You have a security problem...c'est sur!

lodavi84 Messages postés 2 Statut Membre -  
lodavi84 Messages postés 2 Statut Membre -
Bonjour,
jai nod 32 que je surnomme "la passoire" et g choppé ce truc, si qlq un peut m'aider je lui envoie le rapport

merci
Configuration: Windows XP
Firefox 3.0.1

3 réponses

  1. grib1212 Messages postés 17 Statut Membre 2
     
    pourquoi passoire peut être mal configuré
    2
  2. Hadrienen Messages postés 723 Statut Membre 25
     
    SI tu sais faire un rapport HijacktThis, envoie, sinon dis que tu ne sais pas le faire et je te donne de quoi fairE.
    0
    1. lodavi84 Messages postés 2 Statut Membre
       
      Logfile of Trend Micro HijackThis v2.0.2
      Scan saved at 16:40:17, on 28/08/2008
      Platform: Windows XP SP2 (WinNT 5.01.2600)
      MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
      Boot mode: Normal

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\system32\spoolsv.exe
      C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
      C:\Program Files\Eset\nod32krn.exe
      C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
      C:\WINDOWS\Explorer.EXE
      C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
      C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
      C:\Program Files\Eset\nod32kui.exe
      C:\Program Files\Messenger\msmsgs.exe
      C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\a.exe
      C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\c.exe
      C:\WINDOWS\system32\wscntfy.exe
      C:\WINDOWS\System32\svchost.exe
      C:\Program Files\Mozilla Firefox\firefox.exe
      C:\Documents and Settings\Propriétaire\Bureau\HiJackThis.exe

      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
      R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://fr.rd.yahoo.com/customize/ycomp/defaults/su/*https://fr.yahoo.com/
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      O2 - BHO: (no name) - {005CD86E-893D-4A2A-BCA9-681F0E5B1A1F} - (no file)
      O2 - BHO: (no name) - {025FB06B-5215-4D8F-94DB-26D900F69E76} - (no file)
      O2 - BHO: (no name) - {02727B6C-2A94-4879-9758-C64057068F66} - (no file)
      O2 - BHO: (no name) - {053BF175-3EFB-4F21-92C3-E5FAFC08239A} - (no file)
      O2 - BHO: (no name) - {05AF0F5F-C005-411A-8ACD-D591D1A29FB5} - (no file)
      O2 - BHO: (no name) - {0E2D0564-DD86-4805-BA4A-816026BE657A} - (no file)
      O2 - BHO: (no name) - {11F80518-6B9D-47D5-AD5B-AE278FD57F32} - (no file)
      O2 - BHO: (no name) - {14F4B169-2CB3-4B32-9A1D-B8768A77C7B8} - (no file)
      O2 - BHO: Download Manager Browser Helper Object - {19C8E43B-07B3-49CB-BFFC-6777B593E6F8} - C:\PROGRA~1\FICHIE~1\fluxDVD\DOWNLO~1\XEBDLH~1.DLL
      O2 - BHO: (no name) - {27ad4b59-00a6-4c85-ad90-76a156d191f4} - (no file)
      O2 - BHO: (no name) - {2A65BE74-EC8D-401E-93DF-5BDA3DC05505} - C:\WINDOWS\system32\opnonlli.dll
      O2 - BHO: (no name) - {31f430cf-c6a2-44de-b8b6-df01772295c0} - (no file)
      O2 - BHO: (no name) - {3E36E533-B73E-4556-B649-E34989CE633B} - (no file)
      O2 - BHO: (no name) - {408230D6-371A-40BB-A689-0C35A4090E85} - (no file)
      O2 - BHO: (no name) - {41c3e9e0-4054-4387-9b48-d8740b75350d} - (no file)
      O2 - BHO: (no name) - {470DF827-7D03-4339-883D-F82F94C66301} - (no file)
      O2 - BHO: (no name) - {4962AB1F-5C9D-4961-BFB0-42E2C957AADC} - (no file)
      O2 - BHO: (no name) - {4AB30846-BED5-43B6-B471-349CA83090A7} - (no file)
      O2 - BHO: (no name) - {4B36CF2A-18BC-44A7-B236-0CC24C1E95FB} - (no file)
      O2 - BHO: (no name) - {4B816994-89FF-47D5-9CE8-47947CDC3E03} - (no file)
      O2 - BHO: (no name) - {4FCF3236-CDB4-4221-A225-2954BBCFEE49} - (no file)
      O2 - BHO: (no name) - {507DE648-A544-48CD-9C94-311AE66B9529} - (no file)
      O2 - BHO: (no name) - {5719D287-CBA1-4825-B1C3-ADFD71C062B4} - (no file)
      O2 - BHO: (no name) - {57B4BAE2-CBFB-4C54-807E-DD17E9DA5CCA} - (no file)
      O2 - BHO: (no name) - {5853D7E5-CF44-4353-9801-2D575254105E} - (no file)
      O2 - BHO: (no name) - {58663ccc-b561-491c-9d9e-5dda5a89e14b} - (no file)
      O2 - BHO: (no name) - {5aafab2a-578d-4edf-a2cb-970851dc513d} - (no file)
      O2 - BHO: (no name) - {5C358A4E-AFB2-402C-AFC9-AEFD61DDB79D} - (no file)
      O2 - BHO: {428c716f-f1bf-6759-f194-7416332fb8f5} - {5f8bf233-6147-491f-9576-fb1ff617c824} - C:\WINDOWS\system32\xhtqed.dll (file missing)
      O2 - BHO: (no name) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - (no file)
      O2 - BHO: (no name) - {62649F82-DA45-4665-AB6F-4A88A8DF0FCC} - (no file)
      O2 - BHO: (no name) - {661A3879-9893-4028-AEAC-E93AB53FE587} - (no file)
      O2 - BHO: (no name) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - (no file)
      O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
      O2 - BHO: (no name) - {7C08626B-FF06-4AFC-B479-C52D67F64A2F} - (no file)
      O2 - BHO: (no name) - {81bd990e-6241-48a2-b979-b13537e8add7} - (no file)
      O2 - BHO: (no name) - {871FCE84-0EBF-458E-A181-A96AFF258780} - (no file)
      O2 - BHO: (no name) - {88228e19-5f9c-43e6-9f74-acd1263a7e43} - (no file)
      O2 - BHO: (no name) - {88C5082C-657B-4B39-9AA3-A713412B3B21} - (no file)
      O2 - BHO: (no name) - {8e6b7608-7bef-47c0-be4d-f1131a71de96} - (no file)
      O2 - BHO: (no name) - {8F1B12A4-D96E-4A8F-8C3A-74003DD0BD01} - (no file)
      O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
      O2 - BHO: (no name) - {92452D81-9119-4F48-A623-3407016D1184} - (no file)
      O2 - BHO: (no name) - {944DEE05-DF19-44E5-BA0F-2E4969A45711} - (no file)
      O2 - BHO: (no name) - {96BA94C6-EF21-48B4-BD2F-E4929A17B7B9} - (no file)
      O2 - BHO: (no name) - {98f44ac8-dbfd-43f8-8493-477b5c5e7f84} - (no file)
      O2 - BHO: (no name) - {9BB30EA7-EF02-4F95-A44C-006DD9CA913A} - (no file)
      O2 - BHO: (no name) - {9E07E8D3-E9DA-4AF2-8AB7-14C9BCB05348} - (no file)
      O2 - BHO: (no name) - {9F56EEEF-7117-4438-8910-23C3E68BD63A} - (no file)
      O2 - BHO: (no name) - {9FADC025-312E-40AF-A8CE-9D93072211E7} - C:\WINDOWS\system32\urqQhFUn.dll (file missing)
      O2 - BHO: (no name) - {A0E4D6AC-7335-42F8-B15C-7C5A1CB975A6} - C:\WINDOWS\system32\rqRKCVLf.dll (file missing)
      O2 - BHO: (no name) - {A4D85B29-7858-415E-8059-AB0595746EB8} - (no file)
      O2 - BHO: (no name) - {b41e2925-8dd1-4b29-97f6-d667da72ff02} - (no file)
      O2 - BHO: (no name) - {BFE56CE3-69C0-45D2-A237-08EAEF4AB0D4} - (no file)
      O2 - BHO: (no name) - {c09730c1-f978-4aed-8530-1ba91bac2d2a} - (no file)
      O2 - BHO: (no name) - {cf94d6c4-b4d8-4f42-9b4a-f9c2342b3459} - (no file)
      O2 - BHO: (no name) - {d0fcf25f-129e-487d-845c-7e14dec541c8} - (no file)
      O2 - BHO: (no name) - {d1f4986f-86f9-46d6-ae75-6438f92b2ddf} - (no file)
      O2 - BHO: (no name) - {D2F93373-7EA8-47CE-864A-519D2FCCAAD3} - C:\WINDOWS\system32\yayxyyvV.dll (file missing)
      O2 - BHO: (no name) - {DA9999E1-6A69-43FB-BCE8-AE88E1910A78} - (no file)
      O2 - BHO: (no name) - {DC2C469A-A3FB-4336-B4E1-2C150BC99EB4} - (no file)
      O2 - BHO: (no name) - {DCD7DDA7-0D54-435F-B033-021910C9B9E7} - (no file)
      O2 - BHO: (no name) - {E8F171E6-B7CE-452D-951F-094CFAAEF8C9} - (no file)
      O2 - BHO: (no name) - {EA882C86-E82C-4559-B13D-2FAF5EF0F55C} - (no file)
      O2 - BHO: (no name) - {EBF2E4A3-23F9-46D6-A688-4A4F1E01F804} - (no file)
      O2 - BHO: (no name) - {F3FCB4C5-F5B1-40CC-ADA0-CEB181E4F18A} - (no file)
      O2 - BHO: (no name) - {f675be06-da01-47b3-bc35-de9dc317640f} - (no file)
      O2 - BHO: (no name) - {f76d2d65-0ef4-49f8-a505-a834b4db1a90} - (no file)
      O2 - BHO: (no name) - {FD10608C-8528-4F9D-8CB5-CC03F01271D2} - (no file)
      O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
      O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
      O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
      O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
      O4 - HKLM\..\Run: [04e6b6dc] rundll32.exe "C:\WINDOWS\system32\bkkmfoni.dll",b
      O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
      O4 - HKCU\..\Run: [Somefox] C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\a.exe
      O8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
      O8 - Extra context menu item: Download all videos using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
      O8 - Extra context menu item: Download link using &BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
      O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
      O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
      O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
      O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
      O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O15 - Trusted Zone: *.canalplay.com
      O15 - Trusted Zone: *.canalplusactive.com
      O15 - Trusted Zone: *.canalplay.com (HKLM)
      O15 - Trusted Zone: *.canalplusactive.com (HKLM)
      O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
      O17 - HKLM\System\CCS\Services\Tcpip\..\{EED5BA38-33DD-4FBE-8457-07E5820F4844}: NameServer = 192.168.1.1,208.67.222.222
      O20 - AppInit_DLLs: haicgs.dll ssnhxq.dll qltltv.dll fttsdz.dll nazxig.dll xhtqed.dll
      O20 - Winlogon Notify: ljJYSihi - C:\WINDOWS\
      O20 - Winlogon Notify: opnonlli - C:\WINDOWS\SYSTEM32\opnonlli.dll
      O23 - Service: Bluetooth Service (btwdins) - WIDCOMM, Inc. - C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
      O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe (file missing)
      O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe
      O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
      O23 - Service: lxby_device - Lexmark International, Inc. - C:\WINDOWS\system32\lxbycoms.exe
      O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
      O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
      0