Des Doutes Sur Mon Pc

Bonjour, j'ai depuis quelques temps l'impression que mon PC est "écouté"


N'ayant rien trouvé par le biais de l'analyse approfondie, je vous joins un fichier Hijack This


Logfile of Trend Micro HijackThis v2.0.2


Scan saved at 01:20:28, on 21/01/2009


Platform: Windows XP SP3 (WinNT 5.01.2600)


MSIE: Internet Explorer v7.00 (7.00.6000.16762)


Boot mode: Normal


Running processes:


C:\WINDOWS\System32\smss.exe


C:\WINDOWS\system32\winlogon.exe


C:\WINDOWS\system32\services.exe


C:\WINDOWS\system32\lsass.exe


C:\WINDOWS\system32\svchost.exe


C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe


C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe


C:\WINDOWS\System32\svchost.exe


C:\WINDOWS\Explorer.EXE


C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe


C:\WINDOWS\system32\spoolsv.exe


C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe


C:\Acer\eManager\anbmServ.exe


C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe


C:\Program Files\Bonjour\mDNSResponder.exe


c:\program files\dell printers\Additional Color Laser Software\Status Monitor\DLSDBNT.EXE


C:\WINDOWS\system32\hkcmd.exe


C:\Program Files\borland\interbase\Bin\IBGuard.EXE


C:\Program Files\Synaptics\SynTP\SynTPLpr.exe


C:\Program Files\Synaptics\SynTP\SynTPEnh.exe


C:\Program Files\Java\jre6\bin\jqs.exe


C:\WINDOWS\system32\igfxtray.exe


C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe


C:\acer\epm\epm-dm.exe


C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe


C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe


C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe


C:\WINDOWS\system32\rundll32.exe


C:\Program Files\Java\jre6\bin\jusched.exe


C:\Program Files\iTunes\iTunesHelper.exe


C:\WINDOWS\system32\ctfmon.exe


C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe


C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe


C:\WINDOWS\system32\svchost.exe


c:\program files\dell printers\Additional Color Laser Software\Status Monitor\DLPWDNT.EXE


C:\Program Files\BitDefender\BitDefender 2009\seccenter.exe


C:\Program Files\borland\interbase\Bin\IBServer.exe


C:\Program Files\iPod\bin\iPodService.exe


C:\WINDOWS\system32\wbem\wmiapsrv.exe


C:\Program Files\Mozilla Firefox\firefox.exe


C:\Program Files\Java\jre6\bin\java.exe


C:\WINDOWS\system32\ipconfig.exe


C:\WINDOWS\system32\ipconfig.exe


C:\WINDOWS\system32\ipconfig.exe


C:\WINDOWS\system32\ipconfig.exe


C:\WINDOWS\system32\ipconfig.exe


C:\WINDOWS\system32\ipconfig.exe


C:\WINDOWS\system32\ipconfig.exe


C:\WINDOWS\system32\ipconfig.exe


C:\WINDOWS\system32\ipconfig.exe


C:\WINDOWS\system32\ipconfig.exe


C:\WINDOWS\system32\ipconfig.exe


C:\WINDOWS\system32\ipconfig.exe


C:\WINDOWS\system32\ipconfig.exe


C:\WINDOWS\system32\ipconfig.exe


C:\PROGRA~1\MOZILL~2\THUNDE~1.EXE


C:\WINDOWS\system32\ipconfig.exe


C:\WINDOWS\system32\ipconfig.exe


C:\WINDOWS\system32\ipconfig.exe


C:\WINDOWS\system32\ipconfig.exe


C:\Program Files\Windows Live\Messenger\msnmsgr.exe


C:\WINDOWS\system32\ipconfig.exe


C:\WINDOWS\system32\ipconfig.exe


C:\Program Files\Trend Micro\HijackThis\HijackThis.exe


R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157


R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157


R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896


R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896


R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ustart.org


R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1;*.local


R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens


R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll


O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll


O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll


O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll


O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)


O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll


O2 - BHO: IEHlprObj Class - {CD4C3CF0-4B15-11D1-ABED-709549C10000} - (no file)


O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll


O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll


O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll


O3 - Toolbar: BitDefender Toolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2009\IEToolbar.dll


O4 - HKLM\..\Run: [LaunchApp] Alaunch


O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe


O4 - HKLM\..\Run: [synTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe


O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe


O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32


O4 - HKLM\..\Run: [bDSwitchAgent] "C:\PROGRA~1\Softwin\BITDEF~1\bdswitch.exe"


O4 - HKLM\..\Run: [igfxTray] C:\WINDOWS\system32\igfxtray.exe


O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot


O4 - HKLM\..\Run: [DLPSP] "c:\program files\dell printers\Additional Color Laser Software\Status Monitor\DLPSP.EXE"


O4 - HKLM\..\Run: [epm-dm] c:\acer\epm\epm-dm.exe


O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe"


O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"


O4 - HKLM\..\Run: [NSLauncher] C:\Program Files\Nokia\Nokia Software Launcher\NSLauncher.exe /startup


O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Nero\Lib\NeroCheck.exe


O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe


O4 - HKLM\..\Run: [bDAgent] "C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe"


O4 - HKLM\..\Run: [bitDefender Antiphishing Helper] "C:\Program Files\BitDefender\BitDefender 2009\IEShow.exe"


O4 - HKLM\..\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent


O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"


O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime


O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"


O4 - HKCU\..\Run: [Ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe


O4 - HKCU\..\Run: [simp] C:\Program Files\Secway\SimpLite-MSN 2.2\SimpLite-MSN.exe


O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background


O4 - HKCU\..\RunOnce: [TONLFR] "C:\Program Files\club-internet\LE COMPAGNON CLUB\SmartBridge\DExec.exe" 15000 "C:\Program Files\club-internet\LE COMPAGNON CLUB\bin\MotiveBrowser.exe" -APPKEY=TONLFR -URL="file://C:\Program Files\club-internet\LE COMPAGNON CLUB/vendors/TONLFR/content/template/driven_dev/mat.htm"


O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')


O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')


O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')


O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')


O4 - S-1-5-18 Startup: DeliveryManager.lnk = C:\Documents and Settings\yannick\Application Data\Delivery\DeliveryManager.EXE (User 'SYSTEM')


O4 - .DEFAULT Startup: DeliveryManager.lnk = C:\Documents and Settings\yannick\Application Data\Delivery\DeliveryManager.EXE (User 'Default user')


O4 - Startup: DeliveryManager.lnk = C:\Documents and Settings\yannick\Application Data\Delivery\DeliveryManager.EXE


O8 - Extra context menu item: Download with Go!Zilla - file://C:\Program Files\Go!Zilla\download-with-gozilla.html


O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000


O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\WINDOWS\system32\shdocvw.dll


O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe


O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe


O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe


O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe


O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll


O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1149677582609


O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111...all/xscan53.cab


O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://fichiers.touslesdrivers.com/fichier...ion_3_0_1_0.cab


O17 - HKLM\System\CCS\Services\Tcpip\..\{8119DC6A-C176-472D-A291-9DA043ADC05E}: NameServer = 208.67.222.222,208.67.222.220


O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll


O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe


O23 - Service: Notebook Manager Service (anbmService) - OSA Technologies Inc. - C:\Acer\eManager\anbmServ.exe


O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe


O23 - Service: BitDefender Arrakis Server (Arrakis3) - BitDefender S.R.L. http://www.bitdefender.com - C:\Program Files\Fichiers communs\BitDefender\BitDefender Arrakis Server\bin\Arrakis3.exe


O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe


O23 - Service: Dell Printer Status Watcher (DLPWD) - Dell Inc. - c:\program files\dell printers\Additional Color Laser Software\Status Monitor\DLPWDNT.EXE


O23 - Service: Dell Printer Status Database (DLSDB) - Dell Inc. - c:\program files\dell printers\Additional Color Laser Software\Status Monitor\DLSDBNT.EXE


O23 - Service: Interbase Guardian (InterbaseGuardian) - Inprise Corporation - C:\Program Files\borland\interbase\Bin\IBGuard.EXE


O23 - Service: Interbase Server (InterbaseServer) - Inprise Corporation - C:\Program Files\borland\interbase\Bin\IBServer.exe


O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe


O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe


O23 - Service: BitDefender Desktop Update Service (LIVESRV) - BitDefender SRL - C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe


O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe


O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe


O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLnch.exe


O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe


O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe


O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe


O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe


O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S. R. L. - C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe


--


End of file - 12749 bytes


Si quelqu'un y voit quelque chose de bizarre.......car j'avoue que ça me tape sur le système.......

Réponses

  • moi ce qui m'interpelle c'est la multitude de


    "C:\WINDOWS\system32\ipconfig.exe"