Hijackthis resultat... - Page 2

Résolu
  1. l chose on changer ,, j peur d n rien fixer ,, car tout ce que tu ma dit de fixer n c trouver pas la ,, donc j vu un changement c qui v dir d'autre qui ne correspond pas a ca,,,pardonne moi de vous derranger mais j croi qu j du mal faire ,,, ? en clicken encore sur hijackthis ,, un autre log se presenter,,,?? j n sai pas comment faire
    0
    1. Contributeur
      peux tu ecrire normalement car la c´est moi qui ne comprends rien
      0
      1. Contributeur
        repost un hijack this stp
        0
        1. j ouvrir hijack this et puis aulieu de voir le ligne que vous m'avais di de cocher et suprimer ,, ? j vois d'autre ligne ,,,

          donc j voi pas de ligne qui ressemble a ca?car j ouvrir hijack this,, j vois d'autre ligne comme ce si mais qui n ressemble pas a ca?

          :R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://search.imesh.com/sidebar.html?src=ssb
          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.imesh.com/sidebar.html?src=ssb
          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.imesh.com/sidebar.html?src=ssb
          R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.imesh.com/sidebar.html?src=ssb
          O4 - HKLM\..\Run: [MS32DLL] C:\WINDOWS\MFC32DLL.dll.vbs
          O4 - HKUS\S-1-5-18\..\Run: [Tok-Cirrhatus-1860] "C:\Documents and Settings\NetworkService\Local Settings\Application Data\br4743on.exe" (User 'SYSTEM')
          O4 - HKUS\S-1-5-18\..\Run: [Tok-Cirrhatus] (User 'SYSTEM')
          O4 - HKUS\.DEFAULT\..\Run: [Tok-Cirrhatus-1860] "C:\Documents and Settings\NetworkService\Local Settings\Application Data\br4743on.exe" (User 'Default user')
          mais il
          0
          1. Contributeur
            bon post un nouveau hijack this stp
            0
            1. j vien de trouver ca

              Logfile of Trend Micro HijackThis v2.0.2
              Scan saved at 12:49:52 AM, on 11/24/2007
              Platform: Windows XP SP2 (WinNT 5.01.2600)
              MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
              Boot mode: Normal

              Running processes:
              C:\WINDOWS\System32\smss.exe
              C:\WINDOWS\system32\winlogon.exe
              C:\WINDOWS\system32\services.exe
              C:\WINDOWS\system32\lsass.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\System32\svchost.exe
              C:\WINDOWS\Explorer.EXE
              C:\WINDOWS\system32\spoolsv.exe
              C:\Program Files\Aclient\AClient.exe
              C:\WINDOWS\Cpqdiag\Cpqdfwag.exe
              C:\Program Files\ewido anti-spyware 4.0\guard.exe
              c:\program files\mcafee.com\agent\mcdetect.exe
              c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
              C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\system32\igfxtray.exe
              C:\WINDOWS\system32\hkcmd.exe
              C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
              C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
              C:\Program Files\Aclient\AClntUsr.EXE
              C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
              C:\Program Files\QuickTime\qttask.exe
              C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
              C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
              C:\Program Files\Messenger\msmsgs.exe
              C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe
              C:\PROGRA~1\Ahead\NEROPH~1\data\xtras\mssysmgr.exe
              C:\Program Files\Nokia\PC Suite for Nokia 6600\connmngmntbox.exe
              C:\Program Files\Nokia\PC Suite for Nokia 6600\ectaskscheduler.exe
              C:\Program Files\Common Files\Teleca Shared\CapabilityManager.exe
              C:\PROGRA~1\Nokia\PCSUIT~1\Elogerr.exe
              C:\Program Files\Intuwave\Shared\mRouterRunTime\mRouterRuntime.exe
              C:\PROGRA~1\Nokia\PCSUIT~1\BROADC~1.EXE
              C:\PROGRA~1\Nokia\PCSUIT~1\SCRFS.exe
              C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
              C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
              C:\Program Files\Common Files\Teleca Shared\Generic.exe
              C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
              C:\Program Files\Internet Explorer\IEXPLORE.EXE
              C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

              R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www8.hp.com/fr/fr/home.html
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/?p=us
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*https://fr.yahoo.com/?p=us
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*https://fr.yahoo.com/?p=us
              R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/?p=us
              R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
              R3 - URLSearchHook: (no name) - {1BB22D38-A411-4B13-A746-C2A4F4EC7344} - (no file)
              O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
              O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
              O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
              O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
              O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
              O4 - HKLM\..\Run: [Smapp] C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
              O4 - HKLM\..\Run: [DrvLsnr] C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
              O4 - HKLM\..\Run: [srmclean] C:\Cpqs\Scom\srmclean.exe
              O4 - HKLM\..\Run: [SetRefresh] C:\Program Files\Compaq\SetRefresh\SetRefresh.exe
              O4 - HKLM\..\Run: [AClntUsr] C:\Program Files\Aclient\AClntUsr.EXE
              O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
              O4 - HKLM\..\Run: [SsAAD.exe] C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
              O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
              O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
              O4 - HKLM\..\Run: [Ulead AutoDetector v2] C:\Program Files\Common Files\Ulead Systems\AutoDetector\monitor.exe
              O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
              O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
              O4 - HKLM\..\Run: [YSearchProtection] "C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe"
              O4 - HKLM\..\RunServices: [CPQDFWAG] C:\WINDOWS\Cpqdiag\CpqDfwAg.exe
              O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
              O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe"
              O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
              O4 - HKCU\..\Run: [PhotoShow Deluxe Media Manager] C:\PROGRA~1\Ahead\NEROPH~1\data\xtras\mssysmgr.exe
              O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
              O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
              O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
              O4 - Global Startup: PCSuiteForNokia6600 Detect.lnk = ?
              O4 - Global Startup: PCSuiteForNokia6600 TS.lnk = ?
              O4 - Global Startup: WinZip Quick Pick.lnk = D:\WINZIP\WZQKPICK.EXE
              O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
              O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
              O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
              O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
              O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
              O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
              O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
              O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
              O23 - Service: Altiris Client Service (AClient) - Altiris, Inc. - C:\Program Files\Aclient\AClient.exe
              O23 - Service: Remote Diagnostics Enabling Agent (DfwWebAgent) - Hewlett-Packard - C:\WINDOWS\Cpqdiag\Cpqdfwag.exe
              O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
              O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
              O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
              O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
              O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
              O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
              O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
              O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
              O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
              O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
              0
              1. Contributeur
                bon c´est mieux,

                ton antivirus est toujours actif?

                puis

                instale ce par feu :

                zone alarm version personnel :

                http://www.kachouri.com/tuto/tuto-143-zonealarm-installation-du-firewall--pare-feu.html

                puis

                A.V.G :

                -> Télécharger AVG Anti-Spyware (ewido)

                http://www.commentcamarche.net/telecharger/telecharger 218 avg anti spyware

                -> L´installer.

                -> lancer AVG Anti-Spyware et clicker sur le bouton Mise à jour. Patienter...

                p.s : si les mises a jours ne se font pas, elles sont telechargable ici :

                http://downloads.ewido.net/avgas-signatures-full-current.exe

                -> Sur la page "analyse":

                choisir d´abord l'onglet "paramètres".

                sous « Comment réagir » clicker sur « Actions recommandées » et dans le menu déroulant, choisir « Supprimer ».

                -> Lancer le scan, (c´est long...).

                -> A la fin du scan copier Et coller le rapport ici.

                -> Une aide en image au cas ou :

                Tutoriel d´installation et de parametrages :

                http://www.kachouri.com/tuto/tuto-161-avg-anti-spyware-75-pour-votre-securite.html

                post le rapport d´analyse a la fin du scan stp

                @+
                0
                1. bonjour,, no mon antivirus ne pas active,, car je le desinstaller,, mais j voulais installer l'autre antivirus qui est Symantec corporate edution
                  est ce cela est bien si j'installer symantec? car l'anntivirus que j'utiliser etait macafee,, est il n'etait pas ajour,,
                  0
                  1. ok merci ,, donc j laisse tomber SymantecCorporateEdition??
                    0
                    1. Contributeur
                      oui laisse tomber norton, pas tres performant...

                      mais desinstale correctement macafee avant de te lancer dans les installations :

                      Desinstaller McAfee:
                      http://tools.mcafeehelp.com/doc.php?siteid=1&docid=71541&support=ts
                      0
                      1. echoue , sa me di que le programe d'installation na pas trouver le package ou collectif,,, j aussi essayer antivir,,, ca me di que some files are corrupt please install antivir again
                        0
                        1. Contributeur
                          ca doit venir du faite que tu es encore infecté

                          A.V.G :

                          -> Télécharger AVG Anti-Spyware (ewido)

                          https://www.commentcamarche.net/telecharger/ 218 avg anti spyware

                          -> L´installer.

                          -> lancer AVG Anti-Spyware et clicker sur le bouton Mise à jour. Patienter...

                          p.s : si les mises a jours ne se font pas, elles sont telechargable ici :

                          http://downloads.ewido.net/avgas-signatures-full-current.exe

                          -> Sur la page "analyse":

                          choisir d´abord l'onglet "paramètres".

                          sous « Comment réagir » clicker sur « Actions recommandées » et dans le menu déroulant, choisir « Supprimer ».

                          -> Lancer le scan, (c´est long...).

                          -> A la fin du scan copier Et coller le rapport ici.

                          -> Une aide en image au cas ou :

                          Tutoriel d´installation et de parametrages :

                          http://www.kachouri.com/tuto/tuto-161-avg-anti-spyware-75-pour-votre-securite.html

                          post le rapport d´analyse a la fin du scan stp
                          0
                          1. slt j utuliser ewido antispaware et j trouver ca,,,

                            ---------------------------------------------------------
                            ewido anti-spyware - Scan Report
                            ---------------------------------------------------------

                            + Created at: 7:39:02 PM 11/24/2007

                            + Scan result:

                            C:\Documents and Settings\Administrator\Cookies\administrator@2o7[1].txt -> TrackingCookie.2o7 : No action taken.
                            C:\Documents and Settings\Administrator\Cookies\administrator@advertising[2].txt -> TrackingCookie.Advertising : No action taken.
                            C:\Documents and Settings\Administrator\Cookies\administrator@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
                            C:\Documents and Settings\Administrator\Cookies\administrator@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken.
                            C:\Documents and Settings\Administrator\Cookies\administrator@ehg-aha.hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
                            C:\Documents and Settings\Administrator\Cookies\administrator@hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
                            C:\Documents and Settings\Administrator\Cookies\administrator@auto.search.msn[1].txt -> TrackingCookie.Msn : No action taken.
                            C:\Documents and Settings\Administrator\Cookies\administrator@search.msn[1].txt -> TrackingCookie.Msn : No action taken.
                            C:\Documents and Settings\Administrator\Cookies\administrator@questionmarket[2].txt -> TrackingCookie.Questionmarket : No action taken.
                            C:\Documents and Settings\Administrator\Cookies\administrator@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : No action taken.

                            ::Report end
                            0
                            1. Contributeur
                              ok

                              ou en sont tes soucis?
                              0
                              1. salut j f le mis a jour du antivir et puis j scanner voila le resultat
                                j croi que l'ordi va bien maintenant,, mais j reste avec un problem c de ce connecter en utilisent enternet explorer,,, tou le temps il me dit de internet a trouver un problem sur add -on and needs to close, the following add-on was running when the problem occured, the file :flash.ocx
                                macromedia flash 6

                                AntiVir PersonalEdition Classic
                                Report file date: Sunday, November 25, 2007 05:08

                                Scanning for 941284 virus strains and unwanted programs.

                                Licensed to: Avira AntiVir PersonalEdition Classic
                                Serial number: 0000149996-ADJIE-0001
                                Platform: Windows XP
                                Windows version: (Service Pack 2) [5.1.2600]
                                Username: SYSTEM
                                Computer name: HP15786294363

                                Version information:
                                BUILD.DAT : 270 15603 Bytes 9/19/2007 13:32:00
                                AVSCAN.EXE : 7.0.6.1 290856 Bytes 8/23/2007 11:16:29
                                AVSCAN.DLL : 7.0.6.0 49192 Bytes 8/16/2007 10:23:51
                                LUKE.DLL : 7.0.5.3 147496 Bytes 8/14/2007 13:32:47
                                LUKERES.DLL : 7.0.6.1 10280 Bytes 8/21/2007 10:35:20
                                ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 7/18/2007 12:27:15
                                ANTIVIR1.VDF : 7.0.0.0 1640448 Bytes 9/13/2007 12:26:55
                                ANTIVIR2.VDF : 7.0.1.0 1393152 Bytes 11/23/2007 02:04:10
                                ANTIVIR3.VDF : 7.0.1.4 11776 Bytes 11/23/2007 02:04:10
                                AVEWIN32.DLL : 7.6.0.34 3125760 Bytes 11/25/2007 02:04:10
                                AVWINLL.DLL : 1.0.0.7 14376 Bytes 2/26/2007 08:36:26
                                AVPREF.DLL : 7.0.2.2 25640 Bytes 7/18/2007 05:39:17
                                AVREP.DLL : 7.0.0.1 155688 Bytes 4/16/2007 11:16:24
                                AVPACK32.DLL : 7.3.0.15 360488 Bytes 8/3/2007 06:46:00
                                AVREG.DLL : 7.0.1.6 30760 Bytes 7/18/2007 05:17:06
                                AVARKT.DLL : 1.0.0.20 278568 Bytes 8/28/2007 10:26:33
                                AVEVTLOG.DLL : 7.0.0.20 86056 Bytes 7/18/2007 05:10:18
                                NETNT.DLL : 7.0.0.0 7720 Bytes 3/8/2007 09:09:42
                                RCIMAGE.DLL : 7.0.1.30 2342952 Bytes 8/7/2007 10:38:13
                                RCTEXT.DLL : 7.0.62.0 86056 Bytes 8/21/2007 10:50:37
                                SQLITE3.DLL : 3.3.17.1 339968 Bytes 7/23/2007 07:37:21

                                Configuration settings for the scan:
                                Jobname..........................: Complete system scan
                                Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
                                Logging..........................: low
                                Primary action...................: interactive
                                Secondary action.................: ignore
                                Scan master boot sector..........: off
                                Scan boot sector.................: on
                                Boot sectors.....................: C:,
                                Scan memory......................: on
                                Process scan.....................: on
                                Scan registry....................: on
                                Search for rootkits..............: off
                                Scan all files...................: Intelligent file selection
                                Scan archives....................: on
                                Recursion depth..................: 20
                                Smart extensions.................: on
                                Macro heuristic..................: on
                                File heuristic...................: medium

                                Start of the scan: Sunday, November 25, 2007 05:08

                                The scan of running processes will be started
                                Scan process 'avscan.exe' - '1' Module(s) have been scanned
                                Scan process 'avcenter.exe' - '1' Module(s) have been scanned
                                Scan process 'sched.exe' - '1' Module(s) have been scanned
                                Scan process 'avgnt.exe' - '1' Module(s) have been scanned
                                Scan process 'avguard.exe' - '1' Module(s) have been scanned
                                Scan process 'freecell.exe' - '1' Module(s) have been scanned
                                Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
                                Scan process 'alg.exe' - '1' Module(s) have been scanned
                                Scan process 'SSScsiSV.exe' - '1' Module(s) have been scanned
                                Scan process 'SCRFS.exe' - '1' Module(s) have been scanned
                                Scan process 'BROADC~1.EXE' - '1' Module(s) have been scanned
                                Scan process 'Elogerr.exe' - '1' Module(s) have been scanned
                                Scan process 'Ymsgr_tray.exe' - '1' Module(s) have been scanned
                                Scan process 'AClntUsr.EXE' - '1' Module(s) have been scanned
                                Scan process 'mRouterRuntime.exe' - '1' Module(s) have been scanned
                                Scan process 'ECTaskScheduler.exe' - '1' Module(s) have been scanned
                                Scan process 'ConnMngmntBox.exe' - '1' Module(s) have been scanned
                                Scan process 'svchost.exe' - '1' Module(s) have been scanned
                                Scan process 'svchost.exe' - '1' Module(s) have been scanned
                                Scan process 'SMAgent.exe' - '1' Module(s) have been scanned
                                Scan process 'guard.exe' - '1' Module(s) have been scanned
                                Scan process 'CPQDFWAG.EXE' - '1' Module(s) have been scanned
                                Scan process 'mssysmgr.exe' - '1' Module(s) have been scanned
                                Scan process 'NMBgMonitor.exe' - '1' Module(s) have been scanned
                                Scan process 'msmsgs.exe' - '1' Module(s) have been scanned
                                Scan process 'ACLIENT.EXE' - '1' Module(s) have been scanned
                                Scan process 'SearchProtection.exe' - '1' Module(s) have been scanned
                                Scan process 'qttask.exe' - '1' Module(s) have been scanned
                                Scan process 'SSAAD.exe' - '1' Module(s) have been scanned
                                Scan process 'DrvLsnr.exe' - '1' Module(s) have been scanned
                                Scan process 'SMTray.exe' - '1' Module(s) have been scanned
                                Scan process 'hkcmd.exe' - '1' Module(s) have been scanned
                                Scan process 'igfxtray.exe' - '1' Module(s) have been scanned
                                Scan process 'explorer.exe' - '1' Module(s) have been scanned
                                Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
                                Scan process 'svchost.exe' - '1' Module(s) have been scanned
                                Scan process 'svchost.exe' - '1' Module(s) have been scanned
                                Scan process 'svchost.exe' - '1' Module(s) have been scanned
                                Scan process 'svchost.exe' - '1' Module(s) have been scanned
                                Scan process 'svchost.exe' - '1' Module(s) have been scanned
                                Scan process 'lsass.exe' - '1' Module(s) have been scanned
                                Scan process 'services.exe' - '1' Module(s) have been scanned
                                Scan process 'winlogon.exe' - '1' Module(s) have been scanned
                                Scan process 'csrss.exe' - '1' Module(s) have been scanned
                                Scan process 'smss.exe' - '1' Module(s) have been scanned
                                45 processes with 45 modules were scanned

                                Start scanning boot sectors:
                                Boot sector 'C:\'
                                [NOTE] No virus was found!

                                Starting to scan the registry.
                                The registry was scanned ( '36' files ).

                                Starting the file scan:

                                Begin scan in 'C:\'
                                C:\hiberfil.sys
                                [WARNING] The file could not be opened!
                                C:\pagefile.sys
                                [WARNING] The file could not be opened!
                                C:\Documents and Settings\Administrator\Local Settings\Application Data\JunkAtx18.bin
                                [DETECTION] Contains detection pattern of the worm WORM/Brontok.N.1
                                [INFO] The file was deleted!
                                C:\Documents and Settings\Guest\Local Settings\Application Data\JunkAtx18.bin
                                [DETECTION] Contains detection pattern of the worm WORM/Brontok.N.1
                                [INFO] The file was deleted!
                                C:\Documents and Settings\NetworkService\Local Settings\Application Data\JunkAtx18.bin
                                [DETECTION] Contains detection pattern of the worm WORM/Brontok.N.1
                                [INFO] The file was deleted!
                                C:\Documents and Settings\wbm30\Local Settings\Temp\vylid.dll
                                [DETECTION] Is the Trojan horse TR/Crypt.NSPM.Gen
                                [INFO] The file was deleted!
                                C:\System Volume Information\_restore{D0D4C289-1775-4E84-B8F1-E8133151EDAF}\RP5\A0002172.dll
                                [DETECTION] Is the Trojan horse TR/Crypt.NSPM.Gen
                                [INFO] The file was deleted!
                                C:\System Volume Information\_restore{D0D4C289-1775-4E84-B8F1-E8133151EDAF}\RP6\A0002199.exe
                                [DETECTION] Is the Trojan horse TR/Crypt.NSPM.Gen
                                [INFO] The file was deleted!
                                C:\System Volume Information\_restore{D0D4C289-1775-4E84-B8F1-E8133151EDAF}\RP6\A0002200.dll
                                [DETECTION] Is the Trojan horse TR/Crypt.NSPM.Gen
                                [INFO] The file was deleted!
                                C:\System Volume Information\_restore{D0D4C289-1775-4E84-B8F1-E8133151EDAF}\RP7\A0002247.com
                                [DETECTION] Is the Trojan horse TR/Crypt.NSPM.Gen
                                [INFO] The file was deleted!

                                End of the scan: Sunday, November 25, 2007 05:38
                                Used time: 30:36 min

                                The scan has been done completely.

                                6200 Scanning directories
                                183523 Files were scanned
                                8 viruses and/or unwanted programs were found
                                0 Files were classified as suspicious:
                                8 files were deleted
                                0 files were repaired
                                0 files were moved to quarantine
                                0 files were renamed
                                2 Files cannot be scanned
                                183515 Files not concerned
                                7536 Archives were scanned
                                2 Warnings
                                1 Notes
                                0
                                1. Contributeur
                                  bonjour,

                                  fais ceci :

                                  Désactive ta restauration système:
                                  pour cela :
                                  Click droit sur poste de travail, dans l´arborescence sur propriétés;
                                  dans la nouvelle fenettre click sur l´onglet restauration système;
                                  coche la case désactiver la restauration systèm et applique.
                                  puis redemarre le pc et click droit sur poste de travail, dans l´arborescence sur propriétés;
                                  dans la nouvelle fenettre click sur l´onglet restauration systèm
                                  décoche la case désactiver la restauration systèm et applique.

                                  et

                                  regarde ceci pour desinstaller macromedia falsh player :

                                  Programmes de désinstallation de Flash Player 6

                                  https://www.adobe.com/?id=tn_14157

                                  tu peux en suite installer la derniere version :

                                  https://get.adobe.com/flashplayer/

                                  @+
                                  0
                                  1. oooooooooooh vraiment Merci ,, tout va bien maintenant,,, j Désactive ma restauration système j bien suivi tou l etapes,,,j aussi desinstaller macromedia flash et maintenant ,, tou va bien,, , est vraiment encore une fois merci infiniment pour votre aide????ca r tu ma bien aide ....
                                    .a +
                                    0
                                    1. Contributeur
                                      de rien ;-)

                                      tiens moi au courrant

                                      bon dimanche

                                      @+
                                      0
                                      Précédent
                                      • 1
                                      • 2