Salut voila hijackthis:
Logfile of HijackThis v1.99.1
Scan saved at 19:38:56, on 26/10/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16544)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
C:\Program Files\Softwin\BitDefender10\vsserv.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\Softwin\BITDEF~1\bdmcon.exe
C:\Program Files\Softwin\BitDefender10\bdagent.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Hijackthis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://www.wanadoo.fr/go/page_recherche/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.orange.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKLM\..\Run: [BDMCon] C:\PROGRA~1\Softwin\BITDEF~1\bdmcon.exe
O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\Softwin\BitDefender10\bdagent.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O8 - Extra context menu item: Open with BitPump - C:\Program Files\AnalogX\BitPump\ieint.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} -
http://www.wanadoo.fr (file missing) (HKCU)
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: McAfee Wi-FiScan -
http://download.mcafee.com/molbin/iss-loc/mwfs/3.1.0.0/WscWlanScannerCtrl.c"
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) -
http://webscanner.kaspersky.fr/kavwebscan_unicode.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) -
http://download.bitdefender.com/resource...oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuw"
O16 - DPF: {6531D99C-0D0E-4293-B3CB-A3E1D0D41847} (AhnASP Control) -
http://aspglobal.ahnlab.com/asp/cab/AhnASP.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muw"
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) -
http://www.touslesdrivers.com/fichiers/hardwaredetection/hardwaredetection_"
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) -
http://javadl-esd.sun.com/update/1.6.0/j...586-jc.cab
O16 - DPF: {8EB3FF4E-86A1-4717-884D-7BA2D38272CB} (F-Secure Online Scanner) -
http://www.securitoo.com/fra/pages/navol/fscax.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) -
http://acs.pandasoftware.com/activescan/...asinst.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.macromedia.com/get/sh...wflash.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) -
http://download.mcafee.com/molbin/iss-lo...cfscan.cab
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe" /service (file missing)
O23 - Service: HDD Temperature (HDDTService) - PalickSoft - C:\Program Files\PalickSoft\HDD Temperature\HDDTSvc.exe
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe" /service (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - Unknown owner - C:\Program Files\Softwin\BitDefender10\vsserv.exe" /service (file missing)
O23 - Service: BitDefender Communicator (XCOMM) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe" /service (file missing)
et sinon j ais des rapports bizzares :
vlist.log:
[0x00001268] 17/10/2007 18:30:10:328 :WARNING!!! CoCreateInstance Function Failed...Trying to Register kavvlg.dll...returning 80040154
[0x00001268] 17/10/2007 18:30:10:531 :Registered DLL kavvlg.dll Successfully!!!
[0x00001268] 17/10/2007 18:30:27:671 :[C:\KASPER~1\vlist.txt]Virus List was Generated Successfully!!!
DxSysChk_Log.txt:
DXSYSCHK PID:11b8 TID:1894 21:02:08.203(1B10757000D0) CDxSystemChecker::SetPackageForTheWebPath - Checking to see if \APPS\PROSETDX\Win32 path exists
DXSYSCHK PID:11b8 TID:1894 21:02:08.203(1B107573CD20) CDxSystemChecker::SetPackageForTheWebPath - Path exists C:\DOCUME~1\mbaPC\LOCALS~1\Temp\pft246.tmp\APPS\PROSETDX\Win32
DXSYSCHK PID:11b8 TID:1894 21:02:08.203(1B10757556C
CDxSystemChecker::Run - Now entering method
DXSYSCHK PID:11b8 TID:1894 21:02:08.203(1B1075765EC
CDxSystemChecker::HideConsoleWindow - Entering Method
DXSYSCHK PID:11b8 TID:1894 21:02:08.218(1B107810C8D0) CDxSystemChecker::HideConsoleWindow - Exiting Method
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B72EA70) CDxSystemChecker::ProcessApplicationINI - Now entering method
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B76D95
CDxSystemChecker::ProcessApplicationINI - Looking for INI file in the location: C:\DOCUME~1\mbaPC\LOCALS~1\Temp\pft246.tmp\APPS\PROSETDX\Win32\DxSysChk.ini
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B7D6B2
CDxSystemChecker::SetPlatformType - Entering Method
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B7E9AF
CDxSystemChecker::SetPlatformType - Platform IA32
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B7F3DD0) CDxSystemChecker::SetPlatformType - Exiting Method
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B82246
CDxSystemChecker::SetOSType - Entering Method
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B82D72
CDxSystemChecker::SetOSType - Win2K Supported
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B85DB90) CDxSystemChecker::SetOSType - Entering Method
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B8690E0) CDxSystemChecker::SetOSType - WinXP32 Supported
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B896930) CDxSystemChecker::SetOSType - Entering Method
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B8A1A90) CDxSystemChecker::SetOSType - Win2KSrv32 Supported
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B8D3410) CDxSystemChecker::ProcessApplicationINI - All OSs found, now breaking. 3 OSs supported
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B8E09C0) CDxSystemChecker::ProcessApplicationINI - Exiting Method
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B8EB35
CDxSystemChecker::IsSystemPlatformCompatible - Now entering method
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B8FD8D0) CDxSystemChecker::IsSystemPlatformCompatible - Platform IA32
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B90874
CDxSystemChecker::IsSystemPlatformCompatible - Returning 1
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B9129D
CDxSystemChecker::IsSystemOSCompatible - Entering Method
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B920FC
CDxSystemChecker::IsSystemOSCompatible - OS match found
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B92B890) CDxSystemChecker::IsSystemOSCompatible - Exiting Method - Returning 1
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B936E2
CDxSystemChecker::LaunchApplication - Entering Method
DXSYSCHK PID:11b8 TID:1894 21:02:08.250(1B107B940A9
CDxSystemChecker::LaunchApplication - Launching Application dxSetup.exe