Je veux savoir si j'ai un enregistreur de frappe sur mon système

  • MS1234
  • Born
  • Born
  • No Avatar
  • Inscription: Mar 04, 2011
  • Messages: 2
  • Status: Offline

Message Mars 4th, 2011, 6:55 am

Salut,

Je veux savoir si j'ai un enregistreur de frappe sur mon système .. ma machine a été trop lente. J'ai aussi reçu un appel de quelqu'un qui dit qu'il représentait Microsoft Windows sécurité me disant que j'avais téléchargé des logiciels malveillants qui utilisent tous mes RAM et le système se bloque.

J'ai effectué un scan avec Spybot Search and Destroy...il m'a donné un fichier de Troie et une menace Prodata keylogger médecin...
il retiré le cheval de Troie, mais montre toujours


Double-cliquez sur
ProData.DoctorKeylogger: [SBI $ 3643F5FF] Bibliothèque (Fichier, rien de fait)
C: \ Windows \ System32 \ Urncbc.dll
Properties.size 0 =
Propriétés. md5 = D41D8CD98F00B204E9800998ECF8427E

DoubleClick: cookie de suivi (Chrome & #058; Chrome) (Cookie, rien de fait)



--- Spybot - Search & Destroy version: 1.6.2 (build: 20090126) ---

26/01/2009 blindman.exe (1.0.0. 8)
26/01/2009 SDFiles.exe (1.6.1.7)
26/01/2009 SDMain.exe (1.0.0.6)
26/01/2009 SDShred.exe (1.0.2.5)
26/01/2009 SDUpdate.exe (1.6.0. 12)
26/01/2009 SDWinSec.exe (1.0.0.12)
26/01/2009 SpybotSD.exe (1.6.2.46)
26/01/2009 TeaTimer.exe (1.6.4.26)
13/03/2010 unins000.exe (51.49.0.0)
26/01/2009 Update.exe (1.6.0.7)
26/01/2009 advcheck.dll (1.6.2.15)
02/04/2007 aports.dll (2.1.0.0)
14/06/2008 DelZip179.dll (1.79.11.1)
26/01/2009 SDHelper.dll (1.6.2.14)
19/06/2008 sqlite3.dll
26/01/2009 Tools.dll (2.1.6.10)
16/01/2009 UninsSrv.dll (1.0.0.0)
17/02/2010 Comprend \ Adware. SBI (*)
09/03/2010 Comprend \ AdwareC.sbi (*)
25/01/2010 Comprend \ Cookies.sbi (*)
03/11/2009 Comprend \ Dialer.sbi (*)
09/03/2010 Comprend \ DialerC.sbi (*)
25/01/2010 Comprend \ HeavyDuty.sbi (*)
26/05/2009 Comprend \ Hijackers.sbi (*)
09/03/2010 Comprend \ HijackersC.sbi (*)
20/01/2010 Comprend \ Keyloggers.sbi (*)
09/03/2010 Comprend \ KeyloggersC.sbi (*)
29/11/2004 Comprend \ LSP.sbi (*)
02/03/2010 Comprend \ Malware.sbi (*)
09/03/2010 Comprend \ MalwareC. SBI (*)
25/03/2009 Comprend \ PUPS.sbi (*)
02/03/2010 Comprend \ PUPSC.sbi (*)
25/01/2010 Comprend \ Revision.sbi (*)
13/01/2009 Comprend \ Security.sbi (*)
09/03/2010 Comprend \ SecurityC.sbi (*)
03/06/2008 Comprend \ Spybots.sbi (*)
03/06/2008 Comprend \ SpybotsC.sbi (*)
02/03/2010 Comprend \ Spyware.sbi (*)
09/03/2010 Comprend \ SpywareC.sbi (*)
08/03/2010 Comprend \ Tracks.uti
03/03/2010 Comprend \ Trojans.sbi (*)
09/03/2010 Comprend \ TrojansC-02. SBI (*)
09/03/2010 Comprend \ TrojansC-03.sbi (*)
09/03/2010 Comprend \ TrojansC-04.sbi (*)
09/03/2010 Comprend \ TrojansC-05.sbi (*)
10/03/2010 Comprend \ TrojansC.sbi (*)
04/03/2008 Plugins \ Chai.dll
05/03/2008 Plugins \ Fennel.dll
26/02/2008 Plugins \ Mate.dll
24/12/2007 Plugins \ TCPIPAddress.dll

Voici mon log HijackThis

Windows Vista SP2 (WinNT 6.00.1906): Plate-forme
MSIE: Internet Explorer v8.00 (8.00.6001. 19019)
Boot mode: Normal

Les processus en cours:
C: \ Windows \ system32 \ taskeng.exe
C: \ Windows \ system32 \ dwm.exe
C: \ Windows \ Explorer.EXE
\ Program Files \ Synaptics \ SynTP \ Syntpenh.exe: C
\ Program Files \ Hewlett-Packard \ HP Quick Launch Buttons \ QLBCTRL.exe: C
C: \ Program Files \ HP \ HP Software Update \ hpwuSchd2.exe
\ Program Files \ Hewlett-Packard \ HP Wireless Assistant \ HPWAMain.exe: C
C: \ Windows \ System32 \ hkcmd.exe
C: \ Windows \ System32 \ igfxpers.exe
C: \ Windows \ system32 \ igfxsrvc. exe
\ Program Files \ Logitech Webcam Software \ Logitech \ LWS.exe: C
C: \ Program Files \ AVG \ AVG9 \ avgtray.exe
C: \ Program Files \ iTunes \ iTunesHelper.exe
C: \ Program Files \ Alwil Software \ Avast4 \ ashDisp.exe
C: \ Program Files \ Windows Sidebar \ sidebar.exe
C: \ Users \ Meenakshi \ AppData \ Roaming \ Google Talk \ Google \ googletalk.exe
\ Program Files \ Skynergy \ TaskPrompt \ TaskPrompt.exe: C
C: \ Program Files \ Hewlett-Packard \ HP Wireless Assistant \ WiFiMsg. EXE
\ Program Files \ Hewlett-Packard \ Shared \ HpqToaster.exe: C
\ Program Files \ Common Files \ Logishrd \ LQCVFX \ COCIManager.exe: C
C: \ Windows \ system32 \ wuauclt.exe
C: \ Program Files \ Internet Explorer \ iexplore.exe
C: \ Program Files \ Internet Explorer \ iexplore.exe
C: \ Program Files \ Windows Live \ Toolbar \ wltuser.exe
C: \ Windows \ system32 \ Macromed \ Flash \ FlashUtil10i_ActiveX.exe
C: \ Program Files \ Internet Explorer \ iexplore.exe
C: \ Program Files \ AVG \ AVG9 \ avgscanx. exe
C: \ Program Files \ AVG \ AVG9 \ avgcsrvx.exe
C: \ Program Files \ Internet Explorer \ iexplore.exe
C: \ ProgramData \ PC Tools \ DownloadManager \ Doctor8.0 Spyware \ sdsetup_en_dl.exe
C: \ Users \ MEENAK ~ 1 \ AppData \ Local \ Temp \ est-Q22U3.tmp \ sdsetup_en_dl.tmp
C: \ Program Files \ Internet Explorer \ iexplore.exe
C: \ Users \ Meenakshi \ Desktop \ HijackThis.exe

O23 - Service: avast! Mail Scanner - ALWIL Software - C: \ Program Files \ Alwil Software \ Avast4 \ ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C: \ Program Files \ Alwil Software \ Avast4 \ ashWebSv.exe
O23 - Service: AVG Security Toolbar Service - Unknown owner - C: \ Program Files \ AVG \ AVG9 \ Toolbar \ ToolbarBroker.exe
O23 - Service: AVG WatchDog (avg9wd) - AVG Technologies CZ, sro - C: \ Program Files \ AVG \ AVG9 \ avgwdsvc.exe
O23 - Service: Pare-feu AVG (avgfws9) - AVG Technologies CZ, sro - C: \ Program Files \ AVG \ AVG9 \ avgfws9.exe
Service - O23: AVG9IDSAgent (AVGIDSAgent) - AVG Technologies CZ, sro - C: \ Program Files \ AVG \ Protection AVG9 \ Identité \ Agent \ Bin \ AVGIDSAgent.exe
O23 - Service: \ Program Files \ Hewlett-Packard \ HP Quick Launch Buttons \ Com4Qlb.exe: Com4Qlb - - Société de développement Hewlett-Packard, LP C
O23 - Service: Service HP Health Check - Hewlett-Packard - c: \ Program Files \ Hewlett-Packard \ HP Health Check \ hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, LP - C: \ Program Files \ Hewlett-Packard \ Shared \ hpqwmiex. exe
O23 - Service: Gestionnaire de tableau InstallDriver (IDriverT) - Macrovision Corporation - C: \ Program Files \ Fichiers communs \ InstallShield \ Driver \ 32 11 \ Intel \ IDriverT.exe
O23 - Service: iPod Service - Apple Inc - C: \ Program Files \ iPod \ bin \ iPodService.exe
O23 - Service: IviRegMgr - InterVideo - C: \ Program Files \ Common Files \ InterVideo \ RegMgr \ iviRegMgr.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc - C: \ Program Files \ Common Files \ LogiShrd \ LVMVFM \ LVPrcSrv. exe
O23 - Service: OracleClientCache80 - Unknown owner - C: \ orant \ BIN \ ONRSD80.EXE
Service - O23: SBSD Service Centre de sécurité (SBSDWSCService) - Safer Networking Ltd - C: \ Program Files \ Spybot - Search & Destroy \ SDWinSec.exe
O23 - Service: stllssvr - Unknown owner - C: \ Program Files \ Common Files \ SureThing Shared \ stllssvr.exe (file missing)

-
End of file - 3776 bytes


S'il vous plaît aider, je ne peux vraiment pas se permettre à cet ordinateur d'carsh comme je l'ai quelques interviews alignés.

Comme je ne suis pas très irritable, des instructions simples sur la façon dont toget débarrasser sur le keylogger serait d'une grande aide.
  • Anonymous
  • Bot
  • No Avatar
  • Inscription: 25 Feb 2008
  • Messages: ?
  • Loc: Ozzuland
  • Status: Online

Message Mars 4th, 2011, 6:55 am

  • Don2007
  • Web Master
  • Web Master
  • No Avatar
  • Inscription: Nov 21, 2006
  • Messages: 4924
  • Loc: NY
  • Status: Offline

Message Mars 4th, 2011, 7:49 am

Votre détourner ce journal n'est pas complète. Lancez-le à nouveau.
How do you know when a politician is lying? His mouth is moving.
  • MS1234
  • Born
  • Born
  • No Avatar
  • Inscription: Mar 04, 2011
  • Messages: 2
  • Status: Offline

Message Mars 6th, 2011, 6:44 pm

Salut,

Je pense que j'ai pu me débarrasser de l'enregistreur en supprimant certains des fichiers système corrompu.

Voici le dernier log HijackThis. S'il vous plaît confirmer si le système est bien ou spybot n'est pas en mesure de retracer l'enregistreur de maintenant.

Logfile of Trend Micro HijackThis v2.0.4
Scan sauvé à 09:37:41, le 03/07/2011
Windows Vista SP2 (WinNT 6.00.1906): Plate-forme
MSIE: Internet Explorer v8.00 (8.00.6001. 19019)
Boot mode: Normal

Les processus en cours:
C: \ Windows \ system32 \ dwm.exe
C: \ Windows \ Explorer.EXE
C: \ Windows \ system32 \ taskeng.exe
\ Program Files \ Synaptics \ SynTP \ Syntpenh.exe: C
\ Program Files \ Hewlett-Packard \ HP Quick Launch Buttons \ QLBCTRL.exe: C
C: \ Program Files \ HP \ HP Software Update \ hpwuSchd2.exe
\ Program Files \ Hewlett-Packard \ HP Wireless Assistant \ HPWAMain.exe: C
C: \ Windows \ System32 \ igfxtray.exe
C: \ Windows \ System32 \ hkcmd.exe
C: \ Windows \ System32 \ igfxpers. exe
\ Program Files \ Logitech Webcam Software \ Logitech \ LWS.exe: C
C: \ Program Files \ AVG \ AVG9 \ avgtray.exe
C: \ Program Files \ iTunes \ iTunesHelper.exe
C: \ Program Files \ Alwil Software \ Avast4 \ ashDisp.exe
C: \ Program Files \ Windows Sidebar \ sidebar.exe
C: \ Program Files \ Logitech \ Logitech Vid \ Vid.exe
C: \ Users \ propriétaire \ AppData \ Roaming \ Google Talk \ Google \ googletalk.exe
\ Program Files \ Spybot - Search & Destroy \ TeaTimer.exe: C
C: \ Program Files \ Skype \ Phone \ Skype. exe
C: \ Windows \ system32 \ igfxsrvc.exe
C: \ Program Files \ Hewlett-Packard \ HP Wireless Assistant \ WiFiMsg.EXE
\ Program Files \ Hewlett-Packard \ Shared \ HpqToaster.exe: C
\ Program Files \ Synaptics \ SynTP \ SynTPHelper.exe: C
\ Program Files \ Common Files \ Logishrd \ LQCVFX \ COCIManager.exe: C
C: \ Program Files \ Yahoo! \ Messenger \ ymsgr_tray.exe
C: \ Program Files \ Skype \ Plugin Manager \ skypePM.exe
C: \ Program Files \ Windows Media Player \ wmpnscfg.exe
C: \ Windows \ system32 \ wuauclt. exe
C: \ Program Files \ Google \ Chrome \ Application \ chrome.exe
C: \ Program Files \ Google \ Chrome \ Application \ chrome.exe
C: \ Program Files \ Google \ Chrome \ Application \ chrome.exe
C: \ Program Files \ Google \ Chrome \ Application \ chrome.exe
C: \ Program Files \ Google \ Chrome \ Application \ chrome.exe
C: \ Windows \ system32 \ NOTEPAD.EXE
C: \ Program Files \ Google \ Chrome \ Application \ chrome.exe
C: \ Users \ propriétaire \ Downloads \ HijackThis. exe

R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://wwwhpcom
R1 - Explorer HKCU \ Software \ Microsoft \ Internet \ Main page de recherche, = http://gomicrosoftcom/fwlink/?LinkId=54896
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://ie.redirecthpcom/svs/rdr?TYPE=3& ... &pf=laptop
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://gomicrosoftcom/fwlink/?LinkId=54896
R1 - Explorer HKLM \ Software \ Microsoft \ Internet \ Main page de recherche, = http://gomicrosoftcom/fwlink/?LinkId=54896
R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main , Start Page = http://ie.redirecthpcom/svs/rdr?TYPE=3& ... &pf=laptop
R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search =
R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Search, Page =
R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Internet Settings, ProxyOverride = *. local
R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Toolbar, LinksFolderName =
URLSearchHook - R3: AVG BHO barre d'outils de sécurité - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C: \ Program Files \ AVG \ AVG9 \ Toolbar \ IEToolbar. dll
R3 - URLSearchHook: Zynga Toolbar - {7b13ec3e-999A-4b70-b9cb-2617b8323822} - C: \ Program Files \ Zynga \ tbZyng.dll
O1 - Hosts::: 1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-9B51-4efb-7695ECA05670} - (no file)
O2 - BHO: Adobe Link Helper PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C: \ Program Files \ Common Files \ Adobe \ Acrobat \ ActiveX \ AcroIEHelper.dll
O2 - BHO: (no name) - {0A5AF3B8-55C5-4202-B1EF-222CFF56F8C9} - C: \ Windows \ system32 \ yayxwUlj. dll
O2 - BHO: com WormRadar IESiteBlocker.NavFilter - {3CA2F312-4B53-6F6E-A66E-4E65E497C8C0} - C: \ Program Files \ AVG \ AVG9 \ avgssie.dll
O2 - BHO: Spybot-S & D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C: \ Program Files \ Spybot - Search & Destroy \ SDHelper. dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Aide de recherche - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C: \ Program Files \ Microsoft \ Search Enhancement Pack \ Helper Recherche \ SEPsearchhelperie.dll
O2 - BHO: SSVHelper classe - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C: \ Program Files \ Java \ jre1.6.0_07 \ bin \ ssv.dll
O2 - BHO: Zynga Toolbar - {7b13ec3e-999A-4b70-b9cb-2617b8323822} - C: \ Program Files \ Zynga \ tbZyng. dll
BHO - O2: AVG BHO barre d'outils de sécurité - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C: \ Program Files \ AVG \ AVG9 \ Toolbar \ IEToolbar.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C: \ Program Files \ Skype \ Barres d'outils \ Internet Explorer \ skypeieplugin. dll
O2 - BHO: Google Dictionnaire de compression SDCH - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - (no file)
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C: \ Program Files \ Windows Live \ Toolbar \ wltcore.dll
O3 - Toolbar: & Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C: \ Program Files \ Windows Live \ Toolbar \ wltcore.dll
Toolbar - O3: la barre d'outils de sécurité AVG - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C: \ Program Files \ AVG \ AVG9 \ Toolbar \ IEToolbar. dll
O3 - Toolbar: barre d'outils Zynga - {7b13ec3e-999A-4b70-b9cb-2617b8323822} - C: \ Program Files \ Zynga \ tbZyng.dll
O4 - HKLM \ .. \ Run: [Windows Defender]% ProgramFiles% \ Windows Defender \ MSASCui.exe-hide
O4 - HKLM \ .. \ Run: [SynTPEnh] C: \ Program Files \ Synaptics \ SynTP \ Syntpenh.exe
O4 - HKLM \ .. \ Run: [HP Health Check Scheduler] c: \ Program Files \ bilan de santé Hewlett-Packard \ HP \ HPHC_Scheduler.exe
O4 - HKLM \ .. \ Run: [QlbCtrl]% ProgramFiles% \ Hewlett-Packard \ HP Quick Launch Buttons \ QlbCtrl. exe / Start
O4 - HKLM \ .. \ Run: [WatchDog] C: \ Program Files \ InterVideo \ DVD Vérifiez \ DVDCheck.exe
O4 - HKLM \ .. \ Run: [Adobe Reader Speed Launcher] "C: \ Program Files \ Adobe \ Reader 8.0 \ Reader \ reader_sl.exe"
O4 - HKLM \ .. \ Run: [HP Software Update] C: \ Program Files \ HP Software \ HP Update \ HPWuSchd2.exe
O4 - HKLM \ .. \ Run: [hpWirelessAssistant] C: \ Program Files \ Hewlett-Packard \ HP Wireless Assistant \ HPWAMain.exe
O4 - HKLM \ .. \ Run: [IgfxTray] C: \ Windows \ system32 \ igfxtray.exe
O4 - HKLM \ .. \ Run: [HotKeysCmds] C: \ Windows \ system32 \ hkcmd.exe
O4 - HKLM \ .. \ Run: [persistance] C: \ Windows \ system32 \ igfxpers.exe
O4 - HKLM \ .. \ Run: [LogitechQuickCamRibbon] "C: \ Program Files \ Logitech \ Logitech Webcam Software \ LWS.exe" / cacher
O4 - HKLM \ .. \ Run: [AVG9_TRAY] C: \ PROGRA ~ 1 \ AVG \ AVG9 \ avgtray.exe
O4 - HKLM \ .. \ Run: [iTunesHelper] "C: \ Program Files \ iTunes \ iTunesHelper.exe"
O4 - HKLM \ .. \ Run: [avast!] C: \ PROGRA ~ 1 \ ALWILS ~ 1 \ Avast4 \ ashDisp.exe
O4 - HKLM \ .. \ Run: [QuickTime Task] "C: \ Program Files \ QuickTime \ qttask.exe"-atboottime
O4 - HKLM \ .. \ Run: [Sidebar] C: \ Program Files \ Windows Sidebar \ sidebar.exe / AutoRun
O4 - HKLM \ .. \ Run: [Logitech Vid] "C: \ Program Files \ Logitech \ Vid \ vid.exe Logitech» bootmode
O4 - HKLM \ .. \ Run: [GoogleTalk] C: \ Users \ propriétaire \ AppData \ Roaming \ Google Talk \ Google \ googletalk.exe / autostart
O4 - HKLM \ .. \ Run: [Google Update] "C: \ Users \ propriétaire \ AppData \ Local \ Google \ Update \ GoogleUpdate. exe "/ c
O4 - HKLM \ .. \ Run: [Messenger (Yahoo!)] "C: \ PROGRA ~ 1 \ Yahoo! \ Messenger \ YahooMessenger.exe" silencieux
O4 - HKLM \ .. \ Run: [TeaTimer SpybotSD] C: \ Program Files \ Spybot - Search & Destroy \ TeaTimer.exe
O4 - HKLM \ .. \ Run: [Skype] "C: \ Program Files \ Skype \ Phone \ Skype.exe" / nosplash / minimiser
O4 - HKUS \ S-1-5-19 \ .. \ Run: [Sidebar]% ProgramFiles% \ Windows Sidebar \ Sidebar.exe / detectMem (User Service local)
O4 - HKUS \ S-1-5-19 \ .. \ Run: [WindowsWelcomeCenter] oobefldr.dll rundll32.exe, ShowWelcomeCenter (User Service local)
O4 - HKUS \ S-1-5-20 \ .. \ Run: [Sidebar]% ProgramFiles% \ Windows Sidebar \ Sidebar.exe / detectMem (User SERVICE RÉSEAU)
O4 - Startup: eCentral.lnk = C: \ Program Files \ Eshasoft \ Desktop calendrier et de planificateur Software \ eCentral.exe
O8 - Extra context menu item: E & xporter vers Microsoft Excel - res://C : \ PROGRA ~ 1 \ MICROS ~ 1 \ Office12 \ EXCEL. EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C: \ PROGRA ~ 1 \ Java \ ~ JRE16 2.0_0 \ bin \ ssv.dll
O9 - Extra "Outils" menuitem: Console Java de Sun - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C: \ PROGRA ~ 1 \ Java \ ~ JRE16 2.0_0 \ bin \ ssv.dll
O9 - Extra button: Blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C: \ Program Files \ Windows Live \ Writer \ WriterBrowserExtension. dll
O9 - Extra "Outils" menuitem: & Blog de Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C: \ Program Files \ Windows Live \ Writer \ WriterBrowserExtension.dll
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479b-8935-AEC46303B9E5} - C: \ Program Files \ Skype \ Barres d'outils \ Internet Explorer \ skypeieplugin.dll
O9 - Extra "Outils" menuitem: Skype Plug-In - {898EA8C8-E7FF-479b-8935-AEC46303B9E5} - C: \ Program Files \ Skype \ Barres d'outils \ Internet Explorer \ skypeieplugin. dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C: \ PROGRA ~ 1 \ MICROS ~ 1 \ Office12 \ REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C: \ Program Files \ Spybot - Search & Destroy \ SDHelper.dll
O9 - Extra "Outils" menuitem: Spybot - Search & Destroy & Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C: \ Program Files \ Spybot - Search & Destroy \ SDHelper.dll
O16 - DPF: {E2883E8F-472f-4FB0-9522-AC9BF37916A7} -