Problème d'antivirus
Fermé
ziboudin
Messages postés
158
Date d'inscription
vendredi 5 septembre 2008
Statut
Membre
Dernière intervention
7 mars 2017
-
5 sept. 2008 à 22:32
Zpoupette Messages postés 4571 Date d'inscription mercredi 19 mars 2008 Statut Membre Dernière intervention 27 septembre 2021 - 6 sept. 2008 à 00:30
Zpoupette Messages postés 4571 Date d'inscription mercredi 19 mars 2008 Statut Membre Dernière intervention 27 septembre 2021 - 6 sept. 2008 à 00:30
A voir également:
- Problème d'antivirus
- Comodo antivirus - Télécharger - Sécurité
- Panda antivirus - Télécharger - Antivirus & Antimalwares
- Desactiver antivirus windows 10 - Guide
- Bitdefender antivirus gratuit - Télécharger - Antivirus & Antimalwares
- Antivirus norton gratuit - Télécharger - Antivirus & Antimalwares
2 réponses
Zpoupette
Messages postés
4571
Date d'inscription
mercredi 19 mars 2008
Statut
Membre
Dernière intervention
27 septembre 2021
623
5 sept. 2008 à 22:37
5 sept. 2008 à 22:37
Oh là là ! Horreur, malheur !!
Ne jamais mais JAMAIS installer 2 anti-virus sur un même PC. Au mieux, aucun ne fonctionnera, au pire, tu vas droit au crash de ton PC
Et côté anti-virus, Antivir,AVG ou BitDefender ou TrendMicro, rien d'autre pour le moment.
Ne jamais mais JAMAIS installer 2 anti-virus sur un même PC. Au mieux, aucun ne fonctionnera, au pire, tu vas droit au crash de ton PC
Et côté anti-virus, Antivir,AVG ou BitDefender ou TrendMicro, rien d'autre pour le moment.
Zpoupette
Messages postés
4571
Date d'inscription
mercredi 19 mars 2008
Statut
Membre
Dernière intervention
27 septembre 2021
623
5 sept. 2008 à 23:14
5 sept. 2008 à 23:14
Ton problème se nomme antivirus 2009.
Tu as d'autres soucis mais ça relève plus de l'optimisation de ton PC que de l'infection.
Pour supprimer antivirus 2009 :
https://forum.malekal.com/viewtopic.php?f=56&t=12327 --> ça, c'est pour te donner des infos sur ce qui t'infecte
Ça, c'est pour la désinfection : https://forum.malekal.com/viewtopic.php?f=56&t=5472 --> choisir le logiciel en fonction des symptômes de ton PC.
Dans tous les cas, ne supprime rien avant de nous avoir mis le rapport généré avec le scan d'un des logiciels.
Tu as d'autres soucis mais ça relève plus de l'optimisation de ton PC que de l'infection.
Pour supprimer antivirus 2009 :
https://forum.malekal.com/viewtopic.php?f=56&t=12327 --> ça, c'est pour te donner des infos sur ce qui t'infecte
Ça, c'est pour la désinfection : https://forum.malekal.com/viewtopic.php?f=56&t=5472 --> choisir le logiciel en fonction des symptômes de ton PC.
Dans tous les cas, ne supprime rien avant de nous avoir mis le rapport généré avec le scan d'un des logiciels.
ziboudin
Messages postés
158
Date d'inscription
vendredi 5 septembre 2008
Statut
Membre
Dernière intervention
7 mars 2017
5 sept. 2008 à 23:24
5 sept. 2008 à 23:24
On m'a indiqué de telecharger MALWAREBYTES, je fais un scan avec se logiciel
Zpoupette
Messages postés
4571
Date d'inscription
mercredi 19 mars 2008
Statut
Membre
Dernière intervention
27 septembre 2021
623
>
ziboudin
Messages postés
158
Date d'inscription
vendredi 5 septembre 2008
Statut
Membre
Dernière intervention
7 mars 2017
5 sept. 2008 à 23:37
5 sept. 2008 à 23:37
Oui, tu peux aussi mais effectue un scan complet et poste le rapport ici.
ziboudin
Messages postés
158
Date d'inscription
vendredi 5 septembre 2008
Statut
Membre
Dernière intervention
7 mars 2017
>
Zpoupette
Messages postés
4571
Date d'inscription
mercredi 19 mars 2008
Statut
Membre
Dernière intervention
27 septembre 2021
5 sept. 2008 à 23:47
5 sept. 2008 à 23:47
voila le rapport
Malwarebytes' Anti-Malware 1.26
Version de la base de données: 1118
Windows 5.1.2600 Service Pack 2
05/09/2008 23:45:35
mbam-log-2008-09-05 (23-45-24).txt
Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 143330
Temps écoulé: 44 minute(s), 39 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 3
Clé(s) du Registre infectée(s): 21
Valeur(s) du Registre infectée(s): 4
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 4
Fichier(s) infecté(s): 78
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
C:\WINDOWS\system32\yayYrqqr.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\toufbn.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\iifgGYoo.dll (Trojan.Vundo.H) -> No action taken.
Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2f93c2a6-25b7-4571-b67f-72b40180b962} (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{2f93c2a6-25b7-4571-b67f-72b40180b962} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{af2c392c-ac67-43e3-9b71-faaf85c36892} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\iifggyoo (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{af2c392c-ac67-43e3-9b71-faaf85c36892} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c46b402d-e776-4fb8-872c-bcfc71e33cea} (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{c46b402d-e776-4fb8-872c-bcfc71e33cea} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{729391b3-8ade-4368-a656-8f17952fa9c6} (Trojan.BHO.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{729391b3-8ade-4368-a656-8f17952fa9c6} (Trojan.BHO.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{037C7B8A-151A-49E6-BAED-CC05FCB50328} (Adware.Search Toolbar) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{037c7b8a-151a-49e6-baed-cc05fcb50328} (Adware.Search Toolbar) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Juan (Malware.Trace) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\dslcnnct (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\IProxyProvider (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Track System (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\aoprndtws (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\asc3550p (Rootkit.Agent) -> No action taken.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\201f5f51 (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{af2c392c-ac67-43e3-9b71-faaf85c36892} (Trojan.Vundo.H) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\IEUpdate (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\bm232c6ccd (Trojan.Agent) -> No action taken.
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\yayyrqqr -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\yayyrqqr -> No action taken.
Dossier(s) infecté(s):
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\RadioPlayer (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss (Adware.Agent) -> No action taken.
Fichier(s) infecté(s):
C:\WINDOWS\system32\toufbn.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\iifgGYoo.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\yayYrqqr.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\rqqrYyay.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\rqqrYyay.ini2 (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\alrhfaew.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\weafhrla.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\kvrkaeah.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\haeakrvk.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\config\44270068.Evt (Rootkit.Agent.H) -> No action taken.
C:\WINDOWS\system32\ujvudiyf.dll (Trojan.BHO.H) -> No action taken.
C:\WINDOWS\system32\winsrc.dll (Adware.Search Toolbar) -> No action taken.
C:\Program Files\WinRAR\Patch.exe (Trojan.Downloader) -> No action taken.
C:\WINDOWS\system32\cyytdyta.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\dadhgjhu.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\efcCsqoO.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\etnebeme.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fbriimsy.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\gqgepoxs.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\kccrsynu.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\tyvjiqty.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\uvsmwvbk.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ydqxtikn.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mysnlaio.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\agxeae.dll (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\Error.Log (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\LanguagePack.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\LocalSettings.txt (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\ThirdPartyComponents.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\update.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_63_136_CT1360763_Images_1256613422_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_-1611650343_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_-1616510062_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_1256574750_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_1256594985_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_1477248454_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633211004690737500_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633250672668125000_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323304820925000_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323304996393750_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323305088425000_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323305474518750_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633341279781868750_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633403616553356250_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_735535110_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_999644891_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_Email-04orange_gif-Colorized-633323306911237500_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_PopUpBlocker-21_gif-comic02-633323306370612500_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_bankimages_commandcomps_block_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_ClientImages_radio_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss01x16green_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss01x16red_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss01x16_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss03x16blue_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_images_search_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_news_search_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_site_search_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_weather_search_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_effectivebrand_com_BankImages_CommandComps_highlighter_dis_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_effectivebrand_com_BankImages_CommandComps_highlighter_icon_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\RadioPlayer\Predefined_Media_List.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps_history.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps_structured.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___tinyurl_com_2u3tzj.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss_history.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss_structured.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_viewed_today_rss.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_viewed_today_rss_history.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_viewed_today_rss_structured.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\oc=1&sabfmts=2&saprclo=150&sascs=2&saprchi=550&saaff=afepn&ftrv=8&fbfmt=1&ftrt=1&fcl=3&ft=1&frpp=50&customid=&nojspr=y&satitle=new&afmp=&sacat=293&saslop=1&fss=0.xml (Adware.Agent) -> No action taken.
C:\WINDOWS\system32\ieupdates.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\cookies.ini (Malware.Trace) -> No action taken.
C:\WINDOWS\system32\peppqytu.dll (Trojan.Agent) -> No action taken.
C:\WINDOWS\pskt.ini (Trojan.Vundo) -> No action taken.
C:\WINDOWS\BM232c6ccd.xml (Trojan.Vundo) -> No action taken.
C:\WINDOWS\BM232c6ccd.txt (Trojan.Vundo) -> No action taken.
Malwarebytes' Anti-Malware 1.26
Version de la base de données: 1118
Windows 5.1.2600 Service Pack 2
05/09/2008 23:45:35
mbam-log-2008-09-05 (23-45-24).txt
Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 143330
Temps écoulé: 44 minute(s), 39 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 3
Clé(s) du Registre infectée(s): 21
Valeur(s) du Registre infectée(s): 4
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 4
Fichier(s) infecté(s): 78
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
C:\WINDOWS\system32\yayYrqqr.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\toufbn.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\iifgGYoo.dll (Trojan.Vundo.H) -> No action taken.
Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2f93c2a6-25b7-4571-b67f-72b40180b962} (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{2f93c2a6-25b7-4571-b67f-72b40180b962} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{af2c392c-ac67-43e3-9b71-faaf85c36892} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\iifggyoo (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{af2c392c-ac67-43e3-9b71-faaf85c36892} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c46b402d-e776-4fb8-872c-bcfc71e33cea} (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{c46b402d-e776-4fb8-872c-bcfc71e33cea} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{729391b3-8ade-4368-a656-8f17952fa9c6} (Trojan.BHO.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{729391b3-8ade-4368-a656-8f17952fa9c6} (Trojan.BHO.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{037C7B8A-151A-49E6-BAED-CC05FCB50328} (Adware.Search Toolbar) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{037c7b8a-151a-49e6-baed-cc05fcb50328} (Adware.Search Toolbar) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Juan (Malware.Trace) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\dslcnnct (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\IProxyProvider (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Track System (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\aoprndtws (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\asc3550p (Rootkit.Agent) -> No action taken.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\201f5f51 (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{af2c392c-ac67-43e3-9b71-faaf85c36892} (Trojan.Vundo.H) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\IEUpdate (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\bm232c6ccd (Trojan.Agent) -> No action taken.
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\yayyrqqr -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\yayyrqqr -> No action taken.
Dossier(s) infecté(s):
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\RadioPlayer (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss (Adware.Agent) -> No action taken.
Fichier(s) infecté(s):
C:\WINDOWS\system32\toufbn.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\iifgGYoo.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\yayYrqqr.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\rqqrYyay.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\rqqrYyay.ini2 (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\alrhfaew.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\weafhrla.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\kvrkaeah.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\haeakrvk.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\config\44270068.Evt (Rootkit.Agent.H) -> No action taken.
C:\WINDOWS\system32\ujvudiyf.dll (Trojan.BHO.H) -> No action taken.
C:\WINDOWS\system32\winsrc.dll (Adware.Search Toolbar) -> No action taken.
C:\Program Files\WinRAR\Patch.exe (Trojan.Downloader) -> No action taken.
C:\WINDOWS\system32\cyytdyta.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\dadhgjhu.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\efcCsqoO.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\etnebeme.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fbriimsy.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\gqgepoxs.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\kccrsynu.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\tyvjiqty.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\uvsmwvbk.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ydqxtikn.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mysnlaio.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\agxeae.dll (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\Error.Log (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\LanguagePack.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\LocalSettings.txt (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\ThirdPartyComponents.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\update.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_63_136_CT1360763_Images_1256613422_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_-1611650343_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_-1616510062_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_1256574750_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_1256594985_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_1477248454_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633211004690737500_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633250672668125000_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323304820925000_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323304996393750_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323305088425000_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323305474518750_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633341279781868750_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633403616553356250_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_735535110_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_999644891_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_Email-04orange_gif-Colorized-633323306911237500_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_PopUpBlocker-21_gif-comic02-633323306370612500_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_bankimages_commandcomps_block_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_ClientImages_radio_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss01x16green_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss01x16red_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss01x16_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss03x16blue_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_images_search_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_news_search_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_site_search_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_weather_search_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_effectivebrand_com_BankImages_CommandComps_highlighter_dis_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_effectivebrand_com_BankImages_CommandComps_highlighter_icon_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\RadioPlayer\Predefined_Media_List.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps_history.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps_structured.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___tinyurl_com_2u3tzj.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss_history.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss_structured.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_viewed_today_rss.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_viewed_today_rss_history.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_viewed_today_rss_structured.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\oc=1&sabfmts=2&saprclo=150&sascs=2&saprchi=550&saaff=afepn&ftrv=8&fbfmt=1&ftrt=1&fcl=3&ft=1&frpp=50&customid=&nojspr=y&satitle=new&afmp=&sacat=293&saslop=1&fss=0.xml (Adware.Agent) -> No action taken.
C:\WINDOWS\system32\ieupdates.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\cookies.ini (Malware.Trace) -> No action taken.
C:\WINDOWS\system32\peppqytu.dll (Trojan.Agent) -> No action taken.
C:\WINDOWS\pskt.ini (Trojan.Vundo) -> No action taken.
C:\WINDOWS\BM232c6ccd.xml (Trojan.Vundo) -> No action taken.
C:\WINDOWS\BM232c6ccd.txt (Trojan.Vundo) -> No action taken.
ziboudin
Messages postés
158
Date d'inscription
vendredi 5 septembre 2008
Statut
Membre
Dernière intervention
7 mars 2017
>
Zpoupette
Messages postés
4571
Date d'inscription
mercredi 19 mars 2008
Statut
Membre
Dernière intervention
27 septembre 2021
5 sept. 2008 à 23:47
5 sept. 2008 à 23:47
voila le rapport
Malwarebytes' Anti-Malware 1.26
Version de la base de données: 1118
Windows 5.1.2600 Service Pack 2
05/09/2008 23:45:35
mbam-log-2008-09-05 (23-45-24).txt
Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 143330
Temps écoulé: 44 minute(s), 39 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 3
Clé(s) du Registre infectée(s): 21
Valeur(s) du Registre infectée(s): 4
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 4
Fichier(s) infecté(s): 78
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
C:\WINDOWS\system32\yayYrqqr.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\toufbn.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\iifgGYoo.dll (Trojan.Vundo.H) -> No action taken.
Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2f93c2a6-25b7-4571-b67f-72b40180b962} (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{2f93c2a6-25b7-4571-b67f-72b40180b962} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{af2c392c-ac67-43e3-9b71-faaf85c36892} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\iifggyoo (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{af2c392c-ac67-43e3-9b71-faaf85c36892} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c46b402d-e776-4fb8-872c-bcfc71e33cea} (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{c46b402d-e776-4fb8-872c-bcfc71e33cea} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{729391b3-8ade-4368-a656-8f17952fa9c6} (Trojan.BHO.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{729391b3-8ade-4368-a656-8f17952fa9c6} (Trojan.BHO.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{037C7B8A-151A-49E6-BAED-CC05FCB50328} (Adware.Search Toolbar) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{037c7b8a-151a-49e6-baed-cc05fcb50328} (Adware.Search Toolbar) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Juan (Malware.Trace) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\dslcnnct (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\IProxyProvider (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Track System (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\aoprndtws (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\asc3550p (Rootkit.Agent) -> No action taken.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\201f5f51 (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{af2c392c-ac67-43e3-9b71-faaf85c36892} (Trojan.Vundo.H) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\IEUpdate (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\bm232c6ccd (Trojan.Agent) -> No action taken.
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\yayyrqqr -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\yayyrqqr -> No action taken.
Dossier(s) infecté(s):
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\RadioPlayer (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss (Adware.Agent) -> No action taken.
Fichier(s) infecté(s):
C:\WINDOWS\system32\toufbn.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\iifgGYoo.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\yayYrqqr.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\rqqrYyay.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\rqqrYyay.ini2 (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\alrhfaew.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\weafhrla.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\kvrkaeah.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\haeakrvk.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\config\44270068.Evt (Rootkit.Agent.H) -> No action taken.
C:\WINDOWS\system32\ujvudiyf.dll (Trojan.BHO.H) -> No action taken.
C:\WINDOWS\system32\winsrc.dll (Adware.Search Toolbar) -> No action taken.
C:\Program Files\WinRAR\Patch.exe (Trojan.Downloader) -> No action taken.
C:\WINDOWS\system32\cyytdyta.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\dadhgjhu.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\efcCsqoO.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\etnebeme.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fbriimsy.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\gqgepoxs.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\kccrsynu.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\tyvjiqty.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\uvsmwvbk.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ydqxtikn.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mysnlaio.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\agxeae.dll (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\Error.Log (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\LanguagePack.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\LocalSettings.txt (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\ThirdPartyComponents.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\update.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_63_136_CT1360763_Images_1256613422_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_-1611650343_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_-1616510062_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_1256574750_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_1256594985_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_1477248454_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633211004690737500_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633250672668125000_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323304820925000_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323304996393750_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323305088425000_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323305474518750_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633341279781868750_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633403616553356250_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_735535110_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_999644891_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_Email-04orange_gif-Colorized-633323306911237500_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_PopUpBlocker-21_gif-comic02-633323306370612500_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_bankimages_commandcomps_block_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_ClientImages_radio_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss01x16green_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss01x16red_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss01x16_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss03x16blue_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_images_search_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_news_search_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_site_search_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_weather_search_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_effectivebrand_com_BankImages_CommandComps_highlighter_dis_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_effectivebrand_com_BankImages_CommandComps_highlighter_icon_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\RadioPlayer\Predefined_Media_List.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps_history.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps_structured.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___tinyurl_com_2u3tzj.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss_history.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss_structured.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_viewed_today_rss.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_viewed_today_rss_history.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_viewed_today_rss_structured.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\oc=1&sabfmts=2&saprclo=150&sascs=2&saprchi=550&saaff=afepn&ftrv=8&fbfmt=1&ftrt=1&fcl=3&ft=1&frpp=50&customid=&nojspr=y&satitle=new&afmp=&sacat=293&saslop=1&fss=0.xml (Adware.Agent) -> No action taken.
C:\WINDOWS\system32\ieupdates.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\cookies.ini (Malware.Trace) -> No action taken.
C:\WINDOWS\system32\peppqytu.dll (Trojan.Agent) -> No action taken.
C:\WINDOWS\pskt.ini (Trojan.Vundo) -> No action taken.
C:\WINDOWS\BM232c6ccd.xml (Trojan.Vundo) -> No action taken.
C:\WINDOWS\BM232c6ccd.txt (Trojan.Vundo) -> No action taken.
Malwarebytes' Anti-Malware 1.26
Version de la base de données: 1118
Windows 5.1.2600 Service Pack 2
05/09/2008 23:45:35
mbam-log-2008-09-05 (23-45-24).txt
Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 143330
Temps écoulé: 44 minute(s), 39 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 3
Clé(s) du Registre infectée(s): 21
Valeur(s) du Registre infectée(s): 4
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 4
Fichier(s) infecté(s): 78
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
C:\WINDOWS\system32\yayYrqqr.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\toufbn.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\iifgGYoo.dll (Trojan.Vundo.H) -> No action taken.
Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2f93c2a6-25b7-4571-b67f-72b40180b962} (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{2f93c2a6-25b7-4571-b67f-72b40180b962} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{af2c392c-ac67-43e3-9b71-faaf85c36892} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\iifggyoo (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{af2c392c-ac67-43e3-9b71-faaf85c36892} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c46b402d-e776-4fb8-872c-bcfc71e33cea} (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{c46b402d-e776-4fb8-872c-bcfc71e33cea} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{729391b3-8ade-4368-a656-8f17952fa9c6} (Trojan.BHO.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{729391b3-8ade-4368-a656-8f17952fa9c6} (Trojan.BHO.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{037C7B8A-151A-49E6-BAED-CC05FCB50328} (Adware.Search Toolbar) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{037c7b8a-151a-49e6-baed-cc05fcb50328} (Adware.Search Toolbar) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Juan (Malware.Trace) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\dslcnnct (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\IProxyProvider (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Track System (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\aoprndtws (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\asc3550p (Rootkit.Agent) -> No action taken.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\201f5f51 (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{af2c392c-ac67-43e3-9b71-faaf85c36892} (Trojan.Vundo.H) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\IEUpdate (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\bm232c6ccd (Trojan.Agent) -> No action taken.
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\yayyrqqr -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\yayyrqqr -> No action taken.
Dossier(s) infecté(s):
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\RadioPlayer (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss (Adware.Agent) -> No action taken.
Fichier(s) infecté(s):
C:\WINDOWS\system32\toufbn.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\iifgGYoo.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\yayYrqqr.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\rqqrYyay.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\rqqrYyay.ini2 (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\alrhfaew.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\weafhrla.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\kvrkaeah.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\haeakrvk.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\config\44270068.Evt (Rootkit.Agent.H) -> No action taken.
C:\WINDOWS\system32\ujvudiyf.dll (Trojan.BHO.H) -> No action taken.
C:\WINDOWS\system32\winsrc.dll (Adware.Search Toolbar) -> No action taken.
C:\Program Files\WinRAR\Patch.exe (Trojan.Downloader) -> No action taken.
C:\WINDOWS\system32\cyytdyta.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\dadhgjhu.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\efcCsqoO.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\etnebeme.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fbriimsy.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\gqgepoxs.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\kccrsynu.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\tyvjiqty.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\uvsmwvbk.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ydqxtikn.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mysnlaio.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\agxeae.dll (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\Error.Log (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\LanguagePack.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\LocalSettings.txt (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\ThirdPartyComponents.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\update.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_63_136_CT1360763_Images_1256613422_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_-1611650343_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_-1616510062_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_1256574750_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_1256594985_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_1477248454_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633211004690737500_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633250672668125000_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323304820925000_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323304996393750_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323305088425000_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323305474518750_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633341279781868750_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633403616553356250_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_735535110_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_999644891_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_Email-04orange_gif-Colorized-633323306911237500_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_PopUpBlocker-21_gif-comic02-633323306370612500_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_bankimages_commandcomps_block_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_ClientImages_radio_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss01x16green_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss01x16red_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss01x16_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss03x16blue_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_images_search_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_news_search_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_site_search_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_weather_search_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_effectivebrand_com_BankImages_CommandComps_highlighter_dis_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\CacheIcons\http___www_effectivebrand_com_BankImages_CommandComps_highlighter_icon_gif.gif (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\RadioPlayer\Predefined_Media_List.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps_history.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps_structured.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___tinyurl_com_2u3tzj.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss_history.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss_structured.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_viewed_today_rss.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_viewed_today_rss_history.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_viewed_today_rss_structured.xml (Adware.Agent) -> No action taken.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Live_TV\rss\oc=1&sabfmts=2&saprclo=150&sascs=2&saprchi=550&saaff=afepn&ftrv=8&fbfmt=1&ftrt=1&fcl=3&ft=1&frpp=50&customid=&nojspr=y&satitle=new&afmp=&sacat=293&saslop=1&fss=0.xml (Adware.Agent) -> No action taken.
C:\WINDOWS\system32\ieupdates.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\cookies.ini (Malware.Trace) -> No action taken.
C:\WINDOWS\system32\peppqytu.dll (Trojan.Agent) -> No action taken.
C:\WINDOWS\pskt.ini (Trojan.Vundo) -> No action taken.
C:\WINDOWS\BM232c6ccd.xml (Trojan.Vundo) -> No action taken.
C:\WINDOWS\BM232c6ccd.txt (Trojan.Vundo) -> No action taken.
Zpoupette
Messages postés
4571
Date d'inscription
mercredi 19 mars 2008
Statut
Membre
Dernière intervention
27 septembre 2021
623
>
ziboudin
Messages postés
158
Date d'inscription
vendredi 5 septembre 2008
Statut
Membre
Dernière intervention
7 mars 2017
6 sept. 2008 à 00:30
6 sept. 2008 à 00:30
Le principal élément à supprimer est le trojan Vundo.
Pour se faire télécharge Vundofix. Pour le mode d'emploi, vas sur ce site :
https://leblogdeclaude.blogspot.com/2007/05/procdure-vundofix.html
Pour les trucs restants, on verra après.
Ensuite, reposte un rapport avec Malwarebytes.
Pour se faire télécharge Vundofix. Pour le mode d'emploi, vas sur ce site :
https://leblogdeclaude.blogspot.com/2007/05/procdure-vundofix.html
Pour les trucs restants, on verra après.
Ensuite, reposte un rapport avec Malwarebytes.
5 sept. 2008 à 22:40
5 sept. 2008 à 22:53
Télécharge et installe HiJackThis puis fais-lui faire un scan complet de ton PC (scan only). Il va générer un rapport. Colle-le ici.
5 sept. 2008 à 22:56
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:49:28, on 05/09/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\1\FTRTSVC.exe
C:\Program Files\PC Tools AntiVirus\PCTAVSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Orange\Launcher\Launcher.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\1\AlertModule.exe
C:\Program Files\Orange\systray\systrayapp.exe
C:\Program Files\Orange\Deskboard\deskboard.exe
C:\Program Files\Orange\connectivity\connectivitymanager.exe
C:\Program Files\Orange\connectivity\CoreCom\CoreCom.exe
C:\Program Files\Orange\connectivity\CoreCom\OraConfigRecover.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\1\FTCOMModule.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Orange\browser\browser.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/...
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/...
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/...
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://ie.redirect.hp.com/...
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://ie.redirect.hp.com/...
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/...
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
O3 - Toolbar: Vue HP - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\Program Files\HP\Digital Imaging\bin\HPDTLK02.dll
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [LSBWatcher] c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\Orange\SessionManager\SessionManager.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [VX1000] C:\WINDOWS\vVX1000.exe
O4 - HKLM\..\Run: [201f5f51] rundll32.exe "C:\WINDOWS\system32\alrhfaew.dll",b
O4 - HKLM\..\Run: [PCTAVApp] "C:\Program Files\PC Tools AntiVirus\PCTAV.exe" /MONITORSCAN
O4 - HKLM\..\Run: [BM232c6ccd] Rundll32.exe "C:\WINDOWS\system32\peppqytu.dll",s
O4 - HKCU\..\Run: [26462305844778762784723388923491] C:\Program Files\Antivirus 2009\av2009.exe
O4 - HKCU\..\Run: [ieupdate] "C:\WINDOWS\system32\ieupdates.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - S-1-5-18 Startup: AutoTBar.exe (User 'SYSTEM')
O4 - .DEFAULT Startup: AutoTBar.exe (User 'Default user')
O4 - .DEFAULT User Startup: AutoTBar.exe (User 'Default user')
O4 - Global Startup: eMule Plus.lnk = C:\Program Files\eMule\eMule.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: https://www.orange.fr/portail
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O20 - AppInit_DLLs: toufbn.dll
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\1\FTRTSVC.exe
O23 - Service: McAfee Log Manager (McLogManagerService) - Unknown owner - C:\PROGRA~1\McAfee\MSC\mclogsrv.exe (file missing)
O23 - Service: McAfee Update Manager (mcmispupdmgr) - Unknown owner - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe (file missing)
O23 - Service: McAfee Protection Manager (mcpromgr) - Unknown owner - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe (file missing)
O23 - Service: McAfee Real-time Scanner (McShield) - Unknown owner - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe (file missing)
O23 - Service: McAfee SystemGuards (McSysmon) - Unknown owner - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe (file missing)
O23 - Service: McAfee Task Scheduler (mctskshd.exe) - Unknown owner - C:\PROGRA~1\McAfee\MSC\mctskshd.exe (file missing)
O23 - Service: McAfee User Manager (mcusrmgr) - Unknown owner - C:\PROGRA~1\McAfee\MSC\mcusrmgr.exe (file missing)
O23 - Service: PC Tools AntiVirus Engine (PCTAVSvc) - PC Tools Research Pty Ltd - C:\Program Files\PC Tools AntiVirus\PCTAVSvc.exe