You have a security problem...c'est sur!

Fermé
lodavi84 Messages postés 2 Date d'inscription jeudi 28 août 2008 Statut Membre Dernière intervention 28 août 2008 - 28 août 2008 à 16:38
lodavi84 Messages postés 2 Date d'inscription jeudi 28 août 2008 Statut Membre Dernière intervention 28 août 2008 - 28 août 2008 à 16:50
Bonjour,
jai nod 32 que je surnomme "la passoire" et g choppé ce truc, si qlq un peut m'aider je lui envoie le rapport

merci

3 réponses

grib1212 Messages postés 17 Date d'inscription lundi 25 août 2008 Statut Membre Dernière intervention 28 août 2008 2
28 août 2008 à 16:40
pourquoi passoire peut être mal configuré
2
Hadrienen Messages postés 716 Date d'inscription mercredi 31 octobre 2007 Statut Membre Dernière intervention 23 décembre 2010 25
28 août 2008 à 16:40
SI tu sais faire un rapport HijacktThis, envoie, sinon dis que tu ne sais pas le faire et je te donne de quoi fairE.
0
lodavi84 Messages postés 2 Date d'inscription jeudi 28 août 2008 Statut Membre Dernière intervention 28 août 2008
28 août 2008 à 16:50
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:40:17, on 28/08/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
C:\Program Files\Eset\nod32krn.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\Messenger\msmsgs.exe
C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\a.exe
C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\c.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Propriétaire\Bureau\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://fr.rd.yahoo.com/customize/ycomp/defaults/su/*https://fr.yahoo.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: (no name) - {005CD86E-893D-4A2A-BCA9-681F0E5B1A1F} - (no file)
O2 - BHO: (no name) - {025FB06B-5215-4D8F-94DB-26D900F69E76} - (no file)
O2 - BHO: (no name) - {02727B6C-2A94-4879-9758-C64057068F66} - (no file)
O2 - BHO: (no name) - {053BF175-3EFB-4F21-92C3-E5FAFC08239A} - (no file)
O2 - BHO: (no name) - {05AF0F5F-C005-411A-8ACD-D591D1A29FB5} - (no file)
O2 - BHO: (no name) - {0E2D0564-DD86-4805-BA4A-816026BE657A} - (no file)
O2 - BHO: (no name) - {11F80518-6B9D-47D5-AD5B-AE278FD57F32} - (no file)
O2 - BHO: (no name) - {14F4B169-2CB3-4B32-9A1D-B8768A77C7B8} - (no file)
O2 - BHO: Download Manager Browser Helper Object - {19C8E43B-07B3-49CB-BFFC-6777B593E6F8} - C:\PROGRA~1\FICHIE~1\fluxDVD\DOWNLO~1\XEBDLH~1.DLL
O2 - BHO: (no name) - {27ad4b59-00a6-4c85-ad90-76a156d191f4} - (no file)
O2 - BHO: (no name) - {2A65BE74-EC8D-401E-93DF-5BDA3DC05505} - C:\WINDOWS\system32\opnonlli.dll
O2 - BHO: (no name) - {31f430cf-c6a2-44de-b8b6-df01772295c0} - (no file)
O2 - BHO: (no name) - {3E36E533-B73E-4556-B649-E34989CE633B} - (no file)
O2 - BHO: (no name) - {408230D6-371A-40BB-A689-0C35A4090E85} - (no file)
O2 - BHO: (no name) - {41c3e9e0-4054-4387-9b48-d8740b75350d} - (no file)
O2 - BHO: (no name) - {470DF827-7D03-4339-883D-F82F94C66301} - (no file)
O2 - BHO: (no name) - {4962AB1F-5C9D-4961-BFB0-42E2C957AADC} - (no file)
O2 - BHO: (no name) - {4AB30846-BED5-43B6-B471-349CA83090A7} - (no file)
O2 - BHO: (no name) - {4B36CF2A-18BC-44A7-B236-0CC24C1E95FB} - (no file)
O2 - BHO: (no name) - {4B816994-89FF-47D5-9CE8-47947CDC3E03} - (no file)
O2 - BHO: (no name) - {4FCF3236-CDB4-4221-A225-2954BBCFEE49} - (no file)
O2 - BHO: (no name) - {507DE648-A544-48CD-9C94-311AE66B9529} - (no file)
O2 - BHO: (no name) - {5719D287-CBA1-4825-B1C3-ADFD71C062B4} - (no file)
O2 - BHO: (no name) - {57B4BAE2-CBFB-4C54-807E-DD17E9DA5CCA} - (no file)
O2 - BHO: (no name) - {5853D7E5-CF44-4353-9801-2D575254105E} - (no file)
O2 - BHO: (no name) - {58663ccc-b561-491c-9d9e-5dda5a89e14b} - (no file)
O2 - BHO: (no name) - {5aafab2a-578d-4edf-a2cb-970851dc513d} - (no file)
O2 - BHO: (no name) - {5C358A4E-AFB2-402C-AFC9-AEFD61DDB79D} - (no file)
O2 - BHO: {428c716f-f1bf-6759-f194-7416332fb8f5} - {5f8bf233-6147-491f-9576-fb1ff617c824} - C:\WINDOWS\system32\xhtqed.dll (file missing)
O2 - BHO: (no name) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - (no file)
O2 - BHO: (no name) - {62649F82-DA45-4665-AB6F-4A88A8DF0FCC} - (no file)
O2 - BHO: (no name) - {661A3879-9893-4028-AEAC-E93AB53FE587} - (no file)
O2 - BHO: (no name) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7C08626B-FF06-4AFC-B479-C52D67F64A2F} - (no file)
O2 - BHO: (no name) - {81bd990e-6241-48a2-b979-b13537e8add7} - (no file)
O2 - BHO: (no name) - {871FCE84-0EBF-458E-A181-A96AFF258780} - (no file)
O2 - BHO: (no name) - {88228e19-5f9c-43e6-9f74-acd1263a7e43} - (no file)
O2 - BHO: (no name) - {88C5082C-657B-4B39-9AA3-A713412B3B21} - (no file)
O2 - BHO: (no name) - {8e6b7608-7bef-47c0-be4d-f1131a71de96} - (no file)
O2 - BHO: (no name) - {8F1B12A4-D96E-4A8F-8C3A-74003DD0BD01} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {92452D81-9119-4F48-A623-3407016D1184} - (no file)
O2 - BHO: (no name) - {944DEE05-DF19-44E5-BA0F-2E4969A45711} - (no file)
O2 - BHO: (no name) - {96BA94C6-EF21-48B4-BD2F-E4929A17B7B9} - (no file)
O2 - BHO: (no name) - {98f44ac8-dbfd-43f8-8493-477b5c5e7f84} - (no file)
O2 - BHO: (no name) - {9BB30EA7-EF02-4F95-A44C-006DD9CA913A} - (no file)
O2 - BHO: (no name) - {9E07E8D3-E9DA-4AF2-8AB7-14C9BCB05348} - (no file)
O2 - BHO: (no name) - {9F56EEEF-7117-4438-8910-23C3E68BD63A} - (no file)
O2 - BHO: (no name) - {9FADC025-312E-40AF-A8CE-9D93072211E7} - C:\WINDOWS\system32\urqQhFUn.dll (file missing)
O2 - BHO: (no name) - {A0E4D6AC-7335-42F8-B15C-7C5A1CB975A6} - C:\WINDOWS\system32\rqRKCVLf.dll (file missing)
O2 - BHO: (no name) - {A4D85B29-7858-415E-8059-AB0595746EB8} - (no file)
O2 - BHO: (no name) - {b41e2925-8dd1-4b29-97f6-d667da72ff02} - (no file)
O2 - BHO: (no name) - {BFE56CE3-69C0-45D2-A237-08EAEF4AB0D4} - (no file)
O2 - BHO: (no name) - {c09730c1-f978-4aed-8530-1ba91bac2d2a} - (no file)
O2 - BHO: (no name) - {cf94d6c4-b4d8-4f42-9b4a-f9c2342b3459} - (no file)
O2 - BHO: (no name) - {d0fcf25f-129e-487d-845c-7e14dec541c8} - (no file)
O2 - BHO: (no name) - {d1f4986f-86f9-46d6-ae75-6438f92b2ddf} - (no file)
O2 - BHO: (no name) - {D2F93373-7EA8-47CE-864A-519D2FCCAAD3} - C:\WINDOWS\system32\yayxyyvV.dll (file missing)
O2 - BHO: (no name) - {DA9999E1-6A69-43FB-BCE8-AE88E1910A78} - (no file)
O2 - BHO: (no name) - {DC2C469A-A3FB-4336-B4E1-2C150BC99EB4} - (no file)
O2 - BHO: (no name) - {DCD7DDA7-0D54-435F-B033-021910C9B9E7} - (no file)
O2 - BHO: (no name) - {E8F171E6-B7CE-452D-951F-094CFAAEF8C9} - (no file)
O2 - BHO: (no name) - {EA882C86-E82C-4559-B13D-2FAF5EF0F55C} - (no file)
O2 - BHO: (no name) - {EBF2E4A3-23F9-46D6-A688-4A4F1E01F804} - (no file)
O2 - BHO: (no name) - {F3FCB4C5-F5B1-40CC-ADA0-CEB181E4F18A} - (no file)
O2 - BHO: (no name) - {f675be06-da01-47b3-bc35-de9dc317640f} - (no file)
O2 - BHO: (no name) - {f76d2d65-0ef4-49f8-a505-a834b4db1a90} - (no file)
O2 - BHO: (no name) - {FD10608C-8528-4F9D-8CB5-CC03F01271D2} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [04e6b6dc] rundll32.exe "C:\WINDOWS\system32\bkkmfoni.dll",b
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Somefox] C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\a.exe
O8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Download all videos using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: Download link using &BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: *.canalplay.com
O15 - Trusted Zone: *.canalplusactive.com
O15 - Trusted Zone: *.canalplay.com (HKLM)
O15 - Trusted Zone: *.canalplusactive.com (HKLM)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O17 - HKLM\System\CCS\Services\Tcpip\..\{EED5BA38-33DD-4FBE-8457-07E5820F4844}: NameServer = 192.168.1.1,208.67.222.222
O20 - AppInit_DLLs: haicgs.dll ssnhxq.dll qltltv.dll fttsdz.dll nazxig.dll xhtqed.dll
O20 - Winlogon Notify: ljJYSihi - C:\WINDOWS\
O20 - Winlogon Notify: opnonlli - C:\WINDOWS\SYSTEM32\opnonlli.dll
O23 - Service: Bluetooth Service (btwdins) - WIDCOMM, Inc. - C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: lxby_device - Lexmark International, Inc. - C:\WINDOWS\system32\lxbycoms.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
0