Effacer un fichier systeme bizarre
knakes
Messages postés
3
Statut
Membre
-
knakes Messages postés 3 Statut Membre -
knakes Messages postés 3 Statut Membre -
Salut,
J'aurais voulu avoir un petit conseil: j'ai un fichier qui ne veut pas s'effacer. J'ai l'impression qu'il s'est mis en fichier systeme...Vous pensez que ca peut etre un virus?
Merci d'avance de votre aide
Voila le log Hijack:
Logfile of HijackThis v1.99.1
Scan saved at 01:31:02, on 13/04/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLService.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\Apps\Softex\OmniPass\Omniserv.exe
C:\WINDOWS\system32\slserv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
C:\Apps\Softex\OmniPass\OPXPApp.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\ALCWZRD.EXE
C:\Program Files\MIC\HAWAII\Hawaii.exe
C:\Apps\Softex\OmniPass\scureapp.exe
C:\Apps\Powercinema\PCMService.exe
C:\WINDOWS\system32\GSICON.EXE
C:\WINDOWS\system32\dslagent.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Sony\CONNECTAutoUpdate\CONNECTScheduler.exe
C:\WINDOWS\mHotkey.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\BroadJump\Client Foundation\CFD.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Sony\CONNECTAutoUpdate\CONNECTAUTrayApp.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Fichiers communs\Sony Shared\GMR\GMRMan.exe
C:\Program Files\Club-Internet\Lanceur\lanceur.exe
C:\Program Files\Club-Internet\Dr Club Internet\bin\mpbtn.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\ewido anti-malware\SecuritySuite.exe
C:\Program Files\Messenger\msmsgs.exe
D:\Documents and Settings\Antoine\Local Settings\Temporary Internet Files\Content.IE5\GV2HKX0X\HijackThis[1].exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://format.packardbell.com/cgi-bin/redirect/?country=FR&range=AD&phase=6&key=S...
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = file://C:\APPS\IE\offline\fr.htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer avec Club-Internet
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Norton Internet Security 2006 - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton Internet Security 2006 - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe
O4 - HKLM\..\Run: [ATIPTA] C:\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [MM_MODULE] C:\Program Files\MIC\HAWAII\Hawaii.exe
O4 - HKLM\..\Run: [OmniPass] C:\Apps\Softex\OmniPass\scureapp.exe
O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe"
O4 - HKLM\..\Run: [GSICONEXE] GSICON.EXE
O4 - HKLM\..\Run: [DSLAGENTEXE] dslagent.exe USB
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [CONNECTScheduler] "C:\Program Files\Sony\CONNECTAutoUpdate\CONNECTScheduler.exe" /RUN_SCHEDULER
O4 - HKLM\..\Run: [NECHotkey] mHotkey.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [BJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "C:\APPS\skype\phone\Skype.exe" /nosplash /minimized
O4 - Startup: Club Internet.lnk = C:\Program Files\Club-Internet\Lanceur\lanceur.exe
O4 - Global Startup: CONNECTAUTrayApp.lnk = C:\Program Files\Sony\CONNECTAutoUpdate\CONNECTAUTrayApp.exe
O4 - Global Startup: Docteur Club Internet.lnk = C:\Program Files\Club-Internet\Dr Club Internet\bin\matcli.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\microsoft office\office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site....
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {983AB2CC-3D50-11D9-ADFE-00062919A34C} (ActiveXUpload.UserCtrl) - http://www.photoservice.com/activeX/newUpload.CAB
O16 - DPF: {A18962F6-E6ED-40B1-97C9-1FB36F38BFA8} (Aurigma Image Uploader 3.5 Control) - http://www.wisup.net/_plateforme/Upload/Aurigma/AurigmaActiveX/ImageUploader35.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: OPXPGina - C:\Apps\Softex\OmniPass\opxpgina.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\ccPwdSvc.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Norton Internet Security\comHost.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: MysqlInventime - Unknown owner - C:\Apps\INVENT~1\mysql\bin\mysqld-nt.exe
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: Softex OmniPass Service (omniserv) - Softex Inc. - C:\Apps\Softex\OmniPass\Omniserv.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Sony SCSI Helper Service - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\Fsk\SonySCSIHelperService.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
Ensuite, le rapport ewido security
---------------------------------------------------------
ewido anti-malware - Rapport de scan
---------------------------------------------------------
+ Créé le: 01:51:44, 13/04/2006
+ Somme de contrôle: 66F6F00D
+ Résultats du scan:
HKLM\SOFTWARE\Classes\WUSN.1 -> Adware.SaveNow : Nettoyer et sauvegarder
HKLM\SOFTWARE\WhenUSave -> Adware.SaveNow : Nettoyer et sauvegarder
HKLM\SOFTWARE\WhenUSave\Partners -> Adware.SaveNow : Nettoyer et sauvegarder
HKLM\SOFTWARE\WhenUSave\Partners\BSPL -> Adware.SaveNow : Nettoyer et sauvegarder
C:\Program Files\Save -> Adware.SaveNow : Nettoyer et sauvegarder
D:\Documents and Settings\Antoine\Cookies\antoine@estat[1].txt -> TrackingCookie.Estat : Nettoyer et sauvegarder
D:\Documents and Settings\Antoine\Cookies\antoine@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyer et sauvegarder
D:\Documents and Settings\Antoine\Cookies\antoine@weborama[1].txt -> TrackingCookie.Weborama : Nettoyer et sauvegarder
D:\Documents and Settings\Antoine\Cookies\antoine@wreport.weborama[1].txt -> TrackingCookie.Weborama : Nettoyer et sauvegarder
D:\Documents and Settings\Antoine\Cookies\antoine@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Nettoyer et sauvegarder
D:\Documents and Settings\Antoine\Menu Démarrer\Programmes\Power Scan -> Adware.PowerScan : Nettoyer et sauvegarder
::Fin du rapport
Si quelqu'un peut jeter un oeil a ca et me dire ce qu'il en pense, c'est cool parce que pour moi c'est du chinois.
Merci d'avance :-)
J'aurais voulu avoir un petit conseil: j'ai un fichier qui ne veut pas s'effacer. J'ai l'impression qu'il s'est mis en fichier systeme...Vous pensez que ca peut etre un virus?
Merci d'avance de votre aide
Voila le log Hijack:
Logfile of HijackThis v1.99.1
Scan saved at 01:31:02, on 13/04/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLService.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\Apps\Softex\OmniPass\Omniserv.exe
C:\WINDOWS\system32\slserv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
C:\Apps\Softex\OmniPass\OPXPApp.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\ALCWZRD.EXE
C:\Program Files\MIC\HAWAII\Hawaii.exe
C:\Apps\Softex\OmniPass\scureapp.exe
C:\Apps\Powercinema\PCMService.exe
C:\WINDOWS\system32\GSICON.EXE
C:\WINDOWS\system32\dslagent.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Sony\CONNECTAutoUpdate\CONNECTScheduler.exe
C:\WINDOWS\mHotkey.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\BroadJump\Client Foundation\CFD.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Sony\CONNECTAutoUpdate\CONNECTAUTrayApp.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Fichiers communs\Sony Shared\GMR\GMRMan.exe
C:\Program Files\Club-Internet\Lanceur\lanceur.exe
C:\Program Files\Club-Internet\Dr Club Internet\bin\mpbtn.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\ewido anti-malware\SecuritySuite.exe
C:\Program Files\Messenger\msmsgs.exe
D:\Documents and Settings\Antoine\Local Settings\Temporary Internet Files\Content.IE5\GV2HKX0X\HijackThis[1].exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://format.packardbell.com/cgi-bin/redirect/?country=FR&range=AD&phase=6&key=S...
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = file://C:\APPS\IE\offline\fr.htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer avec Club-Internet
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Norton Internet Security 2006 - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton Internet Security 2006 - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe
O4 - HKLM\..\Run: [ATIPTA] C:\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [MM_MODULE] C:\Program Files\MIC\HAWAII\Hawaii.exe
O4 - HKLM\..\Run: [OmniPass] C:\Apps\Softex\OmniPass\scureapp.exe
O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe"
O4 - HKLM\..\Run: [GSICONEXE] GSICON.EXE
O4 - HKLM\..\Run: [DSLAGENTEXE] dslagent.exe USB
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [CONNECTScheduler] "C:\Program Files\Sony\CONNECTAutoUpdate\CONNECTScheduler.exe" /RUN_SCHEDULER
O4 - HKLM\..\Run: [NECHotkey] mHotkey.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [BJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "C:\APPS\skype\phone\Skype.exe" /nosplash /minimized
O4 - Startup: Club Internet.lnk = C:\Program Files\Club-Internet\Lanceur\lanceur.exe
O4 - Global Startup: CONNECTAUTrayApp.lnk = C:\Program Files\Sony\CONNECTAutoUpdate\CONNECTAUTrayApp.exe
O4 - Global Startup: Docteur Club Internet.lnk = C:\Program Files\Club-Internet\Dr Club Internet\bin\matcli.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\microsoft office\office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site....
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {983AB2CC-3D50-11D9-ADFE-00062919A34C} (ActiveXUpload.UserCtrl) - http://www.photoservice.com/activeX/newUpload.CAB
O16 - DPF: {A18962F6-E6ED-40B1-97C9-1FB36F38BFA8} (Aurigma Image Uploader 3.5 Control) - http://www.wisup.net/_plateforme/Upload/Aurigma/AurigmaActiveX/ImageUploader35.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: OPXPGina - C:\Apps\Softex\OmniPass\opxpgina.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\ccPwdSvc.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Norton Internet Security\comHost.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: MysqlInventime - Unknown owner - C:\Apps\INVENT~1\mysql\bin\mysqld-nt.exe
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: Softex OmniPass Service (omniserv) - Softex Inc. - C:\Apps\Softex\OmniPass\Omniserv.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Sony SCSI Helper Service - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\Fsk\SonySCSIHelperService.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
Ensuite, le rapport ewido security
---------------------------------------------------------
ewido anti-malware - Rapport de scan
---------------------------------------------------------
+ Créé le: 01:51:44, 13/04/2006
+ Somme de contrôle: 66F6F00D
+ Résultats du scan:
HKLM\SOFTWARE\Classes\WUSN.1 -> Adware.SaveNow : Nettoyer et sauvegarder
HKLM\SOFTWARE\WhenUSave -> Adware.SaveNow : Nettoyer et sauvegarder
HKLM\SOFTWARE\WhenUSave\Partners -> Adware.SaveNow : Nettoyer et sauvegarder
HKLM\SOFTWARE\WhenUSave\Partners\BSPL -> Adware.SaveNow : Nettoyer et sauvegarder
C:\Program Files\Save -> Adware.SaveNow : Nettoyer et sauvegarder
D:\Documents and Settings\Antoine\Cookies\antoine@estat[1].txt -> TrackingCookie.Estat : Nettoyer et sauvegarder
D:\Documents and Settings\Antoine\Cookies\antoine@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyer et sauvegarder
D:\Documents and Settings\Antoine\Cookies\antoine@weborama[1].txt -> TrackingCookie.Weborama : Nettoyer et sauvegarder
D:\Documents and Settings\Antoine\Cookies\antoine@wreport.weborama[1].txt -> TrackingCookie.Weborama : Nettoyer et sauvegarder
D:\Documents and Settings\Antoine\Cookies\antoine@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Nettoyer et sauvegarder
D:\Documents and Settings\Antoine\Menu Démarrer\Programmes\Power Scan -> Adware.PowerScan : Nettoyer et sauvegarder
::Fin du rapport
Si quelqu'un peut jeter un oeil a ca et me dire ce qu'il en pense, c'est cool parce que pour moi c'est du chinois.
Merci d'avance :-)
A voir également:
- Effacer un fichier systeme bizarre
- Fichier bin - Guide
- Comment réduire la taille d'un fichier - Guide
- Comment ouvrir un fichier epub ? - Guide
- Restauration systeme windows 10 - Guide
- Fichier rar - Guide
2 réponses
CCM
Hello
Merci de procéder dans l’ordre,
Télécharge TOUS ces programmes (si tu n’as pas), installe-les.
Fais les mises à jour des progr 1/, 2/, 3/
Scan avec TOUS, COLLE les rapports de 3/ & 6/
0/ - Télécharger ceci (merci a S!RI pour ce petit programme) :
http://siri.urz.free.fr/Fix/SmitfraudFix.zip
L'exécuter, puis double-cliquer sur Smitfraudfix.cmd
Choisir l’option 1, il va générer un rapport
Copier-coller ce dernier dans un message sur le forum.
En image :
http://siri.urz.free.fr/Fix/SmitfraudFix.php
1/ -Ad-Aware (gratuit) :
https://forums.cnetfrance.fr
2/ - Spybot (gratuit) :
http://telecharger.01net.com/windows/Internet/internet_utlitaire/fiches/26157.html
3/ - Ewido
4/ - regcleaner ( nettoyeur de registre)
http://www.01net.com/windows/Utilitaire/nettoyeurs_et_installeurs/fiches/4894.html
Son tuto
http://www.softastuces.com/tuto/maint/regcleaner/index.php
5/ - cleanup40 (nettoyeur de cookies+temps+tempos+prefetch+historique+etc..)
http://pageperso.aol.fr/Balltrap34/CleanUp40.exe
Démo
http://pageperso.aol.fr/balltrap34/democleanup.htm
6/ - Scan online avec BitDefender – fonctionne uniquement sous Internet Explorer en acceptant l’activX (à défaut de réussite, essaie avec Kasper et Panda )
https://assiste.com/404_La_page_demandee_n_existe_pas.php
Copie/COLLE le rapport entier
7/ - Hijackthis – outil de diagnostic et réparation
lire démo
http://pageperso.aol.fr/balltrap34/demohijack.htm
Au boulot – Bon courage
===========
PS
Quel fichier ?
Lecture du log hijack à réception du rapport du scan online
Merci d' avoir commencé le boulot avec Ewido
Hello
Merci de procéder dans l’ordre,
Télécharge TOUS ces programmes (si tu n’as pas), installe-les.
Fais les mises à jour des progr 1/, 2/, 3/
Scan avec TOUS, COLLE les rapports de 3/ & 6/
0/ - Télécharger ceci (merci a S!RI pour ce petit programme) :
http://siri.urz.free.fr/Fix/SmitfraudFix.zip
L'exécuter, puis double-cliquer sur Smitfraudfix.cmd
Choisir l’option 1, il va générer un rapport
Copier-coller ce dernier dans un message sur le forum.
En image :
http://siri.urz.free.fr/Fix/SmitfraudFix.php
1/ -Ad-Aware (gratuit) :
https://forums.cnetfrance.fr
2/ - Spybot (gratuit) :
http://telecharger.01net.com/windows/Internet/internet_utlitaire/fiches/26157.html
3/ - Ewido
4/ - regcleaner ( nettoyeur de registre)
http://www.01net.com/windows/Utilitaire/nettoyeurs_et_installeurs/fiches/4894.html
Son tuto
http://www.softastuces.com/tuto/maint/regcleaner/index.php
5/ - cleanup40 (nettoyeur de cookies+temps+tempos+prefetch+historique+etc..)
http://pageperso.aol.fr/Balltrap34/CleanUp40.exe
Démo
http://pageperso.aol.fr/balltrap34/democleanup.htm
6/ - Scan online avec BitDefender – fonctionne uniquement sous Internet Explorer en acceptant l’activX (à défaut de réussite, essaie avec Kasper et Panda )
https://assiste.com/404_La_page_demandee_n_existe_pas.php
Copie/COLLE le rapport entier
7/ - Hijackthis – outil de diagnostic et réparation
lire démo
http://pageperso.aol.fr/balltrap34/demohijack.htm
Au boulot – Bon courage
===========
PS
Quel fichier ?
Lecture du log hijack à réception du rapport du scan online
Merci d' avoir commencé le boulot avec Ewido
Salut,
Merci beaucoup pour tes conseils. J'ai comme conseillé installé et executé les programmes dans l'ordre.
Le fichier en question a ete telecharge sur limewire. Ca devait etre a la base une photo en Jpeg, mais elle est impossible a ouvrir,et je me suis apercu que c'etait devenu un fichier systeme..... je ne peux pas le supprimer.comment je fais pour l'effacer?
Voila l'analyse Ewido
--------------------------------------------------------
ewido anti-malware - Rapport de scan
---------------------------------------------------------
+ Créé le: 10:19:31, 13/04/2006
+ Somme de contrôle: 87378A81
+ Résultats du scan:
D:\Documents and Settings\Antoine\Cookies\antoine@estat[1].txt -> TrackingCookie.Estat : Nettoyer et sauvegarder
::Fin du rapport
voila le rapport bitdefender
BitDefender Online Scanner
Scan report generated at: Thu, Apr 13, 2006 - 11:00:29
Scan path: C:\;D:\;E:\;F:\;
Statistics
Time
01:06:59
Files
518478
Folders
6881
Boot Sectors
5
Archives
8223
Packed Files
52174
Results
Identified Viruses
12
Infected Files
25
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
50
Engines Info
Virus Definitions
369667
Engine build
AVCORE v1.0 (build 2292) (i386) (Mar 3 2005 11:57:29)
Scan plugins
13
Archive plugins
39
Unpack plugins
4
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\06761320.exe=>(Quarantine-2)
Infected with: Trojan.Muldrop.2422.A
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\06761320.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\06761320.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10CF5B8F.dll=>(Quarantine-2)
Infected with: Trojan.Downloader.Istbar.OB
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10CF5B8F.dll=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10CF5B8F.dll=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16955464.exe=>(Quarantine-2)
Infected with: Trojan.Pakes.DU
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16955464.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16955464.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16987E60.exe=>(Quarantine-2)
Infected with: Trojan.Muldrop.2422.A
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16987E60.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16987E60.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18C03601.exe=>(Quarantine-2)
Infected with: Trojan.Pakes.DU
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18C03601.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18C03601.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\19017DB9.exe=>(Quarantine-2)
Infected with: MemScan:Trojan.Pokapoka62.C
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\19017DB9.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\19017DB9.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\193523FC.exe=>(Quarantine-2)
Infected with: Backdoor.Rbot.6
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\193523FC.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\193523FC.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\194575EA.exe=>(Quarantine-2)
Infected with: Backdoor.Rbot.6
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\194575EA.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\194575EA.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BA570D1.exe=>(Quarantine-2)
Infected with: Trojan.Pakes.DU
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BA570D1.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BA570D1.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BA81ACE.exe=>(Quarantine-2)
Infected with: Trojan.Muldrop.2422.A
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BA81ACE.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BA81ACE.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BED0C82.exe=>(Quarantine-2)
Infected with: MemScan:Trojan.Pokapoka62.C
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BED0C82.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BED0C82.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1E665DC9.exe=>(Quarantine-2)
Infected with: Trojan.Pakes.DU
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1E665DC9.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1E665DC9.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1EC27565.exe=>(Quarantine-2)
Infected with: MemScan:Trojan.Pokapoka62.C
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1EC27565.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1EC27565.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45126A50.exe=>(Quarantine-2)
Infected with: Trojan.Muldrop.2422.A
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45126A50.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45126A50.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B077D90.exe=>(Quarantine-2)
Infected with: Trojan.Small.CY
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B077D90.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B077D90.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59840515.exe=>(Quarantine-2)
Infected with: Win32.Vb.AN@mm
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59840515.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59840515.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5D777BD6=>(Quarantine-2)
Infected with: Win32.Vb.AN@mm
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5D777BD6=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5D777BD6=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60524D36.exe=>(Quarantine-2)
Infected with: Trojan.Small.CY
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60524D36.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60524D36.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\740F2D86.exe=>(Quarantine-2)
Infected with: Trojan.Isbar.387
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\740F2D86.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\740F2D86.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74125782.dll=>(Quarantine-2)
Infected with: Trojan.Downloader.Dyfuca.DD
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74125782.dll=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74125782.exe=>(Quarantine-2)
Infected with: Trojan.Isbar.387
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74125782.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74125782.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7415017F.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Istbar.IS
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7415017F.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7415017F.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FA966C5.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Istbar.MZ
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FA966C5.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FA966C5.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FB60EB7.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Dyfuca.EI
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FB60EB7.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FB60EB7.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FB938B3.dll=>(Quarantine-2)
Infected with: Trojan.Downloader.Istbar.OB
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FB938B3.dll=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FB938B3.dll=>(Quarantine-2)
Deleted
Merci beaucoup d'avance
Merci beaucoup pour tes conseils. J'ai comme conseillé installé et executé les programmes dans l'ordre.
Le fichier en question a ete telecharge sur limewire. Ca devait etre a la base une photo en Jpeg, mais elle est impossible a ouvrir,et je me suis apercu que c'etait devenu un fichier systeme..... je ne peux pas le supprimer.comment je fais pour l'effacer?
Voila l'analyse Ewido
--------------------------------------------------------
ewido anti-malware - Rapport de scan
---------------------------------------------------------
+ Créé le: 10:19:31, 13/04/2006
+ Somme de contrôle: 87378A81
+ Résultats du scan:
D:\Documents and Settings\Antoine\Cookies\antoine@estat[1].txt -> TrackingCookie.Estat : Nettoyer et sauvegarder
::Fin du rapport
voila le rapport bitdefender
BitDefender Online Scanner
Scan report generated at: Thu, Apr 13, 2006 - 11:00:29
Scan path: C:\;D:\;E:\;F:\;
Statistics
Time
01:06:59
Files
518478
Folders
6881
Boot Sectors
5
Archives
8223
Packed Files
52174
Results
Identified Viruses
12
Infected Files
25
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
50
Engines Info
Virus Definitions
369667
Engine build
AVCORE v1.0 (build 2292) (i386) (Mar 3 2005 11:57:29)
Scan plugins
13
Archive plugins
39
Unpack plugins
4
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\06761320.exe=>(Quarantine-2)
Infected with: Trojan.Muldrop.2422.A
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\06761320.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\06761320.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10CF5B8F.dll=>(Quarantine-2)
Infected with: Trojan.Downloader.Istbar.OB
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10CF5B8F.dll=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10CF5B8F.dll=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16955464.exe=>(Quarantine-2)
Infected with: Trojan.Pakes.DU
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16955464.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16955464.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16987E60.exe=>(Quarantine-2)
Infected with: Trojan.Muldrop.2422.A
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16987E60.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16987E60.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18C03601.exe=>(Quarantine-2)
Infected with: Trojan.Pakes.DU
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18C03601.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18C03601.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\19017DB9.exe=>(Quarantine-2)
Infected with: MemScan:Trojan.Pokapoka62.C
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\19017DB9.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\19017DB9.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\193523FC.exe=>(Quarantine-2)
Infected with: Backdoor.Rbot.6
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\193523FC.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\193523FC.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\194575EA.exe=>(Quarantine-2)
Infected with: Backdoor.Rbot.6
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\194575EA.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\194575EA.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BA570D1.exe=>(Quarantine-2)
Infected with: Trojan.Pakes.DU
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BA570D1.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BA570D1.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BA81ACE.exe=>(Quarantine-2)
Infected with: Trojan.Muldrop.2422.A
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BA81ACE.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BA81ACE.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BED0C82.exe=>(Quarantine-2)
Infected with: MemScan:Trojan.Pokapoka62.C
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BED0C82.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BED0C82.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1E665DC9.exe=>(Quarantine-2)
Infected with: Trojan.Pakes.DU
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1E665DC9.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1E665DC9.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1EC27565.exe=>(Quarantine-2)
Infected with: MemScan:Trojan.Pokapoka62.C
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1EC27565.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1EC27565.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45126A50.exe=>(Quarantine-2)
Infected with: Trojan.Muldrop.2422.A
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45126A50.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45126A50.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B077D90.exe=>(Quarantine-2)
Infected with: Trojan.Small.CY
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B077D90.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B077D90.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59840515.exe=>(Quarantine-2)
Infected with: Win32.Vb.AN@mm
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59840515.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59840515.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5D777BD6=>(Quarantine-2)
Infected with: Win32.Vb.AN@mm
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5D777BD6=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5D777BD6=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60524D36.exe=>(Quarantine-2)
Infected with: Trojan.Small.CY
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60524D36.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60524D36.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\740F2D86.exe=>(Quarantine-2)
Infected with: Trojan.Isbar.387
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\740F2D86.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\740F2D86.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74125782.dll=>(Quarantine-2)
Infected with: Trojan.Downloader.Dyfuca.DD
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74125782.dll=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74125782.exe=>(Quarantine-2)
Infected with: Trojan.Isbar.387
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74125782.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74125782.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7415017F.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Istbar.IS
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7415017F.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7415017F.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FA966C5.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Istbar.MZ
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FA966C5.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FA966C5.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FB60EB7.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Dyfuca.EI
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FB60EB7.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FB60EB7.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FB938B3.dll=>(Quarantine-2)
Infected with: Trojan.Downloader.Istbar.OB
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FB938B3.dll=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FB938B3.dll=>(Quarantine-2)
Deleted
Merci beaucoup d'avance
Merci beaucoup pour tes conseils. J'ai comme conseillé installé et executé les programmes dans l'ordre.
Le fichier en question a ete telecharge sur limewire. Ca devait etre a la base une photo en Jpeg, mais elle est impossible a ouvrir,et je me suis apercu que c'etait devenu un fichier systeme..... je ne peux pas le supprimer.comment je fais pour l'effacer?
Voila l'analyse Ewido
--------------------------------------------------------
ewido anti-malware - Rapport de scan
---------------------------------------------------------
+ Créé le: 10:19:31, 13/04/2006
+ Somme de contrôle: 87378A81
+ Résultats du scan:
D:\Documents and Settings\Antoine\Cookies\antoine@estat[1].txt -> TrackingCookie.Estat : Nettoyer et sauvegarder
::Fin du rapport
voila le rapport bitdefender
BitDefender Online Scanner
Scan report generated at: Thu, Apr 13, 2006 - 11:00:29
Scan path: C:\;D:\;E:\;F:\;
Statistics
Time
01:06:59
Files
518478
Folders
6881
Boot Sectors
5
Archives
8223
Packed Files
52174
Results
Identified Viruses
12
Infected Files
25
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
50
Engines Info
Virus Definitions
369667
Engine build
AVCORE v1.0 (build 2292) (i386) (Mar 3 2005 11:57:29)
Scan plugins
13
Archive plugins
39
Unpack plugins
4
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\06761320.exe=>(Quarantine-2)
Infected with: Trojan.Muldrop.2422.A
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\06761320.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\06761320.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10CF5B8F.dll=>(Quarantine-2)
Infected with: Trojan.Downloader.Istbar.OB
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10CF5B8F.dll=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10CF5B8F.dll=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16955464.exe=>(Quarantine-2)
Infected with: Trojan.Pakes.DU
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16955464.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16955464.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16987E60.exe=>(Quarantine-2)
Infected with: Trojan.Muldrop.2422.A
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16987E60.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16987E60.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18C03601.exe=>(Quarantine-2)
Infected with: Trojan.Pakes.DU
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18C03601.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18C03601.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\19017DB9.exe=>(Quarantine-2)
Infected with: MemScan:Trojan.Pokapoka62.C
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\19017DB9.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\19017DB9.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\193523FC.exe=>(Quarantine-2)
Infected with: Backdoor.Rbot.6
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\193523FC.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\193523FC.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\194575EA.exe=>(Quarantine-2)
Infected with: Backdoor.Rbot.6
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\194575EA.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\194575EA.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BA570D1.exe=>(Quarantine-2)
Infected with: Trojan.Pakes.DU
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BA570D1.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BA570D1.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BA81ACE.exe=>(Quarantine-2)
Infected with: Trojan.Muldrop.2422.A
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BA81ACE.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BA81ACE.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BED0C82.exe=>(Quarantine-2)
Infected with: MemScan:Trojan.Pokapoka62.C
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BED0C82.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BED0C82.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1E665DC9.exe=>(Quarantine-2)
Infected with: Trojan.Pakes.DU
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1E665DC9.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1E665DC9.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1EC27565.exe=>(Quarantine-2)
Infected with: MemScan:Trojan.Pokapoka62.C
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1EC27565.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1EC27565.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45126A50.exe=>(Quarantine-2)
Infected with: Trojan.Muldrop.2422.A
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45126A50.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45126A50.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B077D90.exe=>(Quarantine-2)
Infected with: Trojan.Small.CY
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B077D90.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B077D90.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59840515.exe=>(Quarantine-2)
Infected with: Win32.Vb.AN@mm
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59840515.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59840515.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5D777BD6=>(Quarantine-2)
Infected with: Win32.Vb.AN@mm
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5D777BD6=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5D777BD6=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60524D36.exe=>(Quarantine-2)
Infected with: Trojan.Small.CY
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60524D36.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60524D36.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\740F2D86.exe=>(Quarantine-2)
Infected with: Trojan.Isbar.387
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\740F2D86.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\740F2D86.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74125782.dll=>(Quarantine-2)
Infected with: Trojan.Downloader.Dyfuca.DD
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74125782.dll=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74125782.exe=>(Quarantine-2)
Infected with: Trojan.Isbar.387
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74125782.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74125782.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7415017F.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Istbar.IS
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7415017F.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7415017F.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FA966C5.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Istbar.MZ
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FA966C5.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FA966C5.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FB60EB7.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Dyfuca.EI
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FB60EB7.exe=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FB60EB7.exe=>(Quarantine-2)
Deleted
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FB938B3.dll=>(Quarantine-2)
Infected with: Trojan.Downloader.Istbar.OB
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FB938B3.dll=>(Quarantine-2)
Disinfection failed
D:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FB938B3.dll=>(Quarantine-2)
Deleted
Merci beaucoup d'avance