Infecté par warezov.jq et bagle.hk

Résolu/Fermé
Mataf37 Messages postés 30 Date d'inscription lundi 25 décembre 2006 Statut Membre Dernière intervention 23 novembre 2008 - 31 janv. 2007 à 21:39
did71 Messages postés 2187 Date d'inscription vendredi 24 mars 2006 Statut Contributeur sécurité Dernière intervention 30 janvier 2010 - 5 févr. 2007 à 19:08
Bonjour j'ai fait unscan avec kaspersky on line et il ma trouvé deux virus le premier est waresov.jq le second est bagle.hk.
Je n'ai pas pu les eradiquer .Si vous avez une solution elle serai la bienvenue
Avec mes remerciements anticipées
cordialement
mataf37

7 réponses

did71 Messages postés 2187 Date d'inscription vendredi 24 mars 2006 Statut Contributeur sécurité Dernière intervention 30 janvier 2010 36
31 janv. 2007 à 21:44
Bonsoir Mataf37,

peux tu copier le rapport de kaspersky ici!

a+
0
Mataf37 Messages postés 30 Date d'inscription lundi 25 décembre 2006 Statut Membre Dernière intervention 23 novembre 2008 1
31 janv. 2007 à 21:54
VOILA LE RAPPORT MERCI

C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\abook.mab L'objet est verrouillé ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\cert8.db L'objet est verrouillé ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\key3.db L'objet est verrouillé ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Inbox/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From alice martinez ][Date î‘|8’|ÿÿÿÿ2’|«’|ë’|, 15 ˆìÒ 2007 10:35:01 +0100]/text.zip/text.msg.cmd Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Inbox/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From alice martinez ][Date î‘|8’|ÿÿÿÿ2’|«’|ë’|, 15 ˆìÒ 2007 10:35:01 +0100]/text.zip Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Inbox/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Inbox Mail Berkeley mbox: infecté - 3 ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Inbox.msf L'objet est verrouillé ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Junk.msf L'objet est verrouillé ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Templates.msf L'objet est verrouillé ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 A ... ... /[From alice martinez ][Date î‘|8’|ÿÿÿÿ2’|«’|ë’|, 15 ˆìÒ 2007 10:35: ... /text.msg.cmd Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 A ... ... /[From alice martinez ][Date î‘|8’|ÿÿÿÿ2’|«’|ë’|, 15 ˆìÒ 2007 10:35:01 +0100]/text.zip Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 A ... /[From MAILER-DAEMON@smtp1-g19.free.fr (Mail Delivery System)][Date Thu, 4 Jan 2007 21:14:36 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200] ... /[From claude moreau ][Date Thu, 4 Jan 2007 16:34:29 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From . ... /[From "gcervo" ][Date Wed, 11 Feb 2004 10:42:49 +0100]/text Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Sat, 7 Feb 2004 22:04:04 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Fri, 6 Feb 2004 21:03:47 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Fri, 6 Feb 2004 21:01:52 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Fri, 6 Feb 2004 21:00:35 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Fri, 6 Feb 2004 20:59:22 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Fri, 6 Feb 2004 20:56:24 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Fri, 6 Feb 2004 20:55:27 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Tue, 3 Feb 2004 17:04:43 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Tue, 3 Feb 2004 17:01:22 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Tue, 3 Feb 2004 16:12:04 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Tue, 3 Feb 2004 16:03:44 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Mon, 2 Feb 2004 18:30:52 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From .. ... /[From "gcervo" ][Date Sun, 18 Jan 2004 11:16:45 +0100]/text Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Fri, 16 Jan 2004 15:13:06 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Thu, 15 Jan 2004 19:07:02 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... ... /[From "gcervo" ][Date Sun, 4 Jan 2004 11:38:34 +0100]/text Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Tue, 23 Dec 2003 19:13:04 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Tue, 23 Dec 2003 17:34:28 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Tue, 23 Dec 2003 17:32:23 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Tue, 23 Dec 2003 17:29:04 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Tue, 23 Dec 2003 17:27:46 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Tue, 23 Dec 2003 17:25:54 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... ... /[From "gcervo" ][Date Fri, 5 Dec 2003 19:00:46 +0100]/text Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Wed, 18 Feb 2004 21:14:19 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Thu, 4 Mar 2004 18:39:42 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Sun, 28 Mar 2004 18:19:25 +0200]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Tue, 30 Mar 2004 18:50:59 +0200]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From .. ... /[From "gcervo" ][Date Thu, 10 Jun 2004 07:21:01 +0200]/text Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Sun, 23 May 2004 18:16:30 +0200]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... ... /[From "gcervo" ][Date Wed, 7 Apr 2004 21:11:41 +0200]/text Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From ... /[From "gcervo" ][Date Wed, 14 Apr 2004 08:46:04 +0200]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From "gc ... /[From "gcervo" ][Date Mon, 19 Apr 2004 11:57:32 +0200]/text Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text/[From "gcervo" ][Date Tue, 20 Apr 2004 22:04:19 +0200]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text/[From "gcervo" ][Date Fri, 23 Apr 2004 09:17:54 +0200]/text Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED/[From "gcervo" ][Date Thu, 29 Apr 2004 07:48:21 +0200]/text Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED/[From "gcervo" ][Date Sun, 16 May 2004 16:49:16 +0200]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED/[From "Superfourmi" ][Date Thu, 04 Jan 2007 11:47:32 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash/[From gcervo ][Date Wed, 03 Jan 2007 17:03:41 +0100]/UNNAMED Infecté : Email-Worm.Win32.Warezov.jq ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash Mail Berkeley mbox: infecté - 43 ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash.msf L'objet est verrouillé ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\panacea.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\parent.lock L'objet est verrouillé ignoré
C:\Documents and Settings\Administrateur\Cookies\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\Administrateur\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Administrateur\Local Settings\Historique\History.IE5\MSHist012007013120070201\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Administrateur\Mes documents\Mes images\acdsee v5.0 powerpac french.exe Infecté : Email-Worm.Win32.Bagle.hk ignoré
C:\Documents and Settings\Administrateur\Mes documents\Téléchargement\acdsee v5.0 powerpac french.exe Infecté : Email-Worm.Win32.Bagle.hk ignoré
C:\Documents and Settings\Administrateur\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\Administrateur\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\WINNT\CSC\00000001 L'objet est verrouillé ignoré
C:\WINNT\Debug\ipsecpa.log L'objet est verrouillé ignoré
C:\WINNT\Debug\oakley.log L'objet est verrouillé ignoré
C:\WINNT\Debug\PASSWD.LOG L'objet est verrouillé ignoré
C:\WINNT\SchedLgU.Txt L'objet est verrouillé ignoré
C:\WINNT\Sti_Trace.log L'objet est verrouillé ignoré
C:\WINNT\system32\config\Antivirus.Evt L'objet est verrouillé ignoré
C:\WINNT\system32\config\AppEvent.Evt L'objet est verrouillé ignoré
C:\WINNT\system32\config\default L'objet est verrouillé ignoré
C:\WINNT\system32\config\default.LOG L'objet est verrouillé ignoré
C:\WINNT\system32\config\SAM L'objet est verrouillé ignoré
C:\WINNT\system32\config\SAM.LOG L'objet est verrouillé ignoré
C:\WINNT\system32\config\SecEvent.Evt L'objet est verrouillé ignoré
C:\WINNT\system32\config\SECURITY L'objet est verrouillé ignoré
C:\WINNT\system32\config\SECURITY.LOG L'objet est verrouillé ignoré
C:\WINNT\system32\config\software L'objet est verrouillé ignoré
C:\WINNT\system32\config\software.LOG L'objet est verrouillé ignoré
C:\WINNT\system32\config\SysEvent.Evt L'objet est verrouillé ignoré
C:\WINNT\system32\config\system L'objet est verrouillé ignoré
C:\WINNT\system32\config\SYSTEM.ALT L'objet est verrouillé ignoré
0
did71 Messages postés 2187 Date d'inscription vendredi 24 mars 2006 Statut Contributeur sécurité Dernière intervention 30 janvier 2010 36
31 janv. 2007 à 22:00
re,

je n'utilise pas thunderbird mais suis le chemin et supprime tout le contenu de :

C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash

Ensuite,

passe un scan en ligne ici:


http://www.bitdefender.fr/scan8/ie.html

puis poste le rapport!

a+
0
Mataf37 Messages postés 30 Date d'inscription lundi 25 décembre 2006 Statut Membre Dernière intervention 23 novembre 2008 1
31 janv. 2007 à 23:30
C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Inbox=>(message 536)=>[Subject: Mail Delivery System][Date: î‘|8’|ÿÿÿÿ2’|«’|ë’|, 15 ˆìÒ 200]=>(MIME part)=>text.zip=>text.msg.cmd


Infecté par: Win32.Worm.Stration.CL

C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Inbox=>(message 536)=>[Subject: Mail Delivery System][Date: î‘|8’|ÿÿÿÿ2’|«’|ë’|, 15 ˆìÒ 200]=>(MIME part)=>text.zip=>text.msg.cmd


Echec de la désinfection

C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Inbox=>(message 536)=>[Subject: Mail Delivery System][Date: î‘|8’|ÿÿÿÿ2’|«’|ë’|, 15 ˆìÒ 200]=>(MIME part)=>text.zip=>text.msg.cmd


Supprimé

C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Inbox=>(message 536)=>[Subject: Mail Delivery System][Date: î‘|8’|ÿÿÿÿ2’|«’|ë’|, 15 ˆìÒ 200]=>(MIME part)=>text.zip


Mis à jour

C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Inbox=>(message 536)=>[Subject: Mail Delivery System][Date: î‘|8’|ÿÿÿÿ2’|«’|ë’|, 15 ˆìÒ 200]=>(MIME part)


Mis à jour

C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Inbox=>(message 536)


Mis à jour

C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Inbox


Mis à jour

C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash=>(message 648)=>[Subject: Mail Delivery System][Date: î‘|8’|ÿÿÿÿ2’|«’|ë’|, 15 ˆìÒ 200]=>(MIME part)=>text.zip=>text.msg.cmd


Infecté par: Win32.Worm.Stration.CL

C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash=>(message 648)=>[Subject: Mail Delivery System][Date: î‘|8’|ÿÿÿÿ2’|«’|ë’|, 15 ˆìÒ 200]=>(MIME part)=>text.zip=>text.msg.cmd


Echec de la désinfection

C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash=>(message 648)=>[Subject: Mail Delivery System][Date: î‘|8’|ÿÿÿÿ2’|«’|ë’|, 15 ˆìÒ 200]=>(MIME part)=>text.zip=>text.msg.cmd


Supprimé

C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash=>(message 648)=>[Subject: Mail Delivery System][Date: î‘|8’|ÿÿÿÿ2’|«’|ë’|, 15 ˆìÒ 200]=>(MIME part)=>text.zip


Mis à jour

C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash=>(message 648)=>[Subject: Mail Delivery System][Date: î‘|8’|ÿÿÿÿ2’|«’|ë’|, 15 ˆìÒ 200]=>(MIME part)


Mis à jour

C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash=>(message 648)


Mis à jour

C:\Documents and Settings\Administrateur\Application Data\Thunderbird\Profiles\6imd5jdm.default\Mail\Local Folders\Trash


Mis à jour

C:\Documents and Settings\Administrateur\Mes documents\Mes images\acdsee v5.0 powerpac french.exe


Infecté par: Win32.Bagle.HI@mm

C:\Documents and Settings\Administrateur\Mes documents\Mes images\acdsee v5.0 powerpac french.exe


Echec de la désinfection

C:\Documents and Settings\Administrateur\Mes documents\Mes images\acdsee v5.0 powerpac french.exe


Supprimé

C:\Documents and Settings\Administrateur\Mes documents\Téléchargement\acdsee v5.0 powerpac french.exe


Infecté par: Win32.Bagle.HI@mm

C:\Documents and Settings\Administrateur\Mes documents\Téléchargement\acdsee v5.0 powerpac french.exe


Echec de la désinfection

C:\Documents and Settings\Administrateur\Mes documents\Téléchargement\acdsee v5.0 powerpac french.exe


Supprimé
0
did71 Messages postés 2187 Date d'inscription vendredi 24 mars 2006 Statut Contributeur sécurité Dernière intervention 30 janvier 2010 36
31 janv. 2007 à 23:49
re,


bitdefender a supprimé ce qu'il a détecté!

Comment se comporte le pc?

a+
0
Mataf37 Messages postés 30 Date d'inscription lundi 25 décembre 2006 Statut Membre Dernière intervention 23 novembre 2008 1
1 févr. 2007 à 06:54
bonjour
J'ai toujours qques soucis aprés avoir fait ce que tu m'as demandé j'ai essayé de reinstallé un anti virus gratuit et la toujours le même probleme l'instal ne se fait pas complétement il y a toujours un bug
que se soit avast ou avg (englais) il reste toujours un fichier ashshell.dll
qui semble perturber les installation.
Ce qui fait que en ce moment je me connecte sans aucune protection.
Et je pense que si ce n'est deja fait je recolte tous ce qui traine de mauvais sur le net.
Merci de tes conseils le micro semble se comporter normalement en dehors du probléme cité ci dessus
a+
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Mataf37 Messages postés 30 Date d'inscription lundi 25 décembre 2006 Statut Membre Dernière intervention 23 novembre 2008 1
1 févr. 2007 à 06:56
bonjour
J'ai toujours qques soucis aprés avoir fait ce que tu m'as demandé j'ai essayé de reinstallé un anti virus gratuit et la toujours le même probleme l'instal ne se fait pas complétement il y a toujours un bug
que se soit avast ou avg (englais) il reste toujours un fichier ashshell.dll
qui semble perturber les installation.
Ce qui fait que en ce moment je me connecte sans aucune protection.
Et je pense que si ce n'est deja fait je recolte tous ce qui traine de mauvais sur le net.
a+
0
did71 Messages postés 2187 Date d'inscription vendredi 24 mars 2006 Statut Contributeur sécurité Dernière intervention 30 janvier 2010 36
1 févr. 2007 à 18:56
bonjour,

télécharge HijackThis:

http://pchelpbordeaux.free.fr/logiciels.html

Tutorial:

http://pchelpbordeaux.free.fr/tuto.html

Démo en image:

http://pageperso.aol.fr/balltrap34/demohijack.htm

Fais un scan et poste l'analyse.

a+
0
Mataf37 Messages postés 30 Date d'inscription lundi 25 décembre 2006 Statut Membre Dernière intervention 23 novembre 2008 1
3 févr. 2007 à 13:43
Bonjour excuse moi du retard voici le scan fait avec hijackthis
merci de tes conseils
a+
Logfile of HijackThis v1.99.1
Scan saved at 13:38:28, on 03/02/2007
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\System32\CTsvcCDA.EXE
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\System32\tcpsvcs.exe
C:\WINNT\system32\stisvc.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\System32\MsPMSPSv.exe
C:\WINNT\Explorer.EXE
C:\WINNT\system32\devldr32.exe
C:\Program Files\Creative\SBLive2k\AudioHQ\AHQTB.EXE
C:\Program Files\Creative\ShareDLL\CtNotify.exe
C:\WINNT\system32\atiptaxx.exe
C:\Program Files\Creative\ShareDLL\MediaDet.Exe
C:\WINNT\system32\ctfmon.exe
C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
C:\Program Files\Nikon\NkView5\NkvMon.exe
C:\Documents and Settings\Administrateur\Bureau\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.free.fr/freebox/index.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.free.fr/freebox/index.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - Default URLSearchHook is missing
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [Disc Detector] C:\Program Files\Creative\ShareDLL\CtNotify.exe
O4 - HKLM\..\Run: [UpdReg] C:\WINNT\Updreg.exe
O4 - HKLM\..\Run: [AudioHQ] C:\Program Files\Creative\SBLive2k\AudioHQ\AHQTB.EXE
O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe
O4 - HKCU\..\Run: [ATI Launchpad] "C:\Program Files\ATI Multimedia\main\launchpd.exe"
O4 - HKCU\..\Run: [ctfmon.exe] ctfmon.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: EPSON Status Monitor 3 Environment Check.lnk = C:\WINNT\system32\spool\drivers\w32x86\3\E_SRCV03.EXE
O4 - Global Startup: FotoStation Easy AutoLaunch.lnk = C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: NkvMon.exe.lnk = C:\Program Files\Nikon\NkView5\NkvMon.exe
O9 - Extra button: ATI TV - {44226DFF-747E-4edc-B30C-78752E50CD0C} - C:\Program Files\ATI Multimedia\TV\EXPLBAR.DLL
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O14 - IERESET.INF: START_PAGE_URL=https://www.free.fr/freebox/index.html
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab
O20 - Winlogon Notify: NavLogon - C:\WINNT\System32\NavLogon.dll
O23 - Service: ATI Smart - Unknown owner - C:\WINNT\system32\ati2sgag.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - Unknown owner - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe (file missing)
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINNT\System32\CTsvcCDA.EXE
O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
0
did71 Messages postés 2187 Date d'inscription vendredi 24 mars 2006 Statut Contributeur sécurité Dernière intervention 30 janvier 2010 36
5 févr. 2007 à 19:08
Bonsoir,

désolé du retard!

Quel est exactement le message d'erreur quand tu veux installer un antivirus!

a+
0