You have a security problem...c'est sur!

lodavi84 Messages postés 2 Statut Membre -  
lodavi84 Messages postés 2 Statut Membre -
Bonjour,
jai nod 32 que je surnomme "la passoire" et g choppé ce truc, si qlq un peut m'aider je lui envoie le rapport

merci

3 réponses

grib1212 Messages postés 17 Statut Membre 2
 
pourquoi passoire peut être mal configuré
2
Hadrienen Messages postés 723 Statut Membre 25
 
SI tu sais faire un rapport HijacktThis, envoie, sinon dis que tu ne sais pas le faire et je te donne de quoi fairE.
0
lodavi84 Messages postés 2 Statut Membre
 
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:40:17, on 28/08/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
C:\Program Files\Eset\nod32krn.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\Messenger\msmsgs.exe
C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\a.exe
C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\c.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Propriétaire\Bureau\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://fr.rd.yahoo.com/customize/ycomp/defaults/su/*https://fr.yahoo.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: (no name) - {005CD86E-893D-4A2A-BCA9-681F0E5B1A1F} - (no file)
O2 - BHO: (no name) - {025FB06B-5215-4D8F-94DB-26D900F69E76} - (no file)
O2 - BHO: (no name) - {02727B6C-2A94-4879-9758-C64057068F66} - (no file)
O2 - BHO: (no name) - {053BF175-3EFB-4F21-92C3-E5FAFC08239A} - (no file)
O2 - BHO: (no name) - {05AF0F5F-C005-411A-8ACD-D591D1A29FB5} - (no file)
O2 - BHO: (no name) - {0E2D0564-DD86-4805-BA4A-816026BE657A} - (no file)
O2 - BHO: (no name) - {11F80518-6B9D-47D5-AD5B-AE278FD57F32} - (no file)
O2 - BHO: (no name) - {14F4B169-2CB3-4B32-9A1D-B8768A77C7B8} - (no file)
O2 - BHO: Download Manager Browser Helper Object - {19C8E43B-07B3-49CB-BFFC-6777B593E6F8} - C:\PROGRA~1\FICHIE~1\fluxDVD\DOWNLO~1\XEBDLH~1.DLL
O2 - BHO: (no name) - {27ad4b59-00a6-4c85-ad90-76a156d191f4} - (no file)
O2 - BHO: (no name) - {2A65BE74-EC8D-401E-93DF-5BDA3DC05505} - C:\WINDOWS\system32\opnonlli.dll
O2 - BHO: (no name) - {31f430cf-c6a2-44de-b8b6-df01772295c0} - (no file)
O2 - BHO: (no name) - {3E36E533-B73E-4556-B649-E34989CE633B} - (no file)
O2 - BHO: (no name) - {408230D6-371A-40BB-A689-0C35A4090E85} - (no file)
O2 - BHO: (no name) - {41c3e9e0-4054-4387-9b48-d8740b75350d} - (no file)
O2 - BHO: (no name) - {470DF827-7D03-4339-883D-F82F94C66301} - (no file)
O2 - BHO: (no name) - {4962AB1F-5C9D-4961-BFB0-42E2C957AADC} - (no file)
O2 - BHO: (no name) - {4AB30846-BED5-43B6-B471-349CA83090A7} - (no file)
O2 - BHO: (no name) - {4B36CF2A-18BC-44A7-B236-0CC24C1E95FB} - (no file)
O2 - BHO: (no name) - {4B816994-89FF-47D5-9CE8-47947CDC3E03} - (no file)
O2 - BHO: (no name) - {4FCF3236-CDB4-4221-A225-2954BBCFEE49} - (no file)
O2 - BHO: (no name) - {507DE648-A544-48CD-9C94-311AE66B9529} - (no file)
O2 - BHO: (no name) - {5719D287-CBA1-4825-B1C3-ADFD71C062B4} - (no file)
O2 - BHO: (no name) - {57B4BAE2-CBFB-4C54-807E-DD17E9DA5CCA} - (no file)
O2 - BHO: (no name) - {5853D7E5-CF44-4353-9801-2D575254105E} - (no file)
O2 - BHO: (no name) - {58663ccc-b561-491c-9d9e-5dda5a89e14b} - (no file)
O2 - BHO: (no name) - {5aafab2a-578d-4edf-a2cb-970851dc513d} - (no file)
O2 - BHO: (no name) - {5C358A4E-AFB2-402C-AFC9-AEFD61DDB79D} - (no file)
O2 - BHO: {428c716f-f1bf-6759-f194-7416332fb8f5} - {5f8bf233-6147-491f-9576-fb1ff617c824} - C:\WINDOWS\system32\xhtqed.dll (file missing)
O2 - BHO: (no name) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - (no file)
O2 - BHO: (no name) - {62649F82-DA45-4665-AB6F-4A88A8DF0FCC} - (no file)
O2 - BHO: (no name) - {661A3879-9893-4028-AEAC-E93AB53FE587} - (no file)
O2 - BHO: (no name) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7C08626B-FF06-4AFC-B479-C52D67F64A2F} - (no file)
O2 - BHO: (no name) - {81bd990e-6241-48a2-b979-b13537e8add7} - (no file)
O2 - BHO: (no name) - {871FCE84-0EBF-458E-A181-A96AFF258780} - (no file)
O2 - BHO: (no name) - {88228e19-5f9c-43e6-9f74-acd1263a7e43} - (no file)
O2 - BHO: (no name) - {88C5082C-657B-4B39-9AA3-A713412B3B21} - (no file)
O2 - BHO: (no name) - {8e6b7608-7bef-47c0-be4d-f1131a71de96} - (no file)
O2 - BHO: (no name) - {8F1B12A4-D96E-4A8F-8C3A-74003DD0BD01} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {92452D81-9119-4F48-A623-3407016D1184} - (no file)
O2 - BHO: (no name) - {944DEE05-DF19-44E5-BA0F-2E4969A45711} - (no file)
O2 - BHO: (no name) - {96BA94C6-EF21-48B4-BD2F-E4929A17B7B9} - (no file)
O2 - BHO: (no name) - {98f44ac8-dbfd-43f8-8493-477b5c5e7f84} - (no file)
O2 - BHO: (no name) - {9BB30EA7-EF02-4F95-A44C-006DD9CA913A} - (no file)
O2 - BHO: (no name) - {9E07E8D3-E9DA-4AF2-8AB7-14C9BCB05348} - (no file)
O2 - BHO: (no name) - {9F56EEEF-7117-4438-8910-23C3E68BD63A} - (no file)
O2 - BHO: (no name) - {9FADC025-312E-40AF-A8CE-9D93072211E7} - C:\WINDOWS\system32\urqQhFUn.dll (file missing)
O2 - BHO: (no name) - {A0E4D6AC-7335-42F8-B15C-7C5A1CB975A6} - C:\WINDOWS\system32\rqRKCVLf.dll (file missing)
O2 - BHO: (no name) - {A4D85B29-7858-415E-8059-AB0595746EB8} - (no file)
O2 - BHO: (no name) - {b41e2925-8dd1-4b29-97f6-d667da72ff02} - (no file)
O2 - BHO: (no name) - {BFE56CE3-69C0-45D2-A237-08EAEF4AB0D4} - (no file)
O2 - BHO: (no name) - {c09730c1-f978-4aed-8530-1ba91bac2d2a} - (no file)
O2 - BHO: (no name) - {cf94d6c4-b4d8-4f42-9b4a-f9c2342b3459} - (no file)
O2 - BHO: (no name) - {d0fcf25f-129e-487d-845c-7e14dec541c8} - (no file)
O2 - BHO: (no name) - {d1f4986f-86f9-46d6-ae75-6438f92b2ddf} - (no file)
O2 - BHO: (no name) - {D2F93373-7EA8-47CE-864A-519D2FCCAAD3} - C:\WINDOWS\system32\yayxyyvV.dll (file missing)
O2 - BHO: (no name) - {DA9999E1-6A69-43FB-BCE8-AE88E1910A78} - (no file)
O2 - BHO: (no name) - {DC2C469A-A3FB-4336-B4E1-2C150BC99EB4} - (no file)
O2 - BHO: (no name) - {DCD7DDA7-0D54-435F-B033-021910C9B9E7} - (no file)
O2 - BHO: (no name) - {E8F171E6-B7CE-452D-951F-094CFAAEF8C9} - (no file)
O2 - BHO: (no name) - {EA882C86-E82C-4559-B13D-2FAF5EF0F55C} - (no file)
O2 - BHO: (no name) - {EBF2E4A3-23F9-46D6-A688-4A4F1E01F804} - (no file)
O2 - BHO: (no name) - {F3FCB4C5-F5B1-40CC-ADA0-CEB181E4F18A} - (no file)
O2 - BHO: (no name) - {f675be06-da01-47b3-bc35-de9dc317640f} - (no file)
O2 - BHO: (no name) - {f76d2d65-0ef4-49f8-a505-a834b4db1a90} - (no file)
O2 - BHO: (no name) - {FD10608C-8528-4F9D-8CB5-CC03F01271D2} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [04e6b6dc] rundll32.exe "C:\WINDOWS\system32\bkkmfoni.dll",b
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Somefox] C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\a.exe
O8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Download all videos using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: Download link using &BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: *.canalplay.com
O15 - Trusted Zone: *.canalplusactive.com
O15 - Trusted Zone: *.canalplay.com (HKLM)
O15 - Trusted Zone: *.canalplusactive.com (HKLM)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O17 - HKLM\System\CCS\Services\Tcpip\..\{EED5BA38-33DD-4FBE-8457-07E5820F4844}: NameServer = 192.168.1.1,208.67.222.222
O20 - AppInit_DLLs: haicgs.dll ssnhxq.dll qltltv.dll fttsdz.dll nazxig.dll xhtqed.dll
O20 - Winlogon Notify: ljJYSihi - C:\WINDOWS\
O20 - Winlogon Notify: opnonlli - C:\WINDOWS\SYSTEM32\opnonlli.dll
O23 - Service: Bluetooth Service (btwdins) - WIDCOMM, Inc. - C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: lxby_device - Lexmark International, Inc. - C:\WINDOWS\system32\lxbycoms.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
0