Infection suite intallation PCDJ!!!

titirouen Messages postés 6 Statut Membre -  
Lyonnais92 Messages postés 25708 Statut Contributeur sécurité -
bonsoir,je suis ennuyé par 9 virus telecharger en essayant d'installer un logiciel qui se nomme PCDJ,logiciel DJ et de mixage audio,mon anti virus(bittdefender9) trouve donc 9 virus apparement innofencif,ce sont principallement des fichiers . EXE,il me signale que le pc n'est pas infecté,pourtant ces fichiers ne sont ni deplacable,effacable,impossible a supprimer,j'ai egalement essayé avec avast et asquarred,impossible d'y toucher,j'ai meme verifier qu'il n'etait pas en lecture seul,rien n'y fait.
mon pc fonctionne visiblement norallement,mais j'aimerais bien quand meme virer tout ca...
si vous avez rencontrer le meme probleme merci pour votre aide, en attendant je vous souhaite un bonne soirée,bye....
A voir également:

9 réponses

Lyonnais92 Messages postés 25708 Statut Contributeur sécurité 1 537
 
Bonsoir,

Copie/colle le rapport de bitdefender dans ta réponse.

@+
0
titirouen Messages postés 6 Statut Membre
 
hello,deja au boulot....
voici le rapport bitdeffender...
//-----------------------------------------------------------------
//
// Product: BitDefender 9 Professional Plus
// Version: 9.5
//
// Créé le: 13/11/2006 03:59:01
//
//-----------------------------------------------------------------

Statistiques

Chemin cible: C:\Documents and Settings\thierry\Bureau\super prout
Dossiers : 2
Fichiers : 112
Archives : 6
Fichiers empaquetés : 2
Virus trouvés : 9
Fichiers infectés : 10
Alertes : 0
Fichiers suspects : 0
Fichiers désinfectés : 0
Fichiers effacés : 0
Fichiers copiés : 0
Fichiers déplacés : 0
Fichiers renommés : 0
Erreurs I/O : 0
Temps d'analyse := 00:00:05
Fichiers/seconde :22

Définitions virus : 340349
Plugins d'analyse : 15
Plugins archives : 41
Plug-ins décompression : 6
Plug-ins messagerie : 6
Plug-ins système : 5

Options d'analyse

Détection
[ ] Analyser le secteur de boot
[X] Analyser les archives
[X] Analyser les fichiers en paquets
[X] Analyser la messagerie

Masque fichiers
[ ] Programmes
[X] Tous les fichiers
[ ] Extensions définies par l'utilisateur:
[ ] Exclure les extensions: ;

Action

Objets infectés
[ ] Ignorer
[X] Désinfecter
[ ] Effacer
[ ] Copier
[ ] Déplacer dans le dossier infectés
[ ] Renommer
[ ] Demander l'action

Seconde action
[ ] Ignorer
[ ] Effacer
[ ] Copier
[X] Déplacer dans le dossier infectés
[ ] Renommer
[ ] Demander l'action

Options d'analyse
[X] Activer les alertes
[X] Activer l'heuristique
[X] Afficher tous les fichiers dans le journal
[X] Fichier journal : C:\Program Files\Softwin\BitDefender9\Logs\vscan_1163386741.log

Sommaire :

C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whInstaller.exe Détecté: Adware.Webhancer.16
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whInstaller.exe Désinfection impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>regwebh.dll Détecté: Application.Webhancer.AA
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>regwebh.dll Désinfection impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>wbhshare.dll Détecté: Application.Webhancer.G
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>wbhshare.dll Désinfection impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>webhdll.dll Détecté: Adware.Webhancer.16
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whiedc.dll Détecté: Application.Webhancer.AG
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whiedc.dll Désinfection impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whiehlpr.dll Détecté: Application.Webhancer.A
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whieshm.dll Détecté: Application.Webhancer.C
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whieshm.dll Désinfection impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whAgent.exe Détecté: Application.Webhancer.D
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whAgent.exe Désinfection impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0035 Détecté: Adware.Timesink.D
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0035 Désinfection impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0035 Déplacement impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0037 Détecté: Adware.Timesink.A
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0037 Désinfection impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0037 Déplacement impossible

Fichiers analysés

C:\Documents and Settings\thierry\Bureau\super prout\120955695942722391e8f40.gif OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\Nouveau Document texte.txt OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0001 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0002 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0003 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0004 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0005 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0006 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0007 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0008 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0009 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0010 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0011 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0012 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0013 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0014 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0015 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0016 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0017 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0018 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0019 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0020 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0021 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0022 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0022=>wise0001 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0022=>wise0002 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0022=>wise0003 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0022=>wise0004 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0022=>wise0005 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0022=>wise0006 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0023 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0024 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s) OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whInstaller.ini OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whInstaller.exe Détecté: Adware.Webhancer.16
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whInstaller.exe Désinfection impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>atlansi.dll OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>atlunicode.dll OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>regwebh.dll Détecté: Application.Webhancer.AA
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>regwebh.dll Désinfection impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>SPORDER.DLL OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>wbhshare.dll Détecté: Application.Webhancer.G
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>wbhshare.dll Désinfection impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>webhdll.dll Détecté: Adware.Webhancer.16
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whiedc.dll Détecté: Application.Webhancer.AG
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whiedc.dll Désinfection impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whiehlpr.dll Détecté: Application.Webhancer.A
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whieshm.dll Détecté: Application.Webhancer.C
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whieshm.dll Désinfection impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whiehlpr.ini OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whAgent.exe Détecté: Application.Webhancer.D
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whAgent.exe Désinfection impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whAgent.inf OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>license.txt OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0025=>(ZIP Sfx s)=>whAgent.ini OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0026 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o) OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>PagooInstall.exe OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>PagooUninstall.exe OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/blue americana.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/blue imac.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/blue outdoor.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/blue pastel.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/blue primary.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/brown outdoor.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/fish pagoo.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/green imac.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/green outdoor.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/green pastel.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/green primary.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/grey pastel.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/orange imac.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/orange primary.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/pagoo blue.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/pink dog pagoo.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/pink pastels.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/purple imac.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/purple pastel.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/purple primary.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/red americana.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/red outdoor.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/red primary.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/red.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/teddy bear pagoo.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/tooth pagoo.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/yellow outdoor.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/yellow pastel.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>skins/yellow primary.bmp OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0027=>(ZIP Sfx o)=>Pagoo.exe OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0028 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0029 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0030 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0031 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0032 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0001 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0002 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0003 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0004 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0005 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0006 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0007 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0008 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0009 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0010 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0011 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0012 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0033=>wise0013 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0034 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0035 Détecté: Adware.Timesink.D
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0035 Désinfection impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0035 Déplacement impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0036 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0036=>(Embedded EXE o) OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0037 Détecté: Adware.Timesink.A
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0037 Désinfection impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0037 Déplacement impossible
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0038 OK
C:\Documents and Settings\thierry\Bureau\super prout\Nouveau dossier\PCDJ_Free_Silver_Player_4.0.exe.part=>wise0039 OK

voici,que du bonheur!!!!
si ca vous parle c'est cool!!!!!
en attendant ca n'a pas beaucoup l'air d'etre bien violent tout ca...
a plus et merci....
titi.
0
Lyonnais92 Messages postés 25708 Statut Contributeur sécurité 1 537
 
Bonjour,

1) Pour voir l'ampleur des dégats :

Télécharge HijackThis ici:
https://www.01net.com/telecharger/windows/Securite/anti-spyware/fiches/29061.html

Dézippe le dans un dossier prévu à cet effet.
Par exemple C:\hijackthis < Enregistre le bien dans c : !
Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/Hijenr.gif

Lance le puis:
clique sur "do a system scan and save logfile" (cf démo)
faire un copier coller du log entier sur le forum

Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/demohijack.htm

2) Pour commencer à réparer :

Tu télécharges Spybot. Tu le trouves dans la liste des téléchargements en haut de cette pagf, à gauche, sous FORUM.

Tu as un tuto de démonstation là :
http://pageperso.aol.fr/Balltrap34/demo%20spybot.htm

Tu le mets à jour, tu le lances, tu vires tout ce qu'il trouve.

@+
0
titirouen Messages postés 6 Statut Membre
 
merci pour le conseil,mais desolé j'ai essayé tout ca,et quequete!!!
rien ne marche,je dirais meme que spybot ne detecte rien,meme apres toutes les mises a jour dispo,ce qui me fait penser que bittdefender est peu etre un peu farfelu...
d'autant que visiblement mon pc tourne normalement!!!
je vais tenter une restauration du systeme,si ca ne fonctionne pas je vais rester avec j'usqu'a la prochaine reinstallation complete de xp...
en tout cas merci du conseil et peu etre a plus tard,bye,bye...
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Lyonnais92 Messages postés 25708 Statut Contributeur sécurité 1 537
 
RE,

Sur WebHancer :
http://www.sunbeltsecurity.com/ThreatDisplay.aspx?tid=14127&cs=49BF5CE2296704B63C108A0000943AB9
http://www.sophos.com/security/analyses/webhancer.html

Bonne chance.
0
titirouen Messages postés 6 Statut Membre
 
merci,@+
0
Lyonnais92 Messages postés 25708 Statut Contributeur sécurité 1 537
 
Bonjour,

On peut t'aider à éradiquer tout ça. Je ne sais pas si ton infection est limitée à Webhancer. j'ai pris le premier que j'ai vu.

Mais ça passe par ce que j'ai écrit au post 3 (sauf Spybot si tu as déjà fait).
@+
0
titirouen Messages postés 6 Statut Membre
 
Logfile of HijackThis v1.99.1
Scan saved at 21:33:24, on 15/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\gearsec.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe
C:\progra~1\softwin\bitdef~1\bdswitch.exe
C:\Program Files\Softwin\BitDefender9\bdoesrv.exe
C:\progra~1\softwin\bitdef~1\bdnagent.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
C:\Program Files\Softwin\BitDefender9\vsserv.exe
c:\progra~1\softwin\bitdef~1\bdmcon.exe
C:\Program Files\Wanadoo\EspaceWanadoo.exe
C:\Program Files\Wanadoo\ComComp.exe
C:\Program Files\Wanadoo\Watch.exe
C:\Program Files\Mozilla Firefox 2 Beta 1\firefox.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\thierry\LOCALS~1\Temp\Rar$EX13.172\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.orange.fr/portail
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=488
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\Wanadoo\CnxMon.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Fichiers communs\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [eabconfg.cpl] C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe /Start
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [BDSwitchAgent] "c:\progra~1\softwin\bitdef~1\bdswitch.exe"
O4 - HKLM\..\Run: [BDOESRV] "C:\Program Files\Softwin\BitDefender9\bdoesrv.exe"
O4 - HKLM\..\Run: [BDNewsAgent] "c:\progra~1\softwin\bitdef~1\bdnagent.exe"
O4 - HKLM\..\Run: [BDMCon] C:\PROGRA~1\Softwin\BITDEF~1\bdmcon.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: Compare Prices with &Dealio - C:\Program Files\Dealio\res\DealioSearch.html
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {A18962F6-E6ED-40B1-97C9-1FB36F38BFA8} (Aurigma Image Uploader 3.5 Control) - http://www.leaderphoto.com/uploaders/ImageUploader3.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{9C6EB1D3-10E9-48B4-A4BA-57FE2C87497C}: NameServer = 80.10.246.130 80.10.246.3
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe" /service (file missing)
O23 - Service: Service de sécurité matérielle (GEARSecurity) - GEAR Software - C:\WINDOWS\System32\gearsec.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe" /service (file missing)
O23 - Service: LiveUpdate - Unknown owner - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE (file missing)
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - Unknown owner - C:\Program Files\Softwin\BitDefender9\vsserv.exe" /service (file missing)
O23 - Service: BitDefender Communicator (XCOMM) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe" /service (file missing)

voila ca c'est avec hijackthis.....
est ce que ca donne quelques chose de plus que bittdefender????
merci a plus...
0
Lyonnais92 Messages postés 25708 Statut Contributeur sécurité 1 537
 
Bonsoir,

Tu sembles ne pas avoir de parefeu. Installe celui-ci pour être protégé

Kerio: (pare-feu, qui reste gratuit après la periode d'essai!)
Kerio Personal Firewall
-tutorial: pour configurer et comprendre l'utilisation de Kerio
https://kerio.probb.fr/

Pour qu'on puisse avancer, déplace HijackThis.exe comme indiqué au post 3 :
Dézippe le dans un dossier prévu à cet effet.
Par exemple C:\hijackthis < Enregistre le bien dans c :


Ce n'est pas par manie. On va 'fixer' des lignes. HijackThis prend une sauvegarde. Celel-ci peut être supprimmée par un nettoyage si tu es dans une arborescence de type temp.

Tu le déplaces et tu renvoies un log stp.

Est ce que tu utilises encore les services de leaderphoto par Internet ?

@+
0