Pc infecté - Page 2

Précédent
  • 1
  • 2
Utilisateur anonyme
 
le rapport situé dans ce dossier : C:\_OTM\MovedFiles\
Le nom du rapport correspond au moment de sa création : date_heure.log


tu peux le poster ici :

http://www.cijoinr.fr/

et donner le lien obtenu en echange
0
cedric18om Messages postés 241 Statut Membre 4
 
========== PROCESSES ==========
Process explorer.exe killed successfully.
========== SERVICES/DRIVERS ==========
Service\Driver WM System Decode Application not found.
Service\Driver WM System Decode Application not found.
========== FILES ==========
C:\found.002\dir0000.chk moved successfully.
C:\found.002 moved successfully.
C:\found.001 moved successfully.
C:\b6ea012a28b460ef7b3f4f22bf063c\update moved successfully.
C:\b6ea012a28b460ef7b3f4f22bf063c\support moved successfully.
C:\b6ea012a28b460ef7b3f4f22bf063c moved successfully.
C:\WINDOWS\NV31363124.TMP moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\nwiz deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\msnmsgr deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\MSMSGS deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer\\NoFind deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer\\NoFolderOptions deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer\\NoRun deleted successfully.
========== COMMANDS ==========
User's Temp folder emptied.
User's Internet Explorer cache folder emptied.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\Y6T5K6OF\display[11].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\Y6T5K6OF\im[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\Y6T5K6OF\SendMessageLight[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\Y6T5K6OF\SZ2OT8CAFIOWFTCAFI0E4UCANGYQF2CAC4T01SCAJJ2DPCCAHPT1AGCA1K3T4UCAMHKJKICAWVZ178CAZACULYCA5ZBQRTCAY4O2YXCAHVK0F6CA7EG5HECA2QWC39CATRULVJCAWTJ5KJCATL2ALLCAU3CND5.htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\Y6T5K6OF\ToastFull[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\Y6T5K6OF\ToastMini[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\TZY2UO0Q\yl_160x600_appscatchall_apps_facebook_com[2].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\TRSPKW0E\BY8U3BCALGHXMOCAI38XP6CA74FRPQCATURLE2CAL2H0RACAQP3TTACAASQ5MCCAVTTHGLCA69180YCAFQ1C57CADEDSL9CA4PCUGYCAA05OG7CAPL4ZRZCA4X5F3ACAHW1FO5CARXKX41CAVQ5AUQCABGN26X.htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\TRSPKW0E\sans-sursis_com[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\TMJ5NIHW\YL_728x90_appscatchall_apps_facebook_com[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\T92SBPX8\MsgrConfig[1].asmx scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\K6CGBCM3\affich-12703245-pc-infecte[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\K6CGBCM3\ANK4PICAMJEWS3CARUV1WBCAPTER5MCAM2LYNZCA4Z3B94CATYE8P5CAWNOLL3CA8X6JZCCATE40BSCAP340OCCAGROPNJCASBVQFRCAS2S6PWCAGHS4NMCAXYEL2NCA0QNIHJCA3KCI9RCA7T1589CAZ49EWA.htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\K6CGBCM3\default[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\K6CGBCM3\index2[3].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\K6CGBCM3\index[2].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\G7UCGIN4\01[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\G7UCGIN4\index[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\G7UCGIN4\WO5QQACAYFHDH4CAHLUU5VCASA3JUBCARCW2ZKCARU0WBSCA0TPGGTCA8PLG71CAGXL4HDCANIQ8RNCAR8XIZ6CACC2CF6CAK3VSTCCA4YUY8VCA1VTM5QCAFT4QDWCAZNL9GKCA0H0ZMYCADXR6Q7CAMUO61L.htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\8EBP5KLJ\signin[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat scheduled to be deleted on reboot.
User's Temporary Internet Files folder emptied.
Local Service Temp folder emptied.
Local Service Temporary Internet Files folder emptied.
Network Service Temp folder emptied.
Network Service Temporary Internet Files folder emptied.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_5f4.dat scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\ZLT07336.TMP scheduled to be deleted on reboot.
Windows Temp folder emptied.
Java cache emptied.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully

OTM by OldTimer - Version 2.1.0.0 log created on 06042009_132517

Files moved on Reboot...
File C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\Y6T5K6OF\display[11].htm not found!
C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\Y6T5K6OF\im[1].htm moved successfully.
C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\Y6T5K6OF\SendMessageLight[1].htm moved successfully.
C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\Y6T5K6OF\SZ2OT8CAFIOWFTCAFI0E4UCANGYQF2CAC4T01SCAJJ2DPCCAHPT1AGCA1K3T4UCAMHKJKICAWVZ178CAZACULYCA5ZBQRTCAY4O2YXCAHVK0F6CA7EG5HECA2QWC39CATRULVJCAWTJ5KJCATL2ALLCAU3CND5.htm moved successfully.
C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\Y6T5K6OF\ToastFull[1].htm moved successfully.
C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\Y6T5K6OF\ToastMini[1].htm moved successfully.
File C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\TZY2UO0Q\yl_160x600_appscatchall_apps_facebook_com[2].htm not found!
File C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\TRSPKW0E\BY8U3BCALGHXMOCAI38XP6CA74FRPQCATURLE2CAL2H0RACAQP3TTACAASQ5MCCAVTTHGLCA69180YCAFQ1C57CADEDSL9CA4PCUGYCAA05OG7CAPL4ZRZCA4X5F3ACAHW1FO5CARXKX41CAVQ5AUQCABGN26X.htm not found!
File C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\TRSPKW0E\sans-sursis_com[1].htm not found!
File C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\TMJ5NIHW\YL_728x90_appscatchall_apps_facebook_com[1].htm not found!
C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\T92SBPX8\MsgrConfig[1].asmx moved successfully.
File C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\K6CGBCM3\affich-12703245-pc-infecte[1].htm not found!
File C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\K6CGBCM3\ANK4PICAMJEWS3CARUV1WBCAPTER5MCAM2LYNZCA4Z3B94CATYE8P5CAWNOLL3CA8X6JZCCATE40BSCAP340OCCAGROPNJCASBVQFRCAS2S6PWCAGHS4NMCAXYEL2NCA0QNIHJCA3KCI9RCA7T1589CAZ49EWA.htm not found!
C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\K6CGBCM3\default[1].htm moved successfully.
File C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\K6CGBCM3\index2[3].htm not found!
File C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\K6CGBCM3\index[2].htm not found!
C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\G7UCGIN4\01[1].htm moved successfully.
File C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\G7UCGIN4\index[1].htm not found!
File C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\G7UCGIN4\WO5QQACAYFHDH4CAHLUU5VCASA3JUBCARCW2ZKCARU0WBSCA0TPGGTCA8PLG71CAGXL4HDCANIQ8RNCAR8XIZ6CACC2CF6CAK3VSTCCA4YUY8VCA1VTM5QCAFT4QDWCAZNL9GKCA0H0ZMYCADXR6Q7CAMUO61L.htm not found!
C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\Content.IE5\8EBP5KLJ\signin[1].htm moved successfully.
C:\Documents and Settings\perso\Local Settings\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat moved successfully.
File C:\WINDOWS\temp\Perflib_Perfdata_5f4.dat not found!
File C:\WINDOWS\temp\ZLT07336.TMP not found!

Registry entries deleted on Reboot...
0
Utilisateur anonyme
 
tu pourrrais refaire l'option L de AD-Remover en mode sans echec stp ?
0
cedric18om Messages postés 241 Statut Membre 4
 
J'ai fait le nettoyage en mode sans échec ,j'ai redémarré et comment retrouver le rapport ?
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Utilisateur anonyme
 
Le rapport est sauvegardé aussi sous C:\Ad-report.log (le dernier)
0
cedric18om Messages postés 241 Statut Membre 4
 
Merci

.
======= RAPPORT D'AD-REMOVER 1.1.4.5_C | UNIQUEMENT XP/VISTA =======
.
Mit à jour part C_XX le 02/06/2009 à 8:00 PM
Contact: AdRemover.contact@gmail.com
Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
.
Lancé à: 15:26:15, 04/06/2009 | Mode sans echec | Option: CLEAN
Exécuté de: C:\Program Files\Ad-remover\
Système d'exploitation: Microsoft® Windows XP™ Service Pack 3 v5.1.2600
Nom du PC: PERSO-8D6644381 | Utilisateur actuel: perso
.
Administrateur: Administrateur
N'est pas administrateur: HelpAssistant *Desactive*
N'est pas administrateur: Invité *Desactive*
Administrateur: perso
N'est pas administrateur: SUPPORT_388945a0 *Desactive*
.
============== ÉLÉMENT(S) NEUTRALISÉ(S) ==============
.
.
.

(!) -- Fichiers temporaires supprimés.

.
============== Scan additionnel ==============
.

* Mozilla FireFox Version [Impossible d'obtenir la version] *

Nom du profil: vvxx4qfk.default (perso)
.
(Prefs.js) user_pref("browser.startup.homepage_override.mstone", "rv:1.9.0.6");
.
.

* Internet Explorer Version 8.0.6001.18702 *

[HKEY_CURRENT_USER\..\Internet Explorer\Main]

Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Search bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Start Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Start Page: hxxp://fr.msn.com/?ocid=iehp

[HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]

Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Search bar: hxxp://search.msn.com/spbasic.htm
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Start Page: hxxp://fr.msn.com/

[HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]

Tabs: res://ieframe.dll/tabswelcome.htm

============== Suspect (Cracks, Serials ... ) ==============

.

+---------------------------------------------------------------------------+

2193 Octet(s) - C:\Ad-Report-CLEAN.log
2767 Octet(s) - C:\Ad-Report-SCAN.log

54 Fichier(s) - C:\Program Files\Ad-remover\BACKUP
25 Fichier(s) - C:\Program Files\Ad-remover\QUARANTINE

Fin à: 15:31:22 | 04/06/2009
.
============== E.O.F ==============
.
0
Utilisateur anonyme
 
Imprime ces instructions car il faudra fermer toutes les fenêtres et applications lors de l'installation et de l'analyse.

Télécharges :

Malwarebytes

ou :

Malwarebytes

* Installe le ( choisis bien "francais" ; ne modifie pas les paramètres d'installe ) et mets le à jour .

(NB : S'il te manque "COMCTL32.OCX" lors de l'installe, alors télécharge le ici : COMCTL32.OCX

* Potasses le Tuto pour te familiariser avec le prg :

( cela dit, il est très simple d'utilisation ).

relance malwarebytes en suivant scrupuleusement ces consignes :

! Déconnecte toi et ferme toutes applications en cours !

* Lance Malwarebyte's .

Fais un examen dit "Complet" .

--> Laisse le programme travailler ( et ne rien faire d'autre avec le PC durant le scan ).
--> à la fin tu cliques sur "résultat" .
--> Vérifie que tous les objets infectés soient validés, puis clique sur " suppression " .

Note : si il faut redémarrer ton PC pour finir le nettoyage, fais le !

Poste le rapport sauvegardé après la suppression des objets infectés (dans l'onglet "rapport/log"de Malwarebytes, le dernier en date)

0
cedric18om Messages postés 241 Statut Membre 4
 
Malwarebytes' Anti-Malware 1.37
Version de la base de données: 2227
Windows 5.1.2600 Service Pack 3

04/06/2009 17:48:04
mbam-log-2009-06-04 (17-48-04).txt

Type de recherche: Examen complet (C:\|D:\|E:\|)
Eléments examinés: 164428
Temps écoulé: 1 hour(s), 24 minute(s), 53 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 49
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 31

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\Interface\{07b18eaa-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{07b18eac-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{1093995a-ba37-41d2-836e-091067c4ad17} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{120927bf-1700-43bc-810f-fab92549b390} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{17de5e5e-bfe3-4e83-8e1f-8755795359ec} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{1f52a5fa-a705-4415-b975-88503b291728} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{247a115f-06c2-4fb3-967d-2d62d3cf4f0a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2e3537fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3e1656ed-f60e-4597-b6aa-b6a58e171495} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3e53e2cb-86db-4a4a-8bd9-ffeb7a64df82} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3e720451-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3e720453-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{63d0ed2b-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{63d0ed2d-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{6e74766c-4d93-4cc0-96d1-47b8e07ff9ca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{72ee7f04-15bd-4845-a005-d6711144d86a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{741de825-a6f0-4497-9aa6-8023cf9b0fff} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7473d291-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7473d293-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7473d295-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7473d297-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{90449521-d834-4703-bb4e-d3aa44042ff8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{991aac62-b100-47ce-8b75-253965244f69} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{a626cdbd-3d13-4f78-b819-440a28d7e8fc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{bbabdc90-f3d5-4801-863a-ee6ae529862d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{cf54be1c-9359-4395-8533-1657cf209cfe} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{d6ff3684-ad3b-48eb-bbb4-b9e6c5a355c1} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{de38c398-b328-4f4c-a3ad-1b5e4ed93477} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e342af55-b78a-4cd0-a2bb-da7f52d9d25e} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e342af55-b78a-4cd0-a2bb-da7f52d9d25f} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e79dfbc9-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e79dfbcb-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{eb9e5c1c-b1f9-4c2b-be8a-27d6446fdaf8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{f87d7fb5-9dc5-4c8c-b998-d8dfe02e2978} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{147a976f-eee1-4377-8ea7-4716e4cdd239} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a4730ebe-43a6-443e-9776-36915d323ad3} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{d518921a-4a03-425e-9873-b9a71756821e} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{07b18ea0-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{0d26bc71-a633-4e71-ad31-eadc3a1b6a3a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{29d67d3c-509a-4544-903f-c8c1b8236554} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{3e720450-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{7473d290-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{8ca01f0e-987c-49c3-b852-2f1ac4a7094c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{8e6f1830-9607-4440-8530-13be7c4b1d14} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{c8cecde3-1ae1-4c4a-ad82-6d5b00212144} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{e47caee0-deea-464a-9326-3f2801535a4d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{e79dfbc0-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{f42228fb-e84e-479e-b922-fbbd096e792c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
c:\program files\ad-remover\quarantine\PROGRA~1\WINDOW~4\MESSEN~1\msimg32.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\ad-remover\quarantine\PROGRA~1\WINDOW~4\MESSEN~1\riched20.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\ad-remover\quarantine\WINDOWS\system32\f3PSSavr.scr.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091211.DLL (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091229.DLL (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091192.DLL (Adware.FunWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091195.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091198.DLL (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091202.SCR (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091203.DLL (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091205.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091210.EXE (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091212.DLL (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091213.EXE (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091214.EXE (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091215.DLL (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091217.DLL (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091218.DLL (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091219.DLL (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091220.EXE (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091221.EXE (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091222.EXE (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091223.DLL (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091224.EXE (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091225.DLL (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091226.DLL (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091227.DLL (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091228.EXE (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091236.scr (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091237.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\system volume information\_restore{1eea41cb-dc57-43e2-9bdf-ffc1941aac0a}\RP168\A0091238.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
0
Utilisateur anonyme
 
Télécharge Superantispyware (SAS)

Choisis "enregistrer" et enregistre-le sur ton bureau.

Double-clique sur l'icône d'installation qui vient de se créer et suis les instructions.

Créé une icône sur le bureau.

Double-clique sur l'icône de SAS (une tête dans un cercle rouge barré) pour le lancer.

- Si l'outil te demande de mettre à jour le programme ("update the program definitions", clique sur yes.
- Sous Configuration and Preferences, clique sur le bouton "Preferences"
- Clique sur l'onglet "Scanning Control "
- Dans "Scanner Options ", assure toi que la case devant lles lignes suivantes est cochée :

Close browsers before scanning
Scan for tracking cookies
Terminate memory threats before quarantining
- Laisse les autres lignes décochées.

- Clique sur le bouton "Close" pour quitter l'écran du centre de contrôle.

- Dans la fenêtre principale, clique, dans "Scan for Harmful Software", sur "Scan your computer".

Dans la colonne de gauche, coche C:\Fixed Drive.

Dans la colonne de droite, sous "Complete scan", clique sur "Perform Complete Scan"

Clique sur "next" pour lancer le scan. Patiente pendant la durée du scan.

A la fin du scan, une fenêtre de résultats s'ouvre . Clique sur OK.

Assure toi que toutes les lignes de la fenêtre blanche sont cochées et clique sur "Next".

Tout ce qui a été trouvé sera mis en quarantaine. S'il t'es demandé de redémarrer l'ordi ("reboot"), clique sur Yes.

Pour recopier les informations sur le forum, fais ceci :

- après le redémarrage de l'ordi, double-clique sur l'icône pour lancer SAS.
- Clique sur "Preferences" puis sur l'onglet "Statistics/Logs ".
- Dans "scanners logs", double-clique sur SUPERAntiSpyware Scan Log.

- Le rapport va s'ouvrir dans ton éditeur de texte par défaut.

- Copie son contenu dans ta réponse.

Regarde bien le tuto SUPERAntiSpyware il est très bien expliqué.
0
cedric18om Messages postés 241 Statut Membre 4
 
Bon déjà,je te remercie car Malwaresbytes me permet de nouveau de visionner des vidéos :)

Bon sinon voilà ce qui ne va pas encore:

-quand je redémarre,les cookies sont effacées d'internet explorer
-je ne peux pas mettre de vidéos en grand écran sinon l'image s'arrête alors que le son continue, au bout de 10 secondes
-au redémarrage,il m'arrive que s'inscrive le message suivant sur fond noir "disk boot failure,insert system disk and press enter" ou sinon une vérification du disque se déclenche automatiquement.

Bon dimanche à toi gene hackman !

SUPERAntiSpyware Scan Log
https://www.superantispyware.com/

Generated 06/06/2009 at 10:31 PM

Application Version : 4.26.1004

Core Rules Database Version : 3925
Trace Rules Database Version: 1869

Scan type : Complete Scan
Total Scan Time : 02:17:29

Memory items scanned : 489
Memory threats detected : 0
Registry items scanned : 4415
Registry threats detected : 0
File items scanned : 61255
File threats detected : 34

Adware.Tracking Cookie
C:\Documents and Settings\perso\Cookies\perso@advertiser.edintorni[1].txt
C:\Documents and Settings\perso\Cookies\perso@mediaplex[1].txt
C:\Documents and Settings\perso\Cookies\perso@ads.ad4game[3].txt
C:\Documents and Settings\perso\Cookies\perso@mediaplex[2].txt
C:\Documents and Settings\perso\Cookies\perso@bs.serving-sys[2].txt
C:\Documents and Settings\perso\Cookies\perso@serving-sys[3].txt
C:\Documents and Settings\perso\Cookies\perso@atdmt[1].txt
C:\Documents and Settings\perso\Cookies\perso@ad.yieldmanager[2].txt
C:\Documents and Settings\perso\Cookies\perso@ad.zanox[1].txt
C:\Documents and Settings\perso\Cookies\perso@fastclick[2].txt
C:\Documents and Settings\perso\Cookies\perso@ads.us.e-planning[1].txt
C:\Documents and Settings\perso\Cookies\perso@tribalfusion[1].txt
C:\Documents and Settings\perso\Cookies\perso@weborama[2].txt
C:\Documents and Settings\perso\Cookies\perso@advertstream[1].txt
C:\Documents and Settings\perso\Cookies\perso@lfstmedia[2].txt
C:\Documents and Settings\perso\Cookies\perso@apmebf[1].txt
C:\Documents and Settings\perso\Cookies\perso@socialmedia[1].txt
C:\Documents and Settings\perso\Cookies\perso@msnportal.112.2o7[1].txt
C:\Documents and Settings\perso\Cookies\perso@smartadserver[3].txt
C:\Documents and Settings\perso\Cookies\perso@advertising[2].txt
C:\Documents and Settings\perso\Cookies\perso@xiti[1].txt
C:\Documents and Settings\perso\Cookies\perso@samsung.solution.weborama[2].txt
C:\Documents and Settings\perso\Cookies\perso@media6degrees[2].txt
C:\Documents and Settings\perso\Cookies\perso@tradedoubler[1].txt
C:\Documents and Settings\perso\Cookies\perso@stats.searchtrack[1].txt
C:\Documents and Settings\perso\Cookies\perso@aimfar.solution.weborama[1].txt
C:\Documents and Settings\perso\Cookies\perso@largus.solution.weborama[2].txt
C:\Documents and Settings\perso\Cookies\perso@bluestreak[1].txt
C:\Documents and Settings\perso\Cookies\perso@fastclick[1].txt
C:\Documents and Settings\perso\Cookies\perso@doubleclick[2].txt
C:\Documents and Settings\perso\Cookies\perso@ads.ad4game[2].txt
C:\Documents and Settings\perso\Cookies\perso@serving-sys[1].txt
C:\Documents and Settings\perso\Cookies\perso@smartadserver[2].txt
C:\Program Files\Ad-remover\QUARANTINE\DOCUME~1\perso\Cookies\perso@mywebsearch[1].txt.vir
0
Utilisateur anonyme
 
-quand je redémarre,les cookies sont effacées d'internet explorer

et bien heureusement !!!

je ne peux pas mettre de vidéos en grand écran sinon l'image s'arrête alors que le son continue, au bout de 10 secondes

il est vieux ton pc ?

peut etre un probleme de congif :)
0
cedric18om Messages postés 241 Statut Membre 4
 
Mon Pc a 3 ans mais ce problème est apparu il y a 2 mois maintenant,avant tout allait bien !

Tu as 1 idée de ce que je pourrais faire pour y remédier ?

Bonne soirée à toi gene hackman
0
Utilisateur anonyme
 
relance AD-Remover puis option desinstaller ensuite supprime 'c:\rsit' puis relance-le de ton bureau et essaie de me fournir les deux rapports
0
Précédent
  • 1
  • 2