Problème urgent trojan mitglieder higlieder

wm22 Messages postés 7 Statut Membre -  
wm22 Messages postés 7 Statut Membre -
Bonjour,

Voilà je me retrouve depuis plusieurs jours avec plein de problèmes et d'alertes sur mon pc. Je me suis rendu compte que je n'avais plus accès à mon antivirus antivir personal free edition.

J'ai utilisé yahoo anti spy qui trouve 2 trojans: higlieder et mitglieder. Je n'arrive pas à les supprimer ils reviennent au démarrage malgré la désactivation de sauvegarde windows et que j'ai vidé le cache internet et coupé internet également.

Il m'est impossible de faire un hijackthis(application 32 non valide). J'ai essayé toutes les méthodes vues sur les forums et rien ne marche pour moi. J'ai réussi seulement à faire un rapport avec fsecure (voir ci-dessous). J'ai besoin de mon pc (j'écris d'un autre bien sûr) car j'en ai besoin pour mon travail mardi... Je compte sur votre aide et votre solidarité.
Merci d'avance.

11/15/08 15:47:25 [Info]: BlackLight Engine 2.2.1092 initialized
11/15/08 15:47:25 [Info]: OS: 5.1 build 2600 (Service Pack 2)
11/15/08 15:47:25 [Note]: 7019 4
11/15/08 15:47:25 [Note]: 7005 0
11/15/08 15:50:10 [Note]: 7006 0
11/15/08 15:50:10 [Note]: 7011 664
11/15/08 15:50:10 [Note]: 7035 0
11/15/08 15:50:15 [Note]: 7026 0
11/15/08 15:50:20 [Note]: 7026 0
11/15/08 15:50:20 [Note]: 7024 3
11/15/08 15:50:20 [Info]: Hidden process: C:\Documents and Settings\willy\Application Data\m\flec006.exe
11/15/08 15:50:20 [Note]: 7024 3
11/15/08 15:50:20 [Info]: Hidden process: C:\WINDOWS\system32\drivers\winfilse.exe
11/15/08 15:50:20 [Note]: 7024 3
11/15/08 15:50:20 [Info]: Hidden process: C:\WINDOWS\system32\wintems.exe
11/15/08 15:50:25 [Note]: FSRAW library version 1.7.1024
11/15/08 15:50:26 [Info]: Hidden file: c:\autorun.inf
11/15/08 15:50:26 [Note]: 10002 2
11/15/08 15:50:28 [Info]: Hidden file: C:\Documents and Settings\willy\Application Data\m\flec006.exe
11/15/08 15:50:28 [Note]: 10002 2
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\3D_Crash_Icons_Screensaver_1
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Abakt 0.9.5 build 333.zip
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Abcc Free Movie Converter 3.
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\ABF_Screen_Saver_(OpenGL)_2.
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Account_Xpress_3.3.5_(Key).z
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\AK_Sophisticated_Rename_3.00
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Alphabet4Contacts_1.00.0192_
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Alt-Tab Replacement 1.0.zip
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Antique_Japanese_Bird_Prints
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Apollo DivX to DVD Creator 4
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Attack_of_the_Y2K_Bug_1.1.zi
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Backup and Restore Wizard So
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Baileys Car Font 1.0.zip
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Black Screen 1.16.zip
11/15/08 15:50:28 [Note]: 10002 3
11/15/08 15:50:28 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Heaven Theme 1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Homestar_Runner_Toolbar_for_
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\HP Photosmart Essential 2.01
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\HTML_Creator_3.5.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Image_size_Opera_Widget_1.0.
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Internet Myway 1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Inverloch Comic 1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\iPod Folders 1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Ipodelite DVD TO iPod Conver
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Kaspersky.Anti-Virus.6.0.+.l
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\KillNamedProcess_1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\EasyBoot_5.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Easy Capture & Thumbnail 2.0
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\EtchTone_Photoshop_Plug-in_1
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Events Manager 1.4.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\ExamView Assessment Suite Pr
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Excel_Compare_2.3_Serial.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\EZ_MP3_Creator_1.5.2_Serial.
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\File Valet 1.2.1.5.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\File4ward Lite 3.1.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\FileBox eXtender 2.00.01.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Power_AutoPlay_Menu_Creator_
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Pulse_MP_1.2.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Resource_.NET_2.7.2386.41158
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\RewriteWeb_2.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Samooha_-_S_2.0_Crack.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Secure_File_Vault_1.0_Patch.
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Sharecalc 2.0.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\SilverFast SE 6.4.4r2.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Simple_RSS_Reader_1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Smart Kid - Learning Additio
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Smooth Gallery Builder 1.0.2
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\DebtCalc Debt Elimination Ca
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Delta Force - Black Hawk Dow
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\DidTheyReadIt_1.0_[Serial].z
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Digital_Dolly_1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\DiskSims 1.0 Beta.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\DNS Watcher 1.2.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Doc Convertor 1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Duplicate Remover for Micros
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\DVDStyler_1.51.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\DVD_Power_Pack_1.2.1_Key.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\EarthSculptor 1.05.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Blue_Lock_PC_1.0_(With_Crack
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\CW_Mail_Exchange_1.02.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\KingLister_1.36c_(Key).zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Mini Digital Signal Scope 1.
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Opal Calista Screensaver 1.0
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Sndmail.DLL 1.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Voxengo_Analogflux_Suite_1.4
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\MSSQL LogManager 1.5.0.2.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\My Properties 1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Need_for_Speed_Underground_2
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\NetNotes_4.1.2_(Cracked).zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\NovusTek_Internet_Updates_1.
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\OE-Plus 1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Oops 1.02.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Weather Widget 2007 2.3.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\WebCab_TA_for_.NET_(Communit
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\webSite Manager 1.2.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\WetSock 4.9e Build 667.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Writehere_1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Xceed Chart for .NET 3.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Xilisoft 3GP Video Converter
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Xpadder 5.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\YourTeamLink 1.1.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Zerama_Remote_4.2.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Bon Kyu Bon 1.1.2904.20255.z
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Business Appointment Manager
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\CCMplayer_1.5_(With_Crack).z
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\cFosSpeed_4.02_Build_1312.zi
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Comodo Memory Guardian Beta
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\COTCollector_1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\CS Fire Monitor 2.5.5.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\CtrlArray 1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\KontextViewer 1.06.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\KVIrc 3.2.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Laptop Locator with Data Gua
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Lightfeather_0.5.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\LT Expander 2.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\MB2-184 - Microsoft CRM Inst
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\MechWarrior_4_Vengeance_-_St
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Mezzmo 1.1.2.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Micro_C_68HC09_Development_S
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\MidConverter 4.2.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Midi_Maker_1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\MindSpring VoIP & IM 3.0.31.
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Speak_It_0.2.0.2.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Stardust Setup Packager 3.0.
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\STFMath 2.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Super_Charter_1.3.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Swiftpage for Outlook 2.1.2.
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\TEC Sound Recorder 1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\TextMaker_Viewer_1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Touchpoint Gallery 1.0.2.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\TradeBolt_3.2.94_[Cracked].z
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Ultra DVD Ripper 1.4.0715.zi
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\US_History_Trivia_&_Exam_Pre
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Vizual Einstein ME 8.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Fractal Tune Smithy 2.4.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Free-Fall Calculator 1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\FullShot_9.5.1.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\FX Saver 2.0c.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Go Game Hamete and Overplay
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Golf Tips 1.1.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Half-Life_Earth's_Special_Fo
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Ossie's_Alarm_Clock_1.0.0.zi
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Outlook_Anywhere_1.01_[With_
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\PBBalloon & PBTray 2.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\PDF_Page_Counter_Deluxe_3.3.
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\PeerTV 0.4.2.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Phex 3.2.0 Build 102.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\Pi Hex Screensaver 1.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\PicLighter_1.0.0.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Info]: Hidden file: c:\Documents and Settings\willy\Application Data\m\shared\PIXXOS 4.0.zip
11/15/08 15:50:29 [Note]: 10002 3
11/15/08 15:50:29 [Note]: 10002 2
11/15/08 15:50:29 [Note]: 10002 2
11/15/08 15:51:11 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\empty.txt
11/15/08 15:51:11 [Note]: 10002 3
11/15/08 15:51:11 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\filters.xml
11/15/08 15:51:11 [Note]: 10002 3
11/15/08 15:51:11 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\news.png
11/15/08 15:51:11 [Note]: 10002 3
11/15/08 15:51:11 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\paint.png
11/15/08 15:51:11 [Note]: 10002 3
11/15/08 15:51:11 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\profiles\blank.txt
11/15/08 15:51:11 [Note]: 10002 3
11/15/08 15:51:11 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\sample1.jpg
11/15/08 15:51:11 [Note]: 10002 3
11/15/08 15:51:11 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\sample2.jpg
11/15/08 15:51:11 [Note]: 10002 3
11/15/08 15:51:11 [Note]: 10002 2
11/15/08 15:51:11 [Note]: 10002 2
11/15/08 15:52:10 [Info]: Hidden file: c:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\Autorun.inf
11/15/08 15:52:10 [Note]: 10002 2
11/15/08 15:52:10 [Info]: Hidden file: c:\Program Files\Roxio\Easy CD Creator 6\Easy CD Creator\Autorun.inf
11/15/08 15:52:10 [Note]: 10002 2
11/15/08 15:57:04 [Note]: 10002 2
11/15/08 15:57:04 [Note]: 10002 2
11/15/08 15:57:41 [Info]: Hidden file: c:\WINDOWS\system32\kduss.exe
11/15/08 15:57:41 [Note]: 7002 32
11/15/08 15:57:41 [Note]: 7003 1
11/15/08 15:57:41 [Note]: 10002 1
11/15/08 15:57:50 [Info]: Hidden file: C:\WINDOWS\system32\wintems.exe
11/15/08 15:57:50 [Note]: 10002 2
11/15/08 15:57:50 [Info]: Hidden file: c:\WINDOWS\system32\mdelk.exe
11/15/08 15:57:50 [Note]: 10002 2
11/15/08 15:58:02 [Info]: Hidden file: c:\WINDOWS\system32\drivers\srosa.sys
11/15/08 15:58:02 [Note]: 10002 2
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\282484.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\1172937.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\1175265.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\1189781.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\1192109.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\1242062.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\124640.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\1253125.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\136593.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\142015.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\161812.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\165296.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\171015.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\178828.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\251890.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\256359.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\270187.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\272250.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\272687.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\275000.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\284421.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\292328.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\294218.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\295281.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\295687.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\297781.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\300796.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\302406.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\305109.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\306156.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\312015.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\319171.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\319734.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\325500.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\327890.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\328625.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\336375.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\341984.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\351421.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\369453.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\390062.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\398359.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\398437.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\402843.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Info]: Hidden file: c:\WINDOWS\system32\drivers\downld\422046.exe
11/15/08 15:58:04 [Note]: 10002 3
11/15/08 15:58:04 [Note]: 10002 2
11/15/08 15:58:04 [Note]: 10002 2
11/15/08 15:58:04 [Info]: Hidden file: C:\WINDOWS\system32\drivers\winfilse.exe
11/15/08 15:58:04 [Note]: 10002 2
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 3
11/15/08 15:58:09 [Note]: 10002 2
11/15/08 15:58:09 [Note]: 10002 2
11/15/08 15:59:33 [Note]: 2000 1012
11/15/08 15:59:33 [Note]: 2000 1012
11/15/08 16:05:42 [Note]: 7007 0
A voir également:

10 réponses

LE boss
 
A quand le tome 2?
0
VladTepes72 Messages postés 431 Statut Membre 12
 
bonjour

tu n as pas un autre disk dur ou un cd live sur lequel demarrer installer tes log de lutte anti virus et faire le nettoyage par l exterieur

@+
0
douchka66 Messages postés 1693 Date d'inscription   Statut Membre Dernière intervention   46
 
bonjour as tu essayé de faire un scan complet avec malwarebytes et affiche le rapport
cordialement
0
wm22 Messages postés 7 Statut Membre
 
Merci de votre aide rapide!
J'ai fait un rapport malware. Il a trouvé des fichiers infectés. Je vous mets le rapport. Je n'y comprends pas grand chose.
Le logiciel ne supprime pas les fichiers infestés trouvés directement?
Merci

Malwarebytes' Anti-Malware 1.30
Version de la base de données: 1306
Windows 5.1.2600 Service Pack 2

2008-11-15 17:56:33
mbam-log-2008-11-15 (17-56-28).txt

Type de recherche: Examen complet (C:\|)
Eléments examinés: 121325
Temps écoulé: 37 minute(s), 48 second(s)

Processus mémoire infecté(s): 1
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 7
Valeur(s) du Registre infectée(s): 2
Elément(s) de données du Registre infecté(s): 22
Dossier(s) infecté(s): 3
Fichier(s) infecté(s): 67

Processus mémoire infecté(s):
C:\WINDOWS\system32\drivers\svchost.exe (Heuristics.Reserved.Word.Exploit) -> No action taken.

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\Interface\{0215dc7a-ef2f-451c-9392-b6481b2a4dab} (Trojan.FakeAlert) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{3256c64d-ecb2-421c-ae34-a4c6118ff4ea} (Trojan.FakeAlert) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{10026069-7a5f-4531-811e-c8df20643bee} (Trojan.FakeAlert) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{156dd78a-cb74-4822-a17c-9cf02b43f72a} (Trojan.FakeAlert) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{156dd78a-cb74-4822-a17c-9cf02b43f72a} (Trojan.FakeAlert) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f10c02d-4115-30ac-bb0a-8571f81b1112} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{4f10c02d-4115-30ac-bb0a-8571f81b1112} (Trojan.BHO) -> No action taken.

Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\svchost.exe (Trojan.FakeAlert.H) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mule_st_key (Trojan.Agent) -> No action taken.

Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\System (Rootkit.DNSChanger.H) -> Data: kduss.exe -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{2acc402f-1ddb-4610-ba4c-5566a517036a}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{2acc402f-1ddb-4610-ba4c-5566a517036a}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{b2dcbbb2-1774-4fac-a6ff-47b5ad006cc0}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{b2dcbbb2-1774-4fac-a6ff-47b5ad006cc0}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{e0d45043-e5ec-4f22-bbbe-6c700e26cbee}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{ef9f4b44-3590-4918-877b-a6480742ff13}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{ef9f4b44-3590-4918-877b-a6480742ff13}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{2acc402f-1ddb-4610-ba4c-5566a517036a}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{2acc402f-1ddb-4610-ba4c-5566a517036a}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{b2dcbbb2-1774-4fac-a6ff-47b5ad006cc0}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{b2dcbbb2-1774-4fac-a6ff-47b5ad006cc0}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{e0d45043-e5ec-4f22-bbbe-6c700e26cbee}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{ef9f4b44-3590-4918-877b-a6480742ff13}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{ef9f4b44-3590-4918-877b-a6480742ff13}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Tcpip\Parameters\Interfaces\{2acc402f-1ddb-4610-ba4c-5566a517036a}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Tcpip\Parameters\Interfaces\{2acc402f-1ddb-4610-ba4c-5566a517036a}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Tcpip\Parameters\Interfaces\{b2dcbbb2-1774-4fac-a6ff-47b5ad006cc0}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Tcpip\Parameters\Interfaces\{b2dcbbb2-1774-4fac-a6ff-47b5ad006cc0}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Tcpip\Parameters\Interfaces\{e0d45043-e5ec-4f22-bbbe-6c700e26cbee}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Tcpip\Parameters\Interfaces\{ef9f4b44-3590-4918-877b-a6480742ff13}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Tcpip\Parameters\Interfaces\{ef9f4b44-3590-4918-877b-a6480742ff13}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.106;85.255.112.152 -> No action taken.

Dossier(s) infecté(s):
C:\resycled (Trojan.DNSChanger) -> No action taken.
C:\WINDOWS\system32\drivers\downld (Trojan.Agent) -> No action taken.
C:\Documents and Settings\willy\Application Data\m (Trojan.Agent) -> No action taken.

Fichier(s) infecté(s):
C:\WINDOWS\system32\kduss.exe (Rootkit.DNSChanger.H) -> No action taken.
C:\WINDOWS\system32\drivers\svchost.exe (Trojan.FakeAlert.H) -> No action taken.
C:\WINDOWS\system32\vxfecgkco.dll (Trojan.FakeAlert) -> No action taken.
C:\resycled\boot.com (Trojan.DNSChanger) -> No action taken.
C:\WINDOWS\system32\drivers\downld\1172937.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\1175265.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\1189781.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\1192109.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\1242062.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\124640.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\1253125.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\136593.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\142015.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\161812.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\165296.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\171015.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\178828.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\251890.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\256359.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\270187.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\272250.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\272687.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\275000.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\282484.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\284421.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\292328.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\294218.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\295281.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\295687.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\297781.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\300796.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\302406.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\305109.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\306156.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\312015.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\319171.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\319734.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\325500.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\327890.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\328625.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\336375.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\341984.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\351421.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\369453.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\390062.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\398359.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\398437.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\402843.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\downld\422046.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\c.ico (Malware.Trace) -> No action taken.
C:\WINDOWS\system32\m.ico (Malware.Trace) -> No action taken.
C:\WINDOWS\system32\p.ico (Malware.Trace) -> No action taken.
C:\WINDOWS\system32\s.ico (Malware.Trace) -> No action taken.
C:\WINDOWS\system32\drivers\TDSSserv.sys (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\mdelk.exe (Trojan.Spammer) -> No action taken.
C:\WINDOWS\system32\wintems.exe (Trojan.Spammer) -> No action taken.
C:\Documents and Settings\willy\Application Data\m\flec006.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\k.txt (Trojan.FakeAlert) -> No action taken.
C:\WINDOWS\Temp\tempo-449.tmp (Trojan.FakeAlert) -> No action taken.
C:\WINDOWS\Temp\tempo-56F.tmp (Trojan.FakeAlert) -> No action taken.
C:\WINDOWS\Temp\tempo-87D.tmp (Trojan.FakeAlert) -> No action taken.
C:\WINDOWS\Temp\tempo-89B.tmp (Trojan.FakeAlert) -> No action taken.
C:\WINDOWS\Temp\tempo-F0B.tmp (Trojan.FakeAlert) -> No action taken.
C:\WINDOWS\system32\TDSSofxh.dll (Rootkit.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\srosa.sys (Rootkit.Bagle) -> No action taken.
C:\WINDOWS\system32\drivers\TDSSpqlt.sys (Rootkit.Agent) -> No action taken.
C:\WINDOWS\system32\mws29393.dll (Trojan.BHO) -> No action taken.
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
wm22 Messages postés 7 Statut Membre
 
A nouveau moi, j'ai vu que le logiciel m'avait préselectionné tous les fichiers infestés et me propose de les supprimer. Je peux le faire sans risque?
Merci
0
douchka66 Messages postés 1693 Date d'inscription   Statut Membre Dernière intervention   46
 
oui et maintenant ccleaner ok
0
wm22 Messages postés 7 Statut Membre
 
Alors j'ai supprimé la sélection de fichiers puis j'ai lancé Ccleaner. est-ce normal que Ccleaner selance et disparaisse aussitôt? Le pc à l'air de mieux se comporter cependant quand je lance Yahoo anti spy higlieder et mitglieder apparaissent toujours... Et si je remets internet j'ai bien peur que d'autres virus reviennent du coup...
Que faire? Merci d'avance.
0
douchka66 Messages postés 1693 Date d'inscription   Statut Membre Dernière intervention   46
 
non ccleaner doit rester recommence
0
wm22 Messages postés 7 Statut Membre
 
Rien à faire, il est bien installé mais quand je lance le raccourci je vois la fenêtre s'afficher et disparaitre 1 seconde après... A quoi sert ccleaner au juste en fait?
Merci
0
wm22 Messages postés 7 Statut Membre
 
Apparemment d'autres ont eu le même problème? Cela viendrait d'une infestion bagle. J'ait fait des test de désinfection bagle mais apparemment ce n'est pas ça...
0
wm22 Messages postés 7 Statut Membre
 
j'ai fait un coup de findykill et voila debarassé des deux trojans!!!!!
merci de votre aide
a plus et bonne soirée à vous
0