Virus Cid

Fermé
ilhem - 11 juin 2008 à 14:02
fiat500 Messages postés 2621 Date d'inscription vendredi 30 mai 2008 Statut Membre Dernière intervention 25 mars 2009 - 11 juin 2008 à 14:32
Bonjour,
Voilà je suis inondée de pop CiD, j'ai désinstallé msn live, sans résultat, j'ai fait une analyse complète avec AVG anti-spyware et j'ai supprimé tous les fichiers à risque, et j'ai toujours ces pubs CiD. Voici mon analyse aidez-moi SVP

7 réponses

fiat500 Messages postés 2621 Date d'inscription vendredi 30 mai 2008 Statut Membre Dernière intervention 25 mars 2009 82
11 juin 2008 à 14:03
bonjour et bienvenu

télécharge Lop S&D.exe sur ton Bureau.https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2

* Double-clique dessus pour lancer l'installation
* Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau
* Séléctionne la langue souhaitée , puis choisis l'option 1 (Recherche)
* Patiente jusqu'à la fin du scan
* Poste le rapport généré (C:\lopR.txt)
---
1
bjr voici mon analyse
Search Navipromo version 3.5.8 commencé le 11/06/2008 à 13:35:20.89

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

Outil exécuté depuis C:\Program Files\navilog1
Session actuelle : "ilheme"

Mise à jour le 06.06.2008 à 18h00 par IL-MAFIOSO


Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 6.0.2900.5512
Système de fichiers : NTFS

Recherche executé en mode normal

*** Recherche Programmes installés ***


*** Recherche dossiers dans "C:\WINDOWS" ***


*** Recherche dossiers dans "C:\Program Files" ***


*** Recherche dossiers dans "c:\docume~1\alluse~1\applic~1" ***


*** Recherche dossiers dans "c:\docume~1\alluse~1\menudm~1\progra~1" ***


*** Recherche dossiers dans "C:\Documents and Settings\ilheme\applic~1" ***


*** Recherche dossiers dans "C:\DOCUME~1\INVIT~1\applic~1" ***


*** Recherche dossiers dans "C:\DOCUME~1\PROPRI~1\applic~1" ***


*** Recherche dossiers dans "C:\Documents and Settings\ilheme\locals~1\applic~1" ***


*** Recherche dossiers dans "C:\DOCUME~1\INVIT~1\locals~1\applic~1" ***


*** Recherche dossiers dans "C:\Documents and Settings\ilheme\menudm~1\progra~1" ***


*** Recherche dossiers dans "C:\DOCUME~1\INVIT~1\menudm~1\progra~1" ***

*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net

Aucun Fichier trouvé


*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!

* Recherche dans "C:\WINDOWS\system32" *

* Recherche dans "C:\Documents and Settings\ilheme\locals~1\applic~1" *

* Recherche dans "C:\DOCUME~1\INVIT~1\locals~1\applic~1" *



*** Recherche fichiers ***



*** Recherche clés spécifiques dans le Registre ***


*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche nouveaux fichiers Instant Access :


2)Recherche Heuristique :

* Dans "C:\WINDOWS\system32" :


* Dans "C:\Documents and Settings\ilheme\locals~1\applic~1" :


* Dans "C:\DOCUME~1\INVIT~1\locals~1\applic~1" :


3)Recherche Certificats :

Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat OOO-Favorit absent !
Certificat Sunny-Day-Design-Ltd absent !

4)Recherche fichiers connus :



*** Analyse terminée le 11/06/2008 à 13:42:02.40 ***
0
fiat500 Messages postés 2621 Date d'inscription vendredi 30 mai 2008 Statut Membre Dernière intervention 25 mars 2009 82
11 juin 2008 à 14:05
fais ce que je t'ai dit stp
0
ok voilà le rapport ke tu ma demandé

-----------------------[ Lop S&D 4.2.1-3 XP/Vista ]---------------------

[ Windows XP (NT 5.1) Build 2600, Service Pack 3 ]
[ USER : ilheme ] [ "C:\Lop SD" ] [ Selection : 1 ]
[ 11/06/2008 | 14:04:25.21 ] [ PC : ILHEM ]
[ MAJ : 07-06-2008 | 22:15 ]

-------------[ Listing des dossiers dans Application Data ]------------

[22/05/2008|21:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[28/02/2004|15:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[28/02/2004|17:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[27/02/2004|19:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\desktop.ini
[06/01/2008|15:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data
[21/07/2007|13:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[11/06/2008|11:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft
[08/05/2007|11:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[07/04/2008|10:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\hpzinstall.log
[08/05/2007|19:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[14/05/2008|21:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[28/02/2004|16:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\muvee Technologies
[05/06/2008|21:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Pinnacle
[27/02/2004|19:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[05/06/2008|21:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[08/05/2007|19:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SmartSound Software Inc
[08/05/2007|11:53] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
[08/05/2007|16:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[08/05/2007|17:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[08/05/2007|13:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar

[28/02/2004|17:52] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Adobe
[28/02/2004|17:52] C:\DOCUME~1\DEFAUL~1\APPLIC~1\AdobeUM
[28/02/2004|16:48] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Ahead
[28/02/2004|17:26] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Cyberlink
[27/02/2004|19:26] C:\DOCUME~1\DEFAUL~1\APPLIC~1\desktop.ini
[03/06/2004|18:04] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Help
[27/02/2004|19:30] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[28/02/2004|18:59] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[28/02/2004|21:13] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[28/02/2004|18:58] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Real

[10/06/2008|21:08] C:\DOCUME~1\ilheme\APPLIC~1\Adobe
[22/05/2008|21:41] C:\DOCUME~1\ilheme\APPLIC~1\AdobeUM
[28/02/2004|16:48] C:\DOCUME~1\ilheme\APPLIC~1\Ahead
[28/02/2004|17:26] C:\DOCUME~1\ilheme\APPLIC~1\Cyberlink
[27/02/2004|19:26] C:\DOCUME~1\ilheme\APPLIC~1\desktop.ini
[13/05/2007|16:50] C:\DOCUME~1\ilheme\APPLIC~1\EPSON
[08/09/2007|21:33] C:\DOCUME~1\ilheme\APPLIC~1\Google
[11/06/2008|11:12] C:\DOCUME~1\ilheme\APPLIC~1\Grisoft
[03/06/2004|18:04] C:\DOCUME~1\ilheme\APPLIC~1\Help
[09/05/2007|17:12] C:\DOCUME~1\ilheme\APPLIC~1\HelpFilesUpdatePatch_HELPFILEREPLACE.log
[09/05/2007|17:13] C:\DOCUME~1\ilheme\APPLIC~1\HelpFilesUpdatePatch_PRINTHELPWRAPPER.log
[27/05/2007|19:10] C:\DOCUME~1\ilheme\APPLIC~1\HP
[27/02/2004|19:30] C:\DOCUME~1\ilheme\APPLIC~1\Identities
[10/06/2008|21:50] C:\DOCUME~1\ilheme\APPLIC~1\Lavasoft
[28/02/2004|18:59] C:\DOCUME~1\ilheme\APPLIC~1\Macromedia
[10/02/2008|13:53] C:\DOCUME~1\ilheme\APPLIC~1\Microsoft
[09/05/2007|19:21] C:\DOCUME~1\ilheme\APPLIC~1\PatchUpdate_HP_CounterReport_Update_HPSU.log
[09/05/2007|17:11] C:\DOCUME~1\ilheme\APPLIC~1\PatchUpdate_InstantShareJPG.log
[09/05/2007|16:21] C:\DOCUME~1\ilheme\APPLIC~1\PatchUpdate_IZClosingDiscError.log
[05/06/2008|10:13] C:\DOCUME~1\ilheme\APPLIC~1\Plan Atom Sect
[28/02/2004|18:58] C:\DOCUME~1\ilheme\APPLIC~1\Real
[13/05/2007|16:51] C:\DOCUME~1\ilheme\APPLIC~1\Smart Panel
[03/06/2007|19:33] C:\DOCUME~1\ilheme\APPLIC~1\Sun
[09/05/2007|16:19] C:\DOCUME~1\ilheme\APPLIC~1\Update_HP_RedboxHprblog_HPSU.log
[08/05/2007|12:00] C:\DOCUME~1\ilheme\APPLIC~1\wklnhst.dat

[28/02/2004|17:52] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[28/02/2004|17:52] C:\DOCUME~1\INVIT~1\APPLIC~1\AdobeUM
[28/02/2004|16:48] C:\DOCUME~1\INVIT~1\APPLIC~1\Ahead
[28/02/2004|17:26] C:\DOCUME~1\INVIT~1\APPLIC~1\Cyberlink
[27/02/2004|19:26] C:\DOCUME~1\INVIT~1\APPLIC~1\desktop.ini
[28/07/2007|12:01] C:\DOCUME~1\INVIT~1\APPLIC~1\Google
[03/06/2004|18:04] C:\DOCUME~1\INVIT~1\APPLIC~1\Help
[27/02/2004|19:30] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[28/02/2004|18:59] C:\DOCUME~1\INVIT~1\APPLIC~1\Macromedia
[29/05/2008|13:20] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[05/06/2008|13:46] C:\DOCUME~1\INVIT~1\APPLIC~1\PowerChallenge
[28/02/2004|18:58] C:\DOCUME~1\INVIT~1\APPLIC~1\Real
[02/11/2007|16:37] C:\DOCUME~1\INVIT~1\APPLIC~1\Sun

[01/09/2007|15:55] C:\DOCUME~1\LOCALS~1\APPLIC~1\Google
[18/05/2007|16:58] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[09/05/2004|18:25] C:\DOCUME~1\LOCALS~1\APPLIC~1\X10 Commander

[09/05/2007|00:33] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

[19/05/2007|11:21] C:\DOCUME~1\PROPRI~1\APPLIC~1\Real

----------------[ Tâches planifiées dans C:\WINDOWS\tasks ]---------------

[11/06/2008 14:00][--ah-----] C:\WINDOWS\tasks\AD05EF9191766809.job
[11/06/2008 12:00][--a------] C:\WINDOWS\tasks\HPpromotions journeysoftware.job
[30/08/2002 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
[11/06/2008 13:16][--ah-----] C:\WINDOWS\tasks\SA.DAT

AD05EF9191766809.job <--> c:\docume~1\ilheme\applic~1\planat~1\Bowsglueseek.exe

---------------[ Listing des dossiers dans C:\Program Files ]--------------

[13/05/2007|16:46] C:\Program Files\ABBYY FineReader 5.0 Sprint
[14/06/2007|22:06] C:\Program Files\Adobe
[09/05/2004|18:24] C:\Program Files\Ahead
[27/02/2004|20:03] C:\Program Files\ATI Technologies
[20/10/2007|18:43] C:\Program Files\Azureus
[27/02/2004|20:11] C:\Program Files\C-Media 3D Audio
[28/02/2004|17:16] C:\Program Files\Common Files
[27/02/2004|19:28] C:\Program Files\ComPlus Applications
[28/02/2004|17:15] C:\Program Files\CyberLink
[28/02/2004|15:33] C:\Program Files\DivX
[13/05/2007|16:46] C:\Program Files\EPSON
[05/06/2008|21:25] C:\Program Files\Fichiers communs
[08/09/2007|21:32] C:\Program Files\Google
[11/06/2008|11:12] C:\Program Files\Grisoft
[08/05/2007|11:51] C:\Program Files\Hewlett-Packard
[28/02/2004|15:16] C:\Program Files\HighMAT CD Writing Wizard
[28/02/2004|17:16] C:\Program Files\Home Cinema
[08/05/2007|11:50] C:\Program Files\HP
[13/05/2007|16:46] C:\Program Files\InstallShield Installation Information
[27/02/2004|19:45] C:\Program Files\Intel
[02/06/2008|21:41] C:\Program Files\Internet Explorer
[28/02/2004|16:40] C:\Program Files\Medion Tools
[02/06/2008|21:33] C:\Program Files\Messenger
[28/02/2004|15:52] C:\Program Files\Microsoft AutoRoute
[10/05/2007|21:56] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[27/02/2004|19:30] C:\Program Files\microsoft frontpage
[28/02/2004|15:51] C:\Program Files\Microsoft Money
[08/05/2007|18:54] C:\Program Files\Microsoft Office
[28/02/2004|15:56] C:\Program Files\Microsoft Picture It! 9
[08/05/2007|18:54] C:\Program Files\Microsoft Visual Studio
[08/05/2007|18:54] C:\Program Files\Microsoft Works
[28/02/2004|15:38] C:\Program Files\Microsoft Works Suite 2004
[08/05/2007|18:53] C:\Program Files\Microsoft.NET
[12/06/2007|19:17] C:\Program Files\Mineraux
[02/06/2008|21:33] C:\Program Files\Movie Maker
[08/05/2007|18:54] C:\Program Files\MSBuild
[27/02/2004|19:28] C:\Program Files\MSN Gaming Zone
[10/05/2007|21:55] C:\Program Files\MSXML 4.0
[28/02/2004|17:18] C:\Program Files\MUSICMATCH
[28/02/2004|16:01] C:\Program Files\muvee Technologies
[11/06/2008|13:49] C:\Program Files\Navilog1
[02/06/2008|21:29] C:\Program Files\NetMeeting
[28/02/2004|18:49] C:\Program Files\Nullsoft
[02/06/2008|21:29] C:\Program Files\Outlook Express
[05/06/2008|21:28] C:\Program Files\Pinnacle
[06/01/2008|15:35] C:\Program Files\Plan Atom Sect
[11/06/2008|13:16] C:\Program Files\PrestoNotes
[28/02/2004|18:49] C:\Program Files\Real
[27/02/2004|19:28] C:\Program Files\Services en ligne
[13/05/2007|16:50] C:\Program Files\Smart Panel
[08/05/2007|19:36] C:\Program Files\SmartSound Software
[08/05/2007|16:50] C:\Program Files\Symantec
[11/06/2008|13:24] C:\Program Files\Symantec AntiVirus
[28/02/2004|15:11] C:\Program Files\Uninstall Information
[09/05/2004|18:16] C:\Program Files\USB Wireless Keyboard Driver
[23/09/2007|23:01] C:\Program Files\Viewpoint
[28/02/2004|16:05] C:\Program Files\Winbond Electronics Corp
[27/02/2004|19:35] C:\Program Files\Windows Journal Viewer
[08/05/2007|17:48] C:\Program Files\Windows Live Toolbar
[17/05/2007|20:34] C:\Program Files\Windows Media Connect 2
[02/06/2008|21:29] C:\Program Files\Windows Media Player
[02/06/2008|21:29] C:\Program Files\Windows NT
[08/05/2007|11:42] C:\Program Files\WindowsUpdate
[27/05/2004|12:08] C:\Program Files\X10 Hardware
[27/02/2004|19:30] C:\Program Files\xerox

------[ Listing des dossiers dans C:\Program Files\Fichiers communs ]------

[28/02/2004|17:52] C:\Program Files\Fichiers communs\Adobe
[28/02/2004|15:34] C:\Program Files\Fichiers communs\Ahead
[03/06/2004|14:56] C:\Program Files\Fichiers communs\AOL
[28/02/2004|16:05] C:\Program Files\Fichiers communs\Borland Shared
[08/05/2007|18:54] C:\Program Files\Fichiers communs\DESIGNER
[08/05/2007|11:52] C:\Program Files\Fichiers communs\HP
[28/02/2004|16:01] C:\Program Files\Fichiers communs\InstallShield
[07/07/2007|21:20] C:\Program Files\Fichiers communs\Microsoft Shared
[27/02/2004|19:28] C:\Program Files\Fichiers communs\MSSoap
[28/02/2004|16:01] C:\Program Files\Fichiers communs\muvee Technologies
[27/02/2004|19:26] C:\Program Files\Fichiers communs\ODBC
[28/02/2004|18:55] C:\Program Files\Fichiers communs\Real
[27/02/2004|19:28] C:\Program Files\Fichiers communs\Services
[08/05/2007|11:53] C:\Program Files\Fichiers communs\Sonic Shared
[27/02/2004|19:26] C:\Program Files\Fichiers communs\SpeechEngines
[08/05/2007|16:50] C:\Program Files\Fichiers communs\Symantec Shared
[02/06/2008|21:29] C:\Program Files\Fichiers communs\System
[28/02/2004|18:55] C:\Program Files\Fichiers communs\xing shared

---------------------------[ Process ]--------------------------

... 46

iexplore.exe ~ [296]
iexplore.exe ~ [4088]

----------------------[ Recherche avec S_Lop ]---------------------

Aucun fichier / dossier Lop trouvé !

-----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------

C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data
C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data\Extra Play.exe
C:\DOCUME~1\ilheme\APPLIC~1\Plan Atom Sect
C:\Program Files\Plan Atom Sect
C:\DOCUME~1\ilheme\APPLIC~1\planat~1
C:\Program Files\planat~1
C:\WINDOWS\Prefetch\EXTRA PLAY.EXE-347785DB.pf
C:\DOCUME~1\ilheme\Cookies\ilheme@www.adserver5[1].txt
C:\DOCUME~1\ilheme\Cookies\ilheme@adin.bigpoint[1].txt
C:\DOCUME~1\ilheme\Cookies\ilheme@fr1.seafight.bigpoint[2].txt
C:\DOCUME~1\ilheme\Cookies\ilheme@banner.cotedazurpalace[2].txt
C:\DOCUME~1\ilheme\Cookies\ilheme@cotedazurpalace[2].txt
C:\DOCUME~1\ilheme\Cookies\ilheme@fr1.seafight.bigpoint[2].txt
C:\DOCUME~1\ilheme\Cookies\ilheme@32vegas[2].txt
C:\DOCUME~1\ilheme\Cookies\ilheme@banner.32vegas[2].txt
C:\DOCUME~1\ilheme\Cookies\ilheme@2xmoinscher[2].txt
C:\DOCUME~1\ilheme\Cookies\ilheme@cc.2xmoinscher[1].txt
C:\DOCUME~1\ilheme\Cookies\ilheme@www.2xmoinscher[1].txt
C:\DOCUME~1\ilheme\Cookies\ilheme@888[2].txt
C:\DOCUME~1\ilheme\Cookies\ilheme@888[3].txt
C:\WINDOWS\Tasks\AD05EF9191766809.job

----------------------[ Verification du Registre ]----------------------

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Stupid Data Dart Wave"="C:\\Documents and Settings\\All Users\\Application Data\\flag ace stupid data\\Extra Play.exe"

--------------------[ Verification du fichier Hosts ]---------------------

Fichier Hosts MODIFIE

127.0.0.1 bin.errorprotector.com ## added by CiD
127.0.0.1 br.errorsafe.com ## added by CiD
127.0.0.1 br.winantivirus.com ## added by CiD
127.0.0.1 br.winfixer.com ## added by CiD
127.0.0.1 cdn.drivecleaner.com ## added by CiD
127.0.0.1 cdn.errorsafe.com ## added by CiD
127.0.0.1 cdn.winsoftware.com ## added by CiD
127.0.0.1 de.errorsafe.com ## added by CiD
127.0.0.1 de.winantivirus.com ## added by CiD
127.0.0.1 download.cdn.drivecleaner.com ## added by CiD
127.0.0.1 download.cdn.errorsafe.com ## added by CiD
127.0.0.1 download.cdn.winsoftware.com ## added by CiD
127.0.0.1 download.errorsafe.com ## added by CiD
127.0.0.1 download.systemdoctor.com ## added by CiD
127.0.0.1 download.winantispyware.com ## added by CiD
127.0.0.1 download.windrivecleaner.com ## added by CiD
127.0.0.1 download.winfixer.com ## added by CiD
127.0.0.1 drivecleaner.com ## added by CiD
127.0.0.1 dynamique.drivecleaner.com ## added by CiD
127.0.0.1 errorprotector.com ## added by CiD
127.0.0.1 errorsafe.com ## added by CiD
127.0.0.1 es.winantivirus.com ## added by CiD
127.0.0.1 fr.winantivirus.com ## added by CiD
127.0.0.1 fr.winfixer.com ## added by CiD
127.0.0.1 go.drivecleaner.com ## added by CiD
127.0.0.1 go.errorsafe.com ## added by CiD
127.0.0.1 go.winantispyware.com ## added by CiD
127.0.0.1 go.winantivirus.com ## added by CiD
127.0.0.1 hk.winantivirus.com ## added by CiD
127.0.0.1 instlog.errorsafe.com ## added by CiD
127.0.0.1 instlog.winantivirus.com ## added by CiD
127.0.0.1 instlog.winfixer.com ## added by CiD
127.0.0.1 jsp.drivecleaner.com ## added by CiD
127.0.0.1 kb.errorsafe.com ## added by CiD
127.0.0.1 kb.winantivirus.com ## added by CiD
127.0.0.1 nl.errorsafe.com ## added by CiD
127.0.0.1 se.errorsafe.com ## added by CiD
127.0.0.1 secure.drivecleaner.com ## added by CiD
127.0.0.1 secure.errorsafe.com ## added by CiD
127.0.0.1 secure.winantispam.com ## added by CiD
127.0.0.1 secure.winantispy.com ## added by CiD
127.0.0.1 secure.winantivirus.com ## added by CiD
127.0.0.1 support.winantivirus.com ## added by CiD
127.0.0.1 trial.updates.winsoftware.com ## added by CiD
127.0.0.1 ulog.winantivirus.com ## added by CiD
127.0.0.1 utils.errorsafe.com ## added by CiD
127.0.0.1 utils.winantivirus.com ## added by CiD
127.0.0.1 utils.winfixer.com ## added by CiD
127.0.0.1 winantispyware.com ## added by CiD
127.0.0.1 winantivirus.com ## added by CiD
127.0.0.1 winfixer.com ## added by CiD
127.0.0.1 winfixer2006.com ## added by CiD
127.0.0.1 winsoftware.com ## added by CiD
127.0.0.1 [i]ww/iw.drivecleaner.com ## added by CiD
127.0.0.1 [i]ww/iw.errorprotector.com ## added by CiD
127.0.0.1 [i]ww/iw.errorsafe.com ## added by CiD
127.0.0.1 [i]ww/iw.systemdoctor.com ## added by CiD
127.0.0.1 [i]ww/iw.utils.winfixer.com ## added by CiD
127.0.0.1 [i]ww/iw.win-anti-virus-pro.com ## added by CiD
127.0.0.1 [i]ww/iw.win-virus-pro.com ## added by CiD
127.0.0.1 [i]ww/iw.winantispam.com ## added by CiD
127.0.0.1 [i]ww/iw.winantispy.com ## added by CiD
127.0.0.1 [i]ww/iw.winantispyware.com ## added by CiD
127.0.0.1 [i]ww/iw.winantivirus.com ## added by CiD
127.0.0.1 [i]ww/iw.winantiviruspro.com ## added by CiD
127.0.0.1 [i]ww/iw.windrivecleaner.com ## added by CiD
127.0.0.1 [i]ww/iw.windrivesafe.com ## added by CiD
127.0.0.1 [i]ww/iw.winfixer.com ## added by CiD
127.0.0.1 [i]ww/iw.winfixer2006.com ## added by CiD
127.0.0.1 [i]ww/iw.winsoftware.com ## added by CiD

-> 72 ( 70 ## added by CiD )

/!\ 1 Not 127.0.0.1 !!

----------------[ Recherche de fichiers avec Catchme ]-----------------

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-06-11 14:06:04
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0

--------------------[ Recherche d'autres infections ]---------------------


Aucune autre infection trouvée !

[F:2216][D:43]-> C:\DOCUME~1\ilheme\LOCALS~1\Temp
[F:456][D:0]-> C:\DOCUME~1\ilheme\Cookies
[F:7176][D:19]-> C:\DOCUME~1\ilheme\LOCALS~1\TEMPOR~1\content.IE5

--------------------[ Fin du rapport a 14:06:49.26 ]----------------------
0
fiat500 Messages postés 2621 Date d'inscription vendredi 30 mai 2008 Statut Membre Dernière intervention 25 mars 2009 82
11 juin 2008 à 14:15
pour virer ce qui est trouvé:

* Choisis cette fois ci l'Option 2 (Suppression)
* Ne ferme pas la fenêtre lors de la suppression !
* Poste le rapport généré (C:\lopR.txt)
0
voilà le 2ème rapport après l'étape 2

-----------------------[ Lop S&D 4.2.1-3 XP/Vista ]---------------------

[ Windows XP (NT 5.1) Build 2600, Service Pack 3 ]
[ USER : ilheme ] [ "C:\Lop SD" ] [ Selection : 2 ]
[ 11/06/2008 | 14:12:10.20 ] [ PC : ILHEM ]
[ MAJ : 07-06-2008 | 22:15 ]


\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION /////////////////////////////

Supprimé! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data\Extra Play.exe
Supprimé! - C:\WINDOWS\Prefetch\EXTRA PLAY.EXE-347785DB.pf
Supprimé! - C:\DOCUME~1\ilheme\Cookies\ilheme@www.adserver5[1].txt
Supprimé! - C:\DOCUME~1\ilheme\Cookies\ilheme@banner.cotedazurpalace[2].txt
Supprimé! - C:\DOCUME~1\ilheme\Cookies\ilheme@cotedazurpalace[2].txt
Supprimé! - C:\DOCUME~1\ilheme\Cookies\ilheme@32vegas[2].txt
Supprimé! - C:\DOCUME~1\ilheme\Cookies\ilheme@banner.32vegas[2].txt
Supprimé! - C:\DOCUME~1\ilheme\Cookies\ilheme@2xmoinscher[2].txt
Supprimé! - C:\DOCUME~1\ilheme\Cookies\ilheme@cc.2xmoinscher[1].txt
Supprimé! - C:\DOCUME~1\ilheme\Cookies\ilheme@www.2xmoinscher[1].txt
Supprimé! - C:\DOCUME~1\ilheme\Cookies\ilheme@888[2].txt
Supprimé! - C:\DOCUME~1\ilheme\Cookies\ilheme@888[3].txt
Supprimé! - C:\WINDOWS\Tasks\AD05EF9191766809.job
Supprimé! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data
Supprimé! - C:\DOCUME~1\ilheme\APPLIC~1\Plan Atom Sect
Supprimé! - C:\Program Files\Plan Atom Sect
Restauré! - Fichier Hosts

//////////////////////////////////////-\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\

Supprimé! - C:\Program Files\Viewpoint

//////////////////////////////////////-\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\


-------------[ Listing des dossiers dans Application Data ]------------

[22/05/2008|21:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[28/02/2004|15:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[28/02/2004|17:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[27/02/2004|19:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\desktop.ini
[21/07/2007|13:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[11/06/2008|11:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft
[08/05/2007|11:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[07/04/2008|10:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\hpzinstall.log
[08/05/2007|19:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[14/05/2008|21:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[28/02/2004|16:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\muvee Technologies
[05/06/2008|21:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Pinnacle
[27/02/2004|19:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[05/06/2008|21:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[08/05/2007|19:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SmartSound Software Inc
[08/05/2007|11:53] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
[08/05/2007|16:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[08/05/2007|17:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[08/05/2007|13:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar

[28/02/2004|17:52] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Adobe
[28/02/2004|17:52] C:\DOCUME~1\DEFAUL~1\APPLIC~1\AdobeUM
[28/02/2004|16:48] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Ahead
[28/02/2004|17:26] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Cyberlink
[27/02/2004|19:26] C:\DOCUME~1\DEFAUL~1\APPLIC~1\desktop.ini
[03/06/2004|18:04] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Help
[27/02/2004|19:30] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[28/02/2004|18:59] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[28/02/2004|21:13] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[28/02/2004|18:58] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Real

[10/06/2008|21:08] C:\DOCUME~1\ilheme\APPLIC~1\Adobe
[22/05/2008|21:41] C:\DOCUME~1\ilheme\APPLIC~1\AdobeUM
[28/02/2004|16:48] C:\DOCUME~1\ilheme\APPLIC~1\Ahead
[28/02/2004|17:26] C:\DOCUME~1\ilheme\APPLIC~1\Cyberlink
[27/02/2004|19:26] C:\DOCUME~1\ilheme\APPLIC~1\desktop.ini
[13/05/2007|16:50] C:\DOCUME~1\ilheme\APPLIC~1\EPSON
[08/09/2007|21:33] C:\DOCUME~1\ilheme\APPLIC~1\Google
[11/06/2008|11:12] C:\DOCUME~1\ilheme\APPLIC~1\Grisoft
[03/06/2004|18:04] C:\DOCUME~1\ilheme\APPLIC~1\Help
[09/05/2007|17:12] C:\DOCUME~1\ilheme\APPLIC~1\HelpFilesUpdatePatch_HELPFILEREPLACE.log
[09/05/2007|17:13] C:\DOCUME~1\ilheme\APPLIC~1\HelpFilesUpdatePatch_PRINTHELPWRAPPER.log
[27/05/2007|19:10] C:\DOCUME~1\ilheme\APPLIC~1\HP
[27/02/2004|19:30] C:\DOCUME~1\ilheme\APPLIC~1\Identities
[10/06/2008|21:50] C:\DOCUME~1\ilheme\APPLIC~1\Lavasoft
[28/02/2004|18:59] C:\DOCUME~1\ilheme\APPLIC~1\Macromedia
[10/02/2008|13:53] C:\DOCUME~1\ilheme\APPLIC~1\Microsoft
[09/05/2007|19:21] C:\DOCUME~1\ilheme\APPLIC~1\PatchUpdate_HP_CounterReport_Update_HPSU.log
[09/05/2007|17:11] C:\DOCUME~1\ilheme\APPLIC~1\PatchUpdate_InstantShareJPG.log
[09/05/2007|16:21] C:\DOCUME~1\ilheme\APPLIC~1\PatchUpdate_IZClosingDiscError.log
[28/02/2004|18:58] C:\DOCUME~1\ilheme\APPLIC~1\Real
[13/05/2007|16:51] C:\DOCUME~1\ilheme\APPLIC~1\Smart Panel
[03/06/2007|19:33] C:\DOCUME~1\ilheme\APPLIC~1\Sun
[09/05/2007|16:19] C:\DOCUME~1\ilheme\APPLIC~1\Update_HP_RedboxHprblog_HPSU.log
[08/05/2007|12:00] C:\DOCUME~1\ilheme\APPLIC~1\wklnhst.dat

[28/02/2004|17:52] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[28/02/2004|17:52] C:\DOCUME~1\INVIT~1\APPLIC~1\AdobeUM
[28/02/2004|16:48] C:\DOCUME~1\INVIT~1\APPLIC~1\Ahead
[28/02/2004|17:26] C:\DOCUME~1\INVIT~1\APPLIC~1\Cyberlink
[27/02/2004|19:26] C:\DOCUME~1\INVIT~1\APPLIC~1\desktop.ini
[28/07/2007|12:01] C:\DOCUME~1\INVIT~1\APPLIC~1\Google
[03/06/2004|18:04] C:\DOCUME~1\INVIT~1\APPLIC~1\Help
[27/02/2004|19:30] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[28/02/2004|18:59] C:\DOCUME~1\INVIT~1\APPLIC~1\Macromedia
[29/05/2008|13:20] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[05/06/2008|13:46] C:\DOCUME~1\INVIT~1\APPLIC~1\PowerChallenge
[28/02/2004|18:58] C:\DOCUME~1\INVIT~1\APPLIC~1\Real
[02/11/2007|16:37] C:\DOCUME~1\INVIT~1\APPLIC~1\Sun

[01/09/2007|15:55] C:\DOCUME~1\LOCALS~1\APPLIC~1\Google
[18/05/2007|16:58] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[09/05/2004|18:25] C:\DOCUME~1\LOCALS~1\APPLIC~1\X10 Commander

[09/05/2007|00:33] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

[19/05/2007|11:21] C:\DOCUME~1\PROPRI~1\APPLIC~1\Real

----------------[ Tâches planifiées dans C:\WINDOWS\tasks ]---------------

[11/06/2008 12:00][--a------] C:\WINDOWS\tasks\HPpromotions journeysoftware.job
[30/08/2002 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
[11/06/2008 13:16][--ah-----] C:\WINDOWS\tasks\SA.DAT

---------------[ Listing des dossiers dans C:\Program Files ]--------------

[13/05/2007|16:46] C:\Program Files\ABBYY FineReader 5.0 Sprint
[14/06/2007|22:06] C:\Program Files\Adobe
[09/05/2004|18:24] C:\Program Files\Ahead
[27/02/2004|20:03] C:\Program Files\ATI Technologies
[20/10/2007|18:43] C:\Program Files\Azureus
[27/02/2004|20:11] C:\Program Files\C-Media 3D Audio
[28/02/2004|17:16] C:\Program Files\Common Files
[27/02/2004|19:28] C:\Program Files\ComPlus Applications
[28/02/2004|17:15] C:\Program Files\CyberLink
[28/02/2004|15:33] C:\Program Files\DivX
[13/05/2007|16:46] C:\Program Files\EPSON
[05/06/2008|21:25] C:\Program Files\Fichiers communs
[08/09/2007|21:32] C:\Program Files\Google
[11/06/2008|11:12] C:\Program Files\Grisoft
[08/05/2007|11:51] C:\Program Files\Hewlett-Packard
[28/02/2004|15:16] C:\Program Files\HighMAT CD Writing Wizard
[28/02/2004|17:16] C:\Program Files\Home Cinema
[08/05/2007|11:50] C:\Program Files\HP
[13/05/2007|16:46] C:\Program Files\InstallShield Installation Information
[27/02/2004|19:45] C:\Program Files\Intel
[02/06/2008|21:41] C:\Program Files\Internet Explorer
[28/02/2004|16:40] C:\Program Files\Medion Tools
[02/06/2008|21:33] C:\Program Files\Messenger
[28/02/2004|15:52] C:\Program Files\Microsoft AutoRoute
[10/05/2007|21:56] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[27/02/2004|19:30] C:\Program Files\microsoft frontpage
[28/02/2004|15:51] C:\Program Files\Microsoft Money
[08/05/2007|18:54] C:\Program Files\Microsoft Office
[28/02/2004|15:56] C:\Program Files\Microsoft Picture It! 9
[08/05/2007|18:54] C:\Program Files\Microsoft Visual Studio
[08/05/2007|18:54] C:\Program Files\Microsoft Works
[28/02/2004|15:38] C:\Program Files\Microsoft Works Suite 2004
[08/05/2007|18:53] C:\Program Files\Microsoft.NET
[12/06/2007|19:17] C:\Program Files\Mineraux
[02/06/2008|21:33] C:\Program Files\Movie Maker
[08/05/2007|18:54] C:\Program Files\MSBuild
[27/02/2004|19:28] C:\Program Files\MSN Gaming Zone
[10/05/2007|21:55] C:\Program Files\MSXML 4.0
[28/02/2004|17:18] C:\Program Files\MUSICMATCH
[28/02/2004|16:01] C:\Program Files\muvee Technologies
[11/06/2008|13:49] C:\Program Files\Navilog1
[02/06/2008|21:29] C:\Program Files\NetMeeting
[28/02/2004|18:49] C:\Program Files\Nullsoft
[02/06/2008|21:29] C:\Program Files\Outlook Express
[05/06/2008|21:28] C:\Program Files\Pinnacle
[11/06/2008|13:16] C:\Program Files\PrestoNotes
[28/02/2004|18:49] C:\Program Files\Real
[27/02/2004|19:28] C:\Program Files\Services en ligne
[13/05/2007|16:50] C:\Program Files\Smart Panel
[08/05/2007|19:36] C:\Program Files\SmartSound Software
[08/05/2007|16:50] C:\Program Files\Symantec
[11/06/2008|13:24] C:\Program Files\Symantec AntiVirus
[28/02/2004|15:11] C:\Program Files\Uninstall Information
[09/05/2004|18:16] C:\Program Files\USB Wireless Keyboard Driver
[28/02/2004|16:05] C:\Program Files\Winbond Electronics Corp
[27/02/2004|19:35] C:\Program Files\Windows Journal Viewer
[08/05/2007|17:48] C:\Program Files\Windows Live Toolbar
[17/05/2007|20:34] C:\Program Files\Windows Media Connect 2
[02/06/2008|21:29] C:\Program Files\Windows Media Player
[02/06/2008|21:29] C:\Program Files\Windows NT
[08/05/2007|11:42] C:\Program Files\WindowsUpdate
[27/05/2004|12:08] C:\Program Files\X10 Hardware
[27/02/2004|19:30] C:\Program Files\xerox

------[ Listing des dossiers dans C:\Program Files\Fichiers communs ]------

[28/02/2004|17:52] C:\Program Files\Fichiers communs\Adobe
[28/02/2004|15:34] C:\Program Files\Fichiers communs\Ahead
[03/06/2004|14:56] C:\Program Files\Fichiers communs\AOL
[28/02/2004|16:05] C:\Program Files\Fichiers communs\Borland Shared
[08/05/2007|18:54] C:\Program Files\Fichiers communs\DESIGNER
[08/05/2007|11:52] C:\Program Files\Fichiers communs\HP
[28/02/2004|16:01] C:\Program Files\Fichiers communs\InstallShield
[07/07/2007|21:20] C:\Program Files\Fichiers communs\Microsoft Shared
[27/02/2004|19:28] C:\Program Files\Fichiers communs\MSSoap
[28/02/2004|16:01] C:\Program Files\Fichiers communs\muvee Technologies
[27/02/2004|19:26] C:\Program Files\Fichiers communs\ODBC
[28/02/2004|18:55] C:\Program Files\Fichiers communs\Real
[27/02/2004|19:28] C:\Program Files\Fichiers communs\Services
[08/05/2007|11:53] C:\Program Files\Fichiers communs\Sonic Shared
[27/02/2004|19:26] C:\Program Files\Fichiers communs\SpeechEngines
[08/05/2007|16:50] C:\Program Files\Fichiers communs\Symantec Shared
[02/06/2008|21:29] C:\Program Files\Fichiers communs\System
[28/02/2004|18:55] C:\Program Files\Fichiers communs\xing shared

---------------------------[ Process ]--------------------------

... 47

... OK !

----------------------[ Recherche avec S_Lop ]---------------------

Aucun fichier / dossier Lop trouvé !

-----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------

C:\DOCUME~1\ilheme\Cookies\ilheme@adin.bigpoint[2].txt
C:\DOCUME~1\ilheme\Cookies\ilheme@fr1.seafight.bigpoint[1].txt
C:\DOCUME~1\ilheme\Cookies\ilheme@fr1.seafight.bigpoint[1].txt

----------------------[ Verification du Registre ]----------------------

..... OK !

--------------------[ Verification du fichier Hosts ]---------------------

Fichier Hosts PROPRE


----------------[ Recherche de fichiers avec Catchme ]-----------------

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-06-11 14:13:46
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0

--------------------[ Recherche d'autres infections ]---------------------


Aucune autre infection trouvée !

[F:2216][D:43]-> C:\DOCUME~1\ilheme\LOCALS~1\Temp
[F:446][D:0]-> C:\DOCUME~1\ilheme\Cookies
[F:7340][D:19]-> C:\DOCUME~1\ilheme\LOCALS~1\TEMPOR~1\content.IE5

--------------------[ Fin du rapport a 14:14:16.95 ]----------------------
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
fiat500 Messages postés 2621 Date d'inscription vendredi 30 mai 2008 Statut Membre Dernière intervention 25 mars 2009 82
11 juin 2008 à 14:30
0
Merci beaucoup Fiat ca à l'air de fonctionner, tu sais pas je galère depuis ce matin je pouvé pas avancé mon boulot, tu m'enlève 1 sacrée épine lol
a +
0
fiat500 Messages postés 2621 Date d'inscription vendredi 30 mai 2008 Statut Membre Dernière intervention 25 mars 2009 82
11 juin 2008 à 14:32
ok a+
n'oublie pas de mettre resolue mes fais ca aussi:

fais un scan en ligne avec Internet Explorer stp:

BitDefender en ligne: http://www.bitdefender.fr/scan_fr/scan8/ie.html
Tutoriel BitDefender en ligne: http://cybersecurite.xooit.com/t201-Scan-en-ligne-BitDefender.htm
0