A voir également:
- Blue Screen Help
- Blue screen windows 10 - Guide
- Screen whatsapp - Accueil - Messagerie instantanée
- Blue griffon - Télécharger - HTML
- Apowersoft screen recorder - Télécharger - Capture d'écran
- Double screen pc - Guide
86 réponses
Voilà le rapport Gmer, mais pas de liges rouges, peut-être parce que j'ai scanné C: seulement?
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-09-20 12:32:15
Windows 6.0.6002 Service Pack 2
Running: gmer.exe; Driver: C:\Users\Pascal\AppData\Local\Temp\uwldafog.sys
---- System - GMER 1.0.15 ----
SSDT 8C467B94 ZwCreateThread
SSDT 8C467B80 ZwOpenProcess
SSDT 8C467B85 ZwOpenThread
SSDT 8C467B8F ZwTerminateProcess
---- Kernel code sections - GMER 1.0.15 ----
.text ntkrnlpa.exe!KeSetEvent + 221 826BD984 4 Bytes [94, 7B, 46, 8C]
.text ntkrnlpa.exe!KeSetEvent + 3F1 826BDB54 4 Bytes [80, 7B, 46, 8C] {CMP BYTE [EBX+0x46], 0x8c}
.text ntkrnlpa.exe!KeSetEvent + 40D 826BDB70 4 Bytes [85, 7B, 46, 8C]
.text ntkrnlpa.exe!KeSetEvent + 621 826BDD84 4 Bytes [8F, 7B, 46, 8C]
.text C:\Program Files\HP\DVDPlay\000.fcl section is writeable [0xA23D3000, 0x2892, 0xE8000020]
.vmp2 C:\Program Files\HP\DVDPlay\000.fcl entry point in ".vmp2" section [0xA23F6050]
---- User code sections - GMER 1.0.15 ----
.text C:\Program Files\Mozilla Firefox\firefox.exe[756] ntdll.dll!LdrLoadDll 76F39390 5 Bytes JMP 012713F0 C:\Program Files\Mozilla Firefox\firefox.exe (Firefox/Mozilla Corporation)
---- User IAT/EAT - GMER 1.0.15 ----
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdiplusShutdown] [73297817] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCloneImage] [732EA86D] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDrawImageRectI] [7329BB22] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipSetInterpolationMode] [7328F695] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdiplusStartup] [732975E9] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateFromHDC] [7328E7CA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateBitmapFromStreamICM] [732C8395] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateBitmapFromStream] [7329DA60] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipGetImageHeight] [7328FFFA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipGetImageWidth] [7328FF61] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDisposeImage] [732871CF] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipLoadImageFromFileICM] [7331CAE2] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipLoadImageFromFile] [732BC8D8] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDeleteGraphics] [7328D968] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipFree] [73286853] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipAlloc] [7328687E] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipSetCompositingMode] [73292AD1] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files\DAEMON Tools Pro\
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0 0x71 0x2B 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 0
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0x82 0xDF 0xBC 0x21 ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0xA0 0x02 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x22 0x3A 0x8B 0x59 ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0xFB 0x66 0xE8 0xA2 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files\DAEMON Tools Pro\
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0 0x71 0x2B 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 0
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0x82 0xDF 0xBC 0x21 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0xA0 0x02 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x22 0x3A 0x8B 0x59 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0xFB 0x66 0xE8 0xA2 ...
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Media Center\Service\Scheduler@Heartbeat 0x04 0xFF 0x62 0x99 ...
---- EOF - GMER 1.0.15 ----
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-09-20 12:32:15
Windows 6.0.6002 Service Pack 2
Running: gmer.exe; Driver: C:\Users\Pascal\AppData\Local\Temp\uwldafog.sys
---- System - GMER 1.0.15 ----
SSDT 8C467B94 ZwCreateThread
SSDT 8C467B80 ZwOpenProcess
SSDT 8C467B85 ZwOpenThread
SSDT 8C467B8F ZwTerminateProcess
---- Kernel code sections - GMER 1.0.15 ----
.text ntkrnlpa.exe!KeSetEvent + 221 826BD984 4 Bytes [94, 7B, 46, 8C]
.text ntkrnlpa.exe!KeSetEvent + 3F1 826BDB54 4 Bytes [80, 7B, 46, 8C] {CMP BYTE [EBX+0x46], 0x8c}
.text ntkrnlpa.exe!KeSetEvent + 40D 826BDB70 4 Bytes [85, 7B, 46, 8C]
.text ntkrnlpa.exe!KeSetEvent + 621 826BDD84 4 Bytes [8F, 7B, 46, 8C]
.text C:\Program Files\HP\DVDPlay\000.fcl section is writeable [0xA23D3000, 0x2892, 0xE8000020]
.vmp2 C:\Program Files\HP\DVDPlay\000.fcl entry point in ".vmp2" section [0xA23F6050]
---- User code sections - GMER 1.0.15 ----
.text C:\Program Files\Mozilla Firefox\firefox.exe[756] ntdll.dll!LdrLoadDll 76F39390 5 Bytes JMP 012713F0 C:\Program Files\Mozilla Firefox\firefox.exe (Firefox/Mozilla Corporation)
---- User IAT/EAT - GMER 1.0.15 ----
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdiplusShutdown] [73297817] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCloneImage] [732EA86D] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDrawImageRectI] [7329BB22] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipSetInterpolationMode] [7328F695] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdiplusStartup] [732975E9] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateFromHDC] [7328E7CA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateBitmapFromStreamICM] [732C8395] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateBitmapFromStream] [7329DA60] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipGetImageHeight] [7328FFFA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipGetImageWidth] [7328FF61] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDisposeImage] [732871CF] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipLoadImageFromFileICM] [7331CAE2] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipLoadImageFromFile] [732BC8D8] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDeleteGraphics] [7328D968] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipFree] [73286853] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipAlloc] [7328687E] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1248] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipSetCompositingMode] [73292AD1] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files\DAEMON Tools Pro\
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0 0x71 0x2B 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 0
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0x82 0xDF 0xBC 0x21 ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0xA0 0x02 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x22 0x3A 0x8B 0x59 ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0xFB 0x66 0xE8 0xA2 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files\DAEMON Tools Pro\
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0 0x71 0x2B 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 0
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0x82 0xDF 0xBC 0x21 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0xA0 0x02 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x22 0x3A 0x8B 0x59 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0xFB 0x66 0xE8 0xA2 ...
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Media Center\Service\Scheduler@Heartbeat 0x04 0xFF 0x62 0x99 ...
---- EOF - GMER 1.0.15 ----
voici le dernier:
Dans le fichier 'C:\Program Files\List_Kill'em\List_Killem_update.exe'
un virus ou un programme indésirable 'TR/Zlob.178176' [trojan] a été détecté.
Action exécutée : Refuser l'accès
Dans le fichier 'C:\Program Files\List_Kill'em\List_Killem_update.exe'
un virus ou un programme indésirable 'TR/Zlob.178176' [trojan] a été détecté.
Action exécutée : Refuser l'accès
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
ben si tu as fait tout le menage plus haut tout est bien à part si tu vois un rapport qui traine , supprime-le ca aidera pour ta future desinfection
Non, je me suis arrêté au nettoyage des disques et en plus je viens de recevoir cette alerte d'Avira:
Dans le fichier 'C:\Program Files\List_Kill'em\List_Killem_update.exe'
un virus ou un programme indésirable 'TR/Zlob.178176' [trojan] a été détecté.
Action exécutée : Refuser l'accès
Dans le fichier 'C:\Program Files\List_Kill'em\List_Killem_update.exe'
un virus ou un programme indésirable 'TR/Zlob.178176' [trojan] a été détecté.
Action exécutée : Refuser l'accès
La seule façon de supprimer List_Kill'em a été de le supprimer du bureau, je suis allé dans pgm et fonctionnalités pas de trace de ce pgm pour le supprimer, donc je pense l'avoir désinstallé.
Que veut dire ce nouveau code :S ?
Que veut dire ce nouveau code :S ?
Tu as mis le topic en résolu mais je ne suis pas sûr que le problème soit réglé...
Merci de ta patience!
Merci de ta patience!
Je n'arrête pas d'avoir des alertes Avira due genre:
Dans le fichier 'C:\Program Files\List_Kill'em\List_Killem_update.exe'
un virus ou un programme indésirable 'TR/Zlob.178176' [trojan] a été détecté.
Action exécutée : Refuser l'accès
Dans le fichier 'C:\Program Files\List_Kill'em\List_Killem_update.exe'
un virus ou un programme indésirable 'TR/Zlob.178176' [trojan] a été détecté.
Action exécutée : Refuser l'accès
Que veut dire ce nouveau code :S ?
tout simplement que je vais essayer de faire en sorte que l'update de l outil ne soit plus detectable , et au pire , ben je la supprimerai............
tout simplement que je vais essayer de faire en sorte que l'update de l outil ne soit plus detectable , et au pire , ben je la supprimerai............
supprime C:\Programmes\List_Kill'em , le dossier complet
mais ca m'etonne tu dois avoir List_Kill'em dans ajout/suppression......c'est obligé !!
mais ca m'etonne tu dois avoir List_Kill'em dans ajout/suppression......c'est obligé !!