Probléme avec un put*** de "dialer.generic&qu
Pedro
-
thesoulman_007 -
thesoulman_007 -
Bonjour,
J'ai un probléme avec un Dialer.
Bon, je suis sur mon pc tranquiloum, je met un jeu (par exemple) et BAM!!! norton (Corporate edition 10) qui s'excite en me disant "y a un Dialer qui s'apréte à faire le con dans ton pc, je le suprime?" alors moi je lui dis oui, normal, la menace est suprimé, les fichiers infecté sont suprimé.
Donc je me dis allé hop je retourne sur le jeu, je jours toujours tranquiloum et BAM!!! encore une fois la même chose!! Donc je le REsuprime! et c'est toujours la même chose depuis DEUX SEMAINES, au debut ça me dérangeais pas trop mais la sa me saoule!!!
Se va faire un moment que je tripote les pcs mais c'est la premiére fois que j'ai un truc aussi récurant!
Voilà help!
J'ai un probléme avec un Dialer.
Bon, je suis sur mon pc tranquiloum, je met un jeu (par exemple) et BAM!!! norton (Corporate edition 10) qui s'excite en me disant "y a un Dialer qui s'apréte à faire le con dans ton pc, je le suprime?" alors moi je lui dis oui, normal, la menace est suprimé, les fichiers infecté sont suprimé.
Donc je me dis allé hop je retourne sur le jeu, je jours toujours tranquiloum et BAM!!! encore une fois la même chose!! Donc je le REsuprime! et c'est toujours la même chose depuis DEUX SEMAINES, au debut ça me dérangeais pas trop mais la sa me saoule!!!
Se va faire un moment que je tripote les pcs mais c'est la premiére fois que j'ai un truc aussi récurant!
Voilà help!
A voir également:
- Probléme avec un put*** de "dialer.generic&qu
- When to put ac on dry mode - Guide
6 réponses
Salut,
Télécharge HijackThis:
Téléchargement de HijackThis
Installe le dans son propre dossier:
-clic droit sur le bureau, choisis "nouveau dossier" puis installe le dedans.
Lance le, clic sur "do a system scan and save logfile"
Puis copie et colle le rapport ici stp
Télécharge HijackThis:
Téléchargement de HijackThis
Installe le dans son propre dossier:
-clic droit sur le bureau, choisis "nouveau dossier" puis installe le dedans.
Lance le, clic sur "do a system scan and save logfile"
Puis copie et colle le rapport ici stp
C'est le même scan mais j'avais oblié l'update.
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 04:59:23 16/09/2006
+ Scan result:
HKLM\SOFTWARE\Classes\CLSID\{052b12f7-86fa-4921-8482-26c42316b522} -> Adware.Generic : Cleaned with backup (quarantined).
HKU\S-1-5-21-854245398-861567501-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{052B12F7-86FA-4921-8482-26C42316B522} -> Adware.Generic : Cleaned with backup (quarantined).
C:\WINDOWS\system32\ssqponk.dll -> Adware.Virtumionde : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd349.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd386.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd394.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd397.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd3A5.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd3BF.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd3D7.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd403.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd5B5.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd62F.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd631.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd7D8.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd7DA.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd7E5.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd7FF.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd80A.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd814.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd967.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd975.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd982.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd986.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd989.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd98C.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd98E.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd991.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd993.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd99A.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd99F.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd9A0.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd9A1.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd9A2.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd9A3.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd9A6.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd9B6.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA35.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA37.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA47.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA4F.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA74.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA76.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA85.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA8A.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA8D.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA8F.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddABE.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddACE.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddAD0.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddAD2.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddAD4.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddAFE.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddB10.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddB35.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddBC5.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\__delete_on_reboot__w_i_n_3_D_8_._t_m_p_._e_x_e_ -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\__delete_on_reboot__w_i_n_3_E_7_._t_m_p_._e_x_e_ -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\__delete_on_reboot__w_i_n_3_E_E_._t_m_p_._e_x_e_ -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\__delete_on_reboot__w_i_n_3_F_4_._t_m_p_._e_x_e_ -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\__delete_on_reboot__w_i_n_4_0_9_._t_m_p_._e_x_e_ -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\winB2C.tmp.exe -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\winB34.tmp.exe -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\winBA5.tmp.exe -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\Documents and Settings\FlatoupiX\Local Settings\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\Cache\BC62D28Cd01 -> Not-A-Virus.Downloader.Win32.WinFixer.l : Ignored.
:mozilla.10:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.11:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.13:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.253:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.282:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.309:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.296:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.297:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.159:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.162:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.278:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Adviva : Cleaned.
:mozilla.26:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.168:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.300:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.301:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.302:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.139:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.209:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.193:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.194:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.195:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.9:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.272:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
:mozilla.329:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.330:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.331:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.131:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.181:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.183:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.305:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.307:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.308:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.65:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.66:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.67:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.68:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.69:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.304:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.306:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.123:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.124:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.125:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.126:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.127:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.128:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.96:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.97:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.98:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.287:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.279:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.280:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.163:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.164:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.165:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.166:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.252:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.44:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.45:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.46:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.245:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Yadro : Cleaned.
:mozilla.242:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.243:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.132:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.133:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.134:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.135:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.137:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
::Report end
ReVoilà
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 04:59:23 16/09/2006
+ Scan result:
HKLM\SOFTWARE\Classes\CLSID\{052b12f7-86fa-4921-8482-26c42316b522} -> Adware.Generic : Cleaned with backup (quarantined).
HKU\S-1-5-21-854245398-861567501-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{052B12F7-86FA-4921-8482-26C42316B522} -> Adware.Generic : Cleaned with backup (quarantined).
C:\WINDOWS\system32\ssqponk.dll -> Adware.Virtumionde : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd349.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd386.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd394.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd397.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd3A5.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd3BF.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd3D7.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd403.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd5B5.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd62F.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd631.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd7D8.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd7DA.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd7E5.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd7FF.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd80A.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd814.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd967.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd975.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd982.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd986.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd989.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd98C.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd98E.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd991.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd993.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd99A.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd99F.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd9A0.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd9A1.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd9A2.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd9A3.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd9A6.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd9B6.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA35.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA37.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA47.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA4F.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA74.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA76.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA85.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA8A.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA8D.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddA8F.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddABE.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddACE.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddAD0.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddAD2.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddAD4.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddAFE.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddB10.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddB35.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\iddBC5.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\__delete_on_reboot__w_i_n_3_D_8_._t_m_p_._e_x_e_ -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\__delete_on_reboot__w_i_n_3_E_7_._t_m_p_._e_x_e_ -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\__delete_on_reboot__w_i_n_3_E_E_._t_m_p_._e_x_e_ -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\__delete_on_reboot__w_i_n_3_F_4_._t_m_p_._e_x_e_ -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\__delete_on_reboot__w_i_n_4_0_9_._t_m_p_._e_x_e_ -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\winB2C.tmp.exe -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\winB34.tmp.exe -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\winBA5.tmp.exe -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\Documents and Settings\FlatoupiX\Local Settings\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\Cache\BC62D28Cd01 -> Not-A-Virus.Downloader.Win32.WinFixer.l : Ignored.
:mozilla.10:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.11:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.13:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.253:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.282:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.309:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.296:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.297:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.159:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.162:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.278:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Adviva : Cleaned.
:mozilla.26:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.168:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.300:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.301:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.302:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.139:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.209:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.193:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.194:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.195:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.9:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.272:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
:mozilla.329:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.330:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.331:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.131:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.181:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.183:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.305:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.307:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.308:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.65:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.66:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.67:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.68:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.69:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.304:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.306:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.123:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.124:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.125:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.126:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.127:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.128:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.96:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.97:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.98:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.287:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.279:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.280:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.163:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.164:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.165:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.166:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.252:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.44:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.45:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.46:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.245:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Yadro : Cleaned.
:mozilla.242:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.243:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.132:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.133:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.134:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.135:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.137:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
::Report end
ReVoilà
Fais ce nettoyage: (à faire réguliérement)
¤Telecharges et installes ceci:
CCleaner:
Télécharger Ccleaner
dans la colonne de gauche clic sur "erreurs" coches toutes les cases, puis cliques en bas sur "chercher des erreurs" une fois finit, cliques sur "reparer les erreurs" et tu aura un message pour sauvegarder ta base de registre tu dis "oui" puis tu recommences jusqu'a ce qu'il te trouve plus d'erreurs.
Les sauvegardes que tu aura faites tu pourra les supprimer si ton ordinateur n'a plus de problémes
¤Relance Ccleaner, vas dans l'onglet "nettoyeur" present sur la gauche, decoches la derniere case (Avancé si elle est cochée) puis clic sur "lancer le nettoyage"
En mode sans echec fais le aussi une fois pour qu'il puisse tout virer.
Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP2 (en haut) va se mettre à clignoter, clic dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
Une fois qu'il a terminé colle le rapport ici stp
https://www.bitdefender.com/toolbox/
Puis ça sera ok je pense ;-)
¤Telecharges et installes ceci:
CCleaner:
Télécharger Ccleaner
dans la colonne de gauche clic sur "erreurs" coches toutes les cases, puis cliques en bas sur "chercher des erreurs" une fois finit, cliques sur "reparer les erreurs" et tu aura un message pour sauvegarder ta base de registre tu dis "oui" puis tu recommences jusqu'a ce qu'il te trouve plus d'erreurs.
Les sauvegardes que tu aura faites tu pourra les supprimer si ton ordinateur n'a plus de problémes
¤Relance Ccleaner, vas dans l'onglet "nettoyeur" present sur la gauche, decoches la derniere case (Avancé si elle est cochée) puis clic sur "lancer le nettoyage"
En mode sans echec fais le aussi une fois pour qu'il puisse tout virer.
Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP2 (en haut) va se mettre à clignoter, clic dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
Une fois qu'il a terminé colle le rapport ici stp
https://www.bitdefender.com/toolbox/
Puis ça sera ok je pense ;-)
Voilà j'ai finis aprés 2h de scan c'est toujours pareil!!!!
BitDefender Online Scanner - Real Time Virus Report
Generated at: Sat, Sep 16, 2006 - 12:57:04
Scan Info
scanned Files
718005
Infected Files
217
Virus Detected
GenPack:Trojan.Swizzor.HS
2
Trojan.Servu.I
2
Trojan.Starter.V
2
Trojan.FakeAlert.CX
2
Application.Tool.Passlist
1
Win32.Wukill.E@mm
6
Trojan.NTPacker
7
Trojan.Zlob.BY
1
GenPack:Trojan.Downloader.Swizzor.BO
1
Trojan.Spy.Agent.AB
1
Trojan.Dialer.Porn.I
189
GenPack:Trojan.Downloader.Swizzor.CB
1
GenPack:Trojan.Swizzor.IA
2
BitDefender Online Scanner - Real Time Virus Report
Generated at: Sat, Sep 16, 2006 - 12:57:04
Scan Info
scanned Files
718005
Infected Files
217
Virus Detected
GenPack:Trojan.Swizzor.HS
2
Trojan.Servu.I
2
Trojan.Starter.V
2
Trojan.FakeAlert.CX
2
Application.Tool.Passlist
1
Win32.Wukill.E@mm
6
Trojan.NTPacker
7
Trojan.Zlob.BY
1
GenPack:Trojan.Downloader.Swizzor.BO
1
Trojan.Spy.Agent.AB
1
Trojan.Dialer.Porn.I
189
GenPack:Trojan.Downloader.Swizzor.CB
1
GenPack:Trojan.Swizzor.IA
2
dis moi ton anti-virus fonctionne t-il bien ?
Ton pare-feu est-il configuré ?
N'ayant pas de rapport fait ça pas mesure de precaution
pour être sûr, nous allons créer un point propre.
Clic sur "demarrer", cliques droit sur "poste de travail", "propriétés", onglet "restauration du systeme"
¤ coches la case "desactiver la Restauration du systéme sur tous les lecteurs", puis clic ur "appliquer"
¤ decoches la case et clic sur "appliquer" puis "ok".
Maintenant, que l'ont à effacés les point infectés, nous allons créer un point propre:
Clic sur "demarrer", "tous les programmes", "accessoires", "outils système", "restauration du système", choisis "créer un point de restauration" nommes le " ccm" par exemple, cliques sur "créer" puis "ok".
Voilà, maintenant le point de restauration est créer si un jour tu décides tu pourra revenir en arriere à la date que tu l'as créer donc à ce jour; en fesant la marche arriére tu pourra remettre ton ordinateur à la date ou l'on à créer ce point de restauration mais tu perdra les modifications que tu aura faites entre deux.
Refais un scan complet de ton systéme avec Ewido et colle le rapport ici stp
Puis:
Télécharges Blacklight et sauvegarde le sur ton bureau.
https://www.f-secure.com/en
Double cliques sur " blbeta.exe " et acceptes la licence; clic sur "Scan" puis "Next"
Un rapport, va se créer sur ton bureau "fslb-....."
Copies et colles le contenu de ce rapport ici.
Ne touche à rien d'autre!
Ton pare-feu est-il configuré ?
N'ayant pas de rapport fait ça pas mesure de precaution
pour être sûr, nous allons créer un point propre.
Clic sur "demarrer", cliques droit sur "poste de travail", "propriétés", onglet "restauration du systeme"
¤ coches la case "desactiver la Restauration du systéme sur tous les lecteurs", puis clic ur "appliquer"
¤ decoches la case et clic sur "appliquer" puis "ok".
Maintenant, que l'ont à effacés les point infectés, nous allons créer un point propre:
Clic sur "demarrer", "tous les programmes", "accessoires", "outils système", "restauration du système", choisis "créer un point de restauration" nommes le " ccm" par exemple, cliques sur "créer" puis "ok".
Voilà, maintenant le point de restauration est créer si un jour tu décides tu pourra revenir en arriere à la date que tu l'as créer donc à ce jour; en fesant la marche arriére tu pourra remettre ton ordinateur à la date ou l'on à créer ce point de restauration mais tu perdra les modifications que tu aura faites entre deux.
Refais un scan complet de ton systéme avec Ewido et colle le rapport ici stp
Puis:
Télécharges Blacklight et sauvegarde le sur ton bureau.
https://www.f-secure.com/en
Double cliques sur " blbeta.exe " et acceptes la licence; clic sur "Scan" puis "Next"
Un rapport, va se créer sur ton bureau "fslb-....."
Copies et colles le contenu de ce rapport ici.
Ne touche à rien d'autre!
Bonjour
j'ai le meme probleme avec le meme virus "dialer Generic".
J'ai fait un scan avec HIJACK et voila ce que j'obtiens:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:12:41, on 04/09/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Apoint\Apoint.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\McAfee\MSK\MskAgent.exe
C:\Program Files\SiteAdvisor\6172\SiteAdv.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
C:\WINDOWS\wdfmgr.exe
c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
C:\Program Files\Apoint\HidFind.exe
C:\Program Files\Apoint\Apntex.exe
C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\PROGRA~1\McAfee\MPS\mps.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\3M\PSNLite\PsnLite.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\SiteAdvisor\6172\SAService.exe
C:\Program Files\McAfee\MPS\mpsevh.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\CNAB4RPK.EXE
C:\PROGRA~1\3M\PSNLite\PSNGive.exe
C:\Program Files\Inventel\Gateway\wlancfg.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.negocialys.com/immoadmin/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6172\SiteAdv.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\program files\mcafee\virusscan\scriptcl.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6172\SiteAdv.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [SiteAdvisor] C:\Program Files\SiteAdvisor\6172\SiteAdv.exe
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [wdfmgr.exe] C:\WINDOWS\wdfmgr.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Post-it® Software Notes Lite (2).lnk = C:\Program Files\3M\PSNLite\PsnLite.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://www.negocialys.com
O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\FICHIE~1\McAfee\EmProxy\emproxy.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe
O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Service SiteAdvisor (SiteAdvisor Service) - Unknown owner - C:\Program Files\SiteAdvisor\6172\SAService.exe
O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\Program Files\Inventel\Gateway\wlancfg.exe
O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
O23 - Service: Windows Live Setup Service (WLSetupSvc) - Unknown owner - C:\Program Files\Windows Live\installer\WLSetupSvc.exe
j'ai le meme probleme avec le meme virus "dialer Generic".
J'ai fait un scan avec HIJACK et voila ce que j'obtiens:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:12:41, on 04/09/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Apoint\Apoint.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\McAfee\MSK\MskAgent.exe
C:\Program Files\SiteAdvisor\6172\SiteAdv.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
C:\WINDOWS\wdfmgr.exe
c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
C:\Program Files\Apoint\HidFind.exe
C:\Program Files\Apoint\Apntex.exe
C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\PROGRA~1\McAfee\MPS\mps.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\3M\PSNLite\PsnLite.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\SiteAdvisor\6172\SAService.exe
C:\Program Files\McAfee\MPS\mpsevh.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\CNAB4RPK.EXE
C:\PROGRA~1\3M\PSNLite\PSNGive.exe
C:\Program Files\Inventel\Gateway\wlancfg.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.negocialys.com/immoadmin/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6172\SiteAdv.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\program files\mcafee\virusscan\scriptcl.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6172\SiteAdv.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [SiteAdvisor] C:\Program Files\SiteAdvisor\6172\SiteAdv.exe
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [wdfmgr.exe] C:\WINDOWS\wdfmgr.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Post-it® Software Notes Lite (2).lnk = C:\Program Files\3M\PSNLite\PsnLite.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://www.negocialys.com
O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\FICHIE~1\McAfee\EmProxy\emproxy.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe
O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Service SiteAdvisor (SiteAdvisor Service) - Unknown owner - C:\Program Files\SiteAdvisor\6172\SAService.exe
O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\Program Files\Inventel\Gateway\wlancfg.exe
O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
O23 - Service: Windows Live Setup Service (WLSetupSvc) - Unknown owner - C:\Program Files\Windows Live\installer\WLSetupSvc.exe
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Bonjour
j'ai le meme probleme avec le meme virus "dialer Generic".
J'ai fait un scan avec HIJACK et voila ce que j'obtiens:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:12:41, on 04/09/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Apoint\Apoint.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\McAfee\MSK\MskAgent.exe
C:\Program Files\SiteAdvisor\6172\SiteAdv.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
C:\WINDOWS\wdfmgr.exe
c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
C:\Program Files\Apoint\HidFind.exe
C:\Program Files\Apoint\Apntex.exe
C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\PROGRA~1\McAfee\MPS\mps.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\3M\PSNLite\PsnLite.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\SiteAdvisor\6172\SAService.exe
C:\Program Files\McAfee\MPS\mpsevh.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\CNAB4RPK.EXE
C:\PROGRA~1\3M\PSNLite\PSNGive.exe
C:\Program Files\Inventel\Gateway\wlancfg.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.negocialys.com/immoadmin/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6172\SiteAdv.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\program files\mcafee\virusscan\scriptcl.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6172\SiteAdv.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [SiteAdvisor] C:\Program Files\SiteAdvisor\6172\SiteAdv.exe
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [wdfmgr.exe] C:\WINDOWS\wdfmgr.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Post-it® Software Notes Lite (2).lnk = C:\Program Files\3M\PSNLite\PsnLite.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://www.negocialys.com
O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\FICHIE~1\McAfee\EmProxy\emproxy.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe
O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Service SiteAdvisor (SiteAdvisor Service) - Unknown owner - C:\Program Files\SiteAdvisor\6172\SAService.exe
O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\Program Files\Inventel\Gateway\wlancfg.exe
O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
O23 - Service: Windows Live Setup Service (WLSetupSvc) - Unknown owner - C:\Program Files\Windows Live\installer\WLSetupSvc.exe
j'ai le meme probleme avec le meme virus "dialer Generic".
J'ai fait un scan avec HIJACK et voila ce que j'obtiens:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:12:41, on 04/09/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Apoint\Apoint.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\McAfee\MSK\MskAgent.exe
C:\Program Files\SiteAdvisor\6172\SiteAdv.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
C:\WINDOWS\wdfmgr.exe
c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
C:\Program Files\Apoint\HidFind.exe
C:\Program Files\Apoint\Apntex.exe
C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\PROGRA~1\McAfee\MPS\mps.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\3M\PSNLite\PsnLite.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\SiteAdvisor\6172\SAService.exe
C:\Program Files\McAfee\MPS\mpsevh.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\CNAB4RPK.EXE
C:\PROGRA~1\3M\PSNLite\PSNGive.exe
C:\Program Files\Inventel\Gateway\wlancfg.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.negocialys.com/immoadmin/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6172\SiteAdv.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\program files\mcafee\virusscan\scriptcl.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6172\SiteAdv.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [SiteAdvisor] C:\Program Files\SiteAdvisor\6172\SiteAdv.exe
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [wdfmgr.exe] C:\WINDOWS\wdfmgr.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Post-it® Software Notes Lite (2).lnk = C:\Program Files\3M\PSNLite\PsnLite.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://www.negocialys.com
O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\FICHIE~1\McAfee\EmProxy\emproxy.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe
O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Service SiteAdvisor (SiteAdvisor Service) - Unknown owner - C:\Program Files\SiteAdvisor\6172\SAService.exe
O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\Program Files\Inventel\Gateway\wlancfg.exe
O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
O23 - Service: Windows Live Setup Service (WLSetupSvc) - Unknown owner - C:\Program Files\Windows Live\installer\WLSetupSvc.exe
contre les spy war et tous les espion j'emplois spyware doctore que vous trouverer dans le pack gratuit de google, a faire aussi il sufis
d'aller dans votre programe administration and the siting et cliker sur l'icone des cookies et de les suprimer a chaque fois que vous irer naviguer sur le net , car les cookies ne serve qu'a vous rapeler tous les sites que vous aver visiter,a telecharger aussi c'est le logiciel smart protector il ser a vider totalement le contenut de la corbeille et elimine toute trace de ce que vous aver suprimer totalement du disque dure.je vous conseillerait de le faire avant d'eteindre votre pc a chaque fois , noublier pas non plus de fragementer de temps en temps votre pc cela le rendera un peut plus rapide.je vous conseille de suivre toutes les etapes que je vous ai indiquer et votre pc tournera tres bien le seul probleime c'est qu'il faut le faire tres souvent puis que on navigue souvent sur le net. a chaque fois que vous sentirer que votre pc marche au ralenti ou qu'il beug trops fait un scan avec le spyware doctor, et aller nettoyer votre document and the siting suprimer tout vos cookies,voila c'est tout ce que je peut vous proposer pour vous aider a remedier a vos probleimes.n'esiter pas a me faire s'avoir si cela vous sa aider cela me fera plaisir si mes conseille a servis a qu'elque chose .merci a vous de me tenir au courant....
d'aller dans votre programe administration and the siting et cliker sur l'icone des cookies et de les suprimer a chaque fois que vous irer naviguer sur le net , car les cookies ne serve qu'a vous rapeler tous les sites que vous aver visiter,a telecharger aussi c'est le logiciel smart protector il ser a vider totalement le contenut de la corbeille et elimine toute trace de ce que vous aver suprimer totalement du disque dure.je vous conseillerait de le faire avant d'eteindre votre pc a chaque fois , noublier pas non plus de fragementer de temps en temps votre pc cela le rendera un peut plus rapide.je vous conseille de suivre toutes les etapes que je vous ai indiquer et votre pc tournera tres bien le seul probleime c'est qu'il faut le faire tres souvent puis que on navigue souvent sur le net. a chaque fois que vous sentirer que votre pc marche au ralenti ou qu'il beug trops fait un scan avec le spyware doctor, et aller nettoyer votre document and the siting suprimer tout vos cookies,voila c'est tout ce que je peut vous proposer pour vous aider a remedier a vos probleimes.n'esiter pas a me faire s'avoir si cela vous sa aider cela me fera plaisir si mes conseille a servis a qu'elque chose .merci a vous de me tenir au courant....
Logfile of HijackThis v1.99.1
Scan saved at 03:27:39, on 16/09/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\j2re1.4.2_04\bin\jusched.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\NetLimiter\NetLimiter.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\DAEMON Tools\daemon.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\SuperCopier2\SuperCopier2.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Fichiers communs\Logitech\KHAL\KHALMNPR.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\Internet Explorer\iexplore.exe
D:\Downloads\Soft\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.broadcom.com/support/security-center
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_04\bin\jusched.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [NetLimiter] C:\Program Files\NetLimiter\NetLimiter.exe /s
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_04\bin\npjpi142_04.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_04\bin\npjpi142_04.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
Telecharge, installe puis mets à jour ce logiciel(Ewido), une fois que c'est fait, fais un scan complet de ton système, supprime (delete) tout ce qu'il te trouve puis colle le rapport ici stp
Ewido: (reste gratuit après la période d'essai)
Télécharger Ewido Security Suite
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 04:39:40 16/09/2006
+ Scan result:
D:\Downloads\Soft\Wep crack\Windows\linksys_pack.zip/linksys_pack/aircrack.exe -> Not-A-Virus.PSWTool.Win32.AirCrack.a : Ignored.
D:\Downloads\Soft\Wep crack\Windows\linksys_pack\linksys_pack\aircrack.exe -> Not-A-Virus.PSWTool.Win32.AirCrack.a : Ignored.
D:\Downloads\Soft\Wep crack\aircrack-2.4\aircrack-2.4\win32\aircrack.exe -> Not-A-Virus.PSWTool.Win32.AirCrack.a : Ignored.
D:\Downloads\Soft\Wep crack\linksys_pack\aircrack.exe -> Not-A-Virus.PSWTool.Win32.AirCrack.a : Ignored.
:mozilla.11:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.13:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.8:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
C:\Documents and Settings\FlatoupiX\Cookies\flatoupix@247realmedia[1].txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.257:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.286:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.313:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.300:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.301:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.160:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.163:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.282:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Adviva : Cleaned.
:mozilla.26:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.169:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.304:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.305:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.306:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.140:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.210:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.194:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.195:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.196:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.12:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\FlatoupiX\Cookies\flatoupix@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.276:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
:mozilla.333:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.334:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.335:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.132:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\FlatoupiX\Cookies\flatoupix@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.182:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.184:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.309:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.311:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.312:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.66:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.67:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.68:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.69:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.70:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
C:\Documents and Settings\FlatoupiX\Cookies\flatoupix@stats1.reliablestats[1].txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.308:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.310:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.124:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.125:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.126:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.127:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.128:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.129:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\FlatoupiX\Cookies\flatoupix@serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.97:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.98:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.99:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
C:\Documents and Settings\FlatoupiX\Cookies\flatoupix@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.291:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.283:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.284:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.164:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.165:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.166:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.167:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.256:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.44:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.45:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.46:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.246:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Yadro : Cleaned.
:mozilla.243:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.244:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.133:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.134:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.135:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.136:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.138:C:\Documents and Settings\FlatoupiX\Application Data\Mozilla\Firefox\Profiles\50nlspq5.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
::Report end
Voilà!!!