Verifier mon rapport itjack

Fermé
la miss972 - 12 juin 2006 à 03:35
la miss972 Messages postés 210 Date d'inscription lundi 10 octobre 2005 Statut Membre Dernière intervention 11 novembre 2015 - 18 juin 2006 à 22:59
quelqun pourrait analyser mon rapport merci

Logfile of HijackThis v1.99.1
Scan saved at 21:31:06, on 11/06/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\EPSON\EBAPI\eEBSVC.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\WINDOWS\system32\drivers\KodakCCS.exe
C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4ss.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\rnamfler\naofsvc.exe
C:\WINDOWS\system32\slserv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4gui.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Java\jre1.5.0\bin\jusched.exe
C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4gui.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS\system32\winlogon.exe
C:\Program Files\Winamp\winamp.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ool.fr/
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://mon.ool.fr/kitadsl/index.php
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: (no name) - {C71F26D3-8D70-A911-5E20-2870D1B84B94} - (no file)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [AdslTaskBar] rundll32.exe stmctrl.dll,TaskBar
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: Interface Chat Voila - http://chat7.x-echo.com/version6/Applet/vchatsign.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{9B65F18C-D5F5-4D00-9252-317035EEE294}: NameServer = 217.175.160.11 217.175.160.12
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: MsgPlusLoader.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: EpsonBidirectionalService - Unknown owner - C:\Program Files\Fichiers communs\EPSON\EBAPI\eEBSVC.exe
O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4ss.exe
O23 - Service: RdnaoFlSvc - Unknown owner - C:\Program Files\rnamfler\naofsvc.exe
O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe
A voir également:

3 réponses

^^Marie^^ Messages postés 113901 Date d'inscription mardi 6 septembre 2005 Statut Membre Dernière intervention 28 août 2020 3 275
12 juin 2006 à 08:02
BONJOUR
SIOUPLE
MERCI
AUREVOIR


Un peu plus de détails sur ton soucis...


En attendant
Un petit nettoyage :

C - Ccleaner : ( nettoyeur de registre, cookies+temps+tempos+prefetch+historique+etc..)
Télécharge ici :
https://www.ccleaner.com/ccleaner/download
Tutorial ici:
https://www.vulgarisation-informatique.com/nettoyer-windows-ccleaner.php


D - Ewido (download)- gratuit même après 14 jours d’essai
http://perso.wanadoo.fr/entraide-hijackthis/Ewido/
Copie/COLLE le rapport généré sur ce forum
Pour certaines versions de Windows antérieures à XP, Ewido peut ne pas être compatible
Dans ce cas, il te faudra utiliser a-squared free et demander une clef pour son usage gratuit
https://www.emsisoft.com/fr/

E - Scan online avec BitDefender (fonctionne uniquement sous Internet Explorer en acceptant l’ activX)
https://assiste.com/404_La_page_demandee_n_existe_pas.php
http://www.bitdefender.fr/scan8/ie.html
Copie/COLLE le rapport entier

A+

0
salut donc voici le rapport ewido
---------------------------------------------------------
ewido anti-malware - Rapport de scan
---------------------------------------------------------

+ Créé le: 14:30:25, 13/06/2006
+ Somme de contrôle: 61FECF4A

+ Résultats du scan:

:mozilla.19:C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Application Data\Mozilla\Firefox\Profiles\bedxzbvr.default\cookies.txt -> TrackingCookie.2o7 : Nettoyer et sauvegarder
C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Cookies\ginger@247realmedia[1].txt -> TrackingCookie.247realmedia : Nettoyer et sauvegarder
C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Cookies\ginger@2o7[1].txt -> TrackingCookie.2o7 : Nettoyer et sauvegarder
C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Cookies\ginger@ads.pointroll[1].txt -> TrackingCookie.Pointroll : Nettoyer et sauvegarder
C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Cookies\ginger@adtech[2].txt -> TrackingCookie.Adtech : Nettoyer et sauvegarder
C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Cookies\ginger@advertising[1].txt -> TrackingCookie.Advertising : Nettoyer et sauvegarder
C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Cookies\ginger@as1.falkag[1].txt -> TrackingCookie.Falkag : Nettoyer et sauvegarder
C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Cookies\ginger@atdmt[2].txt -> TrackingCookie.Atdmt : Nettoyer et sauvegarder
C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Cookies\ginger@bluestreak[1].txt -> TrackingCookie.Bluestreak : Nettoyer et sauvegarder
C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Cookies\ginger@doubleclick[1].txt -> TrackingCookie.Doubleclick : Nettoyer et sauvegarder
C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Cookies\ginger@estat[1].txt -> TrackingCookie.Estat : Nettoyer et sauvegarder
C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Cookies\ginger@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : Nettoyer et sauvegarder
C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Cookies\ginger@mediaplex[1].txt -> TrackingCookie.Mediaplex : Nettoyer et sauvegarder
C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Cookies\ginger@questionmarket[1].txt -> TrackingCookie.Questionmarket : Nettoyer et sauvegarder
C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Cookies\ginger@serving-sys[2].txt -> TrackingCookie.Serving-sys : Nettoyer et sauvegarder
C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Cookies\ginger@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Nettoyer et sauvegarder
C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Cookies\ginger@valueclick[1].txt -> TrackingCookie.Valueclick : Nettoyer et sauvegarder
C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Cookies\ginger@weborama[1].txt -> TrackingCookie.Weborama : Nettoyer et sauvegarder
C:\Documents and Settings\Ginger.M-OWPGK8EGFQVYZ\Cookies\ginger@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Nettoyer et sauvegarder
C:\Documents and Settings\Laurent\Cookies\laurent@atdmt[2].txt -> TrackingCookie.Atdmt : Nettoyer et sauvegarder
C:\Documents and Settings\Laurent\Cookies\laurent@weborama[1].txt -> TrackingCookie.Weborama : Nettoyer et sauvegarder
C:\Documents and Settings\Maimaine\Cookies\maimaine@atdmt[1].txt -> TrackingCookie.Atdmt : Nettoyer et sauvegarder
C:\Documents and Settings\Poupoune\Cookies\poupoune@atdmt[2].txt -> TrackingCookie.Atdmt : Nettoyer et sauvegarder
C:\Documents and Settings\Poupoune\Cookies\poupoune@weborama[2].txt -> TrackingCookie.Weborama : Nettoyer et sauvegarder
C:\Documents and Settings\Tipical slaiker\Cookies\tipical slaiker@2o7[1].txt -> TrackingCookie.2o7 : Nettoyer et sauvegarder
C:\Documents and Settings\Tipical slaiker\Cookies\tipical slaiker@ads.pointroll[1].txt -> TrackingCookie.Pointroll : Nettoyer et sauvegarder
C:\Documents and Settings\Tipical slaiker\Cookies\tipical slaiker@advertising[1].txt -> TrackingCookie.Advertising : Nettoyer et sauvegarder
C:\Documents and Settings\Tipical slaiker\Cookies\tipical slaiker@as1.falkag[2].txt -> TrackingCookie.Falkag : Nettoyer et sauvegarder
C:\Documents and Settings\Tipical slaiker\Cookies\tipical slaiker@atdmt[2].txt -> TrackingCookie.Atdmt : Nettoyer et sauvegarder
C:\Documents and Settings\Tipical slaiker\Cookies\tipical slaiker@bluestreak[1].txt -> TrackingCookie.Bluestreak : Nettoyer et sauvegarder
C:\Documents and Settings\Tipical slaiker\Cookies\tipical slaiker@doubleclick[2].txt -> TrackingCookie.Doubleclick : Nettoyer et sauvegarder
C:\Documents and Settings\Tipical slaiker\Cookies\tipical slaiker@estat[1].txt -> TrackingCookie.Estat : Nettoyer et sauvegarder
C:\Documents and Settings\Tipical slaiker\Cookies\tipical slaiker@fl01.ct2.comclick[2].txt -> TrackingCookie.Comclick : Nettoyer et sauvegarder
C:\Documents and Settings\Tipical slaiker\Cookies\tipical slaiker@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyer et sauvegarder
C:\Documents and Settings\Tipical slaiker\Cookies\tipical slaiker@serving-sys[2].txt -> TrackingCookie.Serving-sys : Nettoyer et sauvegarder
C:\Documents and Settings\Tipical slaiker\Cookies\tipical slaiker@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Nettoyer et sauvegarder
C:\Documents and Settings\Tipical slaiker\Cookies\tipical slaiker@valueclick[1].txt -> TrackingCookie.Valueclick : Nettoyer et sauvegarder
C:\Documents and Settings\Tipical slaiker\Cookies\tipical slaiker@weborama[2].txt -> TrackingCookie.Weborama : Nettoyer et sauvegarder
C:\Documents and Settings\Tipical slaiker\Cookies\tipical slaiker@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Nettoyer et sauvegarder


::Fin du rapport





et biddefender

BitDefender Online Scanner

scan report generated at: Tue, Jun 13, 2006 - 19:44:42


Scan path: C:\;D:\;E:\;F:\;G:\;


Statistics

Time
08:01:40

Files
768631

Folders
5802

Boot Sectors
2

Archives
10305

Packed Files
88758


Results

Identified Viruses
10

Infected Files
13

Suspect Files
0

Warnings
0

Disinfected
0

Deleted Files
13


Engines Info

Virus Definitions
387869

Engine build
AVCORE v1.0 (build 2310) (i386) (Apr 17 2006 16:24:38)

Scan plugins
13

Archive plugins
39

Unpack plugins
5

E-mail plugins
6

System plugins
1


Scan Settings

First Action
Disinfect

Second Action
Delete

Heuristics
Yes

Enable Warnings
Yes

Scanned Extensions
*;

Exclude Extensions


Scan Emails
Yes

Scan Archives
Yes

Scan Packed
Yes

Scan Files
Yes

Scan Boot
Yes


Scanned File
Status

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP10\A0018571.exe
Infected with: Trojan.Downloader.Istbar.UB

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP10\A0018571.exe
Disinfection failed

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP10\A0018571.exe
Deleted

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP10\A0018573.exe
Infected with: Trojan.Downloader.IstBar.OL

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP10\A0018573.exe
Disinfection failed

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP10\A0018573.exe
Deleted

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP10\A0020652.exe
Infected with: Trojan.Downloader.Swizzor.DO

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP10\A0020652.exe
Disinfection failed

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP10\A0020652.exe
Deleted

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP10\A0020656.exe
Infected with: Trojan.Downloader.IstBar.IJ

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP10\A0020656.exe
Deleted

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP10\A0020657.exe
Infected with: Trojan.Downloader.IstBar.IJ

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP10\A0020657.exe
Deleted

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP11\A0023165.exe
Infected with: Trojan.Downloader.Istbar.UB

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP11\A0023165.exe
Disinfection failed

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP11\A0023165.exe
Deleted

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP41\A0062064.exe
Infected with: Trojan.Downloader.Swizzor.DO

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP41\A0062064.exe
Disinfection failed

C:\System Volume Information\_restore{8F67E103-8EE7-49A4-BECE-E56D52005E7C}\RP41\A0062064.exe
Deleted

C:\System Volume Information\_restore{DAC92FA1-5988-41D2-BADA-F1EEBD92795D}\RP33\A0017690.exe
Infected with: Trojan.Lopad.K

C:\System Volume Information\_restore{DAC92FA1-5988-41D2-BADA-F1EEBD92795D}\RP33\A0017690.exe
Disinfection failed

C:\System Volume Information\_restore{DAC92FA1-5988-41D2-BADA-F1EEBD92795D}\RP33\A0017690.exe
Deleted

C:\System Volume Information\_restore{DAC92FA1-5988-41D2-BADA-F1EEBD92795D}\RP33\A0017739.exe
Infected with: GenPack:Trojan.Downloader.Swizzor.CB

C:\System Volume Information\_restore{DAC92FA1-5988-41D2-BADA-F1EEBD92795D}\RP33\A0017739.exe
Disinfection failed

C:\System Volume Information\_restore{DAC92FA1-5988-41D2-BADA-F1EEBD92795D}\RP33\A0017739.exe
Deleted

C:\System Volume Information\_restore{DAC92FA1-5988-41D2-BADA-F1EEBD92795D}\RP33\A0017743.exe
Infected with: GenPack:Trojan.Swizzor.BO

C:\System Volume Information\_restore{DAC92FA1-5988-41D2-BADA-F1EEBD92795D}\RP33\A0017743.exe
Disinfection failed

C:\System Volume Information\_restore{DAC92FA1-5988-41D2-BADA-F1EEBD92795D}\RP33\A0017743.exe
Deleted

C:\System Volume Information\_restore{DAC92FA1-5988-41D2-BADA-F1EEBD92795D}\RP33\A0017745.exe
Infected with: GenPack:Trojan.Downloader.Swizzor.DB

C:\System Volume Information\_restore{DAC92FA1-5988-41D2-BADA-F1EEBD92795D}\RP33\A0017745.exe
Disinfection failed

C:\System Volume Information\_restore{DAC92FA1-5988-41D2-BADA-F1EEBD92795D}\RP33\A0017745.exe
Deleted

C:\System Volume Information\_restore{DAC92FA1-5988-41D2-BADA-F1EEBD92795D}\RP63\A0028458.exe
Infected with: Backdoor.Virkel.A

C:\System Volume Information\_restore{DAC92FA1-5988-41D2-BADA-F1EEBD92795D}\RP63\A0028458.exe
Disinfection failed

C:\System Volume Information\_restore{DAC92FA1-5988-41D2-BADA-F1EEBD92795D}\RP63\A0028458.exe
Deleted

C:\System Volume Information\_restore{DAC92FA1-5988-41D2-BADA-F1EEBD92795D}\RP8\A0005939.exe
Infected with: GenPack:Trojan.Downloader.Swizzor.BO

C:\System Volume Information\_restore{DAC92FA1-5988-41D2-BADA-F1EEBD92795D}\RP8\A0005939.exe
Deleted
0
la miss972 Messages postés 210 Date d'inscription lundi 10 octobre 2005 Statut Membre Dernière intervention 11 novembre 2015 2
18 juin 2006 à 22:59
quelqun pourrai le verifier merci
0