A voir également:
- Navigateur orange ne s'ouvre plus !!!
- Yahoo mail ne s'ouvre plus - Accueil - Mail
- Navigateur privé - Guide
- Instagram ne s'ouvre plus - Forum Instagram
- Quel service d'internet permet à son navigateur de trouver l’adresse ip qui correspond à bipm.org ? - Forum Webmastering
- Savoir l'adresse ip du correspondant - Forum Réseau
23 réponses
Utilisateur anonyme
11 sept. 2006 à 00:37
11 sept. 2006 à 00:37
Salut,
Télécharge HijackThis:
Téléchargement de HijackThis
Installe le dans son propre dossier:
-clic droit sur le bureau, choisis "nouveau dossier" puis installe le dedans.
Lance le, clic sur "do a system scan and save logfile"
Puis copie et colle le rapport ici stp
Télécharge HijackThis:
Téléchargement de HijackThis
Installe le dans son propre dossier:
-clic droit sur le bureau, choisis "nouveau dossier" puis installe le dedans.
Lance le, clic sur "do a system scan and save logfile"
Puis copie et colle le rapport ici stp
Utilisateur anonyme
11 sept. 2006 à 02:08
11 sept. 2006 à 02:08
pas de probléme, à mon avis ton probléme que tu cites vient sûrement par le fait que tu sois infecté , continue ton probléme ic is'il te plait, on va essayer de tout regler ici ;-)
bonne nuit
A++
bonne nuit
A++
Thom@s
Messages postés
3412
Date d'inscription
mardi 4 mars 2003
Statut
Modérateur
Dernière intervention
28 septembre 2019
678
11 sept. 2006 à 06:37
11 sept. 2006 à 06:37
Salut !
Le message étant posté en double dans le forum, voici, pour info, l'adresse de l'autre message:
messages intempestifs lors navigation
Merci de continuer ici :)
A+
Le message étant posté en double dans le forum, voici, pour info, l'adresse de l'autre message:
messages intempestifs lors navigation
Merci de continuer ici :)
A+
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
juste une petite question : ma recherche n'as pas trouvé :
les fichiers : ipv6monl.dll et msn.exe mais j'ai supprimé : IExplorer.dll
est ce normal ??
je n'ai pas plus de temps je ferai le reste ce soir ...
par contre je te mets un exemple de message intempestif car thomas a verrouillé l'autre post : messages intempestifs lors navigation
voila la capture : messages intempestifs lors navigation
les fichiers : ipv6monl.dll et msn.exe mais j'ai supprimé : IExplorer.dll
est ce normal ??
je n'ai pas plus de temps je ferai le reste ce soir ...
par contre je te mets un exemple de message intempestif car thomas a verrouillé l'autre post : messages intempestifs lors navigation
voila la capture : messages intempestifs lors navigation
pas grave, ensuite fais ça
Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP (en haut) va se mettre à clignoter, clic dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
Une fois qu'il a terminé colle le rapport ici avec un nouveau rapport hijackthis stp
https://www.bitdefender.com/toolbox/
PS: impossible de voir ton copier d'ecran :-/
Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP (en haut) va se mettre à clignoter, clic dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
Une fois qu'il a terminé colle le rapport ici avec un nouveau rapport hijackthis stp
https://www.bitdefender.com/toolbox/
PS: impossible de voir ton copier d'ecran :-/
je ne comprends pas pourquoi -> l'image enrégistrée sur mon pc est bonne j'ai vérifié -> j'ai fait comme tu m'as expliqué -> c une image jpeg -> je vais rééssayer ce soir ...
en tout cas c une vraie usine a gaz lorsque je navigue -> a chaque clic sur une page web j'ai 1 ou 2 voire + de messages a valider -> ca me saoule tu peux pas savoir !!!
merci a ce soir ;)
en tout cas c une vraie usine a gaz lorsque je navigue -> a chaque clic sur une page web j'ai 1 ou 2 voire + de messages a valider -> ca me saoule tu peux pas savoir !!!
merci a ce soir ;)
voici une nouvelle fois le lien vers un des messages qui apparaissent lorsque je clique sur une page web
https://www.cjoint.com/?jlsyilyW6H
https://www.cjoint.com/?jlsyilyW6H
ok, j'ai vu, à mon avis le probléme vient d'internet explorer
telecharge cet autre navigateur Web : Opéra
http://www.infos-du-net.com/telecharger/Opera-Windows,0301-141.html
bon pas facile au début mais c'est normal, puis viens sur le forum avec ce navigateur web puis dis moi si tu as toujours cette erreur qui s'affiche
telecharge cet autre navigateur Web : Opéra
http://www.infos-du-net.com/telecharger/Opera-Windows,0301-141.html
bon pas facile au début mais c'est normal, puis viens sur le forum avec ce navigateur web puis dis moi si tu as toujours cette erreur qui s'affiche
en fait les messages impromptus n'apparaissent plus -> peut etre depuis que tu m'as fais virer le fichier : IExplorer.dll ????
par contre mon gestionnaire internet ne se lance plus automatiquement quand j'allume mon pc !!!
je vais finir mes manips pour le navigateur
a+
par contre mon gestionnaire internet ne se lance plus automatiquement quand j'allume mon pc !!!
je vais finir mes manips pour le navigateur
a+
- killbox fait
- ewido fait
- nouveau hitjackthis fait
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 19:46:38 11/09/2006
+ Scan result:
C:\Documents and Settings\Admin\Local Settings\Temp\cmd.exe -> Backdoor.Gserv : No action taken.
C:\WINDOWS\G_Server1.23.exe -> Backdoor.Gserv : No action taken.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\EZT3ARM8\1[1].exe -> Backdoor.Gserv : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\1.dlb -> Downloader.Small : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\g0ld.com -> Downloader.Small : No action taken.
C:\WINDOWS\system32\dlh9jkdq1.0xe -> Downloader.Small : No action taken.
C:\WINDOWS\system32\DLH9JKDQ5.0XE -> Downloader.Small.cwj : No action taken.
C:\WINDOWS\system32\IEXPLORER.0xe -> Downloader.Small.cyd : No action taken.
C:\WINDOWS\system32\DLH9JKDQ6.0XE -> Downloader.Tibs.ew : No action taken.
C:\WINDOWS\system32\DLH9JKDQ7.0XE -> Downloader.Tibs.ew : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\win32.0xe -> Downloader.Tibs.fc : No action taken.
C:\WINDOWS\system32\dlh9jkdq6.1xe -> Downloader.Tibs.fj : No action taken.
C:\WINDOWS\system32\dlh9jkdq7.1xe -> Downloader.Tibs.fj : No action taken.
C:\boot.1nx -> Downloader.Tibs.fj : No action taken.
C:\boot.inx -> Downloader.Tibs.fj : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\win32.1xe -> Downloader.Tibs.fu : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\BL4CK.0OM -> Downloader.Tiny.de : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\94r8g02l.wm -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\BESITFBQ.0MF -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\MMBHYAWA.0MF -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\PG8U48CY.0MF -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\V1MAPNPS.0MF -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\airiguit.wm -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\mj9hx77t.wm -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\xpl.0mf -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\xpl.1mf -> Exploit.MS05-053-WMF : No action taken.
C:\WINDOWS\system32\DLH9JKDQ2.0XE -> Hijacker.Spywad.o : No action taken.
C:\W.0XE -> Logger.Agent.eo : No action taken.
C:\UPDATE8663.0XE -> Logger.BZub.bv : No action taken.
C:\Program Files\~tmp0374.0xe -> Logger.BZub.dc : No action taken.
C:\WINDOWS\system32\MSN.0XE -> Logger.BZub.dh : No action taken.
C:\23.0xe -> Logger.Goldun.cx : No action taken.
C:\WINDOWS\system32\CDPROVIDER.0LL -> Logger.Goldun.cx : No action taken.
C:\WINDOWS\system32\GDIWXP.0LL -> Logger.Goldun.hk : No action taken.
C:\WINDOWS\system32\GDIWXP.1LL -> Logger.Goldun.hk : No action taken.
C:\WINDOWS\system32\gdiw2k.0ys -> Logger.Goldun.hk : No action taken.
C:\WINDOWS\cpu.0xe -> Logger.Goldun.jh : No action taken.
C:\WINDOWS\system32\INTEL3.0LL -> Logger.Goldun.jw : No action taken.
C:\WINDOWS\system32\INTEL3.1LL -> Logger.Goldun.jw : No action taken.
C:\WINDOWS\system32\INTEL3.2LL -> Logger.Goldun.jw : No action taken.
C:\23100247.0xe -> Logger.Goldun.kf : No action taken.
C:\23100247.exe -> Logger.Goldun.kf : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\serv.0xe -> Logger.Goldun.kf : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\svchost.1xe -> Logger.Goldun.kf : No action taken.
C:\WINDOWS\system32\intel5.1ys -> Logger.Goldun.kf : No action taken.
:mozilla.22:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.247realmedia : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@lsfnetwork.122.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@paypal.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
:mozilla.21:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.25:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.26:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.27:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.28:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.29:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.30:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.31:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.32:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.33:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.34:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.35:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.36:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@adbrite[2].txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.554:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adtech : No action taken.
:mozilla.555:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adtech : No action taken.
:mozilla.44:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.45:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.46:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.47:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.252:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Atdmt : No action taken.
:mozilla.390:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Bluestreak : No action taken.
:mozilla.488:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.489:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.490:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.491:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.492:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.530:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Clickbank : No action taken.
:mozilla.604:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Comclick : No action taken.
:mozilla.605:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Comclick : No action taken.
:mozilla.606:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Comclick : No action taken.
:mozilla.528:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.364:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.519:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Enhance : No action taken.
:mozilla.401:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Estat : No action taken.
:mozilla.402:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Estat : No action taken.
:mozilla.361:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.362:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.363:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.636:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.637:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.638:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.639:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.640:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.565:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.566:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.102:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Gamingpromo : No action taken.
:mozilla.107:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Gamingpromo : No action taken.
:mozilla.109:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Gamingpromo : No action taken.
:mozilla.520:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Goclick : No action taken.
:mozilla.521:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Goclick : No action taken.
:mozilla.347:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.348:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.349:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.350:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.405:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hotlog : No action taken.
:mozilla.337:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linkbuddies : No action taken.
:mozilla.365:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.366:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.367:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.368:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.369:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.370:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.371:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.372:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.373:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.374:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.375:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.376:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.377:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.378:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.379:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.380:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.381:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.382:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.383:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.321:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Mediaplex : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@www.myaffiliateprogram[1].txt -> TrackingCookie.Myaffiliateprogram : No action taken.
:mozilla.266:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.268:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.270:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.272:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.493:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Realcastmedia : No action taken.
:mozilla.52:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
:mozilla.53:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
:mozilla.54:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@ads1.revenue[1].txt -> TrackingCookie.Revenue : No action taken.
:mozilla.333:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.334:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.335:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.338:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.114:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.336:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.339:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.340:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.341:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.342:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.343:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.344:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.345:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.346:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.72:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.73:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.74:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.647:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.648:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.649:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.650:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.651:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.652:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.653:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.567:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Valueclick : No action taken.
:mozilla.568:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Valueclick : No action taken.
:mozilla.108:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Vegasred : No action taken.
:mozilla.391:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.392:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.393:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.406:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yadro : No action taken.
:mozilla.10:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.11:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.12:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.13:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.14:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.15:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.16:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.9:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.17:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.18:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.6:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.7:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.8:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
E:\IncrediMail fr build 2014 cerise by david44.zip/patch Build 18XX.exe -> Trojan.Agent.jh : No action taken.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\40L1NGXJ\ztt[1].0xe -> Trojan.Lmir.azp : No action taken.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\40L1NGXJ\jwm[1].0xe -> Trojan.WOW.da : No action taken.
::Report end
Logfile of HijackThis v1.99.1
Scan saved at 19:48:34, on 11/09/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\WINDOWS\Explorer.EXE
C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\Program Files\Securitoo\av_fw\FSGUI\ispnews.exe
C:\Program Files\Securitoo\av_fw\FSGUI\fsguiexe.exe
C:\Program Files\Securitoo\av_fw\backweb\8520111\Program\fspex.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\Program Files\TGTSoft\StyleXP\StyleXP.exe
C:\Program Files\Securitoo\av_fw\Anti-Spyware\Ad-Monitor.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\PROGRA~1\Wanadoo\Watch.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Admin\Bureau\Hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\Securitoo\av_fw\FSGUI\FSSW.EXE" /reboot
O4 - HKLM\..\Run: [News Service] "C:\Program Files\Securitoo\av_fw\FSGUI\ispnews.exe"
O4 - HKLM\..\Run: [FSASWREG] "C:\Program Files\Securitoo\av_fw\Anti-Spyware\fsaswreg.exe"
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [AWMON] "C:\Program Files\Securitoo\av_fw\Anti-Spyware\Ad-Monitor.exe"
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe GestionnaireInternet.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\PROGRA~1\INCRED~1\bin\resources\WebMenuImg.htm
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O17 - HKLM\System\CCS\Services\Tcpip\..\{060AF30D-918A-4499-B86C-7A9A2D3A1B51}: NameServer = 80.10.246.1 80.10.246.132
O17 - HKLM\System\CS1\Services\Tcpip\..\{060AF30D-918A-4499-B86C-7A9A2D3A1B51}: NameServer = 80.10.246.1 80.10.246.132
O17 - HKLM\System\CS2\Services\Tcpip\..\{060AF30D-918A-4499-B86C-7A9A2D3A1B51}: NameServer = 80.10.246.130 80.10.246.3
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
- ewido fait
- nouveau hitjackthis fait
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 19:46:38 11/09/2006
+ Scan result:
C:\Documents and Settings\Admin\Local Settings\Temp\cmd.exe -> Backdoor.Gserv : No action taken.
C:\WINDOWS\G_Server1.23.exe -> Backdoor.Gserv : No action taken.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\EZT3ARM8\1[1].exe -> Backdoor.Gserv : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\1.dlb -> Downloader.Small : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\g0ld.com -> Downloader.Small : No action taken.
C:\WINDOWS\system32\dlh9jkdq1.0xe -> Downloader.Small : No action taken.
C:\WINDOWS\system32\DLH9JKDQ5.0XE -> Downloader.Small.cwj : No action taken.
C:\WINDOWS\system32\IEXPLORER.0xe -> Downloader.Small.cyd : No action taken.
C:\WINDOWS\system32\DLH9JKDQ6.0XE -> Downloader.Tibs.ew : No action taken.
C:\WINDOWS\system32\DLH9JKDQ7.0XE -> Downloader.Tibs.ew : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\win32.0xe -> Downloader.Tibs.fc : No action taken.
C:\WINDOWS\system32\dlh9jkdq6.1xe -> Downloader.Tibs.fj : No action taken.
C:\WINDOWS\system32\dlh9jkdq7.1xe -> Downloader.Tibs.fj : No action taken.
C:\boot.1nx -> Downloader.Tibs.fj : No action taken.
C:\boot.inx -> Downloader.Tibs.fj : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\win32.1xe -> Downloader.Tibs.fu : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\BL4CK.0OM -> Downloader.Tiny.de : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\94r8g02l.wm -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\BESITFBQ.0MF -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\MMBHYAWA.0MF -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\PG8U48CY.0MF -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\V1MAPNPS.0MF -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\airiguit.wm -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\mj9hx77t.wm -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\xpl.0mf -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\xpl.1mf -> Exploit.MS05-053-WMF : No action taken.
C:\WINDOWS\system32\DLH9JKDQ2.0XE -> Hijacker.Spywad.o : No action taken.
C:\W.0XE -> Logger.Agent.eo : No action taken.
C:\UPDATE8663.0XE -> Logger.BZub.bv : No action taken.
C:\Program Files\~tmp0374.0xe -> Logger.BZub.dc : No action taken.
C:\WINDOWS\system32\MSN.0XE -> Logger.BZub.dh : No action taken.
C:\23.0xe -> Logger.Goldun.cx : No action taken.
C:\WINDOWS\system32\CDPROVIDER.0LL -> Logger.Goldun.cx : No action taken.
C:\WINDOWS\system32\GDIWXP.0LL -> Logger.Goldun.hk : No action taken.
C:\WINDOWS\system32\GDIWXP.1LL -> Logger.Goldun.hk : No action taken.
C:\WINDOWS\system32\gdiw2k.0ys -> Logger.Goldun.hk : No action taken.
C:\WINDOWS\cpu.0xe -> Logger.Goldun.jh : No action taken.
C:\WINDOWS\system32\INTEL3.0LL -> Logger.Goldun.jw : No action taken.
C:\WINDOWS\system32\INTEL3.1LL -> Logger.Goldun.jw : No action taken.
C:\WINDOWS\system32\INTEL3.2LL -> Logger.Goldun.jw : No action taken.
C:\23100247.0xe -> Logger.Goldun.kf : No action taken.
C:\23100247.exe -> Logger.Goldun.kf : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\serv.0xe -> Logger.Goldun.kf : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\svchost.1xe -> Logger.Goldun.kf : No action taken.
C:\WINDOWS\system32\intel5.1ys -> Logger.Goldun.kf : No action taken.
:mozilla.22:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.247realmedia : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@lsfnetwork.122.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@paypal.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
:mozilla.21:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.25:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.26:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.27:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.28:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.29:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.30:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.31:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.32:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.33:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.34:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.35:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.36:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@adbrite[2].txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.554:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adtech : No action taken.
:mozilla.555:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adtech : No action taken.
:mozilla.44:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.45:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.46:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.47:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.252:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Atdmt : No action taken.
:mozilla.390:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Bluestreak : No action taken.
:mozilla.488:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.489:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.490:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.491:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.492:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.530:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Clickbank : No action taken.
:mozilla.604:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Comclick : No action taken.
:mozilla.605:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Comclick : No action taken.
:mozilla.606:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Comclick : No action taken.
:mozilla.528:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.364:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.519:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Enhance : No action taken.
:mozilla.401:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Estat : No action taken.
:mozilla.402:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Estat : No action taken.
:mozilla.361:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.362:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.363:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.636:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.637:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.638:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.639:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.640:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.565:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.566:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.102:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Gamingpromo : No action taken.
:mozilla.107:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Gamingpromo : No action taken.
:mozilla.109:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Gamingpromo : No action taken.
:mozilla.520:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Goclick : No action taken.
:mozilla.521:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Goclick : No action taken.
:mozilla.347:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.348:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.349:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.350:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.405:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hotlog : No action taken.
:mozilla.337:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linkbuddies : No action taken.
:mozilla.365:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.366:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.367:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.368:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.369:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.370:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.371:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.372:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.373:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.374:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.375:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.376:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.377:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.378:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.379:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.380:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.381:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.382:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.383:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.321:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Mediaplex : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@www.myaffiliateprogram[1].txt -> TrackingCookie.Myaffiliateprogram : No action taken.
:mozilla.266:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.268:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.270:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.272:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.493:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Realcastmedia : No action taken.
:mozilla.52:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
:mozilla.53:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
:mozilla.54:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@ads1.revenue[1].txt -> TrackingCookie.Revenue : No action taken.
:mozilla.333:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.334:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.335:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.338:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.114:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.336:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.339:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.340:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.341:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.342:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.343:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.344:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.345:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.346:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.72:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.73:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.74:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.647:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.648:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.649:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.650:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.651:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.652:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.653:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.567:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Valueclick : No action taken.
:mozilla.568:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Valueclick : No action taken.
:mozilla.108:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Vegasred : No action taken.
:mozilla.391:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.392:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.393:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.406:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yadro : No action taken.
:mozilla.10:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.11:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.12:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.13:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.14:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.15:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.16:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.9:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.17:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.18:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.6:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.7:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.8:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
E:\IncrediMail fr build 2014 cerise by david44.zip/patch Build 18XX.exe -> Trojan.Agent.jh : No action taken.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\40L1NGXJ\ztt[1].0xe -> Trojan.Lmir.azp : No action taken.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\40L1NGXJ\jwm[1].0xe -> Trojan.WOW.da : No action taken.
::Report end
Logfile of HijackThis v1.99.1
Scan saved at 19:48:34, on 11/09/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\WINDOWS\Explorer.EXE
C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\Program Files\Securitoo\av_fw\FSGUI\ispnews.exe
C:\Program Files\Securitoo\av_fw\FSGUI\fsguiexe.exe
C:\Program Files\Securitoo\av_fw\backweb\8520111\Program\fspex.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\Program Files\TGTSoft\StyleXP\StyleXP.exe
C:\Program Files\Securitoo\av_fw\Anti-Spyware\Ad-Monitor.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\PROGRA~1\Wanadoo\Watch.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Admin\Bureau\Hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\Securitoo\av_fw\FSGUI\FSSW.EXE" /reboot
O4 - HKLM\..\Run: [News Service] "C:\Program Files\Securitoo\av_fw\FSGUI\ispnews.exe"
O4 - HKLM\..\Run: [FSASWREG] "C:\Program Files\Securitoo\av_fw\Anti-Spyware\fsaswreg.exe"
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [AWMON] "C:\Program Files\Securitoo\av_fw\Anti-Spyware\Ad-Monitor.exe"
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe GestionnaireInternet.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\PROGRA~1\INCRED~1\bin\resources\WebMenuImg.htm
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O17 - HKLM\System\CCS\Services\Tcpip\..\{060AF30D-918A-4499-B86C-7A9A2D3A1B51}: NameServer = 80.10.246.1 80.10.246.132
O17 - HKLM\System\CS1\Services\Tcpip\..\{060AF30D-918A-4499-B86C-7A9A2D3A1B51}: NameServer = 80.10.246.1 80.10.246.132
O17 - HKLM\System\CS2\Services\Tcpip\..\{060AF30D-918A-4499-B86C-7A9A2D3A1B51}: NameServer = 80.10.246.130 80.10.246.3
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
Bon c'est un peu le bordel, relance Ewido et supprime tout 'remove' puis colle à nouveau le rapport ici stp
Fais ce nettoyage: (à faire réguliérement !)
¤Telecharges et installes ceci:
CCleaner:
Ccleaner
dans la colonne de gauche clic sur "erreurs" coches toutes les cases, puis cliques en bas sur "chercher des erreurs" une fois finit, cliques sur "reparer les erreurs" et tu aura un message pour sauvegarder ta base de registre tu dis "oui" puis tu recommences jusqu'a ce qu'il te trouve plus d'erreurs.
Les sauvegardes que tu aura faites tu pourra les supprimer si ton ordinateur n'a plus de problémes
¤Relance Ccleaner, vas dans l'onglet "nettoyeur" present sur la gauche, decoches la derniere case (Avancé si elle est cochée) puis clic sur "lancer le nettoyage"
Fais ça:
Télécharge lopxp:
http://pageperso.aol.fr/balltrap34/lopxp.zip
dézippe-le sur ton bureau puis double-clic sur le fichier "lopxp.bat"
quand il à terminé, un rapport s'ouvre : fais un copier-coller puis mets le ici
Puis ça:
Télécharges Blacklight et sauvegarde le sur ton bureau.
https://www.f-secure.com/en
Double cliques sur " blbeta.exe " et acceptes la licence; clic sur "Scan" puis "Next"
Un rapport, va se créer sur ton bureau "fslb-....."
Copies et colles le contenu de ce rapport ici.
Ne touche à rien d'autre!
c'est beaucoup mais necessaire vu ton infection :-)
Fais ce nettoyage: (à faire réguliérement !)
¤Telecharges et installes ceci:
CCleaner:
Ccleaner
dans la colonne de gauche clic sur "erreurs" coches toutes les cases, puis cliques en bas sur "chercher des erreurs" une fois finit, cliques sur "reparer les erreurs" et tu aura un message pour sauvegarder ta base de registre tu dis "oui" puis tu recommences jusqu'a ce qu'il te trouve plus d'erreurs.
Les sauvegardes que tu aura faites tu pourra les supprimer si ton ordinateur n'a plus de problémes
¤Relance Ccleaner, vas dans l'onglet "nettoyeur" present sur la gauche, decoches la derniere case (Avancé si elle est cochée) puis clic sur "lancer le nettoyage"
Fais ça:
Télécharge lopxp:
http://pageperso.aol.fr/balltrap34/lopxp.zip
dézippe-le sur ton bureau puis double-clic sur le fichier "lopxp.bat"
quand il à terminé, un rapport s'ouvre : fais un copier-coller puis mets le ici
Puis ça:
Télécharges Blacklight et sauvegarde le sur ton bureau.
https://www.f-secure.com/en
Double cliques sur " blbeta.exe " et acceptes la licence; clic sur "Scan" puis "Next"
Un rapport, va se créer sur ton bureau "fslb-....."
Copies et colles le contenu de ce rapport ici.
Ne touche à rien d'autre!
c'est beaucoup mais necessaire vu ton infection :-)
Ewido : 61 objets / 183 traces -> en quarantaine -> je fais quoi avec ????
j'ai déja Sécuritoo antivirus Firewall d'Orange -> est ce que je laisse les 2 en meme temps ???
j'ai déja Sécuritoo antivirus Firewall d'Orange -> est ce que je laisse les 2 en meme temps ???
oui delete tout puis refais un scan complet avec Ewido et colle le ici stp
"j'ai déja Sécuritoo antivirus Firewall d'Orange -> est ce que je laisse les 2 en meme temps ???"
si tu parles d'Ewido et de ton firewall orange oui tu peux laisser ;-)
puis n'oublie pas de faire ce que je t'ai demandé plus haut stp ;-)
"j'ai déja Sécuritoo antivirus Firewall d'Orange -> est ce que je laisse les 2 en meme temps ???"
si tu parles d'Ewido et de ton firewall orange oui tu peux laisser ;-)
puis n'oublie pas de faire ce que je t'ai demandé plus haut stp ;-)
voilou 1ère étape :
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 19:46:38 11/09/2006
+ Scan result:
C:\Documents and Settings\Admin\Local Settings\Temp\cmd.exe -> Backdoor.Gserv : No action taken.
C:\WINDOWS\G_Server1.23.exe -> Backdoor.Gserv : No action taken.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\EZT3ARM8\1[1].exe -> Backdoor.Gserv : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\1.dlb -> Downloader.Small : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\g0ld.com -> Downloader.Small : No action taken.
C:\WINDOWS\system32\dlh9jkdq1.0xe -> Downloader.Small : No action taken.
C:\WINDOWS\system32\DLH9JKDQ5.0XE -> Downloader.Small.cwj : No action taken.
C:\WINDOWS\system32\IEXPLORER.0xe -> Downloader.Small.cyd : No action taken.
C:\WINDOWS\system32\DLH9JKDQ6.0XE -> Downloader.Tibs.ew : No action taken.
C:\WINDOWS\system32\DLH9JKDQ7.0XE -> Downloader.Tibs.ew : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\win32.0xe -> Downloader.Tibs.fc : No action taken.
C:\WINDOWS\system32\dlh9jkdq6.1xe -> Downloader.Tibs.fj : No action taken.
C:\WINDOWS\system32\dlh9jkdq7.1xe -> Downloader.Tibs.fj : No action taken.
C:\boot.1nx -> Downloader.Tibs.fj : No action taken.
C:\boot.inx -> Downloader.Tibs.fj : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\win32.1xe -> Downloader.Tibs.fu : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\BL4CK.0OM -> Downloader.Tiny.de : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\94r8g02l.wm -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\BESITFBQ.0MF -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\MMBHYAWA.0MF -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\PG8U48CY.0MF -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\V1MAPNPS.0MF -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\airiguit.wm -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\mj9hx77t.wm -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\xpl.0mf -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\xpl.1mf -> Exploit.MS05-053-WMF : No action taken.
C:\WINDOWS\system32\DLH9JKDQ2.0XE -> Hijacker.Spywad.o : No action taken.
C:\W.0XE -> Logger.Agent.eo : No action taken.
C:\UPDATE8663.0XE -> Logger.BZub.bv : No action taken.
C:\Program Files\~tmp0374.0xe -> Logger.BZub.dc : No action taken.
C:\WINDOWS\system32\MSN.0XE -> Logger.BZub.dh : No action taken.
C:\23.0xe -> Logger.Goldun.cx : No action taken.
C:\WINDOWS\system32\CDPROVIDER.0LL -> Logger.Goldun.cx : No action taken.
C:\WINDOWS\system32\GDIWXP.0LL -> Logger.Goldun.hk : No action taken.
C:\WINDOWS\system32\GDIWXP.1LL -> Logger.Goldun.hk : No action taken.
C:\WINDOWS\system32\gdiw2k.0ys -> Logger.Goldun.hk : No action taken.
C:\WINDOWS\cpu.0xe -> Logger.Goldun.jh : No action taken.
C:\WINDOWS\system32\INTEL3.0LL -> Logger.Goldun.jw : No action taken.
C:\WINDOWS\system32\INTEL3.1LL -> Logger.Goldun.jw : No action taken.
C:\WINDOWS\system32\INTEL3.2LL -> Logger.Goldun.jw : No action taken.
C:\23100247.0xe -> Logger.Goldun.kf : No action taken.
C:\23100247.exe -> Logger.Goldun.kf : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\serv.0xe -> Logger.Goldun.kf : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\svchost.1xe -> Logger.Goldun.kf : No action taken.
C:\WINDOWS\system32\intel5.1ys -> Logger.Goldun.kf : No action taken.
:mozilla.22:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.247realmedia : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@lsfnetwork.122.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@paypal.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
:mozilla.21:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.25:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.26:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.27:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.28:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.29:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.30:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.31:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.32:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.33:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.34:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.35:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.36:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@adbrite[2].txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.554:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adtech : No action taken.
:mozilla.555:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adtech : No action taken.
:mozilla.44:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.45:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.46:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.47:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.252:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Atdmt : No action taken.
:mozilla.390:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Bluestreak : No action taken.
:mozilla.488:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.489:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.490:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.491:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.492:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.530:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Clickbank : No action taken.
:mozilla.604:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Comclick : No action taken.
:mozilla.605:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Comclick : No action taken.
:mozilla.606:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Comclick : No action taken.
:mozilla.528:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.364:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.519:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Enhance : No action taken.
:mozilla.401:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Estat : No action taken.
:mozilla.402:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Estat : No action taken.
:mozilla.361:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.362:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.363:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.636:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.637:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.638:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.639:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.640:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.565:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.566:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.102:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Gamingpromo : No action taken.
:mozilla.107:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Gamingpromo : No action taken.
:mozilla.109:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Gamingpromo : No action taken.
:mozilla.520:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Goclick : No action taken.
:mozilla.521:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Goclick : No action taken.
:mozilla.347:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.348:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.349:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.350:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.405:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hotlog : No action taken.
:mozilla.337:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linkbuddies : No action taken.
:mozilla.365:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.366:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.367:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.368:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.369:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.370:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.371:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.372:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.373:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.374:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.375:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.376:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.377:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.378:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.379:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.380:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.381:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.382:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.383:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.321:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Mediaplex : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@www.myaffiliateprogram[1].txt -> TrackingCookie.Myaffiliateprogram : No action taken.
:mozilla.266:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.268:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.270:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.272:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.493:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Realcastmedia : No action taken.
:mozilla.52:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
:mozilla.53:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
:mozilla.54:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@ads1.revenue[1].txt -> TrackingCookie.Revenue : No action taken.
:mozilla.333:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.334:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.335:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.338:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.114:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.336:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.339:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.340:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.341:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.342:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.343:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.344:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.345:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.346:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.72:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.73:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.74:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.647:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.648:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.649:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.650:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.651:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.652:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.653:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.567:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Valueclick : No action taken.
:mozilla.568:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Valueclick : No action taken.
:mozilla.108:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Vegasred : No action taken.
:mozilla.391:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.392:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.393:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.406:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yadro : No action taken.
:mozilla.10:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.11:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.12:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.13:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.14:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.15:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.16:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.9:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.17:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.18:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.6:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.7:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.8:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
E:\IncrediMail fr build 2014 cerise by david44.zip/patch Build 18XX.exe -> Trojan.Agent.jh : No action taken.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\40L1NGXJ\ztt[1].0xe -> Trojan.Lmir.azp : No action taken.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\40L1NGXJ\jwm[1].0xe -> Trojan.WOW.da : No action taken.
::Report end
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 19:46:38 11/09/2006
+ Scan result:
C:\Documents and Settings\Admin\Local Settings\Temp\cmd.exe -> Backdoor.Gserv : No action taken.
C:\WINDOWS\G_Server1.23.exe -> Backdoor.Gserv : No action taken.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\EZT3ARM8\1[1].exe -> Backdoor.Gserv : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\1.dlb -> Downloader.Small : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\g0ld.com -> Downloader.Small : No action taken.
C:\WINDOWS\system32\dlh9jkdq1.0xe -> Downloader.Small : No action taken.
C:\WINDOWS\system32\DLH9JKDQ5.0XE -> Downloader.Small.cwj : No action taken.
C:\WINDOWS\system32\IEXPLORER.0xe -> Downloader.Small.cyd : No action taken.
C:\WINDOWS\system32\DLH9JKDQ6.0XE -> Downloader.Tibs.ew : No action taken.
C:\WINDOWS\system32\DLH9JKDQ7.0XE -> Downloader.Tibs.ew : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\win32.0xe -> Downloader.Tibs.fc : No action taken.
C:\WINDOWS\system32\dlh9jkdq6.1xe -> Downloader.Tibs.fj : No action taken.
C:\WINDOWS\system32\dlh9jkdq7.1xe -> Downloader.Tibs.fj : No action taken.
C:\boot.1nx -> Downloader.Tibs.fj : No action taken.
C:\boot.inx -> Downloader.Tibs.fj : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\win32.1xe -> Downloader.Tibs.fu : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\BL4CK.0OM -> Downloader.Tiny.de : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\94r8g02l.wm -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\BESITFBQ.0MF -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\MMBHYAWA.0MF -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\PG8U48CY.0MF -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\V1MAPNPS.0MF -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\airiguit.wm -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\mj9hx77t.wm -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\xpl.0mf -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\xpl.1mf -> Exploit.MS05-053-WMF : No action taken.
C:\WINDOWS\system32\DLH9JKDQ2.0XE -> Hijacker.Spywad.o : No action taken.
C:\W.0XE -> Logger.Agent.eo : No action taken.
C:\UPDATE8663.0XE -> Logger.BZub.bv : No action taken.
C:\Program Files\~tmp0374.0xe -> Logger.BZub.dc : No action taken.
C:\WINDOWS\system32\MSN.0XE -> Logger.BZub.dh : No action taken.
C:\23.0xe -> Logger.Goldun.cx : No action taken.
C:\WINDOWS\system32\CDPROVIDER.0LL -> Logger.Goldun.cx : No action taken.
C:\WINDOWS\system32\GDIWXP.0LL -> Logger.Goldun.hk : No action taken.
C:\WINDOWS\system32\GDIWXP.1LL -> Logger.Goldun.hk : No action taken.
C:\WINDOWS\system32\gdiw2k.0ys -> Logger.Goldun.hk : No action taken.
C:\WINDOWS\cpu.0xe -> Logger.Goldun.jh : No action taken.
C:\WINDOWS\system32\INTEL3.0LL -> Logger.Goldun.jw : No action taken.
C:\WINDOWS\system32\INTEL3.1LL -> Logger.Goldun.jw : No action taken.
C:\WINDOWS\system32\INTEL3.2LL -> Logger.Goldun.jw : No action taken.
C:\23100247.0xe -> Logger.Goldun.kf : No action taken.
C:\23100247.exe -> Logger.Goldun.kf : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\serv.0xe -> Logger.Goldun.kf : No action taken.
C:\Documents and Settings\Admin\Local Settings\Temp\svchost.1xe -> Logger.Goldun.kf : No action taken.
C:\WINDOWS\system32\intel5.1ys -> Logger.Goldun.kf : No action taken.
:mozilla.22:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.247realmedia : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@lsfnetwork.122.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@paypal.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
:mozilla.21:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.25:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.26:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.27:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.28:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.29:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.30:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.31:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.32:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.33:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.34:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.35:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.36:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@adbrite[2].txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.554:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adtech : No action taken.
:mozilla.555:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Adtech : No action taken.
:mozilla.44:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.45:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.46:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.47:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.252:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Atdmt : No action taken.
:mozilla.390:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Bluestreak : No action taken.
:mozilla.488:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.489:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.490:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.491:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.492:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.530:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Clickbank : No action taken.
:mozilla.604:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Comclick : No action taken.
:mozilla.605:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Comclick : No action taken.
:mozilla.606:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Comclick : No action taken.
:mozilla.528:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.364:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.519:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Enhance : No action taken.
:mozilla.401:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Estat : No action taken.
:mozilla.402:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Estat : No action taken.
:mozilla.361:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.362:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.363:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.636:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.637:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.638:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.639:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.640:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.565:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.566:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.102:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Gamingpromo : No action taken.
:mozilla.107:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Gamingpromo : No action taken.
:mozilla.109:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Gamingpromo : No action taken.
:mozilla.520:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Goclick : No action taken.
:mozilla.521:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Goclick : No action taken.
:mozilla.347:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.348:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.349:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.350:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.405:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Hotlog : No action taken.
:mozilla.337:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linkbuddies : No action taken.
:mozilla.365:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.366:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.367:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.368:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.369:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.370:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.371:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.372:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.373:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.374:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.375:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.376:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.377:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.378:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.379:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.380:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.381:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.382:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.383:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Linksynergy : No action taken.
:mozilla.321:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Mediaplex : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@www.myaffiliateprogram[1].txt -> TrackingCookie.Myaffiliateprogram : No action taken.
:mozilla.266:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.268:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.270:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.272:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.493:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Realcastmedia : No action taken.
:mozilla.52:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
:mozilla.53:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
:mozilla.54:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@ads1.revenue[1].txt -> TrackingCookie.Revenue : No action taken.
:mozilla.333:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.334:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.335:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.338:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.114:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.336:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.339:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.340:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.341:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.342:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.343:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.344:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.345:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.346:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.72:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.73:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.74:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.647:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.648:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.649:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.650:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.651:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.652:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.653:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.567:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Valueclick : No action taken.
:mozilla.568:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Valueclick : No action taken.
:mozilla.108:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Vegasred : No action taken.
:mozilla.391:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.392:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.393:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.406:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yadro : No action taken.
:mozilla.10:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.11:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.12:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.13:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.14:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.15:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.16:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.9:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
C:\Documents and Settings\Admin\Cookies\admin@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.17:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.18:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.6:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.7:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.8:C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\7euupgwu.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
E:\IncrediMail fr build 2014 cerise by david44.zip/patch Build 18XX.exe -> Trojan.Agent.jh : No action taken.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\40L1NGXJ\ztt[1].0xe -> Trojan.Lmir.azp : No action taken.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\40L1NGXJ\jwm[1].0xe -> Trojan.WOW.da : No action taken.
::Report end
ETAPE n° 2
Rapport fait à 21:04:35,75 le 11/09/2006
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 6874-E609
R‚pertoire de C:\Documents and Settings\Admin\Application Data
14/08/2006 23:21 <REP> Shareaza
14/08/2006 14:36 <REP> Google
10/08/2006 14:27 <REP> eConf
07/05/2006 16:56 <REP> Help
26/04/2006 21:59 <REP> Leadertech
22/04/2006 11:36 <REP> AdobeUM
22/04/2006 11:30 0 dm.ini
22/04/2006 11:30 1557 AdobeDLM.log
21/04/2006 01:05 <REP> Mozilla
21/04/2006 00:32 <REP> Wannadoo
20/04/2006 23:49 <REP> PEX
20/04/2006 23:47 <REP> ispnews
20/04/2006 22:36 <REP> Macromedia
20/04/2006 20:52 <REP> Adobe
20/04/2006 17:35 <REP> ArcSoft
20/04/2006 16:39 <REP> Ahead
20/04/2006 12:26 <REP> Identities
20/04/2006 12:26 62 desktop.ini
20/04/2006 12:26 <REP> ..
20/04/2006 12:26 <REP> .
20/04/2006 12:26 <REP> Microsoft
3 fichier(s) 1619 octets
18 R‚p(s) 41272750080 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 6874-E609
R‚pertoire de C:\Documents and Settings\All Users\Application Data
11/09/2006 13:25 <REP> Windows Genuine Advantage
14/08/2006 14:36 <REP> Google
20/04/2006 20:52 <REP> Adobe
20/04/2006 14:15 62 desktop.ini
20/04/2006 14:15 <REP> Microsoft
20/04/2006 14:15 <REP> ..
20/04/2006 14:15 <REP> .
1 fichier(s) 62 octets
6 R‚p(s) 41272750080 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 6874-E609
R‚pertoire de C:\Documents and Settings\Default User\Application Data
20/04/2006 14:15 62 desktop.ini
20/04/2006 14:15 <REP> Microsoft
20/04/2006 14:15 <REP> ..
20/04/2006 14:15 <REP> .
1 fichier(s) 62 octets
3 R‚p(s) 41272750080 octets libres
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 6874-E609
R‚pertoire de C:\WINDOWS\Tasks
20/04/2006 23:49 588 Scheduled scanning task.job
20/04/2006 12:26 6 SA.DAT
20/04/2006 12:21 65 desktop.ini
20/04/2006 12:21 <REP> ..
20/04/2006 12:21 <REP> .
3 fichier(s) 659 octets
2 R‚p(s) 41ÿ272ÿ737ÿ792 octets libres
******************************************
Recherche dans Program files
Le dossier C:\Program Files\C2Media n'existe pas
*************** Fin du rapport ****************
Rapport fait à 21:04:35,75 le 11/09/2006
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 6874-E609
R‚pertoire de C:\Documents and Settings\Admin\Application Data
14/08/2006 23:21 <REP> Shareaza
14/08/2006 14:36 <REP> Google
10/08/2006 14:27 <REP> eConf
07/05/2006 16:56 <REP> Help
26/04/2006 21:59 <REP> Leadertech
22/04/2006 11:36 <REP> AdobeUM
22/04/2006 11:30 0 dm.ini
22/04/2006 11:30 1557 AdobeDLM.log
21/04/2006 01:05 <REP> Mozilla
21/04/2006 00:32 <REP> Wannadoo
20/04/2006 23:49 <REP> PEX
20/04/2006 23:47 <REP> ispnews
20/04/2006 22:36 <REP> Macromedia
20/04/2006 20:52 <REP> Adobe
20/04/2006 17:35 <REP> ArcSoft
20/04/2006 16:39 <REP> Ahead
20/04/2006 12:26 <REP> Identities
20/04/2006 12:26 62 desktop.ini
20/04/2006 12:26 <REP> ..
20/04/2006 12:26 <REP> .
20/04/2006 12:26 <REP> Microsoft
3 fichier(s) 1619 octets
18 R‚p(s) 41272750080 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 6874-E609
R‚pertoire de C:\Documents and Settings\All Users\Application Data
11/09/2006 13:25 <REP> Windows Genuine Advantage
14/08/2006 14:36 <REP> Google
20/04/2006 20:52 <REP> Adobe
20/04/2006 14:15 62 desktop.ini
20/04/2006 14:15 <REP> Microsoft
20/04/2006 14:15 <REP> ..
20/04/2006 14:15 <REP> .
1 fichier(s) 62 octets
6 R‚p(s) 41272750080 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 6874-E609
R‚pertoire de C:\Documents and Settings\Default User\Application Data
20/04/2006 14:15 62 desktop.ini
20/04/2006 14:15 <REP> Microsoft
20/04/2006 14:15 <REP> ..
20/04/2006 14:15 <REP> .
1 fichier(s) 62 octets
3 R‚p(s) 41272750080 octets libres
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 6874-E609
R‚pertoire de C:\WINDOWS\Tasks
20/04/2006 23:49 588 Scheduled scanning task.job
20/04/2006 12:26 6 SA.DAT
20/04/2006 12:21 65 desktop.ini
20/04/2006 12:21 <REP> ..
20/04/2006 12:21 <REP> .
3 fichier(s) 659 octets
2 R‚p(s) 41ÿ272ÿ737ÿ792 octets libres
******************************************
Recherche dans Program files
Le dossier C:\Program Files\C2Media n'existe pas
*************** Fin du rapport ****************
3ème ETAPE : voila le rapport blacklight :
09/11/06 21:51:52 [Info]: BlackLight Engine 1.0.46 initialized
09/11/06 21:51:52 [Info]: OS: 5.1 build 2600 (Service Pack 2)
09/11/06 21:51:52 [Note]: 7019 4
09/11/06 21:51:52 [Note]: 7005 0
09/11/06 21:51:59 [Note]: 7006 0
09/11/06 21:51:59 [Note]: 7011 1864
09/11/06 21:51:59 [Note]: 7026 0
09/11/06 21:52:00 [Note]: 7026 0
09/11/06 21:52:04 [Note]: FSRAW library version 1.7.1019
09/11/06 21:54:04 [Note]: 7007 0
09/11/06 21:51:52 [Info]: BlackLight Engine 1.0.46 initialized
09/11/06 21:51:52 [Info]: OS: 5.1 build 2600 (Service Pack 2)
09/11/06 21:51:52 [Note]: 7019 4
09/11/06 21:51:52 [Note]: 7005 0
09/11/06 21:51:59 [Note]: 7006 0
09/11/06 21:51:59 [Note]: 7011 1864
09/11/06 21:51:59 [Note]: 7026 0
09/11/06 21:52:00 [Note]: 7026 0
09/11/06 21:52:04 [Note]: FSRAW library version 1.7.1019
09/11/06 21:54:04 [Note]: 7007 0
voila le rapport Ewido apres suppression :
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 22:03:51 11/09/2006
+ Scan result:
C:\Documents and Settings\Admin\Cookies\admin@247realmedia[2].txt -> TrackingCookie.247realmedia : Cleaned.
C:\Documents and Settings\Admin\Cookies\admin@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : Cleaned.
C:\Documents and Settings\Admin\Cookies\admin@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\Admin\Cookies\admin@fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\Admin\Cookies\admin@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Cleaned.
C:\Documents and Settings\Admin\Cookies\admin@valueclick[1].txt -> TrackingCookie.Valueclick : Cleaned.
E:\IncrediMail fr build 2014 cerise by david44.zip/patch Build 18XX.exe -> Trojan.Agent.jh : Cleaned.
::Report end
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 22:03:51 11/09/2006
+ Scan result:
C:\Documents and Settings\Admin\Cookies\admin@247realmedia[2].txt -> TrackingCookie.247realmedia : Cleaned.
C:\Documents and Settings\Admin\Cookies\admin@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : Cleaned.
C:\Documents and Settings\Admin\Cookies\admin@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\Admin\Cookies\admin@fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\Admin\Cookies\admin@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Cleaned.
C:\Documents and Settings\Admin\Cookies\admin@valueclick[1].txt -> TrackingCookie.Valueclick : Cleaned.
E:\IncrediMail fr build 2014 cerise by david44.zip/patch Build 18XX.exe -> Trojan.Agent.jh : Cleaned.
::Report end
voila j'ai relancé le CCLEANER -> plus d'erreur -> est ce que je peux virer les sauvegardes de bases de registre ???
dois je utiliser CCLEANER regulierement ???
dois je utiliser CCLEANER regulierement ???
mon pc te remercie pour le bilan complet que tu lui a fait :)
un seul bémol -> mon navigateur orange ne s'ouvre toujours pas :(
autre chose qui n'as rien a voir -> comme j'ai vu qu'il y avait pasmal de fichier Mozilla Firefox dans les Spyware -> j'ai voulu le virer mais comme il n'y a pas d'icone de désinstallation dans le menu démarer -> je suis passé par le panneau de config -> ajout et suppression de progamme -> mais rien a faire il me le vire pas -> au bout de quelques secondes -> la page sse bloque !!!!
aurait tu une solution pour une désintallation propre ???
je sais j'abuse ... ;)
un seul bémol -> mon navigateur orange ne s'ouvre toujours pas :(
autre chose qui n'as rien a voir -> comme j'ai vu qu'il y avait pasmal de fichier Mozilla Firefox dans les Spyware -> j'ai voulu le virer mais comme il n'y a pas d'icone de désinstallation dans le menu démarer -> je suis passé par le panneau de config -> ajout et suppression de progamme -> mais rien a faire il me le vire pas -> au bout de quelques secondes -> la page sse bloque !!!!
aurait tu une solution pour une désintallation propre ???
je sais j'abuse ... ;)
Pour Ewido, ça semble ok
Oui, utilise Ccleaner réguliérement pour eviter que des bestioles viennent s'accumuler
FireFox n'a pas de spyware lol tu peux le garder ce que t uas vu c'etait des fichiers temporaires infecté dnas le cache de FireFox donc tu peux le laisser si tu veux ;-)
Pour ton navigateur qui merde, réinstalle-le car j'vois pas quoi faire d'autre la :-/
Oui, utilise Ccleaner réguliérement pour eviter que des bestioles viennent s'accumuler
FireFox n'a pas de spyware lol tu peux le garder ce que t uas vu c'etait des fichiers temporaires infecté dnas le cache de FireFox donc tu peux le laisser si tu veux ;-)
Pour ton navigateur qui merde, réinstalle-le car j'vois pas quoi faire d'autre la :-/
Utilisateur anonyme
11 sept. 2006 à 23:08
11 sept. 2006 à 23:08
remets un rapport hijackthis stp (pour verifier quelque chose)
voila :
Logfile of HijackThis v1.99.1
Scan saved at 23:16:35, on 11/09/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\WINDOWS\Explorer.EXE
C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\Program Files\Securitoo\av_fw\FSGUI\ispnews.exe
C:\Program Files\Securitoo\av_fw\FSGUI\fsguiexe.exe
C:\Program Files\Securitoo\av_fw\backweb\8520111\Program\fspex.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\Program Files\TGTSoft\StyleXP\StyleXP.exe
C:\Program Files\Securitoo\av_fw\Anti-Spyware\Ad-Monitor.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\PROGRA~1\Wanadoo\Watch.exe
C:\WINDOWS\system32\rundll32.exe
C:\DOCUME~1\Admin\LOCALS~1\Temp\nstmp2\uninstall.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Admin\Bureau\Hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\Securitoo\av_fw\FSGUI\FSSW.EXE" /reboot
O4 - HKLM\..\Run: [News Service] "C:\Program Files\Securitoo\av_fw\FSGUI\ispnews.exe"
O4 - HKLM\..\Run: [FSASWREG] "C:\Program Files\Securitoo\av_fw\Anti-Spyware\fsaswreg.exe"
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKLM\..\Run: [IESet] IExplorer.dll .dbt
O4 - HKLM\..\RunServices: [IESet] IExplorer.dll .dbt
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [AWMON] "C:\Program Files\Securitoo\av_fw\Anti-Spyware\Ad-Monitor.exe"
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe GestionnaireInternet.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [IESet] IExplorer.dll .dbt
O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\PROGRA~1\INCRED~1\bin\resources\WebMenuImg.htm
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O17 - HKLM\System\CCS\Services\Tcpip\..\{060AF30D-918A-4499-B86C-7A9A2D3A1B51}: NameServer = 80.10.246.1 80.10.246.132
O17 - HKLM\System\CS1\Services\Tcpip\..\{060AF30D-918A-4499-B86C-7A9A2D3A1B51}: NameServer = 80.10.246.1 80.10.246.132
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
Logfile of HijackThis v1.99.1
Scan saved at 23:16:35, on 11/09/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\WINDOWS\Explorer.EXE
C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\Program Files\Securitoo\av_fw\FSGUI\ispnews.exe
C:\Program Files\Securitoo\av_fw\FSGUI\fsguiexe.exe
C:\Program Files\Securitoo\av_fw\backweb\8520111\Program\fspex.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\Program Files\TGTSoft\StyleXP\StyleXP.exe
C:\Program Files\Securitoo\av_fw\Anti-Spyware\Ad-Monitor.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\PROGRA~1\Wanadoo\Watch.exe
C:\WINDOWS\system32\rundll32.exe
C:\DOCUME~1\Admin\LOCALS~1\Temp\nstmp2\uninstall.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Admin\Bureau\Hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\Securitoo\av_fw\FSGUI\FSSW.EXE" /reboot
O4 - HKLM\..\Run: [News Service] "C:\Program Files\Securitoo\av_fw\FSGUI\ispnews.exe"
O4 - HKLM\..\Run: [FSASWREG] "C:\Program Files\Securitoo\av_fw\Anti-Spyware\fsaswreg.exe"
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKLM\..\Run: [IESet] IExplorer.dll .dbt
O4 - HKLM\..\RunServices: [IESet] IExplorer.dll .dbt
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [AWMON] "C:\Program Files\Securitoo\av_fw\Anti-Spyware\Ad-Monitor.exe"
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe GestionnaireInternet.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [IESet] IExplorer.dll .dbt
O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\PROGRA~1\INCRED~1\bin\resources\WebMenuImg.htm
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O17 - HKLM\System\CCS\Services\Tcpip\..\{060AF30D-918A-4499-B86C-7A9A2D3A1B51}: NameServer = 80.10.246.1 80.10.246.132
O17 - HKLM\System\CS1\Services\Tcpip\..\{060AF30D-918A-4499-B86C-7A9A2D3A1B51}: NameServer = 80.10.246.1 80.10.246.132
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
merci, fais ça:
Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP2 (en haut) va se mettre à clignoter, clic dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
Une fois qu'il a terminé colle le rapport ici stp
https://www.bitdefender.com/toolbox/
Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP2 (en haut) va se mettre à clignoter, clic dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
Une fois qu'il a terminé colle le rapport ici stp
https://www.bitdefender.com/toolbox/
joe67
Messages postés
25
Date d'inscription
jeudi 14 avril 2005
Statut
Membre
Dernière intervention
29 décembre 2009
1
11 sept. 2006 à 23:34
11 sept. 2006 à 23:34
c en cours ca rique de prendre du temps ,)
joe67
Messages postés
25
Date d'inscription
jeudi 14 avril 2005
Statut
Membre
Dernière intervention
29 décembre 2009
1
12 sept. 2006 à 00:25
12 sept. 2006 à 00:25
résultat :
BitDefender Online Scanner
Scan report generated at: Tue, Sep 12, 2006 - 00:14:37
Scan path: A:\;C:\;D:\;E:\;F:\;G:\;
Statistics
Time
00:48:34
Files
423898
Folders
3534
Boot Sectors
4
Archives
2081
Packed Files
66928
Results
Identified Viruses
5
Infected Files
5
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
5
Engines Info
Virus Definitions
453768
Engine build
AVCORE v1.0 (build 2310) (i386) (Apr 17 2006 16:24:38)
Scan plugins
13
Archive plugins
38
Unpack plugins
6
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\!KillBox\intel3.dll
Infected with: Generic.Malware.Fldld!.B8AD3BD3
C:\!KillBox\intel3.dll
Disinfection failed
C:\!KillBox\intel3.dll
Deleted
C:\boot.0nx
Infected with: GenPack:Generic.Malware.SYdld!.09BF7478
C:\boot.0nx
Disinfection failed
C:\boot.0nx
Deleted
C:\WINDOWS\getfile.exe
Infected with: Trojan.Spy.BZub.AA
C:\WINDOWS\getfile.exe
Disinfection failed
C:\WINDOWS\getfile.exe
Deleted
C:\WINDOWS\installer2.9.38.0xe
Infected with: Trojan.Cimuz.D
C:\WINDOWS\installer2.9.38.0xe
Disinfection failed
C:\WINDOWS\installer2.9.38.0xe
Deleted
C:\WINDOWS\NOTEDAD.EXE
Infected with: Trojan.Downloader.YY
C:\WINDOWS\NOTEDAD.EXE
Disinfection failed
C:\WINDOWS\NOTEDAD.EXE
Deleted
alors ???
BitDefender Online Scanner
Scan report generated at: Tue, Sep 12, 2006 - 00:14:37
Scan path: A:\;C:\;D:\;E:\;F:\;G:\;
Statistics
Time
00:48:34
Files
423898
Folders
3534
Boot Sectors
4
Archives
2081
Packed Files
66928
Results
Identified Viruses
5
Infected Files
5
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
5
Engines Info
Virus Definitions
453768
Engine build
AVCORE v1.0 (build 2310) (i386) (Apr 17 2006 16:24:38)
Scan plugins
13
Archive plugins
38
Unpack plugins
6
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\!KillBox\intel3.dll
Infected with: Generic.Malware.Fldld!.B8AD3BD3
C:\!KillBox\intel3.dll
Disinfection failed
C:\!KillBox\intel3.dll
Deleted
C:\boot.0nx
Infected with: GenPack:Generic.Malware.SYdld!.09BF7478
C:\boot.0nx
Disinfection failed
C:\boot.0nx
Deleted
C:\WINDOWS\getfile.exe
Infected with: Trojan.Spy.BZub.AA
C:\WINDOWS\getfile.exe
Disinfection failed
C:\WINDOWS\getfile.exe
Deleted
C:\WINDOWS\installer2.9.38.0xe
Infected with: Trojan.Cimuz.D
C:\WINDOWS\installer2.9.38.0xe
Disinfection failed
C:\WINDOWS\installer2.9.38.0xe
Deleted
C:\WINDOWS\NOTEDAD.EXE
Infected with: Trojan.Downloader.YY
C:\WINDOWS\NOTEDAD.EXE
Disinfection failed
C:\WINDOWS\NOTEDAD.EXE
Deleted
alors ???
joe67
Messages postés
25
Date d'inscription
jeudi 14 avril 2005
Statut
Membre
Dernière intervention
29 décembre 2009
1
12 sept. 2006 à 13:14
12 sept. 2006 à 13:14
je te tiens au courant si ca a marché ... je ferai ca plus tard -> faut aussi que je désinstalle le modem !!!
en tout cas merci beaucoup boulepate
en tout cas merci beaucoup boulepate
11 sept. 2006 à 01:15
voila :
Logfile of HijackThis v1.99.1
Scan saved at 01:14:24, on 11/09/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\windows\system32\services.exe
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\Securitoo\av_fw\FSGUI\ispnews.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\Program Files\Securitoo\av_fw\FSGUI\fsguiexe.exe
C:\Program Files\TGTSoft\StyleXP\StyleXP.exe
C:\Program Files\Securitoo\av_fw\Anti-Spyware\Ad-Monitor.exe
C:\Program Files\Securitoo\av_fw\backweb\8520111\Program\fspex.exe
C:\PROGRA~1\INCRED~1\bin\IMApp.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Watch.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Admin\Application Data\Microsoft\Internet Explorer\Quick Launch\Kitbar4$.exe
C:\Documents and Settings\Admin\Bureau\Hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {73364D99-1240-4dff-B11A-67E448373048} - C:\WINDOWS\system32\ipv6monl.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\Securitoo\av_fw\FSGUI\FSSW.EXE" /reboot
O4 - HKLM\..\Run: [News Service] "C:\Program Files\Securitoo\av_fw\FSGUI\ispnews.exe"
O4 - HKLM\..\Run: [FSASWREG] "C:\Program Files\Securitoo\av_fw\Anti-Spyware\fsaswreg.exe"
O4 - HKLM\..\Run: [MSN] "C:\WINDOWS\system32\msn.exe" /INITSERVICE
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [IESet] IExplorer.dll .dbt
O4 - HKLM\..\RunServices: [IESet] IExplorer.dll .dbt
O4 - HKCU\..\Run: [IncrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [AWMON] "C:\Program Files\Securitoo\av_fw\Anti-Spyware\Ad-Monitor.exe"
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe GestionnaireInternet.exe
O4 - HKCU\..\Run: [IESet] IExplorer.dll .dbt
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\PROGRA~1\INCRED~1\bin\resources\WebMenuImg.htm
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O17 - HKLM\System\CCS\Services\Tcpip\..\{060AF30D-918A-4499-B86C-7A9A2D3A1B51}: NameServer = 80.10.246.1 80.10.246.132
O17 - HKLM\System\CS1\Services\Tcpip\..\{060AF30D-918A-4499-B86C-7A9A2D3A1B51}: NameServer = 80.10.246.1 80.10.246.132
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: gdiwxp - gdiwxp.dll (file missing)
O20 - Winlogon Notify: intel3 - C:\WINDOWS\SYSTEM32\intel3.dll
O21 - SSODL: CdProvider - {523455E4-ABCD-ABCD-1114-D709ADD3DDAB} - C:\WINDOWS\system32\CdProvider.dll (file missing)
O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
O23 - Service: YUGE_pigeon_server1.23 (YUGEPigeonServer1.23) - Unknown owner - C:\WINDOWS\G_Server1.23.exe
je vois que j'ai a faire a un expert ... je ne voudrai pas abuser mais si t'as le temps jettes un oeil a celui la aussi -> un autre probleme plus récurent !!!
messages intempestifs lors navigation
merci d'avance c sympa
11 sept. 2006 à 01:25
Relance HijackThis, choisis "do a scan only" coche la case devant les lignes ci-dessous et clic en bas sur "fix checked"
O2 - BHO: (no name) - {73364D99-1240-4dff-B11A-67E448373048} - C:\WINDOWS\system32\ipv6monl.dll
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [MSN] "C:\WINDOWS\system32\msn.exe" /INITSERVICE
O4 - HKLM\..\Run: [IESet] IExplorer.dll .dbt
O4 - HKLM\..\RunServices: [IESet] IExplorer.dll .dbt
O4 - HKCU\..\Run: [IncrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c
O4 - HKCU\..\Run: [IESet] IExplorer.dll .dbt
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O20 - Winlogon Notify: gdiwxp - gdiwxp.dll (file missing)
O20 - Winlogon Notify: intel3 - C:\WINDOWS\SYSTEM32\intel3.dll
O21 - SSODL: CdProvider - {523455E4-ABCD-ABCD-1114-D709ADD3DDAB} - C:\WINDOWS\system32\CdProvider.dll (file missing)
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: YUGE_pigeon_server1.23 (YUGEPigeonServer1.23) - Unknown owner - C:\WINDOWS\G_Server1.23.exe
Clic sur demarrer, executer, tape: services.msc ,cherche dans la liste ces lignes et régle-les sur "désactivé" (fais un clic droit sur la ligne, puis propriétés)
France Telecom Routing Table Service <inutile n'empêche pas la connexion
YUGE_pigeon_server1.23
Clic sur demarrer, rechercher, cherche et supprime ces fichiers:
IExplorer.dll
ipv6monl.dll
msn.exe
**Si un fichier persiste lors de la suppression fais ceci:
-Redemarres ton pc, dès l'allumage de celui-ci tapote la touche f8, à l'écran qui va apparaitre choisis "mode sans echec" attends un peu.. puis vas supprimer les fichiers/dossiers qui persistaient, vides ta corbeille et redemarres normalement
Telecharges Killbox:
https://www.generation-nt.com/killbox-telechargement-25430.html
Doubles clique sur killbox.exe (Pocket Killbox)
- coches: delete on reboot
dans la barre vide entre ceci: (exactement)
C:\WINDOWS\SYSTEM32\intel3.dll
- cliques sur la croix rouge
- une fenetre va apparaitre pour confirmation cliques sur YES
- une seconde fenetre te demande si tu veux redemarrer cliques sur YES
Laisses le pc redemarrer s'il ne redemarre pas fais le par toi même
Telecharge, installe puis mets à jour ce logiciel(Ewido), une fois que c'est fait, fais un scan complet de ton système et colle le rapport ici avec un nouveau rapport hijackthis stp
Ewido: (reste gratuit après la période d'essai)
Télécharger Ewido Security Suite
A+++ ;-)
11 sept. 2006 à 02:01
19 juil. 2009 à 13:20
je doi téléchargé le logiciel et ensuite linstallé ou je n'ai tré bien conpri
merci davance