Trojan horse generic2.EZE

Résolu
Qulqu'un de perdu -  
Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   -
Bonjour et merci d'avance de votre aide.
Voila il y a quelques jours on detecte un trojan horse generic2.EZE. Je scan supprime tout ces trojan. 30 min après ils reviennent (ils sont plusieurs et si on les "ignore" (c'est embetant a force de tous les supprimer) ils viennent de plus en plus nombreux). Après de petit recherche je decouvre un fichier crée le meme jour, a environ la meme heure, meme année (par contre pas le meme mois mauis vu l'heure ou je l'ai reçu a cette epoque je restais pas connecté si longtemps). J'essaye de le supprimer. Impossible de le supprimer, il dit qu'un autre programme ou prsonne l'utilise et ferme si on veux supprimer. Après recherche je m'aperçois que c'est en fait que le fichier "index" qui peut aps etre supprimé (je precise que j'etair deconnecté quand j'ai essayé).
Le fichier ou ce trouve cette "index" est :
C:/Document and setting/HP_propriétaire/Local setting/temp/temporary internet files/Content.IE5/ il se trouve la avec des dossiers (des noms du genre : XDNXVQ6Y, JH6453G2) remplis de divers dossiers et d'un fichier : InterVideo Media File nommé "index"
Mais j'ai aussi 2 qui s'appelle temporary internet files :
Un dans : C:/WINDOWS/temp/temporary internet files/Content.IE5/ lui meme remplis du meme genre de fichier que celui evoqué plus haut (par contre dans le desepoir de faire partir ces trojan je l'ai supprimé et je crois que ce pauvre dossier n'avait rien avoir avec les trojans)
et un autre dans
C:/Documents and setting/HP_propriétaire/local setting/temporary internet files (il est juste a coté de "temp" qui lui meme contient celui que je soupsonne d'etre le coeur des problemes) et ce fichier est remplis de divers dossier comme le contient les dossier des autres (ceux avec les nom du genre : PAYOJ3LQ)

Voil j'ai un peu tout essayer pour supprimer : mode sans echec l'erreur apparait quand meme. De le supprimer avec des logiciels.. rien ne marche
Sinon je vois que certain on besoin de connaitre HijackThis donc je l'ai fait (je pense que je poste le bon scan) :

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
c:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
c:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
c:\Program Files\Norton Internet Security\ISSVC.exe
c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
c:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
c:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
c:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
c:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\Java\jre1.5.0\bin\jusched.exe
C:\windows\system\hpsysdrv.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\Fichiers communs\InterVideo\SchSvr\SchSvr.exe
C:\Program Files\InterVideo\Common\Bin\WinRemote.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb08.exe
C:\Program Files\HP\Digital Imaging\bin\hpotdd01.exe
C:\PROGRA~1\Wanadoo\CnxMon.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.0.720.3640\GoogleToolbarNotifier.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Valve\Steam\Steam.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\WiFiConnector\NintendoWFCReg.exe
C:\Program Files\CASIO\Photo Loader\Plauto.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Wanadoo\EspaceWanadoo.exe
C:\Program Files\Wanadoo\ComComp.exe
C:\Program Files\Wanadoo\Watch.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\HP_Propriétaire\Mes documents\jean-marie.sirugue\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.orange.fr/portail
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0\bin\jusched.exe"
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] "nwiz.exe" /installquiet /keeploaded /nodetect
O4 - HKLM\..\Run: [HPHUPD08] "c:\Program Files\HP\Digital Imaging\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\hphupd08.exe"
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [Home Theater SchSvr] "C:\Program Files\Fichiers communs\InterVideo\SchSvr\SchSvr.exe"
O4 - HKLM\..\Run: [WINREMOTE] "C:\Program Files\InterVideo\Common\Bin\WinRemote.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [LSBWatcher] c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb08.exe
O4 - HKLM\..\Run: [DeviceDiscovery] "C:\Program Files\HP\Digital Imaging\bin\hpotdd01.exe"
O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\Wanadoo\CnxMon.exe
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] "C:\PROGRA~1\SYMNET~1\SNDMon.exe" /Consumer
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] "C:\Program Files\Logitech\Video\ISStart.exe"
O4 - HKLM\..\Run: [LogitechVideoTray] "C:\Program Files\Logitech\Video\LogiTray.exe"
O4 - HKLM\..\Run: [eBayToolbar] "C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [AVG7_CC] "C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe" /STARTUP
O4 - HKLM\..\Run: [mmexbli.dll] "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\mmexbli.dll,eykednf
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\1.0.720.3640\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Steam] "C:\Valve\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancer l'utilitaire d'enregistrement.lnk = C:\Program Files\WiFiConnector\NintendoWFCReg.exe
O4 - Global Startup: Supervision de Photo Loader.lnk = C:\Program Files\CASIO\Photo Loader\Plauto.exe
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) - https://www.msn.com/fr-fr/
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (FilePlanet Download Control Class) - https://www.fileplanet.com/
O16 - DPF: {4D7F48C0-CB49-4EA6-97D4-04F4EACC2F3B} - http://sib1.od2.com/common/Member/ClientInstall/10.20.0002/OCI/setup.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://soldierandmonkey.spaces.live.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697514} (NsvPlayX Control) - http://www.nullsoft.com/nsv/embed/nsvplayx_vp3_mp3.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{764898E2-FC8A-4761-885B-10A88E370824}: NameServer = 80.10.246.1 80.10.246.132
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - c:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SAVScan - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe

Merci d'avance ! si vous voulez d'autres infos n'hesitez pas

15 réponses

  1. Quelqu'un de perdu
     
    J'ai oublié de dire que les principaux fichiers qui recoivent les trojans sont :
    C:/WINDOWS/temp/Win2D6.tmp (enfin 2D6 peut changer il y a plusieurs fichiers)
    C:/Document and setting/HP_propriétaire/Local setting/temp/temporary internet files/Content.IE5/[nom dun fichier du genre 9AD48JGE]/srvfyt.exe (les 3 derniere lettres (-fyt) peuvent changer la aussi )

    merci d'avance pour votre aide
    0
  2. Utilisateur anonyme
     
    Salut,

    les dossiers que tu cites sont des dossiers temporaires tu peux vider leurs contenu sans aucun souciss, si quelque chose venait à resister il va falloir redémarrer en mode sans echec

    Dans ton rapport hijackthis je vois du Norton anti-virus et du AVG si Norton est encore actif désinstalle avg pour éviter de futur problèmes

    Telecharge, installe puis mets à jour ce logiciel(Ewido), une fois que c'est fait, fais un scan complet de ton système, supprime (delete) tout ce qu'il te trouve puis colle le rapport ici
    Ewido: (reste gratuit après la période d'essai)
    Ewido
    0
  3. Quelqu'un de perdu
     
    Merci, j'ai fais le scan et voila le rapport :

    C:\Program Files\PrintView\__delete_on_reboot__P_R_I_N_T_H_~_1_._D_L_L_ -> Adware.PrintView : No action taken.
    C:\Program Files\Fichiers communs\Yazzle1122OinAdmin.exe -> Dropper.Small : No action taken.
    C:\Documents and Settings\HP_Propriétaire\Application Data\winantispyware2006freeinstall_fr[1].exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : No action taken.
    C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\Cookies\hp_propriétaire@247realmedia[1].txt -> TrackingCookie.247realmedia : No action taken.
    :mozilla.113:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.299:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.391:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.67:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.6:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.7:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.8:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.320:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Adjuggler : No action taken.
    :mozilla.321:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Adjuggler : No action taken.
    :mozilla.881:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Adserver : No action taken.
    :mozilla.882:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Adserver : No action taken.
    :mozilla.883:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Adserver : No action taken.
    C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\Cookies\hp_propriétaire@adtech[2].txt -> TrackingCookie.Adtech : No action taken.
    C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\Cookies\hp_propriétaire@bluestreak[1].txt -> TrackingCookie.Bluestreak : No action taken.
    :mozilla.235:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Casinotropez : No action taken.
    C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\Cookies\hp_propriétaire@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : No action taken.
    :mozilla.25:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Inet-cash : No action taken.
    :mozilla.347:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
    :mozilla.403:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Onestat : No action taken.
    :mozilla.404:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Onestat : No action taken.
    :mozilla.183:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Overture : No action taken.
    :mozilla.184:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Overture : No action taken.
    :mozilla.207:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Overture : No action taken.
    :mozilla.198:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Paycounter : No action taken.
    :mozilla.247:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Questionmarket : No action taken.
    :mozilla.248:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Questionmarket : No action taken.
    :mozilla.415:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
    :mozilla.416:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
    :mozilla.417:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
    :mozilla.418:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
    :mozilla.419:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
    :mozilla.420:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
    :mozilla.421:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
    :mozilla.422:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
    :mozilla.308:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
    :mozilla.309:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
    :mozilla.310:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
    :mozilla.351:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
    :mozilla.352:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
    :mozilla.353:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
    :mozilla.354:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
    :mozilla.355:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
    :mozilla.10:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Sitestat : No action taken.
    :mozilla.11:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Sitestat : No action taken.
    :mozilla.12:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Sitestat : No action taken.
    :mozilla.21:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Sitestat : No action taken.
    :mozilla.22:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Sitestat : No action taken.
    :mozilla.23:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Sitestat : No action taken.
    :mozilla.780:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
    :mozilla.781:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
    :mozilla.782:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
    C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\Cookies\hp_propriétaire@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : No action taken.
    :mozilla.399:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Spylog : No action taken.
    :mozilla.452:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
    :mozilla.453:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
    :mozilla.498:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
    :mozilla.499:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
    :mozilla.500:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
    :mozilla.501:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
    C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\Cookies\hp_propriétaire@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : No action taken.
    :mozilla.502:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
    :mozilla.503:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
    :mozilla.504:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
    :mozilla.505:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
    :mozilla.506:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
    :mozilla.507:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
    :mozilla.508:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Trafic : No action taken.
    :mozilla.514:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Tribalfusion : No action taken.
    :mozilla.348:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Web-stat : No action taken.
    :mozilla.349:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Web-stat : No action taken.
    :mozilla.588:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Web-stat : No action taken.
    :mozilla.583:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Weborama : No action taken.
    :mozilla.584:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Weborama : No action taken.
    :mozilla.585:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Weborama : No action taken.
    :mozilla.586:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Weborama : No action taken.
    :mozilla.853:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Xxxcounter : No action taken.
    :mozilla.855:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Yadro : No action taken.
    :mozilla.867:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
    :mozilla.888:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
    :mozilla.889:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
    :mozilla.890:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
    C:\WINDOWS\system32\wintfj32.dll -> Trojan.Agent.vg : No action taken.

    Sinon pour les fichiers que j'ai citer ils sont supprimable a par "index" ou on dit "ce fichier est utiliser par un programme ou une personne donc ne peut pas etre supprimé" (alors que j'avais que j'avais rien d'ouvert a par le dossier ou il se trouvait)
    Et meme avec le mode echec on me dit ça.
    0
  4. Quelqu'un de perdu
     
    Oups j'ai sauvegarder le rapport avant d'avoir nettoyer voici celui après nettoyage. Desolé

    C:\Program Files\PrintView\__delete_on_reboot__P_R_I_N_T_H_~_1_._D_L_L_ -> Adware.PrintView : Cleaned with backup (quarantined).
    C:\Program Files\Fichiers communs\Yazzle1122OinAdmin.exe -> Dropper.Small : Cleaned with backup (quarantined).
    C:\Documents and Settings\HP_Propriétaire\Application Data\winantispyware2006freeinstall_fr[1].exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignored.
    C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\Cookies\hp_propriétaire@247realmedia[1].txt -> TrackingCookie.247realmedia : Cleaned.
    :mozilla.113:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.299:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.391:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.67:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.6:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.7:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.8:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.320:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.
    :mozilla.321:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.
    :mozilla.881:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Adserver : Cleaned.
    :mozilla.882:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Adserver : Cleaned.
    :mozilla.883:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Adserver : Cleaned.
    C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\Cookies\hp_propriétaire@adtech[2].txt -> TrackingCookie.Adtech : Cleaned.
    C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\Cookies\hp_propriétaire@bluestreak[1].txt -> TrackingCookie.Bluestreak : Cleaned.
    :mozilla.235:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Casinotropez : Cleaned.
    C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\Cookies\hp_propriétaire@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : Cleaned.
    :mozilla.25:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Inet-cash : Cleaned.
    :mozilla.347:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
    :mozilla.403:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
    :mozilla.404:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
    :mozilla.183:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
    :mozilla.184:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
    :mozilla.207:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
    :mozilla.198:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Paycounter : Cleaned.
    :mozilla.247:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
    :mozilla.248:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
    :mozilla.415:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
    :mozilla.416:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
    :mozilla.417:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
    :mozilla.418:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
    :mozilla.419:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
    :mozilla.420:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
    :mozilla.421:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
    :mozilla.422:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
    :mozilla.308:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.
    :mozilla.309:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.
    :mozilla.310:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.
    :mozilla.351:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.352:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.353:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.354:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.355:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.10:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.11:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.12:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.21:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.22:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.23:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.780:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
    :mozilla.781:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
    :mozilla.782:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
    C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\Cookies\hp_propriétaire@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Cleaned.
    :mozilla.399:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Spylog : Cleaned.
    :mozilla.452:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.453:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.498:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
    :mozilla.499:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
    :mozilla.500:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
    :mozilla.501:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
    C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\Cookies\hp_propriétaire@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Cleaned.
    :mozilla.502:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
    :mozilla.503:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
    :mozilla.504:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
    :mozilla.505:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
    :mozilla.506:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
    :mozilla.507:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
    :mozilla.508:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Trafic : Cleaned.
    :mozilla.514:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
    :mozilla.348:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
    :mozilla.349:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
    :mozilla.588:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
    :mozilla.583:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
    :mozilla.584:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
    :mozilla.585:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
    :mozilla.586:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
    :mozilla.853:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Xxxcounter : Cleaned.
    :mozilla.855:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Yadro : Cleaned.
    :mozilla.867:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.888:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
    :mozilla.889:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
    :mozilla.890:C:\Documents and Settings\HP_Propriétaire\Application Data\Mozilla\Firefox\Profiles\6iw1op8s.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
    C:\WINDOWS\system32\wintfj32.dll -> Trojan.Agent.vg : Cleaned with backup (quarantined).

    merci d'avance pour tout
    0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. Utilisateur anonyme
     
    Fait ce nettoyage: (à faire réguliérement)

    ¤Telecharges et installes ceci:
    CCleaner:
    Ccleaner

    dans la colonne de gauche clic sur "erreurs" coches toutes les cases, puis cliques en bas sur "chercher des erreurs" une fois finit, cliques sur "reparer les erreurs" et tu aura un message pour sauvegarder ta base de registre tu dis "oui" puis tu recommences jusqu'a ce qu'il te trouve plus d'erreurs.
    Les sauvegardes que tu aura faites tu pourra les supprimer si ton ordinateur n'a plus de problémes

    ¤Relance Ccleaner, vas dans l'onglet "nettoyeur" present sur la gauche, decoches la derniere case (Avancé si elle est cochée) puis clic sur "lancer le nettoyage"

    Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP2 (en haut) va se mettre à clignoter, clic dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
    Une fois qu'il a terminé colle le rapport ici stp

    https://www.bitdefender.com/toolbox/
    0
  7. Quelqu'un de perdu
     
    Identified Viruses
    1

    Infected Files
    1

    Suspect Files
    0

    Warnings
    0

    Disinfected
    0

    Deleted Files
    1

    Engines Info

    Virus Definitions
    478735

    Engine build
    AVCORE v1.0 (build 2310) (i386) (Apr 17 2006 16:24:38)

    Scan plugins
    13

    Archive plugins
    38

    Unpack plugins
    6

    E-mail plugins
    6

    System plugins
    1

    Scan Settings

    First Action
    Disinfect

    Second Action
    Delete

    Heuristics
    Yes

    Enable Warnings
    Yes

    Scanned Extensions
    *;

    Exclude Extensions

    Scan Emails
    Yes

    Scan Archives
    Yes

    Scan Packed
    Yes

    Scan Files
    Yes

    Scan Boot
    Yes

    Scanned File
    Status

    C:\WINDOWS\system32\ismini.exe
    Infected with: Trojan.Downloader.Zlob.ACA

    C:\WINDOWS\system32\ismini.exe
    Disinfection failed

    C:\WINDOWS\system32\ismini.exe
    Deleted

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LuComServer.exe
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LuComServerPs.dll
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LUINFO.INF
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LUInit.exe
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LUInit.ini
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LUINSDLL.DLL
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\NDETECT.EXE
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\NetDetectController.DLL
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\ProductRegCOM.dll
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LISEZMOI.TXT
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\S32LIVE1.DLL
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\S32LUCP1.CPL
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\S32LUIS1.DLL
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\S32LUWI1.DLL
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\Settings.Default.LiveUpdate
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE=>(CAB Sfx r)
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE=>(CAB Sfx r)=>shfolder.dll
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE=>(CAB Sfx r)=>shfolder.inf
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE=>(CAB Sfx r)=>ADVPACK.DLL
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE=>(CAB Sfx r)=>W95INF32.DLL
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE=>(CAB Sfx r)=>W95INF16.DLL
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\SymantecRootInstaller.exe
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LuAll.cnt
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\ProductRegCOMPs.dll
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LuPreCon.DLL
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>ccWebWnd.dll.58B3CBD8_773E_456F_B761_5F9C67C2E7B1
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>McAfeeAV.dll.734D6F63_0B95_4499_8563_E6AFCC06AC5F
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>McAfeeFW.dll.1D9E0BF8_149B_4470_950F_0DBD2DFC6560
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>SSCOpts.dat.41070FEC_EAAB_4EC1_8221_B69FD3BE7407
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>SymSCWb.dll.4F2AD441_104A_45D7_AC4D_5F1B4984E054
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>sscicf.dll.DCF5B3F9_39BA_4BCE_ADD2_00022BBED62F
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>sscnav.dll.9483EDEB_DCA7_4AC0_82C4_F818545F29B5
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>sscnis7.dll.24C1E388_78BC_468C_A3C4_EB7A35AD8BF0
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>sscwu.dll.BDBE1D46_862F_468E_80E3_4F57084F595D
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>SymSCCPL.cpl.7266447E_0C04_4726_888E_291695E48A52
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>SymWSC.exe.A7A2B9F0_A0AB_4B90_A4FE_4EA1FAC3CB70
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>SymSCUI.exe.17077475_95B7_49E8_B06B_2ED9D2DC5953
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>UsrPrmpt.exe.09846774_17C8_4765_8187_FB295FB99819
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>WSCHlpr.dll.4BB2A688_4680_44C2_A47E_9C55BB7DB122
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>etrstav.dll.47A19F8A_7841_46FA_9ECC_7874260FDFEB
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>etrstfw.dll.6F6A63FE_8AE5_4EF8_A0CA_D57FFBB3F0EC
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>pcclnav.dll.BE982BEF_491F_455F_A835_31D7187998E3
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>pcclnfw.dll.69515E7F_97FC_46E0_B982_A4C15874AD61
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>ssciwp.dll.7D773005_BF98_4F0E_B507_41299072C60B
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>sscnis56.dll.DD31064D_1903_4A19_9B36_6B01D58F531D
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>sscwmiAV.dll.A4AE155F_D11D_4ED0_BC08_3E91494E5ABA
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>sscwmiFW.dll.777E6699_B12A_4D9D_A079_EF36CD947E4D
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded CAB)=>zonefw.dll.A557326C_D0FD_41CB_8B63_50D61EACCC56
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded EXE)
    Clean

    D:\I386\Apps\APP30766\src\fr\JS\SymSC.msi=>(Embedded EXE)
    Clean

    D:\I386\Apps\APP30766\src\it\js\Instopts.dat
    Clean

    D:\I386\Apps\APP30766\src\it\js\LURegWMI.exe
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\ALUNOTIFY.EXE
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\AUPDATE.EXE
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LSETUP.EXE
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LUALL.EXE
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LUALL.HLP
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LuComServer.exe
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LuComServerPs.dll
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LUINFO.INF
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LUInit.exe
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LUInit.ini
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LUINSDLL.DLL
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\NDETECT.EXE
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\NetDetectController.DLL
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\ProductRegCOM.dll
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\Leggimi.TXT
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\S32LIVE1.DLL
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\S32LUCP1.CPL
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\S32LUIS1.DLL
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\S32LUWI1.DLL
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\Settings.Default.LiveUpdate
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE=>(CAB Sfx r)
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE=>(CAB Sfx r)=>shfolder.dll
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE=>(CAB Sfx r)=>shfolder.inf
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE=>(CAB Sfx r)=>ADVPACK.DLL
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE=>(CAB Sfx r)=>W95INF32.DLL
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE=>(CAB Sfx r)=>W95INF16.DLL
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\SymantecRootInstaller.exe
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LuAll.cnt
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\ProductRegCOMPs.dll
    Clean

    D:\I386\Apps\APP30766\src\it\js\LUSetup\LUSETUP.EXE=>(CAB Sfx o)=>\LuPreCon.DLL
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>ccWebWnd.dll.58B3CBD8_773E_456F_B761_5F9C67C2E7B1
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>McAfeeAV.dll.734D6F63_0B95_4499_8563_E6AFCC06AC5F
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>McAfeeFW.dll.1D9E0BF8_149B_4470_950F_0DBD2DFC6560
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>SSCOpts.dat.41070FEC_EAAB_4EC1_8221_B69FD3BE7407
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>SymSCWb.dll.4F2AD441_104A_45D7_AC4D_5F1B4984E054
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>sscicf.dll.DCF5B3F9_39BA_4BCE_ADD2_00022BBED62F
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>sscnav.dll.9483EDEB_DCA7_4AC0_82C4_F818545F29B5
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>sscnis7.dll.24C1E388_78BC_468C_A3C4_EB7A35AD8BF0
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>sscwu.dll.BDBE1D46_862F_468E_80E3_4F57084F595D
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>SymSCCPL.cpl.7266447E_0C04_4726_888E_291695E48A52
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>SymWSC.exe.A7A2B9F0_A0AB_4B90_A4FE_4EA1FAC3CB70
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>SymSCUI.exe.17077475_95B7_49E8_B06B_2ED9D2DC5953
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>UsrPrmpt.exe.09846774_17C8_4765_8187_FB295FB99819
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>WSCHlpr.dll.4BB2A688_4680_44C2_A47E_9C55BB7DB122
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>etrstav.dll.47A19F8A_7841_46FA_9ECC_7874260FDFEB
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>etrstfw.dll.6F6A63FE_8AE5_4EF8_A0CA_D57FFBB3F0EC
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>pcclnav.dll.BE982BEF_491F_455F_A835_31D7187998E3
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>pcclnfw.dll.69515E7F_97FC_46E0_B982_A4C15874AD61
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>ssciwp.dll.7D773005_BF98_4F0E_B507_41299072C60B
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>sscnis56.dll.DD31064D_1903_4A19_9B36_6B01D58F531D
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>sscwmiAV.dll.A4AE155F_D11D_4ED0_BC08_3E91494E5ABA
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>sscwmiFW.dll.777E6699_B12A_4D9D_A079_EF36CD947E4D
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded CAB)=>zonefw.dll.A557326C_D0FD_41CB_8B63_50D61EACCC56
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded EXE)
    Clean

    D:\I386\Apps\APP30766\src\it\js\SymSC.msi=>(Embedded EXE)
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\INSTOPTS.DAT
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUREGWMI.EXE
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\ALUNOTIFY.EXE
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\AUPDATE.EXE
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\LSETUP.EXE
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\LuAll.cnt
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\luall.exe
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\LUALL.HLP
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\LuComServer.exe
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\LuComServerPs.dll
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\LUINFO.INF
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\LUInit.exe
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\LUInit.ini
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\LUINSDLL.DLL
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\LuPreCon.DLL
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\NDETECT.EXE
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\NetDetectController.DLL
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\ProductRegCOM.dll
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\ProductRegCOMPs.dll
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\Readme.txt
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\S32LIVE1.DLL
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\S32LUCP1.CPL
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\S32LUIS1.DLL
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\S32LUWI1.DLL
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\Settings.Default.LiveUpdate
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE=>(CAB Sfx r)
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE=>(CAB Sfx r)=>shfolder.dll
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE=>(CAB Sfx r)=>shfolder.inf
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE=>(CAB Sfx r)=>ADVPACK.DLL
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE=>(CAB Sfx r)=>W95INF32.DLL
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\SHFOLDER.EXE=>(CAB Sfx r)=>W95INF16.DLL
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\LUSETUP\LUSETUP.EXE=>(CAB Sfx o)=>\SymantecRootInstaller.exe
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>ccWebWnd.dll.58B3CBD8_773E_456F_B761_5F9C67C2E7B1
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>McAfeeAV.dll.734D6F63_0B95_4499_8563_E6AFCC06AC5F
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>McAfeeFW.dll.1D9E0BF8_149B_4470_950F_0DBD2DFC6560
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>SSCOpts.dat.41070FEC_EAAB_4EC1_8221_B69FD3BE7407
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>SymSCWb.dll.4F2AD441_104A_45D7_AC4D_5F1B4984E054
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>sscicf.dll.DCF5B3F9_39BA_4BCE_ADD2_00022BBED62F
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>sscnav.dll.9483EDEB_DCA7_4AC0_82C4_F818545F29B5
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>sscnis7.dll.24C1E388_78BC_468C_A3C4_EB7A35AD8BF0
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>sscwu.dll.BDBE1D46_862F_468E_80E3_4F57084F595D
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>SymSCCPL.cpl.7266447E_0C04_4726_888E_291695E48A52
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>SymWSC.exe.A7A2B9F0_A0AB_4B90_A4FE_4EA1FAC3CB70
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>SymSCUI.exe.17077475_95B7_49E8_B06B_2ED9D2DC5953
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>UsrPrmpt.exe.09846774_17C8_4765_8187_FB295FB99819
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>WSCHlpr.dll.4BB2A688_4680_44C2_A47E_9C55BB7DB122
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>etrstav.dll.47A19F8A_7841_46FA_9ECC_7874260FDFEB
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>etrstfw.dll.6F6A63FE_8AE5_4EF8_A0CA_D57FFBB3F0EC
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>pcclnav.dll.BE982BEF_491F_455F_A835_31D7187998E3
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>pcclnfw.dll.69515E7F_97FC_46E0_B982_A4C15874AD61
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>ssciwp.dll.7D773005_BF98_4F0E_B507_41299072C60B
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>sscnis56.dll.DD31064D_1903_4A19_9B36_6B01D58F531D
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>sscwmiAV.dll.A4AE155F_D11D_4ED0_BC08_3E91494E5ABA
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>sscwmiFW.dll.777E6699_B12A_4D9D_A079_EF36CD947E4D
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded CAB)=>zonefw.dll.A557326C_D0FD_41CB_8B63_50D61EACCC56
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded EXE)
    Clean

    D:\I386\Apps\APP30766\src\ko\JS\SYMSC.MSI=>(Embedded EXE)
    Clean

    D:\I386\Apps\APP30766\src\nl\js\Instopts.dat
    Clean

    D:\I386\Apps\APP30766\src\nl\js\LURegWMI.exe
    Clean

    Il est toujorus là, meme après tout ce que j'ai fais
    0
  8. Utilisateur anonyme
     
    telecharge ça:
    http://download.bleepingcomputer.com/sUBs/combofix.exe

    appuyes sur "Y" pour continuer

    Attends quelques minutes..un rapport va s'ouvrir enregistre son contenu, puis copie et colle le sur ici stp
    0
  9. Quelqu'un de perdu
     
    P_Propri‚taire - 06-10-25 20:52:51,35 Service Pack 2
    ComboFix 06.10.19 - Running from: "C:\Documents and Settings\HP_Propri‚taire\Mes documents\jean-marie.sirugue"

    (((((((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))

    C:\Program Files\Fichiers communs\Yazzle1122OinUninstaller.exe
    C:\Program Files\Fichiers communs\Yazzle1162OinUninstaller.exe
    C:\Program Files\PrintView
    C:\WINDOWS\system32\components
    C:\Program Files\Fichiers communs\{3C33CB2C-07C5-1036-0930-050721050021}
    C:\Program Files\Fichiers communs\{EC33CB2C-07C5-1036-0930-050721050021}

    ((((((((((((((((((((((((((((((( Files Created from 2006-09-25 to 2006-10-25 ))))))))))))))))))))))))))))))))))

    2006-10-23 16:30 24,072 --a------ C:\WINDOWS\system32\uxtuneup.dll
    2006-10-21 13:07 512,688 --a------ C:\WINDOWS\system32\XceedCry.dll
    2006-10-21 13:07 423,784 --a------ C:\WINDOWS\system32\XceedBkp.dll
    2006-10-21 13:07 118,784 --a------ C:\WINDOWS\system32\msstdfmt.dll
    2006-10-21 00:01 688,180 ---hs---- C:\WINDOWS\system32\vtutr.dll
    2006-10-20 23:55 94,208 --a------ C:\WINDOWS\system32\mmexbli.dll
    2006-10-20 23:55 72,704 --a------ C:\WINDOWS\system32\oasfev.dll
    2006-10-20 23:49 524,288 --a------ C:\Bkgnd.dll
    2006-10-10 22:00 59,904 --a------ C:\WINDOWS\system32\Mscc2fr.dll
    2006-10-10 22:00 516,173 --a------ C:\WINDOWS\system32\MSVCP60D.DLL
    2006-10-10 22:00 385,100 --a------ C:\WINDOWS\system32\MSVCRTD.DLL
    2006-10-10 22:00 32,768 --a------ C:\WINDOWS\system32\CMDLGFR.DLL
    2006-10-10 22:00 21,504 --a------ C:\WINDOWS\system32\TABCTFR.DLL
    2006-10-10 22:00 141,312 --a------ C:\WINDOWS\system32\MSCMCFR.DLL
    2006-10-10 22:00 119,568 --a------ C:\WINDOWS\system32\VB6FR.DLL
    2006-10-10 22:00 101,888 --a------ C:\WINDOWS\system32\VB6STKIT.DLL

    (((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))

    2006-10-25 20:53 -------- d-------- C:\Program Files\Wanadoo
    2006-10-25 20:53 -------- d-------- C:\Program Files\Fichiers communs
    2006-10-25 19:21 -------- d-------- C:\Program Files\Warcraft III
    2006-10-25 18:37 -------- d-------- C:\Program Files\Mozilla Firefox
    2006-10-25 18:02 -------- d-------- C:\Program Files\ewido anti-spyware 4.0
    2006-10-25 15:12 -------- d-------- C:\Program Files\Fichiers communs\Symantec Shared
    2006-10-25 13:31 -------- d-------- C:\Program Files\Ultimate Cleaner
    2006-10-25 13:30 -------- d-------- C:\Documents and Settings\HP_Propri‚taire\Application Data\Ultimate Cleaner
    2006-10-24 19:11 -------- d-------- C:\Program Files\Yahoo!
    2006-10-24 19:11 -------- d-------- C:\Program Files\CCleaner
    2006-10-24 17:34 -------- d-------- C:\Documents and Settings\HP_Propri‚taire\Application Data\Microsoft
    2006-10-23 17:20 -------- d-------- C:\Documents and Settings\HP_Propri‚taire\Application Data\Skype
    2006-10-23 16:36 -------- d-------- C:\Program Files\World of Warcraft
    2006-10-23 16:36 -------- d-------- C:\Program Files\Norton Internet Security
    2006-10-23 16:36 -------- d-------- C:\Program Files\NetMeeting
    2006-10-23 16:36 -------- d-------- C:\Program Files\Microsoft Works
    2006-10-23 16:36 -------- d-------- C:\Program Files\GUILD WARS
    2006-10-23 16:36 -------- d-------- C:\Program Files\GameSpy Arcade
    2006-10-23 16:36 -------- d-------- C:\Documents and Settings\HP_Propri‚taire\Application Data\teamspeak2
    2006-10-23 16:30 -------- d-------- C:\Program Files\TuneUp Utilities 2006
    2006-10-23 16:30 -------- d-------- C:\Documents and Settings\HP_Propri‚taire\Application Data\TuneUp Software
    2006-10-23 16:29 -------- d-------- C:\Program Files\Fichiers communs\Wise Installation Wizard
    2006-10-23 16:06 -------- d-------- C:\Program Files\Basta Computing
    2006-10-23 16:06 -------- d-------- C:\Documents and Settings\HP_Propri‚taire\Application Data\Basta Computing
    2006-10-23 14:52 -------- d-------- C:\Documents and Settings\HP_Propri‚taire\Application Data\HP
    2006-10-22 19:06 -------- d-------- C:\Documents and Settings\HP_Propri‚taire\Application Data\WholeSecurity
    2006-10-21 22:37 -------- d-------- C:\Documents and Settings\HP_Propri‚taire\Application Data\Lavasoft
    2006-10-21 22:36 -------- d-------- C:\Program Files\Lavasoft
    2006-10-21 16:16 -------- d-------- C:\Program Files\WinAntiSpyware 2006 Scanner
    2006-10-21 15:51 -------- d-------- C:\Program Files\Spyware Doctor
    2006-10-21 10:34 -------- d-------- C:\Documents and Settings\HP_Propri‚taire\Application Data\Symantec
    2006-10-20 17:16 2884 --a------ C:\Documents and Settings\HP_Propri‚taire\Application Data\wklnhst.dat
    2006-10-15 13:39 -------- d-------- C:\Program Files\WowCartographe
    2006-10-11 16:53 43520 --a------ C:\WINDOWS\system32\CmdLineExt03.dll
    2006-10-10 22:00 -------- d-------- C:\Program Files\Free Audio Pack
    2006-09-29 19:43 -------- d-------- C:\Documents and Settings\HP_Propri‚taire\Application Data\Talkback
    2006-09-29 19:42 -------- d-------- C:\Documents and Settings\HP_Propri‚taire\Application Data\Mozilla
    2006-09-24 11:02 -------- d-------- C:\Program Files\PhotoFiltre
    2006-09-23 21:34 -------- d-------- C:\Program Files\Windows Journal Viewer
    2006-09-23 21:34 -------- d-------- C:\Program Files\Fichiers communs\Microsoft Shared
    2006-09-23 20:31 -------- d-------- C:\Program Files\Porrasturvat - Stair Dismount
    2006-09-20 18:20 -------- d-------- C:\Program Files\Symantec
    2006-09-17 19:05 -------- d-------- C:\Program Files\MSN Messenger
    2006-09-16 21:16 -------- d-------- C:\Program Files\Guitar Pro 5
    2006-09-16 18:33 -------- d-------- C:\Program Files\Skype
    2006-09-16 16:03 98304 --a------ C:\WINDOWS\system32\CmdLineExt.dll
    2006-09-15 22:52 91904 --a------ C:\WINDOWS\system32\S32EVNT1.DLL
    2006-09-15 22:52 124016 --a------ C:\WINDOWS\system32\drivers\SYMEVENT.SYS
    2006-09-13 20:30 -------- d-------- C:\Program Files\Softnyx
    2006-09-13 07:03 1084416 --a------ C:\WINDOWS\system32\msxml3.dll
    2006-09-12 20:05 -------- d-------- C:\Documents and Settings\HP_Propri‚taire\Application Data\Google
    2006-09-12 19:02 -------- d-------- C:\Program Files\Google
    2006-08-30 17:36 -------- d-------- C:\Program Files\mIRC
    2006-08-25 17:51 617472 --a------ C:\WINDOWS\system32\comctl32.dll
    2006-08-21 14:26 16896 --a------ C:\WINDOWS\system32\fltlib.dll
    2006-08-21 11:14 23040 --a------ C:\WINDOWS\system32\fltmc.exe
    2006-08-16 13:59 100352 --a------ C:\WINDOWS\system32\6to4svc.dll
    2006-07-29 19:32 48936 --a------ C:\WINDOWS\system32\sirenacm.dll
    2006-07-27 15:26 679424 --a------ C:\WINDOWS\system32\inetcomm.dll

    (((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))

    *Note* empty entries are not shown

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
    "LogitechSoftwareUpdate"="\"C:\\Program Files\\Logitech\\Video\\ManifestEngine.exe\" boot"
    "MessengerPlus3"="\"C:\\Program Files\\MessengerPlus! 3\\MsgPlus.exe\" /WinStart"
    "MSMSGS"="\"C:\\Program Files\\Messenger\\msmsgs.exe\" /background"
    "swg"="\"C:\\Program Files\\Google\\GoogleToolbarNotifier\\1.0.720.3640\\GoogleToolbarNotifier.exe\""
    "Skype"="\"C:\\Program Files\\Skype\\Phone\\Skype.exe\" /nosplash /minimized"
    "Steam"="\"C:\\Valve\\Steam\\Steam.exe\" -silent"
    "SpybotSD TeaTimer"="C:\\Program Files\\Spybot - Search & Destroy\\TeaTimer.exe"

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
    "SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.5.0\\bin\\jusched.exe\""
    "hpsysdrv"="c:\\windows\\system\\hpsysdrv.exe"
    "NvCplDaemon"="\"RUNDLL32.EXE\" C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
    "nwiz"="\"nwiz.exe\" /installquiet /keeploaded /nodetect"
    "HPHUPD08"="\"c:\\Program Files\\HP\\Digital Imaging\\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\\hphupd08.exe\""
    "KBD"="C:\\HP\\KBD\\KBD.EXE"
    "Home Theater SchSvr"="\"C:\\Program Files\\Fichiers communs\\InterVideo\\SchSvr\\SchSvr.exe\""
    "WINREMOTE"="\"C:\\Program Files\\InterVideo\\Common\\Bin\\WinRemote.exe\""
    "iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\""
    "Recguard"="C:\\WINDOWS\\SMINST\\RECGUARD.EXE"
    "ccApp"="\"c:\\Program Files\\Fichiers communs\\Symantec Shared\\ccApp.exe\""
    "AlcxMonitor"="ALCXMNTR.EXE"
    "PS2"="C:\\WINDOWS\\system32\\ps2.exe"
    "LSBWatcher"="c:\\hp\\drivers\\hplsbwatcher\\lsburnwatcher.exe"
    "Reminder"="\"C:\\Windows\\Creator\\Remind_XP.exe\""
    "HP Software Update"="\"C:\\Program Files\\Hewlett-Packard\\HP Software Update\\HPWuSchd.exe\""
    "HPDJ Taskbar Utility"="C:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\hpztsb08.exe"
    "DeviceDiscovery"="\"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpotdd01.exe\""
    "WooCnxMon"="C:\\PROGRA~1\\Wanadoo\\CnxMon.exe"
    "SpeedTouch USB Diagnostics"="\"C:\\Program Files\\Thomson\\SpeedTouch USB\\Dragdiag.exe\" /icon"
    "WOOWATCH"="C:\\PROGRA~1\\Wanadoo\\Watch.exe"
    "Symantec NetDriver Monitor"="\"C:\\PROGRA~1\\SYMNET~1\\SNDMon.exe\" /Consumer"
    "LVCOMSX"="C:\\WINDOWS\\system32\\LVCOMSX.EXE"
    "LogitechVideoRepair"="\"C:\\Program Files\\Logitech\\Video\\ISStart.exe\" "
    "LogitechVideoTray"="\"C:\\Program Files\\Logitech\\Video\\LogiTray.exe\""
    "eBayToolbar"="\"C:\\Program Files\\eBay\\eBay Toolbar2\\eBayTBDaemon.exe\""
    "QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
    "TkBellExe"="\"C:\\Program Files\\Fichiers communs\\Real\\Update_OB\\realsched.exe\" -osboot"
    "mmexbli.dll"="\"C:\\WINDOWS\\system32\\rundll32.exe\" C:\\WINDOWS\\system32\\mmexbli.dll,eykednf"
    "!ewido"="\"C:\\Program Files\\ewido anti-spyware 4.0\\ewido.exe\" /minimized"
    "Ultimate Cleaner"="C:\\Program Files\\Ultimate Cleaner\\App.exe"

    [HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
    "DeskHtmlVersion"=dword:00000110
    "DeskHtmlMinorVersion"=dword:00000005
    "Settings"=dword:00000001
    "GeneralFlags"=dword:00000001

    [HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
    "Source"="About:Home"
    "SubscribedURL"="About:Home"
    "FriendlyName"="Ma page d'accueil"
    "Flags"=dword:00000002
    "Position"=hex:2c,00,00,00,00,01,00,00,00,00,00,00,00,04,00,00,e2,03,00,00,00,\
    00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
    "CurrentState"=hex:04,00,00,40
    "OriginalStateInfo"=hex:18,00,00,00,ff,ff,00,00,ff,ff,00,00,ff,ff,ff,ff,ff,ff,\
    ff,ff,04,00,00,00
    "RestoredStateInfo"=hex:18,00,00,00,6a,02,00,00,23,00,00,00,a4,00,00,00,9a,00,\
    00,00,01,00,00,00

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
    "{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Pré-chargeur Browseui"
    "{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Démon de cache des catégories de composant"

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
    "{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
    "{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="ewido anti-spyware 4.0"

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
    "NoDriveTypeAutoRun"=hex:95,00,00,00

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
    "dontdisplaylastusername"=dword:00000000
    "legalnoticecaption"=""
    "legalnoticetext"=""
    "shutdownwithoutlogon"=dword:00000001
    "undockwithoutlogon"=dword:00000001

    [HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
    "NoDriveTypeAutoRun"=dword:00000091

    [HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
    "NoDriveTypeAutoRun"=dword:00000091

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
    "PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
    "CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
    "WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
    "SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"

    HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\vtutr
    HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\wintfj32

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
    "SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"

    Contents of the 'Scheduled Tasks' folder
    C:\WINDOWS\tasks\Maintenance en 1 clic.job
    C:\WINDOWS\tasks\Spybot - Search & Destroy - Scheduled Task.job
    C:\WINDOWS\tasks\Symantec NetDetect.job

    Completion time: 06-10-25 20:54:12.50
    C:\ComboFix.txt ... 06-10-25 20:54
    0
  10. Utilisateur anonyme
     
    Salut,

    Clic sur démarrer, poste de travail, C:, program files et supprime ce dossier:

    WinAntiSpyware 2006 Scanner

    Clic sur démarrer, poste de travail, C:, program files, fichiers communs et supprime ce processus:

    Yazzle1122OinUninstaller.exe

    Clic sur démarrer, rechercher et supprime ce fichier:

    vtutr.dll

    Rends toi sur ce site et fais analyser des deux fichiers:
    Clique sur choisir, vas dans poste de travail, C:, windows, system32 les deux fichiers seront dans ce dossier, une fois que tu as trouvé le premier tu cliques sur "send" puis tu attends un peu, dès qu'il a finit d'analyser enregistre le rapport et colle le ici stp.
    Mais chose avec le second

    http://www.virustotal.com/en/virustotalx.html

    mmexbli.dll
    oasfev.dll

    A++
    0
  11. Quelqu'un de perdu
     
    STATUS: FINISHED
    Complete scanning result of "mmexbli.dll", received in VirusTotal at 10.26.2006, 17:17:53 (CET).

    Antivirus Version Update Result
    AntiVir 7.2.0.32 10.26.2006 TR/Vundo.Gen
    Authentium 4.93.8 10.26.2006 Possibly a new variant of W32/Bongler-based
    Avast 4.7.892.0 10.26.2006 no virus found
    AVG 386 10.26.2006 no virus found
    BitDefender 7.2 10.26.2006 no virus found
    CAT-QuickHeal 8.00 10.26.2006 no virus found
    ClamAV devel-20060426 10.26.2006 no virus found
    DrWeb 4.33 10.26.2006 no virus found
    eTrust-InoculateIT 23.73.37 10.26.2006 no virus found
    eTrust-Vet 30.3.3158 10.26.2006 no virus found
    Ewido 4.0 10.26.2006 no virus found
    Fortinet 2.82.0.0 10.26.2006 suspicious
    F-Prot 3.16f 10.26.2006 Possibly a new variant of W32/Bongler-based
    F-Prot4 4.2.1.29 10.26.2006 W32/Bongler-based
    Ikarus 0.2.65.0 10.26.2006 no virus found
    Kaspersky 4.0.2.24 10.26.2006 no virus found
    McAfee 4881 10.25.2006 no virus found
    Microsoft 1.1609 10.25.2006 no virus found
    NOD32v2 1.1836 10.26.2006 a variant of Win32/TrojanDownloader.Busky.AZ
    Norman 5.80.02 10.26.2006 no virus found
    Panda 9.0.0.4 10.26.2006 no virus found
    Sophos 4.10.0 10.26.2006 no virus found
    TheHacker 6.0.1.105 10.25.2006 no virus found
    UNA 1.83 10.25.2006 no virus found
    VBA32 3.11.1 10.26.2006 no virus found
    VirusBuster 4.3.15:9 10.26.2006 no virus found

    Aditional Information
    File size: 94208 bytes
    MD5: 6dc3fb2011975c71fc4b2aaaecd57f4a
    SHA1: ac7ef781838c4a1bf017274ac39905d4a96aaeff
    packers: embedded

    STATUS: FINISHED
    Complete scanning result of "oasfev.dll", received in VirusTotal at 10.26.2006, 17:21:11 (CET).

    Antivirus Version Update Result
    AntiVir 7.2.0.32 10.26.2006 TR/Vundo.Gen
    Authentium 4.93.8 10.26.2006 Possibly a new variant of W32/Bongler-based
    Avast 4.7.892.0 10.26.2006 no virus found
    AVG 386 10.26.2006 no virus found
    BitDefender 7.2 10.26.2006 no virus found
    CAT-QuickHeal 8.00 10.26.2006 no virus found
    ClamAV devel-20060426 10.26.2006 no virus found
    DrWeb 4.33 10.26.2006 no virus found
    eTrust-InoculateIT 23.73.37 10.26.2006 no virus found
    eTrust-Vet 30.3.3158 10.26.2006 no virus found
    Ewido 4.0 10.26.2006 no virus found
    Fortinet 2.82.0.0 10.26.2006 suspicious
    F-Prot 3.16f 10.26.2006 Possibly a new variant of W32/Bongler-based
    F-Prot4 4.2.1.29 10.26.2006 W32/Bongler-based
    Ikarus 0.2.65.0 10.26.2006 no virus found
    Kaspersky 4.0.2.24 10.26.2006 no virus found
    McAfee 4881 10.25.2006 no virus found
    Microsoft 1.1609 10.25.2006 no virus found
    NOD32v2 1.1836 10.26.2006 probably a variant of Win32/TrojanDownloader.Busky.AZ
    Norman 5.80.02 10.26.2006 no virus found
    Panda 9.0.0.4 10.26.2006 no virus found
    Sophos 4.10.0 10.26.2006 no virus found
    TheHacker 6.0.1.105 10.25.2006 no virus found
    UNA 1.83 10.25.2006 no virus found
    VBA32 3.11.1 10.26.2006 no virus found
    VirusBuster 4.3.15:9 10.26.2006 no virus found

    Aditional Information
    File size: 72704 bytes
    MD5: 7d38220c1c616ed52b1b07dba144b1eb
    SHA1: f23cc08e28f24fb9804058b1974e31464aa1af9e
    packers: embedded

    Par contre j'ai pas trouvé vtutr.dll ni Yazzle1122OinUninstaller.exe

    Merci d'avance
    0
  12. Utilisateur anonyme
     
    ok, merci,

    Supprime ces deux fichiers infectés:

    mmexbli.dll
    oasfev.dll

    **Si un fichier persiste lors de la suppression fais ceci:
    -Redemarres ton pc, dès l'allumage de celui-ci tapote la touche F8 (ou F5 si F8 ne fonctionne pas), à l'écran qui va apparaitre choisis "mode sans echec" attends un peu.. puis vas supprimer les fichiers/dossiers qui persistaient, vides ta corbeille et redemarres normalement

    Puis tu me dira ou en est ton problème ;-)
    0
  13. Quelqu'un de perdu
     
    Il a l'air d'etre partis, merci pour tout !
    0
  14. Utilisateur anonyme
     
    De rien ;-)

    hésite pas en cas de soucis

    A++
    0
  15. pimouss17 Messages postés 1 Statut Membre
     
    quelqu'un pourrait m'aider je suis infecté par virus trojan generic2.eze ...

    De plus ma page d'acceuil c'est un page security center !

    SVP aidez moi j'en peux plus !
    0
  16. Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 349
     
    Bonjour Pimousse ,

    Il serait préférable que tu fasses ton message personnel, cela rendra les postes plus compréhensibles et la réponse à ton problème sera plus efficace
    Procèdes comme ceci :
    http://pageperso.aol.fr/balltrap34/demofairesontmessage.htm

    A bientôt
    0