Extra button: (no name) - {10C32F00-84DB-45C6-90D3-560D0AEF08D7} - (no file)
O9 - Extra button: Microsoft® JavaScript® Console - {79F73A93-1E0A-4F76-ADD6-442A01E7D7D2} - C:\\WINDOWS\\SYSTEM\\COMDLG32.OCX
O9 - Extra 'Tools' menuitem: JavaScript Console - {79F73A93-1E0A-4F76-ADD6-442A01E7D7D2} - C:\\WINDOWS\\SYSTEM\\COMDLG32.OCX
O9 - Extra button: (no name) - {237AA178-C3BC-4f67-A8BB-D8BC14BA0B89} - C:\\WINDOWS\\REMOVE_ME.DLL
O9 - Extra button: Microsoft® JavaScript® Console - {79F73A93-1E0A-4F76-ADD6-442A01E7D7D2} - C:\\WINDOWS\\SYSTEM\\COMDLG32.OCX (HKCU)
O9 - Extra 'Tools' menuitem: JavaScript Console - {79F73A93-1E0A-4F76-ADD6-442A01E7D7D2} - C:\\WINDOWS\\SYSTEM\\COMDLG32.OCX (HKCU)
O9 - Extra button: (no name) - {237AA178-C3BC-4f67-A8BB-D8BC14BA0B89} - C:\\WINDOWS\\REMOVE_ME.DLL (HKCU)
O12 - Plugin for .pdf: C:\\PROGRA~1\\INTERN~1\\PLUGINS\\nppdf32.dll
O13 - DefaultPrefix: http://www.heretofind.com/show.php?id=2&q=
O13 - WWW Prefix: http://www.heretofind.com/show.php?id=2&q=
O13 - Home Prefix: http://www.heretofind.com/show.php?id=2&q=
O13 - Mosaic Prefix: http://www.heretofind.com/show.php?id=2&q=
O13 - Gopher Prefix: http://www.heretofind.com/show.php?id=2&q=
O16 - DPF: {0246ECA8-996F-11D1-BE2F-00A0C9037DFE} (TDServer Control) - http://www.encyclo.wanadoo.fr/JS/tdserver.cab
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://geotoo.mkm-wpe.net/activex/AxisCamControl.ocx
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab
O16 - DPF: {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} (iTunesDetector Class) - http://ax.phobos.apple.com.edgesuite.net/detection/ITDetector.cab
O18 - Protocol: offline-8876480 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw00 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw00s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw10 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw10s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw20 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw20s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw30 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw30s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw40 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw40s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw50 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw50s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw60 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw60s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw70 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw70s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw80 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw80s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw90 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw90s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwa0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwa0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwb0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwb0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwc0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwc0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwd0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwd0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwe0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwe0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwf0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwf0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwg0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwg0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwh0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwh0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwi0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwi0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwj0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwj0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwk0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwk0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwl0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwl0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwm0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwm0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwn0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwn0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwo0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwo0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwp0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwp0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwq0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwq0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwr0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwr0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bws0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bws0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwt0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwt0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwu0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwu0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwv0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwv0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bww0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bww0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwx0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwx0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwy0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwy0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwz0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwz0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw-0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw-0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw+0 - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bw+0s - {A669AACB-986B-4170-8F40-48A9C8909020} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\BWPLUGPROTOCOL-8876480.DLL
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\\PROGRAM FILES\\LOGITECH\\DESKTOP MESSENGER\\8876480\\PROGRAM\\GAPLUGPROTOCOL-8876480.DLL
voila j'espere que tu comprendras quelque chose parce que moi rien du tout. |
poupetto
|
alors droopy 45 me reste-t-il des trucs a nettoyer?je conprends rien a ce truc je sais meme pas a quoi sert ce logiciel. |
droopy45 lecteur mp3
|
Méchant : C:\\PROGRAM FILES\\WHENUSEARCH\\WHSE.EXE
==> tâche en cours (WhenUSearch adware). Il faut la terminer manuellement si tu peux, et l'effacer.
C'est tout pour les processus qui tournent.
Passons au reste :
R0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = mk:@MSITStore:C:\\spe\\start.chm::/start.html#
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = mk:@MSITStore:C:\\spe\\start.chm::/start.html#
R3 - Default URLSearchHook is missing
F1 - win.ini: run=C:\\WINDOWS\\svcinit.exe
==> concerne la page de démarrage d'internet explorer. A effacer absolument (voir méthode dans le post suivant)
O2 - BHO: LocalNRDObj Class - {00320615-B6C2-40A6-8F99-F1C52D674FAD} - C:\\WINDOWS\\LOCALNRD.DLL (file missing)
O2 - BHO: CDownCom Class - {031B6D43-CBC4-46A5-8E46-CF8B407C1A33} - C:\\WINDOWS\\DOWNLO~1\\IPREG32.DLL (file missing)
=> à effacer car inutile
O4 - HKLM\\..\\Run: [webHancer Survey Companion] "C:\\Program Files\\webHancer\\Programs\\whSurvey.exe"
O4 - HKLM\\..\\Run: [XXXmovie] C:\\Program Files\\SCom\\Dialers\\XXXmovie\\XXXmovie.exe /dontdial
O4 - HKLM\\..\\Run: [WhenUSearchWHSE] C:\\Program Files\\WhenUSearch\\whse.exe
O4 - HKLM\\..\\RunServices: [SVC Service] C:\\WINDOWS\\SYSTEM\\svcinit.exe
O4 - HKCU\\..\\Run: [iedll] C:\\WINDOWS\\iedll.exe
O13 - DefaultPrefix: http://www.heretofind.com/show.php?id=2&q=
O13 - WWW Prefix: http://www.heretofind.com/show.php?id=2&q=
O13 - Home Prefix: http://www.heretofind.com/show.php?id=2&q=
O13 - Mosaic Prefix: http://www.heretofind.com/show.php?id=2&q=
O13 - Gopher Prefix: http://www.heretofind.com/show.php?id=2&q=
Voilà. Tout ça est à effacer. Je t'explique comment juste après --- message édité par droopy45 à 21/05/2005 02:04:46 --- |
droopy45 lecteur mp3
|
Bon. On va faire un grand nettoyage de printemps, ça fait pas de mal.
J'explique tout en détail, ça pourra servir à d'autres.
D'abord, si tu ne les a pas déjà, installe les logiciels CWShredder, Spybot et Adaware. Et tu les mets à jour tout de suite, comme ton antivirus.
Ensuite,
- tu fermes toute les fenêtres d'Internet Explorer et tous les programmes actifs.
- tu desactives la restauration de millenium (voir ce lien pour XP, c'est peut être pareil sous millenium)
Ensuite, une fois tes logiciels de nettoyage à jour :
- tu redémarres en mode sans echec
- tu vides les Temporary Internet Files et les cookies
- tu fais un scan antivirus
- tu lances CWShredder, toutes fenêtres Internet Explorer fermées
- tu fais un scan avec Spybot puis Adaware (et tu vires ce qu'ils te trouvent)
Ensuite tu relances HijackThis. Si les lignes que j'ai signalé au dessus sont toujours là, tu fermes le processus que j'ai cité en premier si tu peux, puis tu effaces le fichier concerné du disque dur.
Tu sélectionnes toutes les lignes que j'ai donné (tu coches) puis tu clic sur "fix checked".
Tu peux redémarrer ton PC, refaire un log HiJackThis et le poster ici pour voir si des trucs reviennent.
Après je te conseille d'installer un logiciel comme SpywareBlaster qui permet d'empêcher certaines saloperies de venir squatter ton PC.
Bon courage
--- message édité par droopy45 à 21/05/2005 02:22:31 --- |
metanium Tout va bien ???
|
___________________ Le 56 k c'est tabou, on en viendra tous à bout !!!
|
alexandre g fé 1 F-or
|
essaies, on verra bien... ___________________ Envoyé du monde libre par Linux Mint. Linux, c'est bon, mangez-en !
|
poupetto
|
merci je te tiens au courant |
poupetto
|
quelqu'un sait comment on redemarre en mode sans echec |
droopy45 lecteur mp3
|
il faut appuyer sur F8 pendant le démarrage |
page : 1
2
|