Voici mes rapports!! hijackthis etc que faire
lomomo
Messages postés
7
Statut
Membre
-
salwa -
salwa -
Logfile of HijackThis v1.99.1
Scan saved at 17:46:00, on 22/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
c:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
c:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
c:\Program Files\Norton Internet Security\ISSVC.exe
c:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
c:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
c:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\WINDOWS\System32\FTRTSVC.exe
c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Wireless Console 2\wcourier.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe
C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\WINDOWS\sm56hlpr.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\PROGRA~1\WANADOO\TaskBarIcon.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\WANADOO\GestionnaireInternet.exe
C:\PROGRA~1\WANADOO\ComComp.exe
C:\PROGRA~1\WANADOO\Toaster.exe
C:\PROGRA~1\WANADOO\Inactivity.exe
C:\PROGRA~1\WANADOO\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\ASUS\Asus ChkMail\ChkMail.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng1.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.exe
C:\PROGRA~1\WANADOO\Watch.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.BIN
C:\WINDOWS\System32\svchost.exe
C:\Program Files\iTunes\iTunes.exe
C:\Program Files\Internet Explorer\iexplore.exe
c:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NSMdtr.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\DOCUME~1\vincent\LOCALS~1\Temp\Rar$EX03.500\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.asus.com/fr/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\WANADOO\SEARCH~1.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Norton Internet Security - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - c:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - c:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [URLLSTCK.exe] c:\Program Files\Norton Internet Security\UrlLstCk.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Wireless Console 2] C:\Program Files\Wireless Console 2\wcourier.exe
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [EOUApp] "C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe"
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [ASUS Live Update] C:\Program Files\ASUS\ASUS Live Update\ALU.exe
O4 - HKLM\..\Run: [ABLKSR] C:\WINDOWS\ABLKSR\ABLKSR.exe
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\WANADOO\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\WANADOO\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\WANADOO\Shell.exe appLaunchClientZone.shl|PARAM= cnx
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
O4 - Global Startup: ASUS ChkMail.lnk = C:\Program Files\ASUS\Asus ChkMail\ChkMail.exe
O4 - Global Startup: Bluetooth Manager.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://www.asus.com/fr/
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: C-DillaCdaC11BA - C-Dilla Ltd - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - c:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SAVScan - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
---------------------------------------------------------
AVG Anti-Spyware - Rapport d'analyse
---------------------------------------------------------
+ Créé à: 16:39:14 22/11/2006
+ Résultat de l'analyse:
C:\Documents and Settings\vincent\Cookies\vincent@112.2o7[2].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@microsoftwlmessengermkt.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@nike.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@opodo.122.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@www.burstnet[1].txt -> TrackingCookie.Burstnet : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@com[1].txt -> TrackingCookie.Com : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@estat[1].txt -> TrackingCookie.Estat : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@tacoda[1].txt -> TrackingCookie.Tacoda : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@weborama[2].txt -> TrackingCookie.Weborama : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
Fin du rapport
BitDefender Online Scanner
Scan report generated at: Wed, Nov 22, 2006 - 17:33:56
Scan path: C:\;D:\;E:\;
Statistics
Time
00:29:45
Files
328664
Folders
4560
Boot Sectors
4
Archives
7500
Packed Files
18238
Results
Identified Viruses
2
Infected Files
9
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
15
Engines Info
Virus Definitions
317610
Engine build
AVCORE v1.0 (build 2368) (i386) (Nov 16 2006 11:31:19)
Scan plugins
13
Archive plugins
38
Unpack plugins
6
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\449010AE.tmp=>(Quarantine-2)
Infected with: Win32.Netsky.P@mm
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\449010AE.tmp=>(Quarantine-2)
Deleted
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\44C85A71.tmp=>(Quarantine-2)
Infected with: Win32.Netsky.P@mm
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\44C85A71.tmp=>(Quarantine-2)
Deleted
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\44DF0057.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Fri, 7 Jul 2006 18:01:24 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\44DF0057.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Fri, 7 Jul 2006 18:01:24 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\44DF0057.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Fri, 7 Jul 2006 18:01:24 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\44DF0057.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Fri, 7 Jul 2006 18:01:24 +0200]=>(MIME part)=>(MIME part)
Updated
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\44DF0057.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Fri, 7 Jul 2006 18:01:24 +0200]=>(MIME part)
Updated
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\44DF0057.tmp=>(Quarantine-2)
Updated
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\44DF0057.tmp
Update failed
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\45164A1A.tmp=>(Quarantine-2)
Infected with: Win32.Netsky.P@mm
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\45164A1A.tmp=>(Quarantine-2)
Deleted
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\451D1E13.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Sat, 8 Jul 2006 12:33:13 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\451D1E13.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Sat, 8 Jul 2006 12:33:13 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\451D1E13.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Sat, 8 Jul 2006 12:33:13 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\451D1E13.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Sat, 8 Jul 2006 12:33:13 +0200]=>(MIME part)=>(MIME part)
Updated
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\451D1E13.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Sat, 8 Jul 2006 12:33:13 +0200]=>(MIME part)
Updated
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\451D1E13.tmp=>(Quarantine-2)
Updated
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\451D1E13.tmp
Update failed
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\4523720C.tmp=>(Quarantine-2)
Infected with: Win32.Netsky.P@mm
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\4523720C.tmp=>(Quarantine-2)
Deleted
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\46086D10.tmp=>(Quarantine-2)
Infected with: Win32.Netsky.P@mm
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\46086D10.tmp=>(Quarantine-2)
Deleted
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\46223CF4.tmp=>(Quarantine-2)
Infected with: Win32.Netsky.P@mm
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\46223CF4.tmp=>(Quarantine-2)
Deleted
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\462910ED.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Wed, 12 Jul 2006 17:01:35 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\462910ED.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Wed, 12 Jul 2006 17:01:35 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\462910ED.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Wed, 12 Jul 2006 17:01:35 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\462910ED.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Wed, 12 Jul 2006 17:01:35 +0200]=>(MIME part)=>(MIME part)
Updated
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\462910ED.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Wed, 12 Jul 2006 17:01:35 +0200]=>(MIME part)
Updated
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\462910ED.tmp=>(Quarantine-2)
Updated
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\462910ED.tmp
Update failed
mon pc est infecté je pense car depuis quelques temps il met du temps a s'éteindre, je ne peux plusq recevoir mes mails outlook express! itunes ne s'ouvre plus bref que faire????
Scan saved at 17:46:00, on 22/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
c:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
c:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
c:\Program Files\Norton Internet Security\ISSVC.exe
c:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
c:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
c:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\WINDOWS\System32\FTRTSVC.exe
c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Wireless Console 2\wcourier.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe
C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\WINDOWS\sm56hlpr.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\PROGRA~1\WANADOO\TaskBarIcon.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\WANADOO\GestionnaireInternet.exe
C:\PROGRA~1\WANADOO\ComComp.exe
C:\PROGRA~1\WANADOO\Toaster.exe
C:\PROGRA~1\WANADOO\Inactivity.exe
C:\PROGRA~1\WANADOO\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\ASUS\Asus ChkMail\ChkMail.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng1.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.exe
C:\PROGRA~1\WANADOO\Watch.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.BIN
C:\WINDOWS\System32\svchost.exe
C:\Program Files\iTunes\iTunes.exe
C:\Program Files\Internet Explorer\iexplore.exe
c:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NSMdtr.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\DOCUME~1\vincent\LOCALS~1\Temp\Rar$EX03.500\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.asus.com/fr/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\WANADOO\SEARCH~1.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Norton Internet Security - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - c:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - c:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [URLLSTCK.exe] c:\Program Files\Norton Internet Security\UrlLstCk.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Wireless Console 2] C:\Program Files\Wireless Console 2\wcourier.exe
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [EOUApp] "C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe"
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [ASUS Live Update] C:\Program Files\ASUS\ASUS Live Update\ALU.exe
O4 - HKLM\..\Run: [ABLKSR] C:\WINDOWS\ABLKSR\ABLKSR.exe
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\WANADOO\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\WANADOO\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\WANADOO\Shell.exe appLaunchClientZone.shl|PARAM= cnx
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
O4 - Global Startup: ASUS ChkMail.lnk = C:\Program Files\ASUS\Asus ChkMail\ChkMail.exe
O4 - Global Startup: Bluetooth Manager.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://www.asus.com/fr/
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: C-DillaCdaC11BA - C-Dilla Ltd - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - c:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SAVScan - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
---------------------------------------------------------
AVG Anti-Spyware - Rapport d'analyse
---------------------------------------------------------
+ Créé à: 16:39:14 22/11/2006
+ Résultat de l'analyse:
C:\Documents and Settings\vincent\Cookies\vincent@112.2o7[2].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@microsoftwlmessengermkt.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@nike.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@opodo.122.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@www.burstnet[1].txt -> TrackingCookie.Burstnet : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@com[1].txt -> TrackingCookie.Com : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@estat[1].txt -> TrackingCookie.Estat : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@tacoda[1].txt -> TrackingCookie.Tacoda : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@weborama[2].txt -> TrackingCookie.Weborama : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
C:\Documents and Settings\vincent\Cookies\vincent@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
Fin du rapport
BitDefender Online Scanner
Scan report generated at: Wed, Nov 22, 2006 - 17:33:56
Scan path: C:\;D:\;E:\;
Statistics
Time
00:29:45
Files
328664
Folders
4560
Boot Sectors
4
Archives
7500
Packed Files
18238
Results
Identified Viruses
2
Infected Files
9
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
15
Engines Info
Virus Definitions
317610
Engine build
AVCORE v1.0 (build 2368) (i386) (Nov 16 2006 11:31:19)
Scan plugins
13
Archive plugins
38
Unpack plugins
6
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\449010AE.tmp=>(Quarantine-2)
Infected with: Win32.Netsky.P@mm
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\449010AE.tmp=>(Quarantine-2)
Deleted
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\44C85A71.tmp=>(Quarantine-2)
Infected with: Win32.Netsky.P@mm
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\44C85A71.tmp=>(Quarantine-2)
Deleted
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\44DF0057.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Fri, 7 Jul 2006 18:01:24 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\44DF0057.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Fri, 7 Jul 2006 18:01:24 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\44DF0057.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Fri, 7 Jul 2006 18:01:24 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\44DF0057.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Fri, 7 Jul 2006 18:01:24 +0200]=>(MIME part)=>(MIME part)
Updated
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\44DF0057.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Fri, 7 Jul 2006 18:01:24 +0200]=>(MIME part)
Updated
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\44DF0057.tmp=>(Quarantine-2)
Updated
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\44DF0057.tmp
Update failed
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\45164A1A.tmp=>(Quarantine-2)
Infected with: Win32.Netsky.P@mm
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\45164A1A.tmp=>(Quarantine-2)
Deleted
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\451D1E13.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Sat, 8 Jul 2006 12:33:13 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\451D1E13.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Sat, 8 Jul 2006 12:33:13 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\451D1E13.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Sat, 8 Jul 2006 12:33:13 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\451D1E13.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Sat, 8 Jul 2006 12:33:13 +0200]=>(MIME part)=>(MIME part)
Updated
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\451D1E13.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Sat, 8 Jul 2006 12:33:13 +0200]=>(MIME part)
Updated
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\451D1E13.tmp=>(Quarantine-2)
Updated
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\451D1E13.tmp
Update failed
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\4523720C.tmp=>(Quarantine-2)
Infected with: Win32.Netsky.P@mm
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\4523720C.tmp=>(Quarantine-2)
Deleted
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\46086D10.tmp=>(Quarantine-2)
Infected with: Win32.Netsky.P@mm
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\46086D10.tmp=>(Quarantine-2)
Deleted
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\46223CF4.tmp=>(Quarantine-2)
Infected with: Win32.Netsky.P@mm
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\46223CF4.tmp=>(Quarantine-2)
Deleted
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\462910ED.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Wed, 12 Jul 2006 17:01:35 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\462910ED.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Wed, 12 Jul 2006 17:01:35 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\462910ED.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Wed, 12 Jul 2006 17:01:35 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\462910ED.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Wed, 12 Jul 2006 17:01:35 +0200]=>(MIME part)=>(MIME part)
Updated
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\462910ED.tmp=>(Quarantine-2)=>[Subject: [Norton AntiSpam] Mail Delivery (failu][Date: Wed, 12 Jul 2006 17:01:35 +0200]=>(MIME part)
Updated
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\462910ED.tmp=>(Quarantine-2)
Updated
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\462910ED.tmp
Update failed
mon pc est infecté je pense car depuis quelques temps il met du temps a s'éteindre, je ne peux plusq recevoir mes mails outlook express! itunes ne s'ouvre plus bref que faire????
A voir également:
- Voici mes rapports!! hijackthis etc que faire
- Hijackthis - Télécharger - Antivirus & Antimalwares
- Comment faire un rapport de stage - Guide
- Spywar - Forum Virus
- Processus et démarrage - Forum Windows
- Hijackthis log analyzer - Forum Virus
10 réponses
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
re,
Les marques de politesse n'ont jamais fait de mal...les posteurs comme toi qui mettent leur demande sans un BONJOUR SVP MERCI et n'explique pas leur problème, on en voit tous les jours et ça devient franchement lourd.
Et encore toi tu as parlé ...
Beaucoup mettent leur rapport et ??
Vide tes quarantaines de Norton ..
je ne vois rien de méchant dans ton log Hijack , a part qu'il est mal installé voir par là :
Démo (merci à Balltrap) :
instalation hijackthis
http://pageperso.aol.fr/balltrap34/Hijenr.gif
==================================
Peux tu scanner ce fichier :
C:\WINDOWS\ABLKSR\ABLKSR.exe
Avec ceci :
http://www.virustotal.com/en/virustotalx.html
clique sur « parcourir » va rechercher le fichier en question et ensuite clique sur « send ».
Copie colle moi le rapport généré.
a+
Les marques de politesse n'ont jamais fait de mal...les posteurs comme toi qui mettent leur demande sans un BONJOUR SVP MERCI et n'explique pas leur problème, on en voit tous les jours et ça devient franchement lourd.
Et encore toi tu as parlé ...
Beaucoup mettent leur rapport et ??
Vide tes quarantaines de Norton ..
je ne vois rien de méchant dans ton log Hijack , a part qu'il est mal installé voir par là :
Démo (merci à Balltrap) :
instalation hijackthis
http://pageperso.aol.fr/balltrap34/Hijenr.gif
==================================
Peux tu scanner ce fichier :
C:\WINDOWS\ABLKSR\ABLKSR.exe
Avec ceci :
http://www.virustotal.com/en/virustotalx.html
clique sur « parcourir » va rechercher le fichier en question et ensuite clique sur « send ».
Copie colle moi le rapport généré.
a+
bonjour pour moi ton log hijack est propre :) y'a just que bcp de programes inutile s'execute au demarrage (regarde le nombre des lignes O4 - HKLM\..\Run ...)
voici la marche a suivre pour suuprime des programes du demarrage :
Démarrer/Exécuter/tape: msconfig/ dans l'onglet demarage decoche tout laisse coché seulement ce qui est utile c'est a dire anti-virus/ firewall et internet (wanadoo)
clike sur appliquer/ redemarrer maintenant
au redemarage une petite fenetre s'affiche coche ne plus afficher ce message
supprime aussi les fichier temporaire et cookies pour gagné en rapidité
@++++++
voici la marche a suivre pour suuprime des programes du demarrage :
Démarrer/Exécuter/tape: msconfig/ dans l'onglet demarage decoche tout laisse coché seulement ce qui est utile c'est a dire anti-virus/ firewall et internet (wanadoo)
clike sur appliquer/ redemarrer maintenant
au redemarage une petite fenetre s'affiche coche ne plus afficher ce message
supprime aussi les fichier temporaire et cookies pour gagné en rapidité
@++++++
voici le rapport demandé avec virus total :
AntiVir 7.2.0.46 11.24.2006 no virus found
Authentium 4.93.8 11.23.2006 no virus found
Avast 4.7.892.0 11.23.2006 no virus found
AVG 386 11.23.2006 no virus found
BitDefender 7.2 11.24.2006 no virus found
CAT-QuickHeal 8.00 11.24.2006 no virus found
ClamAV devel-20060426 11.24.2006 no virus found
DrWeb 4.33 11.24.2006 no virus found
eSafe 7.0.14.0 11.24.2006 no virus found
eTrust-InoculateIT 23.73.66 11.23.2006 no virus found
eTrust-Vet 30.3.3211 11.24.2006 no virus found
Ewido 4.0 11.24.2006 no virus found
Fortinet 2.82.0.0 11.24.2006 no virus found
F-Prot 3.16f 11.23.2006 no virus found
F-Prot4 4.2.1.29 11.23.2006 no virus found
Ikarus 0.2.65.0 11.24.2006 no virus found
Kaspersky 4.0.2.24 11.24.2006 no virus found
McAfee 4904 11.24.2006 no virus found
Microsoft 1.1804 11.24.2006 no virus found
NOD32v2 1881 11.24.2006 no virus found
Norman 5.80.02 11.24.2006 no virus found
Voila visiblement on trouve rien sauf que j'ai toujours mon problème c'est a dire que mon pc met 5 min pours'éteindre alors qu'il ne semble pas charger, cela du jour au lendemain!
Je ne peux plus recevoir mes mails par outlook et je ne peux plus ouvrir itune!!!
que se passe t'il vers quelle piste chercher??
merci de la rapidité de vos réponses!
AntiVir 7.2.0.46 11.24.2006 no virus found
Authentium 4.93.8 11.23.2006 no virus found
Avast 4.7.892.0 11.23.2006 no virus found
AVG 386 11.23.2006 no virus found
BitDefender 7.2 11.24.2006 no virus found
CAT-QuickHeal 8.00 11.24.2006 no virus found
ClamAV devel-20060426 11.24.2006 no virus found
DrWeb 4.33 11.24.2006 no virus found
eSafe 7.0.14.0 11.24.2006 no virus found
eTrust-InoculateIT 23.73.66 11.23.2006 no virus found
eTrust-Vet 30.3.3211 11.24.2006 no virus found
Ewido 4.0 11.24.2006 no virus found
Fortinet 2.82.0.0 11.24.2006 no virus found
F-Prot 3.16f 11.23.2006 no virus found
F-Prot4 4.2.1.29 11.23.2006 no virus found
Ikarus 0.2.65.0 11.24.2006 no virus found
Kaspersky 4.0.2.24 11.24.2006 no virus found
McAfee 4904 11.24.2006 no virus found
Microsoft 1.1804 11.24.2006 no virus found
NOD32v2 1881 11.24.2006 no virus found
Norman 5.80.02 11.24.2006 no virus found
Voila visiblement on trouve rien sauf que j'ai toujours mon problème c'est a dire que mon pc met 5 min pours'éteindre alors qu'il ne semble pas charger, cela du jour au lendemain!
Je ne peux plus recevoir mes mails par outlook et je ne peux plus ouvrir itune!!!
que se passe t'il vers quelle piste chercher??
merci de la rapidité de vos réponses!
fais cette manip indiqué par salwa :
Démarrer/Exécuter/tape: msconfig/ dans l'onglet demarage decoche tout laisse coché seulement ce qui est utile c'est a dire anti-virus/ firewall et internet (wanadoo)
clike sur appliquer/ redemarrer maintenant
au redemarage une petite fenetre s'affiche coche ne plus afficher ce message
Tu peux aussi défragmenter ton Disque dur...
Démarrer -> tous les programmes ->accessoires->outil système->défragmenteur de disque-> et lance le.
a+
Démarrer/Exécuter/tape: msconfig/ dans l'onglet demarage decoche tout laisse coché seulement ce qui est utile c'est a dire anti-virus/ firewall et internet (wanadoo)
clike sur appliquer/ redemarrer maintenant
au redemarage une petite fenetre s'affiche coche ne plus afficher ce message
Tu peux aussi défragmenter ton Disque dur...
Démarrer -> tous les programmes ->accessoires->outil système->défragmenteur de disque-> et lance le.
a+