Raport sdfix

missjenny -  
clownface Messages postés 1490 Statut Membre -
jai telecharger sdfix et je ne sai pas quoi faire apres le raport voici le raport :SDFix: Version 1.104

Run by Jenny on 16/09/2007 at 16:52

Microsoft Windows XP [version 5.1.2600]

Running From: C:\SDFix

Safe Mode:
Checking Services:

Name:
ntndis

ImagePath:
\??\C:\WINDOWS\system32\drivers\ntndis.sys

ntndis - Deleted

Restoring Windows Registry Values
Restoring Windows Default Hosts File

Rebooting...

Service xpdx - Deleted after Reboot

Normal Mode:
Checking Files:

Trojan Files Found:

C:\Documents and Settings\Jenny\auto.txt - Deleted
C:\WINDOWS\beachpicture0.zip - Deleted
C:\WINDOWS\beachpicture15.zip - Deleted
C:\WINDOWS\beachpicture21.zip - Deleted
C:\WINDOWS\beachpicture24.zip - Deleted
C:\WINDOWS\beachpicture27.zip - Deleted
C:\WINDOWS\beachpicture3.zip - Deleted
C:\WINDOWS\beachpicture30.zip - Deleted
C:\WINDOWS\beachpicture33.zip - Deleted
C:\WINDOWS\beachpicture36.zip - Deleted
C:\WINDOWS\beachpicture39.zip - Deleted
C:\WINDOWS\beachpicture42.zip - Deleted
C:\WINDOWS\beachpicture48.zip - Deleted
C:\WINDOWS\beachpicture54.zip - Deleted
C:\WINDOWS\beachpicture6.zip - Deleted
C:\WINDOWS\beachpicture60.zip - Deleted
C:\WINDOWS\beachpicture63.zip - Deleted
C:\WINDOWS\beachpicture66.zip - Deleted
C:\WINDOWS\beachpicture69.zip - Deleted
C:\WINDOWS\beachpicture78.zip - Deleted
C:\WINDOWS\beachpicture81.zip - Deleted
C:\WINDOWS\beachpicture84.zip - Deleted
C:\WINDOWS\beachpicture87.zip - Deleted
C:\WINDOWS\beachpicture9.zip - Deleted
C:\WINDOWS\beachpicture90.zip - Deleted
C:\WINDOWS\DSC0343510.zip - Deleted
C:\WINDOWS\DSC0343513.zip - Deleted
C:\WINDOWS\DSC0343516.zip - Deleted
C:\WINDOWS\DSC0343519.zip - Deleted
C:\WINDOWS\DSC0343522.zip - Deleted
C:\WINDOWS\DSC0343525.zip - Deleted
C:\WINDOWS\DSC0343528.zip - Deleted
C:\WINDOWS\DSC0343534.zip - Deleted
C:\WINDOWS\DSC034354.zip - Deleted
C:\WINDOWS\DSC0343540.zip - Deleted
C:\WINDOWS\DSC0343543.zip - Deleted
C:\WINDOWS\DSC0343546.zip - Deleted
C:\WINDOWS\DSC0343549.zip - Deleted
C:\WINDOWS\DSC0343552.zip - Deleted
C:\WINDOWS\DSC0343555.zip - Deleted
C:\WINDOWS\DSC0343558.zip - Deleted
C:\WINDOWS\DSC0343564.zip - Deleted
C:\WINDOWS\DSC0343567.zip - Deleted
C:\WINDOWS\DSC034357.zip - Deleted
C:\WINDOWS\DSC0343570.zip - Deleted
C:\WINDOWS\DSC0343573.zip - Deleted
C:\WINDOWS\DSC0343588.zip - Deleted
C:\WINDOWS\DSC0343591.zip - Deleted
C:\WINDOWS\DSC0343594.zip - Deleted
C:\WINDOWS\DSC0343597.zip - Deleted
C:\WINDOWS\IMG12.zip - Deleted
C:\WINDOWS\IMG18.zip - Deleted
C:\WINDOWS\IMG21.zip - Deleted
C:\WINDOWS\IMG27.zip - Deleted
C:\WINDOWS\IMG3.zip - Deleted
C:\WINDOWS\IMG33.zip - Deleted
C:\WINDOWS\IMG39.zip - Deleted
C:\WINDOWS\IMG42.zip - Deleted
C:\WINDOWS\IMG45.zip - Deleted
C:\WINDOWS\IMG48.zip - Deleted
C:\WINDOWS\IMG54.zip - Deleted
C:\WINDOWS\IMG57.zip - Deleted
C:\WINDOWS\IMG6.zip - Deleted
C:\WINDOWS\IMG66.zip - Deleted
C:\WINDOWS\IMG72.zip - Deleted
C:\WINDOWS\IMG81.zip - Deleted
C:\WINDOWS\IMG8438711.zip - Deleted
C:\WINDOWS\IMG8438717.zip - Deleted
C:\WINDOWS\IMG843872.zip - Deleted
C:\WINDOWS\IMG8438720.zip - Deleted
C:\WINDOWS\IMG8438723.zip - Deleted
C:\WINDOWS\IMG8438726.zip - Deleted
C:\WINDOWS\IMG8438729.zip - Deleted
C:\WINDOWS\IMG8438732.zip - Deleted
C:\WINDOWS\IMG8438735.zip - Deleted
C:\WINDOWS\IMG8438741.zip - Deleted
C:\WINDOWS\IMG8438744.zip - Deleted
C:\WINDOWS\IMG8438747.zip - Deleted
C:\WINDOWS\IMG8438750.zip - Deleted
C:\WINDOWS\IMG8438753.zip - Deleted
C:\WINDOWS\IMG8438756.zip - Deleted
C:\WINDOWS\IMG8438759.zip - Deleted
C:\WINDOWS\IMG8438762.zip - Deleted
C:\WINDOWS\IMG8438771.zip - Deleted
C:\WINDOWS\IMG8438777.zip - Deleted
C:\WINDOWS\IMG843878.zip - Deleted
C:\WINDOWS\IMG8438780.zip - Deleted
C:\WINDOWS\IMG8438783.zip - Deleted
C:\WINDOWS\IMG8438786.zip - Deleted
C:\WINDOWS\IMG8438792.zip - Deleted
C:\WINDOWS\IMG8438795.zip - Deleted
C:\WINDOWS\IMG90.zip - Deleted
C:\WINDOWS\love0.zip - Deleted
C:\WINDOWS\love15.zip - Deleted
C:\WINDOWS\love18.zip - Deleted
C:\WINDOWS\love21.zip - Deleted
C:\WINDOWS\love24.zip - Deleted
C:\WINDOWS\love27.zip - Deleted
C:\WINDOWS\love3.zip - Deleted
C:\WINDOWS\love33.zip - Deleted
C:\WINDOWS\love36.zip - Deleted
C:\WINDOWS\love45.zip - Deleted
C:\WINDOWS\love48.zip - Deleted
C:\WINDOWS\love51.zip - Deleted
C:\WINDOWS\love6.zip - Deleted
C:\WINDOWS\love60.zip - Deleted
C:\WINDOWS\love63.zip - Deleted
C:\WINDOWS\love66.zip - Deleted
C:\WINDOWS\love75.zip - Deleted
C:\WINDOWS\love78.zip - Deleted
C:\WINDOWS\love84.zip - Deleted
C:\WINDOWS\love87.zip - Deleted
C:\WINDOWS\love9.zip - Deleted
C:\WINDOWS\love90.zip - Deleted
C:\WINDOWS\love93.zip - Deleted
C:\WINDOWS\love96.zip - Deleted
C:\WINDOWS\Photo10.zip - Deleted
C:\WINDOWS\Photo13.zip - Deleted
C:\WINDOWS\Photo16.zip - Deleted
C:\WINDOWS\Photo22.zip - Deleted
C:\WINDOWS\Photo28.zip - Deleted
C:\WINDOWS\photo3.zip - Deleted
C:\WINDOWS\Photo31.zip - Deleted
C:\WINDOWS\photo36.zip - Deleted
C:\WINDOWS\photo39.zip - Deleted
C:\WINDOWS\Photo4.zip - Deleted
C:\WINDOWS\Photo40.zip - Deleted
C:\WINDOWS\photo42.zip - Deleted
C:\WINDOWS\Photo43.zip - Deleted
C:\WINDOWS\Photo46.zip - Deleted
C:\WINDOWS\Photo49.zip - Deleted
C:\WINDOWS\Photo52.zip - Deleted
C:\WINDOWS\Photo55.zip - Deleted
C:\WINDOWS\Photo58.zip - Deleted
C:\WINDOWS\Photo61.zip - Deleted
C:\WINDOWS\Photo64.zip - Deleted
C:\WINDOWS\Photo67.zip - Deleted
C:\WINDOWS\Photo70.zip - Deleted
C:\WINDOWS\Photo73.zip - Deleted
C:\WINDOWS\Photo82.zip - Deleted
C:\WINDOWS\Photo85.zip - Deleted
C:\WINDOWS\Photo88.zip - Deleted
C:\WINDOWS\Photo91.zip - Deleted
C:\WINDOWS\Photo94.zip - Deleted
C:\WINDOWS\Photo97.zip - Deleted
C:\WINDOWS\Photos-JPG2.zip - Deleted
C:\WINDOWS\Photos-JPG20.zip - Deleted
C:\WINDOWS\Photos-JPG23.zip - Deleted
C:\WINDOWS\Photos-JPG29.zip - Deleted
C:\WINDOWS\Photos-JPG32.zip - Deleted
C:\WINDOWS\Photos-JPG41.zip - Deleted
C:\WINDOWS\Photos-JPG44.zip - Deleted
C:\WINDOWS\Photos-JPG5.zip - Deleted
C:\WINDOWS\Photos-JPG50.zip - Deleted
C:\WINDOWS\Photos-JPG56.zip - Deleted
C:\WINDOWS\Photos-JPG59.zip - Deleted
C:\WINDOWS\Photos-JPG62.zip - Deleted
C:\WINDOWS\Photos-JPG65.zip - Deleted
C:\WINDOWS\Photos-JPG68.zip - Deleted
C:\WINDOWS\Photos-JPG71.zip - Deleted
C:\WINDOWS\Photos-JPG77.zip - Deleted
C:\WINDOWS\Photos-JPG8.zip - Deleted
C:\WINDOWS\Photos-JPG86.zip - Deleted
C:\WINDOWS\Photos-JPG92.zip - Deleted
C:\WINDOWS\Photos-JPG95.zip - Deleted
C:\WINDOWS\photos052.zip - Deleted
C:\WINDOWS\photos070.zip - Deleted
C:\WINDOWS\photos076.zip - Deleted
C:\WINDOWS\PICS1.zip - Deleted
C:\WINDOWS\PICS13.zip - Deleted
C:\WINDOWS\PICS22.zip - Deleted
C:\WINDOWS\PICS31.zip - Deleted
C:\WINDOWS\PICS37.zip - Deleted
C:\WINDOWS\PICS4.zip - Deleted
C:\WINDOWS\PICS43.zip - Deleted
C:\WINDOWS\PICS52.zip - Deleted
C:\WINDOWS\PICS58.zip - Deleted
C:\WINDOWS\PICS61.zip - Deleted
C:\WINDOWS\PICS64.zip - Deleted
C:\WINDOWS\PICS67.zip - Deleted
C:\WINDOWS\PICS70.zip - Deleted
C:\WINDOWS\PICS76.zip - Deleted
C:\WINDOWS\PICS79.zip - Deleted
C:\WINDOWS\PICS85.zip - Deleted
C:\WINDOWS\PICS91.zip - Deleted
C:\WINDOWS\PICS97.zip - Deleted
C:\WINDOWS\secretimages11.zip - Deleted
C:\WINDOWS\secretimages2.zip - Deleted
C:\WINDOWS\secretimages20.zip - Deleted
C:\WINDOWS\secretimages26.zip - Deleted
C:\WINDOWS\secretimages29.zip - Deleted
C:\WINDOWS\secretimages32.zip - Deleted
C:\WINDOWS\secretimages38.zip - Deleted
C:\WINDOWS\secretimages41.zip - Deleted
C:\WINDOWS\secretimages44.zip - Deleted
C:\WINDOWS\secretimages47.zip - Deleted
C:\WINDOWS\secretimages5.zip - Deleted
C:\WINDOWS\secretimages50.zip - Deleted
C:\WINDOWS\secretimages56.zip - Deleted
C:\WINDOWS\secretimages59.zip - Deleted
C:\WINDOWS\secretimages62.zip - Deleted
C:\WINDOWS\secretimages65.zip - Deleted
C:\WINDOWS\secretimages68.zip - Deleted
C:\WINDOWS\secretimages71.zip - Deleted
C:\WINDOWS\secretimages74.zip - Deleted
C:\WINDOWS\secretimages77.zip - Deleted
C:\WINDOWS\secretimages8.zip - Deleted
C:\WINDOWS\secretimages86.zip - Deleted
C:\WINDOWS\secretimages89.zip - Deleted
C:\WINDOWS\secretimages92.zip - Deleted
C:\WINDOWS\secretimages98.zip - Deleted
C:\WINDOWS\svchost.DLL - Deleted
C:\WINDOWS\system32\syspoint.dll - Deleted
C:\WINDOWS\system32\syspoints.dll - Deleted
C:\WINDOWS\system32\xpdx.sys - Deleted

Removing Temp Files...

ADS Check:

C:\WINDOWS
No streams found.

C:\WINDOWS\system32
No streams found.

C:\WINDOWS\system32\svchost.exe
No streams found.

C:\WINDOWS\system32\ntoskrnl.exe
No streams found.

Final Check:

Remaining Services:
------------------

Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\\WINDOWS\\PCHEALTH\\HELPCTR\\Binaries\\helpctr.exe"="C:\\WINDOWS\\PCHEALTH\\HELPCTR\\Binaries\\helpctr.exe:*:Enabled:Assistance … distance - Windows Messenger et voix"
"C:\\Documents and Settings\\Jenny\\szmpuh.exe"="C:\\Documents and Settings\\Jenny\\szmpuh.exe:*:Enabled:Control"
"C:\\WINDOWS\\system32\\msnmsgr.exe"="C:\\WINDOWS\\system32\\msnmsgr.exe:*:Enabled:Windows Update"
"C:\\Documents and Settings\\Jenny\\eznewf.exe"="C:\\Documents and Settings\\Jenny\\eznewf.exe:*:Enabled:Control"
"C:\\Documents and Settings\\Jenny\\mwcmnz.exe"="C:\\Documents and Settings\\Jenny\\mwcmnz.exe:*:Enabled:Control"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"

Remaining Files:
---------------

File Backups: - C:\SDFix\backups\backups.zip

Files with Hidden Attributes:

C:\Documents and Settings\Jenny\Local Settings\Application Data\Microsoft\Messenger\jennydu33640@hotmail.fr\Sharing Folders\oncebobleponge@hotmail.com\Thumbs.db
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Picasa2\setup.exe
C:\WINDOWS\BricoPacks\SysFiles\79_iexplore.exe
C:\WINDOWS\BricoPacks\SysFiles\80_msimn.exe
C:\WINDOWS\SoftwareDistribution\Download\5bfc2df566e0403671b1abf7e607c521\BIT39.tmp

Finished!
A voir également:

1 réponse

clownface Messages postés 1490 Statut Membre 73
 
Bonjour,

Merci de ne pas créer plusieurs sujet pour un meme problème,
poste ce log sur le bon sujet : virus sur msn#0
et fermes celui ci
0