Help, TR/ attacks tous anti-virus....
Fermé
lesilverbtz
Messages postés
12
Date d'inscription
mardi 21 octobre 2008
Statut
Membre
Dernière intervention
7 mars 2011
-
28 févr. 2010 à 16:54
jlpjlp Messages postés 51580 Date d'inscription vendredi 18 mai 2007 Statut Contributeur sécurité Dernière intervention 3 mai 2022 - 6 mars 2010 à 12:42
jlpjlp Messages postés 51580 Date d'inscription vendredi 18 mai 2007 Statut Contributeur sécurité Dernière intervention 3 mai 2022 - 6 mars 2010 à 12:42
A voir également:
- Help, TR/ attacks tous anti-virus....
- Panda anti virus gratuit - Télécharger - Antivirus & Antimalwares
- Anti slash ✓ - Forum Clavier
- Tr mail - Forum Mail
- Norton anti virus gratuit - Télécharger - Antivirus & Antimalwares
- Comment faire un anti slash sous clavier mac ✓ - Forum Réseaux sociaux
4 réponses
jlpjlp
Messages postés
51580
Date d'inscription
vendredi 18 mai 2007
Statut
Contributeur sécurité
Dernière intervention
3 mai 2022
5 040
28 févr. 2010 à 16:59
28 févr. 2010 à 16:59
slt
désactive le compte utilisateur puis colle un rapport de suppression avec ad remover
puis
scan avec malwarebyte , fais un scan minutieux et colle le rapport obtenu et vire ce qui est trouvé:
https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
désactive le compte utilisateur puis colle un rapport de suppression avec ad remover
puis
scan avec malwarebyte , fais un scan minutieux et colle le rapport obtenu et vire ce qui est trouvé:
https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
jlpjlp
Messages postés
51580
Date d'inscription
vendredi 18 mai 2007
Statut
Contributeur sécurité
Dernière intervention
3 mai 2022
5 040
4 mars 2010 à 16:35
4 mars 2010 à 16:35
tu colles les rapports ici dans tes prochains messages
Salut, voici le rapport Ad Remover en .txt, mais le scan m'a aussi créé tt 1 dossier dans C:/Ad Remover et comme ce sont plusieurs dossiers contenant Chacun différents fichiers qui sont peut-être utiles, je ne sais pas comment te les envoyer!
J'ai choisi la commande L (Lancer le nettoyage) puisque ds la 1ére (Scanner :"S"), aucunne suppression n'était
effectuée.J'espére avoir fait les bons choix.
ja fais maintenant le scan minutieux avec Malwarebytes et je t'envoie le rapport.
A+
.
======= RAPPORT D'AD-REMOVER 1.1.4.6_J | UNIQUEMENT XP/VISTA/7 =======
.
Mis à jour par C_XX le 05.02.2010 à 17:34
Contact: AdRemover.contact@gmail.com
Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
.
Lancé à: 6:20:41, 06/03/2010 | Mode Normal | Option: CLEAN
Exécuté de: C:\Ad-Remover\
Système d'exploitation: Microsoft® Windows Vista™ HomePremium Service Pack 2 v6.0.6002
Nom du PC: ONLYWEB | Utilisateur actuel: bruno
.
============== ÉLÉMENT(S) NEUTRALISÉ(S) ==============
.
Service: *Application Updater*
C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
C:\Users\bruno\Music\Imesh
C:\Users\bruno\DOCUME~1\Imesh
C:\Users\bruno\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\imesh.lnk
C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar
C:\Users\bruno\AppData\Local\Temp\iMesh user license agreement.txt
C:\Users\bruno\AppData\Local\Temp\iMeshInstaller
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Everest Poker
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\iMesh
C:\Program Files\Application Updater
C:\Program Files\Ask.com
C:\Program Files\Dealio Toolbar
C:\Program Files\Everest Poker
C:\Program Files\iMesh Applications
C:\Program Files\Search Settings
C:\Users\bruno\AppData\Roaming\imeshmediabartb
C:\Users\bruno\AppData\Local\iMesh
C:\Users\bruno\AppData\LocalLow\AskToolbar
C:\Users\bruno\AppData\LocalLow\Dealio
C:\Users\bruno\AppData\LocalLow\imeshmediabartb
C:\Users\bruno\AppData\LocalLow\Search Settings
C:\Windows\Installer\b2fc62a.msi
C:\Windows\Installer\b2fc630.msi
C:\Windows\system32\config\systemprofile\AppData\LocalLow\Application Updater
C:\Users\Public\Desktop\Everest Poker.lnk
C:\Users\Public\Desktop\iMesh.lnk
C:\Users\bruno\AppData\Local\fedcsrrq.bat
C:\Users\bruno\AppData\Local\ibwje.dat
C:\Users\bruno\AppData\Local\ibwje_nav.dat
C:\Users\bruno\AppData\Local\ibwje_navps.dat
(!) -- Fichiers temporaires supprimés.
.
HKCU\software\appdatalow\software\AskToolbar
HKCU\software\appdatalow\software\Dealio
HKCU\software\Ask.com
HKCU\software\fcn
HKCU\software\Grand Virtual
HKCU\software\iMesh
HKCU\Software\Microsoft\Internet Explorer\LowRegistry\Search Settings
HKCU\software\microsoft\internet explorer\searchscopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
HKCU\software\microsoft\internet explorer\searchscopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2A59}
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440}
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\ibwje
HKLM\software\Application Updater
HKLM\Software\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
HKLM\software\classes\appid\GenericAskToolbar.DLL
HKLM\Software\Classes\Applications\iMesh.exe
HKLM\Software\Classes\CLSID\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}
HKLM\Software\Classes\CLSID\{01AD9322-02FF-4f4f-AC52-92FDA5AE65F0}
HKLM\Software\Classes\CLSID\{03F14321-8FED-4CBC-B01A-4B57FC199062}
HKLM\Software\Classes\CLSID\{148132E6-626D-4A5E-8063-A761EB29A50B}
HKLM\Software\Classes\CLSID\{23BDC78C-B7BB-42E5-B970-54B292592D72}
HKLM\Software\Classes\CLSID\{27BF8F8D-58B8-D41C-F913-B7EEB57EF6F6}
HKLM\Software\Classes\CLSID\{2C6F7E96-73BC-47A5-9F51-B67F0BAFE24D}
HKLM\Software\Classes\CLSID\{3BF72F68-72D8-461D-A884-329D936C5581}
HKLM\Software\Classes\CLSID\{474597C5-AB09-49d6-A4D5-2E8D7341384E}
HKLM\Software\Classes\CLSID\{4C58EB04-7B72-4D3D-A36E-66167A99BC31}
HKLM\Software\Classes\CLSID\{4EE0B011-604C-47F3-8F2B-39F79640B85E}
HKLM\Software\Classes\CLSID\{5D637FAD-E202-48D1-8F18-5B9C459BD1E3}
HKLM\Software\Classes\CLSID\{5D9E7BE9-95E5-4392-8CD2-D82DE89589ED}
HKLM\Software\Classes\CLSID\{5EB0259D-AB79-4ae6-A6E6-24FFE21C3DA4}
HKLM\Software\Classes\CLSID\{69D3F709-9DE2-479F-980F-532D46895703}
HKLM\Software\Classes\CLSID\{6BC38BF4-E84D-46E1-920B-42D31AEA617E}
HKLM\Software\Classes\CLSID\{78E9D883-93CD-4072-BEF3-38EE581E2839}
HKLM\Software\Classes\CLSID\{7C3B01BC-53A5-48A0-A43B-0C67731134B9}
HKLM\Software\Classes\CLSID\{83AC1413-FCE4-4A46-9DD5-4F31F306E71F}
HKLM\Software\Classes\CLSID\{87CD3140-EEC0-463F-8872-6E564D9DEDE5}
HKLM\Software\Classes\CLSID\{98ED0D10-F1FC-4113-A095-9BD7F96040C9}
HKLM\Software\Classes\CLSID\{ABB49B3B-AB7D-4ED0-9135-93FD5AA4F69F}
HKLM\Software\Classes\CLSID\{B0639356-335C-4E47-B63C-12531A7A5206}
HKLM\Software\Classes\CLSID\{B162A975-6C7C-4202-9167-306028913A3D}
HKLM\Software\Classes\CLSID\{B6F8DA9F-2696-419e-A8A3-19BE41EF51BD}
HKLM\Software\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6181B}
HKLM\Software\Classes\CLSID\{CD5175E2-7CC1-418C-B66C-0AB95DAD4103}
HKLM\Software\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
HKLM\Software\Classes\CLSID\{D8BFC514-1135-4393-B09A-193D2AAC5037}
HKLM\Software\Classes\CLSID\{DEF4ED0D-E666-4631-A35A-A634332F0550}
HKLM\Software\Classes\CLSID\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
HKLM\Software\Classes\CLSID\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
HKLM\Software\Classes\CLSID\{F8AB43ED-EC88-4de7-B213-F89157D29C62}
HKLM\software\classes\DiscoveryHelper.iMesh6Discovery
HKLM\software\classes\DiscoveryHelper.iMesh6Discovery.1
HKLM\software\classes\GenericAskToolbar.ToolbarWnd
HKLM\software\classes\GenericAskToolbar.ToolbarWnd.1
HKLM\software\classes\iMesh.AudioCD
HKLM\software\classes\iMesh.Device
HKLM\software\classes\iMesh.file
HKLM\software\classes\iMeshIEHelper.UrlHelper
HKLM\software\classes\iMeshIEHelper.UrlHelper.1
HKLM\software\classes\installer\Features\96DC878CBD58B624183A7E1157AABE19
HKLM\software\classes\installer\Products\96DC878CBD58B624183A7E1157AABE19
HKLM\software\classes\installer\Products\A28B4D68DEBAA244EB686953B7074FEF
HKLM\Software\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
HKLM\Software\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
HKLM\Software\Classes\Interface\{D5A1EF9A-7948-435D-8B87-D6A598317288}
HKLM\Software\Classes\Interface\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
HKLM\Software\Classes\Interface\{F7BEBBB1-7E6B-4561-9444-6F4866D60C7C}
HKLM\software\classes\SearchSettings.BHO
HKLM\software\classes\SearchSettings.BHO.1
HKLM\Software\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
HKLM\Software\Classes\TypeLib\{2D77AC8A-0A4C-40D0-9557-51907A575E45}
HKLM\Software\Classes\TypeLib\{403A885F-CB00-40C1-BDC1-EB09053194F7}
HKLM\Software\Classes\TypeLib\{43B4B831-F41F-4F73-8F14-4FFF0BA75B1B}
HKLM\Software\Classes\TypeLib\{55C1727F-5535-4C2A-9601-8C2458608B48}
HKLM\Software\Classes\TypeLib\{6C9945B7-1D19-46CB-88C0-45A24DF6CD6E}
HKLM\Software\Classes\TypeLib\{81CA8FCD-1420-4A07-B47D-B30F3DDA79E1}
HKLM\Software\Classes\TypeLib\{84B9B044-17C0-48FB-A300-C9747D5DF29C}
HKLM\Software\Classes\TypeLib\{85672EDB-2CC8-40B9-A9E8-77D3478F2EFB}
HKLM\Software\Classes\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}
HKLM\Software\Classes\TypeLib\{A147AA03-820F-4A0F-9F34-D6CB4004A2F9}
HKLM\Software\Classes\TypeLib\{ADEA3C4E-2184-40A2-9556-488456427E80}
HKLM\Software\Classes\TypeLib\{C4C4F1F4-3074-4CB6-9FB8-0A64273166F0}
HKLM\Software\Classes\TypeLib\{CD082CCA-086F-4FD8-8FD7-247A0DBBD1CC}
HKLM\Software\Classes\TypeLib\{EC96F516-51B2-4B46-8451-8665F5A6BA2B}
HKLM\Software\Classes\TypeLib\{F07FBD3E-2048-44A4-9065-71BF551E2672}
HKLM\software\Dealio
HKLM\software\iMesh
HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}
HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0ABE0FED-50E7-4e42-A125-57C0A11DBCDE}
HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{28D35620-51D9-11DE-9D13-2DB156D89593}
HKLM\software\microsoft\internet explorer\searchscopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2A59}
HKLM\Software\Microsoft\Internet Explorer\Toolbar\\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}
HKLM\Software\Microsoft\Internet Explorer\Toolbar\\{ABB49B3B-AB7D-4ED0-9135-93FD5AA4F69F}
HKLM\Software\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440}
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Scheduled Update for Ask Toolbar
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{474597C5-AB09-49d6-A4D5-2E8D7341384E}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ABB49B3B-AB7D-4ED0-9135-93FD5AA4F69F}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\0292226F570267D459357AF78015E534
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\03285961954D5824C85975D955031EE8
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\23A03A6765D10864EB278629A2DF32C3
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\3A4FCCE032CA50340A6975C92410AE30
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\6AC3985F4D64C2245A96D31569D1BF40
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\6E00D9B24354FBA44AE2CA0FA86EF2E2
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\7C13F41728A69EF41AA1A3372FB86FA6
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\855847FA0E25FBA46B8516389DFDD4B3
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\8ED411B7A244E0E4C82C46284CA65B81
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\94E65EF7E080DDA4AA2F1DEDCE74AC5B
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\9DC2844D0E3E8924C8973C3B3BAE1F58
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\AFEB575AA30ACB243B748619F62F0782
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\B92A2929968AED344BD6B34AD60E6604
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\C7D9132F42224AC49BD8C06A0F8E39C4
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\F461B8DD96FF5AA41A52D14E1D7B69C7
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Products\96DC878CBD58B624183A7E1157AABE19
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SearchSettings
HKLM\software\microsoft\windows\currentversion\uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
HKLM\software\microsoft\windows\currentversion\uninstall\{C878CD69-85DB-426B-81A3-E71175AAEB91}
HKLM\software\microsoft\windows\currentversion\uninstall\Everest Poker
HKLM\software\microsoft\windows\currentversion\uninstall\fedcsrrq
HKLM\software\microsoft\windows\currentversion\uninstall\iMesh
HKLM\software\microsoft\windows\currentversion\uninstall\iMesh MediaBar
HKLM\software\Search Settings
.
============== Scan additionnel ==============
.
.
* Mozilla FireFox Version 3.6 [fr] *
.
Nom du profil: 0iz5srn8.default (bruno)
.
(bruno, prefs.js) Browser.startup.homepage, hxxp://www.aspworldtour.com/
(bruno, prefs.js) Extensions.enabledItems, {20a82645-c095-46ed-80e3-08825760534b}:1.1,{d5bc46d8-67c7-11dc-8c1d-0097498c2b7a}:1.0.0.1,{972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6
.
.
* Internet Explorer Version 7.0.6002.18005 *
.
[HKEY_CURRENT_USER\..\Internet Explorer\Main]
.
Do404Search: 01000000
Local Page: C:\Windows\system32\blank.htm
Show_ToolBar: yes
Enable Browser Extensions: yes
Start Page: hxxp://fr.msn.com/
Use Search Asst: no
Search Bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Default_page_url: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]
.
Start Page: hxxp://fr.msn.com/
Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Delete_Temp_Files_On_Exit: yes
Local Page: %SystemRoot%\system32\blank.htm
Search bar: hxxp://search.msn.com/spbasic.htm
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]
.
Tabs: res://ieframe.dll/tabswelcome.htm
.
============== Suspect (Cracks, Serials, ...) ==============
.
C:\Users\bruno\Documents\Favorites\1TOP SITES !!!\Cin‚,S‚ries,Vid‚os,Zik,etc\Crackle - Show Guide.url
C:\Users\bruno\Documents\Favorites\CINEMA\BANDES ANNONCES (avec Quicktime)\Crackle - Show Guide.url
C:\Users\bruno\Documents\Favorites\Liens publics\1TOP SITES !!!\Cin‚,S‚ries,Vid‚os,Zik,etc\Crackle - Show Guide.url
C:\Users\bruno\Documents\Favorites\Liens publics\CINEMA\BANDES ANNONCES (avec Quicktime)\Crackle - Show Guide.url
C:\Users\bruno\Documents\Favorites\Liens publics\MUSIK\SITES+++, free downloads\CRACKLE.COM\Take-Away Show Walkmen - I Lost You Crackle.url
C:\Users\bruno\Documents\Favorites\MUSIK\SITES+++, free downloads\CRACKLE.COM\Take-Away Show Walkmen - I Lost You Crackle.url
C:\Users\bruno\Documents\Favorites\SERIES TV\CRACKLE\Crackle - Show Guide.url
C:\Users\bruno\Documents\Favorites\T V\ONLINE NETWORKS\Crackle.url
C:\Users\bruno\Favorites\1TOP SITES !!!\Cin‚,S‚ries,Vid‚os,Zik,etc\Crackle - Show Guide.url
C:\Users\bruno\Favorites\CINEMA\BANDES ANNONCES (avec Quicktime)\Crackle - Show Guide.url
C:\Users\bruno\Favorites\MUSIK\SITES+++, free downloads\CRACKLE.COM\Take-Away Show Walkmen - I Lost You Crackle.url
C:\Users\bruno\Favorites\SERIES TV\CRACKLE\Crackle - Show Guide.url
C:\Users\bruno\Favorites\T V\ONLINE NETWORKS\Crackle.url
.
===================================
.
14835 Octet(s) - C:\Ad-Report-CLEAN[1].log
543 Octet(s) - C:\Ad-Report-SCAN[1].log
.
1350 Fichier(s) - C:\Users\bruno\AppData\Local\Temp
257 Fichier(s) - C:\Windows\Temp
14 Fichier(s) - C:\Windows\Prefetch
.
20 Fichier(s) - C:\Ad-Remover\BACKUP
1214 Fichier(s) - C:\Ad-Remover\QUARANTINE
.
Fin à: 6:30:11 | 06/03/2010 - CLEAN[1]
.
============== E.O.F ==============
.
Voici le contenu du dossier Ad Remover crée ds mon disque dur, sur C:/Ad Remover:....Impossible de le coller, je peux coppier la totalité de la fenetre Ad Remover créé, mais impossible de coller les fichiers ici!
J'ai choisi la commande L (Lancer le nettoyage) puisque ds la 1ére (Scanner :"S"), aucunne suppression n'était
effectuée.J'espére avoir fait les bons choix.
ja fais maintenant le scan minutieux avec Malwarebytes et je t'envoie le rapport.
A+
.
======= RAPPORT D'AD-REMOVER 1.1.4.6_J | UNIQUEMENT XP/VISTA/7 =======
.
Mis à jour par C_XX le 05.02.2010 à 17:34
Contact: AdRemover.contact@gmail.com
Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
.
Lancé à: 6:20:41, 06/03/2010 | Mode Normal | Option: CLEAN
Exécuté de: C:\Ad-Remover\
Système d'exploitation: Microsoft® Windows Vista™ HomePremium Service Pack 2 v6.0.6002
Nom du PC: ONLYWEB | Utilisateur actuel: bruno
.
============== ÉLÉMENT(S) NEUTRALISÉ(S) ==============
.
Service: *Application Updater*
C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
C:\Users\bruno\Music\Imesh
C:\Users\bruno\DOCUME~1\Imesh
C:\Users\bruno\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\imesh.lnk
C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar
C:\Users\bruno\AppData\Local\Temp\iMesh user license agreement.txt
C:\Users\bruno\AppData\Local\Temp\iMeshInstaller
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Everest Poker
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\iMesh
C:\Program Files\Application Updater
C:\Program Files\Ask.com
C:\Program Files\Dealio Toolbar
C:\Program Files\Everest Poker
C:\Program Files\iMesh Applications
C:\Program Files\Search Settings
C:\Users\bruno\AppData\Roaming\imeshmediabartb
C:\Users\bruno\AppData\Local\iMesh
C:\Users\bruno\AppData\LocalLow\AskToolbar
C:\Users\bruno\AppData\LocalLow\Dealio
C:\Users\bruno\AppData\LocalLow\imeshmediabartb
C:\Users\bruno\AppData\LocalLow\Search Settings
C:\Windows\Installer\b2fc62a.msi
C:\Windows\Installer\b2fc630.msi
C:\Windows\system32\config\systemprofile\AppData\LocalLow\Application Updater
C:\Users\Public\Desktop\Everest Poker.lnk
C:\Users\Public\Desktop\iMesh.lnk
C:\Users\bruno\AppData\Local\fedcsrrq.bat
C:\Users\bruno\AppData\Local\ibwje.dat
C:\Users\bruno\AppData\Local\ibwje_nav.dat
C:\Users\bruno\AppData\Local\ibwje_navps.dat
(!) -- Fichiers temporaires supprimés.
.
HKCU\software\appdatalow\software\AskToolbar
HKCU\software\appdatalow\software\Dealio
HKCU\software\Ask.com
HKCU\software\fcn
HKCU\software\Grand Virtual
HKCU\software\iMesh
HKCU\Software\Microsoft\Internet Explorer\LowRegistry\Search Settings
HKCU\software\microsoft\internet explorer\searchscopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
HKCU\software\microsoft\internet explorer\searchscopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2A59}
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440}
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\ibwje
HKLM\software\Application Updater
HKLM\Software\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
HKLM\software\classes\appid\GenericAskToolbar.DLL
HKLM\Software\Classes\Applications\iMesh.exe
HKLM\Software\Classes\CLSID\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}
HKLM\Software\Classes\CLSID\{01AD9322-02FF-4f4f-AC52-92FDA5AE65F0}
HKLM\Software\Classes\CLSID\{03F14321-8FED-4CBC-B01A-4B57FC199062}
HKLM\Software\Classes\CLSID\{148132E6-626D-4A5E-8063-A761EB29A50B}
HKLM\Software\Classes\CLSID\{23BDC78C-B7BB-42E5-B970-54B292592D72}
HKLM\Software\Classes\CLSID\{27BF8F8D-58B8-D41C-F913-B7EEB57EF6F6}
HKLM\Software\Classes\CLSID\{2C6F7E96-73BC-47A5-9F51-B67F0BAFE24D}
HKLM\Software\Classes\CLSID\{3BF72F68-72D8-461D-A884-329D936C5581}
HKLM\Software\Classes\CLSID\{474597C5-AB09-49d6-A4D5-2E8D7341384E}
HKLM\Software\Classes\CLSID\{4C58EB04-7B72-4D3D-A36E-66167A99BC31}
HKLM\Software\Classes\CLSID\{4EE0B011-604C-47F3-8F2B-39F79640B85E}
HKLM\Software\Classes\CLSID\{5D637FAD-E202-48D1-8F18-5B9C459BD1E3}
HKLM\Software\Classes\CLSID\{5D9E7BE9-95E5-4392-8CD2-D82DE89589ED}
HKLM\Software\Classes\CLSID\{5EB0259D-AB79-4ae6-A6E6-24FFE21C3DA4}
HKLM\Software\Classes\CLSID\{69D3F709-9DE2-479F-980F-532D46895703}
HKLM\Software\Classes\CLSID\{6BC38BF4-E84D-46E1-920B-42D31AEA617E}
HKLM\Software\Classes\CLSID\{78E9D883-93CD-4072-BEF3-38EE581E2839}
HKLM\Software\Classes\CLSID\{7C3B01BC-53A5-48A0-A43B-0C67731134B9}
HKLM\Software\Classes\CLSID\{83AC1413-FCE4-4A46-9DD5-4F31F306E71F}
HKLM\Software\Classes\CLSID\{87CD3140-EEC0-463F-8872-6E564D9DEDE5}
HKLM\Software\Classes\CLSID\{98ED0D10-F1FC-4113-A095-9BD7F96040C9}
HKLM\Software\Classes\CLSID\{ABB49B3B-AB7D-4ED0-9135-93FD5AA4F69F}
HKLM\Software\Classes\CLSID\{B0639356-335C-4E47-B63C-12531A7A5206}
HKLM\Software\Classes\CLSID\{B162A975-6C7C-4202-9167-306028913A3D}
HKLM\Software\Classes\CLSID\{B6F8DA9F-2696-419e-A8A3-19BE41EF51BD}
HKLM\Software\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6181B}
HKLM\Software\Classes\CLSID\{CD5175E2-7CC1-418C-B66C-0AB95DAD4103}
HKLM\Software\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
HKLM\Software\Classes\CLSID\{D8BFC514-1135-4393-B09A-193D2AAC5037}
HKLM\Software\Classes\CLSID\{DEF4ED0D-E666-4631-A35A-A634332F0550}
HKLM\Software\Classes\CLSID\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
HKLM\Software\Classes\CLSID\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
HKLM\Software\Classes\CLSID\{F8AB43ED-EC88-4de7-B213-F89157D29C62}
HKLM\software\classes\DiscoveryHelper.iMesh6Discovery
HKLM\software\classes\DiscoveryHelper.iMesh6Discovery.1
HKLM\software\classes\GenericAskToolbar.ToolbarWnd
HKLM\software\classes\GenericAskToolbar.ToolbarWnd.1
HKLM\software\classes\iMesh.AudioCD
HKLM\software\classes\iMesh.Device
HKLM\software\classes\iMesh.file
HKLM\software\classes\iMeshIEHelper.UrlHelper
HKLM\software\classes\iMeshIEHelper.UrlHelper.1
HKLM\software\classes\installer\Features\96DC878CBD58B624183A7E1157AABE19
HKLM\software\classes\installer\Products\96DC878CBD58B624183A7E1157AABE19
HKLM\software\classes\installer\Products\A28B4D68DEBAA244EB686953B7074FEF
HKLM\Software\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
HKLM\Software\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
HKLM\Software\Classes\Interface\{D5A1EF9A-7948-435D-8B87-D6A598317288}
HKLM\Software\Classes\Interface\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
HKLM\Software\Classes\Interface\{F7BEBBB1-7E6B-4561-9444-6F4866D60C7C}
HKLM\software\classes\SearchSettings.BHO
HKLM\software\classes\SearchSettings.BHO.1
HKLM\Software\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
HKLM\Software\Classes\TypeLib\{2D77AC8A-0A4C-40D0-9557-51907A575E45}
HKLM\Software\Classes\TypeLib\{403A885F-CB00-40C1-BDC1-EB09053194F7}
HKLM\Software\Classes\TypeLib\{43B4B831-F41F-4F73-8F14-4FFF0BA75B1B}
HKLM\Software\Classes\TypeLib\{55C1727F-5535-4C2A-9601-8C2458608B48}
HKLM\Software\Classes\TypeLib\{6C9945B7-1D19-46CB-88C0-45A24DF6CD6E}
HKLM\Software\Classes\TypeLib\{81CA8FCD-1420-4A07-B47D-B30F3DDA79E1}
HKLM\Software\Classes\TypeLib\{84B9B044-17C0-48FB-A300-C9747D5DF29C}
HKLM\Software\Classes\TypeLib\{85672EDB-2CC8-40B9-A9E8-77D3478F2EFB}
HKLM\Software\Classes\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}
HKLM\Software\Classes\TypeLib\{A147AA03-820F-4A0F-9F34-D6CB4004A2F9}
HKLM\Software\Classes\TypeLib\{ADEA3C4E-2184-40A2-9556-488456427E80}
HKLM\Software\Classes\TypeLib\{C4C4F1F4-3074-4CB6-9FB8-0A64273166F0}
HKLM\Software\Classes\TypeLib\{CD082CCA-086F-4FD8-8FD7-247A0DBBD1CC}
HKLM\Software\Classes\TypeLib\{EC96F516-51B2-4B46-8451-8665F5A6BA2B}
HKLM\Software\Classes\TypeLib\{F07FBD3E-2048-44A4-9065-71BF551E2672}
HKLM\software\Dealio
HKLM\software\iMesh
HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}
HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0ABE0FED-50E7-4e42-A125-57C0A11DBCDE}
HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{28D35620-51D9-11DE-9D13-2DB156D89593}
HKLM\software\microsoft\internet explorer\searchscopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2A59}
HKLM\Software\Microsoft\Internet Explorer\Toolbar\\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}
HKLM\Software\Microsoft\Internet Explorer\Toolbar\\{ABB49B3B-AB7D-4ED0-9135-93FD5AA4F69F}
HKLM\Software\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440}
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Scheduled Update for Ask Toolbar
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{474597C5-AB09-49d6-A4D5-2E8D7341384E}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ABB49B3B-AB7D-4ED0-9135-93FD5AA4F69F}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\0292226F570267D459357AF78015E534
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\03285961954D5824C85975D955031EE8
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\23A03A6765D10864EB278629A2DF32C3
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\3A4FCCE032CA50340A6975C92410AE30
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\6AC3985F4D64C2245A96D31569D1BF40
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\6E00D9B24354FBA44AE2CA0FA86EF2E2
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\7C13F41728A69EF41AA1A3372FB86FA6
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\855847FA0E25FBA46B8516389DFDD4B3
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\8ED411B7A244E0E4C82C46284CA65B81
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\94E65EF7E080DDA4AA2F1DEDCE74AC5B
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\9DC2844D0E3E8924C8973C3B3BAE1F58
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\AFEB575AA30ACB243B748619F62F0782
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\B92A2929968AED344BD6B34AD60E6604
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\C7D9132F42224AC49BD8C06A0F8E39C4
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\F461B8DD96FF5AA41A52D14E1D7B69C7
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Products\96DC878CBD58B624183A7E1157AABE19
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SearchSettings
HKLM\software\microsoft\windows\currentversion\uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
HKLM\software\microsoft\windows\currentversion\uninstall\{C878CD69-85DB-426B-81A3-E71175AAEB91}
HKLM\software\microsoft\windows\currentversion\uninstall\Everest Poker
HKLM\software\microsoft\windows\currentversion\uninstall\fedcsrrq
HKLM\software\microsoft\windows\currentversion\uninstall\iMesh
HKLM\software\microsoft\windows\currentversion\uninstall\iMesh MediaBar
HKLM\software\Search Settings
.
============== Scan additionnel ==============
.
.
* Mozilla FireFox Version 3.6 [fr] *
.
Nom du profil: 0iz5srn8.default (bruno)
.
(bruno, prefs.js) Browser.startup.homepage, hxxp://www.aspworldtour.com/
(bruno, prefs.js) Extensions.enabledItems, {20a82645-c095-46ed-80e3-08825760534b}:1.1,{d5bc46d8-67c7-11dc-8c1d-0097498c2b7a}:1.0.0.1,{972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6
.
.
* Internet Explorer Version 7.0.6002.18005 *
.
[HKEY_CURRENT_USER\..\Internet Explorer\Main]
.
Do404Search: 01000000
Local Page: C:\Windows\system32\blank.htm
Show_ToolBar: yes
Enable Browser Extensions: yes
Start Page: hxxp://fr.msn.com/
Use Search Asst: no
Search Bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Default_page_url: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]
.
Start Page: hxxp://fr.msn.com/
Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Delete_Temp_Files_On_Exit: yes
Local Page: %SystemRoot%\system32\blank.htm
Search bar: hxxp://search.msn.com/spbasic.htm
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]
.
Tabs: res://ieframe.dll/tabswelcome.htm
.
============== Suspect (Cracks, Serials, ...) ==============
.
C:\Users\bruno\Documents\Favorites\1TOP SITES !!!\Cin‚,S‚ries,Vid‚os,Zik,etc\Crackle - Show Guide.url
C:\Users\bruno\Documents\Favorites\CINEMA\BANDES ANNONCES (avec Quicktime)\Crackle - Show Guide.url
C:\Users\bruno\Documents\Favorites\Liens publics\1TOP SITES !!!\Cin‚,S‚ries,Vid‚os,Zik,etc\Crackle - Show Guide.url
C:\Users\bruno\Documents\Favorites\Liens publics\CINEMA\BANDES ANNONCES (avec Quicktime)\Crackle - Show Guide.url
C:\Users\bruno\Documents\Favorites\Liens publics\MUSIK\SITES+++, free downloads\CRACKLE.COM\Take-Away Show Walkmen - I Lost You Crackle.url
C:\Users\bruno\Documents\Favorites\MUSIK\SITES+++, free downloads\CRACKLE.COM\Take-Away Show Walkmen - I Lost You Crackle.url
C:\Users\bruno\Documents\Favorites\SERIES TV\CRACKLE\Crackle - Show Guide.url
C:\Users\bruno\Documents\Favorites\T V\ONLINE NETWORKS\Crackle.url
C:\Users\bruno\Favorites\1TOP SITES !!!\Cin‚,S‚ries,Vid‚os,Zik,etc\Crackle - Show Guide.url
C:\Users\bruno\Favorites\CINEMA\BANDES ANNONCES (avec Quicktime)\Crackle - Show Guide.url
C:\Users\bruno\Favorites\MUSIK\SITES+++, free downloads\CRACKLE.COM\Take-Away Show Walkmen - I Lost You Crackle.url
C:\Users\bruno\Favorites\SERIES TV\CRACKLE\Crackle - Show Guide.url
C:\Users\bruno\Favorites\T V\ONLINE NETWORKS\Crackle.url
.
===================================
.
14835 Octet(s) - C:\Ad-Report-CLEAN[1].log
543 Octet(s) - C:\Ad-Report-SCAN[1].log
.
1350 Fichier(s) - C:\Users\bruno\AppData\Local\Temp
257 Fichier(s) - C:\Windows\Temp
14 Fichier(s) - C:\Windows\Prefetch
.
20 Fichier(s) - C:\Ad-Remover\BACKUP
1214 Fichier(s) - C:\Ad-Remover\QUARANTINE
.
Fin à: 6:30:11 | 06/03/2010 - CLEAN[1]
.
============== E.O.F ==============
.
Voici le contenu du dossier Ad Remover crée ds mon disque dur, sur C:/Ad Remover:....Impossible de le coller, je peux coppier la totalité de la fenetre Ad Remover créé, mais impossible de coller les fichiers ici!
lesilverbtz
Messages postés
12
Date d'inscription
mardi 21 octobre 2008
Statut
Membre
Dernière intervention
7 mars 2011
6 mars 2010 à 11:43
6 mars 2010 à 11:43
Bon, voila le rapport Malwarebits de cette nuit, il m'a tt de même trouvé 56 virus , chevaux de troie, etc....
Je dois donc les éliminer moi même en cochant les case de chaque virus?
Voici le rapport Malwarebits:
Malwarebytes' Anti-Malware 1.44
Version de la base de données: 3828
Windows 6.0.6002 Service Pack 2
Internet Explorer 7.0.6002.18005
06/03/2010 11:28:01
mbam-log-2010-03-06 (11-26-32).txt
Type de recherche: Examen complet (C:\|E:\|F:\|G:\|H:\|J:\|)
Eléments examinés: 358958
Temps écoulé: 1 hour(s), 1 minute(s), 50 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 2
Clé(s) du Registre infectée(s): 2
Valeur(s) du Registre infectée(s): 1
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 8
Fichier(s) infecté(s): 41
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
C:\Windows\System32\gpsvc32.dll (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\209D.tmp (Trojan.Tracur) -> No action taken.
Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\.fsharproj (Trojan.BHO) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\QUAD Registry Cleaner v2 (Adware.QUADRegClean) -> No action taken.
Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\rthdbpl (Trojan.Tracur) -> No action taken.
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Tracur) -> Data: c:\windows\system32\gpsvc32.dll -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Tracur) -> Data: system32\gpsvc32.dll -> No action taken.
Dossier(s) infecté(s):
C:\Windows\System32\SysWoW32 (Worm.Archive) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D} (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content (Trojan.Swisyn) -> No action taken.
C:\Users\bruno\AppData\Roaming\SystemProc (Trojan.Agent) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D} (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content (Worm.Prolaco.M) -> No action taken.
Fichier(s) infecté(s):
C:\Windows\System32\gpsvc32.dll (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\209D.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\SystemProc\lsass.exe (Trojan.Tracur) -> No action taken.
C:\Program Files\JEUX-PC GAMES\Nexon\Combat Arms EU\Game\CShell.dll (Malware.Packer.T) -> No action taken.
C:\Users\bruno\AppData\Roaming\28B3.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\2A1.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\3F74.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\617C.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\6716.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\E338.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\F5D.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\8654.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\9AD7.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\9E5D.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\A503.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\A60.tmp (Trojan.Tracur) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v4 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v4.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v5 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v5.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v6 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v6.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v7 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v7.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v0 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v0.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v1 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v1.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v2 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v2.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v3 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v3.kwd (Worm.Archive) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome.manifest (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\install.rdf (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content\timer.xul (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome.manifest (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\install.rdf (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content\timer.xul (Worm.Prolaco.M) -> No action taken.
C:\Program Files\setup.exe (Rogue.Installer) -> No action taken.
C:\Windows\GnuHashes.ini (Malware.Trace) -> No action taken.
C:\Program Files\explorer.exe (Heuristics.Reserved.Word.Exploit) -> No action taken.
Voila , si quelqu'un peut me dire la suite, ce serait sympa.
Suis-le tranquille si j'ai supprimé ttes les saoperies que Malwarebits a trouvé
Je dois donc les éliminer moi même en cochant les case de chaque virus?
Voici le rapport Malwarebits:
Malwarebytes' Anti-Malware 1.44
Version de la base de données: 3828
Windows 6.0.6002 Service Pack 2
Internet Explorer 7.0.6002.18005
06/03/2010 11:28:01
mbam-log-2010-03-06 (11-26-32).txt
Type de recherche: Examen complet (C:\|E:\|F:\|G:\|H:\|J:\|)
Eléments examinés: 358958
Temps écoulé: 1 hour(s), 1 minute(s), 50 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 2
Clé(s) du Registre infectée(s): 2
Valeur(s) du Registre infectée(s): 1
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 8
Fichier(s) infecté(s): 41
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
C:\Windows\System32\gpsvc32.dll (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\209D.tmp (Trojan.Tracur) -> No action taken.
Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\.fsharproj (Trojan.BHO) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\QUAD Registry Cleaner v2 (Adware.QUADRegClean) -> No action taken.
Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\rthdbpl (Trojan.Tracur) -> No action taken.
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Tracur) -> Data: c:\windows\system32\gpsvc32.dll -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Tracur) -> Data: system32\gpsvc32.dll -> No action taken.
Dossier(s) infecté(s):
C:\Windows\System32\SysWoW32 (Worm.Archive) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D} (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content (Trojan.Swisyn) -> No action taken.
C:\Users\bruno\AppData\Roaming\SystemProc (Trojan.Agent) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D} (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content (Worm.Prolaco.M) -> No action taken.
Fichier(s) infecté(s):
C:\Windows\System32\gpsvc32.dll (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\209D.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\SystemProc\lsass.exe (Trojan.Tracur) -> No action taken.
C:\Program Files\JEUX-PC GAMES\Nexon\Combat Arms EU\Game\CShell.dll (Malware.Packer.T) -> No action taken.
C:\Users\bruno\AppData\Roaming\28B3.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\2A1.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\3F74.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\617C.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\6716.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\E338.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\F5D.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\8654.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\9AD7.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\9E5D.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\A503.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\A60.tmp (Trojan.Tracur) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v4 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v4.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v5 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v5.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v6 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v6.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v7 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v7.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v0 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v0.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v1 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v1.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v2 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v2.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v3 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v3.kwd (Worm.Archive) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome.manifest (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\install.rdf (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content\timer.xul (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome.manifest (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\install.rdf (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content\timer.xul (Worm.Prolaco.M) -> No action taken.
C:\Program Files\setup.exe (Rogue.Installer) -> No action taken.
C:\Windows\GnuHashes.ini (Malware.Trace) -> No action taken.
C:\Program Files\explorer.exe (Heuristics.Reserved.Word.Exploit) -> No action taken.
Voila , si quelqu'un peut me dire la suite, ce serait sympa.
Suis-le tranquille si j'ai supprimé ttes les saoperies que Malwarebits a trouvé
jlpjlp
Messages postés
51580
Date d'inscription
vendredi 18 mai 2007
Statut
Contributeur sécurité
Dernière intervention
3 mai 2022
5 040
6 mars 2010 à 10:26
6 mars 2010 à 10:26
ok c'est bon
fais la suite
fais la suite
lesilverbtz
Messages postés
12
Date d'inscription
mardi 21 octobre 2008
Statut
Membre
Dernière intervention
7 mars 2011
6 mars 2010 à 11:47
6 mars 2010 à 11:47
Bon, voila le rapport Malwarebits de cette nuit, il m'a tt de même trouvé 56 virus , chevaux de troie, etc....
Je dois donc les éliminer moi même en cochant les case de chaque virus?
Voici le rapport Malwarebits:
Malwarebytes' Anti-Malware 1.44
Version de la base de données: 3828
Windows 6.0.6002 Service Pack 2
Internet Explorer 7.0.6002.18005
06/03/2010 11:28:01
mbam-log-2010-03-06 (11-26-32).txt
Type de recherche: Examen complet (C:\|E:\|F:\|G:\|H:\|J:\|)
Eléments examinés: 358958
Temps écoulé: 1 hour(s), 1 minute(s), 50 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 2
Clé(s) du Registre infectée(s): 2
Valeur(s) du Registre infectée(s): 1
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 8
Fichier(s) infecté(s): 41
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
C:\Windows\System32\gpsvc32.dll (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\209D.tmp (Trojan.Tracur) -> No action taken.
Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\.fsharproj (Trojan.BHO) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\QUAD Registry Cleaner v2 (Adware.QUADRegClean) -> No action taken.
Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\rthdbpl (Trojan.Tracur) -> No action taken.
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Tracur) -> Data: c:\windows\system32\gpsvc32.dll -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Tracur) -> Data: system32\gpsvc32.dll -> No action taken.
Dossier(s) infecté(s):
C:\Windows\System32\SysWoW32 (Worm.Archive) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D} (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content (Trojan.Swisyn) -> No action taken.
C:\Users\bruno\AppData\Roaming\SystemProc (Trojan.Agent) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D} (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content (Worm.Prolaco.M) -> No action taken.
Fichier(s) infecté(s):
C:\Windows\System32\gpsvc32.dll (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\209D.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\SystemProc\lsass.exe (Trojan.Tracur) -> No action taken.
C:\Program Files\JEUX-PC GAMES\Nexon\Combat Arms EU\Game\CShell.dll (Malware.Packer.T) -> No action taken.
C:\Users\bruno\AppData\Roaming\28B3.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\2A1.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\3F74.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\617C.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\6716.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\E338.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\F5D.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\8654.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\9AD7.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\9E5D.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\A503.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\A60.tmp (Trojan.Tracur) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v4 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v4.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v5 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v5.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v6 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v6.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v7 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v7.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v0 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v0.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v1 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v1.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v2 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v2.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v3 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v3.kwd (Worm.Archive) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome.manifest (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\install.rdf (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content\timer.xul (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome.manifest (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\install.rdf (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content\timer.xul (Worm.Prolaco.M) -> No action taken.
C:\Program Files\setup.exe (Rogue.Installer) -> No action taken.
C:\Windows\GnuHashes.ini (Malware.Trace) -> No action taken.
C:\Program Files\explorer.exe (Heuristics.Reserved.Word.Exploit) -> No action taken.
Voila , si tu peux me dire la suite, ce serait sympa.
Suis-je tranquille si j'ai supprimé ttes les saloperies que Malwarebits a trouvé?
Et quand dois-je réactiver mon compte utilisateur?
Encore merci pour ta patience!
Je dois donc les éliminer moi même en cochant les case de chaque virus?
Voici le rapport Malwarebits:
Malwarebytes' Anti-Malware 1.44
Version de la base de données: 3828
Windows 6.0.6002 Service Pack 2
Internet Explorer 7.0.6002.18005
06/03/2010 11:28:01
mbam-log-2010-03-06 (11-26-32).txt
Type de recherche: Examen complet (C:\|E:\|F:\|G:\|H:\|J:\|)
Eléments examinés: 358958
Temps écoulé: 1 hour(s), 1 minute(s), 50 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 2
Clé(s) du Registre infectée(s): 2
Valeur(s) du Registre infectée(s): 1
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 8
Fichier(s) infecté(s): 41
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
C:\Windows\System32\gpsvc32.dll (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\209D.tmp (Trojan.Tracur) -> No action taken.
Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\.fsharproj (Trojan.BHO) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\QUAD Registry Cleaner v2 (Adware.QUADRegClean) -> No action taken.
Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\rthdbpl (Trojan.Tracur) -> No action taken.
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Tracur) -> Data: c:\windows\system32\gpsvc32.dll -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Tracur) -> Data: system32\gpsvc32.dll -> No action taken.
Dossier(s) infecté(s):
C:\Windows\System32\SysWoW32 (Worm.Archive) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D} (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content (Trojan.Swisyn) -> No action taken.
C:\Users\bruno\AppData\Roaming\SystemProc (Trojan.Agent) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D} (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content (Worm.Prolaco.M) -> No action taken.
Fichier(s) infecté(s):
C:\Windows\System32\gpsvc32.dll (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\209D.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\SystemProc\lsass.exe (Trojan.Tracur) -> No action taken.
C:\Program Files\JEUX-PC GAMES\Nexon\Combat Arms EU\Game\CShell.dll (Malware.Packer.T) -> No action taken.
C:\Users\bruno\AppData\Roaming\28B3.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\2A1.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\3F74.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\617C.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\6716.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\E338.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\F5D.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\8654.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\9AD7.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\9E5D.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\A503.tmp (Trojan.Tracur) -> No action taken.
C:\Users\bruno\AppData\Roaming\A60.tmp (Trojan.Tracur) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v4 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v4.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v5 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v5.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v6 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v6.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v7 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\mu911534652v7.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v0 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v0.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v1 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v1.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v2 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v2.kwd (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v3 (Worm.Archive) -> No action taken.
C:\Windows\System32\SysWoW32\wu911534652v3.kwd (Worm.Archive) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome.manifest (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\install.rdf (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content\timer.xul (Trojan.Swisyn) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome.manifest (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\install.rdf (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content\timer.xul (Worm.Prolaco.M) -> No action taken.
C:\Program Files\setup.exe (Rogue.Installer) -> No action taken.
C:\Windows\GnuHashes.ini (Malware.Trace) -> No action taken.
C:\Program Files\explorer.exe (Heuristics.Reserved.Word.Exploit) -> No action taken.
Voila , si tu peux me dire la suite, ce serait sympa.
Suis-je tranquille si j'ai supprimé ttes les saloperies que Malwarebits a trouvé?
Et quand dois-je réactiver mon compte utilisateur?
Encore merci pour ta patience!
jlpjlp
Messages postés
51580
Date d'inscription
vendredi 18 mai 2007
Statut
Contributeur sécurité
Dernière intervention
3 mai 2022
5 040
6 mars 2010 à 12:42
6 mars 2010 à 12:42
ok colle un rapport d'un antivirus en ligne
comme bitdefender ou kaspersky ou panda
comme bitdefender ou kaspersky ou panda
4 mars 2010 à 14:37