Help Cheval de Troie sur Facebook
Résolu
roudoude03
Messages postés
28
Date d'inscription
mardi 16 février 2010
Statut
Membre
Dernière intervention
17 février 2010
-
16 févr. 2010 à 16:15
Utilisateur anonyme - 17 févr. 2010 à 23:55
Utilisateur anonyme - 17 févr. 2010 à 23:55
A voir également:
- Help Cheval de Troie sur Facebook
- Story sur facebook - Guide
- Facebook lite gratuit - iam - Télécharger - Messagerie
- Comment voir qui regarde mon profil facebook - Guide
- Compte facebook suspendu 180 jours - Guide
- Appareil connecté facebook - Guide
30 réponses
Ced_King
Messages postés
3519
Date d'inscription
lundi 2 mars 2009
Statut
Contributeur
Dernière intervention
10 octobre 2016
572
16 févr. 2010 à 16:47
16 févr. 2010 à 16:47
Juste pour aider,
Sinon, Ced_King m'indiquait de cliquer sur le lien suivant Télécharge Malwarebytes' Anti-Malware :
Je men douter, c'est souvent le cas avec Koobface :
http://www.commentcamarche.net/faq/sujet-23440-koobface
Il faut désactiver le proxy installer par l'infection
Pour Internet explorer,
*menu Outils -->Options Internet.
*Onglet Connexions puis en bas, désactiver le proxy.
Puis redémarrer l'ordinateur
Pour Firefox,
# Menu Editions --> Préférences puis onglet Avancés.
# Cliquez sur Réseau et Paramètres.
# Choisir "Ne pas mettre de Proxy", puis redémarrer l'ordi
Bonne continuation avec Nathandre
.
Sinon, Ced_King m'indiquait de cliquer sur le lien suivant Télécharge Malwarebytes' Anti-Malware :
Je men douter, c'est souvent le cas avec Koobface :
http://www.commentcamarche.net/faq/sujet-23440-koobface
Il faut désactiver le proxy installer par l'infection
Pour Internet explorer,
*menu Outils -->Options Internet.
*Onglet Connexions puis en bas, désactiver le proxy.
Puis redémarrer l'ordinateur
Pour Firefox,
# Menu Editions --> Préférences puis onglet Avancés.
# Cliquez sur Réseau et Paramètres.
# Choisir "Ne pas mettre de Proxy", puis redémarrer l'ordi
Bonne continuation avec Nathandre
.
Utilisateur anonyme
16 févr. 2010 à 16:18
16 févr. 2010 à 16:18
bonjour
bien infecté
Télécharge USBFix (de El Desaparecido, C_XX et Chimay8) sur ton bureau
http://pagesperso-orange.fr/NosTools/Chiquitine29/UsbFix.txt
ou
https://www.ionos.fr/?affiliate_id=77097
Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) susceptible d'avoir été infectées sans les ouvrir
# Double clic sur le raccourci UsbFix présent sur ton bureau .
# Sélectionne l'option 1 ( Recherche )
# Laisse travailler l'outil.
# Ensuite poste le rapport UsbFix.txt qui apparaitra.
# Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque. ( C:\UsbFix.txt )
( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
# Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.
bien infecté
Télécharge USBFix (de El Desaparecido, C_XX et Chimay8) sur ton bureau
http://pagesperso-orange.fr/NosTools/Chiquitine29/UsbFix.txt
ou
https://www.ionos.fr/?affiliate_id=77097
Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) susceptible d'avoir été infectées sans les ouvrir
# Double clic sur le raccourci UsbFix présent sur ton bureau .
# Sélectionne l'option 1 ( Recherche )
# Laisse travailler l'outil.
# Ensuite poste le rapport UsbFix.txt qui apparaitra.
# Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque. ( C:\UsbFix.txt )
( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
# Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.
Ced_King
Messages postés
3519
Date d'inscription
lundi 2 mars 2009
Statut
Contributeur
Dernière intervention
10 octobre 2016
572
16 févr. 2010 à 16:18
16 févr. 2010 à 16:18
Salut,
bonne continuation....
bonne continuation....
roudoude03
Messages postés
28
Date d'inscription
mardi 16 février 2010
Statut
Membre
Dernière intervention
17 février 2010
16 févr. 2010 à 16:37
16 févr. 2010 à 16:37
Ci-dessous dberr.txt... je sais pas si c'est bien ce que tu me demandais, suis un peu perdue !!!
CatalogDB: 09:19:49 10/09/2009: Adding Catalog File: KB956844.cat
CatalogDB: 09:19:49 10/09/2009: DONE Adding Catalog File: KB956844.cat
CatalogDB: 09:19:51 10/09/2009: Adding Catalog File: oem16.CAT
CatalogDB: 09:19:51 10/09/2009: DONE Adding Catalog File: oem16.CAT
CatalogDB: 09:19:53 10/09/2009: Adding Catalog File: KB968816.cat
CatalogDB: 09:19:53 10/09/2009: DONE Adding Catalog File: KB968816.cat
CatalogDB: 16:40:21 27/09/2009: WAITSVC: Calling StartService(): ProtectedStorage
CatalogDB: 16:40:50 27/09/2009: WAITSVC: Service is running: ProtectedStorage
CatalogDB: 20:11:36 02/10/2009: Adding Catalog File: oem16.CAT
CatalogDB: 20:11:40 02/10/2009: DONE Adding Catalog File: oem16.CAT
CatalogDB: 19:14:42 03/10/2009: Adding Catalog File: oem17.CAT
CatalogDB: 19:14:43 03/10/2009: DONE Adding Catalog File: oem17.CAT
CatalogDB: 20:28:24 03/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 20:28:24 03/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 20:28:41 03/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 20:28:41 03/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:28:11 05/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:28:12 05/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:28:35 05/10/2009: Adding Catalog File: KB968389.cat
CatalogDB: 18:28:35 05/10/2009: DONE Adding Catalog File: KB968389.cat
CatalogDB: 21:20:58 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:20:58 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:21:46 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:21:46 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:21:49 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:21:49 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:21:52 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:21:52 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:22:22 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:22:23 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:23:37 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:23:37 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:23:40 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:23:40 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:23:42 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:23:42 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:23:44 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:23:44 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:23:48 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:23:48 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:51:19 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:51:19 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:51:45 16/10/2009: Adding Catalog File: KB975467.cat
CatalogDB: 14:51:45 16/10/2009: DONE Adding Catalog File: KB975467.cat
CatalogDB: 14:51:52 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:51:52 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:51:54 16/10/2009: Adding Catalog File: KB973525.cat
CatalogDB: 14:51:54 16/10/2009: DONE Adding Catalog File: KB973525.cat
CatalogDB: 14:52:10 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:52:10 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:52:14 16/10/2009: Adding Catalog File: KB971486.cat
CatalogDB: 14:52:14 16/10/2009: DONE Adding Catalog File: KB971486.cat
CatalogDB: 14:52:30 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:52:30 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:52:32 16/10/2009: Adding Catalog File: KB974571.cat
CatalogDB: 14:52:32 16/10/2009: DONE Adding Catalog File: KB974571.cat
CatalogDB: 14:52:36 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:52:36 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:52:38 16/10/2009: Adding Catalog File: KB975025.cat
CatalogDB: 14:52:38 16/10/2009: DONE Adding Catalog File: KB975025.cat
CatalogDB: 14:52:41 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:52:41 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:52:44 16/10/2009: Adding Catalog File: KB974112.cat
CatalogDB: 14:52:44 16/10/2009: DONE Adding Catalog File: KB974112.cat
CatalogDB: 14:52:47 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:52:47 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:52:48 16/10/2009: Adding Catalog File: KB954155.cat
CatalogDB: 14:52:48 16/10/2009: DONE Adding Catalog File: KB954155.cat
CatalogDB: 14:53:04 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:53:04 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:53:07 16/10/2009: Adding Catalog File: KB969059.cat
CatalogDB: 14:53:07 16/10/2009: DONE Adding Catalog File: KB969059.cat
CatalogDB: 14:54:27 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:54:27 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:54:28 16/10/2009: Adding Catalog File: KB958869.cat
CatalogDB: 14:54:28 16/10/2009: DONE Adding Catalog File: KB958869.cat
CatalogDB: 14:54:32 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:54:32 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:54:40 16/10/2009: Adding Catalog File: KB974455-IE8.cat
CatalogDB: 14:54:40 16/10/2009: DONE Adding Catalog File: KB974455-IE8.cat
CatalogDB: 18:01:03 25/10/2009: WAITSVC: Calling StartService(): ProtectedStorage
CatalogDB: 18:01:37 25/10/2009: WAITSVC: Service is running: ProtectedStorage
CatalogDB: 13:34:45 05/11/2009: Adding Catalog File: oem18.CAT
CatalogDB: 13:34:45 05/11/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 13:35:15 05/11/2009: Adding Catalog File: KB976749-IE8.cat
CatalogDB: 13:35:15 05/11/2009: DONE Adding Catalog File: KB976749-IE8.cat
CatalogDB: 17:28:49 12/11/2009: Adding Catalog File: oem18.CAT
CatalogDB: 17:28:49 12/11/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 17:31:34 12/11/2009: Adding Catalog File: oem18.CAT
CatalogDB: 17:31:34 12/11/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 11:41:17 15/11/2009: Adding Catalog File: oem18.CAT
CatalogDB: 11:41:17 15/11/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 11:41:44 15/11/2009: Adding Catalog File: KB969947.cat
CatalogDB: 11:41:45 15/11/2009: DONE Adding Catalog File: KB969947.cat
CatalogDB: 11:34:41 29/11/2009: WAITSVC: Calling StartService(): ProtectedStorage
CatalogDB: 11:35:20 29/11/2009: WAITSVC: Service is running: ProtectedStorage
CatalogDB: 20:16:21 02/12/2009: WAITSVC: Calling StartService(): ProtectedStorage
CatalogDB: 20:16:58 02/12/2009: WAITSVC: Service is running: ProtectedStorage
CatalogDB: 21:33:58 08/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:33:58 08/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:34:05 08/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:34:05 08/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:35:36 08/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:35:36 08/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:35:39 08/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:35:39 08/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:35:44 08/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:35:44 08/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:35:46 08/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:35:46 08/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:35:49 08/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:35:49 08/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:35:52 08/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:35:52 08/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:05:03 09/12/2009: WAITSVC: Calling StartService(): ProtectedStorage
CatalogDB: 21:05:35 09/12/2009: WAITSVC: Service is running: ProtectedStorage
CatalogDB: 18:53:19 15/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:53:20 15/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:53:48 15/12/2009: Adding Catalog File: KB971737.cat
CatalogDB: 18:53:48 15/12/2009: DONE Adding Catalog File: KB971737.cat
CatalogDB: 18:53:55 15/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:53:55 15/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:53:58 15/12/2009: Adding Catalog File: KB974392.cat
CatalogDB: 18:53:58 15/12/2009: DONE Adding Catalog File: KB974392.cat
CatalogDB: 18:54:01 15/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:54:01 15/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:54:04 15/12/2009: Adding Catalog File: KB973904.cat
CatalogDB: 18:54:04 15/12/2009: DONE Adding Catalog File: KB973904.cat
CatalogDB: 18:54:08 15/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:54:08 15/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:54:11 15/12/2009: Adding Catalog File: KB973687.cat
CatalogDB: 18:54:11 15/12/2009: DONE Adding Catalog File: KB973687.cat
CatalogDB: 18:54:32 15/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:54:33 15/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:54:41 15/12/2009: Adding Catalog File: KB976325-IE8.cat
CatalogDB: 18:54:41 15/12/2009: DONE Adding Catalog File: KB976325-IE8.cat
CatalogDB: 18:54:51 15/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:54:51 15/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:54:54 15/12/2009: Adding Catalog File: KB974318.cat
CatalogDB: 18:54:54 15/12/2009: DONE Adding Catalog File: KB974318.cat
CatalogDB: 18:54:57 15/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:54:57 15/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:54:59 15/12/2009: Adding Catalog File: KB976098-v2.cat
CatalogDB: 18:54:59 15/12/2009: DONE Adding Catalog File: KB976098-v2.cat
CatalogDB: 18:55:02 15/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:55:02 15/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:55:05 15/12/2009: Adding Catalog File: KB970430.cat
CatalogDB: 18:55:05 15/12/2009: DONE Adding Catalog File: KB970430.cat
CatalogDB: 18:36:59 23/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:36:59 23/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:37:20 23/12/2009: Adding Catalog File: WMFDist11.cat
CatalogDB: 18:37:20 23/12/2009: DONE Adding Catalog File: WMFDist11.cat
CatalogDB: 22:39:59 23/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 22:39:59 23/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 22:40:13 23/12/2009: Adding Catalog File: WMFDist11.cat
CatalogDB: 22:40:13 23/12/2009: DONE Adding Catalog File: WMFDist11.cat
CatalogDB: 19:42:40 14/01/2010: WAITSVC: Calling StartService(): ProtectedStorage
CatalogDB: 19:43:13 14/01/2010: WAITSVC: Service is running: ProtectedStorage
CatalogDB: 16:24:35 19/01/2010: WAITSVC: Calling StartService(): ProtectedStorage
CatalogDB: 16:25:03 19/01/2010: WAITSVC: Service is running: ProtectedStorage
CatalogDB: 10:59:19 20/01/2010: Adding Catalog File: oem13.CAT
CatalogDB: 10:59:19 20/01/2010: DONE Adding Catalog File: oem13.CAT
CatalogDB: 10:59:47 20/01/2010: Adding Catalog File: KB972270.cat
CatalogDB: 10:59:47 20/01/2010: DONE Adding Catalog File: KB972270.cat
CatalogDB: 11:00:05 20/01/2010: Adding Catalog File: oem13.CAT
CatalogDB: 11:00:05 20/01/2010: DONE Adding Catalog File: oem13.CAT
CatalogDB: 11:00:09 20/01/2010: Adding Catalog File: KB955759.cat
CatalogDB: 11:00:09 20/01/2010: DONE Adding Catalog File: KB955759.cat
CatalogDB: 16:24:45 23/01/2010: Adding Catalog File: oem13.CAT
CatalogDB: 16:24:45 23/01/2010: DONE Adding Catalog File: oem13.CAT
CatalogDB: 16:24:46 23/01/2010: Adding Catalog File: oem14.CAT
CatalogDB: 16:24:46 23/01/2010: DONE Adding Catalog File: oem14.CAT
CatalogDB: 16:24:54 23/01/2010: Adding Catalog File: oem18.CAT
CatalogDB: 16:24:54 23/01/2010: DONE Adding Catalog File: oem18.CAT
CatalogDB: 16:24:55 23/01/2010: Adding Catalog File: oem19.CAT
CatalogDB: 16:24:55 23/01/2010: DONE Adding Catalog File: oem19.CAT
CatalogDB: 16:24:55 23/01/2010: Adding Catalog File: oem20.CAT
CatalogDB: 16:24:55 23/01/2010: DONE Adding Catalog File: oem20.CAT
CatalogDB: 16:24:57 23/01/2010: Adding Catalog File: oem21.CAT
CatalogDB: 16:24:57 23/01/2010: DONE Adding Catalog File: oem21.CAT
CatalogDB: 16:24:58 23/01/2010: Adding Catalog File: oem22.CAT
CatalogDB: 16:24:58 23/01/2010: DONE Adding Catalog File: oem22.CAT
CatalogDB: 16:24:58 23/01/2010: Adding Catalog File: oem23.CAT
CatalogDB: 16:24:58 23/01/2010: DONE Adding Catalog File: oem23.CAT
CatalogDB: 16:24:59 23/01/2010: Adding Catalog File: oem24.CAT
CatalogDB: 16:24:59 23/01/2010: DONE Adding Catalog File: oem24.CAT
CatalogDB: 16:24:59 23/01/2010: Adding Catalog File: oem25.CAT
CatalogDB: 16:24:59 23/01/2010: DONE Adding Catalog File: oem25.CAT
CatalogDB: 16:24:59 23/01/2010: Adding Catalog File: oem26.CAT
CatalogDB: 16:24:59 23/01/2010: DONE Adding Catalog File: oem26.CAT
CatalogDB: 16:24:59 23/01/2010: Adding Catalog File: oem27.CAT
CatalogDB: 16:24:59 23/01/2010: DONE Adding Catalog File: oem27.CAT
CatalogDB: 16:42:48 23/01/2010: Adding Catalog File: oem13.CAT
CatalogDB: 16:42:48 23/01/2010: DONE Adding Catalog File: oem13.CAT
CatalogDB: 16:42:49 23/01/2010: Adding Catalog File: oem14.CAT
CatalogDB: 16:42:49 23/01/2010: DONE Adding Catalog File: oem14.CAT
CatalogDB: 16:42:49 23/01/2010: Adding Catalog File: oem18.CAT
CatalogDB: 16:42:50 23/01/2010: DONE Adding Catalog File: oem18.CAT
CatalogDB: 16:42:50 23/01/2010: Adding Catalog File: oem19.CAT
CatalogDB: 16:42:50 23/01/2010: DONE Adding Catalog File: oem19.CAT
CatalogDB: 16:42:50 23/01/2010: Adding Catalog File: oem20.CAT
CatalogDB: 16:42:50 23/01/2010: DONE Adding Catalog File: oem20.CAT
CatalogDB: 16:42:51 23/01/2010: Adding Catalog File: oem21.CAT
CatalogDB: 16:42:51 23/01/2010: DONE Adding Catalog File: oem21.CAT
CatalogDB: 16:42:51 23/01/2010: Adding Catalog File: oem22.CAT
CatalogDB: 16:42:51 23/01/2010: DONE Adding Catalog File: oem22.CAT
CatalogDB: 16:42:51 23/01/2010: Adding Catalog File: oem23.CAT
CatalogDB: 16:42:52 23/01/2010: DONE Adding Catalog File: oem23.CAT
CatalogDB: 16:42:53 23/01/2010: Adding Catalog File: oem24.CAT
CatalogDB: 16:42:53 23/01/2010: DONE Adding Catalog File: oem24.CAT
CatalogDB: 16:42:53 23/01/2010: Adding Catalog File: oem25.CAT
CatalogDB: 16:42:53 23/01/2010: DONE Adding Catalog File: oem25.CAT
CatalogDB: 16:42:54 23/01/2010: Adding Catalog File: oem26.CAT
CatalogDB: 16:42:54 23/01/2010: DONE Adding Catalog File: oem26.CAT
CatalogDB: 16:42:54 23/01/2010: Adding Catalog File: oem27.CAT
CatalogDB: 16:42:54 23/01/2010: DONE Adding Catalog File: oem27.CAT
CatalogDB: 16:45:03 23/01/2010: Adding Catalog File: drm.cat
CatalogDB: 16:45:03 23/01/2010: DONE Adding Catalog File: drm.cat
CatalogDB: 16:45:04 23/01/2010: Adding Catalog File: WMFSDK.cat
CatalogDB: 16:45:04 23/01/2010: DONE Adding Catalog File: WMFSDK.cat
CatalogDB: 18:39:43 27/01/2010: Adding Catalog File: oem28.CAT
CatalogDB: 18:39:43 27/01/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 18:40:18 27/01/2010: Adding Catalog File: KB978207-IE8.cat
CatalogDB: 18:40:18 27/01/2010: DONE Adding Catalog File: KB978207-IE8.cat
CatalogDB: 17:20:24 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:20:24 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 17:20:34 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:20:35 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 17:23:49 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:23:49 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 17:23:56 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:23:56 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 17:23:59 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:23:59 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 17:24:20 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:24:20 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 17:24:23 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:24:24 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 17:24:27 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:24:27 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 17:24:30 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:24:30 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 17:24:34 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:24:34 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:36:13 11/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 07:36:13 11/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:36:45 11/02/2010: Adding Catalog File: KB977165.cat
CatalogDB: 07:36:45 11/02/2010: DONE Adding Catalog File: KB977165.cat
CatalogDB: 07:36:52 11/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 07:36:52 11/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:36:55 11/02/2010: Adding Catalog File: KB978706.cat
CatalogDB: 07:36:55 11/02/2010: DONE Adding Catalog File: KB978706.cat
CatalogDB: 07:36:58 11/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 07:36:58 11/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:37:03 11/02/2010: Adding Catalog File: KB977914.cat
CatalogDB: 07:37:03 11/02/2010: DONE Adding Catalog File: KB977914.cat
CatalogDB: 07:37:35 11/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 07:37:35 11/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:37:39 11/02/2010: Adding Catalog File: KB975560.cat
CatalogDB: 07:37:39 11/02/2010: DONE Adding Catalog File: KB975560.cat
CatalogDB: 07:37:43 11/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 07:37:43 11/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:37:45 11/02/2010: Adding Catalog File: KB978251.cat
CatalogDB: 07:37:45 11/02/2010: DONE Adding Catalog File: KB978251.cat
CatalogDB: 07:37:48 11/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 07:37:48 11/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:37:51 11/02/2010: Adding Catalog File: KB975713.cat
CatalogDB: 07:37:51 11/02/2010: DONE Adding Catalog File: KB975713.cat
CatalogDB: 07:37:55 11/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 07:37:55 11/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:37:58 11/02/2010: Adding Catalog File: KB978037.cat
CatalogDB: 07:37:58 11/02/2010: DONE Adding Catalog File: KB978037.cat
CatalogDB: 07:39:56 11/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 07:39:56 11/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:39:58 11/02/2010: Adding Catalog File: KB971468.cat
CatalogDB: 07:39:58 11/02/2010: DONE Adding Catalog File: KB971468.cat
CatalogDB: 07:40:01 11/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 07:40:01 11/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:40:04 11/02/2010: Adding Catalog File: KB978262.cat
CatalogDB: 07:40:04 11/02/2010: DONE Adding Catalog File: KB978262.cat
CatalogDB: 09:25:11 12/02/2010: WAITSVC: Calling StartService(): CryptSvc
CatalogDB: 09:25:35 12/02/2010: WAITSVC: Service is running: CryptSvc
CatalogDB: 18:02:03 14/02/2010: WAITSVC: Calling StartService(): CryptSvc
CatalogDB: 18:02:42 14/02/2010: WAITSVC: Service is running: CryptSvc
CatalogDB: 10:25:54 15/02/2010: WAITSVC: Calling StartService(): CryptSvc
CatalogDB: 10:26:28 15/02/2010: WAITSVC: Service is running: CryptSvc
CatalogDB: 16:00:18 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:00:18 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:03:08 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:04:27 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:06:29 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:07:01 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:07:22 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:22:41 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:22:41 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:22:41 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:22:41 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:22:41 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:32:41 16/02/2010: File #2 at line #1477 encountered error 0x00000057
Sinon, Ced_King m'indiquait de cliquer sur le lien suivant Télécharge Malwarebytes' Anti-Malware :
http://www.malwarebytes.org/mbam/program/mbam-setup.exe
mais impossible d'accéder à la page !!
CatalogDB: 09:19:49 10/09/2009: Adding Catalog File: KB956844.cat
CatalogDB: 09:19:49 10/09/2009: DONE Adding Catalog File: KB956844.cat
CatalogDB: 09:19:51 10/09/2009: Adding Catalog File: oem16.CAT
CatalogDB: 09:19:51 10/09/2009: DONE Adding Catalog File: oem16.CAT
CatalogDB: 09:19:53 10/09/2009: Adding Catalog File: KB968816.cat
CatalogDB: 09:19:53 10/09/2009: DONE Adding Catalog File: KB968816.cat
CatalogDB: 16:40:21 27/09/2009: WAITSVC: Calling StartService(): ProtectedStorage
CatalogDB: 16:40:50 27/09/2009: WAITSVC: Service is running: ProtectedStorage
CatalogDB: 20:11:36 02/10/2009: Adding Catalog File: oem16.CAT
CatalogDB: 20:11:40 02/10/2009: DONE Adding Catalog File: oem16.CAT
CatalogDB: 19:14:42 03/10/2009: Adding Catalog File: oem17.CAT
CatalogDB: 19:14:43 03/10/2009: DONE Adding Catalog File: oem17.CAT
CatalogDB: 20:28:24 03/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 20:28:24 03/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 20:28:41 03/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 20:28:41 03/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:28:11 05/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:28:12 05/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:28:35 05/10/2009: Adding Catalog File: KB968389.cat
CatalogDB: 18:28:35 05/10/2009: DONE Adding Catalog File: KB968389.cat
CatalogDB: 21:20:58 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:20:58 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:21:46 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:21:46 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:21:49 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:21:49 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:21:52 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:21:52 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:22:22 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:22:23 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:23:37 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:23:37 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:23:40 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:23:40 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:23:42 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:23:42 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:23:44 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:23:44 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:23:48 14/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:23:48 14/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:51:19 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:51:19 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:51:45 16/10/2009: Adding Catalog File: KB975467.cat
CatalogDB: 14:51:45 16/10/2009: DONE Adding Catalog File: KB975467.cat
CatalogDB: 14:51:52 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:51:52 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:51:54 16/10/2009: Adding Catalog File: KB973525.cat
CatalogDB: 14:51:54 16/10/2009: DONE Adding Catalog File: KB973525.cat
CatalogDB: 14:52:10 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:52:10 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:52:14 16/10/2009: Adding Catalog File: KB971486.cat
CatalogDB: 14:52:14 16/10/2009: DONE Adding Catalog File: KB971486.cat
CatalogDB: 14:52:30 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:52:30 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:52:32 16/10/2009: Adding Catalog File: KB974571.cat
CatalogDB: 14:52:32 16/10/2009: DONE Adding Catalog File: KB974571.cat
CatalogDB: 14:52:36 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:52:36 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:52:38 16/10/2009: Adding Catalog File: KB975025.cat
CatalogDB: 14:52:38 16/10/2009: DONE Adding Catalog File: KB975025.cat
CatalogDB: 14:52:41 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:52:41 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:52:44 16/10/2009: Adding Catalog File: KB974112.cat
CatalogDB: 14:52:44 16/10/2009: DONE Adding Catalog File: KB974112.cat
CatalogDB: 14:52:47 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:52:47 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:52:48 16/10/2009: Adding Catalog File: KB954155.cat
CatalogDB: 14:52:48 16/10/2009: DONE Adding Catalog File: KB954155.cat
CatalogDB: 14:53:04 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:53:04 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:53:07 16/10/2009: Adding Catalog File: KB969059.cat
CatalogDB: 14:53:07 16/10/2009: DONE Adding Catalog File: KB969059.cat
CatalogDB: 14:54:27 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:54:27 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:54:28 16/10/2009: Adding Catalog File: KB958869.cat
CatalogDB: 14:54:28 16/10/2009: DONE Adding Catalog File: KB958869.cat
CatalogDB: 14:54:32 16/10/2009: Adding Catalog File: oem18.CAT
CatalogDB: 14:54:32 16/10/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 14:54:40 16/10/2009: Adding Catalog File: KB974455-IE8.cat
CatalogDB: 14:54:40 16/10/2009: DONE Adding Catalog File: KB974455-IE8.cat
CatalogDB: 18:01:03 25/10/2009: WAITSVC: Calling StartService(): ProtectedStorage
CatalogDB: 18:01:37 25/10/2009: WAITSVC: Service is running: ProtectedStorage
CatalogDB: 13:34:45 05/11/2009: Adding Catalog File: oem18.CAT
CatalogDB: 13:34:45 05/11/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 13:35:15 05/11/2009: Adding Catalog File: KB976749-IE8.cat
CatalogDB: 13:35:15 05/11/2009: DONE Adding Catalog File: KB976749-IE8.cat
CatalogDB: 17:28:49 12/11/2009: Adding Catalog File: oem18.CAT
CatalogDB: 17:28:49 12/11/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 17:31:34 12/11/2009: Adding Catalog File: oem18.CAT
CatalogDB: 17:31:34 12/11/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 11:41:17 15/11/2009: Adding Catalog File: oem18.CAT
CatalogDB: 11:41:17 15/11/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 11:41:44 15/11/2009: Adding Catalog File: KB969947.cat
CatalogDB: 11:41:45 15/11/2009: DONE Adding Catalog File: KB969947.cat
CatalogDB: 11:34:41 29/11/2009: WAITSVC: Calling StartService(): ProtectedStorage
CatalogDB: 11:35:20 29/11/2009: WAITSVC: Service is running: ProtectedStorage
CatalogDB: 20:16:21 02/12/2009: WAITSVC: Calling StartService(): ProtectedStorage
CatalogDB: 20:16:58 02/12/2009: WAITSVC: Service is running: ProtectedStorage
CatalogDB: 21:33:58 08/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:33:58 08/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:34:05 08/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:34:05 08/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:35:36 08/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:35:36 08/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:35:39 08/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:35:39 08/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:35:44 08/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:35:44 08/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:35:46 08/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:35:46 08/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:35:49 08/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:35:49 08/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:35:52 08/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 21:35:52 08/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 21:05:03 09/12/2009: WAITSVC: Calling StartService(): ProtectedStorage
CatalogDB: 21:05:35 09/12/2009: WAITSVC: Service is running: ProtectedStorage
CatalogDB: 18:53:19 15/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:53:20 15/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:53:48 15/12/2009: Adding Catalog File: KB971737.cat
CatalogDB: 18:53:48 15/12/2009: DONE Adding Catalog File: KB971737.cat
CatalogDB: 18:53:55 15/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:53:55 15/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:53:58 15/12/2009: Adding Catalog File: KB974392.cat
CatalogDB: 18:53:58 15/12/2009: DONE Adding Catalog File: KB974392.cat
CatalogDB: 18:54:01 15/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:54:01 15/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:54:04 15/12/2009: Adding Catalog File: KB973904.cat
CatalogDB: 18:54:04 15/12/2009: DONE Adding Catalog File: KB973904.cat
CatalogDB: 18:54:08 15/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:54:08 15/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:54:11 15/12/2009: Adding Catalog File: KB973687.cat
CatalogDB: 18:54:11 15/12/2009: DONE Adding Catalog File: KB973687.cat
CatalogDB: 18:54:32 15/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:54:33 15/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:54:41 15/12/2009: Adding Catalog File: KB976325-IE8.cat
CatalogDB: 18:54:41 15/12/2009: DONE Adding Catalog File: KB976325-IE8.cat
CatalogDB: 18:54:51 15/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:54:51 15/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:54:54 15/12/2009: Adding Catalog File: KB974318.cat
CatalogDB: 18:54:54 15/12/2009: DONE Adding Catalog File: KB974318.cat
CatalogDB: 18:54:57 15/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:54:57 15/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:54:59 15/12/2009: Adding Catalog File: KB976098-v2.cat
CatalogDB: 18:54:59 15/12/2009: DONE Adding Catalog File: KB976098-v2.cat
CatalogDB: 18:55:02 15/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:55:02 15/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:55:05 15/12/2009: Adding Catalog File: KB970430.cat
CatalogDB: 18:55:05 15/12/2009: DONE Adding Catalog File: KB970430.cat
CatalogDB: 18:36:59 23/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 18:36:59 23/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 18:37:20 23/12/2009: Adding Catalog File: WMFDist11.cat
CatalogDB: 18:37:20 23/12/2009: DONE Adding Catalog File: WMFDist11.cat
CatalogDB: 22:39:59 23/12/2009: Adding Catalog File: oem18.CAT
CatalogDB: 22:39:59 23/12/2009: DONE Adding Catalog File: oem18.CAT
CatalogDB: 22:40:13 23/12/2009: Adding Catalog File: WMFDist11.cat
CatalogDB: 22:40:13 23/12/2009: DONE Adding Catalog File: WMFDist11.cat
CatalogDB: 19:42:40 14/01/2010: WAITSVC: Calling StartService(): ProtectedStorage
CatalogDB: 19:43:13 14/01/2010: WAITSVC: Service is running: ProtectedStorage
CatalogDB: 16:24:35 19/01/2010: WAITSVC: Calling StartService(): ProtectedStorage
CatalogDB: 16:25:03 19/01/2010: WAITSVC: Service is running: ProtectedStorage
CatalogDB: 10:59:19 20/01/2010: Adding Catalog File: oem13.CAT
CatalogDB: 10:59:19 20/01/2010: DONE Adding Catalog File: oem13.CAT
CatalogDB: 10:59:47 20/01/2010: Adding Catalog File: KB972270.cat
CatalogDB: 10:59:47 20/01/2010: DONE Adding Catalog File: KB972270.cat
CatalogDB: 11:00:05 20/01/2010: Adding Catalog File: oem13.CAT
CatalogDB: 11:00:05 20/01/2010: DONE Adding Catalog File: oem13.CAT
CatalogDB: 11:00:09 20/01/2010: Adding Catalog File: KB955759.cat
CatalogDB: 11:00:09 20/01/2010: DONE Adding Catalog File: KB955759.cat
CatalogDB: 16:24:45 23/01/2010: Adding Catalog File: oem13.CAT
CatalogDB: 16:24:45 23/01/2010: DONE Adding Catalog File: oem13.CAT
CatalogDB: 16:24:46 23/01/2010: Adding Catalog File: oem14.CAT
CatalogDB: 16:24:46 23/01/2010: DONE Adding Catalog File: oem14.CAT
CatalogDB: 16:24:54 23/01/2010: Adding Catalog File: oem18.CAT
CatalogDB: 16:24:54 23/01/2010: DONE Adding Catalog File: oem18.CAT
CatalogDB: 16:24:55 23/01/2010: Adding Catalog File: oem19.CAT
CatalogDB: 16:24:55 23/01/2010: DONE Adding Catalog File: oem19.CAT
CatalogDB: 16:24:55 23/01/2010: Adding Catalog File: oem20.CAT
CatalogDB: 16:24:55 23/01/2010: DONE Adding Catalog File: oem20.CAT
CatalogDB: 16:24:57 23/01/2010: Adding Catalog File: oem21.CAT
CatalogDB: 16:24:57 23/01/2010: DONE Adding Catalog File: oem21.CAT
CatalogDB: 16:24:58 23/01/2010: Adding Catalog File: oem22.CAT
CatalogDB: 16:24:58 23/01/2010: DONE Adding Catalog File: oem22.CAT
CatalogDB: 16:24:58 23/01/2010: Adding Catalog File: oem23.CAT
CatalogDB: 16:24:58 23/01/2010: DONE Adding Catalog File: oem23.CAT
CatalogDB: 16:24:59 23/01/2010: Adding Catalog File: oem24.CAT
CatalogDB: 16:24:59 23/01/2010: DONE Adding Catalog File: oem24.CAT
CatalogDB: 16:24:59 23/01/2010: Adding Catalog File: oem25.CAT
CatalogDB: 16:24:59 23/01/2010: DONE Adding Catalog File: oem25.CAT
CatalogDB: 16:24:59 23/01/2010: Adding Catalog File: oem26.CAT
CatalogDB: 16:24:59 23/01/2010: DONE Adding Catalog File: oem26.CAT
CatalogDB: 16:24:59 23/01/2010: Adding Catalog File: oem27.CAT
CatalogDB: 16:24:59 23/01/2010: DONE Adding Catalog File: oem27.CAT
CatalogDB: 16:42:48 23/01/2010: Adding Catalog File: oem13.CAT
CatalogDB: 16:42:48 23/01/2010: DONE Adding Catalog File: oem13.CAT
CatalogDB: 16:42:49 23/01/2010: Adding Catalog File: oem14.CAT
CatalogDB: 16:42:49 23/01/2010: DONE Adding Catalog File: oem14.CAT
CatalogDB: 16:42:49 23/01/2010: Adding Catalog File: oem18.CAT
CatalogDB: 16:42:50 23/01/2010: DONE Adding Catalog File: oem18.CAT
CatalogDB: 16:42:50 23/01/2010: Adding Catalog File: oem19.CAT
CatalogDB: 16:42:50 23/01/2010: DONE Adding Catalog File: oem19.CAT
CatalogDB: 16:42:50 23/01/2010: Adding Catalog File: oem20.CAT
CatalogDB: 16:42:50 23/01/2010: DONE Adding Catalog File: oem20.CAT
CatalogDB: 16:42:51 23/01/2010: Adding Catalog File: oem21.CAT
CatalogDB: 16:42:51 23/01/2010: DONE Adding Catalog File: oem21.CAT
CatalogDB: 16:42:51 23/01/2010: Adding Catalog File: oem22.CAT
CatalogDB: 16:42:51 23/01/2010: DONE Adding Catalog File: oem22.CAT
CatalogDB: 16:42:51 23/01/2010: Adding Catalog File: oem23.CAT
CatalogDB: 16:42:52 23/01/2010: DONE Adding Catalog File: oem23.CAT
CatalogDB: 16:42:53 23/01/2010: Adding Catalog File: oem24.CAT
CatalogDB: 16:42:53 23/01/2010: DONE Adding Catalog File: oem24.CAT
CatalogDB: 16:42:53 23/01/2010: Adding Catalog File: oem25.CAT
CatalogDB: 16:42:53 23/01/2010: DONE Adding Catalog File: oem25.CAT
CatalogDB: 16:42:54 23/01/2010: Adding Catalog File: oem26.CAT
CatalogDB: 16:42:54 23/01/2010: DONE Adding Catalog File: oem26.CAT
CatalogDB: 16:42:54 23/01/2010: Adding Catalog File: oem27.CAT
CatalogDB: 16:42:54 23/01/2010: DONE Adding Catalog File: oem27.CAT
CatalogDB: 16:45:03 23/01/2010: Adding Catalog File: drm.cat
CatalogDB: 16:45:03 23/01/2010: DONE Adding Catalog File: drm.cat
CatalogDB: 16:45:04 23/01/2010: Adding Catalog File: WMFSDK.cat
CatalogDB: 16:45:04 23/01/2010: DONE Adding Catalog File: WMFSDK.cat
CatalogDB: 18:39:43 27/01/2010: Adding Catalog File: oem28.CAT
CatalogDB: 18:39:43 27/01/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 18:40:18 27/01/2010: Adding Catalog File: KB978207-IE8.cat
CatalogDB: 18:40:18 27/01/2010: DONE Adding Catalog File: KB978207-IE8.cat
CatalogDB: 17:20:24 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:20:24 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 17:20:34 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:20:35 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 17:23:49 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:23:49 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 17:23:56 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:23:56 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 17:23:59 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:23:59 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 17:24:20 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:24:20 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 17:24:23 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:24:24 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 17:24:27 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:24:27 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 17:24:30 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:24:30 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 17:24:34 10/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 17:24:34 10/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:36:13 11/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 07:36:13 11/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:36:45 11/02/2010: Adding Catalog File: KB977165.cat
CatalogDB: 07:36:45 11/02/2010: DONE Adding Catalog File: KB977165.cat
CatalogDB: 07:36:52 11/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 07:36:52 11/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:36:55 11/02/2010: Adding Catalog File: KB978706.cat
CatalogDB: 07:36:55 11/02/2010: DONE Adding Catalog File: KB978706.cat
CatalogDB: 07:36:58 11/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 07:36:58 11/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:37:03 11/02/2010: Adding Catalog File: KB977914.cat
CatalogDB: 07:37:03 11/02/2010: DONE Adding Catalog File: KB977914.cat
CatalogDB: 07:37:35 11/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 07:37:35 11/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:37:39 11/02/2010: Adding Catalog File: KB975560.cat
CatalogDB: 07:37:39 11/02/2010: DONE Adding Catalog File: KB975560.cat
CatalogDB: 07:37:43 11/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 07:37:43 11/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:37:45 11/02/2010: Adding Catalog File: KB978251.cat
CatalogDB: 07:37:45 11/02/2010: DONE Adding Catalog File: KB978251.cat
CatalogDB: 07:37:48 11/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 07:37:48 11/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:37:51 11/02/2010: Adding Catalog File: KB975713.cat
CatalogDB: 07:37:51 11/02/2010: DONE Adding Catalog File: KB975713.cat
CatalogDB: 07:37:55 11/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 07:37:55 11/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:37:58 11/02/2010: Adding Catalog File: KB978037.cat
CatalogDB: 07:37:58 11/02/2010: DONE Adding Catalog File: KB978037.cat
CatalogDB: 07:39:56 11/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 07:39:56 11/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:39:58 11/02/2010: Adding Catalog File: KB971468.cat
CatalogDB: 07:39:58 11/02/2010: DONE Adding Catalog File: KB971468.cat
CatalogDB: 07:40:01 11/02/2010: Adding Catalog File: oem28.CAT
CatalogDB: 07:40:01 11/02/2010: DONE Adding Catalog File: oem28.CAT
CatalogDB: 07:40:04 11/02/2010: Adding Catalog File: KB978262.cat
CatalogDB: 07:40:04 11/02/2010: DONE Adding Catalog File: KB978262.cat
CatalogDB: 09:25:11 12/02/2010: WAITSVC: Calling StartService(): CryptSvc
CatalogDB: 09:25:35 12/02/2010: WAITSVC: Service is running: CryptSvc
CatalogDB: 18:02:03 14/02/2010: WAITSVC: Calling StartService(): CryptSvc
CatalogDB: 18:02:42 14/02/2010: WAITSVC: Service is running: CryptSvc
CatalogDB: 10:25:54 15/02/2010: WAITSVC: Calling StartService(): CryptSvc
CatalogDB: 10:26:28 15/02/2010: WAITSVC: Service is running: CryptSvc
CatalogDB: 16:00:18 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:00:18 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:03:08 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:04:27 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:06:29 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:07:01 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:07:22 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:22:41 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:22:41 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:22:41 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:22:41 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:22:41 16/02/2010: File #2 at line #1477 encountered error 0x00000057
CatalogDB: 16:32:41 16/02/2010: File #2 at line #1477 encountered error 0x00000057
Sinon, Ced_King m'indiquait de cliquer sur le lien suivant Télécharge Malwarebytes' Anti-Malware :
http://www.malwarebytes.org/mbam/program/mbam-setup.exe
mais impossible d'accéder à la page !!
roudoude03
Messages postés
28
Date d'inscription
mardi 16 février 2010
Statut
Membre
Dernière intervention
17 février 2010
>
Utilisateur anonyme
16 févr. 2010 à 18:50
16 févr. 2010 à 18:50
Nathandre, peux-tu me venir en aide maintenant que j'ai posé le USBFix.txt ??
Merci.
Merci.
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
roudoude03
Messages postés
28
Date d'inscription
mardi 16 février 2010
Statut
Membre
Dernière intervention
17 février 2010
16 févr. 2010 à 17:05
16 févr. 2010 à 17:05
Dsl mais quand je double-clique sur UsbFix.exe qui s'est installé sur mon bureau, il me demande si je veux Exécuter ou Annuler. Je clique sur Exécuter, et là une fenêtre "Archive auto-extractible" s'ouvre avec pour dossier desination mon Bureau, je fais installer et plusieurs fichiers viennent sur bureau, et c'est tout. J'ai fait une recherche dans l'explorateur, sous C, pour trouver le UsbFix.txt, mais rien ????
Merci à toi pour ton aide.
Ced_King, en ce qui concerne les proxy sous IExplorer, j'avais déjà de coché dans Connexions "Ne jamais établir de connexion", c'est OK ?
Merci à toi pour ton aide.
Ced_King, en ce qui concerne les proxy sous IExplorer, j'avais déjà de coché dans Connexions "Ne jamais établir de connexion", c'est OK ?
roudoude03
Messages postés
28
Date d'inscription
mardi 16 février 2010
Statut
Membre
Dernière intervention
17 février 2010
16 févr. 2010 à 17:37
16 févr. 2010 à 17:37
J'ai un 2nd PC à la maison, et j'ai donc pu récupérer le Malwarebytes' Anti-Malware.exe.
Après avoir procédé comme indiqué par Ced_King, voilà le rapport :
Malwarebytes' Anti-Malware 1.44
Version de la base de données: 3510
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
16/02/2010 17:31:00
mbam-log-2010-02-16 (17-31-00).txt
Type de recherche: Examen rapide
Eléments examinés: 119086
Temps écoulé: 14 minute(s), 59 second(s)
Processus mémoire infecté(s): 2
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 2
Valeur(s) du Registre infectée(s): 4
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 8
Processus mémoire infecté(s):
C:\Documents and Settings\Delphine\Application Data\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe (Rogue.Eorezo) -> Unloaded process successfully.
C:\WINDOWS\pp14.exe (Worm.KoobFace) -> Unloaded process successfully.
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\CLSID\{147a976f-eee1-4377-8ea7-4716e4cdd239} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\EoRezo (Rogue.Eorezo) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\softwarehelper (Rogue.Eorezo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysldtray (Worm.KoobFace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\pp (Worm.KoobFace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysfbtray (Worm.KoobFace) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
C:\Documents and Settings\Delphine\Application Data\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe (Rogue.Eorezo) -> Quarantined and deleted successfully.
C:\WINDOWS\bk20856.dat (KoobFace.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\010112010146114101.xxe (KoobFace.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\01011201014650115.xxe (KoobFace.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\bk23567.dat (KoobFace.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\fdgg34353edfgdfdf (KoobFace.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\ld16.exe (Worm.KoobFace) -> Quarantined and deleted successfully.
C:\WINDOWS\pp14.exe (Worm.KoobFace) -> Quarantined and deleted successfully.
Qu'en pensez-vous ?
Merci.
Après avoir procédé comme indiqué par Ced_King, voilà le rapport :
Malwarebytes' Anti-Malware 1.44
Version de la base de données: 3510
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
16/02/2010 17:31:00
mbam-log-2010-02-16 (17-31-00).txt
Type de recherche: Examen rapide
Eléments examinés: 119086
Temps écoulé: 14 minute(s), 59 second(s)
Processus mémoire infecté(s): 2
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 2
Valeur(s) du Registre infectée(s): 4
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 8
Processus mémoire infecté(s):
C:\Documents and Settings\Delphine\Application Data\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe (Rogue.Eorezo) -> Unloaded process successfully.
C:\WINDOWS\pp14.exe (Worm.KoobFace) -> Unloaded process successfully.
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\CLSID\{147a976f-eee1-4377-8ea7-4716e4cdd239} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\EoRezo (Rogue.Eorezo) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\softwarehelper (Rogue.Eorezo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysldtray (Worm.KoobFace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\pp (Worm.KoobFace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysfbtray (Worm.KoobFace) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
C:\Documents and Settings\Delphine\Application Data\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe (Rogue.Eorezo) -> Quarantined and deleted successfully.
C:\WINDOWS\bk20856.dat (KoobFace.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\010112010146114101.xxe (KoobFace.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\01011201014650115.xxe (KoobFace.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\bk23567.dat (KoobFace.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\fdgg34353edfgdfdf (KoobFace.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\ld16.exe (Worm.KoobFace) -> Quarantined and deleted successfully.
C:\WINDOWS\pp14.exe (Worm.KoobFace) -> Quarantined and deleted successfully.
Qu'en pensez-vous ?
Merci.
Ced_King
Messages postés
3519
Date d'inscription
lundi 2 mars 2009
Statut
Contributeur
Dernière intervention
10 octobre 2016
572
16 févr. 2010 à 17:43
16 févr. 2010 à 17:43
Très bien, juste que Malwarebytes n'est pas à jour
Donc, clique sur l'onglet mise à jour de MBAM et fais la mise à jour
Puis refais un scan rapide et poste le contenu du rapport...
-----------------------------
Pour USBFix, essayes avec ce lien
http://pagesperso-orange.fr/NosTools/Chiquitine29/UsbFix.exe
...
Donc, clique sur l'onglet mise à jour de MBAM et fais la mise à jour
Puis refais un scan rapide et poste le contenu du rapport...
-----------------------------
Pour USBFix, essayes avec ce lien
http://pagesperso-orange.fr/NosTools/Chiquitine29/UsbFix.exe
...
roudoude03
Messages postés
28
Date d'inscription
mardi 16 février 2010
Statut
Membre
Dernière intervention
17 février 2010
16 févr. 2010 à 18:09
16 févr. 2010 à 18:09
Impossible de mettre à jour Malwarebytes avec mon PC vérolé... par contre je peux avec le 2nd PC mais je ne sais pas comment récupérer cette mise à jour ??? (je suis pas très douée vous avez remarqué !!).
Avec USBFix, j'ai trouvé, il fallait que je double clique sur le fichier Go.exe créé, et voilà le rapport :
############################## | UsbFix V6.095 |
User : Delphine (Administrateurs) # DURANTON
Update on 15/02/2010 by El Desaparecido , C_XX & Chimay8
Start at: 18:07:01 | 16/02/2010
Website : http://pagesperso-orange.fr/NosTools/index.html
Contact : FindyKill.Contact@gmail.com
Intel(R) Celeron(R) CPU E1200 @ 1.60GHz
Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
Internet Explorer 8.0.6001.18702
Windows Firewall Status : Enabled
AV : avast! Antivirus 5.0.83886498 [ Enabled | Updated ]
C:\ -> Disque fixe local # 146,48 Go (73,79 Go free) # NTFS
D:\ -> Disque fixe local # 86,39 Go (85,24 Go free) # NTFS
E:\ -> Disque CD-ROM
F:\ -> Disque amovible
G:\ -> Disque amovible
H:\ -> Disque amovible
I:\ -> Disque amovible
J:\ -> Disque fixe local # 465,76 Go (321,37 Go free) [Expansion Drive] # NTFS
K:\ -> Disque amovible # 7,46 Go (7,45 Go free) [USB DISK] # FAT32
############################## | Processus actifs |
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\SFR\Pack Sécurité\Common\FSM32.EXE
C:\WINDOWS\VM303_STI.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Fichiers communs\Nero\Lib\NMIndexStoreSvr.exe
C:\Program Files\TomTom HOME 2\HOMERunner.exe
C:\Program Files\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Documents and Settings\Delphine\Local Settings\Application Data\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\WINDOWS\system32\svchost.exe
C:\Documents and Settings\Delphine\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTSvcCDA.EXE
C:\Program Files\SFR\Pack Sécurité\Common\FSMA32.EXE
C:\Program Files\SFR\Pack Sécurité\Common\FSMB32.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\SFR\Pack Sécurité\Common\FCH32.EXE
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\Program Files\SFR\Pack Sécurité\Common\FAMEH32.EXE
C:\Program Files\SFR\Pack Sécurité\FSPC\fspc.exe
C:\WINDOWS\sYSteM32\SvchOst.eXE
C:\WINDOWS\system32\IoctlSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\SFR\Pack Sécurité\FSGUI\fsguidll.exe
C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe
C:\Program Files\SFR\Pack Sécurité\FSAUA\program\fsaua.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\SFR\Pack Sécurité\FSAUA\program\fsus.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
################## | Elements infectieux |
J:\autorun.inf
################## | Registre |
################## | Mountpoints2 |
HKCU\..\..\Explorer\MountPoints2\{2b5a71b8-cb9e-11de-be50-001d92f88771}
Shell\AutoRun\command =K:\LaunchU3.exe -a
HKCU\..\..\Explorer\MountPoints2\{3dd1536d-e57f-11dd-bbe1-001d92f88771}
Shell\AutoRun\command =J:\autorun.exe
HKCU\..\..\Explorer\MountPoints2\{928d1f0a-f45b-11dd-bc01-001d92f88771}
Shell\AutoRun\command =J:\InstallTomTomHOME.exe
################## | Vaccin |
(!) Cet ordinateur n'est pas vacciné !
################## | ! Fin du rapport # UsbFix V6.095 ! |
Avec USBFix, j'ai trouvé, il fallait que je double clique sur le fichier Go.exe créé, et voilà le rapport :
############################## | UsbFix V6.095 |
User : Delphine (Administrateurs) # DURANTON
Update on 15/02/2010 by El Desaparecido , C_XX & Chimay8
Start at: 18:07:01 | 16/02/2010
Website : http://pagesperso-orange.fr/NosTools/index.html
Contact : FindyKill.Contact@gmail.com
Intel(R) Celeron(R) CPU E1200 @ 1.60GHz
Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
Internet Explorer 8.0.6001.18702
Windows Firewall Status : Enabled
AV : avast! Antivirus 5.0.83886498 [ Enabled | Updated ]
C:\ -> Disque fixe local # 146,48 Go (73,79 Go free) # NTFS
D:\ -> Disque fixe local # 86,39 Go (85,24 Go free) # NTFS
E:\ -> Disque CD-ROM
F:\ -> Disque amovible
G:\ -> Disque amovible
H:\ -> Disque amovible
I:\ -> Disque amovible
J:\ -> Disque fixe local # 465,76 Go (321,37 Go free) [Expansion Drive] # NTFS
K:\ -> Disque amovible # 7,46 Go (7,45 Go free) [USB DISK] # FAT32
############################## | Processus actifs |
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\SFR\Pack Sécurité\Common\FSM32.EXE
C:\WINDOWS\VM303_STI.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Fichiers communs\Nero\Lib\NMIndexStoreSvr.exe
C:\Program Files\TomTom HOME 2\HOMERunner.exe
C:\Program Files\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Documents and Settings\Delphine\Local Settings\Application Data\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\WINDOWS\system32\svchost.exe
C:\Documents and Settings\Delphine\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTSvcCDA.EXE
C:\Program Files\SFR\Pack Sécurité\Common\FSMA32.EXE
C:\Program Files\SFR\Pack Sécurité\Common\FSMB32.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\SFR\Pack Sécurité\Common\FCH32.EXE
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\Program Files\SFR\Pack Sécurité\Common\FAMEH32.EXE
C:\Program Files\SFR\Pack Sécurité\FSPC\fspc.exe
C:\WINDOWS\sYSteM32\SvchOst.eXE
C:\WINDOWS\system32\IoctlSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\SFR\Pack Sécurité\FSGUI\fsguidll.exe
C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe
C:\Program Files\SFR\Pack Sécurité\FSAUA\program\fsaua.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\SFR\Pack Sécurité\FSAUA\program\fsus.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
################## | Elements infectieux |
J:\autorun.inf
################## | Registre |
################## | Mountpoints2 |
HKCU\..\..\Explorer\MountPoints2\{2b5a71b8-cb9e-11de-be50-001d92f88771}
Shell\AutoRun\command =K:\LaunchU3.exe -a
HKCU\..\..\Explorer\MountPoints2\{3dd1536d-e57f-11dd-bbe1-001d92f88771}
Shell\AutoRun\command =J:\autorun.exe
HKCU\..\..\Explorer\MountPoints2\{928d1f0a-f45b-11dd-bc01-001d92f88771}
Shell\AutoRun\command =J:\InstallTomTomHOME.exe
################## | Vaccin |
(!) Cet ordinateur n'est pas vacciné !
################## | ! Fin du rapport # UsbFix V6.095 ! |
Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) susceptible d avoir été infectés sans les ouvrir
# Double clic sur le raccourci UsbFix présent sur ton bureau
# Sélectionne l'option 2 ( Suppression )
# Ton bureau disparaitra et le pc redémarrera .
# Au redémarrage , UsbFix scannera ton pc , laisse travailler l'outil.
# Ensuite poste le rapport UsbFix.txt qui apparaitra avec le bureau .
# Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque.( C:\UsbFix.txt )
( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
# Double clic sur le raccourci UsbFix présent sur ton bureau
# Sélectionne l'option 2 ( Suppression )
# Ton bureau disparaitra et le pc redémarrera .
# Au redémarrage , UsbFix scannera ton pc , laisse travailler l'outil.
# Ensuite poste le rapport UsbFix.txt qui apparaitra avec le bureau .
# Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque.( C:\UsbFix.txt )
( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
roudoude03
Messages postés
28
Date d'inscription
mardi 16 février 2010
Statut
Membre
Dernière intervention
17 février 2010
16 févr. 2010 à 21:00
16 févr. 2010 à 21:00
Tout s'est déroulé comme indiqué, voilà le rapport :
############################## | UsbFix V6.095 |
User : Delphine (Administrateurs) # DURANTON
Update on 15/02/2010 by El Desaparecido , C_XX & Chimay8
Start at: 20:53:59 | 16/02/2010
Website : http://pagesperso-orange.fr/NosTools/index.html
Contact : FindyKill.Contact@gmail.com
Intel(R) Celeron(R) CPU E1200 @ 1.60GHz
Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
Internet Explorer 8.0.6001.18702
Windows Firewall Status : Enabled
AV : avast! Antivirus 5.0.83886498 [ Enabled | Updated ]
C:\ -> Disque fixe local # 146,48 Go (73,73 Go free) # NTFS
D:\ -> Disque fixe local # 86,39 Go (85,24 Go free) # NTFS
E:\ -> Disque CD-ROM
F:\ -> Disque amovible
G:\ -> Disque amovible
H:\ -> Disque amovible
I:\ -> Disque amovible
J:\ -> Disque fixe local # 465,76 Go (321,37 Go free) [Expansion Drive] # NTFS
K:\ -> Disque amovible # 7,46 Go (7,45 Go free) [USB DISK] # FAT32
############################## | Processus actifs |
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\logonui.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast5\setup\avast.setup
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTSvcCDA.EXE
C:\Program Files\SFR\Pack Sécurité\Common\FSMA32.EXE
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\SFR\Pack Sécurité\Common\FSMB32.EXE
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\SFR\Pack Sécurité\Common\FCH32.EXE
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\Program Files\SFR\Pack Sécurité\Common\FAMEH32.EXE
C:\Program Files\SFR\Pack Sécurité\FSPC\fspc.exe
C:\WINDOWS\sYSteM32\SvchOst.eXE
C:\WINDOWS\system32\IoctlSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\SFR\Pack Sécurité\FSAUA\program\fsaua.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\SFR\Pack Sécurité\FSAUA\program\licmgr.exe
C:\Program Files\SFR\Pack Sécurité\FSAUA\program\ih8.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\SFR\Pack Sécurité\Common\fsrah32.exe
################## | Elements infectieux |
Supprimé ! C:\DOCUME~1\Delphine\LOCALS~1\Temp\73BAB2C7-2256-478C-A2F3-CEC110A1884C.exe
Supprimé ! C:\Recycler\S-1-5-21-1482476501-630328440-725345543-1003
Supprimé ! D:\Recycler\S-1-5-21-1482476501-630328440-725345543-1003
Supprimé ! J:\autorun.inf
Supprimé ! J:\Recycler\S-1-5-21-1482476501-630328440-725345543-1003
################## | Registre |
################## | Mountpoints2 |
Supprimé ! HKCU\...\Explorer\MountPoints2\{2b5a71b8-cb9e-11de-be50-001d92f88771}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{3dd1536d-e57f-11dd-bbe1-001d92f88771}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{928d1f0a-f45b-11dd-bc01-001d92f88771}\Shell\AutoRun\Command
################## | Listing des fichiers présent |
[26/12/2008 17:46|--a------|0] C:\AUTOEXEC.BAT
[26/12/2008 17:42|---hs----|212] C:\boot.ini
[07/09/2002 01:00|-rahs----|4952] C:\Bootfont.bin
[26/12/2008 17:46|--a------|0] C:\CONFIG.SYS
[11/08/2009 14:44|--a------|177] C:\debugInstaller.txt
[24/05/2009 14:03|--a------|6794] C:\dj-platine.gif
[26/12/2008 17:46|-rahs----|0] C:\IO.SYS
[26/12/2008 17:46|-rahs----|0] C:\MSDOS.SYS
[03/08/2004 21:38|-rahs----|47564] C:\NTDETECT.COM
[21/08/2009 14:28|-rahs----|252240] C:\ntldr
[?|?|?] C:\pagefile.sys
[24/05/2009 14:07|--ahs----|7680] C:\Thumbs.db
[16/02/2010 20:58|--a------|4182] C:\UsbFix.txt
[19/01/2010 11:03|--ahs----|27136] D:\Thumbs.db
[16/01/2009 08:14|--a------|156312] J:\Setup.exe
[13/08/2009 18:54|--ahs----|13824] J:\Thumbs.db
################## | Vaccination |
# C:\autorun.inf -> Dossier créé par UsbFix (El Desaparecido).
# D:\autorun.inf -> Dossier créé par UsbFix (El Desaparecido).
# J:\autorun.inf -> Dossier créé par UsbFix (El Desaparecido).
# K:\autorun.inf -> Dossier créé par UsbFix (El Desaparecido).
################## | Upload |
Veuillez envoyer le fichier : C:\UsbFix_Upload_Me_DURANTON.zip : https://www.ionos.fr/?affiliate_id=77097
Merci pour votre contribution .
################## | ! Fin du rapport # UsbFix V6.095 ! |
############################## | UsbFix V6.095 |
User : Delphine (Administrateurs) # DURANTON
Update on 15/02/2010 by El Desaparecido , C_XX & Chimay8
Start at: 20:53:59 | 16/02/2010
Website : http://pagesperso-orange.fr/NosTools/index.html
Contact : FindyKill.Contact@gmail.com
Intel(R) Celeron(R) CPU E1200 @ 1.60GHz
Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
Internet Explorer 8.0.6001.18702
Windows Firewall Status : Enabled
AV : avast! Antivirus 5.0.83886498 [ Enabled | Updated ]
C:\ -> Disque fixe local # 146,48 Go (73,73 Go free) # NTFS
D:\ -> Disque fixe local # 86,39 Go (85,24 Go free) # NTFS
E:\ -> Disque CD-ROM
F:\ -> Disque amovible
G:\ -> Disque amovible
H:\ -> Disque amovible
I:\ -> Disque amovible
J:\ -> Disque fixe local # 465,76 Go (321,37 Go free) [Expansion Drive] # NTFS
K:\ -> Disque amovible # 7,46 Go (7,45 Go free) [USB DISK] # FAT32
############################## | Processus actifs |
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\logonui.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast5\setup\avast.setup
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTSvcCDA.EXE
C:\Program Files\SFR\Pack Sécurité\Common\FSMA32.EXE
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\SFR\Pack Sécurité\Common\FSMB32.EXE
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\SFR\Pack Sécurité\Common\FCH32.EXE
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\Program Files\SFR\Pack Sécurité\Common\FAMEH32.EXE
C:\Program Files\SFR\Pack Sécurité\FSPC\fspc.exe
C:\WINDOWS\sYSteM32\SvchOst.eXE
C:\WINDOWS\system32\IoctlSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\SFR\Pack Sécurité\FSAUA\program\fsaua.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\SFR\Pack Sécurité\FSAUA\program\licmgr.exe
C:\Program Files\SFR\Pack Sécurité\FSAUA\program\ih8.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\SFR\Pack Sécurité\Common\fsrah32.exe
################## | Elements infectieux |
Supprimé ! C:\DOCUME~1\Delphine\LOCALS~1\Temp\73BAB2C7-2256-478C-A2F3-CEC110A1884C.exe
Supprimé ! C:\Recycler\S-1-5-21-1482476501-630328440-725345543-1003
Supprimé ! D:\Recycler\S-1-5-21-1482476501-630328440-725345543-1003
Supprimé ! J:\autorun.inf
Supprimé ! J:\Recycler\S-1-5-21-1482476501-630328440-725345543-1003
################## | Registre |
################## | Mountpoints2 |
Supprimé ! HKCU\...\Explorer\MountPoints2\{2b5a71b8-cb9e-11de-be50-001d92f88771}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{3dd1536d-e57f-11dd-bbe1-001d92f88771}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{928d1f0a-f45b-11dd-bc01-001d92f88771}\Shell\AutoRun\Command
################## | Listing des fichiers présent |
[26/12/2008 17:46|--a------|0] C:\AUTOEXEC.BAT
[26/12/2008 17:42|---hs----|212] C:\boot.ini
[07/09/2002 01:00|-rahs----|4952] C:\Bootfont.bin
[26/12/2008 17:46|--a------|0] C:\CONFIG.SYS
[11/08/2009 14:44|--a------|177] C:\debugInstaller.txt
[24/05/2009 14:03|--a------|6794] C:\dj-platine.gif
[26/12/2008 17:46|-rahs----|0] C:\IO.SYS
[26/12/2008 17:46|-rahs----|0] C:\MSDOS.SYS
[03/08/2004 21:38|-rahs----|47564] C:\NTDETECT.COM
[21/08/2009 14:28|-rahs----|252240] C:\ntldr
[?|?|?] C:\pagefile.sys
[24/05/2009 14:07|--ahs----|7680] C:\Thumbs.db
[16/02/2010 20:58|--a------|4182] C:\UsbFix.txt
[19/01/2010 11:03|--ahs----|27136] D:\Thumbs.db
[16/01/2009 08:14|--a------|156312] J:\Setup.exe
[13/08/2009 18:54|--ahs----|13824] J:\Thumbs.db
################## | Vaccination |
# C:\autorun.inf -> Dossier créé par UsbFix (El Desaparecido).
# D:\autorun.inf -> Dossier créé par UsbFix (El Desaparecido).
# J:\autorun.inf -> Dossier créé par UsbFix (El Desaparecido).
# K:\autorun.inf -> Dossier créé par UsbFix (El Desaparecido).
################## | Upload |
Veuillez envoyer le fichier : C:\UsbFix_Upload_Me_DURANTON.zip : https://www.ionos.fr/?affiliate_id=77097
Merci pour votre contribution .
################## | ! Fin du rapport # UsbFix V6.095 ! |
roudoude03
Messages postés
28
Date d'inscription
mardi 16 février 2010
Statut
Membre
Dernière intervention
17 février 2010
16 févr. 2010 à 21:18
16 févr. 2010 à 21:18
Oui, j'ai envoyé le fichier.
J'ai l'impression qu'il y a toujours des problèmes.
Voilà ce que j'obtiens avec RSIT.
Logfile of random's system information tool 1.06 (written by random/random)
Run by Delphine at 2010-02-16 21:17:12
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 76 GB (50%) free of 150 GB
Total RAM: 2037 MB (74% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:17:15, on 16/02/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTSvcCDA.EXE
C:\Program Files\SFR\Pack Sécurité\Common\FSMA32.EXE
C:\Program Files\SFR\Pack Sécurité\Common\FSMB32.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\SFR\Pack Sécurité\Common\FCH32.EXE
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\Program Files\SFR\Pack Sécurité\Common\FAMEH32.EXE
C:\Program Files\SFR\Pack Sécurité\FSPC\fspc.exe
C:\WINDOWS\sYSteM32\SvchOst.eXE
C:\WINDOWS\system32\IoctlSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\SFR\Pack Sécurité\FSAUA\program\fsaua.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\SFR\Pack Sécurité\FSAUA\program\fsus.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\sauvegarde\logiciels\RSIT.exe
C:\Program Files\trend micro\Delphine.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll
O2 - BHO: PDFCreator Toolbar Helper - {C451C08A-EC37-45DF-AAAD-18B51AB5E837} - C:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\1.bin\ASKTBAR.DLL
O3 - Toolbar: Ask Toolbar - {FE063DB9-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\1.bin\ASKTBAR.DLL
O3 - Toolbar: PDFCreator Toolbar - {31CF9EBE-5755-4A1D-AC25-2834D952D9B4} - C:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [adiras] adiras.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\SFR\Pack Sécurité\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\SFR\Pack Sécurité\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [BigDog303] C:\WINDOWS\VM303_STI.EXE VIMICRO USB PC Camera (ZC0301PLH)
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\HOMERunner.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Delphine\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DLD.EXE] C:\Program Files\Download Direct\DLD.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Notification de cadeaux MSN.lnk = C:\Documents and Settings\Delphine\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
O4 - Startup: Outil de détection de support Picture Motion Browser.lnk = C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O9 - Extra button: Parental... - {200DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\SFR\Pack Sécurité\FSPC\fspcmsie.dll
O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\SFR\Pack Sécurité\FSPC\fspcmsie.dll
O9 - Extra 'Tools' menuitem: Parental... - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\SFR\Pack Sécurité\FSPC\fspcmsie.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0972B098-DEE9-4279-AC7E-4BAAA029102D} (PhotoboxPhotowaysUploader5 Control) - http://assets.photobox.com/assets/aurigma/ImageUploader5.cab?20090713123819
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/fr/uno1/GAME_UNO1.cab
O16 - DPF: {7584C670-2274-4EFB-B00B-D6AABA6D3850} (Microsoft RDP Client Control (redist)) - http://www.mediapluspro.com/mediaplus66/Download/msrdp.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{DC22BB60-36A0-459A-9421-F59B0C589739}: NameServer = 192.168.1.1
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTSvcCDA.EXE
O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\SFR\Pack Sécurité\FSAUA\program\fsaua.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\SFR\Pack Sécurité\Common\FSMA32.EXE
O23 - Service: Service Google Update (gupdate1c9a7cae23ab360) (gupdate1c9a7cae23ab360) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Unknown owner - C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
J'ai l'impression qu'il y a toujours des problèmes.
Voilà ce que j'obtiens avec RSIT.
Logfile of random's system information tool 1.06 (written by random/random)
Run by Delphine at 2010-02-16 21:17:12
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 76 GB (50%) free of 150 GB
Total RAM: 2037 MB (74% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:17:15, on 16/02/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTSvcCDA.EXE
C:\Program Files\SFR\Pack Sécurité\Common\FSMA32.EXE
C:\Program Files\SFR\Pack Sécurité\Common\FSMB32.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\SFR\Pack Sécurité\Common\FCH32.EXE
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\Program Files\SFR\Pack Sécurité\Common\FAMEH32.EXE
C:\Program Files\SFR\Pack Sécurité\FSPC\fspc.exe
C:\WINDOWS\sYSteM32\SvchOst.eXE
C:\WINDOWS\system32\IoctlSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\SFR\Pack Sécurité\FSAUA\program\fsaua.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\SFR\Pack Sécurité\FSAUA\program\fsus.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\sauvegarde\logiciels\RSIT.exe
C:\Program Files\trend micro\Delphine.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll
O2 - BHO: PDFCreator Toolbar Helper - {C451C08A-EC37-45DF-AAAD-18B51AB5E837} - C:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\1.bin\ASKTBAR.DLL
O3 - Toolbar: Ask Toolbar - {FE063DB9-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\1.bin\ASKTBAR.DLL
O3 - Toolbar: PDFCreator Toolbar - {31CF9EBE-5755-4A1D-AC25-2834D952D9B4} - C:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [adiras] adiras.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\SFR\Pack Sécurité\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\SFR\Pack Sécurité\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [BigDog303] C:\WINDOWS\VM303_STI.EXE VIMICRO USB PC Camera (ZC0301PLH)
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\HOMERunner.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Delphine\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DLD.EXE] C:\Program Files\Download Direct\DLD.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Notification de cadeaux MSN.lnk = C:\Documents and Settings\Delphine\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
O4 - Startup: Outil de détection de support Picture Motion Browser.lnk = C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O9 - Extra button: Parental... - {200DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\SFR\Pack Sécurité\FSPC\fspcmsie.dll
O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\SFR\Pack Sécurité\FSPC\fspcmsie.dll
O9 - Extra 'Tools' menuitem: Parental... - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\SFR\Pack Sécurité\FSPC\fspcmsie.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0972B098-DEE9-4279-AC7E-4BAAA029102D} (PhotoboxPhotowaysUploader5 Control) - http://assets.photobox.com/assets/aurigma/ImageUploader5.cab?20090713123819
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/fr/uno1/GAME_UNO1.cab
O16 - DPF: {7584C670-2274-4EFB-B00B-D6AABA6D3850} (Microsoft RDP Client Control (redist)) - http://www.mediapluspro.com/mediaplus66/Download/msrdp.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{DC22BB60-36A0-459A-9421-F59B0C589739}: NameServer = 192.168.1.1
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTSvcCDA.EXE
O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\SFR\Pack Sécurité\FSAUA\program\fsaua.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\SFR\Pack Sécurité\Common\FSMA32.EXE
O23 - Service: Service Google Update (gupdate1c9a7cae23ab360) (gupdate1c9a7cae23ab360) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Unknown owner - C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
c'est pas finit car tu es encore infecté
Télécharge AD Remover ( de Cyrildu17 / C_XX ) sur ton bureau :
http://pagesperso-orange.fr/NosTools/C_XX/AD-R.exe
ou
https://www.androidworld.fr/
Désactive l'anti-virus
Déconnecte toi et ferme toutes les applications en cours
Double clique sur le programme d'installation , et installe le dans son emplacement par défaut. ( C:\Program files )
Double-clique sur l'icône Ad-remover présent sur ton bureau pour le lancer
Au menu principal, sélectionne l'option L, puis appuie sur la touche entrée
Poste le rapport qui apparait à la fin .
( le rapport est sauvegardé aussi sous C:\Ad-report(date).log )
(CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
Note :
"Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall
Télécharge AD Remover ( de Cyrildu17 / C_XX ) sur ton bureau :
http://pagesperso-orange.fr/NosTools/C_XX/AD-R.exe
ou
https://www.androidworld.fr/
Désactive l'anti-virus
Déconnecte toi et ferme toutes les applications en cours
Double clique sur le programme d'installation , et installe le dans son emplacement par défaut. ( C:\Program files )
Double-clique sur l'icône Ad-remover présent sur ton bureau pour le lancer
Au menu principal, sélectionne l'option L, puis appuie sur la touche entrée
Poste le rapport qui apparait à la fin .
( le rapport est sauvegardé aussi sous C:\Ad-report(date).log )
(CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
Note :
"Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall
Voilà le rapport AD REMOVER :
.
======= RAPPORT D'AD-REMOVER 1.1.4.6_J | UNIQUEMENT XP/VISTA/7 =======
.
Mis à jour par C_XX le 05.02.2010 à 17:34
Contact: AdRemover.contact@gmail.com
Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
.
Lancé à: 21:59:02, 16/02/2010 | Mode Normal | Option: CLEAN
Exécuté de: C:\Ad-Remover\
Système d'exploitation: Microsoft® Windows XP™ Service Pack 3 v5.1.2600
Nom du PC: DURANTON | Utilisateur actuel: Delphine
.
============== ÉLÉMENT(S) NEUTRALISÉ(S) ==============
.
C:\WINDOWS\Installer\{E1B94435-241E-4519-B1C3-C4DD9EB352A2}
C:\Program Files\AskTBar
C:\DOCUME~1\Delphine\APPLIC~1\eoRezo
C:\Documents and Settings\Delphine\Local Settings\Application Data\Iminent
(!) -- Fichiers temporaires supprimés.
.
HKCU\software\EoRezo
HKCU\software\Iminent
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{0E5CBF21-D15F-11D0-8301-00AA005B4383}
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{FE063DB9-4EC0-403e-8DD8-394C54984B2C}
HKLM\Software\Classes\CLSID\{FE063DB1-4EC0-403e-8DD8-394C54984B2C}
HKLM\Software\Classes\CLSID\{FE063DB9-4EC0-403e-8DD8-394C54984B2C}
HKLM\Software\Classes\CLSID\{FE063DBB-4EC0-403e-8DD8-394C54984B2C}
HKLM\Software\Classes\TypeLib\{937936AF-28CA-4973-B8AE-F250406149A2}
HKLM\software\Iminent
HKLM\Software\Microsoft\Internet Explorer\Toolbar\\{FE063DB9-4EC0-403e-8DD8-394C54984B2C}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FE063DB1-4EC0-403e-8DD8-394C54984B2C}
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\eorezo
HKLM\software\microsoft\windows\currentversion\uninstall\SoftwareUpdate_is1
.
============== Scan additionnel ==============
.
.
* Mozilla FireFox Version 3.5.7 [fr] *
.
Nom du profil: v8h1tnca.default (Delphine)
.
(Delphine, prefs.js) Browser.download.lastDir, C:\sauvegarde\logiciels
(Delphine, prefs.js) Browser.search.selectedEngine, Search
(Delphine, prefs.js) Browser.startup.homepage, hxxp://fr.msn.com/
(Delphine, prefs.js) Extensions.enabledItems, jqs@sun.com:1.0,{20a82645-c095-46ed-80e3-08825760534b}:1.1,{ABDE892B-13A8-4d1b-88E6-365A6E755758}:1.0,{972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.7
(Delphine, prefs.js) Keyword.URL, hxxp://www.sicto.com/search/?ie=UTF-8&oe=UTF-8&sourceid=navclient&gfns=1&rls=Z9ZmLvdt&q=
.
(Delphine, user.js) Browser.search.selectedEngine, Search
(Delphine, user.js) Keyword.URL, hxxp://www.sicto.com/search/?ie=UTF-8&oe=UTF-8&sourceid=navclient&gfns=1&rls=Z9ZmLvdt&q=
.
.
* Internet Explorer Version 8.0.6001.18702 *
.
[HKEY_CURRENT_USER\..\Internet Explorer\Main]
.
Do404Search: 01000000
Local Page: C:\WINDOWS\system32\blank.htm
Show_ToolBar: yes
Enable Browser Extensions: yes
Use Search Asst: no
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Start Page: hxxp://fr.msn.com/
Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Start Page Redirect Cache: hxxp://fr.msn.com/?ocid=iehp
Start Page Redirect Cache_TIMESTAMP: 247f6c3993f8c901
Start Page Redirect Cache AcceptLangs: fr
Search bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]
.
Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Delete_Temp_Files_On_Exit: yes
Local Page: C:\WINDOWS\system32\blank.htm
Start Page: hxxp://fr.msn.com/
Search bar: hxxp://search.msn.com/spbasic.htm
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]
.
Tabs: res://ieframe.dll/tabswelcome.htm
.
============== Suspect (Cracks, Serials, ...) ==============
.
C:\Documents and Settings\Delphine\Mes documents\WII\Softs\Generic Wii Patcher\GenericWiiPatcher.exe
.
===================================
.
3922 Octet(s) - C:\Ad-Report-CLEAN[1].log
.
5560 Fichier(s) - C:\DOCUME~1\Delphine\LOCALS~1\Temp
156 Fichier(s) - C:\WINDOWS\Temp
0 Fichier(s) - C:\WINDOWS\Prefetch
.
19 Fichier(s) - C:\Ad-Remover\BACKUP
36 Fichier(s) - C:\Ad-Remover\QUARANTINE
.
Fin à: 22:03:59 | 16/02/2010 - CLEAN[1]
.
============== E.O.F ==============
.
Est-ce que je réactive l'anti-virus ??
.
======= RAPPORT D'AD-REMOVER 1.1.4.6_J | UNIQUEMENT XP/VISTA/7 =======
.
Mis à jour par C_XX le 05.02.2010 à 17:34
Contact: AdRemover.contact@gmail.com
Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
.
Lancé à: 21:59:02, 16/02/2010 | Mode Normal | Option: CLEAN
Exécuté de: C:\Ad-Remover\
Système d'exploitation: Microsoft® Windows XP™ Service Pack 3 v5.1.2600
Nom du PC: DURANTON | Utilisateur actuel: Delphine
.
============== ÉLÉMENT(S) NEUTRALISÉ(S) ==============
.
C:\WINDOWS\Installer\{E1B94435-241E-4519-B1C3-C4DD9EB352A2}
C:\Program Files\AskTBar
C:\DOCUME~1\Delphine\APPLIC~1\eoRezo
C:\Documents and Settings\Delphine\Local Settings\Application Data\Iminent
(!) -- Fichiers temporaires supprimés.
.
HKCU\software\EoRezo
HKCU\software\Iminent
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{0E5CBF21-D15F-11D0-8301-00AA005B4383}
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{FE063DB9-4EC0-403e-8DD8-394C54984B2C}
HKLM\Software\Classes\CLSID\{FE063DB1-4EC0-403e-8DD8-394C54984B2C}
HKLM\Software\Classes\CLSID\{FE063DB9-4EC0-403e-8DD8-394C54984B2C}
HKLM\Software\Classes\CLSID\{FE063DBB-4EC0-403e-8DD8-394C54984B2C}
HKLM\Software\Classes\TypeLib\{937936AF-28CA-4973-B8AE-F250406149A2}
HKLM\software\Iminent
HKLM\Software\Microsoft\Internet Explorer\Toolbar\\{FE063DB9-4EC0-403e-8DD8-394C54984B2C}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FE063DB1-4EC0-403e-8DD8-394C54984B2C}
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\eorezo
HKLM\software\microsoft\windows\currentversion\uninstall\SoftwareUpdate_is1
.
============== Scan additionnel ==============
.
.
* Mozilla FireFox Version 3.5.7 [fr] *
.
Nom du profil: v8h1tnca.default (Delphine)
.
(Delphine, prefs.js) Browser.download.lastDir, C:\sauvegarde\logiciels
(Delphine, prefs.js) Browser.search.selectedEngine, Search
(Delphine, prefs.js) Browser.startup.homepage, hxxp://fr.msn.com/
(Delphine, prefs.js) Extensions.enabledItems, jqs@sun.com:1.0,{20a82645-c095-46ed-80e3-08825760534b}:1.1,{ABDE892B-13A8-4d1b-88E6-365A6E755758}:1.0,{972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.7
(Delphine, prefs.js) Keyword.URL, hxxp://www.sicto.com/search/?ie=UTF-8&oe=UTF-8&sourceid=navclient&gfns=1&rls=Z9ZmLvdt&q=
.
(Delphine, user.js) Browser.search.selectedEngine, Search
(Delphine, user.js) Keyword.URL, hxxp://www.sicto.com/search/?ie=UTF-8&oe=UTF-8&sourceid=navclient&gfns=1&rls=Z9ZmLvdt&q=
.
.
* Internet Explorer Version 8.0.6001.18702 *
.
[HKEY_CURRENT_USER\..\Internet Explorer\Main]
.
Do404Search: 01000000
Local Page: C:\WINDOWS\system32\blank.htm
Show_ToolBar: yes
Enable Browser Extensions: yes
Use Search Asst: no
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Start Page: hxxp://fr.msn.com/
Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Start Page Redirect Cache: hxxp://fr.msn.com/?ocid=iehp
Start Page Redirect Cache_TIMESTAMP: 247f6c3993f8c901
Start Page Redirect Cache AcceptLangs: fr
Search bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]
.
Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Delete_Temp_Files_On_Exit: yes
Local Page: C:\WINDOWS\system32\blank.htm
Start Page: hxxp://fr.msn.com/
Search bar: hxxp://search.msn.com/spbasic.htm
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]
.
Tabs: res://ieframe.dll/tabswelcome.htm
.
============== Suspect (Cracks, Serials, ...) ==============
.
C:\Documents and Settings\Delphine\Mes documents\WII\Softs\Generic Wii Patcher\GenericWiiPatcher.exe
.
===================================
.
3922 Octet(s) - C:\Ad-Report-CLEAN[1].log
.
5560 Fichier(s) - C:\DOCUME~1\Delphine\LOCALS~1\Temp
156 Fichier(s) - C:\WINDOWS\Temp
0 Fichier(s) - C:\WINDOWS\Prefetch
.
19 Fichier(s) - C:\Ad-Remover\BACKUP
36 Fichier(s) - C:\Ad-Remover\QUARANTINE
.
Fin à: 22:03:59 | 16/02/2010 - CLEAN[1]
.
============== E.O.F ==============
.
Est-ce que je réactive l'anti-virus ??
roudoude03
Messages postés
28
Date d'inscription
mardi 16 février 2010
Statut
Membre
Dernière intervention
17 février 2010
16 févr. 2010 à 22:23
16 févr. 2010 à 22:23
Avast s'était réactivé, je l'ai de nouveau désactivé.
Voilà le RSIT, je pense effectivement qu'il y a toujours un problème ! est-ce qu'on va s'en sortir???
Logfile of random's system information tool 1.06 (written by random/random)
Run by Delphine at 2010-02-16 22:22:40
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 76 GB (51%) free of 150 GB
Total RAM: 2037 MB (70% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:22:41, on 16/02/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTSvcCDA.EXE
C:\Program Files\SFR\Pack Sécurité\Common\FSMA32.EXE
C:\Program Files\SFR\Pack Sécurité\Common\FSMB32.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\SFR\Pack Sécurité\Common\FCH32.EXE
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\Program Files\SFR\Pack Sécurité\Common\FAMEH32.EXE
C:\Program Files\SFR\Pack Sécurité\FSPC\fspc.exe
C:\WINDOWS\sYSteM32\SvchOst.eXE
C:\WINDOWS\system32\IoctlSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\SFR\Pack Sécurité\FSAUA\program\fsaua.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\SFR\Pack Sécurité\FSAUA\program\fsus.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\SFR\Pack Sécurité\Common\FSM32.EXE
C:\WINDOWS\VM303_STI.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Fichiers communs\Nero\Lib\NMIndexStoreSvr.exe
C:\Program Files\TomTom HOME 2\HOMERunner.exe
C:\Program Files\SFR\Pack Sécurité\FSGUI\fsguidll.exe
C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Documents and Settings\Delphine\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\Documents and Settings\Delphine\Local Settings\Application Data\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\wscntfy.exe
C:\sauvegarde\logiciels\RSIT.exe
C:\Program Files\trend micro\Delphine.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll
O2 - BHO: PDFCreator Toolbar Helper - {C451C08A-EC37-45DF-AAAD-18B51AB5E837} - C:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: PDFCreator Toolbar - {31CF9EBE-5755-4A1D-AC25-2834D952D9B4} - C:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [adiras] adiras.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\SFR\Pack Sécurité\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\SFR\Pack Sécurité\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [BigDog303] C:\WINDOWS\VM303_STI.EXE VIMICRO USB PC Camera (ZC0301PLH)
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\HOMERunner.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Delphine\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DLD.EXE] C:\Program Files\Download Direct\DLD.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Notification de cadeaux MSN.lnk = C:\Documents and Settings\Delphine\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
O4 - Startup: Outil de détection de support Picture Motion Browser.lnk = C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O9 - Extra button: Parental... - {200DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\SFR\Pack Sécurité\FSPC\fspcmsie.dll
O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\SFR\Pack Sécurité\FSPC\fspcmsie.dll
O9 - Extra 'Tools' menuitem: Parental... - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\SFR\Pack Sécurité\FSPC\fspcmsie.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0972B098-DEE9-4279-AC7E-4BAAA029102D} (PhotoboxPhotowaysUploader5 Control) - http://assets.photobox.com/assets/aurigma/ImageUploader5.cab?20090713123819
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/fr/uno1/GAME_UNO1.cab
O16 - DPF: {7584C670-2274-4EFB-B00B-D6AABA6D3850} (Microsoft RDP Client Control (redist)) - http://www.mediapluspro.com/mediaplus66/Download/msrdp.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{DC22BB60-36A0-459A-9421-F59B0C589739}: NameServer = 192.168.1.1
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTSvcCDA.EXE
O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\SFR\Pack Sécurité\FSAUA\program\fsaua.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\SFR\Pack Sécurité\Common\FSMA32.EXE
O23 - Service: Service Google Update (gupdate1c9a7cae23ab360) (gupdate1c9a7cae23ab360) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Unknown owner - C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
Voilà le RSIT, je pense effectivement qu'il y a toujours un problème ! est-ce qu'on va s'en sortir???
Logfile of random's system information tool 1.06 (written by random/random)
Run by Delphine at 2010-02-16 22:22:40
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 76 GB (51%) free of 150 GB
Total RAM: 2037 MB (70% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:22:41, on 16/02/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTSvcCDA.EXE
C:\Program Files\SFR\Pack Sécurité\Common\FSMA32.EXE
C:\Program Files\SFR\Pack Sécurité\Common\FSMB32.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\SFR\Pack Sécurité\Common\FCH32.EXE
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\Program Files\SFR\Pack Sécurité\Common\FAMEH32.EXE
C:\Program Files\SFR\Pack Sécurité\FSPC\fspc.exe
C:\WINDOWS\sYSteM32\SvchOst.eXE
C:\WINDOWS\system32\IoctlSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\SFR\Pack Sécurité\FSAUA\program\fsaua.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\SFR\Pack Sécurité\FSAUA\program\fsus.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\SFR\Pack Sécurité\Common\FSM32.EXE
C:\WINDOWS\VM303_STI.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Fichiers communs\Nero\Lib\NMIndexStoreSvr.exe
C:\Program Files\TomTom HOME 2\HOMERunner.exe
C:\Program Files\SFR\Pack Sécurité\FSGUI\fsguidll.exe
C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Documents and Settings\Delphine\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\Documents and Settings\Delphine\Local Settings\Application Data\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\wscntfy.exe
C:\sauvegarde\logiciels\RSIT.exe
C:\Program Files\trend micro\Delphine.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll
O2 - BHO: PDFCreator Toolbar Helper - {C451C08A-EC37-45DF-AAAD-18B51AB5E837} - C:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: PDFCreator Toolbar - {31CF9EBE-5755-4A1D-AC25-2834D952D9B4} - C:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [adiras] adiras.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\SFR\Pack Sécurité\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\SFR\Pack Sécurité\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [BigDog303] C:\WINDOWS\VM303_STI.EXE VIMICRO USB PC Camera (ZC0301PLH)
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\HOMERunner.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Delphine\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DLD.EXE] C:\Program Files\Download Direct\DLD.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Notification de cadeaux MSN.lnk = C:\Documents and Settings\Delphine\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
O4 - Startup: Outil de détection de support Picture Motion Browser.lnk = C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O9 - Extra button: Parental... - {200DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\SFR\Pack Sécurité\FSPC\fspcmsie.dll
O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\SFR\Pack Sécurité\FSPC\fspcmsie.dll
O9 - Extra 'Tools' menuitem: Parental... - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\SFR\Pack Sécurité\FSPC\fspcmsie.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0972B098-DEE9-4279-AC7E-4BAAA029102D} (PhotoboxPhotowaysUploader5 Control) - http://assets.photobox.com/assets/aurigma/ImageUploader5.cab?20090713123819
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/fr/uno1/GAME_UNO1.cab
O16 - DPF: {7584C670-2274-4EFB-B00B-D6AABA6D3850} (Microsoft RDP Client Control (redist)) - http://www.mediapluspro.com/mediaplus66/Download/msrdp.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{DC22BB60-36A0-459A-9421-F59B0C589739}: NameServer = 192.168.1.1
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTSvcCDA.EXE
O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\SFR\Pack Sécurité\FSAUA\program\fsaua.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\SFR\Pack Sécurité\Common\FSMA32.EXE
O23 - Service: Service Google Update (gupdate1c9a7cae23ab360) (gupdate1c9a7cae23ab360) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Unknown owner - C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
C:\WINDOWS\rdr_1266270488.exe
C:\WINDOWS\system32\oko6.dll
Analyse sur Virus Total ces 2 fichiers
https://www.virustotal.com/gui/
Clique sur parcourir
Dans la fenêtre qui s'ouvre, cherche le fichier et sélectionne le, puis clique sur ouvrir
Clique sur envoyer le fichier
une fois le scan terminé, donne moi le résultat
C:\WINDOWS\system32\oko6.dll
Analyse sur Virus Total ces 2 fichiers
https://www.virustotal.com/gui/
Clique sur parcourir
Dans la fenêtre qui s'ouvre, cherche le fichier et sélectionne le, puis clique sur ouvrir
Clique sur envoyer le fichier
une fois le scan terminé, donne moi le résultat
roudoude03
Messages postés
28
Date d'inscription
mardi 16 février 2010
Statut
Membre
Dernière intervention
17 février 2010
16 févr. 2010 à 22:41
16 févr. 2010 à 22:41
Je ne peux pas accéder à cette page internet. J'y arrive avec "en cache", je rentre le fichier à ouvrir mais ensuite même problème, impossible d'ouvrir la page internet après avoir fait "envoyer le fichier".
J'ai remarqué qu'il y avait également un fichier nommé :
C\Windows\rdr_126619639.exe
J'ai remarqué qu'il y avait également un fichier nommé :
C\Windows\rdr_126619639.exe
roudoude03
Messages postés
28
Date d'inscription
mardi 16 février 2010
Statut
Membre
Dernière intervention
17 février 2010
16 févr. 2010 à 22:48
16 févr. 2010 à 22:48
Avec google chrome, je suis réexpédiée vers cette page là, est-ce que ça peut être utile ??
http://www.paretologic.com/lp/antivirusplus/screens/index.html
http://www.paretologic.com/lp/antivirusplus/screens/index.html
roudoude03
Messages postés
28
Date d'inscription
mardi 16 février 2010
Statut
Membre
Dernière intervention
17 février 2010
16 févr. 2010 à 22:52
16 févr. 2010 à 22:52
Tu as une autre solution ?
roudoude03
Messages postés
28
Date d'inscription
mardi 16 février 2010
Statut
Membre
Dernière intervention
17 février 2010
16 févr. 2010 à 23:09
16 févr. 2010 à 23:09
J'ai essayé de télécharger virustotal à partir de clubic, mais quand je fais envoyer vers... échec de l'envoi.
Je désespère !!
Je désespère !!
roudoude03
Messages postés
28
Date d'inscription
mardi 16 février 2010
Statut
Membre
Dernière intervention
17 février 2010
16 févr. 2010 à 23:18
16 févr. 2010 à 23:18
J'ai trouvé l'adresse pour envoi des fichiers suspects par serveur messagerie. Voilà le résultat :
Complete scanning result of "rdr_1266270488.exe", processed in VirusTotal at 02/16/2010 23:14:00 (CET).
[ file data ]
* name..: rdr_1266270488.exe
* size..: 195584
* md5...: e85e36c33d1563831a41ff25a37464be
* sha1..: f594c656786d8ce7f264d5a33fb3d463157bc96b
* peid..: -
[ scan result ]
a-squared 4.5.0.50/20100216 found nothing
AhnLab-V3 5.0.0.2/20100216 found nothing
AntiVir 8.2.1.170/20100216 found [TR/Drop.Agent.bncy]
Antiy-AVL 2.0.3.7/20100216 found nothing
Authentium 5.2.0.5/20100216 found nothing
Avast 4.8.1351.0/20100216 found nothing
AVG 9.0.0.730/20100216 found nothing
BitDefender 7.2/20100216 found nothing
CAT-QuickHeal 10.00/20100216 found nothing
ClamAV 0.96.0.0-git/20100216 found nothing
Comodo 3960/20100216 found nothing
DrWeb 5.0.1.12222/20100216 found nothing
eSafe 7.0.17.0/20100216 found nothing
eTrust-Vet 35.2.7307/20100216 found nothing
F-Prot 4.5.1.85/20100216 found nothing
F-Secure 9.0.15370.0/20100216 found nothing
Fortinet 4.0.14.0/20100215 found nothing
GData 19/20100216 found nothing
Ikarus T3.1.1.80.0/20100216 found nothing
Jiangmin 13.0.900/20100216 found nothing
K7AntiVirus 7.10.974/20100215 found nothing
Kaspersky 7.0.0.125/20100216 found nothing
McAfee 5894/20100216 found nothing
McAfee+Artemis 5894/20100216 found nothing
Microsoft 1.5406/20100216 found nothing
NOD32 4872/20100216 found nothing
Norman 6.04.08/20100216 found nothing
nProtect 2009.1.8.0/20100216 found nothing
Panda 10.0.2.2/20100216 found nothing
PCTools 7.0.3.5/20100216 found nothing
Prevx 3.0/20100216 found nothing
Rising 22.34.01.03/20100211 found nothing
Sophos 4.50.0/20100216 found nothing
Sunbelt 5681/20100216 found nothing
Symantec 20091.2.0.41/20100216 found [Suspicious.Insight]
TheHacker 6.5.1.4.196/20100216 found nothing
TrendMicro 9.120.0.1004/20100216 found nothing
VBA32 3.12.12.2/20100216 found nothing
ViRobot 2010.2.16.2188/20100216 found nothing
VirusBuster 5.0.21.0/20100216 found nothing
____________________________________________________________________________________
Complete scanning result of "rdr_1266319639.exe", processed in VirusTotal at 02/16/2010 23:15:30 (CET).
[ file data ]
* name..: rdr_1266319639.exe
* size..: 195584
* md5...: e85e36c33d1563831a41ff25a37464be
* sha1..: f594c656786d8ce7f264d5a33fb3d463157bc96b
* peid..: -
[ scan result ]
a-squared 4.5.0.50/20100216 found nothing
AhnLab-V3 5.0.0.2/20100216 found nothing
AntiVir 8.2.1.170/20100216 found [TR/Drop.Agent.bncy]
Antiy-AVL 2.0.3.7/20100216 found nothing
Authentium 5.2.0.5/20100216 found nothing
Avast 4.8.1351.0/20100216 found nothing
AVG 9.0.0.730/20100216 found nothing
BitDefender 7.2/20100216 found nothing
CAT-QuickHeal 10.00/20100216 found nothing
ClamAV 0.96.0.0-git/20100216 found nothing
Comodo 3960/20100216 found nothing
DrWeb 5.0.1.12222/20100216 found nothing
eSafe 7.0.17.0/20100216 found nothing
eTrust-Vet 35.2.7307/20100216 found nothing
F-Prot 4.5.1.85/20100216 found nothing
F-Secure 9.0.15370.0/20100216 found nothing
Fortinet 4.0.14.0/20100215 found nothing
GData 19/20100216 found nothing
Ikarus T3.1.1.80.0/20100216 found nothing
Jiangmin 13.0.900/20100216 found nothing
K7AntiVirus 7.10.974/20100215 found nothing
Kaspersky 7.0.0.125/20100216 found nothing
McAfee 5894/20100216 found nothing
McAfee+Artemis 5894/20100216 found nothing
Microsoft 1.5406/20100216 found nothing
NOD32 4872/20100216 found nothing
Norman 6.04.08/20100216 found nothing
nProtect 2009.1.8.0/20100216 found nothing
Panda 10.0.2.2/20100216 found nothing
PCTools 7.0.3.5/20100216 found nothing
Prevx 3.0/20100216 found nothing
Rising 22.34.01.03/20100211 found nothing
Sophos 4.50.0/20100216 found nothing
Sunbelt 5681/20100216 found nothing
Symantec 20091.2.0.41/20100216 found [Suspicious.Insight]
TheHacker 6.5.1.4.196/20100216 found nothing
TrendMicro 9.120.0.1004/20100216 found nothing
VBA32 3.12.12.2/20100216 found nothing
ViRobot 2010.2.16.2188/20100216 found nothing
VirusBuster 5.0.21.0/20100216 found nothing
______________________________________________________________________________________
pas encore la réponse pour le fichier oko6.dll
Complete scanning result of "rdr_1266270488.exe", processed in VirusTotal at 02/16/2010 23:14:00 (CET).
[ file data ]
* name..: rdr_1266270488.exe
* size..: 195584
* md5...: e85e36c33d1563831a41ff25a37464be
* sha1..: f594c656786d8ce7f264d5a33fb3d463157bc96b
* peid..: -
[ scan result ]
a-squared 4.5.0.50/20100216 found nothing
AhnLab-V3 5.0.0.2/20100216 found nothing
AntiVir 8.2.1.170/20100216 found [TR/Drop.Agent.bncy]
Antiy-AVL 2.0.3.7/20100216 found nothing
Authentium 5.2.0.5/20100216 found nothing
Avast 4.8.1351.0/20100216 found nothing
AVG 9.0.0.730/20100216 found nothing
BitDefender 7.2/20100216 found nothing
CAT-QuickHeal 10.00/20100216 found nothing
ClamAV 0.96.0.0-git/20100216 found nothing
Comodo 3960/20100216 found nothing
DrWeb 5.0.1.12222/20100216 found nothing
eSafe 7.0.17.0/20100216 found nothing
eTrust-Vet 35.2.7307/20100216 found nothing
F-Prot 4.5.1.85/20100216 found nothing
F-Secure 9.0.15370.0/20100216 found nothing
Fortinet 4.0.14.0/20100215 found nothing
GData 19/20100216 found nothing
Ikarus T3.1.1.80.0/20100216 found nothing
Jiangmin 13.0.900/20100216 found nothing
K7AntiVirus 7.10.974/20100215 found nothing
Kaspersky 7.0.0.125/20100216 found nothing
McAfee 5894/20100216 found nothing
McAfee+Artemis 5894/20100216 found nothing
Microsoft 1.5406/20100216 found nothing
NOD32 4872/20100216 found nothing
Norman 6.04.08/20100216 found nothing
nProtect 2009.1.8.0/20100216 found nothing
Panda 10.0.2.2/20100216 found nothing
PCTools 7.0.3.5/20100216 found nothing
Prevx 3.0/20100216 found nothing
Rising 22.34.01.03/20100211 found nothing
Sophos 4.50.0/20100216 found nothing
Sunbelt 5681/20100216 found nothing
Symantec 20091.2.0.41/20100216 found [Suspicious.Insight]
TheHacker 6.5.1.4.196/20100216 found nothing
TrendMicro 9.120.0.1004/20100216 found nothing
VBA32 3.12.12.2/20100216 found nothing
ViRobot 2010.2.16.2188/20100216 found nothing
VirusBuster 5.0.21.0/20100216 found nothing
____________________________________________________________________________________
Complete scanning result of "rdr_1266319639.exe", processed in VirusTotal at 02/16/2010 23:15:30 (CET).
[ file data ]
* name..: rdr_1266319639.exe
* size..: 195584
* md5...: e85e36c33d1563831a41ff25a37464be
* sha1..: f594c656786d8ce7f264d5a33fb3d463157bc96b
* peid..: -
[ scan result ]
a-squared 4.5.0.50/20100216 found nothing
AhnLab-V3 5.0.0.2/20100216 found nothing
AntiVir 8.2.1.170/20100216 found [TR/Drop.Agent.bncy]
Antiy-AVL 2.0.3.7/20100216 found nothing
Authentium 5.2.0.5/20100216 found nothing
Avast 4.8.1351.0/20100216 found nothing
AVG 9.0.0.730/20100216 found nothing
BitDefender 7.2/20100216 found nothing
CAT-QuickHeal 10.00/20100216 found nothing
ClamAV 0.96.0.0-git/20100216 found nothing
Comodo 3960/20100216 found nothing
DrWeb 5.0.1.12222/20100216 found nothing
eSafe 7.0.17.0/20100216 found nothing
eTrust-Vet 35.2.7307/20100216 found nothing
F-Prot 4.5.1.85/20100216 found nothing
F-Secure 9.0.15370.0/20100216 found nothing
Fortinet 4.0.14.0/20100215 found nothing
GData 19/20100216 found nothing
Ikarus T3.1.1.80.0/20100216 found nothing
Jiangmin 13.0.900/20100216 found nothing
K7AntiVirus 7.10.974/20100215 found nothing
Kaspersky 7.0.0.125/20100216 found nothing
McAfee 5894/20100216 found nothing
McAfee+Artemis 5894/20100216 found nothing
Microsoft 1.5406/20100216 found nothing
NOD32 4872/20100216 found nothing
Norman 6.04.08/20100216 found nothing
nProtect 2009.1.8.0/20100216 found nothing
Panda 10.0.2.2/20100216 found nothing
PCTools 7.0.3.5/20100216 found nothing
Prevx 3.0/20100216 found nothing
Rising 22.34.01.03/20100211 found nothing
Sophos 4.50.0/20100216 found nothing
Sunbelt 5681/20100216 found nothing
Symantec 20091.2.0.41/20100216 found [Suspicious.Insight]
TheHacker 6.5.1.4.196/20100216 found nothing
TrendMicro 9.120.0.1004/20100216 found nothing
VBA32 3.12.12.2/20100216 found nothing
ViRobot 2010.2.16.2188/20100216 found nothing
VirusBuster 5.0.21.0/20100216 found nothing
______________________________________________________________________________________
pas encore la réponse pour le fichier oko6.dll
roudoude03
Messages postés
28
Date d'inscription
mardi 16 février 2010
Statut
Membre
Dernière intervention
17 février 2010
16 févr. 2010 à 23:20
16 févr. 2010 à 23:20
Dsl mais j'arrête pour ce soir... j'espère qu'on pourra continuer demain ?
Merci beaucoup, ainsi qu'à Ced_King.
Merci beaucoup, ainsi qu'à Ced_King.
roudoude03
Messages postés
28
Date d'inscription
mardi 16 février 2010
Statut
Membre
Dernière intervention
17 février 2010
17 févr. 2010 à 13:16
17 févr. 2010 à 13:16
Bonjour,
Voilà le rapport reçu de VirusTotal concernant le fichier oko6.dll :
Complete scanning result of "oko6.dll", processed in VirusTotal at 02/16/2010 23:19:59 (CET).
[ file data ]
* name..: oko6.dll
* size..: 102400
* md5...: c98aa6e3f113f1039a0bf44c4194cdf4
* sha1..: 619643c44a8261b89db51a57355026517da3a6dd
* peid..: -
[ scan result ]
a-squared 4.5.0.50/20100216 found [Trojan-Proxy.Win32.Koobface!IK]
AhnLab-V3 5.0.0.2/20100216 found nothing
AntiVir 8.2.1.170/20100216 found [TR/Drop.Agent.bmqd.1]
Antiy-AVL 2.0.3.7/20100216 found nothing
Authentium 5.2.0.5/20100216 found nothing
Avast 4.8.1351.0/20100216 found nothing
AVG 9.0.0.730/20100216 found nothing
BitDefender 7.2/20100216 found nothing
CAT-QuickHeal 10.00/20100216 found [TrojanDropper.Agent.bmqd]
ClamAV 0.96.0.0-git/20100216 found nothing
Comodo 3960/20100216 found [TrojWare.Win32.TrojanDropper.Agent.bmqd]
DrWeb 5.0.1.12222/20100216 found nothing
eSafe 7.0.17.0/20100216 found nothing
eTrust-Vet 35.2.7307/20100216 found nothing
F-Prot 4.5.1.85/20100216 found nothing
F-Secure 9.0.15370.0/20100216 found nothing
Fortinet 4.0.14.0/20100215 found [W32/Agent.BMQD!tr]
GData 19/20100216 found nothing
Ikarus T3.1.1.80.0/20100216 found [Trojan-Proxy.Win32.Koobface]
Jiangmin 13.0.900/20100216 found nothing
K7AntiVirus 7.10.974/20100215 found nothing
Kaspersky 7.0.0.125/20100216 found [Trojan-Dropper.Win32.Agent.bmqd]
McAfee 5894/20100216 found nothing
McAfee+Artemis 5894/20100216 found nothing
Microsoft 1.5406/20100216 found [TrojanProxy:Win32/Koobface.gen!G]
NOD32 4872/20100216 found nothing
Norman 6.04.08/20100216 found nothing
nProtect 2009.1.8.0/20100216 found nothing
Panda 10.0.2.2/20100216 found nothing
PCTools 7.0.3.5/20100216 found [Trojan.Generic]
Prevx 3.0/20100216 found [Medium Risk Malware]
Rising 22.34.01.03/20100211 found nothing
Sophos 4.50.0/20100216 found [Mal/Generic-A]
Sunbelt 5681/20100216 found nothing
Symantec 20091.2.0.41/20100216 found [Trojan Horse]
TheHacker 6.5.1.4.196/20100216 found [Trojan/Dropper.Agent.bmqd]
TrendMicro 9.120.0.1004/20100216 found nothing
VBA32 3.12.12.2/20100216 found nothing
ViRobot 2010.2.16.2188/20100216 found nothing
VirusBuster 5.0.21.0/20100216 found nothing
[ notes ]
http://info.prevx.com/aboutprogramtext.asp?PX5=12F1E14400BC9C3B904C017FE8BA7C000119E042
Voilà le rapport reçu de VirusTotal concernant le fichier oko6.dll :
Complete scanning result of "oko6.dll", processed in VirusTotal at 02/16/2010 23:19:59 (CET).
[ file data ]
* name..: oko6.dll
* size..: 102400
* md5...: c98aa6e3f113f1039a0bf44c4194cdf4
* sha1..: 619643c44a8261b89db51a57355026517da3a6dd
* peid..: -
[ scan result ]
a-squared 4.5.0.50/20100216 found [Trojan-Proxy.Win32.Koobface!IK]
AhnLab-V3 5.0.0.2/20100216 found nothing
AntiVir 8.2.1.170/20100216 found [TR/Drop.Agent.bmqd.1]
Antiy-AVL 2.0.3.7/20100216 found nothing
Authentium 5.2.0.5/20100216 found nothing
Avast 4.8.1351.0/20100216 found nothing
AVG 9.0.0.730/20100216 found nothing
BitDefender 7.2/20100216 found nothing
CAT-QuickHeal 10.00/20100216 found [TrojanDropper.Agent.bmqd]
ClamAV 0.96.0.0-git/20100216 found nothing
Comodo 3960/20100216 found [TrojWare.Win32.TrojanDropper.Agent.bmqd]
DrWeb 5.0.1.12222/20100216 found nothing
eSafe 7.0.17.0/20100216 found nothing
eTrust-Vet 35.2.7307/20100216 found nothing
F-Prot 4.5.1.85/20100216 found nothing
F-Secure 9.0.15370.0/20100216 found nothing
Fortinet 4.0.14.0/20100215 found [W32/Agent.BMQD!tr]
GData 19/20100216 found nothing
Ikarus T3.1.1.80.0/20100216 found [Trojan-Proxy.Win32.Koobface]
Jiangmin 13.0.900/20100216 found nothing
K7AntiVirus 7.10.974/20100215 found nothing
Kaspersky 7.0.0.125/20100216 found [Trojan-Dropper.Win32.Agent.bmqd]
McAfee 5894/20100216 found nothing
McAfee+Artemis 5894/20100216 found nothing
Microsoft 1.5406/20100216 found [TrojanProxy:Win32/Koobface.gen!G]
NOD32 4872/20100216 found nothing
Norman 6.04.08/20100216 found nothing
nProtect 2009.1.8.0/20100216 found nothing
Panda 10.0.2.2/20100216 found nothing
PCTools 7.0.3.5/20100216 found [Trojan.Generic]
Prevx 3.0/20100216 found [Medium Risk Malware]
Rising 22.34.01.03/20100211 found nothing
Sophos 4.50.0/20100216 found [Mal/Generic-A]
Sunbelt 5681/20100216 found nothing
Symantec 20091.2.0.41/20100216 found [Trojan Horse]
TheHacker 6.5.1.4.196/20100216 found [Trojan/Dropper.Agent.bmqd]
TrendMicro 9.120.0.1004/20100216 found nothing
VBA32 3.12.12.2/20100216 found nothing
ViRobot 2010.2.16.2188/20100216 found nothing
VirusBuster 5.0.21.0/20100216 found nothing
[ notes ]
http://info.prevx.com/aboutprogramtext.asp?PX5=12F1E14400BC9C3B904C017FE8BA7C000119E042
bonjour
Attention,à ne pas reproduire sur un autre PC, ce qui pourrai l'endommager
▶ Télécharge OTM (de Old_Timer) sur ton Bureau
▶ Double-clique sur OTM.exe pour le lancer.
▶ Assure toi que la case Unregister Dll's and Ocx's soit bien cochée.
▶ Copie la liste qui se trouve en gras dans la citation ci-dessous et colle-la dans le cadre de gauche de OTM sous "Paste instructions for item to be moved".
:files
C:\WINDOWS\rdr_1266319639.exe
C:\WINDOWS\rdr_1266270488.exe
C:\WINDOWS\system32\oko6.dll
C:\WINDOWS\freddy101.exe
:commands
[start explorer]
[reboot]
▶ clique sur MoveIt! pour lancer la suppression.
▶ Le résultat apparaitra dans le cadre "Results".
▶ Clique sur Exit pour fermer.
▶ Poste le rapport situé dans C:\_OTMoveIt\MovedFiles.
▶ Il te sera peut-être demandé de redémarrer le pc pour achever la suppression. Si c'est le cas accepte par Yes.
Attention,à ne pas reproduire sur un autre PC, ce qui pourrai l'endommager
▶ Télécharge OTM (de Old_Timer) sur ton Bureau
▶ Double-clique sur OTM.exe pour le lancer.
▶ Assure toi que la case Unregister Dll's and Ocx's soit bien cochée.
▶ Copie la liste qui se trouve en gras dans la citation ci-dessous et colle-la dans le cadre de gauche de OTM sous "Paste instructions for item to be moved".
:files
C:\WINDOWS\rdr_1266319639.exe
C:\WINDOWS\rdr_1266270488.exe
C:\WINDOWS\system32\oko6.dll
C:\WINDOWS\freddy101.exe
:commands
[start explorer]
[reboot]
▶ clique sur MoveIt! pour lancer la suppression.
▶ Le résultat apparaitra dans le cadre "Results".
▶ Clique sur Exit pour fermer.
▶ Poste le rapport situé dans C:\_OTMoveIt\MovedFiles.
▶ Il te sera peut-être demandé de redémarrer le pc pour achever la suppression. Si c'est le cas accepte par Yes.
roudoude03
Messages postés
28
Date d'inscription
mardi 16 février 2010
Statut
Membre
Dernière intervention
17 février 2010
17 févr. 2010 à 14:38
17 févr. 2010 à 14:38
Tu me dis :
Assure toi que la case Unregister Dll's and Ocx's soit bien cochée.
Mais je n'ai aucune case à cocher. Je continue quand même la procédure ?
Assure toi que la case Unregister Dll's and Ocx's soit bien cochée.
Mais je n'ai aucune case à cocher. Je continue quand même la procédure ?
roudoude03
Messages postés
28
Date d'inscription
mardi 16 février 2010
Statut
Membre
Dernière intervention
17 février 2010
17 févr. 2010 à 14:47
17 févr. 2010 à 14:47
Absolument aucune case.
J'ai en haut à droite le logo OTM File mover et à gauche trois boutons : MoveIt! CleanUp! et Exit. Rien d'autre bien que j'ai relancé 2 fois le .exe
J'ai en haut à droite le logo OTM File mover et à gauche trois boutons : MoveIt! CleanUp! et Exit. Rien d'autre bien que j'ai relancé 2 fois le .exe