628 warnings par antivir + detection par gmer

roguard Messages postés 38 Statut Membre -  
roguard Messages postés 38 Statut Membre -
Bonjour ,
Après avoir regardé à l'ordinateur d'un ami, j'ai cru bon de lancer un scan avec antivir qui a détecté pas moins de 628 warnings, puis gmer qui, dès son lancement à trouvé : XRyMhv.exe dans C:/programmes files/windowsnt .
J'ai le rapport antivir si besoin ,
Merci d'avance pour votre aide :)
PS : antivir détecte régulièrement des droppers dans C:/windows/temp avec un nom aléatoire .
Configuration: Windows XP
Firefox 3.0.3

22 réponses

  • 1
  • 2
  1. buginformatik Messages postés 2210 Statut Contributeur 54
     
    Lu' !

    Télécharge SDFix (créé par AndyManchesta) et sauvegarde le sur ton Bureau.
    http://downloads.andymanchesta.com/RemovalTools/SDFix.exe

    Ne l'utilise pas pour le moment

    >>>>

    Télécharges hijackthis : http://www.trendsecure.com/portal/en-US/_download/HiJackThis.zip

    et voici un gif pour bien l'installer : http://pageperso.aol.fr/balltrap34/Hijenr.gif

    - Une fois téléchargé, renommer l'éxécutable en HJT.exe pour contrer une éventuelle infection vundo
    - Double-clic dessus
    - Clic sur "Do a system scan and save the log"
    - Copies le rapport antivir en 1er, coller un rapport hijackthis dans la réponse
    0
  2. roguard Messages postés 38 Statut Membre 2
     
    Scanning for 1692263 virus strains and unwanted programs.
    Licensed to: Avira AntiVir PersonalEdition Classic
    Platform: Windows XP
    Windows version: (Service Pack 2) [5.1.2600]
    Boot mode: Normally booted
    Username: SYSTEM
    Computer name: COMPUTERNAME
    Starting search for hidden objects.
    '33807' objects were checked, '0' hidden objects were found.
    The scan of running processes will be started
    Starting the file scan:
    Begin scan in 'C:\'
    C:\hiberfil.sys
    [WARNING] The file could not be opened!
    C:\pagefile.sys
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\EtK.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\EyS.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\hPkwM.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\nnZb.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\vCIY.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\WLJ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\aUP.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\bBqEBb.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\bLc.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\BNtkR.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\BrL.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\dayfJoE.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\dzysyN.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\eGl.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\ffa.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\FmG.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\fNY.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\FXP.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\HfJZHS.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\hjf.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\hPu.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\iSIqbtu.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\jHEaFDl.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\jib.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\JzF.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\KGaLyHl.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\kma.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\KnN.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\LGzMUc.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\LNL.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\oag.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\OzjDf.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\PGF.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\PRU.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\qgQ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\SEAV.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\TCj.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\tlp.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\uaSuBLZ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\vKXRJJK.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\Vmy.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\vrRyuc.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\XbH.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\xJg.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\XKw.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\XNV.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\zefQ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Microsoft Shared\ZkS.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\Aaw.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\AccBZD.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\aem.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\ain.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\Ank.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\aXXD.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\bAssa.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\BER.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\bmCYl.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\bmm.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\bpGb.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\bQyvZQI.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\bWo.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\bxe.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\Bxf.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\Byp.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\cCFGEv.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\Ccnr.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\CGd.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\CoKHY.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\CPBDyq.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\CSqV.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\CVmxRQ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\CYvmL.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\czl.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\Dbk.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\dBL.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\DDx.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\dey.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\dixUO.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\dLfJZ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\DLL.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\DPEKikQ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\dtQ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\DuSEPjE.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\DVA.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\dwv.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\DxhMcq.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\dYor.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\EaG.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\ebIZfy.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\eex.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\ehHFho.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\EmbkUu.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\ENW.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\eQYX.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\ESCuez.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\eUfgF.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\evx.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\EwC.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\EYk.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\fAa.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\fcz.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\FgJ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\FhF.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\fiiUngs.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\fKgVnd.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\FOEz.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\fva.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\fXZcvgp.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\fYY.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\fZF.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\gefWCAK.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\gigt.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\GJQf.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\gNKqBUK.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\goYw.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\gWyCMo.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\GxO.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\HBkzcm.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\hkhMaw.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\hKsYK.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\HrPv.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\HURtF.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\Hwcnf.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\hWmRGBo.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\hyLZ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\HYU.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\hZaaa.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\hZC.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\IDr.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\ifz.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\iGawnsm.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\IgR.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\iiBm.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\ikz.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\Ipw.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\IULJiD.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\IvIu.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\Ixr.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\jdBeTvP.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\JdL.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\JHAhEQ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\jOWOwT.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\jPOIffU.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\JQJmz.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\JsA.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\jvCIuKi.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\JvKHh.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\JZBnXU.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\KAf.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\KCyD.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\kgKN.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\kjXl.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\KmO.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\KoXn.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\KpBKjaj.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\ktb.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\kUoQfT.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\KYC.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\kywMJF.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\LAgmUZ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\lgd.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\lGSEHc.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\lHd.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\ljmH.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\LLCdLdO.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\LlZ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\lmw.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\loKyU.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\lqul.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\LTC.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\LVB.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\LWz.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\MAR.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\MDiweb.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\Mfc.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\MHo.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\MHx.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\MKi.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\MMj.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\MqR.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\mXJYwUx.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\mXNfOC.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\nbN.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\NcN.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\NeOe.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\Nhp.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\nkKV.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\nPmyGDL.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\nrqJjHd.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\nWE.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\nwz.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\NXxmjt.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\oCv.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\oeO.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\ofvJo.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\ohvxLaW.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\ojE.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\ojU.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\ole.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\OrD.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\OUD.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\owDz.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\owE.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\PHB.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\Pwv.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\Qag.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\QakR.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\qfREv.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\QGK.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\qhk.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\qHmQl.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\qJo.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\qMq.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\qtubaX.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\QVp.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\qZcviEb.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\rbs.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\rEW.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\RkQbeve.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\rsJDXf.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\rzt.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\saN.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\SeSH.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\sJyzbDh.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\snc.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\spb.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\sPj.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\sPXZeF.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\srwdR.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\SVZgkWX.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\SXRc.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\SyF.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\TEy.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\tiQLTrv.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\TJAjp.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\TmUxPk.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\tMv.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\tnsAcL.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\Tpi.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\tQfzZFQ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\TSqaJDj.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\UbSyA.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\udfA.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\uDPJgK.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\uDt.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\ujb.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\UKt.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\uqr.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\UxpeEnv.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\uzaPR.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\VdYj.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\vGD.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\vgN.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\vuzFgO.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\VwQrs.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\WbKU.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\WcY.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\WFp.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\wFxolja.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\WJF.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\WklXQ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\WPyuIN.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\wsC.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\WsxE.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\WvYe.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\wXA.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\WzR.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\xcktFTr.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\XGoFPV.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\xhcRhJ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\xUe.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\XWD.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\YAc.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\yqkCZa.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\ytMvv.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\YujHpg.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\Zei.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\ZFs.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\zIH.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\zkMJ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\Services\zUE.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\aCd.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\AcuVg.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\AgG.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\APx.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\AQO.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\AvEcyvZ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\AYz.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\BASMRKt.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\bDc.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\bdU.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\bJn.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\bqDYIt.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\BqWAXta.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\BRHBC.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\BRI.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\BscA.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\cbVGyYL.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\cDIuA.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\cDl.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\Cmt.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\COkfgFV.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\CpP.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\CpxlVY.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\cQcojC.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\Crh.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\cvHS.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\cwQ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\dCIngZ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\dCjaJ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\dETjto.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\DFJ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\DHL.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\dMIHUnR.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\DVyeryG.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\dWV.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\dzV.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\DZVWH.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\EEo.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\EJuv.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\eJz.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\EqQMkUs.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\esfilDt.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\EYA.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\Fak.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\far.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\fat.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\fFPB.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\fFwEmEU.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\FgXuyA.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\fmhIkv.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\FnIenh.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\fst.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\Fwf.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\gepAqP.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\GfBp.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\gIX.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\goZw.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\gqnpmG.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\gQR.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\guVw.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\gYP.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\GZz.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\hbJ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\hKI.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\HNK.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\hSTkZuI.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\iEK.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\ifowOK.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\ilp.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\iMePL.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\iSM.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\iWgUbK.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\izPO.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\Jar.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\jBznlV.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\jdJ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\JlxKLwn.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\jrHYDB.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\kaRYa.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\KAv.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\kct.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\KIrRd.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\KMlRnD.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\kNf.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\KNrp.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\KSJY.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\Ktw.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\kUAuDt.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\kYe.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\lCE.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\LdF.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\LDpb.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\lGDzw.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\lGScLC.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\LiEWirf.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\LLJ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\lQLy.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\lryZds.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\lTn.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\lyT.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\mDb.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\mIdTPN.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\mmq.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\MqXWZ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\MTaD.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\mvzqj.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\myeYl.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\naj.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\NEKH.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\nHLLAGc.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\NIt.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\nJH.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\nnD.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\OaN.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\OmtwRRX.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\ORI.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\ozC.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\pdHD.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\Pew.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\PJD.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\pjZChb.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\PpE.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\pQNuZ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\QCxYLA.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\qdA.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\qGX.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\QVM.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\QXWEF.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\Qyq.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\rabk.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\rIk.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\Rio.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\rIwJ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\rJk.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\RLrs.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\rmgz.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\rPYQf.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\rQP.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\RWn.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\rXwdFs.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\rYm.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\sdL.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\SEe.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\sgU.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\slQBgSh.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\SMh.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\SmSvhTP.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\SnQiW.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\StL.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\sUDMGcl.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\sur.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\sWX.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\tcCB.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\tfZEX.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\tJigcoh.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\tpK.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\tqUXTwF.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\ttW.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\UaidY.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\ualYd.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\uBYCJg.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\UDx.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\UfE.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\uPM.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\uUG.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\UxKoKg.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\vbiFGgI.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\vfP.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\vhrd.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\vNgALwL.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\vvD.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\vvT.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\vWM.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\vZUIPhG.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\wGB.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\whII.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\WiHHxD.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\WJcdOYl.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\WJPsBW.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\WMb.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\WMIWYUa.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\WnXyEkw.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\Wvp.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\WWs.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\Wzd.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\xGsF.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\xrNa.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\xTk.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\XUe.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\xYRR.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\xZr.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\YbSWa.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\yCG.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\yjD.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\yJF.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\YoB.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\zaXm.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\ZCY.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\zeq.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\zgT.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\ZMCVPNO.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\znvXG.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\zpTbk.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\zQMMeaN.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\ZSszR.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\zvN.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\zvVLYKK.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Fichiers communs\System\zxv.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\AAtqDoO.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\AdMMogE.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\aOI.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\Bcn.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\bei.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\BjzJU.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\bqf.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\cHnQ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\cIjYj.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\CJk.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\cKzwul.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\CmGuNk.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\Dcp.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\DfF.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\dFk.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\Dgr.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\DLp.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\DygFMW.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\EDdEdh.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\eDforu.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\EOj.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\eQZ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\eqZnzBM.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\EZWJ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\Fmf.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\fOCnDCy.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\fVq.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\GAOEvz.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\GCZ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\gRSkdQ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\gTArd.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\haPCzBj.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\HCt.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\hhoQb.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\hMb.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\HnEPh.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\HqMaNar.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\hvy.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\Iay.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\iEA.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\ike.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\Ilw.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\ivmNy.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\izT.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\izyOk.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\Jes.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\JNy.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\JRtuWEN.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\jst.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\kbLIaX.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\KDW.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\KEr.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\kJAr.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\kOtp.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\kZoZzNa.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\laoQt.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\lAVs.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\LCv.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\lDKMF.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\LGK.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\LMd.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\lMvq.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\LrNBC.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\LtKmk.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\mHRnyn.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\MJa.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\nAss.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\ncV.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\nOq.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\NwQlYc.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\nzK.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\NzZ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\obzFWUZ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\ocQ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\OdL.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\ofp.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\OIuCd.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\oNCZB.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\ONO.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\OojR.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\OQiULD.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\PAA.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\PPp.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\QeWQblh.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\QfV.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\QiV.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\QRL.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\rEJ.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\RgVe.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\rKP.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\rmxr.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\RmYTY.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\rRLdjxE.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\rsL.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\schzD.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\SJe.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\SLA.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\smcc.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\SSW.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\szBiC.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\tcP.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\TgQU.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\TuU.exe
    [WARNING] The file could not be opened!
    C:\Program Files\Windows NT\TxmrwJ.exe
    [WARNING] T
    0
  3. roguard Messages postés 38 Statut Membre 2
     
    Suite rapport antivir :
    Scan process 'avwsc.exe' - '1' Module(s) have been scanned
    Scan process 'avscan.exe' - '1' Module(s) have been scanned
    Scan process 'firefox.exe' - '1' Module(s) have been scanned
    Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
    Scan process 'avgnt.exe' - '1' Module(s) have been scanned
    Scan process 'setopwin.exe' - '1' Module(s) have been scanned
    Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
    Scan process 'explorer.exe' - '1' Module(s) have been scanned
    Scan process 'WgaTray.exe' - '1' Module(s) have been scanned
    Scan process 'alg.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'wdfmgr.exe' - '1' Module(s) have been scanned
    Scan process 'avguard.exe' - '1' Module(s) have been scanned
    Scan process 'sched.exe' - '1' Module(s) have been scanned
    Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'lsass.exe' - '1' Module(s) have been scanned
    Scan process 'services.exe' - '1' Module(s) have been scanned
    Scan process 'winlogon.exe' - '1' Module(s) have been scanned
    Scan process 'csrss.exe' - '1' Module(s) have been scanned
    Scan process 'smss.exe' - '1' Module(s) have been scanned
    25 processes with 25 modules were scanned

    Starting master boot sector scan:
    Master boot sector HD0
    [INFO] No virus was found!

    Start scanning boot sectors:
    Boot sector 'C:\'
    [INFO] No virus was found!
    Boot sector 'D:\'
    [INFO] No virus was found!

    Starting to scan the registry.
    C:\WINDOWS\system32\setopwin.exe
    [WARNING] The file could not be opened!
    The registry was scanned ( '45' files ).
    -----------------------------------------------------------------------

    Used time: 54:22 Minute(s)

    The scan has been done completely.

    2179 Scanning directories
    67784 Files were scanned
    1 viruses and/or unwanted programs were found
    0 Files were classified as suspicious:
    0 files were deleted
    0 files were repaired
    0 files were moved to quarantine
    0 files were renamed
    627 Files cannot be scanned
    67156 Files not concerned
    681 Archives were scanned
    628 Warnings
    0 Notes
    33807 Objects were scanned with rootkit scan
    0 Hidden objects were found
    0
  4. roguard Messages postés 38 Statut Membre 2
     
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 15:32:45, on 9/11/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16735)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\DOCUME~1\Zim\LOCALS~1\Temp\Répertoire temporaire 1 pour HiJackThis.zip\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://genius.belgacom.be/esupport/broadbandservices.asp?lang=F
    R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
    O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKLM\..\Policies\Explorer\Run: [2406855391] "C:\WINDOWS\system32\setopwin.exe"
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O10 - Unknown file in Winsock LSP: c:\windows\system32\manxwsys.dll
    O15 - Trusted Zone: *.canalplay.com (HKLM)
    O15 - Trusted Zone: *.canalplusactive.com (HKLM)
    O20 - AppInit_DLLs: C:\WINDOWS\System32\noisc.ita
    O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. Utilisateur anonyme
     
    Salut,

    pas la peine de renomer hijackthis.

    @+
    0
  7. buginformatik Messages postés 2210 Statut Contributeur 54
     
    Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié dans C:\.
    Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :

    (le scan doit se faire uniquement en mode sans échec)
    • Après avoir entendu l'ordinateur biper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).
    • A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.
    • Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".
    • Choisis ton compte.
    Déroule la liste des instructions ci-dessous :
    • Ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double clique sur RunThis.bat pour lancer le scrïpt.
    • Appuie sur Y pour commencer le processus de nettoyage.
    • Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
    • Appuie sur une touche pour redémarrer le PC.
    • Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
    • Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
    • L'ordinateur redémarre en mode normal...
    • Avant d'arriver sur le bureau, une nouvelle fenêtre de SDFix va s'ouvrir. Ceci peut prendre quelques une minutes...

    Le rapport SDFix s'ouvre alors :
    * Cliquez sur le menu Edition puis Sélectionner tout.
    * Cliquez à nouveau sur le menu Edition puis coller.
    * Dans votre sujet sur le forum, créez un nouveau message puis clic droit / coller dans le message afin de coller le rapport.
    0
  8. roguard Messages postés 38 Statut Membre 2
     
    Bonsoir , Voici ci-joint le rapport SDFix

    [b]SDFix: Version 1.240 [/b]
    Run by Tanguy on dim. 09/11/2008 at 17:24

    Microsoft Windows XP [version 5.1.2600]
    Running From: C:\SDFix

    [b]Checking Services [/b]:

    Restoring Default Security Values
    Restoring Default Hosts File
    Resetting SecurityProviders Value

    Rebooting

    [b]Checking Files [/b]:

    Trojan Files Found:

    C:\Documents and Settings\UXqnOxs\Application Data\Install.dat - Deleted
    C:\WINDOWS\system32\config\systemprofile\Application Data\Install.dat - Deleted

    Removing Temp Files

    [b]ADS Check [/b]:

    [b]Final Check [/b]:

    catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2008-11-09 17:32:55
    Windows 5.1.2600 Service Pack 2 NTFS

    scanning hidden processes ...

    scanning hidden services & system hive ...

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SecVmd]
    "Type"=dword:00000010
    "Start"=dword:00000002
    "ErrorControl"=dword:00000000
    "ImagePath"=""C:\Program Files\Fichiers communs\Services\BEX.exe""
    "DisplayName"="SecVmd"
    "ObjectName"=".\UXqnOxs"
    "Description"="Charge des fichiers en mémoire pour une impression ultérieure."

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SecVmd\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,..
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\SecVmd]
    "Type"=dword:00000010
    "Start"=dword:00000002
    "ErrorControl"=dword:00000000
    "ImagePath"=""C:\Program Files\Fichiers communs\Services\LLCdLdO.exe""
    "DisplayName"="SecVmd"
    "ObjectName"=".\UXqnOxs"
    "Description"="Charge des fichiers en mémoire pour une impression ultérieure."

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\SecVmd\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,..
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\SecVmd]
    "Type"=dword:00000010
    "Start"=dword:00000002
    "ErrorControl"=dword:00000000
    "ImagePath"=""C:\Program Files\Fichiers communs\Services\BEX.exe""
    "DisplayName"="SecVmd"
    "ObjectName"=".\UXqnOxs"
    "Description"="Charge des fichiers en mémoire pour une impression ultérieure."

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\SecVmd\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,..

    scanning hidden registry entries ...

    scanning hidden files ...

    scan completed successfully
    hidden processes: 0
    hidden services: 0
    hidden files: 0

    [b]Remaining Services [/b]:

    Authorized Application Key Export:

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
    "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
    "C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Disabled:Windows Messenger"

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
    "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

    [b]Remaining Files [/b]:

    File Backups: - C:\SDFix\backups\backups.zip

    [b]Files with Hidden Attributes [/b]:

    Tue 12 Sep 2006 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
    Sun 24 Sep 2006 400 A.SH. --- "C:\Documents and Settings\All Users\DRM\v2ks.bla.bak"
    Sun 24 Sep 2006 48 A.SH. --- "C:\Documents and Settings\All Users\DRM\v2ks.sec.bak"

    [b]Finished![/b]
    0
  9. roguard Messages postés 38 Statut Membre 2
     
    ! Nouvelle detection par Gmer : BEX.exe dans C:/Programmes Files/fichiers communs/Services !
    + cdrom.sys dans C:/Windows/System 32/Drivers
    0
    1. buginformatik Messages postés 2210 Statut Contributeur 54
       
      Bon, suis bien ces consignes à la lettre :

      Télécharger ComboFix depuis l'une des adresses suivantes:

      * http://download.bleepingcomputer.com/sUBs/ComboFix.exe
      * http://www.geekstogo.com/forum/files/file/197-combofix-by-subs/

      Cliquez sur le bouton Enregistrer, puis lorsqu'il vous est demandé à quel emplacement l'enregistrer, assurez-vous de l'enregistrer directement sur votre Bureau

      Fermez toutes vos fenêtres en cours (y compris celle-ci)

      Fermez ou désactivez temporairement tous les programmes Antivirus, Antispyware, ainsi que tout pare-feu en cours d'exécution car ils pourraient perturber le fonctionnement de ComboFix.

      Après avoir suivi les deux étapes précédentes, faites un double clic sur l'icône de ComboFix située sur le Bureau. Notez bien que, une fois que vous avez lancé ComboFix, vous ne devez pas cliquer dans la fenêtre de ComboFix car cela pourrait entraîner un plantage du programme. En fait, lorsque ComboFix tourne, ne touchez plus du tout à votre ordinateur ; reposez-vous pendant qu'il travaille, cela pourrait prendre un certain temps avant qu'il ait fini.

      Windows affiche un avertissement au lancement car ComboFix n'a pas de signature numérique. Ceci est parfaitement normal et sans danger, et vous pouvez cliquer sur le bouton Exécuter pour continuer.

      Pour continuer, appuyez sur la touche du chiffre 1 puis sur la touche Entrée (http://img.bleepingcomputer.com/combofix/en/disclaimer.jpg)­. Si vous avez décidé de continuer, ComboFix va maintenant créer un Point de Restauration Système pour que vous puissiez revenir à votre configuration précédente si des problèmes devaient survenir pendant l'utilisation du programme. Lorsque ComboFix a fini de créer le point de restauration, il va ensuite créer une sauvegarde de votre Registre Windows

      Après la fin de la sauvegarde du Registre Windows, ComboFix va déconnecter votre ordinateur d'Internet. Par conséquent, ne soyez pas surpris ni inquiet si vous recevez des avertissements vous prévenant que vous n'êtes plus connecté à Internet, car votre connexion sera totalement rétablie dans une étape ultérieure du programme.

      ComboFix va ensuite commencer à balayer votre ordinateur à la recherche d'infections connues. Cette procédure peut prendre un certain temps, soyez patient

      Pendant que le programme examine votre ordinateur, il va modifier le format de votre horloge, donc ne vous inquiétez pas lorsque cela se produira. Lorsque ComboFix aura terminé, il rétablira vos paramètres d'horloge à ce qu'ils étaient auparavant. (il y a au total 41 étapes)

      Lorsque ComboFix a fini son examen, il annoncera qu'il est en train de préparer le fichier rapport (alias log)

      Si vous voyez votre Bureau Windows disparaître, ne vous inquiétez pas. C'est normal, et ComboFix restaurera votre Bureau avant de se terminer. Finalement, vous verrez un nouvel affichage déclarant que le programme a presque fini et vous annonçant que le fichier rapport, ou log, se trouvera dans C:\ComboFix.txt.

      Il affichera ensuite automatiquement le fichier log...

      Réactivez vos défenses systèmes (pare feu, antivirus...)

      Ensuite copiez entièrement le log et collez le sur le forum !


      >>>>>>

      Si internet ne vient pas :

      # Cliquez sur le bouton Démarrer.
      # Cliquez sur l'option de menu Paramètres.
      # Cliquez sur l'option Panneau de configuration.
      # Après l'ouverture du Panneau de configuration, faites un double clic sur l'icône Connexions réseau. Si votre Panneau de configuration est paramétré pour un affichage en catégories, faites un double clic sur Connexions réseau et Internet puis cliquez sur Connexions réseau tout en bas.
      # Vous verrez alors une liste de toutes les connexions réseau disponibles. Repérez la connexion vers votre adaptateur Sans Fil ou Réseau local et faites un clic droit dessus.


      Ou Sinon, si une icône de votre réseau apparaît aussi dans la barre des tâches Windows, vous pouvez la réparer en faisant un clic droit sur l'icône et en choisissant Réparer
      0
  10. roguard Messages postés 38 Statut Membre 2
     
    Excuse moi du temps de réponse .
    Ci joint le rapport combofix .
    ComboFix 08-11-20.02 - Tanguy 2008-11-21 17:15:09.1 - NTFSx86
    Microsoft Windows XP Professionnel 5.1.2600.2.1252.33.1036.18.99 [GMT 1:00]
    Lancé depuis: c:\documents and settings\Tanguy\Bureau\ComboFix.exe
    .

    (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
    .

    c:\windows\10.tmp
    c:\windows\12.tmp
    c:\windows\4.tmp
    c:\windows\5.tmp
    c:\windows\6.tmp
    c:\windows\7.tmp
    c:\windows\8.tmp
    c:\windows\9.tmp
    c:\windows\A.tmp
    c:\windows\B.tmp
    c:\windows\C.tmp
    c:\windows\D.tmp
    c:\windows\E.tmp
    c:\windows\F.tmp
    c:\windows\system32\_000006_.tmp.dll

    .
    ((((((((((((((((((((((((((((( Fichiers créés du 2008-10-21 au 2008-11-21 ))))))))))))))))))))))))))))))))))))
    .

    2008-11-09 16:00 . 2008-11-09 16:00 <REP> d-------- c:\windows\ERUNT
    2008-11-09 15:51 . 2008-11-09 17:37 <REP> d-------- C:\SDFix
    2008-11-09 13:55 . 2008-11-19 19:32 250 --a------ c:\windows\gmer.ini
    2008-10-29 21:26 . 2008-10-03 18:12 6,066,176 -----c--- c:\windows\system32\dllcache\ieframe.dll
    2008-10-29 21:26 . 2007-04-17 10:32 2,455,488 -----c--- c:\windows\system32\dllcache\ieapfltr.dat
    2008-10-29 21:26 . 2007-03-08 06:10 1,048,576 -----c--- c:\windows\system32\dllcache\ieframe.dll.mui
    2008-10-29 21:26 . 2008-08-26 09:11 459,264 -----c--- c:\windows\system32\dllcache\msfeeds.dll
    2008-10-29 21:26 . 2008-08-26 09:11 383,488 -----c--- c:\windows\system32\dllcache\ieapfltr.dll
    2008-10-29 21:26 . 2008-08-26 09:11 267,776 -----c--- c:\windows\system32\dllcache\iertutil.dll
    2008-10-29 21:26 . 2008-08-26 09:11 63,488 -----c--- c:\windows\system32\dllcache\icardie.dll
    2008-10-29 21:26 . 2008-08-26 09:11 52,224 -----c--- c:\windows\system32\dllcache\msfeedsbs.dll
    2008-10-29 21:26 . 2008-08-25 09:38 13,824 -----c--- c:\windows\system32\dllcache\ieudinit.exe
    2008-10-29 21:25 . 2008-10-29 21:29 <REP> d-------- c:\windows\system32\fr-fr
    2008-10-29 21:05 . 2007-08-13 18:54 33,792 --a--c--- c:\windows\system32\dllcache\custsat.dll
    2008-10-29 20:30 . 2008-10-29 20:30 <REP> d-------- c:\documents and settings\Zim\Application Data\Auslogics
    2008-10-29 20:29 . 2008-10-29 20:29 <REP> d-------- c:\program files\Auslogics
    2008-10-29 18:24 . 2008-10-29 20:52 <REP> d-------- c:\windows\system32\CatRoot_bak
    2008-10-25 17:48 . 2008-10-25 17:48 <REP> d-------- c:\documents and settings\Zim\Application Data\PCToolsFirewallPlus

    .
    (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2008-11-19 19:36 --------- d-----w c:\documents and settings\Zim\Application Data\SiteAdvisor
    2008-11-19 18:33 --------- d---a-w c:\documents and settings\All Users\Application Data\TEMP
    2008-11-19 18:33 --------- d-----w c:\program files\SpywareBlaster
    2008-11-17 18:48 --------- d-----w c:\program files\Fichiers communs\Adobe
    2008-11-07 19:07 --------- d-----w c:\program files\Fichiers communs\Real
    2008-10-28 17:13 --------- d-----w c:\program files\Malwarebytes' Anti-Malware
    2008-10-24 11:10 453,632 ----a-w c:\windows\system32\drivers\mrxsmb.sys
    2008-10-22 15:10 38,496 ----a-w c:\windows\system32\drivers\mbamswissarmy.sys
    2008-10-22 15:10 15,504 ----a-w c:\windows\system32\drivers\mbam.sys
    2008-10-08 18:40 --------- d-----w c:\program files\CCleaner
    2008-10-01 17:07 --------- d-----w c:\documents and settings\Tanguy\Application Data\Malwarebytes
    2007-04-16 15:53 150,528 ------w c:\program files\Fichiers communs\WLJ.exe
    2007-04-16 15:53 146,944 ------w c:\program files\Fichiers communs\EyS.exe
    2007-04-16 15:53 143,360 ------w c:\program files\Fichiers communs\vCIY.exe
    2007-04-16 15:53 129,536 ------w c:\program files\Fichiers communs\nnZb.exe
    2001-08-28 12:00 74,240 ------w c:\program files\Fichiers communs\EtK.exe
    2001-08-28 12:00 103,936 ------w c:\program files\Fichiers communs\hPkwM.exe
    .

    ((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
    REGEDIT4

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2004-08-20 15360]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "avgnt"="c:\program files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2008-06-12 266497]
    "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-10-15 39792]

    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
    "CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2004-08-20 15360]

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
    SecurityProviders msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, ntoskrnl.dll

    [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Adobe Reader Synchronizer.lnk]
    path=c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\Adobe Reader Synchronizer.lnk
    backup=c:\windows\pss\Adobe Reader Synchronizer.lnkCommon Startup

    [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Lancement rapide d'Adobe Reader.lnk]
    path=c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\Lancement rapide d'Adobe Reader.lnk
    backup=c:\windows\pss\Lancement rapide d'Adobe Reader.lnkCommon Startup

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
    --a------ 2008-10-15 01:04 39792 c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSConfig]
    --a------ 2004-08-20 00:09 160768 c:\windows\PCHEALTH\HELPCTR\Binaries\msconfig.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
    "DisableMonitoring"=dword:00000001

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
    "DisableMonitoring"=dword:00000001

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
    "EnableFirewall"= 0 (0x0)

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe"=
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
    "c:\\Program Files\\Messenger\\msmsgs.exe"=

    R3 trid3d;trid3d;c:\windows\system32\DRIVERS\trid3dm.sys [2006-09-08 222336]
    S3 alcan5ln;SpeedTouch(tm) USB ADSL RFC1483 Networking Driver (NDIS);c:\windows\system32\DRIVERS\alcan5ln.sys [2006-09-08 36256]
    S3 NtApm;Pilote d'interface NT APM/hérité;c:\windows\system32\DRIVERS\NtApm.sys [2006-09-08 9472]
    S4 hpt3xx;hpt3xx; []
    .
    - - - - ORPHELINS SUPPRIMES - - - -

    HKU-Default-Run-Windows installer - C:\winstall.exe
    MSConfigStartUp-TkBellExe - c:\program files\Fichiers communs\Real\Update_OB\realsched.exe

    .
    ------- Examen supplémentaire -------
    .
    FireFox -: Profile - c:\documents and settings\Tanguy\Application Data\Mozilla\Firefox\Profiles\e6h6p927.default\
    FF -: plugin - c:\documents and settings\All Users\Application Data\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll
    .

    **************************************************************************

    catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2008-11-21 17:23:55
    Windows 5.1.2600 Service Pack 2 NTFS

    Recherche de processus cachés ...

    Recherche d'éléments en démarrage automatique cachés ...

    Recherche de fichiers cachés ...

    Scan terminé avec succès
    Fichiers cachés: 0

    **************************************************************************

    [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SecVmd]
    "ImagePath"="\"c:\program files\Fichiers communs\Services\enQ.exe\""
    .
    ------------------------ Autres processus actifs ------------------------
    .
    c:\program files\Avira\AntiVir PersonalEdition Classic\sched.exe
    c:\program files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    c:\windows\system32\wdfmgr.exe
    c:\windows\system32\wscntfy.exe
    .
    **************************************************************************
    .
    Heure de fin: 2008-11-21 17:28:46 - La machine a redémarré
    ComboFix-quarantined-files.txt 2008-11-21 16:28:36

    Avant-CF: 25.996.402.688 octets libres
    Après-CF: 25,945,948,160 octets libres

    WindowsXP-KB310994-SP2-Pro-BootDisk-FRA.exe
    [boot loader]
    timeout=2
    default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
    [operating systems]
    c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
    multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professionnel" /fastdetect /NoExecute=OptIn

    144 --- E O F --- 2008-11-12 19:09:38

    Même si cela peut te sembler bizarre , l'antislash est supprimé à chaque fois que je copie/colle du texte .
    0
    1. buginformatik Messages postés 2210 Statut Contributeur 54
       
      T'inkiète pas de problème

      Tu vas allé sur Virus total ==> https://www.virustotal.com/gui/

      Envoie les fichiers : WLJ.exe et nnZb.exe
      Présent ici :

      c:\program files\Fichiers communs\WLJ.exe 

      c:\program files\Fichiers communs\nnZb.exe 

      0
      1. roguard Messages postés 38 Statut Membre 2 > buginformatik Messages postés 2210 Statut Contributeur
         
        Erreur pour chacun des fichiers sur virustotal :
        0 bytes size received / Se ha recibido un archivo vacio
        0
      2. buginformatik Messages postés 2210 Statut Contributeur 54 > roguard Messages postés 38 Statut Membre
         
        hum s'a m'embêter... C'est sûrement inutile voire dangereux mais sans certitude, prendre le risque zéro...


        Tente une dernière fois d'en renvoyer un des deux stp
        0
  11. roguard Messages postés 38 Statut Membre 2
     
    Toujours impossible :(
    0
  12. roguard Messages postés 38 Statut Membre 2
     
    Personne n'a une idée ? (up)
    0
  13. buginformatik Messages postés 2210 Statut Contributeur 54
     
    Télécharge malwarebyte ici ==>https://com.com

    Tu l'installes, fais la mise à jour, et lance un scan complet de ton disques dur C:

    Laisse travailler....

    A la fin de l'analyse tu vas devoir supprimer, s'il y a, les menaces. Un rapport s'ouvre, poste le moi
    A+
    0
  14. roguard Messages postés 38 Statut Membre 2
     
    Je possède déja malwarebyte's antimalware , il y avait des infections dns.changer et zlob mais depuis quelques temps, plus de détections ...
    Merci quand même .
    0
  15. roguard Messages postés 38 Statut Membre 2
     
    up ! , please
    0
  16. roguard Messages postés 38 Statut Membre 2
     
    ...
    0
  17. roguard Messages postés 38 Statut Membre 2
     
    Aucune issue ?
    0
  18. jorginho67 Messages postés 15447 Statut Contributeur sécurité 1 169
     
    Salut !

    Poste un rapport HJT stp.
    0
  19. roguard Messages postés 38 Statut Membre 2
     
    Désolé pour le temps de réponse mais durant les fêtes, difficile de faire mieux.
    Ci joint le rapport hijackthis :
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 18:47:10, on 26/12/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16762)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\WINDOWS\system32\WgaTray.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Documents and Settings\Zim\Bureau\HiJackThis.exe
    C:\Program Files\Mozilla Firefox\firefox.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://genius.belgacom.be/esupport/broadbandservices.asp?lang=F
    R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
    O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O10 - Unknown file in Winsock LSP: c:\windows\system32\manxwsys.dll
    O15 - Trusted Zone: *.canalplay.com (HKLM)
    O15 - Trusted Zone: *.canalplusactive.com (HKLM)
    O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    0
  20. roguard Messages postés 38 Statut Membre 2
     
    PC toujours aussi lent ... :( 
    0
  21. roguard Messages postés 38 Statut Membre 2
     
    Gmer détecte toujours des processus cachés mais ceux-ci sont incrustés dans le système ; fileASSASSIN n'arrive pas à les déloger.
    0
  • 1
  • 2