Infection suite intallation PCDJ!!!

bonsoir,je suis ennuyé par 9 virus telecharger en essayant d'installer un logiciel qui se nomme PCDJ,logiciel DJ et de mixage audio,mon anti virus(bittdefender9) trouve donc 9 virus apparement innofencif,ce sont principallement des fichiers . EXE,il me signale que le pc n'est pas infecté,pourtant ces fichiers ne sont ni deplacable,effacable,impossible a supprimer,j'ai egalement essayé avec avast et asquarred,impossible d'y toucher,j'ai meme verifier qu'il n'etait pas en lecture seul,rien n'y fait.
mon pc fonctionne visiblement norallement,mais j'aimerais bien quand meme virer tout ca...
si vous avez rencontrer le meme probleme merci pour votre aide, en attendant je vous souhaite un bonne soirée,bye....

9 réponses

  1. Contributeur sécurité
    Bonsoir,

    Copie/colle le rapport de bitdefender dans ta réponse.

    @+
    0
    1. hello,deja au boulot....
      voici le rapport bitdeffender...
      //-----------------------------------------------------------------
      //
      // Product: BitDefender 9 Professional Plus
      // Version: 9.5
      //
      // Créé le: 13/11/2006 03:59:01
      //
      //-----------------------------------------------------------------

      Statistiques

      Chemin cible: C:\Documents and Settings\thierry\Bureau\super prout
      Dossiers : 2
      Fichiers : 112
      Archives : 6
      Fichiers empaquetés : 2
      Virus trouvés : 9
      Fichiers infectés : 10
      Alertes : 0
      Fichiers suspects : 0
      Fichiers désinfectés : 0
      Fichiers effacés : 0
      Fichiers copiés : 0
      Fichiers déplacés : 0
      Fichiers renommés : 0
      Erreurs I/O : 0
      Temps d'analyse := 00:00:05
      Fichiers/seconde :22

      Définitions virus : 340349
      Plugins d'analyse : 15
      Plugins archives : 41
      Plug-ins décompression : 6
      Plug-ins messagerie : 6
      Plug-ins système : 5

      Options d'analyse

      Détection
      [ ] Analyser le secteur de boot
      [X] Analyser les archives
      [X] Analyser les fichiers en paquets
      [X] Analyser la messagerie

      Masque fichiers
      [ ] Programmes
      [X] Tous les fichiers
      [ ] Extensions définies par l'utilisateur:
      [ ] Exclure les extensions: ;

      Action

      Objets infectés
      [ ] Ignorer
      [X] Désinfecter
      [ ] Effacer
      [ ] Copier
      [ ] Déplacer dans le dossier infectés
      [ ] Renommer
      [ ] Demander l'action

      Seconde action
      [ ] Ignorer
      [ ] Effacer
      [ ] Copier
      [X] Déplacer dans le dossier infectés
      [ ] Renommer
      [ ] Demander l'action

      Options d'analyse
      [X] Activer les alertes
      [X] Activer l'heuristique
      [X] Afficher tous les fichiers dans le journal
      [X] Fichier journal : C:\Program Files\Softwin\BitDefender9\Logs\vscan_1163386741.log

      Sommaire :

      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whInstaller.exe Détecté: Adware.Webhancer.16
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whInstaller.exe Désinfection impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>regwebh.dll Détecté: Application.Webhancer.AA
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>regwebh.dll Désinfection impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>wbhshare.dll Détecté: Application.Webhancer.G
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>wbhshare.dll Désinfection impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>webhdll.dll Détecté: Adware.Webhancer.16
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whiedc.dll Détecté: Application.Webhancer.AG
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whiedc.dll Désinfection impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whiehlpr.dll Détecté: Application.Webhancer.A
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whieshm.dll Détecté: Application.Webhancer.C
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whieshm.dll Désinfection impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whAgent.exe Détecté: Application.Webhancer.D
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whAgent.exe Désinfection impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0035 Détecté: Adware.Timesink.D
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0035 Désinfection impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0035 Déplacement impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0037 Détecté: Adware.Timesink.A
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0037 Désinfection impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0037 Déplacement impossible

      Fichiers analysés

      C:\Documents and Settings\thierry\Bureau\super prout\120955695942722391e8f40.gif OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\Nouveau Document texte.txt OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0001 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0002 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0003 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0004 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0005 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0006 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0007 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0008 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0009 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0010 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0011 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0012 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0013 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0014 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0015 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0016 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0017 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0018 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0019 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0020 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0021 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0022 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0022=>wise0001 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0022=>wise0002 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0022=>wise0003 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0022=>wise0004 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0022=>wise0005 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0022=>wise0006 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0023 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0024 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s) OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whInstaller.ini OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whInstaller.exe Détecté: Adware.Webhancer.16
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whInstaller.exe Désinfection impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>atlansi.dll OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>atlunicode.dll OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>regwebh.dll Détecté: Application.Webhancer.AA
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>regwebh.dll Désinfection impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>SPORDER.DLL OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>wbhshare.dll Détecté: Application.Webhancer.G
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>wbhshare.dll Désinfection impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>webhdll.dll Détecté: Adware.Webhancer.16
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whiedc.dll Détecté: Application.Webhancer.AG
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whiedc.dll Désinfection impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whiehlpr.dll Détecté: Application.Webhancer.A
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whieshm.dll Détecté: Application.Webhancer.C
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whieshm.dll Désinfection impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whiehlpr.ini OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whAgent.exe Détecté: Application.Webhancer.D
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whAgent.exe Désinfection impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whAgent.inf OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>license.txt OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whAgent.ini OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0026 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o) OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>PagooInstall.exe OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>PagooUninstall.exe OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/blue americana.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/blue imac.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/blue outdoor.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/blue pastel.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/blue primary.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/brown outdoor.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/fish pagoo.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/green imac.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/green outdoor.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/green pastel.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/green primary.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/grey pastel.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/orange imac.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/orange primary.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/pagoo blue.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/pink dog pagoo.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/pink pastels.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/purple imac.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/purple pastel.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/purple primary.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/red americana.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/red outdoor.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/red primary.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/red.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/teddy bear pagoo.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/tooth pagoo.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/yellow outdoor.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/yellow pastel.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/yellow primary.bmp OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>Pagoo.exe OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0028 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0029 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0030 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0031 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0032 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0001 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0002 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0003 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0004 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0005 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0006 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0007 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0008 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0009 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0010 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0011 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0012 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0013 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0034 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0035 Détecté: Adware.Timesink.D
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0035 Désinfection impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0035 Déplacement impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0036 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0036=>(Embedded EXE o) OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0037 Détecté: Adware.Timesink.A
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0037 Désinfection impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0037 Déplacement impossible
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0038 OK
      C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0039 OK

      voici,que du bonheur!!!!
      si ca vous parle c'est cool!!!!!
      en attendant ca n'a pas beaucoup l'air d'etre bien violent tout ca...
      a plus et merci....
      titi.
      0
      1. Contributeur sécurité
        Bonjour,

        1) Pour voir l'ampleur des dégats :

        Télécharge HijackThis ici:
        https://www.01net.com/telecharger/windows/Securite/anti-spyware/fiches/29061.html

        Dézippe le dans un dossier prévu à cet effet.
        Par exemple C:\hijackthis < Enregistre le bien dans c : !
        Démo : (Merci a Balltrap34 pour cette réalisation)
        http://pageperso.aol.fr/balltrap34/Hijenr.gif

        Lance le puis:
        clique sur "do a system scan and save logfile" (cf démo)
        faire un copier coller du log entier sur le forum

        Démo : (Merci a Balltrap34 pour cette réalisation)
        http://pageperso.aol.fr/balltrap34/demohijack.htm

        2) Pour commencer à réparer :

        Tu télécharges Spybot. Tu le trouves dans la liste des téléchargements en haut de cette pagf, à gauche, sous FORUM.

        Tu as un tuto de démonstation là :
        http://pageperso.aol.fr/Balltrap34/demo%20spybot.htm

        Tu le mets à jour, tu le lances, tu vires tout ce qu'il trouve.

        @+
        0
        1. merci pour le conseil,mais desolé j'ai essayé tout ca,et quequete!!!
          rien ne marche,je dirais meme que spybot ne detecte rien,meme apres toutes les mises a jour dispo,ce qui me fait penser que bittdefender est peu etre un peu farfelu...
          d'autant que visiblement mon pc tourne normalement!!!
          je vais tenter une restauration du systeme,si ca ne fonctionne pas je vais rester avec j'usqu'a la prochaine reinstallation complete de xp...
          en tout cas merci du conseil et peu etre a plus tard,bye,bye...
          0
          1. Contributeur sécurité
            Bonjour,

            On peut t'aider à éradiquer tout ça. Je ne sais pas si ton infection est limitée à Webhancer. j'ai pris le premier que j'ai vu.

            Mais ça passe par ce que j'ai écrit au post 3 (sauf Spybot si tu as déjà fait).
            @+
            0
            1. Logfile of HijackThis v1.99.1
              Scan saved at 21:33:24, on 15/11/2006
              Platform: Windows XP SP2 (WinNT 5.01.2600)
              MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

              Running processes:
              C:\WINDOWS\System32\smss.exe
              C:\WINDOWS\system32\winlogon.exe
              C:\WINDOWS\system32\services.exe
              C:\WINDOWS\system32\lsass.exe
              C:\WINDOWS\System32\Ati2evxx.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\System32\svchost.exe
              C:\WINDOWS\system32\spoolsv.exe
              C:\WINDOWS\System32\gearsec.exe
              C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
              C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
              C:\WINDOWS\system32\Ati2evxx.exe
              C:\WINDOWS\Explorer.EXE
              C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
              C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
              C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
              C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe
              C:\progra~1\softwin\bitdef~1\bdswitch.exe
              C:\Program Files\Softwin\BitDefender9\bdoesrv.exe
              C:\progra~1\softwin\bitdef~1\bdnagent.exe
              C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
              C:\Program Files\Apoint2K\Apoint.exe
              C:\WINDOWS\AGRSMMSG.exe
              C:\WINDOWS\system32\ctfmon.exe
              C:\Program Files\Apoint2K\Apntex.exe
              C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
              C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
              C:\Program Files\Softwin\BitDefender9\vsserv.exe
              c:\progra~1\softwin\bitdef~1\bdmcon.exe
              C:\Program Files\Wanadoo\EspaceWanadoo.exe
              C:\Program Files\Wanadoo\ComComp.exe
              C:\Program Files\Wanadoo\Watch.exe
              C:\Program Files\Mozilla Firefox 2 Beta 1\firefox.exe
              C:\Program Files\WinRAR\WinRAR.exe
              C:\DOCUME~1\thierry\LOCALS~1\Temp\Rar$EX13.172\HijackThis.exe

              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.orange.fr/portail
              R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
              R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=488
              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
              R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
              R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
              O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
              O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
              O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
              O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
              O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\Wanadoo\CnxMon.exe
              O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Fichiers communs\Sonic\Update Manager\sgtray.exe" /r
              O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
              O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
              O4 - HKLM\..\Run: [eabconfg.cpl] C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe /Start
              O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
              O4 - HKLM\..\Run: [BDSwitchAgent] "c:\progra~1\softwin\bitdef~1\bdswitch.exe"
              O4 - HKLM\..\Run: [BDOESRV] "C:\Program Files\Softwin\BitDefender9\bdoesrv.exe"
              O4 - HKLM\..\Run: [BDNewsAgent] "c:\progra~1\softwin\bitdef~1\bdnagent.exe"
              O4 - HKLM\..\Run: [BDMCon] C:\PROGRA~1\Softwin\BITDEF~1\bdmcon.exe
              O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
              O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
              O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
              O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
              O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
              O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
              O8 - Extra context menu item: Compare Prices with &Dealio - C:\Program Files\Dealio\res\DealioSearch.html
              O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
              O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
              O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
              O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
              O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
              O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
              O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
              O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
              O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
              O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
              O16 - DPF: {A18962F6-E6ED-40B1-97C9-1FB36F38BFA8} (Aurigma Image Uploader 3.5 Control) - http://www.leaderphoto.com/uploaders/ImageUploader3.cab
              O17 - HKLM\System\CCS\Services\Tcpip\..\{9C6EB1D3-10E9-48B4-A4BA-57FE2C87497C}: NameServer = 80.10.246.130 80.10.246.3
              O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
              O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
              O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe" /service (file missing)
              O23 - Service: Service de sécurité matérielle (GEARSecurity) - GEAR Software - C:\WINDOWS\System32\gearsec.exe
              O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
              O23 - Service: BitDefender Desktop Update Service (LIVESRV) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe" /service (file missing)
              O23 - Service: LiveUpdate - Unknown owner - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE (file missing)
              O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
              O23 - Service: BitDefender Virus Shield (VSSERV) - Unknown owner - C:\Program Files\Softwin\BitDefender9\vsserv.exe" /service (file missing)
              O23 - Service: BitDefender Communicator (XCOMM) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe" /service (file missing)

              voila ca c'est avec hijackthis.....
              est ce que ca donne quelques chose de plus que bittdefender????
              merci a plus...
              0
              1. Contributeur sécurité
                Bonsoir,

                Tu sembles ne pas avoir de parefeu. Installe celui-ci pour être protégé

                Kerio: (pare-feu, qui reste gratuit après la periode d'essai!)
                Kerio Personal Firewall
                -tutorial: pour configurer et comprendre l'utilisation de Kerio
                https://kerio.probb.fr/

                Pour qu'on puisse avancer, déplace HijackThis.exe comme indiqué au post 3 :
                Dézippe le dans un dossier prévu à cet effet.
                Par exemple C:\hijackthis < Enregistre le bien dans c :


                Ce n'est pas par manie. On va 'fixer' des lignes. HijackThis prend une sauvegarde. Celel-ci peut être supprimmée par un nettoyage si tu es dans une arborescence de type temp.

                Tu le déplaces et tu renvoies un log stp.

                Est ce que tu utilises encore les services de leaderphoto par Internet ?

                @+
                0