Avec quoi je doit completer mon antivirus - Page 2

Précédent
  • 1
  • 2
  1. mad941
     
    .
    ======= RAPPORT D'AD-REMOVER 1.1.4.5_Y | UNIQUEMENT XP/VISTA/7 =======
    .
    Mit à jour par C_XX le 08.10.2009 à 21:21
    Contact: AdRemover.contact@gmail.com
    Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
    .
    Lancé à: 16:37:42, 09/10/2009 | Mode Normal | Option: CLEAN
    Exécuté de: C:\Program Files\Ad-Remover\
    Système d'exploitation: Microsoft® Windows Vista™ Home Premium Service Pack 2 v6.0.6002
    Nom du PC: PC-DE-ADMIN | Utilisateur actuel: Admin
    .
    ============== ÉLÉMENT(S) NEUTRALISÉ(S) ==============
    .

    HKCU\Software\Casino Tropez
    HKCU\Software\EoRezo
    HKLM\Software\Casino Tropez
    HKLM\Software\EoRezo
    HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdate_is1
    HKU\S-1-5-21-1507384560-1180499249-3326356245-1000\Software\Eorezo
    HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\EoEngine
    HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SoftwareHelper
    .
    C:\Users\Admin\AppData\Roaming\EoRezo
    C:\Windows\Prefetch\ITSTV.EXE-41008EFC.pf
    C:\Windows\Prefetch\ITSTV.EXE-FA8EF767.pf
    C:\Windows\Prefetch\SOFTWAREUPDATEHP.EXE-BDA1D071.pf
    C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Cookies\admin@ads.eorezo[2].txt
    C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Cookies\admin@eorezo[2].txt

    (!) -- Fichiers temporaires supprimés.

    .
    ============== Scan additionnel ==============
    .
    .
    * Mozilla FireFox Version [Impossible d'obtenir la version] *
    .
    Nom du profil: (Admin)
    .
    .
    .
    * Internet Explorer Version 8.0.6001.18813 *
    .
    [HKEY_CURRENT_USER\..\Internet Explorer\Main]
    .
    Start Page: hxxp://fr.msn.com/
    Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
    Search Page: hxxp://recherche.neuf.fr/
    Search Bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
    Default_search_url: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
    .
    [HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]
    .
    Start Page: hxxp://fr.msn.com/
    Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
    Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
    Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
    Search bar: hxxp://search.msn.com/spbasic.htm
    .
    [HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]
    .
    Tabs: res://ieframe.dll/tabswelcome.htm
    .
    ============== Suspect (Cracks, Serials ... ) ==============
    .
    C:\Users\Admin\AppData\Local\Temp\Temp1_[PC Game] Zuma deluxe FULL Game + Crack (GREAT solitaire game).zip
    C:\Users\Admin\AppData\Local\Temp\Temp1_[PC Game] Zuma deluxe FULL Game + Crack (GREAT solitaire game).zip\Zuma Deluxe Setup.exe
    C:\Users\Admin\AppData\Local\Temp\Temp1_[PC Game] Zuma deluxe FULL Game + Crack (GREAT solitaire game).zip\Zuma Deluxe! v1.0 (crack).exe
    C:\Users\Admin\AppData\Roaming\uTorrent\[PC Game] Zuma deluxe FULL Game + Crack (GREAT solitaire game).zip.torrent
    C:\Users\Admin\AppData\Roaming\uTorrent\Burger Shop-PreCracked-BigFish-Reflexive-HIVBABY.rar.torrent
    C:\Users\Admin\Desktop\JEUX\Burger Shop-PreCracked-BigFish-Reflexive-HIVBABY.rar
    C:\Users\Admin\Programmes\[PC Game] Zuma deluxe FULL Game + Crack (GREAT solitaire game)\[PC Game] Zuma deluxe FULL Game + Crack (GREAT solitaire game).zip
    C:\Users\Admin\Programmes\[PC Game] Zuma deluxe FULL Game + Crack (GREAT solitaire game)\Zuma Deluxe Setup.exe
    C:\Users\Admin\Programmes\[PC Game] Zuma deluxe FULL Game + Crack (GREAT solitaire game)\Zuma Deluxe! v1.0 (crack).exe
    .
    ===================================
    .
    3518 Octet(s) - C:\Ad-Report-CLEAN[1].log
    3713 Octet(s) - C:\Ad-Report-SCAN[1].log
    .
    453 Fichier(s) - C:\Users\Admin\AppData\Local\Temp
    16 Fichier(s) - C:\Windows\Temp
    .
    20 Fichier(s) - C:\Program Files\Ad-Remover\BACKUP
    23 Fichier(s) - C:\Program Files\Ad-Remover\QUARANTINE
    .
    Fin à: 16:47:52 | 09/10/2009 - CLEAN[1]
    .
    ============== E.O.F ==============
    .
    0
  2. mad941
     
    ############################## | UsbFix V6.039 |

    User : Admin (Administrateurs) # PC-DE-ADMIN
    Update on 09/10/2009 by Chiquitine29, C_XX & Chimay8
    Start at: 17:04:01 | 09/10/2009
    Website : http://pagesperso-orange.fr/NosTools/index.html

    Intel(R) Core(TM)2 Quad CPU Q6600 @ 2.40GHz
    Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6002 32-bit) # Service Pack 2
    Internet Explorer 8.0.6001.18813
    Windows Firewall Status : Disabled
    AV : avast! antivirus 4.8.1169 [VPS 090207-0] 4.8.1169 [ Enabled | Updated ]

    C:\ -> Disque fixe local # 322,93 Go (157,48 Go free) [HP] # NTFS
    D:\ -> Disque fixe local # 12,42 Go (1,71 Go free) [FACTORY_IMAGE] # NTFS
    E:\ -> Disque CD-ROM
    F:\ -> Disque amovible
    G:\ -> Disque amovible
    H:\ -> Disque amovible
    I:\ -> Disque amovible
    J:\ -> Disque amovible # 1,97 Go (1,45 Go free) [USB] # FAT32

    ############################## | Processus actifs |

    C:\Windows\System32\smss.exe
    C:\Windows\system32\csrss.exe
    C:\Windows\system32\wininit.exe
    C:\Windows\system32\csrss.exe
    C:\Windows\system32\services.exe
    C:\Windows\system32\lsass.exe
    C:\Windows\system32\lsm.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\nvvsvc.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\winlogon.exe
    C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\System32\svchost.exe
    C:\Windows\System32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\SLsvc.exe
    C:\Windows\system32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\Windows\System32\spoolsv.exe
    C:\Windows\system32\svchost.exe
    C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
    C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\System32\svchost.exe
    C:\Windows\system32\SearchIndexer.exe
    C:\Windows\system32\WUDFHost.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\system32\taskeng.exe
    C:\hp\support\hpsysdrv.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
    C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
    C:\Program Files\Alwil Software\Avast4\ashDisp.exe
    C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
    C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Program Files\Windows Media Player\wmpnetwk.exe
    C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
    C:\Windows\system32\wbem\wmiprvse.exe
    c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
    C:\Windows\explorer.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\Windows Live\Contacts\wlcomm.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Windows\system32\conime.exe
    C:\Windows\System32\mobsync.exe
    C:\Windows\system32\SearchProtocolHost.exe
    C:\Windows\system32\DllHost.exe
    C:\Windows\system32\SearchFilterHost.exe

    ################## | Fichiers # Dossiers infectieux |

    D:\desktop.ini

    ################## | Registre # Clés Run infectieuses |

    ################## | Registre # Mountpoints2 |

    HKCU\..\..\Explorer\MountPoints2\{a553f30b-2b36-11de-b9f6-a04a893b966d}
    shell\AutoRun\command =K:\LaunchU3.exe -a

    ################## | ! Fin du rapport # UsbFix V6.039 ! |
    0
  3. mad941
     
    Dans le 1er rapport mon disque dur externe n'y etait pas. J'avais pas fini de tout branchee a l'ordi.
    Et maintenant, qu'est ce que je fait???
    0
  4. mad941
     
    ############################## | UsbFix V6.039 |

    User : Admin (Administrateurs) # PC-DE-ADMIN
    Update on 09/10/2009 by Chiquitine29, C_XX & Chimay8
    Start at: 17:17:23 | 09/10/2009
    Website : http://pagesperso-orange.fr/NosTools/index.html

    Intel(R) Core(TM)2 Quad CPU Q6600 @ 2.40GHz
    Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6002 32-bit) # Service Pack 2
    Internet Explorer 8.0.6001.18813
    Windows Firewall Status : Disabled
    AV : avast! antivirus 4.8.1169 [VPS 090207-0] 4.8.1169 [ Enabled | Updated ]

    C:\ -> Disque fixe local # 322,93 Go (157,48 Go free) [HP] # NTFS
    D:\ -> Disque fixe local # 12,42 Go (1,71 Go free) [FACTORY_IMAGE] # NTFS
    E:\ -> Disque CD-ROM
    F:\ -> Disque amovible
    G:\ -> Disque amovible
    H:\ -> Disque amovible
    I:\ -> Disque amovible
    J:\ -> Disque amovible # 1,97 Go (1,45 Go free) [USB] # FAT32
    K:\ -> Disque fixe local # 465,65 Go (208,78 Go free) [LaCie] # FAT32

    ############################## | Processus actifs |

    C:\Windows\System32\smss.exe
    C:\Windows\system32\csrss.exe
    C:\Windows\system32\wininit.exe
    C:\Windows\system32\csrss.exe
    C:\Windows\system32\services.exe
    C:\Windows\system32\lsass.exe
    C:\Windows\system32\lsm.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\nvvsvc.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\winlogon.exe
    C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\System32\svchost.exe
    C:\Windows\System32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\SLsvc.exe
    C:\Windows\system32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\Windows\System32\spoolsv.exe
    C:\Windows\system32\svchost.exe
    C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
    C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\System32\svchost.exe
    C:\Windows\system32\SearchIndexer.exe
    C:\Windows\system32\WUDFHost.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\system32\taskeng.exe
    C:\hp\support\hpsysdrv.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
    C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
    C:\Program Files\Alwil Software\Avast4\ashDisp.exe
    C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
    C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Program Files\Windows Media Player\wmpnetwk.exe
    C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
    C:\Windows\system32\wbem\wmiprvse.exe
    c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
    C:\Windows\explorer.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\Windows Live\Contacts\wlcomm.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Windows\system32\conime.exe
    C:\Windows\system32\wbem\wmiprvse.exe
    C:\Windows\System32\mobsync.exe
    C:\Windows\system32\SearchProtocolHost.exe
    C:\Windows\system32\SearchFilterHost.exe
    C:\Windows\system32\DllHost.exe

    ################## | Fichiers # Dossiers infectieux |

    D:\desktop.ini

    ################## | Registre # Clés Run infectieuses |

    ################## | Registre # Mountpoints2 |

    HKCU\..\..\Explorer\MountPoints2\{a553f30b-2b36-11de-b9f6-a04a893b966d}
    shell\AutoRun\command =K:\LaunchU3.exe -a

    ################## | ! Fin du rapport # UsbFix V6.039 ! |
    0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. geoffrey5 Messages postés 14008 Statut Contributeur sécurité 10
     
    Ok maintenant fais ceci stp :

    ▶ tutoriel nettoyage

    Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) susceptible d avoir été infectés sans les ouvrir

    ▶ Double clic sur le raccourci UsbFix présent sur ton bureau

    ▶ choisi l'option 2 ( Suppression )

    ▶ Ton bureau disparaîtra et le pc redémarrera .

    ▶ Au redémarrage , UsbFix scannera ton pc , laisse travailler l'outil.

    ▶ Ensuite post le rapport UsbFix.txt qui apparaîtra avec le bureau .

    ▶ Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque.( C:\UsbFix.txt )

    ( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )

    ▶ /!\ UsbFix te proposera d'uploader un dossier compressé à cette adresse : https://www.androidworld.fr/

    ▶ Ce dossier a été créé par UsbFix et est enregistré sur ton bureau.

    ▶ Merci de l'envoyer à l'adresse indiquée afin d'aider l'auteur de UsbFix dans ses recherches.

    ▶ Merci d'avance pour ta contribution !!
    0
    1. mad941
       
      il n'y a aucun rapport au final.
      J'ai mi antivir (il ma trouve 7 virus que j'ai effacee) et comodo nickel pas de prob pour l'instant.
      Mais comment je peut savoir si maintenant tout et ok????
      0
  7. geoffrey5 Messages postés 14008 Statut Contributeur sécurité 10
     
    Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque.( C:\UsbFix.txt )

    Poste-le stp
    0
    1. mad941
       
      je ne trouve rien dans "rechercher" C:\UsbFix.txt . Il n'y a rien
      0
  8. geoffrey5 Messages postés 14008 Statut Contributeur sécurité 10
     
    vas directement voir sur ton disque C ;)
    0
    1. mad941
       
      Le seul rapport que j'ai trouve et le meme qu'au post 45. c'est celui la???
      0
  9. geoffrey5 Messages postés 14008 Statut Contributeur sécurité 10
     
    Si tu as bien exécuté l'option 2 de UsbFix, le rapport de la recherche sera remplacé par celui de la suppression avec l'option 2 ;)
    0
    1. mad941
       
      C'est se que j'ai fait 3 ffois et je vien de le refaire tjrs pareil. Dans l'emplacement il n'y a rien de plus.
      0
  10. geoffrey5 Messages postés 14008 Statut Contributeur sécurité 10
     
    Poste-moi le rapport usbfix.txt que tu as
    0
    1. mad941
       
      ############################## | UsbFix V6.039 |

      User : Admin (Administrateurs) # PC-DE-ADMIN
      Update on 09/10/2009 by Chiquitine29, C_XX & Chimay8
      Start at: 17:17:23 | 09/10/2009
      Website : http://pagesperso-orange.fr/NosTools/index.html

      Intel(R) Core(TM)2 Quad CPU Q6600 @ 2.40GHz
      Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6002 32-bit) # Service Pack 2
      Internet Explorer 8.0.6001.18813
      Windows Firewall Status : Disabled
      AV : avast! antivirus 4.8.1169 [VPS 090207-0] 4.8.1169 [ Enabled | Updated ]

      C:\ -> Disque fixe local # 322,93 Go (157,48 Go free) [HP] # NTFS
      D:\ -> Disque fixe local # 12,42 Go (1,71 Go free) [FACTORY_IMAGE] # NTFS
      E:\ -> Disque CD-ROM
      F:\ -> Disque amovible
      G:\ -> Disque amovible
      H:\ -> Disque amovible
      I:\ -> Disque amovible
      J:\ -> Disque amovible # 1,97 Go (1,45 Go free) [USB] # FAT32
      K:\ -> Disque fixe local # 465,65 Go (208,78 Go free) [LaCie] # FAT32

      ############################## | Processus actifs |

      C:\Windows\System32\smss.exe
      C:\Windows\system32\csrss.exe
      C:\Windows\system32\wininit.exe
      C:\Windows\system32\csrss.exe
      C:\Windows\system32\services.exe
      C:\Windows\system32\lsass.exe
      C:\Windows\system32\lsm.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\nvvsvc.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\winlogon.exe
      C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\System32\svchost.exe
      C:\Windows\System32\svchost.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\SLsvc.exe
      C:\Windows\system32\svchost.exe
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\Windows\System32\spoolsv.exe
      C:\Windows\system32\svchost.exe
      C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
      C:\Program Files\Common Files\LightScribe\LSSrvc.exe
      C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\System32\svchost.exe
      C:\Windows\system32\SearchIndexer.exe
      C:\Windows\system32\WUDFHost.exe
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\Windows\system32\taskeng.exe
      C:\Windows\system32\Dwm.exe
      C:\Windows\system32\taskeng.exe
      C:\hp\support\hpsysdrv.exe
      C:\Program Files\Java\jre6\bin\jusched.exe
      C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
      C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
      C:\Program Files\Alwil Software\Avast4\ashDisp.exe
      C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
      C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe
      C:\Program Files\Windows Media Player\wmpnscfg.exe
      C:\Program Files\Windows Media Player\wmpnetwk.exe
      C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
      C:\Windows\system32\wbem\wmiprvse.exe
      c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
      C:\Windows\explorer.exe
      C:\Program Files\Windows Live\Messenger\msnmsgr.exe
      C:\Program Files\Windows Live\Contacts\wlcomm.exe
      C:\Program Files\Internet Explorer\iexplore.exe
      C:\Program Files\Internet Explorer\iexplore.exe
      C:\Program Files\Internet Explorer\iexplore.exe
      C:\Windows\system32\conime.exe
      C:\Windows\system32\wbem\wmiprvse.exe
      C:\Windows\System32\mobsync.exe
      C:\Windows\system32\SearchProtocolHost.exe
      C:\Windows\system32\SearchFilterHost.exe
      C:\Windows\system32\DllHost.exe

      ################## | Fichiers # Dossiers infectieux |

      D:\desktop.ini

      ################## | Registre # Clés Run infectieuses |


      ################## | Registre # Mountpoints2 |

      HKCU\..\..\Explorer\MountPoints2\{a553f30b-2b36-11de-b9f6-a04a893b966d}
      shell\AutoRun\command =K:\LaunchU3.exe -a

      ################## | ! Fin du rapport # UsbFix V6.039 ! |
      0
  11. geoffrey5 Messages postés 14008 Statut Contributeur sécurité 10
     
    Relance une fois l'option 2 stp
    0
Précédent
  • 1
  • 2