Win32Rootkit-gen
Résolu/Fermé
A voir également:
- Win32Rootkit-gen
- Xiaomi tv box s 2nd gen test - Accueil - TV & Vidéo
- E-gen - Forum Windows XP
- Win64 pup gen ✓ - Forum Virus
- Win64:miscx-gen - Forum Virus
- Oxy-gen - Télécharger - Généalogie
266 réponses
le rapport OT move it
========== PROCESSES ==========
Process explorer.exe killed successfully.
========== SERVICES/DRIVERS ==========
Unable to stop service Boonty box .
Unable to stop service Boonty games .
========== FILES ==========
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe moved successfully.
File/Folder C:\WINDOWS\system32\485594\485594.dll not found.
DllUnregisterServer procedure not found in C:\Program Files\captcha5.dll
C:\Program Files\captcha5.dll NOT unregistered.
C:\Program Files\captcha5.dll moved successfully.
C:\windows\tag06.exe moved successfully.
C:\windows\nl07.exe moved successfully.
File/Folder C:\Program Files\Boonty\BoontyBox\BoontyBox.exe not found.
C:\ancien moved successfully.
C:\WINDOWS\system32\485594 moved successfully.
File/Folder C:\WINDOWS\tag06.exe not found.
File/Folder C:\Program Files\captcha5.dll not found.
C:\WINDOWS\freddy35.exe moved successfully.
C:\Python22\tcl\tk8.3\images moved successfully.
C:\Python22\tcl\tk8.3\demos\images moved successfully.
C:\Python22\tcl\tk8.3\demos moved successfully.
C:\Python22\tcl\tk8.3 moved successfully.
C:\Python22\tcl\tcl8.3\tcltest1.0 moved successfully.
C:\Python22\tcl\tcl8.3\reg1.0 moved successfully.
C:\Python22\tcl\tcl8.3\opt0.4 moved successfully.
C:\Python22\tcl\tcl8.3\msgcat1.0 moved successfully.
C:\Python22\tcl\tcl8.3\http2.3 moved successfully.
C:\Python22\tcl\tcl8.3\http1.0 moved successfully.
C:\Python22\tcl\tcl8.3\encoding moved successfully.
C:\Python22\tcl\tcl8.3\dde1.1 moved successfully.
C:\Python22\tcl\tcl8.3 moved successfully.
C:\Python22\tcl moved successfully.
C:\Python22\Scripts moved successfully.
C:\Python22\libs moved successfully.
C:\Python22\Lib\xml\sax moved successfully.
C:\Python22\Lib\xml\parsers moved successfully.
C:\Python22\Lib\xml\dom moved successfully.
C:\Python22\Lib\xml moved successfully.
C:\Python22\Lib\site-packages\win32comext\taskscheduler\test moved successfully.
C:\Python22\Lib\site-packages\win32comext\taskscheduler moved successfully.
C:\Python22\Lib\site-packages\win32comext\shell\test moved successfully.
C:\Python22\Lib\site-packages\win32comext\shell\demos\servers moved successfully.
C:\Python22\Lib\site-packages\win32comext\shell\demos moved successfully.
C:\Python22\Lib\site-packages\win32comext\shell moved successfully.
C:\Python22\Lib\site-packages\win32comext\mapi\demos moved successfully.
C:\Python22\Lib\site-packages\win32comext\mapi moved successfully.
C:\Python22\Lib\site-packages\win32comext\internet moved successfully.
C:\Python22\Lib\site-packages\win32comext\ifilter\demo moved successfully.
C:\Python22\Lib\site-packages\win32comext\ifilter moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\test moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\server moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client\wsh moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client\ie moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client\asp\interrupt moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client\asp moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\client moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript moved successfully.
C:\Python22\Lib\site-packages\win32comext\axdebug moved successfully.
C:\Python22\Lib\site-packages\win32comext\axcontrol moved successfully.
C:\Python22\Lib\site-packages\win32comext\adsi\demos moved successfully.
C:\Python22\Lib\site-packages\win32comext\adsi moved successfully.
C:\Python22\Lib\site-packages\win32comext moved successfully.
C:\Python22\Lib\site-packages\win32com\test moved successfully.
C:\Python22\Lib\site-packages\win32com\servers moved successfully.
C:\Python22\Lib\site-packages\win32com\server moved successfully.
C:\Python22\Lib\site-packages\win32com\makegw moved successfully.
C:\Python22\Lib\site-packages\win32com\libs moved successfully.
C:\Python22\Lib\site-packages\win32com\include moved successfully.
C:\Python22\Lib\site-packages\win32com\HTML\image moved successfully.
C:\Python22\Lib\site-packages\win32com\HTML moved successfully.
C:\Python22\Lib\site-packages\win32com\gen_py moved successfully.
C:\Python22\Lib\site-packages\win32com\demos moved successfully.
C:\Python22\Lib\site-packages\win32com\client moved successfully.
C:\Python22\Lib\site-packages\win32com moved successfully.
C:\Python22\Lib\site-packages\win32\test\win32rcparser moved successfully.
C:\Python22\Lib\site-packages\win32\test moved successfully.
C:\Python22\Lib\site-packages\win32\scripts\VersionStamp moved successfully.
C:\Python22\Lib\site-packages\win32\scripts\ce moved successfully.
C:\Python22\Lib\site-packages\win32\scripts moved successfully.
C:\Python22\Lib\site-packages\win32\libs moved successfully.
C:\Python22\Lib\site-packages\win32\lib moved successfully.
C:\Python22\Lib\site-packages\win32\include moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\win32wnet moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\service\install moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\service moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\security moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\pipes moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\images moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\dde moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\c_extension moved successfully.
C:\Python22\Lib\site-packages\win32\Demos moved successfully.
C:\Python22\Lib\site-packages\win32 moved successfully.
C:\Python22\Lib\site-packages\pywin32_system32 moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\tools moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\scintilla moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\mfc moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\idle moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\framework\editor\color moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\framework\editor moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\framework moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\docking moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\dialogs moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\Demos\ocx moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\Demos\app moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\Demos moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\debugger moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin moved successfully.
C:\Python22\Lib\site-packages\pythonwin moved successfully.
C:\Python22\Lib\site-packages\isapi\test moved successfully.
C:\Python22\Lib\site-packages\isapi\samples moved successfully.
C:\Python22\Lib\site-packages\isapi\doc moved successfully.
C:\Python22\Lib\site-packages\isapi moved successfully.
C:\Python22\Lib\site-packages moved successfully.
C:\Python22\Lib\lib-tk moved successfully.
C:\Python22\Lib\lib-old moved successfully.
C:\Python22\Lib\hotshot moved successfully.
C:\Python22\Lib\encodings moved successfully.
C:\Python22\Lib\email\test\data moved successfully.
C:\Python22\Lib\email\test moved successfully.
C:\Python22\Lib\email moved successfully.
C:\Python22\Lib\distutils\command moved successfully.
C:\Python22\Lib\distutils moved successfully.
C:\Python22\Lib\compiler moved successfully.
C:\Python22\Lib moved successfully.
C:\Python22\DLLs moved successfully.
C:\Python22 moved successfully.
C:\WINDOWS\system32\FxsTmp moved successfully.
C:\WINDOWS\Pex.INI moved successfully.
C:\WINDOWS\Burger Shop Setup Log.txt moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{40d1c3a7-4ffb-4443-b3a0-a64b2df7fc3b}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B935A11E-49AA-43C7-BF1C-3BDEB7120142}\\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\PCDrProfiler deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Reminder deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\HP Software Update deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\LVCOMSX deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\TkBellExe deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\iTunesHelper deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Captcha5 deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\systgray2 deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\sysnltray2 deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\LDM deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\LogitechSoftwareUpdate deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\MessengerPlus3 deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\msnmsgr deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\swg deleted successfully.
Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bd0ffe71-0ad7-11db-9a32-806d6172696f}\\ deleted successfully.
Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{fdfe79b2-0152-11dc-9bf6-000e5050f45d}\\ deleted successfully.
========== COMMANDS ==========
File delete failed. C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\hpodvd09.log scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\Perflib_Perfdata_f00.dat scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\WCESLog.log scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\_hphtra07.log scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Temporary Internet Files folder emptied.
User's Internet Explorer cache folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Fichiers Internet temporaires\Content.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat scheduled to be deleted on reboot.
Local Service Temp folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
Local Service Temporary Internet Files folder emptied.
File delete failed. C:\WINDOWS\temp\_avast4_\Webshlock.txt scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\CLML_AGENT_LOG1.txt scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_5c8.dat scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_98.dat scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\sqlite_n9BLtAhfd618CvS scheduled to be deleted on reboot.
Windows Temp folder emptied.
Java cache emptied.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully
OTMoveIt3 by OldTimer - Version 1.0.8.0 log created on 02202009_124927
Files moved on Reboot...
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\hpodvd09.log moved successfully.
File C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\Perflib_Perfdata_f00.dat not found!
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\WCESLog.log moved successfully.
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\_hphtra07.log moved successfully.
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat scheduled to be moved on reboot.
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Fichiers Internet temporaires\Content.IE5\index.dat scheduled to be moved on reboot.
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat scheduled to be moved on reboot.
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be moved on reboot.
File move failed. C:\WINDOWS\temp\_avast4_\Webshlock.txt scheduled to be moved on reboot.
File move failed. C:\WINDOWS\temp\CLML_AGENT_LOG1.txt scheduled to be moved on reboot.
C:\WINDOWS\temp\Perflib_Perfdata_5c8.dat moved successfully.
File C:\WINDOWS\temp\Perflib_Perfdata_98.dat not found!
File C:\WINDOWS\temp\sqlite_n9BLtAhfd618CvS not found!
========== PROCESSES ==========
Process explorer.exe killed successfully.
========== SERVICES/DRIVERS ==========
Unable to stop service Boonty box .
Unable to stop service Boonty games .
========== FILES ==========
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe moved successfully.
File/Folder C:\WINDOWS\system32\485594\485594.dll not found.
DllUnregisterServer procedure not found in C:\Program Files\captcha5.dll
C:\Program Files\captcha5.dll NOT unregistered.
C:\Program Files\captcha5.dll moved successfully.
C:\windows\tag06.exe moved successfully.
C:\windows\nl07.exe moved successfully.
File/Folder C:\Program Files\Boonty\BoontyBox\BoontyBox.exe not found.
C:\ancien moved successfully.
C:\WINDOWS\system32\485594 moved successfully.
File/Folder C:\WINDOWS\tag06.exe not found.
File/Folder C:\Program Files\captcha5.dll not found.
C:\WINDOWS\freddy35.exe moved successfully.
C:\Python22\tcl\tk8.3\images moved successfully.
C:\Python22\tcl\tk8.3\demos\images moved successfully.
C:\Python22\tcl\tk8.3\demos moved successfully.
C:\Python22\tcl\tk8.3 moved successfully.
C:\Python22\tcl\tcl8.3\tcltest1.0 moved successfully.
C:\Python22\tcl\tcl8.3\reg1.0 moved successfully.
C:\Python22\tcl\tcl8.3\opt0.4 moved successfully.
C:\Python22\tcl\tcl8.3\msgcat1.0 moved successfully.
C:\Python22\tcl\tcl8.3\http2.3 moved successfully.
C:\Python22\tcl\tcl8.3\http1.0 moved successfully.
C:\Python22\tcl\tcl8.3\encoding moved successfully.
C:\Python22\tcl\tcl8.3\dde1.1 moved successfully.
C:\Python22\tcl\tcl8.3 moved successfully.
C:\Python22\tcl moved successfully.
C:\Python22\Scripts moved successfully.
C:\Python22\libs moved successfully.
C:\Python22\Lib\xml\sax moved successfully.
C:\Python22\Lib\xml\parsers moved successfully.
C:\Python22\Lib\xml\dom moved successfully.
C:\Python22\Lib\xml moved successfully.
C:\Python22\Lib\site-packages\win32comext\taskscheduler\test moved successfully.
C:\Python22\Lib\site-packages\win32comext\taskscheduler moved successfully.
C:\Python22\Lib\site-packages\win32comext\shell\test moved successfully.
C:\Python22\Lib\site-packages\win32comext\shell\demos\servers moved successfully.
C:\Python22\Lib\site-packages\win32comext\shell\demos moved successfully.
C:\Python22\Lib\site-packages\win32comext\shell moved successfully.
C:\Python22\Lib\site-packages\win32comext\mapi\demos moved successfully.
C:\Python22\Lib\site-packages\win32comext\mapi moved successfully.
C:\Python22\Lib\site-packages\win32comext\internet moved successfully.
C:\Python22\Lib\site-packages\win32comext\ifilter\demo moved successfully.
C:\Python22\Lib\site-packages\win32comext\ifilter moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\test moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\server moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client\wsh moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client\ie moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client\asp\interrupt moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client\asp moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\client moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript moved successfully.
C:\Python22\Lib\site-packages\win32comext\axdebug moved successfully.
C:\Python22\Lib\site-packages\win32comext\axcontrol moved successfully.
C:\Python22\Lib\site-packages\win32comext\adsi\demos moved successfully.
C:\Python22\Lib\site-packages\win32comext\adsi moved successfully.
C:\Python22\Lib\site-packages\win32comext moved successfully.
C:\Python22\Lib\site-packages\win32com\test moved successfully.
C:\Python22\Lib\site-packages\win32com\servers moved successfully.
C:\Python22\Lib\site-packages\win32com\server moved successfully.
C:\Python22\Lib\site-packages\win32com\makegw moved successfully.
C:\Python22\Lib\site-packages\win32com\libs moved successfully.
C:\Python22\Lib\site-packages\win32com\include moved successfully.
C:\Python22\Lib\site-packages\win32com\HTML\image moved successfully.
C:\Python22\Lib\site-packages\win32com\HTML moved successfully.
C:\Python22\Lib\site-packages\win32com\gen_py moved successfully.
C:\Python22\Lib\site-packages\win32com\demos moved successfully.
C:\Python22\Lib\site-packages\win32com\client moved successfully.
C:\Python22\Lib\site-packages\win32com moved successfully.
C:\Python22\Lib\site-packages\win32\test\win32rcparser moved successfully.
C:\Python22\Lib\site-packages\win32\test moved successfully.
C:\Python22\Lib\site-packages\win32\scripts\VersionStamp moved successfully.
C:\Python22\Lib\site-packages\win32\scripts\ce moved successfully.
C:\Python22\Lib\site-packages\win32\scripts moved successfully.
C:\Python22\Lib\site-packages\win32\libs moved successfully.
C:\Python22\Lib\site-packages\win32\lib moved successfully.
C:\Python22\Lib\site-packages\win32\include moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\win32wnet moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\service\install moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\service moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\security moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\pipes moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\images moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\dde moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\c_extension moved successfully.
C:\Python22\Lib\site-packages\win32\Demos moved successfully.
C:\Python22\Lib\site-packages\win32 moved successfully.
C:\Python22\Lib\site-packages\pywin32_system32 moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\tools moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\scintilla moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\mfc moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\idle moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\framework\editor\color moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\framework\editor moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\framework moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\docking moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\dialogs moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\Demos\ocx moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\Demos\app moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\Demos moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\debugger moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin moved successfully.
C:\Python22\Lib\site-packages\pythonwin moved successfully.
C:\Python22\Lib\site-packages\isapi\test moved successfully.
C:\Python22\Lib\site-packages\isapi\samples moved successfully.
C:\Python22\Lib\site-packages\isapi\doc moved successfully.
C:\Python22\Lib\site-packages\isapi moved successfully.
C:\Python22\Lib\site-packages moved successfully.
C:\Python22\Lib\lib-tk moved successfully.
C:\Python22\Lib\lib-old moved successfully.
C:\Python22\Lib\hotshot moved successfully.
C:\Python22\Lib\encodings moved successfully.
C:\Python22\Lib\email\test\data moved successfully.
C:\Python22\Lib\email\test moved successfully.
C:\Python22\Lib\email moved successfully.
C:\Python22\Lib\distutils\command moved successfully.
C:\Python22\Lib\distutils moved successfully.
C:\Python22\Lib\compiler moved successfully.
C:\Python22\Lib moved successfully.
C:\Python22\DLLs moved successfully.
C:\Python22 moved successfully.
C:\WINDOWS\system32\FxsTmp moved successfully.
C:\WINDOWS\Pex.INI moved successfully.
C:\WINDOWS\Burger Shop Setup Log.txt moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{40d1c3a7-4ffb-4443-b3a0-a64b2df7fc3b}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B935A11E-49AA-43C7-BF1C-3BDEB7120142}\\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\PCDrProfiler deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Reminder deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\HP Software Update deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\LVCOMSX deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\TkBellExe deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\iTunesHelper deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Captcha5 deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\systgray2 deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\sysnltray2 deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\LDM deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\LogitechSoftwareUpdate deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\MessengerPlus3 deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\msnmsgr deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\swg deleted successfully.
Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bd0ffe71-0ad7-11db-9a32-806d6172696f}\\ deleted successfully.
Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{fdfe79b2-0152-11dc-9bf6-000e5050f45d}\\ deleted successfully.
========== COMMANDS ==========
File delete failed. C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\hpodvd09.log scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\Perflib_Perfdata_f00.dat scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\WCESLog.log scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\_hphtra07.log scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Temporary Internet Files folder emptied.
User's Internet Explorer cache folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Fichiers Internet temporaires\Content.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat scheduled to be deleted on reboot.
Local Service Temp folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
Local Service Temporary Internet Files folder emptied.
File delete failed. C:\WINDOWS\temp\_avast4_\Webshlock.txt scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\CLML_AGENT_LOG1.txt scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_5c8.dat scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_98.dat scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\sqlite_n9BLtAhfd618CvS scheduled to be deleted on reboot.
Windows Temp folder emptied.
Java cache emptied.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully
OTMoveIt3 by OldTimer - Version 1.0.8.0 log created on 02202009_124927
Files moved on Reboot...
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\hpodvd09.log moved successfully.
File C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\Perflib_Perfdata_f00.dat not found!
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\WCESLog.log moved successfully.
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\_hphtra07.log moved successfully.
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat scheduled to be moved on reboot.
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Fichiers Internet temporaires\Content.IE5\index.dat scheduled to be moved on reboot.
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat scheduled to be moved on reboot.
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be moved on reboot.
File move failed. C:\WINDOWS\temp\_avast4_\Webshlock.txt scheduled to be moved on reboot.
File move failed. C:\WINDOWS\temp\CLML_AGENT_LOG1.txt scheduled to be moved on reboot.
C:\WINDOWS\temp\Perflib_Perfdata_5c8.dat moved successfully.
File C:\WINDOWS\temp\Perflib_Perfdata_98.dat not found!
File C:\WINDOWS\temp\sqlite_n9BLtAhfd618CvS not found!
d'accord je fais tout ça puis je t'envoie les rapports la je suis au scan du poste de travail avec online scanner
g un petit souci il ne veut pas enregistrer la sauvegarde sur l'ordi à la fin du scan comment faire?
loloetseb
Messages postés
5508
Date d'inscription
dimanche 14 décembre 2008
Statut
Membre
Dernière intervention
22 avril 2012
174
20 févr. 2009 à 17:29
20 févr. 2009 à 17:29
tu parles de quoi? quel scan?
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
loloetseb
Messages postés
5508
Date d'inscription
dimanche 14 décembre 2008
Statut
Membre
Dernière intervention
22 avril 2012
174
20 févr. 2009 à 18:10
20 févr. 2009 à 18:10
Tu devais nous envoyer d'abord le rapport OTmoveit et faire la procedure antivir.Si tu ne fais pas les choses dans l'ordre ca ne va pas aller.Si tu n'arrives pas a te connecter a kaspersky c'est surement du a l'infection.
Reprends la procedure que je t'ai donné dans le detail precedemment et envoies nous les rapports
Reprends la procedure que je t'ai donné dans le detail precedemment et envoies nous les rapports
loloetseb
Messages postés
5508
Date d'inscription
dimanche 14 décembre 2008
Statut
Membre
Dernière intervention
22 avril 2012
174
20 févr. 2009 à 18:12
20 févr. 2009 à 18:12
Donc en resumé
1/Le script de genhackman avec Otmoveit (ok fait)
2/Supprimes les restes de norton avec le logiciel fourni (??????)
3/Supprimes avast et remplaces le par antivir (????????)
4/Scan complet antivir apres parametrage et mise a jour.Postes le rapport (????????)
5/Supprimes ce que tu as en quarantaine dans ton antivirus et tes antispywares (???????????)
6/Scan complet en ligne sur kaspersky.Postes le rapport
On te donnera la suite de la procedure au vue des rapports remis
1/Le script de genhackman avec Otmoveit (ok fait)
2/Supprimes les restes de norton avec le logiciel fourni (??????)
3/Supprimes avast et remplaces le par antivir (????????)
4/Scan complet antivir apres parametrage et mise a jour.Postes le rapport (????????)
5/Supprimes ce que tu as en quarantaine dans ton antivirus et tes antispywares (???????????)
6/Scan complet en ligne sur kaspersky.Postes le rapport
On te donnera la suite de la procedure au vue des rapports remis
g tout fait dans l'odre, j'ai envoyé déjà le rapport OT move it qui est
Le rapport OT move it
========== PROCESSES ==========
Process explorer.exe killed successfully.
========== SERVICES/DRIVERS ==========
Unable to stop service Boonty box .
Unable to stop service Boonty games .
========== FILES ==========
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe moved successfully.
File/Folder C:\WINDOWS\system32\485594\485594.dll not found.
DllUnregisterServer procedure not found in C:\Program Files\captcha5.dll
C:\Program Files\captcha5.dll NOT unregistered.
C:\Program Files\captcha5.dll moved successfully.
C:\windows\tag06.exe moved successfully.
C:\windows\nl07.exe moved successfully.
File/Folder C:\Program Files\Boonty\BoontyBox\BoontyBox.exe not found.
C:\ancien moved successfully.
C:\WINDOWS\system32\485594 moved successfully.
File/Folder C:\WINDOWS\tag06.exe not found.
File/Folder C:\Program Files\captcha5.dll not found.
C:\WINDOWS\freddy35.exe moved successfully.
C:\Python22\tcl\tk8.3\images moved successfully.
C:\Python22\tcl\tk8.3\demos\images moved successfully.
C:\Python22\tcl\tk8.3\demos moved successfully.
C:\Python22\tcl\tk8.3 moved successfully.
C:\Python22\tcl\tcl8.3\tcltest1.0 moved successfully.
C:\Python22\tcl\tcl8.3\reg1.0 moved successfully.
C:\Python22\tcl\tcl8.3\opt0.4 moved successfully.
C:\Python22\tcl\tcl8.3\msgcat1.0 moved successfully.
C:\Python22\tcl\tcl8.3\http2.3 moved successfully.
C:\Python22\tcl\tcl8.3\http1.0 moved successfully.
C:\Python22\tcl\tcl8.3\encoding moved successfully.
C:\Python22\tcl\tcl8.3\dde1.1 moved successfully.
C:\Python22\tcl\tcl8.3 moved successfully.
C:\Python22\tcl moved successfully.
C:\Python22\Scripts moved successfully.
C:\Python22\libs moved successfully.
C:\Python22\Lib\xml\sax moved successfully.
C:\Python22\Lib\xml\parsers moved successfully.
C:\Python22\Lib\xml\dom moved successfully.
C:\Python22\Lib\xml moved successfully.
C:\Python22\Lib\site-packages\win32comext\taskscheduler\test moved successfully.
C:\Python22\Lib\site-packages\win32comext\taskscheduler moved successfully.
C:\Python22\Lib\site-packages\win32comext\shell\test moved successfully.
C:\Python22\Lib\site-packages\win32comext\shell\demos\servers moved successfully.
C:\Python22\Lib\site-packages\win32comext\shell\demos moved successfully.
C:\Python22\Lib\site-packages\win32comext\shell moved successfully.
C:\Python22\Lib\site-packages\win32comext\mapi\demos moved successfully.
C:\Python22\Lib\site-packages\win32comext\mapi moved successfully.
C:\Python22\Lib\site-packages\win32comext\internet moved successfully.
C:\Python22\Lib\site-packages\win32comext\ifilter\demo moved successfully.
C:\Python22\Lib\site-packages\win32comext\ifilter moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\test moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\server moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client\wsh moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client\ie moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client\asp\interrupt moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client\asp moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\client moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript moved successfully.
C:\Python22\Lib\site-packages\win32comext\axdebug moved successfully.
C:\Python22\Lib\site-packages\win32comext\axcontrol moved successfully.
C:\Python22\Lib\site-packages\win32comext\adsi\demos moved successfully.
C:\Python22\Lib\site-packages\win32comext\adsi moved successfully.
C:\Python22\Lib\site-packages\win32comext moved successfully.
C:\Python22\Lib\site-packages\win32com\test moved successfully.
C:\Python22\Lib\site-packages\win32com\servers moved successfully.
C:\Python22\Lib\site-packages\win32com\server moved successfully.
C:\Python22\Lib\site-packages\win32com\makegw moved successfully.
C:\Python22\Lib\site-packages\win32com\libs moved successfully.
C:\Python22\Lib\site-packages\win32com\include moved successfully.
C:\Python22\Lib\site-packages\win32com\HTML\image moved successfully.
C:\Python22\Lib\site-packages\win32com\HTML moved successfully.
C:\Python22\Lib\site-packages\win32com\gen_py moved successfully.
C:\Python22\Lib\site-packages\win32com\demos moved successfully.
C:\Python22\Lib\site-packages\win32com\client moved successfully.
C:\Python22\Lib\site-packages\win32com moved successfully.
C:\Python22\Lib\site-packages\win32\test\win32rcparser moved successfully.
C:\Python22\Lib\site-packages\win32\test moved successfully.
C:\Python22\Lib\site-packages\win32\scripts\VersionStamp moved successfully.
C:\Python22\Lib\site-packages\win32\scripts\ce moved successfully.
C:\Python22\Lib\site-packages\win32\scripts moved successfully.
C:\Python22\Lib\site-packages\win32\libs moved successfully.
C:\Python22\Lib\site-packages\win32\lib moved successfully.
C:\Python22\Lib\site-packages\win32\include moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\win32wnet moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\service\install moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\service moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\security moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\pipes moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\images moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\dde moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\c_extension moved successfully.
C:\Python22\Lib\site-packages\win32\Demos moved successfully.
C:\Python22\Lib\site-packages\win32 moved successfully.
C:\Python22\Lib\site-packages\pywin32_system32 moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\tools moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\scintilla moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\mfc moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\idle moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\framework\editor\color moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\framework\editor moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\framework moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\docking moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\dialogs moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\Demos\ocx moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\Demos\app moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\Demos moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\debugger moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin moved successfully.
C:\Python22\Lib\site-packages\pythonwin moved successfully.
C:\Python22\Lib\site-packages\isapi\test moved successfully.
C:\Python22\Lib\site-packages\isapi\samples moved successfully.
C:\Python22\Lib\site-packages\isapi\doc moved successfully.
C:\Python22\Lib\site-packages\isapi moved successfully.
C:\Python22\Lib\site-packages moved successfully.
C:\Python22\Lib\lib-tk moved successfully.
C:\Python22\Lib\lib-old moved successfully.
C:\Python22\Lib\hotshot moved successfully.
C:\Python22\Lib\encodings moved successfully.
C:\Python22\Lib\email\test\data moved successfully.
C:\Python22\Lib\email\test moved successfully.
C:\Python22\Lib\email moved successfully.
C:\Python22\Lib\distutils\command moved successfully.
C:\Python22\Lib\distutils moved successfully.
C:\Python22\Lib\compiler moved successfully.
C:\Python22\Lib moved successfully.
C:\Python22\DLLs moved successfully.
C:\Python22 moved successfully.
C:\WINDOWS\system32\FxsTmp moved successfully.
C:\WINDOWS\Pex.INI moved successfully.
C:\WINDOWS\Burger Shop Setup Log.txt moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{40d1c3a7-4ffb-4443-b3a0-a64b2df7fc3b}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B935A11E-49AA-43C7-BF1C-3BDEB7120142}\\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\PCDrProfiler deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Reminder deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\HP Software Update deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\LVCOMSX deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\TkBellExe deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\iTunesHelper deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Captcha5 deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\systgray2 deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\sysnltray2 deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\LDM deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\LogitechSoftwareUpdate deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\MessengerPlus3 deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\msnmsgr deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\swg deleted successfully.
Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bd0ffe71-0ad7-11db-9a32-806d6172696f}\\ deleted successfully.
Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{fdfe79b2-0152-11dc-9bf6-000e5050f45d}\\ deleted successfully.
========== COMMANDS ==========
File delete failed. C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\hpodvd09.log scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\Perflib_Perfdata_f00.dat scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\WCESLog.log scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\_hphtra07.log scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Temporary Internet Files folder emptied.
User's Internet Explorer cache folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Fichiers Internet temporaires\Content.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat scheduled to be deleted on reboot.
Local Service Temp folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
Local Service Temporary Internet Files folder emptied.
File delete failed. C:\WINDOWS\temp\_avast4_\Webshlock.txt scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\CLML_AGENT_LOG1.txt scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_5c8.dat scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_98.dat scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\sqlite_n9BLtAhfd618CvS scheduled to be deleted on reboot.
Windows Temp folder emptied.
Java cache emptied.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully
OTMoveIt3 by OldTimer - Version 1.0.8.0 log created on 02202009_124927
Files moved on Reboot...
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\hpodvd09.log moved successfully.
File C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\Perflib_Perfdata_f00.dat not found!
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\WCESLog.log moved successfully.
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\_hphtra07.log moved successfully.
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat scheduled to be moved on reboot.
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Fichiers Internet temporaires\Content.IE5\index.dat scheduled to be moved on reboot.
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat scheduled to be moved on reboot.
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be moved on reboot.
File move failed. C:\WINDOWS\temp\_avast4_\Webshlock.txt scheduled to be moved on reboot.
File move failed. C:\WINDOWS\temp\CLML_AGENT_LOG1.txt scheduled to be moved on reboot.
C:\WINDOWS\temp\Perflib_Perfdata_5c8.dat moved successfully.
File C:\WINDOWS\temp\Perflib_Perfdata_98.dat not found!
File C:\WINDOWS\temp\sqlite_n9BLtAhfd618CvS not found!
Le rapport OT move it
========== PROCESSES ==========
Process explorer.exe killed successfully.
========== SERVICES/DRIVERS ==========
Unable to stop service Boonty box .
Unable to stop service Boonty games .
========== FILES ==========
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe moved successfully.
File/Folder C:\WINDOWS\system32\485594\485594.dll not found.
DllUnregisterServer procedure not found in C:\Program Files\captcha5.dll
C:\Program Files\captcha5.dll NOT unregistered.
C:\Program Files\captcha5.dll moved successfully.
C:\windows\tag06.exe moved successfully.
C:\windows\nl07.exe moved successfully.
File/Folder C:\Program Files\Boonty\BoontyBox\BoontyBox.exe not found.
C:\ancien moved successfully.
C:\WINDOWS\system32\485594 moved successfully.
File/Folder C:\WINDOWS\tag06.exe not found.
File/Folder C:\Program Files\captcha5.dll not found.
C:\WINDOWS\freddy35.exe moved successfully.
C:\Python22\tcl\tk8.3\images moved successfully.
C:\Python22\tcl\tk8.3\demos\images moved successfully.
C:\Python22\tcl\tk8.3\demos moved successfully.
C:\Python22\tcl\tk8.3 moved successfully.
C:\Python22\tcl\tcl8.3\tcltest1.0 moved successfully.
C:\Python22\tcl\tcl8.3\reg1.0 moved successfully.
C:\Python22\tcl\tcl8.3\opt0.4 moved successfully.
C:\Python22\tcl\tcl8.3\msgcat1.0 moved successfully.
C:\Python22\tcl\tcl8.3\http2.3 moved successfully.
C:\Python22\tcl\tcl8.3\http1.0 moved successfully.
C:\Python22\tcl\tcl8.3\encoding moved successfully.
C:\Python22\tcl\tcl8.3\dde1.1 moved successfully.
C:\Python22\tcl\tcl8.3 moved successfully.
C:\Python22\tcl moved successfully.
C:\Python22\Scripts moved successfully.
C:\Python22\libs moved successfully.
C:\Python22\Lib\xml\sax moved successfully.
C:\Python22\Lib\xml\parsers moved successfully.
C:\Python22\Lib\xml\dom moved successfully.
C:\Python22\Lib\xml moved successfully.
C:\Python22\Lib\site-packages\win32comext\taskscheduler\test moved successfully.
C:\Python22\Lib\site-packages\win32comext\taskscheduler moved successfully.
C:\Python22\Lib\site-packages\win32comext\shell\test moved successfully.
C:\Python22\Lib\site-packages\win32comext\shell\demos\servers moved successfully.
C:\Python22\Lib\site-packages\win32comext\shell\demos moved successfully.
C:\Python22\Lib\site-packages\win32comext\shell moved successfully.
C:\Python22\Lib\site-packages\win32comext\mapi\demos moved successfully.
C:\Python22\Lib\site-packages\win32comext\mapi moved successfully.
C:\Python22\Lib\site-packages\win32comext\internet moved successfully.
C:\Python22\Lib\site-packages\win32comext\ifilter\demo moved successfully.
C:\Python22\Lib\site-packages\win32comext\ifilter moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\test moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\server moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client\wsh moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client\ie moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client\asp\interrupt moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client\asp moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos\client moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\Demos moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript\client moved successfully.
C:\Python22\Lib\site-packages\win32comext\axscript moved successfully.
C:\Python22\Lib\site-packages\win32comext\axdebug moved successfully.
C:\Python22\Lib\site-packages\win32comext\axcontrol moved successfully.
C:\Python22\Lib\site-packages\win32comext\adsi\demos moved successfully.
C:\Python22\Lib\site-packages\win32comext\adsi moved successfully.
C:\Python22\Lib\site-packages\win32comext moved successfully.
C:\Python22\Lib\site-packages\win32com\test moved successfully.
C:\Python22\Lib\site-packages\win32com\servers moved successfully.
C:\Python22\Lib\site-packages\win32com\server moved successfully.
C:\Python22\Lib\site-packages\win32com\makegw moved successfully.
C:\Python22\Lib\site-packages\win32com\libs moved successfully.
C:\Python22\Lib\site-packages\win32com\include moved successfully.
C:\Python22\Lib\site-packages\win32com\HTML\image moved successfully.
C:\Python22\Lib\site-packages\win32com\HTML moved successfully.
C:\Python22\Lib\site-packages\win32com\gen_py moved successfully.
C:\Python22\Lib\site-packages\win32com\demos moved successfully.
C:\Python22\Lib\site-packages\win32com\client moved successfully.
C:\Python22\Lib\site-packages\win32com moved successfully.
C:\Python22\Lib\site-packages\win32\test\win32rcparser moved successfully.
C:\Python22\Lib\site-packages\win32\test moved successfully.
C:\Python22\Lib\site-packages\win32\scripts\VersionStamp moved successfully.
C:\Python22\Lib\site-packages\win32\scripts\ce moved successfully.
C:\Python22\Lib\site-packages\win32\scripts moved successfully.
C:\Python22\Lib\site-packages\win32\libs moved successfully.
C:\Python22\Lib\site-packages\win32\lib moved successfully.
C:\Python22\Lib\site-packages\win32\include moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\win32wnet moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\service\install moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\service moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\security moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\pipes moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\images moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\dde moved successfully.
C:\Python22\Lib\site-packages\win32\Demos\c_extension moved successfully.
C:\Python22\Lib\site-packages\win32\Demos moved successfully.
C:\Python22\Lib\site-packages\win32 moved successfully.
C:\Python22\Lib\site-packages\pywin32_system32 moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\tools moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\scintilla moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\mfc moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\idle moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\framework\editor\color moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\framework\editor moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\framework moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\docking moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\dialogs moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\Demos\ocx moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\Demos\app moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\Demos moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin\debugger moved successfully.
C:\Python22\Lib\site-packages\pythonwin\pywin moved successfully.
C:\Python22\Lib\site-packages\pythonwin moved successfully.
C:\Python22\Lib\site-packages\isapi\test moved successfully.
C:\Python22\Lib\site-packages\isapi\samples moved successfully.
C:\Python22\Lib\site-packages\isapi\doc moved successfully.
C:\Python22\Lib\site-packages\isapi moved successfully.
C:\Python22\Lib\site-packages moved successfully.
C:\Python22\Lib\lib-tk moved successfully.
C:\Python22\Lib\lib-old moved successfully.
C:\Python22\Lib\hotshot moved successfully.
C:\Python22\Lib\encodings moved successfully.
C:\Python22\Lib\email\test\data moved successfully.
C:\Python22\Lib\email\test moved successfully.
C:\Python22\Lib\email moved successfully.
C:\Python22\Lib\distutils\command moved successfully.
C:\Python22\Lib\distutils moved successfully.
C:\Python22\Lib\compiler moved successfully.
C:\Python22\Lib moved successfully.
C:\Python22\DLLs moved successfully.
C:\Python22 moved successfully.
C:\WINDOWS\system32\FxsTmp moved successfully.
C:\WINDOWS\Pex.INI moved successfully.
C:\WINDOWS\Burger Shop Setup Log.txt moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{40d1c3a7-4ffb-4443-b3a0-a64b2df7fc3b}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B935A11E-49AA-43C7-BF1C-3BDEB7120142}\\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\PCDrProfiler deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Reminder deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\HP Software Update deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\LVCOMSX deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\TkBellExe deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\iTunesHelper deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Captcha5 deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\systgray2 deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\sysnltray2 deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\LDM deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\LogitechSoftwareUpdate deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\MessengerPlus3 deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\msnmsgr deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\swg deleted successfully.
Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bd0ffe71-0ad7-11db-9a32-806d6172696f}\\ deleted successfully.
Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{fdfe79b2-0152-11dc-9bf6-000e5050f45d}\\ deleted successfully.
========== COMMANDS ==========
File delete failed. C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\hpodvd09.log scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\Perflib_Perfdata_f00.dat scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\WCESLog.log scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\_hphtra07.log scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Temporary Internet Files folder emptied.
User's Internet Explorer cache folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Fichiers Internet temporaires\Content.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat scheduled to be deleted on reboot.
Local Service Temp folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
Local Service Temporary Internet Files folder emptied.
File delete failed. C:\WINDOWS\temp\_avast4_\Webshlock.txt scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\CLML_AGENT_LOG1.txt scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_5c8.dat scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_98.dat scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\sqlite_n9BLtAhfd618CvS scheduled to be deleted on reboot.
Windows Temp folder emptied.
Java cache emptied.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully
OTMoveIt3 by OldTimer - Version 1.0.8.0 log created on 02202009_124927
Files moved on Reboot...
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\hpodvd09.log moved successfully.
File C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\Perflib_Perfdata_f00.dat not found!
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\WCESLog.log moved successfully.
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\_hphtra07.log moved successfully.
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat scheduled to be moved on reboot.
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Fichiers Internet temporaires\Content.IE5\index.dat scheduled to be moved on reboot.
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat scheduled to be moved on reboot.
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be moved on reboot.
File move failed. C:\WINDOWS\temp\_avast4_\Webshlock.txt scheduled to be moved on reboot.
File move failed. C:\WINDOWS\temp\CLML_AGENT_LOG1.txt scheduled to be moved on reboot.
C:\WINDOWS\temp\Perflib_Perfdata_5c8.dat moved successfully.
File C:\WINDOWS\temp\Perflib_Perfdata_98.dat not found!
File C:\WINDOWS\temp\sqlite_n9BLtAhfd618CvS not found!
puis je devais faire le scan du poste de travail avec kasperty online scanner il à tout fait, il m'a donné le rapport mais quand j'essaye de te l'envoyer il ne le site du forum bug
loloetseb
Messages postés
5508
Date d'inscription
dimanche 14 décembre 2008
Statut
Membre
Dernière intervention
22 avril 2012
174
20 févr. 2009 à 18:25
20 févr. 2009 à 18:25
Merci de bien suivre la procedure et de nous poster les rapports demandés.
loloetseb
Messages postés
5508
Date d'inscription
dimanche 14 décembre 2008
Statut
Membre
Dernière intervention
22 avril 2012
174
20 févr. 2009 à 18:26
20 févr. 2009 à 18:26
Ok installes antivir et lances le scan complet.Parametres le comme indiqué et postes nous le rapport à la fin du scan.STP
loloetseb
Messages postés
5508
Date d'inscription
dimanche 14 décembre 2008
Statut
Membre
Dernière intervention
22 avril 2012
174
20 févr. 2009 à 19:06
20 févr. 2009 à 19:06
Si tu as deja ccleaner,tu ne le re-telecharges pas
rapport analyse antivir
Avira AntiVir Personal
Date de création du fichier de rapport : vendredi 20 février 2009 19:27
La recherche porte sur 1258325 souches de virus.
Détenteur de la licence :Avira AntiVir PersonalEdition Classic
Numéro de série : 0000149996-ADJIE-0001
Plateforme : Windows XP
Version de Windows :(Service Pack 3) [5.1.2600]
Mode Boot : Démarré normalement
Identifiant : HP_Propriétaire
Nom de l'ordinateur :NINOBLACK
Informations de version :
BUILD.DAT : 8.2.0.52 16931 Bytes 02/12/2008 14:55:00
AVSCAN.EXE : 8.1.4.10 315649 Bytes 18/11/2008 08:21:00
AVSCAN.DLL : 8.1.4.1 49921 Bytes 21/07/2008 13:44:27
LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 12:44:16
LUKERES.DLL : 8.1.4.0 13057 Bytes 04/07/2008 07:30:27
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 11:30:36
ANTIVIR1.VDF : 7.1.2.12 3336192 Bytes 11/02/2009 17:53:00
ANTIVIR2.VDF : 7.1.2.55 248832 Bytes 20/02/2009 17:53:01
ANTIVIR3.VDF : 7.1.2.56 2048 Bytes 20/02/2009 17:53:02
Version du moteur: 8.2.0.87
AEVDF.DLL : 8.1.1.0 106868 Bytes 20/02/2009 17:53:14
AESCRIPT.DLL : 8.1.1.47 348539 Bytes 20/02/2009 17:53:12
AESCN.DLL : 8.1.1.7 127347 Bytes 20/02/2009 17:53:11
AERDL.DLL : 8.1.1.3 438645 Bytes 04/11/2008 13:58:38
AEPACK.DLL : 8.1.3.8 397684 Bytes 20/02/2009 17:53:10
AEOFFICE.DLL : 8.1.0.33 196987 Bytes 20/02/2009 17:53:09
AEHEUR.DLL : 8.1.0.97 1610103 Bytes 20/02/2009 17:53:08
AEHELP.DLL : 8.1.2.0 119159 Bytes 20/02/2009 17:53:05
AEGEN.DLL : 8.1.1.20 336245 Bytes 20/02/2009 17:53:04
AEEMU.DLL : 8.1.0.9 393588 Bytes 14/10/2008 10:05:56
AECORE.DLL : 8.1.6.6 176501 Bytes 20/02/2009 17:53:03
AEBB.DLL : 8.1.0.3 53618 Bytes 14/10/2008 10:05:56
AVWINLL.DLL : 1.0.0.12 15105 Bytes 09/07/2008 08:40:02
AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 09:27:58
AVREP.DLL : 8.0.0.2 98344 Bytes 31/07/2008 12:02:15
AVREG.DLL : 8.0.0.1 33537 Bytes 09/05/2008 11:26:37
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:19
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 12:27:46
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 12:49:36
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:07
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 04/07/2008 07:23:16
RCTEXT.DLL : 8.0.52.1 86273 Bytes 17/07/2008 10:08:43
Configuration pour la recherche actuelle :
Nom de la tâche..................: Processus actifs
Fichier de configuration.........: c:\program files\avira\antivir personaledition classic\process.avp
Documentation....................: bas
Action principale................: interactif
Action secondaire................: ignorer
Recherche sur les secteurs d'amorçage maître: marche
Recherche sur les secteurs d'amorçage: marche
Recherche dans les programmes actifs: marche
Programmes en cours étendus......: marche
Recherche en cours sur l'enregistrement: arrêt
Recherche de Rootkits............: arrêt
Fichier mode de recherche........: Sélection de fichiers intelligente
Recherche sur les archives.......: marche
Limiter la profondeur de récursivité: 20
Archive Smart Extensions.........: marche
Heuristique de macrovirus........: marche
Heuristique fichier..............: moyen
Début de la recherche : vendredi 20 février 2009 19:27
La recherche sur les processus démarrés commence :
Processus de recherche 'avscan.exe' - '49' module(s) sont contrôlés
Processus de recherche 'avcenter.exe' - '99' module(s) sont contrôlés
Processus de recherche 'avgnt.exe' - '40' module(s) sont contrôlés
Processus de recherche 'avguard.exe' - '48' module(s) sont contrôlés
Processus de recherche 'sched.exe' - '31' module(s) sont contrôlés
Processus de recherche 'iPodService.exe' - '31' module(s) sont contrôlés
Processus de recherche 'iTunesHelper.exe' - '55' module(s) sont contrôlés
Processus de recherche 'jusched.exe' - '20' module(s) sont contrôlés
Processus de recherche 'hpsysdrv.exe' - '17' module(s) sont contrôlés
Processus de recherche 'atiptaxx.exe' - '36' module(s) sont contrôlés
Processus de recherche 'ALCXMNTR.EXE' - '33' module(s) sont contrôlés
Processus de recherche 'wltuser.exe' - '62' module(s) sont contrôlés
Processus de recherche 'iexplore.exe' - '168' module(s) sont contrôlés
Processus de recherche 'alg.exe' - '35' module(s) sont contrôlés
Processus de recherche 'wmiapsrv.exe' - '47' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '36' module(s) sont contrôlés
Processus de recherche 'kwtbaim.exe' - '40' module(s) sont contrôlés
Processus de recherche 'soffice.bin' - '88' module(s) sont contrôlés
Processus de recherche 'soffice.exe' - '20' module(s) sont contrôlés
Processus de recherche 'FxSvr2.exe' - '39' module(s) sont contrôlés
Processus de recherche 'LVCOMSX.EXE' - '37' module(s) sont contrôlés
Processus de recherche 'WindowsSearch.exe' - '72' module(s) sont contrôlés
Processus de recherche 'Watch.exe' - '31' module(s) sont contrôlés
Processus de recherche 'PhLeAutoRun.exe' - '42' module(s) sont contrôlés
Processus de recherche 'LogitechDesktopMessenger.exe' - '77' module(s) sont contrôlés
Processus de recherche 'hpqtra08.exe' - '59' module(s) sont contrôlés
Processus de recherche 'CalCheck.exe' - '30' module(s) sont contrôlés
Processus de recherche 'rapimgr.exe' - '42' module(s) sont contrôlés
Processus de recherche 'msnmsgr.exe' - '122' module(s) sont contrôlés
Processus de recherche 'ctfmon.exe' - '27' module(s) sont contrôlés
Processus de recherche 'OrangeDesktopSearch.exe' - '48' module(s) sont contrôlés
Processus de recherche 'wcescomm.exe' - '47' module(s) sont contrôlés
Processus de recherche 'msmsgs.exe' - '44' module(s) sont contrôlés
Processus de recherche 'realsched.exe' - '30' module(s) sont contrôlés
Processus de recherche 'fsui.exe' - '42' module(s) sont contrôlés
Processus de recherche 'BTLiveUpdate.exe' - '47' module(s) sont contrôlés
Processus de recherche 'EverioService.exe' - '74' module(s) sont contrôlés
Processus de recherche 'kbd.exe' - '60' module(s) sont contrôlés
Processus de recherche 'E_FATIACE.EXE' - '21' module(s) sont contrôlés
Processus de recherche 'LogiTray.exe' - '58' module(s) sont contrôlés
Processus de recherche 'PCMService.exe' - '74' module(s) sont contrôlés
Processus de recherche 'explorer.exe' - '122' module(s) sont contrôlés
Processus de recherche 'ati2evxx.exe' - '22' module(s) sont contrôlés
Processus de recherche 'CLSched.exe' - '34' module(s) sont contrôlés
Processus de recherche 'searchindexer.exe' - '54' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '44' module(s) sont contrôlés
Processus de recherche 'RichVideo.exe' - '24' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '41' module(s) sont contrôlés
Processus de recherche 'jqs.exe' - '83' module(s) sont contrôlés
Processus de recherche 'fsssvc.exe' - '88' module(s) sont contrôlés
Processus de recherche 'CLMLServer.exe' - '26' module(s) sont contrôlés
Processus de recherche 'CLCapSvc.exe' - '71' module(s) sont contrôlés
Processus de recherche 'CanalPlus.VOD.exe' - '99' module(s) sont contrôlés
Processus de recherche 'mDNSResponder.exe' - '34' module(s) sont contrôlés
Processus de recherche 'AppleMobileDeviceService.exe' - '27' module(s) sont contrôlés
Processus de recherche 'spoolsv.exe' - '65' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '43' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '34' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '32' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '165' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '42' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '54' module(s) sont contrôlés
Processus de recherche 'ati2evxx.exe' - '17' module(s) sont contrôlés
Processus de recherche 'lsass.exe' - '60' module(s) sont contrôlés
Processus de recherche 'services.exe' - '29' module(s) sont contrôlés
Processus de recherche 'winlogon.exe' - '69' module(s) sont contrôlés
Processus de recherche 'csrss.exe' - '16' module(s) sont contrôlés
Processus de recherche 'smss.exe' - '2' module(s) sont contrôlés
'68' processus ont été contrôlés avec '3475' modules
Fin de la recherche : vendredi 20 février 2009 19:28
Temps nécessaire: 00:50 Minute(s)
La recherche a été effectuée intégralement
0 Les répertoires ont été contrôlés
3506 Des fichiers ont été contrôlés
0 Des virus ou programmes indésirables ont été trouvés
0 Des fichiers ont été classés comme suspects
0 Des fichiers ont été supprimés
0 Des virus ou programmes indésirables ont été réparés
0 Les fichiers ont été déplacés dans la quarantaine
0 Les fichiers ont été renommés
0 Impossible de contrôler des fichiers
3506 Fichiers non infectés
2 Les archives ont été contrôlées
0 Avertissements
0 Consignes
Avira AntiVir Personal
Date de création du fichier de rapport : vendredi 20 février 2009 19:27
La recherche porte sur 1258325 souches de virus.
Détenteur de la licence :Avira AntiVir PersonalEdition Classic
Numéro de série : 0000149996-ADJIE-0001
Plateforme : Windows XP
Version de Windows :(Service Pack 3) [5.1.2600]
Mode Boot : Démarré normalement
Identifiant : HP_Propriétaire
Nom de l'ordinateur :NINOBLACK
Informations de version :
BUILD.DAT : 8.2.0.52 16931 Bytes 02/12/2008 14:55:00
AVSCAN.EXE : 8.1.4.10 315649 Bytes 18/11/2008 08:21:00
AVSCAN.DLL : 8.1.4.1 49921 Bytes 21/07/2008 13:44:27
LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 12:44:16
LUKERES.DLL : 8.1.4.0 13057 Bytes 04/07/2008 07:30:27
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 11:30:36
ANTIVIR1.VDF : 7.1.2.12 3336192 Bytes 11/02/2009 17:53:00
ANTIVIR2.VDF : 7.1.2.55 248832 Bytes 20/02/2009 17:53:01
ANTIVIR3.VDF : 7.1.2.56 2048 Bytes 20/02/2009 17:53:02
Version du moteur: 8.2.0.87
AEVDF.DLL : 8.1.1.0 106868 Bytes 20/02/2009 17:53:14
AESCRIPT.DLL : 8.1.1.47 348539 Bytes 20/02/2009 17:53:12
AESCN.DLL : 8.1.1.7 127347 Bytes 20/02/2009 17:53:11
AERDL.DLL : 8.1.1.3 438645 Bytes 04/11/2008 13:58:38
AEPACK.DLL : 8.1.3.8 397684 Bytes 20/02/2009 17:53:10
AEOFFICE.DLL : 8.1.0.33 196987 Bytes 20/02/2009 17:53:09
AEHEUR.DLL : 8.1.0.97 1610103 Bytes 20/02/2009 17:53:08
AEHELP.DLL : 8.1.2.0 119159 Bytes 20/02/2009 17:53:05
AEGEN.DLL : 8.1.1.20 336245 Bytes 20/02/2009 17:53:04
AEEMU.DLL : 8.1.0.9 393588 Bytes 14/10/2008 10:05:56
AECORE.DLL : 8.1.6.6 176501 Bytes 20/02/2009 17:53:03
AEBB.DLL : 8.1.0.3 53618 Bytes 14/10/2008 10:05:56
AVWINLL.DLL : 1.0.0.12 15105 Bytes 09/07/2008 08:40:02
AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 09:27:58
AVREP.DLL : 8.0.0.2 98344 Bytes 31/07/2008 12:02:15
AVREG.DLL : 8.0.0.1 33537 Bytes 09/05/2008 11:26:37
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:19
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 12:27:46
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 12:49:36
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:07
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 04/07/2008 07:23:16
RCTEXT.DLL : 8.0.52.1 86273 Bytes 17/07/2008 10:08:43
Configuration pour la recherche actuelle :
Nom de la tâche..................: Processus actifs
Fichier de configuration.........: c:\program files\avira\antivir personaledition classic\process.avp
Documentation....................: bas
Action principale................: interactif
Action secondaire................: ignorer
Recherche sur les secteurs d'amorçage maître: marche
Recherche sur les secteurs d'amorçage: marche
Recherche dans les programmes actifs: marche
Programmes en cours étendus......: marche
Recherche en cours sur l'enregistrement: arrêt
Recherche de Rootkits............: arrêt
Fichier mode de recherche........: Sélection de fichiers intelligente
Recherche sur les archives.......: marche
Limiter la profondeur de récursivité: 20
Archive Smart Extensions.........: marche
Heuristique de macrovirus........: marche
Heuristique fichier..............: moyen
Début de la recherche : vendredi 20 février 2009 19:27
La recherche sur les processus démarrés commence :
Processus de recherche 'avscan.exe' - '49' module(s) sont contrôlés
Processus de recherche 'avcenter.exe' - '99' module(s) sont contrôlés
Processus de recherche 'avgnt.exe' - '40' module(s) sont contrôlés
Processus de recherche 'avguard.exe' - '48' module(s) sont contrôlés
Processus de recherche 'sched.exe' - '31' module(s) sont contrôlés
Processus de recherche 'iPodService.exe' - '31' module(s) sont contrôlés
Processus de recherche 'iTunesHelper.exe' - '55' module(s) sont contrôlés
Processus de recherche 'jusched.exe' - '20' module(s) sont contrôlés
Processus de recherche 'hpsysdrv.exe' - '17' module(s) sont contrôlés
Processus de recherche 'atiptaxx.exe' - '36' module(s) sont contrôlés
Processus de recherche 'ALCXMNTR.EXE' - '33' module(s) sont contrôlés
Processus de recherche 'wltuser.exe' - '62' module(s) sont contrôlés
Processus de recherche 'iexplore.exe' - '168' module(s) sont contrôlés
Processus de recherche 'alg.exe' - '35' module(s) sont contrôlés
Processus de recherche 'wmiapsrv.exe' - '47' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '36' module(s) sont contrôlés
Processus de recherche 'kwtbaim.exe' - '40' module(s) sont contrôlés
Processus de recherche 'soffice.bin' - '88' module(s) sont contrôlés
Processus de recherche 'soffice.exe' - '20' module(s) sont contrôlés
Processus de recherche 'FxSvr2.exe' - '39' module(s) sont contrôlés
Processus de recherche 'LVCOMSX.EXE' - '37' module(s) sont contrôlés
Processus de recherche 'WindowsSearch.exe' - '72' module(s) sont contrôlés
Processus de recherche 'Watch.exe' - '31' module(s) sont contrôlés
Processus de recherche 'PhLeAutoRun.exe' - '42' module(s) sont contrôlés
Processus de recherche 'LogitechDesktopMessenger.exe' - '77' module(s) sont contrôlés
Processus de recherche 'hpqtra08.exe' - '59' module(s) sont contrôlés
Processus de recherche 'CalCheck.exe' - '30' module(s) sont contrôlés
Processus de recherche 'rapimgr.exe' - '42' module(s) sont contrôlés
Processus de recherche 'msnmsgr.exe' - '122' module(s) sont contrôlés
Processus de recherche 'ctfmon.exe' - '27' module(s) sont contrôlés
Processus de recherche 'OrangeDesktopSearch.exe' - '48' module(s) sont contrôlés
Processus de recherche 'wcescomm.exe' - '47' module(s) sont contrôlés
Processus de recherche 'msmsgs.exe' - '44' module(s) sont contrôlés
Processus de recherche 'realsched.exe' - '30' module(s) sont contrôlés
Processus de recherche 'fsui.exe' - '42' module(s) sont contrôlés
Processus de recherche 'BTLiveUpdate.exe' - '47' module(s) sont contrôlés
Processus de recherche 'EverioService.exe' - '74' module(s) sont contrôlés
Processus de recherche 'kbd.exe' - '60' module(s) sont contrôlés
Processus de recherche 'E_FATIACE.EXE' - '21' module(s) sont contrôlés
Processus de recherche 'LogiTray.exe' - '58' module(s) sont contrôlés
Processus de recherche 'PCMService.exe' - '74' module(s) sont contrôlés
Processus de recherche 'explorer.exe' - '122' module(s) sont contrôlés
Processus de recherche 'ati2evxx.exe' - '22' module(s) sont contrôlés
Processus de recherche 'CLSched.exe' - '34' module(s) sont contrôlés
Processus de recherche 'searchindexer.exe' - '54' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '44' module(s) sont contrôlés
Processus de recherche 'RichVideo.exe' - '24' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '41' module(s) sont contrôlés
Processus de recherche 'jqs.exe' - '83' module(s) sont contrôlés
Processus de recherche 'fsssvc.exe' - '88' module(s) sont contrôlés
Processus de recherche 'CLMLServer.exe' - '26' module(s) sont contrôlés
Processus de recherche 'CLCapSvc.exe' - '71' module(s) sont contrôlés
Processus de recherche 'CanalPlus.VOD.exe' - '99' module(s) sont contrôlés
Processus de recherche 'mDNSResponder.exe' - '34' module(s) sont contrôlés
Processus de recherche 'AppleMobileDeviceService.exe' - '27' module(s) sont contrôlés
Processus de recherche 'spoolsv.exe' - '65' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '43' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '34' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '32' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '165' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '42' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '54' module(s) sont contrôlés
Processus de recherche 'ati2evxx.exe' - '17' module(s) sont contrôlés
Processus de recherche 'lsass.exe' - '60' module(s) sont contrôlés
Processus de recherche 'services.exe' - '29' module(s) sont contrôlés
Processus de recherche 'winlogon.exe' - '69' module(s) sont contrôlés
Processus de recherche 'csrss.exe' - '16' module(s) sont contrôlés
Processus de recherche 'smss.exe' - '2' module(s) sont contrôlés
'68' processus ont été contrôlés avec '3475' modules
Fin de la recherche : vendredi 20 février 2009 19:28
Temps nécessaire: 00:50 Minute(s)
La recherche a été effectuée intégralement
0 Les répertoires ont été contrôlés
3506 Des fichiers ont été contrôlés
0 Des virus ou programmes indésirables ont été trouvés
0 Des fichiers ont été classés comme suspects
0 Des fichiers ont été supprimés
0 Des virus ou programmes indésirables ont été réparés
0 Les fichiers ont été déplacés dans la quarantaine
0 Les fichiers ont été renommés
0 Impossible de contrôler des fichiers
3506 Fichiers non infectés
2 Les archives ont été contrôlées
0 Avertissements
0 Consignes
Utilisateur anonyme
20 févr. 2009 à 20:58
20 févr. 2009 à 20:58
oulala ca sent le virut(j'espere pas):
combien as tu d infections avec le rapport de kaspersky ?
combien as tu d infections avec le rapport de kaspersky ?
Utilisateur anonyme
20 févr. 2009 à 21:34
20 févr. 2009 à 21:34
combien as tu d infections inscrites sur le rapport precedent de kaspersky ?
c est ecrit au debut du rapport
c est ecrit au debut du rapport