Problème urgent trojan mitglieder higlieder

Fermé
wm22 Messages postés 7 Date d'inscription samedi 15 novembre 2008 Statut Membre Dernière intervention 15 novembre 2008 - 15 nov. 2008 à 16:53
wm22 Messages postés 7 Date d'inscription samedi 15 novembre 2008 Statut Membre Dernière intervention 15 novembre 2008 - 15 nov. 2008 à 19:54
Bonjour,

Voilà je me retrouve depuis plusieurs jours avec plein de problèmes et d'alertes sur mon pc. Je me suis rendu compte que je n'avais plus accès à mon antivirus antivir personal free edition.

J'ai utilisé yahoo anti spy qui trouve 2 trojans: higlieder et mitglieder. Je n'arrive pas à les supprimer ils reviennent au démarrage malgré la désactivation de sauvegarde windows et que j'ai vidé le cache internet et coupé internet également.

Il m'est impossible de faire un hijackthis(application 32 non valide). J'ai essayé toutes les méthodes vues sur les forums et rien ne marche pour moi. J'ai réussi seulement à faire un rapport avec fsecure (voir ci-dessous). J'ai besoin de mon pc (j'écris d'un autre bien sûr) car j'en ai besoin pour mon travail mardi... Je compte sur votre aide et votre solidarité.
Merci d'avance.

11/15/08 15:47:25 [Info]: BlackLight Engine 2.2.1092 initialized
11/15/08 15:47:25 [Info]: OS: 5.1 build 2600 (Service Pack 2)
11/15/08 15:47:25 [Note]: 7019 4
11/15/08 15:47:25 [Note]: 7005 0
11/15/08 15:50:10 [Note]: 7006 0
11/15/08 15:50:10 [Note]: 7011 664
11/15/08 15:50:10 [Note]: 7035 0
11/15/08 15:50:15 [Note]: 7026 0
11/15/08 15:50:20 [Note]: 7026 0
11/15/08 15:50:20 [Note]: 7024 3
11/15/08 15:50:20 [Info]: Hidden process: C:\Documents and Settings\willy\Application Data\m\flec006.exe
11/15/08 15:50:20 [Note]: 7024 3
11/15/08 15:50:20 [Info]: Hidden process: C:\WINDOWS\system32\drivers\winfilse.exe
11/15/08 15:50:20 [Note]: 7024 3
11/15/08 15:50:20 [Info]: Hidden process: C:\WINDOWS\system32\wintems.exe
11/15/08 15:50:25 [Note]: FSRAW library version 1.7.1024
11/15/08 15:50:26 [Info]: Hidden file: c:\autorun.inf
11/15/08 15:50:26 [Note]: 10002 2
11/15/08 15:50:28 [Info]: Hidden file: C:\Documents and Settings\willy\Application Data\m\flec006.exe
11/15/08 15:50:28 [Note]: 10002 2
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\3D_Crash_Icons_Screensaver_1
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Abakt 0.9.5 build 333.zip
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Abcc Free Movie Converter 3.
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\ABF_Screen_Saver_(OpenGL)_2.
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Account_Xpress_3.3.5_(Key).z
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\AK_Sophisticated_Rename_3.00
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Alphabet4Contacts_1.00.0192_
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Alt-Tab Replacement 1.0.zip
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Antique_Japanese_Bird_Prints
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Apollo DivX to DVD Creator 4
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Attack_of_the_Y2K_Bug_1.1.zi
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Backup and Restore Wizard So
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Baileys Car Font 1.0.zip
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Black Screen 1.16.zip
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Heaven Theme 1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Homestar_Runner_Toolbar_for_
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\HP Photosmart Essential 2.01
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\HTML_Creator_3.5.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Image_size_Opera_Widget_1.0.
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Internet Myway 1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Inverloch Comic 1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\iPod Folders 1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Ipodelite DVD TO iPod Conver
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Kaspersky.Anti-Virus.6.0.+.l
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\KillNamedProcess_1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\EasyBoot_5.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Easy Capture & Thumbnail 2.0
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\EtchTone_Photoshop_Plug-in_1
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Events Manager 1.4.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\ExamView Assessment Suite Pr
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Excel_Compare_2.3_Serial.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\EZ_MP3_Creator_1.5.2_Serial.
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\File Valet 1.2.1.5.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\File4ward Lite 3.1.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\FileBox eXtender 2.00.01.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Power_AutoPlay_Menu_Creator_
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Pulse_MP_1.2.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Resource_.NET_2.7.2386.41158
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\RewriteWeb_2.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Samooha_-_S_2.0_Crack.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Secure_File_Vault_1.0_Patch.
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Sharecalc 2.0.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\SilverFast SE 6.4.4r2.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Simple_RSS_Reader_1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Smart Kid - Learning Additio
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Smooth Gallery Builder 1.0.2
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\DebtCalc Debt Elimination Ca
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Delta Force - Black Hawk Dow
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\DidTheyReadIt_1.0_[Serial].z
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Digital_Dolly_1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\DiskSims 1.0 Beta.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\DNS Watcher 1.2.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Doc Convertor 1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Duplicate Remover for Micros
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\DVDStyler_1.51.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\DVD_Power_Pack_1.2.1_Key.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\EarthSculptor 1.05.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Blue_Lock_PC_1.0_(With_Crack
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\CW_Mail_Exchange_1.02.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\KingLister_1.36c_(Key).zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Mini Digital Signal Scope 1.
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Opal Calista Screensaver 1.0
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Sndmail.DLL 1.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Voxengo_Analogflux_Suite_1.4
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\MSSQL LogManager 1.5.0.2.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\My Properties 1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Need_for_Speed_Underground_2
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\NetNotes_4.1.2_(Cracked).zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\NovusTek_Internet_Updates_1.
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\OE-Plus 1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Oops 1.02.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Weather Widget 2007 2.3.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\WebCab_TA_for_.NET_(Communit
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\webSite Manager 1.2.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\WetSock 4.9e Build 667.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Writehere_1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Xceed Chart for .NET 3.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Xilisoft 3GP Video Converter
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Xpadder 5.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\YourTeamLink 1.1.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Zerama_Remote_4.2.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Bon Kyu Bon 1.1.2904.20255.z
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Business Appointment Manager
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\CCMplayer_1.5_(With_Crack).z
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\cFosSpeed_4.02_Build_1312.zi
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Comodo Memory Guardian Beta
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\COTCollector_1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\CS Fire Monitor 2.5.5.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\CtrlArray 1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\KontextViewer 1.06.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\KVIrc 3.2.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Laptop Locator with Data Gua
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Lightfeather_0.5.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\LT Expander 2.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\MB2-184 - Microsoft CRM Inst
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\MechWarrior_4_Vengeance_-_St
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Mezzmo 1.1.2.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Micro_C_68HC09_Development_S
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\MidConverter 4.2.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Midi_Maker_1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\MindSpring VoIP & IM 3.0.31.
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Speak_It_0.2.0.2.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Stardust Setup Packager 3.0.
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\STFMath 2.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Super_Charter_1.3.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Swiftpage for Outlook 2.1.2.
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\TEC Sound Recorder 1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\TextMaker_Viewer_1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Touchpoint Gallery 1.0.2.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\TradeBolt_3.2.94_[Cracked].z
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Ultra DVD Ripper 1.4.0715.zi
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\US_History_Trivia_&_Exam_Pre
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Vizual Einstein ME 8.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Fractal Tune Smithy 2.4.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Free-Fall Calculator 1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\FullShot_9.5.1.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\FX Saver 2.0c.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Go Game Hamete and Overplay
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Golf Tips 1.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Half-Life_Earth's_Special_Fo
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Ossie's_Alarm_Clock_1.0.0.zi
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Outlook_Anywhere_1.01_[With_
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\PBBalloon & PBTray 2.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\PDF_Page_Counter_Deluxe_3.3.
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\PeerTV 0.4.2.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Phex 3.2.0 Build 102.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Pi Hex Screensaver 1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\PicLighter_1.0.0.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\PIXXOS 4.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Note]: 10002 2
11/15/08 15:50:29 [Note]: 10002 2
11/15/08 15:51:11 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\empty.txt
11/15/08 15:51:11 [Note]: 10002 3
11/15/08 15:51:11 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\filters.xml
11/15/08 15:51:11 [Note]: 10002 3
11/15/08 15:51:11 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\news.png
11/15/08 15:51:11 [Note]: 10002 3
11/15/08 15:51:11 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\paint.png
11/15/08 15:51:11 [Note]: 10002 3
11/15/08 15:51:11 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\profiles\blank.txt
11/15/08 15:51:11 [Note]: 10002 3
11/15/08 15:51:11 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\sample1.jpg
11/15/08 15:51:11 [Note]: 10002 3
11/15/08 15:51:11 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\sample2.jpg
11/15/08 15:51:11 [Note]: 10002 3
11/15/08 15:51:11 [Note]: 10002 2
11/15/08 15:51:11 [Note]: 10002 2
11/15/08 15:52:10 [Info]: Hidden file: c:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\Autorun.inf
11/15/08 15:52:10 [Note]: 10002 2
11/15/08 15:52:10 [Info]: Hidden file: c:\Program Files\Roxio\Easy CD Creator 6\Easy CD Creator\Autorun.inf
11/15/08 15:52:10 [Note]: 10002 2
11/15/08 15:57:04 [Note]: 10002 2
11/15/08 15:57:04 [Note]: 10002 2
11/15/08 15:57:41 [Info]: Hidden file: c:\WINDOWS\system32\kduss.exe
11/15/08 15:57:41 [Note]: 7002 32
11/15/08 15:57:41 [Note]: 7003 1
11/15/08 15:57:41 [Note]: 10002 1
11/15/08 15:57:50 [Info]: Hidden file: C:\WINDOWS\system32\wintems.exe
11/15/08 15:57:50 [Note]: 10002 2
11/15/08 15:57:50 [Info]: Hidden file: c:\WINDOWS\system32\mdelk.exe
11/15/08 15:57:50 [Note]: 10002 2
11/15/08 15:58:02 [Info]: Hidden file: c:\WINDOWS\system32\drivers\srosa.sys
11/15/08 15:58:02 [Note]: 10002 2
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\282484.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\1172937.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\1175265.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\1189781.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\1192109.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\1242062.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\124640.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\1253125.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\136593.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\142015.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\161812.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\165296.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\171015.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\178828.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\251890.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\256359.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\270187.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\272250.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\272687.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\275000.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\284421.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\292328.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\294218.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\295281.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\295687.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\297781.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\300796.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\302406.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\305109.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\306156.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\312015.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\319171.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\319734.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\325500.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\327890.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\328625.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\336375.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\341984.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\351421.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\369453.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\390062.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\398359.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\398437.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\402843.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\422046.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Note]: 10002 2
11/15/08 15:58:04 [Note]: 10002 2
11/15/08 15:58:04 [Info]: Hidden file: C:\WINDOWS\system32\drivers\winfilse.exe
11/15/08 15:58:04 [Note]: 10002 2
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 2
11/15/08 15:58:09 [Note]: 10002 2
11/15/08 15:59:33 [Note]: 2000 1012
11/15/08 15:59:33 [Note]: 2000 1012
11/15/08 16:05:42 [Note]: 7007 0
A voir également:

10 réponses

A quand le tome 2?
0
VladTepes72 Messages postés 409 Date d'inscription lundi 18 août 2008 Statut Membre Dernière intervention 12 mai 2010 12
15 nov. 2008 à 16:58
bonjour

tu n as pas un autre disk dur ou un cd live sur lequel demarrer installer tes log de lutte anti virus et faire le nettoyage par l exterieur

@+
0
douchka66 Messages postés 1665 Date d'inscription samedi 31 mai 2008 Statut Membre Dernière intervention 12 mars 2015 46
15 nov. 2008 à 17:04
bonjour as tu essayé de faire un scan complet avec malwarebytes et affiche le rapport
cordialement
0
wm22 Messages postés 7 Date d'inscription samedi 15 novembre 2008 Statut Membre Dernière intervention 15 novembre 2008
15 nov. 2008 à 18:00
Merci de votre aide rapide!
J'ai fait un rapport malware. Il a trouvé des fichiers infectés. Je vous mets le rapport. Je n'y comprends pas grand chose.
Le logiciel ne supprime pas les fichiers infestés trouvés directement?
Merci




Malwarebytes' Anti-Malware 1.30
Version de la base de données: 1306
Windows 5.1.2600 Service Pack 2

2008-11-15 17:56:33
mbam-log-2008-11-15 (17-56-28).txt

Type de recherche: Examen complet (C:\|)
Eléments examinés: 121325
Temps écoulé: 37 minute(s), 48 second(s)

Processus mémoire infecté(s): 1
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 7
Valeur(s) du Registre infectée(s): 2
Elément(s) de données du Registre infecté(s): 22
Dossier(s) infecté(s): 3
Fichier(s) infecté(s): 67

Processus mémoire infecté(s):
C:\WINDOWS\system32\drivers\svchost.exe (Heuristics.Reserved.Word.Exploit) -> No action taken.

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\Interface\{0215dc7a-ef2f-451c-9392-b6481b2a4dab} (Trojan.FakeAlert) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{3256c64d-ecb2-421c-ae34-a4c6118ff4ea} (Trojan.FakeAlert) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{10026069-7a5f-4531-811e-c8df20643bee} (Trojan.FakeAlert) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{156dd78a-cb74-4822-a17c-9cf02b43f72a} (Trojan.FakeAlert) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{156dd78a-cb74-4822-a17c-9cf02b43f72a} (Trojan.FakeAlert) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f10c02d-4115-30ac-bb0a-8571f81b1112} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{4f10c02d-4115-30ac-bb0a-8571f81b1112} (Trojan.BHO) -> No action taken.

Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\svchost.exe (Trojan.FakeAlert.H) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mule_st_key (Trojan.Agent) -> No action taken.

Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\System (Rootkit.DNSChanger.H) -> Data: kduss.exe -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{2acc402f-1ddb-4610-ba4c-5566a517036a}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{2acc402f-1ddb-4610-ba4c-5566a517036a}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{b2dcbbb2-1774-4fac-a6ff-47b5ad006cc0}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{b2dcbbb2-1774-4fac-a6ff-47b5ad006cc0}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{e0d45043-e5ec-4f22-bbbe-6c700e26cbee}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{ef9f4b44-3590-4918-877b-a6480742ff13}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{ef9f4b44-3590-4918-877b-a6480742ff13}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{2acc402f-1ddb-4610-ba4c-5566a517036a}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{2acc402f-1ddb-4610-ba4c-5566a517036a}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{b2dcbbb2-1774-4fac-a6ff-47b5ad006cc0}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{b2dcbbb2-1774-4fac-a6ff-47b5ad006cc0}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{e0d45043-e5ec-4f22-bbbe-6c700e26cbee}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{ef9f4b44-3590-4918-877b-a6480742ff13}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{ef9f4b44-3590-4918-877b-a6480742ff13}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Tcpip\Parameters\Interfaces\{2acc402f-1ddb-4610-ba4c-5566a517036a}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Tcpip\Parameters\Interfaces\{2acc402f-1ddb-4610-ba4c-5566a517036a}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Tcpip\Parameters\Interfaces\{b2dcbbb2-1774-4fac-a6ff-47b5ad006cc0}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Tcpip\Parameters\Interfaces\{b2dcbbb2-1774-4fac-a6ff-47b5ad006cc0}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Tcpip\Parameters\Interfaces\{e0d45043-e5ec-4f22-bbbe-6c700e26cbee}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Tcpip\Parameters\Interfaces\{ef9f4b44-3590-4918-877b-a6480742ff13}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Tcpip\Parameters\Interfaces\{ef9f4b44-3590-4918-877b-a6480742ff13}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.

Dossier(s) infecté(s):
C:\resycled (Trojan.DNSChanger) -> No action taken.
C:\WINDOWS\system32\drivers\downld (Trojan.Agent) -> No action taken.
C:\Documents and Settings\willy\Application Data\m (Trojan.Agent) -> No action taken.

Fichier(s) infecté(s):
C:\WINDOWS\system32\kduss.exe (Rootkit.DNSChanger.H) -> No action taken.
C:\WINDOWS\system32\drivers\svchost.exe (Trojan.FakeAlert.H) -> No action taken.
C:\WINDOWS\system32\vxfecgkco.dll (Trojan.FakeAlert) -> No action taken.
C:\resycled\boot.com (Trojan.DNSChanger) -> No action taken.
C:\WINDOWS\system32\drivers\downld\1172937.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\1175265.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\1189781.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\1192109.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\1242062.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\124640.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\1253125.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\136593.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\142015.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\161812.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\165296.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\171015.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\178828.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\251890.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\256359.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\270187.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\272250.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\272687.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\275000.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\282484.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\284421.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\292328.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\294218.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\295281.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\295687.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\297781.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\300796.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\302406.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\305109.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\306156.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\312015.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\319171.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\319734.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\325500.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\327890.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\328625.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\336375.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\341984.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\351421.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\369453.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\390062.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\398359.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\398437.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\402843.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\422046.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\c.ico (Malware.Trace) -> No action taken.
C:\WINDOWS\system32\m.ico (Malware.Trace) -> No action taken.
C:\WINDOWS\system32\p.ico (Malware.Trace) -> No action taken.
C:\WINDOWS\system32\s.ico (Malware.Trace) -> No action taken.
C:\WINDOWS\system32\drivers\TDSSserv.sys (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\mdelk.exe (Trojan.Spammer) -> No action taken.
C:\WINDOWS\system32\wintems.exe (Trojan.Spammer) -> No action taken.
C:\Documents and Settings\willy\Application Data\m\flec006.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\k.txt (Trojan.FakeAlert) -> No action taken.
C:\WINDOWS\Temp\tempo-449.tmp (Trojan.FakeAlert) -> No action taken.
C:\WINDOWS\Temp\tempo-56F.tmp (Trojan.FakeAlert) -> No action taken.
C:\WINDOWS\Temp\tempo-87D.tmp (Trojan.FakeAlert) -> No action taken.
C:\WINDOWS\Temp\tempo-89B.tmp (Trojan.FakeAlert) -> No action taken.
C:\WINDOWS\Temp\tempo-F0B.tmp (Trojan.FakeAlert) -> No action taken.
C:\WINDOWS\system32\TDSSofxh.dll (Rootkit.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\srosa.sys (Rootkit.Bagle) -> No action taken.
C:\WINDOWS\system32\drivers\TDSSpqlt.sys (Rootkit.Agent) -> No action taken.
C:\WINDOWS\system32\mws29393.dll (Trojan.BHO) -> No action taken.
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
wm22 Messages postés 7 Date d'inscription samedi 15 novembre 2008 Statut Membre Dernière intervention 15 novembre 2008
15 nov. 2008 à 18:03
A nouveau moi, j'ai vu que le logiciel m'avait préselectionné tous les fichiers infestés et me propose de les supprimer. Je peux le faire sans risque?
Merci
0
douchka66 Messages postés 1665 Date d'inscription samedi 31 mai 2008 Statut Membre Dernière intervention 12 mars 2015 46
15 nov. 2008 à 18:27
oui et maintenant ccleaner ok
0
wm22 Messages postés 7 Date d'inscription samedi 15 novembre 2008 Statut Membre Dernière intervention 15 novembre 2008
15 nov. 2008 à 18:42
Alors j'ai supprimé la sélection de fichiers puis j'ai lancé Ccleaner. est-ce normal que Ccleaner selance et disparaisse aussitôt? Le pc à l'air de mieux se comporter cependant quand je lance Yahoo anti spy higlieder et mitglieder apparaissent toujours... Et si je remets internet j'ai bien peur que d'autres virus reviennent du coup...
Que faire? Merci d'avance.
0
douchka66 Messages postés 1665 Date d'inscription samedi 31 mai 2008 Statut Membre Dernière intervention 12 mars 2015 46
15 nov. 2008 à 18:50
non ccleaner doit rester recommence
0
wm22 Messages postés 7 Date d'inscription samedi 15 novembre 2008 Statut Membre Dernière intervention 15 novembre 2008
15 nov. 2008 à 18:53
Rien à faire, il est bien installé mais quand je lance le raccourci je vois la fenêtre s'afficher et disparaitre 1 seconde après... A quoi sert ccleaner au juste en fait?
Merci
0
wm22 Messages postés 7 Date d'inscription samedi 15 novembre 2008 Statut Membre Dernière intervention 15 novembre 2008
15 nov. 2008 à 19:34
Apparemment d'autres ont eu le même problème? Cela viendrait d'une infestion bagle. J'ait fait des test de désinfection bagle mais apparemment ce n'est pas ça...
0
wm22 Messages postés 7 Date d'inscription samedi 15 novembre 2008 Statut Membre Dernière intervention 15 novembre 2008
15 nov. 2008 à 19:54
j'ai fait un coup de findykill et voila debarassé des deux trojans!!!!!
merci de votre aide
a plus et bonne soirée à vous
0