Rapport hijackthis a décripter!!!
djeff-30
-
jlpjlp Messages postés 52399 Statut Contributeur sécurité -
jlpjlp Messages postés 52399 Statut Contributeur sécurité -
Bonjour,problèmes avec internet explorer qui cesse sans arret de fonctionner..???merci d'avance a celui ou celle qui pourra m'aider:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:11:52, on 09/05/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16643)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\System32\s3trayp.exe
C:\Program Files\VIA\VIAudioi\VistaADeck\HDAudioCPL.exe
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\Windows\System32\spool\drivers\w32x86\3\E_FATICDE.EXE
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Windows\Explorer.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [S3Trayp] S3trayp.exe
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VistaADeck\HDAudioCPL.exe 1
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [EPSON Stylus DX7400 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICDE.EXE /FU "C:\Windows\TEMP\E_SB824.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [siteblah] "C:\ProgramData\okay meet meet.tc66x"
O4 - HKCU\..\Run: [Itch ford four knob] "C:\ProgramData\Thunk Else Show.l27vhj7"
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'Default user')
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O13 - Gopher Prefix:
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: IviRegMgr - InterVideo - c:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: Fujitsu Siemens Computers Diagnostic Testhandler (TestHandler) - Fujitsu Siemens Computers - C:\firststeps\OnlineDiagnostic\TestManager\TestHandler.exe
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:11:52, on 09/05/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16643)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\System32\s3trayp.exe
C:\Program Files\VIA\VIAudioi\VistaADeck\HDAudioCPL.exe
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\Windows\System32\spool\drivers\w32x86\3\E_FATICDE.EXE
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Windows\Explorer.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [S3Trayp] S3trayp.exe
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VistaADeck\HDAudioCPL.exe 1
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [EPSON Stylus DX7400 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICDE.EXE /FU "C:\Windows\TEMP\E_SB824.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [siteblah] "C:\ProgramData\okay meet meet.tc66x"
O4 - HKCU\..\Run: [Itch ford four knob] "C:\ProgramData\Thunk Else Show.l27vhj7"
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'Default user')
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O13 - Gopher Prefix:
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: IviRegMgr - InterVideo - c:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: Fujitsu Siemens Computers Diagnostic Testhandler (TestHandler) - Fujitsu Siemens Computers - C:\firststeps\OnlineDiagnostic\TestManager\TestHandler.exe
A voir également:
- Rapport hijackthis a décripter!!!
- Hijackthis - Télécharger - Antivirus & Antimalwares
- Plan rapport de stage - Guide
- Rapport de crash windows - Guide
- On vous a donné accès à un fichier rapport. il est partagé avec plusieurs personnes sur cet espace pix cloud. répondez aux questions - Forum Cloud
- Impossible d'afficher le rapport de tableau croisé dynamique sur un rapport existant ✓ - Forum Excel
24 réponses
voila le suivant..activ scan:c'est bien panda??
;***********************************************************************************************************************************************************************************
ANALYSIS: 2008-05-13 19:38:24
PROTECTIONS: 1
MALWARE: 22
SUSPECTS: 0
;***********************************************************************************************************************************************************************************
PROTECTIONS
Description Version Active Updated
;===================================================================================================================================================================================
avast! antivirus 4.8.1169 [VPS 080513-0] 4.8.1169 No Yes
;===================================================================================================================================================================================
MALWARE
Id Description Type Active Severity Disinfectable Disinfected Location
;===================================================================================================================================================================================
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@doubleclick[1].txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No C:\Users\owen\AppData\Roaming\Microsoft\Windows\Cookies\Low\owen@doubleclick[1].txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.atdmt.com/]
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\eilidh@atdmt[2].txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@atdmt[2].txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.atdmt.com/]
00139535 Application/Processor HackTools No 0 Yes No C:\Lop SD\Process.exe
00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@tradedoubler[2].txt
00145405 Cookie/RealMedia TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.247realmedia.com/]
00145405 Cookie/RealMedia TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.247realmedia.com/]
00145457 Cookie/FastClick TrackingCookie No 0 Yes No C:\Users\owen\AppData\Roaming\Microsoft\Windows\Cookies\Low\owen@fastclick[2].txt
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.tribalfusion.com/]
00145738 Cookie/Mediaplex TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@mediaplex[1].txt
00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Microsoft\Windows\Cookies\jeff@xiti[1].txt
00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Users\owen\AppData\Roaming\Microsoft\Windows\Cookies\Low\owen@xiti[1].txt
00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Microsoft\Windows\Cookies\Low\jeff@xiti[1].txt
00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.xiti.com/]
00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.xiti.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[ad.yieldmanager.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[ad.yieldmanager.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[ad.yieldmanager.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[ad.yieldmanager.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[ad.yieldmanager.com/]
00168061 Cookie/Apmebf TrackingCookie No 0 Yes No C:\Users\owen\AppData\Roaming\Microsoft\Windows\Cookies\Low\owen@apmebf[1].txt
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@serving-sys[2].txt
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.serving-sys.com/]
00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.bs.serving-sys.com/]
00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@bs.serving-sys[1].txt
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Microsoft\Windows\Cookies\jeff@weborama[1].txt
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.weborama.fr/]
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@weborama[1].txt
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.weborama.fr/]
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.weborama.fr/]
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.weborama.fr/]
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.weborama.fr/]
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.weborama.fr/]
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\eilidh@weborama[2].txt
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.weborama.fr/]
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Microsoft\Windows\Cookies\Low\jeff@weborama[1].txt
00168116 Cookie/Comclick TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[fl01.ct2.comclick.com/]
00168116 Cookie/Comclick TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[fl01.ct2.comclick.com/]
00168116 Cookie/Comclick TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[fl01.ct2.comclick.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@advertising[2].txt
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\eilidh@advertising[2].txt
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.advertising.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Microsoft\Windows\Cookies\jeff@ads.pointroll[2].txt
00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Users\owen\AppData\Roaming\Microsoft\Windows\Cookies\Low\owen@overture[1].txt
00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@overture[1].txt
00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.overture.com/]
00173520 Cookie/Bluestreak TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\eilidh@bluestreak[1].txt
00173520 Cookie/Bluestreak TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@bluestreak[1].txt
00173520 Cookie/Bluestreak TrackingCookie No 0 Yes No C:\Users\owen\AppData\Roaming\Microsoft\Windows\Cookies\Low\owen@bluestreak[1].txt
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.smartadserver.com/]
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@smartadserver[2].txt
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.smartadserver.com/]
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.smartadserver.com/]
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\owen\AppData\Roaming\Microsoft\Windows\Cookies\Low\owen@smartadserver[1].txt
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.smartadserver.com/]
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Microsoft\Windows\Cookies\Low\jeff@smartadserver[1].txt
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.smartadserver.com/]
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.smartadserver.com/]
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.smartadserver.com/]
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.smartadserver.com/]
01176994 Bck/VB.XB Virus/Trojan No 0 No No C:\Users\jeff\AppData\Local\Mozilla\Firefox\Profiles\zeqkb84w.default\Cache\C2152591d01[327882R2FWJFW\NirCmdC.cfexe]
01176994 Bck/VB.XB Virus/Trojan No 0 No No C:\Users\jeff\Desktop\ComboFix.exe[327882R2FWJFW\NirCmdC.cfexe]
01185375 Application/Psexec.A HackTools No 0 Yes No C:\Windows\PSEXESVC.EXE
;===================================================================================================================================================================================
SUSPECTS
Sent Location ۖ@�(
3
;===================================================================================================================================================================================
;===================================================================================================================================================================================
VULNERABILITIES
Id Severity Description ۖ@�(
3
;===================================================================================================================================================================================
184379 MEDIUM MS08-001 ۖ@�(
3
182048 HIGH MS07-069 ۖ@�(
3
176382 HIGH MS07-057 ۖ@�(
3
170906 HIGH MS07-045 ۖ@�(
3
164913 HIGH MS07-033 ۖ@�(
3
160623 HIGH MS07-027 ۖ@�(
3
;===================================================================================================================================================================================
je crois bien que cette fois il y a quelques trucs pas clairs!!!non??
;***********************************************************************************************************************************************************************************
ANALYSIS: 2008-05-13 19:38:24
PROTECTIONS: 1
MALWARE: 22
SUSPECTS: 0
;***********************************************************************************************************************************************************************************
PROTECTIONS
Description Version Active Updated
;===================================================================================================================================================================================
avast! antivirus 4.8.1169 [VPS 080513-0] 4.8.1169 No Yes
;===================================================================================================================================================================================
MALWARE
Id Description Type Active Severity Disinfectable Disinfected Location
;===================================================================================================================================================================================
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@doubleclick[1].txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No C:\Users\owen\AppData\Roaming\Microsoft\Windows\Cookies\Low\owen@doubleclick[1].txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.atdmt.com/]
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\eilidh@atdmt[2].txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@atdmt[2].txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.atdmt.com/]
00139535 Application/Processor HackTools No 0 Yes No C:\Lop SD\Process.exe
00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@tradedoubler[2].txt
00145405 Cookie/RealMedia TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.247realmedia.com/]
00145405 Cookie/RealMedia TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.247realmedia.com/]
00145457 Cookie/FastClick TrackingCookie No 0 Yes No C:\Users\owen\AppData\Roaming\Microsoft\Windows\Cookies\Low\owen@fastclick[2].txt
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.tribalfusion.com/]
00145738 Cookie/Mediaplex TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@mediaplex[1].txt
00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Microsoft\Windows\Cookies\jeff@xiti[1].txt
00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Users\owen\AppData\Roaming\Microsoft\Windows\Cookies\Low\owen@xiti[1].txt
00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Microsoft\Windows\Cookies\Low\jeff@xiti[1].txt
00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.xiti.com/]
00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.xiti.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[ad.yieldmanager.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[ad.yieldmanager.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[ad.yieldmanager.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[ad.yieldmanager.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[ad.yieldmanager.com/]
00168061 Cookie/Apmebf TrackingCookie No 0 Yes No C:\Users\owen\AppData\Roaming\Microsoft\Windows\Cookies\Low\owen@apmebf[1].txt
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@serving-sys[2].txt
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.serving-sys.com/]
00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.bs.serving-sys.com/]
00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@bs.serving-sys[1].txt
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Microsoft\Windows\Cookies\jeff@weborama[1].txt
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.weborama.fr/]
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@weborama[1].txt
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.weborama.fr/]
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.weborama.fr/]
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.weborama.fr/]
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.weborama.fr/]
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.weborama.fr/]
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\eilidh@weborama[2].txt
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.weborama.fr/]
00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Microsoft\Windows\Cookies\Low\jeff@weborama[1].txt
00168116 Cookie/Comclick TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[fl01.ct2.comclick.com/]
00168116 Cookie/Comclick TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[fl01.ct2.comclick.com/]
00168116 Cookie/Comclick TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[fl01.ct2.comclick.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@advertising[2].txt
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\eilidh@advertising[2].txt
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.advertising.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Microsoft\Windows\Cookies\jeff@ads.pointroll[2].txt
00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Users\owen\AppData\Roaming\Microsoft\Windows\Cookies\Low\owen@overture[1].txt
00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@overture[1].txt
00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.overture.com/]
00173520 Cookie/Bluestreak TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\eilidh@bluestreak[1].txt
00173520 Cookie/Bluestreak TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@bluestreak[1].txt
00173520 Cookie/Bluestreak TrackingCookie No 0 Yes No C:\Users\owen\AppData\Roaming\Microsoft\Windows\Cookies\Low\owen@bluestreak[1].txt
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.smartadserver.com/]
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Microsoft\Windows\Cookies\Low\eilidh@smartadserver[2].txt
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.smartadserver.com/]
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.smartadserver.com/]
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\owen\AppData\Roaming\Microsoft\Windows\Cookies\Low\owen@smartadserver[1].txt
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.smartadserver.com/]
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Microsoft\Windows\Cookies\Low\jeff@smartadserver[1].txt
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.smartadserver.com/]
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.smartadserver.com/]
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\eilidh\AppData\Roaming\Mozilla\Firefox\Profiles\iemn9a5j.default\cookies.txt[.smartadserver.com/]
00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\jeff\AppData\Roaming\Mozilla\Firefox\Profiles\zeqkb84w.default\cookies.txt[.smartadserver.com/]
01176994 Bck/VB.XB Virus/Trojan No 0 No No C:\Users\jeff\AppData\Local\Mozilla\Firefox\Profiles\zeqkb84w.default\Cache\C2152591d01[327882R2FWJFW\NirCmdC.cfexe]
01176994 Bck/VB.XB Virus/Trojan No 0 No No C:\Users\jeff\Desktop\ComboFix.exe[327882R2FWJFW\NirCmdC.cfexe]
01185375 Application/Psexec.A HackTools No 0 Yes No C:\Windows\PSEXESVC.EXE
;===================================================================================================================================================================================
SUSPECTS
Sent Location ۖ@�(
3
;===================================================================================================================================================================================
;===================================================================================================================================================================================
VULNERABILITIES
Id Severity Description ۖ@�(
3
;===================================================================================================================================================================================
184379 MEDIUM MS08-001 ۖ@�(
3
182048 HIGH MS07-069 ۖ@�(
3
176382 HIGH MS07-057 ۖ@�(
3
170906 HIGH MS07-045 ۖ@�(
3
164913 HIGH MS07-033 ۖ@�(
3
160623 HIGH MS07-027 ۖ@�(
3
;===================================================================================================================================================================================
je crois bien que cette fois il y a quelques trucs pas clairs!!!non??
bonsoir!!c'est fait!!je m'attendais a plus long comme rapport:j'espere que je n'ai rien oublié?
C:\Users\jeff\AppData\Local\Mozilla\Firefox\Profiles\zeqkb84w.default\Cache\C2152591d01 moved successfully.
File move failed. C:\Windows\PSEXESVC.EXE scheduled to be moved on reboot.
OTMoveIt2 by OldTimer - Version 1.0.4.1 log created on 05132008_230547
bon je vire OTMoveIt et je nettoie avec CCleaner(je l'ai déja!!)je revien demain dans la journée te dire si tout est ok...merci pour tout ça!!!
C:\Users\jeff\AppData\Local\Mozilla\Firefox\Profiles\zeqkb84w.default\Cache\C2152591d01 moved successfully.
File move failed. C:\Windows\PSEXESVC.EXE scheduled to be moved on reboot.
OTMoveIt2 by OldTimer - Version 1.0.4.1 log created on 05132008_230547
bon je vire OTMoveIt et je nettoie avec CCleaner(je l'ai déja!!)je revien demain dans la journée te dire si tout est ok...merci pour tout ça!!!