A voir également:
- Babylon search
- Spybot search and destroy - Télécharger - Antivirus & Antimalwares
- Search tool - Télécharger - Divers Web & Internet
- Www.google.com search video download - Télécharger - TV & Vidéo
- Hpy num search ✓ - Forum Consommation & Internet
- In search of incredible - Forum Windows
24 réponses
Bonjour,
Tu n'as pas copié les lignes demandées! (Bonjour dineol29,...................)
Refais cette étape stp, vérifies bien que seulement les lignes demandées
en gras qui apparaissent puis poste le rapport ZHPFix
¤¤¤ Le meilleur remède pour tous les problèmes, c'est la patience.... ¤¤¤
NON TRAITE Bonjour dineol29, NON TRAITE Vous avez demandé à recevoir les réponses au message de dineol29 intitulé « babylon search » datant du 1 octobre 2012 à 22:20 posté dans « Virus / Sécurité ». NON TRAITE Ce message vient de recevoir la réponse suivante de Fish66 : NON TRAITE Re, NON TRAITE Désolé, le canned a été modifié. NON TRAITE Tu vas effectuer les procédures indiquées ci-dessous : NON TRAITE Copie les lignes suivantes en GRAS entre les deux lignes
Tu n'as pas copié les lignes demandées! (Bonjour dineol29,...................)
Refais cette étape stp, vérifies bien que seulement les lignes demandées
en gras qui apparaissent puis poste le rapport ZHPFix
¤¤¤ Le meilleur remède pour tous les problèmes, c'est la patience.... ¤¤¤
Bonjour dineol29,
Vous avez demandé à recevoir les réponses au message de dineol29 intitulé « babylon search » datant du 1 octobre 2012 à 22:20 posté dans « Virus / Sécurité ».
Ce message vient de recevoir la réponse suivante de Fish66 :
Re,
Désolé, le canned a été modifié.
Tu vas effectuer les procédures indiquées ci-dessous :
Copie les lignes suivantes en GRAS entre les deux lignes
__________________________________________________________
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[MD5.00000000000000000000000000000000] [APT] [{12591B5F-948C-4600-96DE-047BA7A706B1}] (...) -- L:\setup.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{44C8571B-A4DF-4672-8D5F-F8DE3A940308}] (...) -- L:\windows\Setup.exe (.not file.)
[MD5.C25C00D848E662648E32621345620819] - (.TunesNINJA - TunesNINJA App.) -- C:\Users\jean pierre\AppData\Roaming\TunesNINJA\TunesNINJA.exe [491520] [PID.2292]
O4 - HKCU\..\Run: [TunesNINJA] . (.TunesNINJA - TunesNINJA App.) -- C:\Users\jean pierre\AppData\Roaming\TunesNINJA\TunesNINJA.exe
O4 - HKUS\S-1-5-21-1926355809-905474919-1075745263-1001-1926355809-905474919-1075745263-1000\..\Run: [TunesNINJA] . (.TunesNINJA - TunesNINJA App.) -- C:\Users\jean pierre\AppData\Roaming\TunesNINJA\TunesNINJA.exe
C:\Program Files (x86)\Mozilla Firefox\Extensions\ffxtlbr@babylon.com => Infection BT (Toolbar.Babylon)
[MD5.00000000000000000000000000000000] [APT] [{10916E67-B2A2-4DC7-BFA0-4614DC4B3F7F}] (...) -- C:\Users\jean pierre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QPENKO1N\WindowsLiveMsg-AntiMiseAjour.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{16C5415F-6556-4E21-A77E-2875074648AF}] (...) -- C:\Users\jean pierre\Downloads\wlm-uninstaller-v0.01(5).exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{22D0A463-BD2F-4150-BA0F-33638E812FAE}] (...) -- J:\Documents and Settings\jean pierre\Mes documents\Downloads\esetsmartinstaller_fra.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{3B68B1F5-F97D-4F49-88F0-2130DAFD1682}] (...) -- L:\AutoPlay\Adobe 9 Reader\Setup.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{3E0C6721-E50B-428A-A9A2-1A91752F937B}] (...) -- C:\Users\jean pierre\Downloads\wlm-uninstaller-v0.01(3).exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{4352F166-E613-4BD9-BA3E-859DF1A3F8D1}] (...) -- C:\Users\jean pierre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5U4RFS3H\wlm-uninstaller-v0.01.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{896A993A-35EF-459D-80E8-DDA7F3EB8806}] (...) -- C:\Users\jean pierre\Desktop\RegCleaner.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{9872B301-1836-4794-9A38-5DACFAABD81B}] (...) -- C:\Users\jean pierre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\C1H1CJPG\seatools_enterprise_install.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{9D3C0640-C68C-4E4A-9A26-2885155BB24F}] (...) -- C:\yenicag\cleandiskpro\cleandisk.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{CA182BDE-1FAA-4072-855B-C6F52A7D7100}] (...) -- C:\Users\jean pierre\Desktop\ToolBarSD.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{D75311EA-1AA3-4BAE-992E-8B41BBC851EB}] (...) -- C:\Users\jean pierre\Desktop\ToolBarSD.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{E326E779-D97F-4CE4-B350-CC257DF0F06A}] (...) -- C:\Users\jean pierre\Downloads\wlm-uninstaller-v0.01(2).exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{FC5F9BC9-B03C-44D2-9EC7-A5D232AD2B69}] (...) -- C:\Users\jean pierre\Desktop\msicuu2.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{FC721729-68D7-40DA-8E1A-B19483FE6705}] (...) -- C:\Users\jean pierre\Downloads\WindowsLiveMsg-AntiMiseAjour.exe (.not file.)
O43 - CFD: 30/09/2012 - 15:49:19 - [0,114] ----D C:\ProgramData\Spybot - Search & Destroy => Spybot - Search & Destroy
O43 - CFD: 23/06/2012 - 18:42:44 - [0] ----D C:\Users\jean pierre\AppData\Local\{1BA167DB-9B7E-4A40-913D-49F47CCF9C09}
O43 - CFD: 27/05/2012 - 21:08:21 - [0] ----D C:\Users\jean pierre\AppData\Local\{3AE22DFA-DD33-4388-ACE1-DDD5D397D19F}
O43 - CFD: 24/06/2012 - 14:44:30 - [0] ----D C:\Users\jean pierre\AppData\Local\{711E8127-684E-470E-B14E-04D406A7BC3C}
O43 - CFD: 22/06/2012 - 07:22:50 - [0] ----D C:\Users\jean pierre\AppData\Local\{8C14D875-EC43-4F9E-9F58-A855356240B7}
O43 - CFD: 22/06/2012 - 07:23:25 - [0] ----D C:\Users\jean pierre\AppData\Local\{F80DBA1D-DC8A-4C8D-9E35-EBF82C0C5268}
O51 - MPSK:{5558df51-e1e7-11e1-8bc8-000a941866fb}\AutoRun\command - Clé orpheline
FirewallRAZ
EmptyTemp
EmptyFlash
Vous avez demandé à recevoir les réponses au message de dineol29 intitulé « babylon search » datant du 1 octobre 2012 à 22:20 posté dans « Virus / Sécurité ».
Ce message vient de recevoir la réponse suivante de Fish66 :
Re,
Désolé, le canned a été modifié.
Tu vas effectuer les procédures indiquées ci-dessous :
Copie les lignes suivantes en GRAS entre les deux lignes
__________________________________________________________
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[MD5.00000000000000000000000000000000] [APT] [{12591B5F-948C-4600-96DE-047BA7A706B1}] (...) -- L:\setup.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{44C8571B-A4DF-4672-8D5F-F8DE3A940308}] (...) -- L:\windows\Setup.exe (.not file.)
[MD5.C25C00D848E662648E32621345620819] - (.TunesNINJA - TunesNINJA App.) -- C:\Users\jean pierre\AppData\Roaming\TunesNINJA\TunesNINJA.exe [491520] [PID.2292]
O4 - HKCU\..\Run: [TunesNINJA] . (.TunesNINJA - TunesNINJA App.) -- C:\Users\jean pierre\AppData\Roaming\TunesNINJA\TunesNINJA.exe
O4 - HKUS\S-1-5-21-1926355809-905474919-1075745263-1001-1926355809-905474919-1075745263-1000\..\Run: [TunesNINJA] . (.TunesNINJA - TunesNINJA App.) -- C:\Users\jean pierre\AppData\Roaming\TunesNINJA\TunesNINJA.exe
C:\Program Files (x86)\Mozilla Firefox\Extensions\ffxtlbr@babylon.com => Infection BT (Toolbar.Babylon)
[MD5.00000000000000000000000000000000] [APT] [{10916E67-B2A2-4DC7-BFA0-4614DC4B3F7F}] (...) -- C:\Users\jean pierre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QPENKO1N\WindowsLiveMsg-AntiMiseAjour.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{16C5415F-6556-4E21-A77E-2875074648AF}] (...) -- C:\Users\jean pierre\Downloads\wlm-uninstaller-v0.01(5).exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{22D0A463-BD2F-4150-BA0F-33638E812FAE}] (...) -- J:\Documents and Settings\jean pierre\Mes documents\Downloads\esetsmartinstaller_fra.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{3B68B1F5-F97D-4F49-88F0-2130DAFD1682}] (...) -- L:\AutoPlay\Adobe 9 Reader\Setup.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{3E0C6721-E50B-428A-A9A2-1A91752F937B}] (...) -- C:\Users\jean pierre\Downloads\wlm-uninstaller-v0.01(3).exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{4352F166-E613-4BD9-BA3E-859DF1A3F8D1}] (...) -- C:\Users\jean pierre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5U4RFS3H\wlm-uninstaller-v0.01.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{896A993A-35EF-459D-80E8-DDA7F3EB8806}] (...) -- C:\Users\jean pierre\Desktop\RegCleaner.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{9872B301-1836-4794-9A38-5DACFAABD81B}] (...) -- C:\Users\jean pierre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\C1H1CJPG\seatools_enterprise_install.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{9D3C0640-C68C-4E4A-9A26-2885155BB24F}] (...) -- C:\yenicag\cleandiskpro\cleandisk.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{CA182BDE-1FAA-4072-855B-C6F52A7D7100}] (...) -- C:\Users\jean pierre\Desktop\ToolBarSD.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{D75311EA-1AA3-4BAE-992E-8B41BBC851EB}] (...) -- C:\Users\jean pierre\Desktop\ToolBarSD.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{E326E779-D97F-4CE4-B350-CC257DF0F06A}] (...) -- C:\Users\jean pierre\Downloads\wlm-uninstaller-v0.01(2).exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{FC5F9BC9-B03C-44D2-9EC7-A5D232AD2B69}] (...) -- C:\Users\jean pierre\Desktop\msicuu2.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{FC721729-68D7-40DA-8E1A-B19483FE6705}] (...) -- C:\Users\jean pierre\Downloads\WindowsLiveMsg-AntiMiseAjour.exe (.not file.)
O43 - CFD: 30/09/2012 - 15:49:19 - [0,114] ----D C:\ProgramData\Spybot - Search & Destroy => Spybot - Search & Destroy
O43 - CFD: 23/06/2012 - 18:42:44 - [0] ----D C:\Users\jean pierre\AppData\Local\{1BA167DB-9B7E-4A40-913D-49F47CCF9C09}
O43 - CFD: 27/05/2012 - 21:08:21 - [0] ----D C:\Users\jean pierre\AppData\Local\{3AE22DFA-DD33-4388-ACE1-DDD5D397D19F}
O43 - CFD: 24/06/2012 - 14:44:30 - [0] ----D C:\Users\jean pierre\AppData\Local\{711E8127-684E-470E-B14E-04D406A7BC3C}
O43 - CFD: 22/06/2012 - 07:22:50 - [0] ----D C:\Users\jean pierre\AppData\Local\{8C14D875-EC43-4F9E-9F58-A855356240B7}
O43 - CFD: 22/06/2012 - 07:23:25 - [0] ----D C:\Users\jean pierre\AppData\Local\{F80DBA1D-DC8A-4C8D-9E35-EBF82C0C5268}
O51 - MPSK:{5558df51-e1e7-11e1-8bc8-000a941866fb}\AutoRun\command - Clé orpheline
FirewallRAZ
EmptyTemp
EmptyFlash
Tu copies seulement les lignes en gras ci-dessous :
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[MD5.00000000000000000000000000000000] [APT] [{12591B5F-948C-4600-96DE-047BA7A706B1}] (...) -- L:\setup.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{44C8571B-A4DF-4672-8D5F-F8DE3A940308}] (...) -- L:\windows\Setup.exe (.not file.)
[MD5.C25C00D848E662648E32621345620819] - (.TunesNINJA - TunesNINJA App.) -- C:\Users\jean pierre\AppData\Roaming\TunesNINJA\TunesNINJA.exe [491520] [PID.2292]
O4 - HKCU\..\Run: [TunesNINJA] . (.TunesNINJA - TunesNINJA App.) -- C:\Users\jean pierre\AppData\Roaming\TunesNINJA\TunesNINJA.exe
O4 - HKUS\S-1-5-21-1926355809-905474919-1075745263-1001-1926355809-905474919-1075745263-1000\..\Run: [TunesNINJA] . (.TunesNINJA - TunesNINJA App.) -- C:\Users\jean pierre\AppData\Roaming\TunesNINJA\TunesNINJA.exe
C:\Program Files (x86)\Mozilla Firefox\Extensions\ffxtlbr@babylon.com => Infection BT (Toolbar.Babylon)
[MD5.00000000000000000000000000000000] [APT] [{10916E67-B2A2-4DC7-BFA0-4614DC4B3F7F}] (...) -- C:\Users\jean pierre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QPENKO1N\WindowsLiveMsg-AntiMiseAjour.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{16C5415F-6556-4E21-A77E-2875074648AF}] (...) -- C:\Users\jean pierre\Downloads\wlm-uninstaller-v0.01(5).exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{22D0A463-BD2F-4150-BA0F-33638E812FAE}] (...) -- J:\Documents and Settings\jean pierre\Mes documents\Downloads\esetsmartinstaller_fra.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{3B68B1F5-F97D-4F49-88F0-2130DAFD1682}] (...) -- L:\AutoPlay\Adobe 9 Reader\Setup.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{3E0C6721-E50B-428A-A9A2-1A91752F937B}] (...) -- C:\Users\jean pierre\Downloads\wlm-uninstaller-v0.01(3).exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{4352F166-E613-4BD9-BA3E-859DF1A3F8D1}] (...) -- C:\Users\jean pierre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5U4RFS3H\wlm-uninstaller-v0.01.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{896A993A-35EF-459D-80E8-DDA7F3EB8806}] (...) -- C:\Users\jean pierre\Desktop\RegCleaner.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{9872B301-1836-4794-9A38-5DACFAABD81B}] (...) -- C:\Users\jean pierre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\C1H1CJPG\seatools_enterprise_install.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{9D3C0640-C68C-4E4A-9A26-2885155BB24F}] (...) -- C:\yenicag\cleandiskpro\cleandisk.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{CA182BDE-1FAA-4072-855B-C6F52A7D7100}] (...) -- C:\Users\jean pierre\Desktop\ToolBarSD.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{D75311EA-1AA3-4BAE-992E-8B41BBC851EB}] (...) -- C:\Users\jean pierre\Desktop\ToolBarSD.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{E326E779-D97F-4CE4-B350-CC257DF0F06A}] (...) -- C:\Users\jean pierre\Downloads\wlm-uninstaller-v0.01(2).exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{FC5F9BC9-B03C-44D2-9EC7-A5D232AD2B69}] (...) -- C:\Users\jean pierre\Desktop\msicuu2.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{FC721729-68D7-40DA-8E1A-B19483FE6705}] (...) -- C:\Users\jean pierre\Downloads\WindowsLiveMsg-AntiMiseAjour.exe (.not file.)
O43 - CFD: 30/09/2012 - 15:49:19 - [0,114] ----D C:\ProgramData\Spybot - Search & Destroy => Spybot - Search & Destroy
O43 - CFD: 23/06/2012 - 18:42:44 - [0] ----D C:\Users\jean pierre\AppData\Local\{1BA167DB-9B7E-4A40-913D-49F47CCF9C09}
O43 - CFD: 27/05/2012 - 21:08:21 - [0] ----D C:\Users\jean pierre\AppData\Local\{3AE22DFA-DD33-4388-ACE1-DDD5D397D19F}
O43 - CFD: 24/06/2012 - 14:44:30 - [0] ----D C:\Users\jean pierre\AppData\Local\{711E8127-684E-470E-B14E-04D406A7BC3C}
O43 - CFD: 22/06/2012 - 07:22:50 - [0] ----D C:\Users\jean pierre\AppData\Local\{8C14D875-EC43-4F9E-9F58-A855356240B7}
O43 - CFD: 22/06/2012 - 07:23:25 - [0] ----D C:\Users\jean pierre\AppData\Local\{F80DBA1D-DC8A-4C8D-9E35-EBF82C0C5268}
O51 - MPSK:{5558df51-e1e7-11e1-8bc8-000a941866fb}\AutoRun\command - Clé orpheline
FirewallRAZ
EmptyTemp
EmptyFlash
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[MD5.00000000000000000000000000000000] [APT] [{12591B5F-948C-4600-96DE-047BA7A706B1}] (...) -- L:\setup.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{44C8571B-A4DF-4672-8D5F-F8DE3A940308}] (...) -- L:\windows\Setup.exe (.not file.)
[MD5.C25C00D848E662648E32621345620819] - (.TunesNINJA - TunesNINJA App.) -- C:\Users\jean pierre\AppData\Roaming\TunesNINJA\TunesNINJA.exe [491520] [PID.2292]
O4 - HKCU\..\Run: [TunesNINJA] . (.TunesNINJA - TunesNINJA App.) -- C:\Users\jean pierre\AppData\Roaming\TunesNINJA\TunesNINJA.exe
O4 - HKUS\S-1-5-21-1926355809-905474919-1075745263-1001-1926355809-905474919-1075745263-1000\..\Run: [TunesNINJA] . (.TunesNINJA - TunesNINJA App.) -- C:\Users\jean pierre\AppData\Roaming\TunesNINJA\TunesNINJA.exe
C:\Program Files (x86)\Mozilla Firefox\Extensions\ffxtlbr@babylon.com => Infection BT (Toolbar.Babylon)
[MD5.00000000000000000000000000000000] [APT] [{10916E67-B2A2-4DC7-BFA0-4614DC4B3F7F}] (...) -- C:\Users\jean pierre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QPENKO1N\WindowsLiveMsg-AntiMiseAjour.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{16C5415F-6556-4E21-A77E-2875074648AF}] (...) -- C:\Users\jean pierre\Downloads\wlm-uninstaller-v0.01(5).exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{22D0A463-BD2F-4150-BA0F-33638E812FAE}] (...) -- J:\Documents and Settings\jean pierre\Mes documents\Downloads\esetsmartinstaller_fra.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{3B68B1F5-F97D-4F49-88F0-2130DAFD1682}] (...) -- L:\AutoPlay\Adobe 9 Reader\Setup.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{3E0C6721-E50B-428A-A9A2-1A91752F937B}] (...) -- C:\Users\jean pierre\Downloads\wlm-uninstaller-v0.01(3).exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{4352F166-E613-4BD9-BA3E-859DF1A3F8D1}] (...) -- C:\Users\jean pierre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5U4RFS3H\wlm-uninstaller-v0.01.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{896A993A-35EF-459D-80E8-DDA7F3EB8806}] (...) -- C:\Users\jean pierre\Desktop\RegCleaner.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{9872B301-1836-4794-9A38-5DACFAABD81B}] (...) -- C:\Users\jean pierre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\C1H1CJPG\seatools_enterprise_install.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{9D3C0640-C68C-4E4A-9A26-2885155BB24F}] (...) -- C:\yenicag\cleandiskpro\cleandisk.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{CA182BDE-1FAA-4072-855B-C6F52A7D7100}] (...) -- C:\Users\jean pierre\Desktop\ToolBarSD.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{D75311EA-1AA3-4BAE-992E-8B41BBC851EB}] (...) -- C:\Users\jean pierre\Desktop\ToolBarSD.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{E326E779-D97F-4CE4-B350-CC257DF0F06A}] (...) -- C:\Users\jean pierre\Downloads\wlm-uninstaller-v0.01(2).exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{FC5F9BC9-B03C-44D2-9EC7-A5D232AD2B69}] (...) -- C:\Users\jean pierre\Desktop\msicuu2.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{FC721729-68D7-40DA-8E1A-B19483FE6705}] (...) -- C:\Users\jean pierre\Downloads\WindowsLiveMsg-AntiMiseAjour.exe (.not file.)
O43 - CFD: 30/09/2012 - 15:49:19 - [0,114] ----D C:\ProgramData\Spybot - Search & Destroy => Spybot - Search & Destroy
O43 - CFD: 23/06/2012 - 18:42:44 - [0] ----D C:\Users\jean pierre\AppData\Local\{1BA167DB-9B7E-4A40-913D-49F47CCF9C09}
O43 - CFD: 27/05/2012 - 21:08:21 - [0] ----D C:\Users\jean pierre\AppData\Local\{3AE22DFA-DD33-4388-ACE1-DDD5D397D19F}
O43 - CFD: 24/06/2012 - 14:44:30 - [0] ----D C:\Users\jean pierre\AppData\Local\{711E8127-684E-470E-B14E-04D406A7BC3C}
O43 - CFD: 22/06/2012 - 07:22:50 - [0] ----D C:\Users\jean pierre\AppData\Local\{8C14D875-EC43-4F9E-9F58-A855356240B7}
O43 - CFD: 22/06/2012 - 07:23:25 - [0] ----D C:\Users\jean pierre\AppData\Local\{F80DBA1D-DC8A-4C8D-9E35-EBF82C0C5268}
O51 - MPSK:{5558df51-e1e7-11e1-8bc8-000a941866fb}\AutoRun\command - Clé orpheline
FirewallRAZ
EmptyTemp
EmptyFlash
Bonjour dineol29,
Vous avez demandé à recevoir les réponses au message de dineol29 intitulé « babylon search » datant du 2 octobre 2012 à 09:14 posté dans « Virus / Sécurité ».
Ce message vient de recevoir la réponse suivante de Fish66 :
Tu copies seulement les lignes en gras ci-dessous :
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[MD5.00000000000000000000000000000000] [APT] [{12591B5F-948C-4600-96DE-047BA7A706B1}] (...) -- L:\setup.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{44C8571B-A4DF-4672-8D5F-F8DE3A940308}] (...) -- L:\windows\Setup.exe (.not file.)
[MD5.C25C00D848E662648E32621345620819] - (.TunesNINJA - TunesNINJA App.) -- C:\Users\jean pierre\AppData\Roaming\TunesNINJA\TunesNINJA.exe [491520] [PID.2292]
O4 - HKCU\..\Run: [TunesNINJA] . (.TunesNINJA - TunesNINJA App.) -- C:\Users\jean pierre\AppData\Roaming\TunesNINJA\TunesNINJA.exe
O4 - HKUS\S-1-5-21-1926355809-905474919-1075745263-1001-1926355809-905474919-1075745263-1000\..\Run: [TunesNINJA] . (.TunesNINJA - TunesNINJA App.) -- C:\Users\jean pierre\AppData\Roaming\TunesNINJA\TunesNINJA.exe
C:\Program Files (x86)\Mozilla Firefox\Extensions\ffxtlbr@babylon.com => Infection BT (Toolbar.Babylon)
[MD5.00000000000000000000000000000000] [APT] [{10916E67-B2A2-4DC7-BFA0-4614DC4B3F7F}] (...) -- C:\Users\jean pierre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QPENKO1N\WindowsLiveMsg-AntiMiseAjour.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{16C5415F-6556-4E21-A77E-2875074648AF}] (...) -- C:\Users\jean pierre\Downloads\wlm-uninstaller-v0.01(5).exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{22D0A463-BD2F-4150-BA0F-33638E812FAE}] (...) -- J:\Documents and Settings\jean pierre\Mes documents\Downloads\esetsmartinstaller_fra.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{3B68B1F5-F97D-4F49-88F0-2130DAFD1682}] (...) -- L:\AutoPlay\Adobe 9 Reader\Setup.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{3E0C6721-E50B-428A-A9A2-1A91752F937B}] (...) -- C:\Users\jean pierre\Downloads\wlm-uninstaller-v0.01(3).exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{4352F166-E613-4BD9-BA3E-859DF1A3F8D1}] (...) -- C:\Users\jean pierre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5U4RFS3H\wlm-uninstaller-v0.01.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{896A993A-35EF-459D-80E8-DDA7F3EB8806}] (...) -- C:\Users\jean pierre\Desktop\RegCleaner.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{9872B301-1836-4794-9A38-5DACFAABD81B}] (...) -- C:\Users\jean pierre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\C1H1CJPG\seatools_enterprise_install.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{9D3C0640-C68C-4E4A-9A26-2885155BB24F}] (...) -- C:\yenicag\cleandiskpro\cleandisk.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{CA182BDE-1FAA-4072-855B-C6F52A7D7100}] (...) -- C:\Users\jean pierre\Desktop\ToolBarSD.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{D75311EA-1AA3-4BAE-992E-8B41BBC851EB}] (...) -- C:\Users\jean pierre\Desktop\ToolBarSD.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{E326E779-D97F-4CE4-B350-CC257DF0F06A}] (...) -- C:\Users\jean pierre\Downloads\wlm-uninstaller-v0.01(2).exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{FC5F9BC9-B03C-44D2-9EC7-A5D232AD2B69}] (...) -- C:\Users\jean pierre\Desktop\msicuu2.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{FC721729-68D7-40DA-8E1A-B19483FE6705}] (...) -- C:\Users\jean pierre\Downloads\WindowsLiveMsg-AntiMiseAjour.exe (.not file.)
O43 - CFD: 30/09/2012 - 15:49:19 - [0,114] ----D C:\ProgramData\Spybot - Search & Destroy => Spybot - Search & Destroy
O43 - CFD: 23/06/2012 - 18:42:44 - [0] ----D C:\Users\jean pierre\AppData\Local\{1BA167DB-9B7E-4A40-913D-49F47CCF9C09}
O43 - CFD: 27/05/2012 - 21:08:21 - [0] ----D C:\Users\jean pierre\AppData\Local\{3AE22DFA-DD33-4388-ACE1-DDD5D397D19F}
O43 - CFD: 24/06/2012 - 14:44:30 - [0] ----D C:\Users\jean pierre\AppData\Local\{711E8127-684E-470E-B14E-04D406A7BC3C}
O43 - CFD: 22/06/2012 - 07:22:50 - [0] ----D C:\Users\jean pierre\AppData\Local\{8C14D875-EC43-4F9E-9F58-A855356240B7}
O43 - CFD: 22/06/2012 - 07:23:25 - [0] ----D C:\Users\jean pierre\AppData\Local\{F80DBA1D-DC8A-4C8D-9E35-EBF82C0C5268}
O51 - MPSK:{5558df51-e1e7-11e1-8bc8-000a941866fb}\AutoRun\command - Clé orpheline
FirewallRAZ
EmptyTemp
EmptyFlash
Vous avez demandé à recevoir les réponses au message de dineol29 intitulé « babylon search » datant du 2 octobre 2012 à 09:14 posté dans « Virus / Sécurité ».
Ce message vient de recevoir la réponse suivante de Fish66 :
Tu copies seulement les lignes en gras ci-dessous :
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[MD5.00000000000000000000000000000000] [APT] [{12591B5F-948C-4600-96DE-047BA7A706B1}] (...) -- L:\setup.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{44C8571B-A4DF-4672-8D5F-F8DE3A940308}] (...) -- L:\windows\Setup.exe (.not file.)
[MD5.C25C00D848E662648E32621345620819] - (.TunesNINJA - TunesNINJA App.) -- C:\Users\jean pierre\AppData\Roaming\TunesNINJA\TunesNINJA.exe [491520] [PID.2292]
O4 - HKCU\..\Run: [TunesNINJA] . (.TunesNINJA - TunesNINJA App.) -- C:\Users\jean pierre\AppData\Roaming\TunesNINJA\TunesNINJA.exe
O4 - HKUS\S-1-5-21-1926355809-905474919-1075745263-1001-1926355809-905474919-1075745263-1000\..\Run: [TunesNINJA] . (.TunesNINJA - TunesNINJA App.) -- C:\Users\jean pierre\AppData\Roaming\TunesNINJA\TunesNINJA.exe
C:\Program Files (x86)\Mozilla Firefox\Extensions\ffxtlbr@babylon.com => Infection BT (Toolbar.Babylon)
[MD5.00000000000000000000000000000000] [APT] [{10916E67-B2A2-4DC7-BFA0-4614DC4B3F7F}] (...) -- C:\Users\jean pierre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QPENKO1N\WindowsLiveMsg-AntiMiseAjour.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{16C5415F-6556-4E21-A77E-2875074648AF}] (...) -- C:\Users\jean pierre\Downloads\wlm-uninstaller-v0.01(5).exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{22D0A463-BD2F-4150-BA0F-33638E812FAE}] (...) -- J:\Documents and Settings\jean pierre\Mes documents\Downloads\esetsmartinstaller_fra.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{3B68B1F5-F97D-4F49-88F0-2130DAFD1682}] (...) -- L:\AutoPlay\Adobe 9 Reader\Setup.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{3E0C6721-E50B-428A-A9A2-1A91752F937B}] (...) -- C:\Users\jean pierre\Downloads\wlm-uninstaller-v0.01(3).exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{4352F166-E613-4BD9-BA3E-859DF1A3F8D1}] (...) -- C:\Users\jean pierre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5U4RFS3H\wlm-uninstaller-v0.01.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{896A993A-35EF-459D-80E8-DDA7F3EB8806}] (...) -- C:\Users\jean pierre\Desktop\RegCleaner.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{9872B301-1836-4794-9A38-5DACFAABD81B}] (...) -- C:\Users\jean pierre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\C1H1CJPG\seatools_enterprise_install.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{9D3C0640-C68C-4E4A-9A26-2885155BB24F}] (...) -- C:\yenicag\cleandiskpro\cleandisk.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{CA182BDE-1FAA-4072-855B-C6F52A7D7100}] (...) -- C:\Users\jean pierre\Desktop\ToolBarSD.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{D75311EA-1AA3-4BAE-992E-8B41BBC851EB}] (...) -- C:\Users\jean pierre\Desktop\ToolBarSD.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{E326E779-D97F-4CE4-B350-CC257DF0F06A}] (...) -- C:\Users\jean pierre\Downloads\wlm-uninstaller-v0.01(2).exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{FC5F9BC9-B03C-44D2-9EC7-A5D232AD2B69}] (...) -- C:\Users\jean pierre\Desktop\msicuu2.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{FC721729-68D7-40DA-8E1A-B19483FE6705}] (...) -- C:\Users\jean pierre\Downloads\WindowsLiveMsg-AntiMiseAjour.exe (.not file.)
O43 - CFD: 30/09/2012 - 15:49:19 - [0,114] ----D C:\ProgramData\Spybot - Search & Destroy => Spybot - Search & Destroy
O43 - CFD: 23/06/2012 - 18:42:44 - [0] ----D C:\Users\jean pierre\AppData\Local\{1BA167DB-9B7E-4A40-913D-49F47CCF9C09}
O43 - CFD: 27/05/2012 - 21:08:21 - [0] ----D C:\Users\jean pierre\AppData\Local\{3AE22DFA-DD33-4388-ACE1-DDD5D397D19F}
O43 - CFD: 24/06/2012 - 14:44:30 - [0] ----D C:\Users\jean pierre\AppData\Local\{711E8127-684E-470E-B14E-04D406A7BC3C}
O43 - CFD: 22/06/2012 - 07:22:50 - [0] ----D C:\Users\jean pierre\AppData\Local\{8C14D875-EC43-4F9E-9F58-A855356240B7}
O43 - CFD: 22/06/2012 - 07:23:25 - [0] ----D C:\Users\jean pierre\AppData\Local\{F80DBA1D-DC8A-4C8D-9E35-EBF82C0C5268}
O51 - MPSK:{5558df51-e1e7-11e1-8bc8-000a941866fb}\AutoRun\command - Clé orpheline
FirewallRAZ
EmptyTemp
EmptyFlash