Se débaraser de Antivirus 2008

Fermé
gage - 7 sept. 2008 à 14:58
geoffrey5 Messages postés 13732 Date d'inscription dimanche 20 mai 2007 Statut Contributeur sécurité Dernière intervention 21 mai 2010 - 7 sept. 2008 à 17:19
Bonjour à tous,
je suis infecté par MS Antivirus 2008. Sur ce forum, j'ai vu qu'il fallait télécharger HijackThis. Voici son rapport. Quelqu'un aurait-il la gentillesse de me dire ce qu'il faut faire après ...
Merci d'avance

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:51:16, on 07/09/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\EASYPH~1\Apache\apache.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
C:\PROGRA~1\EASYPH~1\Apache\apache.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\PROGRA~1\EASYPH~1\MySql\bin\mysqld.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Installer\MSI66.tmp
C:\WINDOWS\system32\ctfmon.exe
c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wscntfy.exe
C:\program files\fichiers communs\installshield\updateservice\issch.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\WINDOWS\CameraFixerS.exe
C:\WINDOWS\tsnp325.exe
C:\WINDOWS\vsnp325.exe
C:\Program Files\Kiwee Toolbar2\1.5.131\kwtbaim.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Search Settings\SearchSettings.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\EasyFlirt Messenger\EasyFlirt Messenger.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe
C:\Program Files\Smart Antivirus 2009\Smart Antivirus-2009.exe
C:\Program Files\Hp\Digital Imaging\bin\hpqtra08.exe
C:\Documents and Settings\Nico\Application Data\Delivery\DeliveryManager.EXE
C:\Program Files\Sony\Sony Picture Utility\PMBCore\SPUVolumeWatcher.exe
C:\WINDOWS\system32\cmd.exe
C:\Program Files\Java\jre1.6.0_05\bin\jucheck.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\WINDOWS\system32\ntvdm.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter3.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {4596013b-6c31-408b-a266-deae5c086dc2} - (no file)
R3 - URLSearchHook: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - (no file)
O1 - Hosts: 212.150.54.250 dv-networks.com
O3 - Toolbar: Vue HP - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - C:\Program Files\HP\Digital Imaging\bin\HPDTLK02.dll
O3 - Toolbar: (no name) - {4596013b-6c31-408b-a266-deae5c086dc2} - (no file)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: MEGAUPLOADTOOLBAR - {A057A204-BACC-4D26-C39E-35F1D2A32EC8} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O4 - HKLM\..\Run: [ISUSPM Startup] c:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "c:\program files\fichiers communs\installshield\updateservice\issch.exe" -start
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [eabconfg.cpl] C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe /Start
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [CameraFixerS] C:\WINDOWS\CameraFixerS.exe
O4 - HKLM\..\Run: [tsnp325] C:\WINDOWS\tsnp325.exe
O4 - HKLM\..\Run: [snp325] C:\WINDOWS\vsnp325.exe
O4 - HKLM\..\Run: [nhjayvjlqb] c:\windows\system32\nhjayvjlqb.exe nhjayvjlqb
O4 - HKLM\..\Run: [KiweeHook] "C:\Program Files\Kiwee Toolbar2\1.5.131\kwtbaim.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [\YUR5B.exe] C:\Windows\system32\YUR5B.exe
O4 - HKLM\..\Run: [\YUR5C.exe] C:\Windows\system32\YUR5C.exe
O4 - HKLM\..\Run: [\YUR5D.exe] C:\Windows\system32\YUR5D.exe
O4 - HKLM\..\Run: [\YUR5E.exe] C:\Windows\system32\YUR5E.exe
O4 - HKLM\..\Run: [ANTIVIRUS] C:\Program Files\MSA\MSA.exe
O4 - HKLM\..\Run: [\YUR79.exe] C:\Windows\system32\YUR79.exe
O4 - HKLM\..\Run: [\YUR6.exe] C:\Windows\system32\YUR6.exe
O4 - HKLM\..\Run: [\YUR7.exe] C:\Windows\system32\YUR7.exe
O4 - HKLM\..\Run: [\YURA.exe] C:\Windows\system32\YURA.exe
O4 - HKLM\..\Run: [\YURB.exe] C:\Windows\system32\YURB.exe
O4 - HKLM\..\Run: [\YURD.exe] C:\Windows\system32\YURD.exe
O4 - HKLM\..\Run: [6025284f] rundll32.exe "C:\WINDOWS\system32\sgcptyvu.dll",b
O4 - HKLM\..\Run: [\YUR1.exe] C:\Windows\system32\YUR1.exe
O4 - HKLM\..\Run: [\YUR8.exe] C:\Windows\system32\YUR8.exe
O4 - HKLM\..\Run: [\YUR29.exe] C:\Windows\system32\YUR29.exe
O4 - HKLM\..\Run: [\YUR3C.exe] C:\Windows\system32\YUR3C.exe
O4 - HKLM\..\Run: [SpyHunter Security Suite] C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter3.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [EasyFlirt Messenger] C:\Program Files\EasyFlirt Messenger\EasyFlirt Messenger.exe /M
O4 - HKCU\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe" /systray /nologon
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKCU\..\Run: [\YUR5B.exe] C:\Windows\system32\YUR5B.exe
O4 - HKCU\..\Run: [\YUR5C.exe] C:\Windows\system32\YUR5C.exe
O4 - HKCU\..\Run: [\YUR5D.exe] C:\Windows\system32\YUR5D.exe
O4 - HKCU\..\Run: [\YUR5E.exe] C:\Windows\system32\YUR5E.exe
O4 - HKCU\..\Run: [ANTIVIRUS] C:\Program Files\MSA\MSA.exe
O4 - HKCU\..\Run: [Smart Antivirus-2009.exe] C:\Program Files\Smart Antivirus 2009\Smart Antivirus-2009.exe
O4 - HKCU\..\Run: [\YUR79.exe] C:\Windows\system32\YUR79.exe
O4 - HKCU\..\Run: [\YUR7.exe] C:\Windows\system32\YUR7.exe
O4 - HKCU\..\Run: [\YUR6.exe] C:\Windows\system32\YUR6.exe
O4 - HKCU\..\Run: [\YURA.exe] C:\Windows\system32\YURA.exe
O4 - HKCU\..\Run: [\YURB.exe] C:\Windows\system32\YURB.exe
O4 - HKCU\..\Run: [\YURD.exe] C:\Windows\system32\YURD.exe
O4 - HKCU\..\Run: [\YUR1.exe] C:\Windows\system32\YUR1.exe
O4 - HKCU\..\Run: [\YUR8.exe] C:\Windows\system32\YUR8.exe
O4 - HKCU\..\Run: [\YUR29.exe] C:\Windows\system32\YUR29.exe
O4 - HKCU\..\Run: [\YUR3C.exe] C:\Windows\system32\YUR3C.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - .DEFAULT User Startup: AutoTBar.exe (User 'Default user')
O4 - Startup: DeliveryManager.lnk = C:\Documents and Settings\Nico\Application Data\Delivery\DeliveryManager.EXE
O4 - Startup: Outil de détection de support Picture Motion Browser.lnk = C:\Program Files\Sony\Sony Picture Utility\PMBCore\SPUVolumeWatcher.exe
O4 - Global Startup: e-Carte Bleue Banque Populaire.lnk = C:\Program Files\e-Carte Bleue Banque Populaire\ecbl-nxbp.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hp\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm
O8 - Extra context menu item: Liens de téléchargement avec Mega Manager... - C:\Program Files\Megaupload\Mega Manager\mm_file.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O16 - DPF: A3Cab1 - http://www.globalcashsolutions.com/kithtml/A3Cab1.CAB
O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
O16 - DPF: {018B7EC3-EECA-11D3-8E71-0000E82C6C0D} - http://kit.carpediem.fr/22118/CD/video.exe
O16 - DPF: {2357B3CF-7F8D-4451-8D81-FD6097610AEE} (CamfrogWEB Advanced Unicode Control) - http://activex.camfrogweb.com/advanced/2.0.1.14/cfweb_activex.camfrogweb.com-advanced-2.0.1.14_instmodule.exe
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.3.5.cab
O16 - DPF: {4B62C0F0-DCFF-11D2-91E2-004005195FF7} (EcritMath.EcritMathCtl) - file:///C:/Documents%20and%20Settings/Nico/Bureau/EcritMath.CAB
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
O16 - DPF: {86EEF11E-FF16-48CE-B1A2-474B663041A9} - http://www.sexequalite.com/39220/NueSophie.exe
O16 - DPF: {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {DA6462AC-9024-11D2-8454-004005195FED} (GP0.GP0Ctl) - file:///C:/Documents%20and%20Settings/Nico/Bureau/GP0.CAB
O16 - DPF: {E29016D7-8E99-11D2-8454-004005195FED} (GE0.GE0Ctl) - file:///C:/Documents%20and%20Settings/Nico/Bureau/GE0.CAB
O16 - DPF: {FFBB3F3B-0A5A-4106-BE53-DFE1E2340CB1} (Contrôleur de DownloadManager) - http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.1.2.cab
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.114.34 85.255.112.9
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 85.255.114.34 85.255.112.9
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: NameServer = 85.255.114.34 85.255.112.9
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.114.34 85.255.112.9
O18 - Filter: application/xhtml+xml; charset=iso-8859-1 - {32F66A26-7614-11D4-BD11-00104BD3F987} - C:\Program Files\Design Science\MathPlayer\MathMLMimer.dll
O18 - Filter: application/xhtml+xml; charset=utf-8 - {32F66A26-7614-11D4-BD11-00104BD3F987} - C:\Program Files\Design Science\MathPlayer\MathMLMimer.dll
O18 - Filter: text/xml; charset=iso-8859-1 - {32F66A26-7614-11D4-BD11-00104BD3F987} - C:\Program Files\Design Science\MathPlayer\MathMLMimer.dll
O18 - Filter: text/xml; charset=utf-8 - {32F66A26-7614-11D4-BD11-00104BD3F987} - C:\Program Files\Design Science\MathPlayer\MathMLMimer.dll
O20 - AppInit_DLLs: kijhjx.dll
O23 - Service: Apache - Unknown owner - C:\PROGRA~1\EASYPH~1\Apache\apache.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Unknown owner - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: MySql - Unknown owner - C:\PROGRA~1\EASYPH~1\MySql\bin\mysqld.exe
O23 - Service: NNServ - Unknown owner - C:\Program Files\NewDotNet\nnrun.exe (file missing)
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SolidConverterPDFv4ReadSpool (SCPDFV4ReadSpool) - Solid Documents, LLC - C:\WINDOWS\Installer\MSI66.tmp
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
A voir également:

3 réponses

geoffrey5 Messages postés 13732 Date d'inscription dimanche 20 mai 2007 Statut Contributeur sécurité Dernière intervention 21 mai 2010 10
7 sept. 2008 à 15:13
Salut !!

ton pc est tres infecté !! Je te conseille de faire ce qui suit stp :

Télécharge Fixwareout à cette adresse :

(c est le numéro 11 en bas de la page) : https://www.androidworld.fr/

Double clique sur Fixwareout.exe
Clique "Next", puis "Install", et vérifie que "Run fixit" soit coché, puis tu cliques "Finish".
Suivre les directives à l'écran.
L'outils va te demander de redémarrer ton PC, tu redémarres.

Le redémarrage risque de prendre un peu plus de temps, ceci est normal.

Le rapport va t'être dans le bloc note lors du redémarrage et tu pourras le sauvegarder.

Pour me copier/coller le rapport du "Bloc note" tu vas dans le menu Édition et clique sur "Sélectionner tout" et retourne dans "Édition" et clique sur "copier"
Sur le forum, faire un click droit et cliquer sur "coller".


ensuite :


télécharge sur le bureau Navilog1 à cette adresse (c est le numéro 1 en bas de la page) : https://www.androidworld.fr/

Si votre antivirus s'affole , le désactiver
=sous vista : Clic-droit sur le raccourci Navilog1 présent sur le bureau et choisis "Exécuter en tant qu'administrateur
=sous XP : double-clic dessus pour l'installer et le lancer


Quand installé
= taper F
= Appuyer sur une touche jusqu' arriver aux options
= Choisir Recherche ( = taper 1 )
ne pas utiliser les autres sans avis , il peut y avoir des processus légitimes

un rapport : fixnavi.txt
dans ==> C :
le copier et le coller dans la réponse
1
geoffrey5 Messages postés 13732 Date d'inscription dimanche 20 mai 2007 Statut Contributeur sécurité Dernière intervention 21 mai 2010 10
7 sept. 2008 à 17:19
si tu ne fais pas comme je t ai demandé ca va pas aller^^

tu n as pas appliqué d action avec malwarebytes : No action taken

vas dans la quarantaine de malwarebytes et supprime tout ce qu il y a dedans.


ensuite fais tout ce que je t ai demandé au premier message stp

je dois partir, je reviendrai tout à l heure pour vérifier tes rapports et continer...

@+
1
Merci beaucoup de ton aide geoffrey5,
en attendant ta réponse, j'ai télécharger malwarebytes et j'ai fait un scan. Je peux rescanner mon ordi avec Fixwareout si tu veux et afficher le rapport ...
Voici le rapport du logiciel malwarebytes :


Malwarebytes' Anti-Malware 1.26
Version de la base de données: 1122
Windows 5.1.2600 Service Pack 2

07/09/2008 17:03:19
mbam-log-2008-09-07 (17-02-55).txt

Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 177649
Temps écoulé: 1 hour(s), 47 minute(s), 46 second(s)

Processus mémoire infecté(s): 1
Module(s) mémoire infecté(s): 4
Clé(s) du Registre infectée(s): 28
Valeur(s) du Registre infectée(s): 33
Elément(s) de données du Registre infecté(s): 12
Dossier(s) infecté(s): 13
Fichier(s) infecté(s): 281

Processus mémoire infecté(s):
C:\Program Files\Smart Antivirus 2009\Smart Antivirus-2009.exe (Rogue.Installer) -> No action taken.

Module(s) mémoire infecté(s):
C:\WINDOWS\system32\geBuTJcC.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\sgcptyvu.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\qoMfdeBU.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\kijhjx.dll (Trojan.Vundo) -> No action taken.

Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f7e9d97-bee7-4f55-811d-19f15f2120ad} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\qomfdebu (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{4f7e9d97-bee7-4f55-811d-19f15f2120ad} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5a8b2095-a458-48a8-95d2-777d8f0229bd} (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{5a8b2095-a458-48a8-95d2-777d8f0229bd} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8360f5e6-4b27-4b60-97e4-8d67802f0bcf} (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{8360f5e6-4b27-4b60-97e4-8d67802f0bcf} (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\setup.player (Spyware.MarketScore) -> No action taken.
HKEY_CLASSES_ROOT\setup.player.2k2 (Spyware.MarketScore) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{35b7e48b-9d81-4c6c-9578-5fd4f620d886} (Spyware.MarketScore) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{018b7ec3-eeca-11d3-8e71-0000e82c6c0d} (Adware.ISTBar) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\smart antivirus 2009 (Rogue.SmartAntivirus) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Juan (Malware.Trace) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Track System (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{8da3c4fe-abe9-4947-86e5-745ecd506184} (Trojan.FakeAlert) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{21fd0595-7e8e-4f18-9a0c-af139ca0ac11} (Trojan.FakeAlert) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{4a44f11a-a43a-4f29-943d-b440d8f694ea} (Trojan.FakeAlert) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{7bfa1ba6-1267-42ef-a103-fe8fd551c167} (Trojan.FakeAlert) -> No action taken.
HKEY_CLASSES_ROOT\AppID\CodecBHO.DLL (Trojan.FakeAlert) -> No action taken.
HKEY_CLASSES_ROOT\codecbho.codecplugin (Trojan.FakeAlert) -> No action taken.
HKEY_CLASSES_ROOT\codecbho.codecplugin.1 (Trojan.FakeAlert) -> No action taken.
HKEY_CLASSES_ROOT\codecbho.xmldomdocumenteventssink (Trojan.FakeAlert) -> No action taken.
HKEY_CLASSES_ROOT\codecbho.xmldomdocumenteventssink.1 (Trojan.FakeAlert) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\RichVideoCodec (Trojan.FakeAlert) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\aoprndtws (Trojan.Vundo) -> No action taken.

Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\6025284f (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{4f7e9d97-bee7-4f55-811d-19f15f2120ad} (Trojan.Vundo) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\smart antivirus-2009.exe (Rogue.Installer) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\antivirus (Rogue.MSAntivirus) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\antivirus (Rogue.MSAntivirus) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur5b.exe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur5c.exe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur5d.exe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur5e.exe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur79.exe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur6.exe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur7.exe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yura.exe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yurb.exe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yurd.exe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur1.exe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur8.exe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur29.exe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur3c.exe (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur5b.exe (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur5c.exe (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur5d.exe (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur5e.exe (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur79.exe (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur7.exe (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur6.exe (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yura.exe (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yurb.exe (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yurd.exe (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur1.exe (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur8.exe (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur29.exe (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\yur3c.exe (Trojan.Agent) -> No action taken.

Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\gebutjcc -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\gebutjcc -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\StartMenuLogOff (Hijack.StartMenu) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoDrives (Hijack.Drives) -> Bad: (12) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispBackgroundPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoChangingWallpaper (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispScrSavPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispAppearancePage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\NameServer (Trojan.DNSChanger) -> Data: 85.255.114.34 85.255.112.9 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\NameServer (Trojan.DNSChanger) -> Data: 85.255.114.34 85.255.112.9 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Tcpip\Parameters\NameServer (Trojan.DNSChanger) -> Data: 85.255.114.34 85.255.112.9 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Tcpip\Parameters\NameServer (Trojan.DNSChanger) -> Data: 85.255.114.34 85.255.112.9 -> No action taken.

Dossier(s) infecté(s):
C:\Program Files\RichVideoCodec (Trojan.FakeAlert) -> No action taken.
C:\Program Files\PCHealthCenter (Trojan.Fakealert) -> No action taken.
C:\Program Files\router (Trojan.Downloader) -> No action taken.
C:\Program Files\router\Arcor Wlan Router 100 (Trojan.Downloader) -> No action taken.
C:\Program Files\router\D-Link di 624 (Trojan.Downloader) -> No action taken.
C:\Program Files\router\FRITZ!Box (Trojan.Downloader) -> No action taken.
C:\Program Files\router\MicroLink ADSL Modem Router (Trojan.Downloader) -> No action taken.
C:\Program Files\router\Modem (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl (Trojan.Downloader) -> No action taken.
C:\Program Files\router\Teldat 630 (Trojan.Downloader) -> No action taken.
C:\Program Files\Smart Antivirus 2009 (Rogue.SmartAntivirus) -> No action taken.
C:\Program Files\Smart Antivirus 2009\Infected (Rogue.SmartAntivirus) -> No action taken.
C:\Program Files\Smart Antivirus 2009\Suspicious (Rogue.SmartAntivirus) -> No action taken.

Fichier(s) infecté(s):
C:\WINDOWS\system32\qoMfdeBU.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\kijhjx.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\geBuTJcC.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\CcJTuBeg.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\CcJTuBeg.ini2 (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\sgcptyvu.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\uvytpcgs.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\uvytpcgs.ini2 (Trojan.Vundo.H) -> No action taken.
C:\Program Files\Smart Antivirus 2009\Smart Antivirus-2009.exe (Rogue.Installer) -> No action taken.
C:\x (Trojan.FakeAlert) -> No action taken.
C:\Program Files\PCHealthCenter\0.exe (Trojan.FakeAlert) -> No action taken.
C:\Program Files\PCHealthCenter\1.exe (Trojan.FakeAlert) -> No action taken.
C:\Program Files\PCHealthCenter\2.exe (Trojan.FakeAlert) -> No action taken.
C:\Program Files\PCHealthCenter\3.exe (Trojan.FakeAlert) -> No action taken.
C:\Program Files\PCHealthCenter\4.exe (Trojan.FakeAlert) -> No action taken.
C:\Program Files\PCHealthCenter\7.exe (Trojan.FakeAlert) -> No action taken.
C:\WINDOWS\system32\khfFWpom.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\wvUmklkI.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\byXPIcbY.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yefdsxso.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0331976.exe (Trojan.FakeAlert) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0331977.exe (Trojan.FakeAlert) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0331978.exe (Trojan.FakeAlert) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0331979.exe (Trojan.FakeAlert) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0331980.exe (Trojan.FakeAlert) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0331981.exe (Trojan.FakeAlert) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0331982.exe (Trojan.FakeAlert) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0331983.exe (Trojan.FakeAlert) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0332992.exe (Trojan.FakeAlert) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0332993.exe (Trojan.FakeAlert) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0334992.exe (Trojan.FakeAlert) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0334993.exe (Trojan.FakeAlert) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0335061.exe (Trojan.FakeAlert) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0335062.exe (Trojan.FakeAlert) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0335063.exe (Trojan.FakeAlert) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0335093.exe (Trojan.FakeAlert) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0337155.cpl (Rogue.MSAntivirus) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0337158.cpl (Rogue.MSAntivirus) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0337159.exe (Rogue.MSAntivirus) -> No action taken.
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP764\A0338197.exe (Trojan.FakeAlert) -> No action taken.
C:\Program Files\RichVideoCodec\5378.exe (Trojan.FakeAlert) -> No action taken.
C:\Program Files\PCHealthCenter\0.gif (Trojan.Fakealert) -> No action taken.
C:\Program Files\PCHealthCenter\1.gif (Trojan.Fakealert) -> No action taken.
C:\Program Files\PCHealthCenter\1.ico (Trojan.Fakealert) -> No action taken.
C:\Program Files\PCHealthCenter\2.gif (Trojan.Fakealert) -> No action taken.
C:\Program Files\PCHealthCenter\2.ico (Trojan.Fakealert) -> No action taken.
C:\Program Files\PCHealthCenter\3.gif (Trojan.Fakealert) -> No action taken.
C:\Program Files\PCHealthCenter\5.exe (Trojan.Fakealert) -> No action taken.
C:\Program Files\PCHealthCenter\sc.html (Trojan.Fakealert) -> No action taken.
C:\Program Files\router\Arcor Wlan Router 100\bat.bat (Trojan.Downloader) -> No action taken.
C:\Program Files\router\Arcor Wlan Router 100\ztnbatch.exe (Trojan.Downloader) -> No action taken.
C:\Program Files\router\D-Link di 624\info.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\FRITZ!Box\data.box (Trojan.Downloader) -> No action taken.
C:\Program Files\router\FRITZ!Box\info.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\FRITZ!Box\reconnect.bat (Trojan.Downloader) -> No action taken.
C:\Program Files\router\FRITZ!Box\voip.exe (Trojan.Downloader) -> No action taken.
C:\Program Files\router\MicroLink ADSL Modem Router\1.0.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\Modem\info.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\Modem\reconnect.bat (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\0.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\1.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\10.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\100.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\101.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\102.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\103.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\104.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\105.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\106.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\107.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\108.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\109.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\11.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\110.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\111.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\112.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\113.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\114.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\115.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\116.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\117.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\118.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\119.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\12.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\120.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\121.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\122.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\123.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\124.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\125.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\126.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\127.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\128.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\129.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\13.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\130.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\131.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\132.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\133.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\134.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\135.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\136.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\137.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\138.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\139.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\14.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\140.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\141.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\142.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\143.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\144.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\145.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\146.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\147.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\148.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\149.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\15.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\150.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\151.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\152.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\153.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\154.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\155.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\156.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\157.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\158.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\159.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\16.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\160.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\161.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\162.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\163.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\164.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\165.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\166.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\167.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\168.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\169.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\17.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\170.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\171.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\172.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\173.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\174.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\175.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\176.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\177.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\178.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\179.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\18.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\180.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\181.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\182.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\183.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\184.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\185.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\186.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\187.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\188.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\189.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\19.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\190.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\191.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\192.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\193.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\194.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\195.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\196.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\197.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\198.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\199.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\2.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\20.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\200.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\201.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\202.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\203.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\204.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\205.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\206.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\207.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\208.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\209.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\21.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\210.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\211.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\212.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\213.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\22.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\23.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\24.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\25.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\26.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\27.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\28.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\29.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\3.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\30.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\31.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\32.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\33.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\34.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\35.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\36.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\37.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\38.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\39.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\4.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\40.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\41.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\42.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\43.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\44.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\45.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\46.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\47.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\48.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\49.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\5.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\50.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\51.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\52.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\53.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\54.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\55.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\56.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\57.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\58.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\59.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\6.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\60.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\61.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\62.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\63.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\64.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\65.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\66.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\67.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\68.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\69.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\7.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\70.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\71.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\72.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\73.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\74.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\75.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\76.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\77.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\78.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\79.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\8.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\80.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\81.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\82.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\83.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\84.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\85.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\86.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\87.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\88.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\89.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\9.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\90.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\91.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\92.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\93.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\94.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\95.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\96.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\97.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\98.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\RouterControl\99.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\router\Teldat 630\info.clr (Trojan.Downloader) -> No action taken.
C:\Program Files\Smart Antivirus 2009\vscan.tsi (Rogue.SmartAntivirus) -> No action taken.
C:\Program Files\Smart Antivirus 2009\zlib.dll (Rogue.SmartAntivirus) -> No action taken.
C:\WINDOWS\system32\CodecBHO.dll (Trojan.FakeAlert) -> No action taken.
C:\Program Files\setup.exe (Rogue.Installer) -> No action taken.
C:\Documents and Settings\Nico\Bureau\Smart Antivirus-2009.lnk (Rogue.SmartAntivirus) -> No action taken.
C:\Documents and Settings\Nico\Application Data\Microsoft\Internet Explorer\Quick Launch\Smart Antivirus-2009.lnk (Rogue.SmartAntivirus) -> No action taken.
C:\Documents and Settings\Nico\Bureau\antivirus xp 2008 et MS antivirus [ RESOLU ] - Sécurité, virus et assimilésVirus - 01net_ forum.txt (Rogue.Antivirus) -> No action taken.
0