Page internet qui q'ouvre toute seule

Résolu/Fermé
emgula Messages postés 60 Date d'inscription samedi 3 octobre 2009 Statut Membre Dernière intervention 21 juin 2010 - 3 oct. 2009 à 00:31
emgula Messages postés 60 Date d'inscription samedi 3 octobre 2009 Statut Membre Dernière intervention 21 juin 2010 - 6 oct. 2009 à 23:26
Bonjour,

j'ai depuis quelques jours des pages de pubs qui s'ouvrent toutes seules dès que je vais sur internet (en passant par firefox ou par internet explorer). je suis avec vista. j'ai fait quelques recherches sur différents forums et le 1er conseil que j'ai vu a chaque fois etait de telecharger hijack et de faire un scan, puis copier et coller le contenu, ce que j'ai fait. voila donc le rapport fait par hijack, si quelqu'un peut m'aider, je n'y connait pas grand chose..... Merci d'avance!

Logfile of HijackThis v1.99.1
Scan saved at 00:23:56, on 03/10/2009
Platform: Unknown Windows (WinNT 6.00.1905 SP1)
MSIE: Internet Explorer v7.00 (7.00.6001.18294)

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Spyware Doctor\pctsTray.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\hp\support\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Portrait Displays\HP My Display\dthtml.exe
C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
C:\Program Files\Pack Securite\Common\FSM32.EXE
C:\Program Files\Search Settings\SearchSettings.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Neuf\Media Center\MediaCenter.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Users\laetitia\AppData\Local\rmqdwceh.exe
C:\Windows\System32\mobsync.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\conime.exe
C:\Program Files\Common Files\Portrait Displays\Shared\HookManager.exe
C:\Program Files\Neuf\Media Center\httpd\httpd.exe
C:\Program Files\Pack Securite\FSGUI\fsguidll.exe
C:\Program Files\Neuf\Media Center\httpd\httpd.exe
C:\Program Files\Pack Securite\FSGUI\scanwizard.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\users\laetitia\downloads\hijackthis\scanner.exe.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.lo.st
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr?cobrand=compaq-desktop.msn.com&ocid=HPDHP&pc=CPDTDF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb126\SearchSettings.dll
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\PROGRA~1\EoRezo\EoAdv\EOREZO~1.DLL (file missing)
O2 - BHO: DealioBHO Class - {6A87B991-A31F-4130-AE72-6D0C294BF082} - C:\Program Files\Dealio\kb126\Dealio.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb126\SearchSettings.dll
O3 - Toolbar: Dealio - {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - C:\Program Files\Dealio\kb126\Dealio.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [DT HPW] C:\Program Files\Portrait Displays\HP My Display\DTHtml.exe -startup_folder
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Pack Securite\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Pack Securite\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [au] C:\Program Files\Dealio\DealioAU.exe
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [ISTray] "C:\Program Files\Spyware Doctor\pctsTray.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [funkyemoticons] C:\Program Files\FunkyEmoticons\FunkyEmoticons.exe
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Neuf Media Center] "C:\Program Files\Neuf\Media Center\MediaCenter.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [rmqdwceh] "c:\users\laetitia\appdata\local\rmqdwceh.exe" rmqdwceh
O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: Compare Prices with &Dealio - C:\Users\laetitia\AppData\LocalLow\Dealio\kb126\res\DealioSearch.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Parental... - {200DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\Pack Securite\FSPC\fspcmsie.dll
O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\Pack Securite\FSPC\fspcmsie.dll
O9 - Extra 'Tools' menuitem: Parental... - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\Pack Securite\FSPC\fspcmsie.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Titan Poker - {49783ED4-258D-4f9f-BE11-137C18D3E543} - C:\Poker\Titan Poker\casino.exe
O9 - Extra 'Tools' menuitem: Titan Poker - {49783ED4-258D-4f9f-BE11-137C18D3E543} - C:\Poker\Titan Poker\casino.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb126\Dealio.dll
O9 - Extra 'Tools' menuitem: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb126\Dealio.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O11 - Options group: [INTERNATIONAL] International*
O13 - Gopher Prefix:
O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx2.hotmail.com/mail/w4/pr01/photouploadcontrol/VistaMSNPUpldfr-fr.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O20 - Winlogon Notify: igfxcui - C:\Windows\SYSTEM32\igfxdev.dll
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Unknown owner - C:\Program Files\Common Files\Portrait Displays\Shared\DTSRVC.exe
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\Pack Securite\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\Pack Securite\FSAUA\program\fsaua.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Pack Securite\FWES\Program\fsdfwd.exe
O23 - Service: FSMA - F-Secure Corporation - C:\Program Files\Pack Securite\Common\FSMA32.EXE
O23 - Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation - C:\Program Files\Pack Securite\ORSP Client\fsorsp.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: LiveUpdate Notice Service - Unknown owner - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PifEng.dll (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: RoxMediaDB9 - Sonic Solutions - c:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing)

76 réponses

emgula Messages postés 60 Date d'inscription samedi 3 octobre 2009 Statut Membre Dernière intervention 21 juin 2010
4 oct. 2009 à 22:31
voila le rapport de Malwarebytes' Anti-Malware

Malwarebytes' Anti-Malware 1.41
Version de la base de données: 2906
Windows 6.0.6001 Service Pack 1

04/10/2009 22:27:20
mbam-log-2009-10-04 (22-27-20).txt

Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 286148
Temps écoulé: 1 hour(s), 43 minute(s), 18 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 2
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 32
Fichier(s) infecté(s): 490

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3aa42713-5c1e-48e2-b432-d8bf420dd31d} (Rogue.AntiVirus2008) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\2m words collection (Adware.WebHancer) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
C:\Program Files\2M Games (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\help (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\bin (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\bin\client (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\applet (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\audio (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\cmm (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\ext (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\fonts (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\i386 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\images (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\images\cursors (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\security (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Indiana (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Kentucky (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\North_Dakota (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Antarctica (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Atlantic (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Australia (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Indian (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Pacific (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\music (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\skins (Adware.WebHancer) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
C:\Program Files\Navilog1\gnc.exe (Trojan.Dropper) -> Quarantined and deleted successfully.
C:\Users\laetitia\AppData\Local\gnc.exe (Trojan.Dropper) -> Quarantined and deleted successfully.
C:\Users\laetitia\Downloads\FunkyEmoticons_setup.exe (Adware.NaviPromo) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\LicenseFR.txt (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\ReadmeFR.txt (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\uninstall.exe (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\uninstall.ini (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\words.jar (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\help\buttonEasy.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\help\buttonExit.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\help\buttonFullscreen.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\help\buttonHard.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\help\buttonHelp.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\help\buttonMusic.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\help\buttonPause.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\help\buttonPlay.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\help\buttonReplay.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\help\buttonSounds.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\help\buttonStats.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\help\cd.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\help\cdWords.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\help\dotIcon.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\help\help.htm (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\help\register.htm (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\bin\awt.dll (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\bin\fontmanager.dll (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\bin\game.ico (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\bin\hpi.dll (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\bin\java.dll (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\bin\javaw.exe (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\bin\jpeg.dll (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\bin\jsound.dll (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\bin\msvcrt.dll (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\bin\verify.dll (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\bin\zip.dll (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\bin\client\jvm.dll (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\bin\client\Xusage.txt (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\content-types.properties (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\flavormap.properties (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\font.properties (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\font.properties.CP1250 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\font.properties.CP1251 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\font.properties.CP1253 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\font.properties.CP1254 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\font.properties.CP1256 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\font.properties.CP1257 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\font.properties.GB18030 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\font.properties.hi (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\font.properties.iw (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\font.properties.ja (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\font.properties.ko (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\font.properties.ru (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\font.properties.th (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\font.properties.zh (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\font.properties.zh.NT (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\font.properties.zh_TW (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\font.properties.zh_TW.95 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\jawt.lib (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\jvm.hprof.txt (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\jvm.jcov.txt (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\logging.properties (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\psfont.properties.ja (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\psfontj2d.properties (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\rt.jar (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\sunrsasign.jar (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\tzmappings (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\audio\soundbank.gm (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\cmm\CIEXYZ.pf (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\cmm\GRAY.pf (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\cmm\LINEAR_RGB.pf (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\cmm\sRGB.pf (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\fonts\LucidaSansRegular.ttf (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\i386\jvm.cfg (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\images\cursors\cursors.properties (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\images\cursors\invalid32x32.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\images\cursors\win32_CopyDrop32x32.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\images\cursors\win32_CopyNoDrop32x32.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\images\cursors\win32_LinkDrop32x32.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\images\cursors\win32_LinkNoDrop32x32.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\images\cursors\win32_MoveDrop32x32.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\images\cursors\win32_MoveNoDrop32x32.gif (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\security\cacerts (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\security\java.policy (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\security\java.security (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\security\local_policy.jar (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\security\US_export_policy.jar (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\CET (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\EET (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\GMT (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\MET (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\WET (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\ZoneInfoMappings (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Abidjan (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Accra (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Addis_Ababa (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Algiers (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Asmera (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Bamako (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Bangui (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Banjul (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Bissau (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Blantyre (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Brazzaville (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Bujumbura (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Cairo (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Casablanca (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Ceuta (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Conakry (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Dakar (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Dar_es_Salaam (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Djibouti (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Douala (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\El_Aaiun (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Freetown (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Gaborone (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Harare (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Johannesburg (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Kampala (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Khartoum (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Kigali (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Kinshasa (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Lagos (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Libreville (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Lome (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Luanda (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Lubumbashi (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Lusaka (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Malabo (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Maputo (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Maseru (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Mbabane (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Mogadishu (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Monrovia (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Nairobi (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Ndjamena (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Niamey (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Nouakchott (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Ouagadougou (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Porto-Novo (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Sao_Tome (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Timbuktu (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Tripoli (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Tunis (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Africa\Windhoek (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Adak (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Anchorage (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Anguilla (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Antigua (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Araguaina (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Aruba (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Asuncion (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Barbados (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Belem (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Belize (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Boa_Vista (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Bogota (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Boise (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Buenos_Aires (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Cambridge_Bay (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Cancun (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Caracas (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Catamarca (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Cayenne (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Cayman (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Chicago (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Chihuahua (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Cordoba (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Costa_Rica (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Cuiaba (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Curacao (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Danmarkshavn (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Dawson (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Dawson_Creek (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Denver (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Detroit (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Dominica (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Edmonton (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Eirunepe (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\El_Salvador (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Fortaleza (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Glace_Bay (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Godthab (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Goose_Bay (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Grand_Turk (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Grenada (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Guadeloupe (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Guatemala (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Guayaquil (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Guyana (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Halifax (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Havana (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Hermosillo (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Indianapolis (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Inuvik (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Iqaluit (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Jamaica (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Jujuy (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Juneau (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\La_Paz (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Lima (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Los_Angeles (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Louisville (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Maceio (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Managua (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Manaus (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Martinique (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Mazatlan (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Mendoza (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Menominee (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Merida (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Mexico_City (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Miquelon (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Monterrey (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Montevideo (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Montreal (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Montserrat (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Nassau (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\New_York (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Nipigon (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Nome (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Noronha (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Panama (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Pangnirtung (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Paramaribo (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Phoenix (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Port-au-Prince (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Porto_Velho (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Port_of_Spain (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Puerto_Rico (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Rainy_River (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Rankin_Inlet (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Recife (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Regina (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Rio_Branco (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Rosario (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Santiago (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Santo_Domingo (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Sao_Paulo (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Scoresbysund (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\St_Johns (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\St_Kitts (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\St_Lucia (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\St_Thomas (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\St_Vincent (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Swift_Current (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Tegucigalpa (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Thule (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Thunder_Bay (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Tijuana (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Tortola (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Vancouver (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Whitehorse (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Winnipeg (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Yakutat (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Yellowknife (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Indiana\Knox (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Indiana\Marengo (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Indiana\Vevay (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\Kentucky\Monticello (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\America\North_Dakota\Center (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Antarctica\Casey (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Antarctica\Davis (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Antarctica\DumontDUrville (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Antarctica\Mawson (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Antarctica\McMurdo (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Antarctica\Palmer (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Antarctica\Syowa (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Antarctica\Vostok (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Aden (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Almaty (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Amman (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Anadyr (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Aqtau (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Aqtobe (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Ashgabat (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Baghdad (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Bahrain (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Baku (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Bangkok (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Beirut (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Bishkek (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Brunei (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Calcutta (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Choibalsan (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Chongqing (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Colombo (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Damascus (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Dhaka (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Dili (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Dubai (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Dushanbe (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Gaza (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Harbin (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Hong_Kong (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Hovd (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Irkutsk (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Jakarta (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Jayapura (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Jerusalem (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Kabul (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Kamchatka (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Karachi (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Kashgar (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Katmandu (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Krasnoyarsk (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Kuala_Lumpur (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Kuching (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Kuwait (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Macao (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Magadan (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Manila (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Muscat (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Nicosia (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Novosibirsk (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Omsk (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Phnom_Penh (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Pontianak (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Pyongyang (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Qatar (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Rangoon (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Riyadh (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Riyadh87 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Riyadh88 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Riyadh89 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Saigon (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Sakhalin (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Samarkand (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Seoul (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Shanghai (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Singapore (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Taipei (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Tashkent (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Tbilisi (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Tehran (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Thimphu (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Tokyo (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Ujung_Pandang (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Ulaanbaatar (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Urumqi (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Vientiane (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Vladivostok (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Yakutsk (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Yekaterinburg (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Asia\Yerevan (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Atlantic\Azores (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Atlantic\Bermuda (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Atlantic\Canary (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Atlantic\Cape_Verde (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Atlantic\Faeroe (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Atlantic\Madeira (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Atlantic\Reykjavik (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Atlantic\South_Georgia (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Atlantic\Stanley (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Atlantic\St_Helena (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Australia\Adelaide (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Australia\Brisbane (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Australia\Broken_Hill (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Australia\Darwin (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Australia\Hobart (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Australia\Lindeman (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Australia\Lord_Howe (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Australia\Melbourne (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Australia\Perth (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Australia\Sydney (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT+1 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT+10 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT+11 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT+12 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT+2 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT+3 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT+4 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT+5 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT+6 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT+7 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT+8 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT+9 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT-1 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT-10 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT-11 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT-12 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT-13 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT-14 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT-2 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT-3 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT-4 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT-5 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT-6 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT-7 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT-8 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\GMT-9 (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\UCT (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Etc\UTC (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Amsterdam (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Andorra (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Athens (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Belfast (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Belgrade (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Berlin (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Brussels (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Bucharest (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Budapest (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Chisinau (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Copenhagen (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Dublin (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Gibraltar (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Helsinki (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Istanbul (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Kaliningrad (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Kiev (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Lisbon (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\London (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Luxembourg (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Madrid (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Malta (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Minsk (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Monaco (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Moscow (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Oslo (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Paris (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Prague (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Riga (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Rome (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Samara (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Simferopol (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Sofia (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Stockholm (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Tallinn (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Tirane (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Uzhgorod (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Vaduz (Adware.WebHancer) -> Quarantined and deleted successfully.
C:\Program Files\2M Games\Words Collection\jre\lib\zi\Europe\Vienn
0
emgula Messages postés 60 Date d'inscription samedi 3 octobre 2009 Statut Membre Dernière intervention 21 juin 2010
4 oct. 2009 à 22:32
J'ai supprimé le fichier C:/Poker qui était bien vide.
0
crapoulou Messages postés 28160 Date d'inscription mercredi 28 novembre 2007 Statut Modérateur, Contributeur sécurité Dernière intervention 21 mai 2024 7 998
4 oct. 2009 à 22:42
Soit vigilent avec les jeux, c'est souvent infecté (Poker, Titan poker, 2M Games, ...)

******

Vide la quarantaine de Malwarebytes Anti Malware.
Comment va le PC ?
0
emgula Messages postés 60 Date d'inscription samedi 3 octobre 2009 Statut Membre Dernière intervention 21 juin 2010
4 oct. 2009 à 22:47
Alors, je suis allée sur quarantaine et j'ai fait tout supprimer, je pense que c'est bon!
Le PC va bien, je n'ai plus de pages de pubs qui s'ouvrent toutes seules, et il est plus rapide qu'avant pour afficher les pages!! J'ai presque envie de dire qu'il est comme neuf........
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
crapoulou Messages postés 28160 Date d'inscription mercredi 28 novembre 2007 Statut Modérateur, Contributeur sécurité Dernière intervention 21 mai 2024 7 998
4 oct. 2009 à 22:51
Alors, c'est parfait, on passe à la fin de désinfection.
Qui n'est pas à négliger pour autant : pas de relâche ! lol

********

Poste moi un nouveau rapport Hijackthis stp.
0
emgula Messages postés 60 Date d'inscription samedi 3 octobre 2009 Statut Membre Dernière intervention 21 juin 2010
4 oct. 2009 à 22:59
voila le nouveau rapport Hijackthis:

Logfile of HijackThis v1.99.1
Scan saved at 22:57:16, on 04/10/2009
Platform: Unknown Windows (WinNT 6.00.1905 SP1)
MSIE: Internet Explorer v7.00 (7.00.6001.18294)

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\hp\support\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Portrait Displays\HP My Display\dthtml.exe
C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
C:\Program Files\Pack Securite\Common\FSM32.EXE
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Neuf\Media Center\MediaCenter.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Common Files\Portrait Displays\Shared\HookManager.exe
C:\Program Files\Pack Securite\FSGUI\fsguidll.exe
C:\Program Files\Neuf\Media Center\httpd\httpd.exe
C:\Program Files\Neuf\Media Center\httpd\httpd.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Pack Securite\FSGUI\scanwizard.exe
C:\Windows\System32\rundll32.exe
C:\Windows\explorer.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Windows\system32\conime.exe
C:\Users\laetitia\Downloads\hijackthis\scanner.exe.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [DT HPW] C:\Program Files\Portrait Displays\HP My Display\DTHtml.exe -startup_folder
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Pack Securite\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Pack Securite\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Neuf Media Center] "C:\Program Files\Neuf\Media Center\MediaCenter.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Parental... - {200DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\Pack Securite\FSPC\fspcmsie.dll
O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\Pack Securite\FSPC\fspcmsie.dll
O9 - Extra 'Tools' menuitem: Parental... - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\Pack Securite\FSPC\fspcmsie.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU)
O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\pack securite\fsps\program\fslsp.dll
O11 - Options group: [INTERNATIONAL] International*
O13 - Gopher Prefix:
O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx2.hotmail.com/mail/w4/pr01/photouploadcontrol/VistaMSNPUpldfr-fr.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O20 - Winlogon Notify: igfxcui - C:\Windows\SYSTEM32\igfxdev.dll
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Unknown owner - C:\Program Files\Common Files\Portrait Displays\Shared\DTSRVC.exe
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\Pack Securite\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\Pack Securite\FSAUA\program\fsaua.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Pack Securite\FWES\Program\fsdfwd.exe
O23 - Service: FSMA - F-Secure Corporation - C:\Program Files\Pack Securite\Common\FSMA32.EXE
O23 - Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation - C:\Program Files\Pack Securite\ORSP Client\fsorsp.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: LiveUpdate Notice Service - Unknown owner - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PifEng.dll (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: RoxMediaDB9 - Sonic Solutions - c:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing)
0
crapoulou Messages postés 28160 Date d'inscription mercredi 28 novembre 2007 Statut Modérateur, Contributeur sécurité Dernière intervention 21 mai 2024 7 998
4 oct. 2009 à 23:12
Recommence avec cet Hijackthis là :
C:\Program Files\trend micro\laetitia.exe
0
emgula Messages postés 60 Date d'inscription samedi 3 octobre 2009 Statut Membre Dernière intervention 21 juin 2010
4 oct. 2009 à 23:17
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:16:42, on 04/10/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18294)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\hp\support\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Portrait Displays\HP My Display\dthtml.exe
C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
C:\Program Files\Pack Securite\Common\FSM32.EXE
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Neuf\Media Center\MediaCenter.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Common Files\Portrait Displays\Shared\HookManager.exe
C:\Program Files\Pack Securite\FSGUI\fsguidll.exe
C:\Program Files\Neuf\Media Center\httpd\httpd.exe
C:\Program Files\Neuf\Media Center\httpd\httpd.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Pack Securite\FSGUI\scanwizard.exe
C:\Windows\System32\rundll32.exe
C:\Windows\explorer.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Windows\system32\conime.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\laetitia.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [DT HPW] C:\Program Files\Portrait Displays\HP My Display\DTHtml.exe -startup_folder
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Pack Securite\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Pack Securite\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Neuf Media Center] "C:\Program Files\Neuf\Media Center\MediaCenter.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Parental... - {200DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\Pack Securite\FSPC\fspcmsie.dll
O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\Pack Securite\FSPC\fspcmsie.dll
O9 - Extra 'Tools' menuitem: Parental... - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\Pack Securite\FSPC\fspcmsie.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU)
O13 - Gopher Prefix:
O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx2.hotmail.com/mail/w4/pr01/photouploadcontrol/VistaMSNPUpldfr-fr.cab
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Unknown owner - C:\Program Files\Common Files\Portrait Displays\Shared\DTSRVC.exe
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\Pack Securite\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\Pack Securite\FSAUA\program\fsaua.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Pack Securite\FWES\Program\fsdfwd.exe
O23 - Service: FSMA - F-Secure Corporation - C:\Program Files\Pack Securite\Common\FSMA32.EXE
O23 - Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation - C:\Program Files\Pack Securite\ORSP Client\fsorsp.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - c:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
0
crapoulou Messages postés 28160 Date d'inscription mercredi 28 novembre 2007 Statut Modérateur, Contributeur sécurité Dernière intervention 21 mai 2024 7 998
4 oct. 2009 à 23:23
Mets à jour Adobe Acrobat Reader en téléchargeant la version 9.1.3 = = = =>>> En cliquant ici <<<= = = =. Il faut le faire car c’est une faille de sécurité de ne pas le tenir à jour.

*********

Relance Hijackthis par clic droit, ‘Exécuter en tant qu’administrateur’.
C:\Program Files\trend micro\laetitia.exe
Clic sur "Do a system scan only".
Coche ces lignes :
R3 - Default URLSearchHook is missing
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\\Reader9.0\Reader\Reader_sl.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\\MessengerMsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU)

Clique ensuite sur "Fix checked".
Ferme Hijackthis.

********

Pour supprimer toutes les traces des logiciels qui ont servi à traiter les infections spécifiques :

Télécharge toolscleaner sur ton Bureau
= = = =>>> En cliquant ici <<<= = = =

* Clique droit sur ToolsCleaner2.exe, sélectionne «Exécuter en tant qu’administrateur« et laisse le travailler sans rien toucher !
* Clique sur Recherche et laisse le scan se terminer.
* Clique sur Suppression pour finaliser.
* Tu peux, si tu le souhaites, te servir des Options facultatives.
* Clique sur Quitter, pour que le rapport puisse se créer.
* Le rapport (TCleaner.txt) se trouve à la racine de votre disque dur (C:\)...colle le dans ta réponse.

*********

Tu peux garder Malwarebytes anti malware en tant qu’anti malware, il est très efficace. (Même s’il ne résout pas tous les problèmes, bien entendu … !)
Par contre, il n’a pas de scan résident en mode gratuit ! Il faut donc pour l’utiliser le lancer, faire les mises à jour et faire un scan complet après.

*********

Suis cette procédure pour supprimer toutes les traces de Norton :
= = = =>>> En cliquant ici <<<= = = =
Tu ne fais bien entendu pas l'étape 3 de la réinstallation.

*********

Mets à jour Vista en installant le SP2 :
http://www.microsoft.com/Downloads/details.aspx?familyid=A4DD31D5-F907-4406-9012-A5C3199EA2B3&displaylang=fr

********

* Télécharge Ccleaner Slim :
= = = = >>> En cliquant ici <<< = = = =

* Installe le.
* Choisis l’onglet Nettoyeur

Quitte ton navigateur Internet avant de le lancer, décoche la dernière case (Avancé si elle est cochée) puis clique sur "lancer le nettoyage" quand il aura terminé le scan cliques en bas à droite sur "lancer le nettoyage" et accepte par oui.
Attention, il risque de vider ta corbeille : si tu veux récupérer des fichiers effacés par erreur, mieux vaut le faire maintenant.

* Choisis l’onglet Registre

- Clique sur Chercher des erreurs
- Une fois la recherche terminée, clic sur Réparer les erreurs sélectionnées (par défaut, tout est sélectionné, laisse comme ça)
- Au message Voulez-vous sauvegarder les changements faits dans le registre, réponds Oui et enregistre le fichier au format ".reg" en le nommant par la date par exemple en le mettant sur le bureau. Puis continue.
- A la fenêtre qui s’ouvre ensuite, clique sur Corriger toutes les erreurs sélectionnées puis OK
- Recommence jusqu’à ce qu’aucune erreur n’apparaisse (ou une seule récurrente).
- Ferme Ccleaner.

* Tutoriel en images ICI si besoin.

Note : La sauvegarde utilisée permet de remettre tel que la base était avant la manipulation au cas où il y aurait des soucis mais cela ne m’est jamais arrivé ! Il vaut mieux prendre des précautions, c’est tout. ;-)
0
emgula Messages postés 60 Date d'inscription samedi 3 octobre 2009 Statut Membre Dernière intervention 21 juin 2010
4 oct. 2009 à 23:58
J'ai mis à jour Adobe Reader et j'ai fait ce que tu m'as dit sur Hijackthis.
Voila le rapport de ToolsCleaner:

[ Rapport ToolsCleaner version 2.3.11 (par A.Rothstein & dj QUIOU) ]

--> Recherche:

C:\cleannavi.txt: trouvé !
C:\TB.txt: trouvé !
C:\Toolbar SD: trouvé !
C:\Rsit: trouvé !
C:\Program Files\Navilog1: trouvé !
C:\Program Files\Ad-remover: trouvé !
C:\Program Files\Ad-Remover\BACKUP\Ad-R.exe: trouvé !
C:\Program Files\Navilog1\Navilog1.bat: trouvé !
C:\Program Files\Navilog1\catchme.exe: trouvé !
C:\Program Files\trend micro\HijackThis.exe: trouvé !
C:\Program Files\trend micro\hijackthis.log: trouvé !
C:\Users\laetitia\Desktop\Ad-R.exe: trouvé !
C:\Users\laetitia\Desktop\ToolBarSD.exe: trouvé !
C:\Users\laetitia\Downloads\Rsit.exe: trouvé !
C:\Users\laetitia\Downloads\HijackThis: trouvé !
C:\Users\laetitia\Downloads\hijackthis\hijackthis.log: trouvé !

---------------------------------
--> Suppression:

C:\Program Files\Ad-Remover\BACKUP\Ad-R.exe: supprimé !
C:\Program Files\Navilog1\Navilog1.bat: supprimé !
C:\Program Files\Navilog1\catchme.exe: supprimé !
C:\Program Files\trend micro\HijackThis.exe: supprimé !
C:\Users\laetitia\Desktop\Ad-R.exe: supprimé !
C:\Users\laetitia\Desktop\ToolBarSD.exe: supprimé !
C:\cleannavi.txt: supprimé !
C:\TB.txt: supprimé !
C:\Program Files\trend micro\hijackthis.log: supprimé !
C:\Users\laetitia\Downloads\Rsit.exe: supprimé !
C:\Users\laetitia\Downloads\hijackthis\hijackthis.log: supprimé !
C:\Toolbar SD: supprimé !
C:\Rsit: supprimé !
C:\Program Files\Navilog1: supprimé !
C:\Program Files\Ad-remover: ERREUR DE SUPPRESSION !!
C:\Users\laetitia\Downloads\HijackThis: supprimé !


J'enchaine avec la suite du programme, lol!
0
crapoulou Messages postés 28160 Date d'inscription mercredi 28 novembre 2007 Statut Modérateur, Contributeur sécurité Dernière intervention 21 mai 2024 7 998
5 oct. 2009 à 00:00
Ok, enchaine.
Tu vérifieras que c'est bien absent :
C:\Program Files\Ad-remover

Et supprimera Toolscleaner et son raport : C:\TCleaner.txt.
0
emgula Messages postés 60 Date d'inscription samedi 3 octobre 2009 Statut Membre Dernière intervention 21 juin 2010
5 oct. 2009 à 00:24
j'ai fait ce qu'il fallait pour norton, j'ai redemarré le pc et windows m'a bloqué des programmes de démarrage, c'est normal?
j'ai encore Ad-Remover dans C:/programmes mais le dossier est vide. Je suppose que je peux le supprimer...
j'ai supprimé ToolsCleaner et son rapport.
Je lance la mise a jour de vista.
0
crapoulou Messages postés 28160 Date d'inscription mercredi 28 novembre 2007 Statut Modérateur, Contributeur sécurité Dernière intervention 21 mai 2024 7 998
5 oct. 2009 à 00:25
Oui, tu peux le supprimer Ad Remover.
bloqué des programmes de démarrage

C'est-à-dire ?
0
emgula Messages postés 60 Date d'inscription samedi 3 octobre 2009 Statut Membre Dernière intervention 21 juin 2010
5 oct. 2009 à 00:41
j'ai une icone dans la barre en bas a droite de mon ecran qui me dit que windows a bloqué des programmes au démarrage j'ai regardé et le seul programme bloque est Malwarebytes' Anti-Malwares. En faisant clic droit, je peux executer le programme bloqué.
0
crapoulou Messages postés 28160 Date d'inscription mercredi 28 novembre 2007 Statut Modérateur, Contributeur sécurité Dernière intervention 21 mai 2024 7 998
5 oct. 2009 à 00:46
J'ai du mal à voir de quoi il s'agit :S
Tu peux ignorer ce message, faire en sorte s'il ne s'affiche plus ?
Sinon, fais moi une capture d'écran.
0
emgula Messages postés 60 Date d'inscription samedi 3 octobre 2009 Statut Membre Dernière intervention 21 juin 2010
5 oct. 2009 à 08:36
Désolée, la mis à jour de Vista été très longue hier soir, et je l'ai laissé finir tout seul....
Je te recopie le message qui apparait au démarrage du PC:
"Windows bloque les programmes nécessitants une autorisation pour s'exécuter lors du démarrage de Windows Cliquez ici pour voir les programmes bloqués."
Le message était affiché ce matin, puisque le PC a redémarré après la mise à jour de vista.
J'espère que c'est plus clair comme ca pour toi, en tous cas si tu veux une capture d'écran, va falloir que tu m'expliques comment faire, une fois de plus, lol!!
0
emgula Messages postés 60 Date d'inscription samedi 3 octobre 2009 Statut Membre Dernière intervention 21 juin 2010
5 oct. 2009 à 09:32
j'ai fini de faire le nettoyage avec CCleaner, plus aucune erreur pour lui.
y a t-il autre chose a faire? Merci
0
emgula Messages postés 60 Date d'inscription samedi 3 octobre 2009 Statut Membre Dernière intervention 21 juin 2010
5 oct. 2009 à 10:46
Je peux supprimer SystemLook et Norton_Removal_Tool??
Depuis la mise à jour de AdobeFlash en passant par la page d'accueil de Firefox, j'ai une icone MaAfee Security Scan qui s'est affichée sur mon bureau. C'est normal?
0
crapoulou Messages postés 28160 Date d'inscription mercredi 28 novembre 2007 Statut Modérateur, Contributeur sécurité Dernière intervention 21 mai 2024 7 998
5 oct. 2009 à 20:51
Je peux supprimer SystemLook et Norton_Removal_Tool?? 

Oui.

J'espère que c'est plus clair comme ca pour toi, en tous cas si tu veux une capture d'écran, va falloir que tu m'expliques comment faire, une fois de plus, lol!!

Je veux bien oui.
Comme ça : https://www.commentcamarche.net/informatique/windows/149-faire-des-captures-d-ecran-avec-windows-10/
0
emgula Messages postés 60 Date d'inscription samedi 3 octobre 2009 Statut Membre Dernière intervention 21 juin 2010
5 oct. 2009 à 22:28
j'ai tenté une capture d'écran, j'espere que ca a marche!!
Voila le lien que j'ai obtenu:https://www.cjoint.com/?kfwADsUR0T
0