Un virus sur mon pc

fleur -  
 Utilisateur anonyme -
Bonjour, j a reçu un message m'indiquant comme suite
attention votre pc est sous sypware que faire.
merci
Configuration: Windows XP
Internet Explorer 6.0

15 réponses

  1. Utilisateur anonyme
     
    Bonjour,

    *Télécharge HijackThis
    *Installe le à la racine de ton disque dur
    *Lance HijackThis en double-cliquant sur l'icône HijackThis
    *Clique sur Do a system Scan only and Save a Logfile
    *Un rapport sera généré dans le bloc-note (le rapport est également situé ici : C:\hijackthis.log)
    *Copie/colle le rapport dans ton prochain message.
    0
    1. fleur
       
      essayer de me detailler les points 5 et 6 car je suis debutante et je tiens à vous dire que je reçois à chaque fois un message concernant antisypspider qui me bloque à chaque fois.
      merci d'avance.
      0
  2. Utilisateur anonyme
     
    salut qui ta envoyer ce message ton antivirus ou alors un lien quand tu ete sur internet ?
    0
  3. Utilisateur anonyme
     
    Dès que tu auras cliquer sur "Do a system Scan only and Save a Logfile "

    Le bloc note va automatiquement s'ouvrir.

    Une fois ouvert, tu fais Edition puis Selectionner tout
    Et tu refais Edition puis copier.

    Ensuite, tu reviens sur le forum et tu cliques dans le cadre pour écrire, tu fais un clic droit et tu cliques sur coller.
    0
    1. fleur
       
      ok j ai suivi et ça marche je dois coller le contenu ci
      0
    2. fleur
       
      ce message est est pour 12.eleven
      réponds pour le question précedente et merci.
      0
  4. ste6431 Messages postés 140 Date d'inscription   Statut Membre Dernière intervention   17
     
    Bonsoir,

    ce message vient d'où exactement ? de l'antivirus ou pendant le surf sur le net ?
    0
    1. fleur
       
      bonjour,
      en ouvrant mes messages0
      0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. ste6431 Messages postés 140 Date d'inscription   Statut Membre Dernière intervention   17
     
    Ok, mais l'expéditeur du message est-il fiable ? Le connaissez-vous ?
    0
    1. fleur
       
      oui comment installer un antisypware car je me bloque à chaque fois
      0
  7. Utilisateur anonyme
     
    Oui colle le rapport.
    0
    1. fleur
       
      Logfile of Trend Micro HijackThis v2.0.2
      Scan saved at 14:15:52, on 06-06-2008
      Platform: Windows XP SP2 (WinNT 5.01.2600)
      MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
      Boot mode: Normal

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\system32\spoolsv.exe
      C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
      C:\WINDOWS\Explorer.EXE
      C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
      C:\WINDOWS\system32\hkcmd.exe
      C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
      C:\WINDOWS\system32\aspimgr.exe
      C:\WINDOWS\system32\igfxpers.exe
      C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
      C:\WINDOWS\system32\svchost.exe
      C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
      C:\WINDOWS\RTHDCPL.EXE
      C:\WINDOWS\system32\rundll32.exe
      C:\Program Files\Corel\Corel Snapfire\Corel Photo Downloader.exe
      C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBEP.EXE
      C:\Program Files\QuickTime\qttask.exe
      C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
      C:\Program Files\MSN Messenger\MsnMsgr.Exe
      C:\WINDOWS\system32\ctfmon.exe
      C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
      C:\WINDOWS\system32\rundll32.exe
      C:\Program Files\Micro Application\38 Dictionnaires et Recueils de Correspondance\MediaDICO38.EXE
      C:\WINDOWS\system32\wscntfy.exe
      C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe
      C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe
      C:\Program Files\Micro Application\38 Dictionnaires et Recueils de Correspondance\Rac38.EXE
      C:\Program Files\Internet Explorer\iexplore.exe
      C:\Program Files\FlashGet\flashget.exe
      C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = file://c:/windows/homepage.html
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = file://c:/windows/homepage.html
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = file://c:/windows/homepage.html
      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = file://c:/windows/homepage.html
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      R3 - URLSearchHook: douniamusic.com Toolbar - {fa4acd63-fdbf-4ee2-85e1-cad95e77cdf0} - C:\Program Files\douniamusic.com\tbdou0.dll
      O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_0_1.dll
      O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
      O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
      O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - C:\PROGRA~1\FlashGet\jccatch.dll
      O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
      O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
      O2 - BHO: TBSB06853 - {D2E45353-5501-44B3-8E61-44D023F33B64} - C:\Documents and Settings\Administrateur\Mes documents\Saint-Coran Toolbar\saint-coran.dll (file missing)
      O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
      O2 - BHO: douniamusic.com Toolbar - {fa4acd63-fdbf-4ee2-85e1-cad95e77cdf0} - C:\Program Files\douniamusic.com\tbdou0.dll
      O2 - BHO: Microsoft copyright - {FFFFFFFF-BBBB-4146-86FD-A722E8AB3489} - sockins32.dll (file missing)
      O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\msdxm.ocx
      O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
      O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_0_1.dll
      O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
      O3 - Toolbar: Saint-Coran Toolbar - {3526DA77-E31E-43DD-94E3-16170C0AF42F} - C:\Documents and Settings\Administrateur\Mes documents\Saint-Coran Toolbar\saint-coran.dll (file missing)
      O3 - Toolbar: douniamusic.com Toolbar - {fa4acd63-fdbf-4ee2-85e1-cad95e77cdf0} - C:\Program Files\douniamusic.com\tbdou0.dll
      O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
      O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
      O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
      O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
      O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
      O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
      O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
      O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
      O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
      O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
      O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
      O4 - HKLM\..\Run: [Corel Photo Downloader] C:\Program Files\Corel\Corel Snapfire\Corel Photo Downloader.exe
      O4 - HKLM\..\Run: [EPSON Stylus CX3900 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBEP.EXE /FU "C:\WINDOWS\TEMP\E_S81.tmp" /EF "HKLM"
      O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
      O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
      O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
      O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
      O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
      O4 - HKCU\..\Run: [MediaDICO38] C:\Program Files\Micro Application\38 Dictionnaires et Recueils de Correspondance\LanceMediaDICO38.exe Lancement
      O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
      O4 - HKUS\S-1-5-18\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (User 'SYSTEM')
      O4 - HKUS\.DEFAULT\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (User 'Default user')
      O4 - Global Startup: Picture Package Menu.lnk = ?
      O4 - Global Startup: Picture Package VCD Maker.lnk = ?
      O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
      O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\Microsoft Office\OFFICE11\EXCEL.EXE/3000
      O8 - Extra context menu item: Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
      O8 - Extra context menu item: Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
      O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\Microsoft Office\OFFICE11\REFIEBAR.DLL
      O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
      O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
      O17 - HKLM\System\CCS\Services\Tcpip\..\{76EE66B2-BE45-41CE-AA97-28A3436EF128}: NameServer = 196.20.77.165 193.251.169.165
      O21 - SSODL: WebProxy - {66186F05-BBBB-4a39-864F-72D84615C679} - sockins32.dll (file missing)
      O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
      O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
      O23 - Service: Microsoft ASPI Manager (aspimgr) - Unknown owner - C:\WINDOWS\system32\aspimgr.exe
      O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      0
    2. fleur
       
      bonjour; 12. eleven
      j ai collé le rapport et j attends ta réponse
      0
  8. Utilisateur anonyme
     
    Bon !

    *Télécharge SDFix (créé par AndyManchesta)
    *Double-clique sur SDFix.exe
    *Choisis Install pour l'extraire dans un dossier dédié sur le Bureau.
    *Redémarre en mode sans échec
    *Ouvre le dossier SDFix qui vient d'être créé à la racine de ton disque dur C:\
    *Double clique sur RunThis.bat pour lancer le script.
    *Appuie sur Y pour commencer le processus de nettoyage.
    *Appuie sur une touche pour redémarrer quand SDFix te demander d'appuyer sur une touche pour redémarrer.
    *Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
    *Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
    *Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
    *Les icônes du Bureau affichées, le rapport SDFix s'ouvrira. Il porte le nom de Report.txt.
    *Copie/colle le contenu


    ET


    *Télécharge SmitFraudFix.exe sur ton bureau
    *Double-clique sur SmitfraudFix.exe
    *Choisis 1 et appuie sur ENTREE
    *Un rapport se trouve à la racine du disque système C:\rapport.txt
    0
    1. fleur
       
      il y a aucun risque sur mes donnees lors de l 'operation de nettoyage.
      0
  9. Utilisateur anonyme
     
    Non.
    0
    1. fleur
       
      j ai installe SDFIX mais pour extraire comment faire( le ficher se trouve sur flah get) .
      je m'excuse pour mes questions.
      0
      1. Utilisateur anonyme > fleur
         
        salut il faut que tu fasse extraire tous les fichiers autrement essaye de le retelecharger sur un autre site A+
        0
  10. Utilisateur anonyme
     
    Tu *Double-clique sur SDFix.exe
    0
    1. fleur
       
      pour 12.eleven
      j ai choisi install est-ce je dois rebotter
      pour ouvrir le dossier celui telecharger
      0
  11. Utilisateur anonyme
     
    Tu fais ce qui est indiqué...

    Y'a pourtant rien de bien difficile.

    *Télécharge SDFix (créé par AndyManchesta)
    *Double-clique sur SDFix.exe
    *Choisis Install pour l'extraire dans un dossier dédié.
    *Redémarre en mode sans échec
    *Ouvre le dossier SDFix qui vient d'être créé à la racine de ton disque dur C:\
    *Double clique sur RunThis.bat pour lancer le script.
    *Appuie sur Y pour commencer le processus de nettoyage.
    *Appuie sur une touche pour redémarrer quand SDFix te demander d'appuyer sur une touche pour redémarrer.
    *Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
    *Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
    *Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
    *Les icônes du Bureau affichées, le rapport SDFix s'ouvrira. Il porte le nom de Report.txt.
    *Copie/colle le contenu

    Tu télécharges SDFix
    Tu double clique dessus
    Tu choisis install et tu l'installes dans un répertoire dédié à SDFix
    Tu redémarres en mode sans échec.
    Tu ouvres le dossier crée ici C:\
    Tu double clique sur RunThis.bat
    T'appuies sur Y
    Quand on te demande d'appuyer sur une touche pour redémarrer, t'appuies sur une touche
    T'appuies sur une touche quand on te le demande
    Le rapport s'ouvre dans le bloc note, tu le copies/colles ici........
    0
    1. fleur
       
      pour 12.eleven
      Windows Registry Editor Version 5.00

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot]
      "AlternateShell"="cmd.exe"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal]

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\AppMgmt]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\Base]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\Boot Bus Extender]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\Boot file system]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\CryptSvc]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\DcomLaunch]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\dmadmin]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\dmboot.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\dmio.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\dmload.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\dmserver]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\EventLog]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\File system]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\Filter]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\HelpSvc]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\Netlogon]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\PCI Configuration]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\PlugPlay]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\PNP Filter]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\Primary disk]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\RpcSs]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\SCSI Class]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\sermouse.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\sr.sys]
      @="FSFilter System Recovery"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\SRService]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\System Bus Extender]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\vga.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\vgasave.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\WinMgmt]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]
      @="Universal Serial Bus controllers"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]
      @="CD-ROM Drive"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]
      @="DiskDrive"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]
      @="Standard floppy disk controller"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
      @="Hdc"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
      @="Keyboard"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
      @="Mouse"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]
      @="PCMCIA Adapters"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
      @="SCSIAdapter"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
      @="System"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]
      @="Floppy disk drive"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
      @="Volume"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
      @="Human Interface Devices"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network]

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\AFD]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\AppMgmt]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Base]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Boot Bus Extender]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Boot file system]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Browser]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\CryptSvc]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\DcomLaunch]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Dhcp]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\dmadmin]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\dmboot.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\dmio.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\dmload.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\dmserver]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\DnsCache]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\EventLog]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\File system]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Filter]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\HelpSvc]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\ip6fw.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\ipnat.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\LanmanServer]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\LanmanWorkstation]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\LmHosts]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Messenger]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NDIS]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NDIS Wrapper]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Ndisuio]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NetBIOS]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NetBIOSGroup]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NetBT]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NetDDEGroup]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Netlogon]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NetMan]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Network]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NetworkProvider]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NtLmSsp]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\PCI Configuration]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\PlugPlay]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\PNP Filter]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\PNP_TDI]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Primary disk]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\rdpcdd.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\rdpdd.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\rdpwd.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\rdsessmgr]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\RpcSs]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\SCSI Class]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\sermouse.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\SharedAccess]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\sr.sys]
      @="FSFilter System Recovery"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\SRService]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Streams Drivers]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\System Bus Extender]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Tcpip]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\TDI]
      @="Driver Group"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\tdpipe.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\tdtcp.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\termservice]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\vga.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\vgasave.sys]
      @="Driver"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\WinMgmt]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\WZCSVC]
      @="Service"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{36FC9E60-C465-11CF-8056-444553540000}]
      @="Universal Serial Bus controllers"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E965-E325-11CE-BFC1-08002BE10318}]
      @="CD-ROM Drive"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E967-E325-11CE-BFC1-08002BE10318}]
      @="DiskDrive"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E969-E325-11CE-BFC1-08002BE10318}]
      @="Standard floppy disk controller"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
      @="Hdc"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
      @="Keyboard"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
      @="Mouse"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}]
      @="Net"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E973-E325-11CE-BFC1-08002BE10318}]
      @="NetClient"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E974-E325-11CE-BFC1-08002BE10318}]
      @="NetService"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E975-E325-11CE-BFC1-08002BE10318}]
      @="NetTrans"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E977-E325-11CE-BFC1-08002BE10318}]
      @="PCMCIA Adapters"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
      @="SCSIAdapter"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
      @="System"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E980-E325-11CE-BFC1-08002BE10318}]
      @="Floppy disk drive"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
      @="Volume"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
      @="Human Interface Devices"
      0
  12. Utilisateur anonyme
     
    Ce n'est pas le bon !

    Le rapport porte le nom de : Report.txt
    Copie/colle son contenu ici
    0
    1. fleur
       
      To run the SDFix tool please reboot to Safe Mode
      (Reboot, tap the F8 Key and choose Safe Mode from the Advanced Menu)

      (SDFix Requires Administrator Account Privileges)

      1. Download/Run a-squared from EMSI Software
      2. Download/Run Norman Malware Cleaner from Norman
      3. Download/Run SAV32CLI from Sophos

      A. Create System Report
      B. Create Service/Driver List
      C. Create Catchme Log
      D. Export SafeBoot Key

      U. Download latest version of SDFix

      E. EXIT

      (Active Internet Connection Required To Download Files)


      Type A,B,C,D,U,1,2,3,4 or E to Exit....
      quelle point je selectionne 12.eleven
      0
  13. Utilisateur anonyme
     
    Bon !

    Tu comprends pas quoi ? Y'a rien de compliqué quand même !

    Tu suis à la lettre ça :

    *Redémarre en mode sans échec
    *Ouvre le dossier SDFix qui vient d'être créé à la racine de ton disque dur C:\
    *Double clique sur RunThis.bat pour lancer le script.
    *Appuie sur Y pour commencer le processus de nettoyage.
    *Appuie sur une touche pour redémarrer quand SDFix te demander d'appuyer sur une touche pour redémarrer.
    *Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
    *Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
    *Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
    *Les icônes du Bureau affichées, le rapport SDFix s'ouvrira. Il porte le nom de Report.txt.
    *Copie/colle le contenu
    0
  14. fleur
     
    BONJOUR POUR 12.ELEVEN

    Norman Malware Cleaner
    Copyright © 1990 - 2008, Norman ASA. Built 2008/06/02 19:05:48

    Norman Scanner Engine Version: 5.92.08
    Nvcbin.def Version: 5.92.00, Date: 2008/06/02 19:05:48, Variants: 1705334

    Running pre-scan cleanup routine:
    Operating System: Microsoft Windows XP Professional 5.1.2600 Service Pack 2
    Logged on user: TITANIUM\Administrateur

    Removed registry value: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System -> DisableRegistryTools = 0x00000001
    Removed registry value: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System -> DisableTaskMgr = 0x00000001

    Scan started: 07/06/2008 15:24:56

    Scanning running processes and process memory...

    Number of processes/threads found: 699
    Number of processes/threads scanned: 698
    Number of processes/threads not scanned: 1
    Number of infected processes/threads terminated: 0
    Total scanning time: 38s

    Running post-scan cleanup routine:
    0
  15. Utilisateur anonyme
     
    0
    1. fleur
       
      POUR 12.ELEVEN
      pour le mode sans echec j ai suivi les instructions
      J ai taper dans la nouvelle fenetre msconf quant je clique OK . Le message s'affiche ce nom n existe pas.
      dans ma fenetre il y' comme suite;
      E;\intro.exe
      Autres problemes SDFIX telecharger quand j' ouvre le fichier je trouve RUN THIS et non RUN THIS.BAT
      J e mets beaucoup de temps à vous répondre car je me bloque avec des messages tels;
      * trojandownloader.Xc
      *antipsyware spider
      Meme si je n arrive pas à ressoudre ce problème c’est grace à vos reponses que j ai appris beaucoup de chose
      Mais je ne baisserai pas les bras .
      MERCI DE TON AIDE 12.ELEVEN
      0
  16. Utilisateur anonyme
     
    Bon

    Tu fais comme ça pour redémarrer en mode sans échec, et tu fais pas autrement :
    >>> Redémarre en mode sans échec

    Ensuite, le fichier RUNTHIS.bat et RUNTHIS, c'est le même donc au lieu de cliquer sur RUNTHIS.bat tu cliques sur RUNTHIS et tu laisses le scan se terminer, tu ne touches à rien de rien.
    0