Virus spyware insupprimable !!
mosquito32
Messages postés
54
Statut
Membre
-
sKe69 -
sKe69 -
Bonjour,
je voulais voir une série en streaming je suis tombé sur un site hasardeux, et j'ai cliqué sur éxécuter les plug in... j'ai donc choppé un virus et maintenant j'ai des pop up qui m'envoi sur des sites d'antivirus j'ai une alerte dans la barre des taches en bas, un triangle qui clignote, parfois il me dis pb mémoire 49% disc 37% ou un truc du genre et des fois trojan il me semble, alors j'ai lancé ad aware, et depuis j'ai toujours ce souci, j'ai télécharger hijackthis, et j'aurai besoin d'aide pour comprendre le rapport et m'aider a supprimer ce virus... Merci beaucoup
je voulais voir une série en streaming je suis tombé sur un site hasardeux, et j'ai cliqué sur éxécuter les plug in... j'ai donc choppé un virus et maintenant j'ai des pop up qui m'envoi sur des sites d'antivirus j'ai une alerte dans la barre des taches en bas, un triangle qui clignote, parfois il me dis pb mémoire 49% disc 37% ou un truc du genre et des fois trojan il me semble, alors j'ai lancé ad aware, et depuis j'ai toujours ce souci, j'ai télécharger hijackthis, et j'aurai besoin d'aide pour comprendre le rapport et m'aider a supprimer ce virus... Merci beaucoup
A voir également:
- Virus spyware insupprimable !!
- Virus mcafee - Accueil - Piratage
- Spyware doctor - Télécharger - Antivirus & Antimalwares
- Logiciel pour supprimer fichier insupprimable - Guide
- Virus facebook demande d'amis - Accueil - Facebook
- Virus informatique - Guide
66 réponses
F --------- Logfile of AD-Remover 1.0.3.3 by C_XX ---------
START at: 19:04:50 | 18/11/2008
ON: Microsoft Windows [version 6.0.6001] ( Windows Vista )
Internet Explorer: 7.0.6001.18000
OPTION: Scan
EXECUTED FROM: C:\Program Files\Ad-remover\AD-Remover.bat
USER: thomas | PC: MR-ORDINATEUR
BOOT MODE: Normal
UAC is disable
DRIVE(S): C:\ D:\ E:\
~> Systemdrive: C:\
--------- [ PROCESSES ] ---------
\SystemRoot\System32\smss.exe [560]
C:\Windows\system32\csrss.exe [664]
C:\Windows\SYSTEM32\wininit.exe [716]
C:\Windows\system32\csrss.exe [728]
C:\Windows\system32\services.exe [764]
C:\Windows\system32\lsass.exe [776]
C:\Windows\system32\lsm.exe [784]
C:\Windows\SYSTEM32\winlogon.exe [828]
C:\Windows\system32\svchost.exe [968]
C:\Windows\system32\svchost.exe [1028]
C:\Windows\system32\Ati2evxx.exe [1164]
C:\Windows\System32\svchost.exe [1180]
C:\Windows\System32\svchost.exe [1248]
C:\Windows\system32\Ati2evxx.exe [1264]
C:\Windows\system32\svchost.exe [1280]
C:\Windows\system32\SLsvc.exe [1448]
C:\Windows\system32\svchost.exe [1512]
C:\Windows\system32\svchost.exe [1668]
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe [1840]
C:\Windows\system32\WLANExt.exe [1856]
C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [1872]
C:\Program Files\ATK Hotkey\ASLDRSrv.exe [1892]
C:\Program Files\ATKGFNEX\GFNEXSrv.exe [1916]
C:\Windows\system32\Dwm.exe [644]
C:\Windows\Explorer.EXE [964]
C:\Windows\System32\spoolsv.exe [1724]
C:\Windows\SYSTEM32\taskeng.exe [1976]
C:\Windows\system32\svchost.exe [1968]
C:\Program Files\ASUS\ASUS Live Update\ALU.exe [2116]
C:\Program Files\WebMediaViewer\qttask.exe [2240]
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2256]
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe [2264]
C:\Windows\RtHDVCpl.exe [2272]
C:\Program Files\ASUS\ATK Media\DMedia.exe [2288]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2308]
C:\Windows\ASScrPro.exe [2316]
C:\Program Files\ATK Hotkey\Hcontrol.exe [2552]
C:\Program Files\ATKOSD2\ATKOSD2.exe [2560]
C:\Program Files\Wireless Console 2\wcourier.exe [2568]
C:\Program Files\ASUS\Splendid\ACMON.exe [2576]
C:\Program Files\P4G\BatteryLife.exe [2584]
C:\Windows\System32\ACEngSvr.exe [2620]
C:\Windows\System32\mobsync.exe [2672]
C:\Windows\system32\ctfmon.exe [2864]
C:\Program Files\WebMediaViewer\qttaskm.exe [2876]
C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2920]
C:\Program Files\ATK Hotkey\ATKOSD.exe [2968]
C:\Program Files\iTunes\iTunesHelper.exe [2996]
C:\Program Files\Windows Sidebar\sidebar.exe [3056]
C:\Program Files\Windows Live\Messenger\msnmsgr.exe [3104]
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe [3112]
C:\Windows\ehome\ehtray.exe [3120]
C:\Program Files\Windows Media Player\wmpnscfg.exe [3128]
C:\Program Files\OLYMPUS\m-trip\Bin\m-tripLauncher.exe [3136]
C:\Windows\ehome\ehmsas.exe [3212]
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [3372]
C:\Program Files\Dassault Systemes\B11\intel_a\code\bin\CATSysDemon.exe [3416]
C:\Program Files\Bonjour\mDNSResponder.exe [3428]
C:\Windows\system32\svchost.exe [3456]
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [3488]
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [3612]
C:\Windows\System32\MrobeService.exe [3636]
C:\Windows\system32\svchost.exe [3684]
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [3740]
C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [3772]
C:\Windows\system32\svchost.exe [3804]
C:\Windows\System32\svchost.exe [3908]
C:\Windows\system32\SearchIndexer.exe [3972]
C:\Program Files\Windows Media Player\wmpnetwk.exe [1992]
C:\Program Files\iPod\bin\iPodService.exe [2376]
C:\Windows\system32\wbem\wmiprvse.exe [1560]
C:\Windows\system32\wbem\wmiprvse.exe [4320]
C:\Windows\system32\wbem\unsecapp.exe [4420]
C:\Windows\system32\conime.exe [4720]
C:\Program Files\Windows Live\Messenger\usnsvc.exe [5120]
C:\Windows\SYSTEM32\taskeng.exe [5260]
C:\Windows\system32\SearchProtocolHost.exe [5412]
C:\Windows\system32\SearchFilterHost.exe [5436]
C:\Windows\system32\SearchProtocolHost.exe [5480]
---------------------------- [~> 79]
+---------------------------------------------------------------------------+
+------------------------------- SERVICES FOUND
+---------------------------------------------------------------------------+
Found ! - "Boonty Games"
+---------------------------------------------------------------------------+
+------------------------------- REGISTRY ELEMENTS FOUND
+---------------------------------------------------------------------------+
"HKEY_LOCAL_MACHINE\Software\Boonty"
"HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Boonty Games"
"HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Boonty Games"
"HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Boonty Games"
"HKEY_CURRENT_USER\SOFTWARE\Boonty"
+---------------------------------------------------------------------------+
+------------------------------- FILES\FOLDERS FOUND
+---------------------------------------------------------------------------+
[18/11/2008 12:20|--a------] C:\Windows\PFRO.log
[26/12/2007 22:15|d--------] C:\ProgramData\BOONTY
+---------- Added scan ...
+-----[HKLM\...\Run]
Windows Defender REG_EXPAND_SZ %ProgramFiles%\Windows Defender\MSASCui.exe -hide
SMSERIAL REG_SZ C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
IAAnotif REG_SZ "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
RtHDVCpl REG_SZ RtHDVCpl.exe
ATKMEDIA REG_SZ C:\Program Files\ASUS\ATK Media\DMEDIA.EXE
JMB36X IDE Setup REG_SZ C:\Windows\JM\JMInsIDE.exe
SynTPEnh REG_SZ C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
ASUS Screen Saver Protector REG_SZ C:\Windows\ASScrPro.exe
ASUS Camera ScreenSaver REG_SZ C:\Windows\ASScrProlog.exe
TkBellExe REG_SZ "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
AppleSyncNotifier REG_SZ C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
QuickTime Task REG_SZ "C:\Program Files\QuickTime\QTTask.exe" -atboottime
iTunesHelper REG_SZ "C:\Program Files\iTunes\iTunesHelper.exe"
+-----[HKCU\...\Run]
Sidebar REG_SZ C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
MsnMsgr REG_SZ "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
swg REG_SZ C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
ROAD DATA REG_SZ "C:\ProgramData\Basefunkfunk.4wq9p"
ehTray.exe REG_SZ C:\Windows\ehome\ehTray.exe
ciwsowu REG_SZ c:\users\thomas\appdata\local\ciwsowu.exe ciwsowu
WMPNSCFG REG_SZ C:\Program Files\Windows Media Player\WMPNSCFG.exe
+-----[HKLM\...\Internet Explorer\MAIN]
Start Page : hxxp://fr.msn.com/
Start Page : hxxp://www.live.com/
+-----[HKCU\...\Internet Explorer\MAIN]
Start Page : hxxp://www.msn.fr/
Start Page : hxxp://www.deezer.com/\0http
+---------------------------------------------------------------------------+
+------------------------------- [ EOF - 141 lines ]
+---------------------------------------------------------------------------+
[ END at: 19:05:01 | 18/11/2008 ] - [ Time elapsed: 10.8 seconds ]
START at: 19:04:50 | 18/11/2008
ON: Microsoft Windows [version 6.0.6001] ( Windows Vista )
Internet Explorer: 7.0.6001.18000
OPTION: Scan
EXECUTED FROM: C:\Program Files\Ad-remover\AD-Remover.bat
USER: thomas | PC: MR-ORDINATEUR
BOOT MODE: Normal
UAC is disable
DRIVE(S): C:\ D:\ E:\
~> Systemdrive: C:\
--------- [ PROCESSES ] ---------
\SystemRoot\System32\smss.exe [560]
C:\Windows\system32\csrss.exe [664]
C:\Windows\SYSTEM32\wininit.exe [716]
C:\Windows\system32\csrss.exe [728]
C:\Windows\system32\services.exe [764]
C:\Windows\system32\lsass.exe [776]
C:\Windows\system32\lsm.exe [784]
C:\Windows\SYSTEM32\winlogon.exe [828]
C:\Windows\system32\svchost.exe [968]
C:\Windows\system32\svchost.exe [1028]
C:\Windows\system32\Ati2evxx.exe [1164]
C:\Windows\System32\svchost.exe [1180]
C:\Windows\System32\svchost.exe [1248]
C:\Windows\system32\Ati2evxx.exe [1264]
C:\Windows\system32\svchost.exe [1280]
C:\Windows\system32\SLsvc.exe [1448]
C:\Windows\system32\svchost.exe [1512]
C:\Windows\system32\svchost.exe [1668]
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe [1840]
C:\Windows\system32\WLANExt.exe [1856]
C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [1872]
C:\Program Files\ATK Hotkey\ASLDRSrv.exe [1892]
C:\Program Files\ATKGFNEX\GFNEXSrv.exe [1916]
C:\Windows\system32\Dwm.exe [644]
C:\Windows\Explorer.EXE [964]
C:\Windows\System32\spoolsv.exe [1724]
C:\Windows\SYSTEM32\taskeng.exe [1976]
C:\Windows\system32\svchost.exe [1968]
C:\Program Files\ASUS\ASUS Live Update\ALU.exe [2116]
C:\Program Files\WebMediaViewer\qttask.exe [2240]
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2256]
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe [2264]
C:\Windows\RtHDVCpl.exe [2272]
C:\Program Files\ASUS\ATK Media\DMedia.exe [2288]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2308]
C:\Windows\ASScrPro.exe [2316]
C:\Program Files\ATK Hotkey\Hcontrol.exe [2552]
C:\Program Files\ATKOSD2\ATKOSD2.exe [2560]
C:\Program Files\Wireless Console 2\wcourier.exe [2568]
C:\Program Files\ASUS\Splendid\ACMON.exe [2576]
C:\Program Files\P4G\BatteryLife.exe [2584]
C:\Windows\System32\ACEngSvr.exe [2620]
C:\Windows\System32\mobsync.exe [2672]
C:\Windows\system32\ctfmon.exe [2864]
C:\Program Files\WebMediaViewer\qttaskm.exe [2876]
C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2920]
C:\Program Files\ATK Hotkey\ATKOSD.exe [2968]
C:\Program Files\iTunes\iTunesHelper.exe [2996]
C:\Program Files\Windows Sidebar\sidebar.exe [3056]
C:\Program Files\Windows Live\Messenger\msnmsgr.exe [3104]
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe [3112]
C:\Windows\ehome\ehtray.exe [3120]
C:\Program Files\Windows Media Player\wmpnscfg.exe [3128]
C:\Program Files\OLYMPUS\m-trip\Bin\m-tripLauncher.exe [3136]
C:\Windows\ehome\ehmsas.exe [3212]
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [3372]
C:\Program Files\Dassault Systemes\B11\intel_a\code\bin\CATSysDemon.exe [3416]
C:\Program Files\Bonjour\mDNSResponder.exe [3428]
C:\Windows\system32\svchost.exe [3456]
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [3488]
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [3612]
C:\Windows\System32\MrobeService.exe [3636]
C:\Windows\system32\svchost.exe [3684]
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [3740]
C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [3772]
C:\Windows\system32\svchost.exe [3804]
C:\Windows\System32\svchost.exe [3908]
C:\Windows\system32\SearchIndexer.exe [3972]
C:\Program Files\Windows Media Player\wmpnetwk.exe [1992]
C:\Program Files\iPod\bin\iPodService.exe [2376]
C:\Windows\system32\wbem\wmiprvse.exe [1560]
C:\Windows\system32\wbem\wmiprvse.exe [4320]
C:\Windows\system32\wbem\unsecapp.exe [4420]
C:\Windows\system32\conime.exe [4720]
C:\Program Files\Windows Live\Messenger\usnsvc.exe [5120]
C:\Windows\SYSTEM32\taskeng.exe [5260]
C:\Windows\system32\SearchProtocolHost.exe [5412]
C:\Windows\system32\SearchFilterHost.exe [5436]
C:\Windows\system32\SearchProtocolHost.exe [5480]
---------------------------- [~> 79]
+---------------------------------------------------------------------------+
+------------------------------- SERVICES FOUND
+---------------------------------------------------------------------------+
Found ! - "Boonty Games"
+---------------------------------------------------------------------------+
+------------------------------- REGISTRY ELEMENTS FOUND
+---------------------------------------------------------------------------+
"HKEY_LOCAL_MACHINE\Software\Boonty"
"HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Boonty Games"
"HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Boonty Games"
"HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Boonty Games"
"HKEY_CURRENT_USER\SOFTWARE\Boonty"
+---------------------------------------------------------------------------+
+------------------------------- FILES\FOLDERS FOUND
+---------------------------------------------------------------------------+
[18/11/2008 12:20|--a------] C:\Windows\PFRO.log
[26/12/2007 22:15|d--------] C:\ProgramData\BOONTY
+---------- Added scan ...
+-----[HKLM\...\Run]
Windows Defender REG_EXPAND_SZ %ProgramFiles%\Windows Defender\MSASCui.exe -hide
SMSERIAL REG_SZ C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
IAAnotif REG_SZ "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
RtHDVCpl REG_SZ RtHDVCpl.exe
ATKMEDIA REG_SZ C:\Program Files\ASUS\ATK Media\DMEDIA.EXE
JMB36X IDE Setup REG_SZ C:\Windows\JM\JMInsIDE.exe
SynTPEnh REG_SZ C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
ASUS Screen Saver Protector REG_SZ C:\Windows\ASScrPro.exe
ASUS Camera ScreenSaver REG_SZ C:\Windows\ASScrProlog.exe
TkBellExe REG_SZ "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
AppleSyncNotifier REG_SZ C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
QuickTime Task REG_SZ "C:\Program Files\QuickTime\QTTask.exe" -atboottime
iTunesHelper REG_SZ "C:\Program Files\iTunes\iTunesHelper.exe"
+-----[HKCU\...\Run]
Sidebar REG_SZ C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
MsnMsgr REG_SZ "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
swg REG_SZ C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
ROAD DATA REG_SZ "C:\ProgramData\Basefunkfunk.4wq9p"
ehTray.exe REG_SZ C:\Windows\ehome\ehTray.exe
ciwsowu REG_SZ c:\users\thomas\appdata\local\ciwsowu.exe ciwsowu
WMPNSCFG REG_SZ C:\Program Files\Windows Media Player\WMPNSCFG.exe
+-----[HKLM\...\Internet Explorer\MAIN]
Start Page : hxxp://fr.msn.com/
Start Page : hxxp://www.live.com/
+-----[HKCU\...\Internet Explorer\MAIN]
Start Page : hxxp://www.msn.fr/
Start Page : hxxp://www.deezer.com/\0http
+---------------------------------------------------------------------------+
+------------------------------- [ EOF - 141 lines ]
+---------------------------------------------------------------------------+
[ END at: 19:05:01 | 18/11/2008 ] - [ Time elapsed: 10.8 seconds ]
/!\ Déconnecte-toi et ferme toutes applications en cours /!\
- Clique droit sur AD-Remover et choisis Exécuter en tant qu'administrateur : au menu principal choisi l'option "B".
--> Le programme va travailler...
- Poste le rapport qui apparaît à la fin.
(Le rapport est sauvegardé aussi sous C:\Ad-report.log)
/!\ Si le Bureau ne réapparaît pas, presse Ctrl + Alt + Suppr, Onglet "Fichier", "Nouvelle tâche", tape explorer.exe et valide) /!\
- Clique droit sur AD-Remover et choisis Exécuter en tant qu'administrateur : au menu principal choisi l'option "B".
--> Le programme va travailler...
- Poste le rapport qui apparaît à la fin.
(Le rapport est sauvegardé aussi sous C:\Ad-report.log)
/!\ Si le Bureau ne réapparaît pas, presse Ctrl + Alt + Suppr, Onglet "Fichier", "Nouvelle tâche", tape explorer.exe et valide) /!\
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
F --------- Logfile of AD-Remover 1.0.3.3 by C_XX ---------
START at: 19:24:31 | 18/11/2008
ON: Microsoft Windows [version 6.0.6001] ( Windows Vista )
Internet Explorer: 7.0.6001.18000
OPTION: Clean
EXECUTED FROM: C:\Program Files\Ad-remover\AD-Remover.bat
USER: thomas | PC: MR-ORDINATEUR
BOOT MODE: Normal
UAC is disable
DRIVE(S): C:\ D:\ E:\ F:\
~> Systemdrive: C:\
--------- [ PROCESSES ] ---------
\SystemRoot\System32\smss.exe [560]
C:\Windows\system32\csrss.exe [664]
C:\Windows\SYSTEM32\wininit.exe [716]
C:\Windows\system32\csrss.exe [728]
C:\Windows\system32\services.exe [764]
C:\Windows\system32\lsass.exe [776]
C:\Windows\system32\lsm.exe [784]
C:\Windows\SYSTEM32\winlogon.exe [828]
C:\Windows\system32\svchost.exe [968]
C:\Windows\system32\svchost.exe [1028]
C:\Windows\system32\Ati2evxx.exe [1164]
C:\Windows\System32\svchost.exe [1180]
C:\Windows\System32\svchost.exe [1248]
C:\Windows\system32\Ati2evxx.exe [1264]
C:\Windows\system32\svchost.exe [1280]
C:\Windows\system32\SLsvc.exe [1448]
C:\Windows\system32\svchost.exe [1512]
C:\Windows\system32\svchost.exe [1668]
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe [1840]
C:\Windows\system32\WLANExt.exe [1856]
C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [1872]
C:\Program Files\ATK Hotkey\ASLDRSrv.exe [1892]
C:\Program Files\ATKGFNEX\GFNEXSrv.exe [1916]
C:\Windows\system32\Dwm.exe [644]
C:\Windows\Explorer.EXE [964]
C:\Windows\System32\spoolsv.exe [1724]
C:\Windows\SYSTEM32\taskeng.exe [1976]
C:\Windows\system32\svchost.exe [1968]
C:\Program Files\ASUS\ASUS Live Update\ALU.exe [2116]
C:\Program Files\WebMediaViewer\qttask.exe [2240]
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2256]
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe [2264]
C:\Windows\RtHDVCpl.exe [2272]
C:\Program Files\ASUS\ATK Media\DMedia.exe [2288]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2308]
C:\Windows\ASScrPro.exe [2316]
C:\Program Files\ATK Hotkey\Hcontrol.exe [2552]
C:\Program Files\ATKOSD2\ATKOSD2.exe [2560]
C:\Program Files\Wireless Console 2\wcourier.exe [2568]
C:\Program Files\ASUS\Splendid\ACMON.exe [2576]
C:\Program Files\P4G\BatteryLife.exe [2584]
C:\Windows\System32\ACEngSvr.exe [2620]
C:\Windows\system32\ctfmon.exe [2864]
C:\Program Files\WebMediaViewer\qttaskm.exe [2876]
C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2920]
C:\Program Files\ATK Hotkey\ATKOSD.exe [2968]
C:\Program Files\iTunes\iTunesHelper.exe [2996]
C:\Program Files\Windows Sidebar\sidebar.exe [3056]
C:\Program Files\Windows Live\Messenger\msnmsgr.exe [3104]
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe [3112]
C:\Windows\ehome\ehtray.exe [3120]
C:\Program Files\Windows Media Player\wmpnscfg.exe [3128]
C:\Program Files\OLYMPUS\m-trip\Bin\m-tripLauncher.exe [3136]
C:\Windows\ehome\ehmsas.exe [3212]
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [3372]
C:\Program Files\Dassault Systemes\B11\intel_a\code\bin\CATSysDemon.exe [3416]
C:\Program Files\Bonjour\mDNSResponder.exe [3428]
C:\Windows\system32\svchost.exe [3456]
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [3488]
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [3612]
C:\Windows\System32\MrobeService.exe [3636]
C:\Windows\system32\svchost.exe [3684]
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [3740]
C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [3772]
C:\Windows\system32\svchost.exe [3804]
C:\Windows\System32\svchost.exe [3908]
C:\Windows\system32\SearchIndexer.exe [3972]
C:\Program Files\Windows Media Player\wmpnetwk.exe [1992]
C:\Program Files\iPod\bin\iPodService.exe [2376]
C:\Windows\system32\wbem\wmiprvse.exe [4320]
C:\Windows\system32\wbem\unsecapp.exe [4420]
C:\Windows\system32\conime.exe [4720]
C:\Program Files\Windows Live\Messenger\usnsvc.exe [5120]
C:\Windows\SYSTEM32\taskeng.exe [5260]
C:\Windows\system32\WUDFHost.exe [2508]
---------------------------- [~> 75]
+---------------------------------------------------------------------------+
+------------------------------- SERVICES DELETED
+---------------------------------------------------------------------------+
Deleted successfully ! - "Boonty Games"
+---------------------------------------------------------------------------+
+------------------------------- REGISTRY ELEMENTS DELETED
+---------------------------------------------------------------------------+
"HKEY_LOCAL_MACHINE\Software\Boonty"
"HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Boonty Games"
"HKEY_CURRENT_USER\SOFTWARE\Boonty"
+---------------------------------------------------------------------------+
+------------------------------- FILES\FOLDERS DELETED
+---------------------------------------------------------------------------+
[18/11/2008 12:20|--a------] C:\Windows\PFRO.log
[26/12/2007 22:15|d--------] C:\ProgramData\BOONTY
(!) ---- Temp files deleted.
(!) ---- Recycle bin emptied in all drives.
+---------- Added scan ...
+-----[HKLM\...\Run]
Windows Defender REG_EXPAND_SZ %ProgramFiles%\Windows Defender\MSASCui.exe -hide
SMSERIAL REG_SZ C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
IAAnotif REG_SZ "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
RtHDVCpl REG_SZ RtHDVCpl.exe
ATKMEDIA REG_SZ C:\Program Files\ASUS\ATK Media\DMEDIA.EXE
JMB36X IDE Setup REG_SZ C:\Windows\JM\JMInsIDE.exe
SynTPEnh REG_SZ C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
ASUS Screen Saver Protector REG_SZ C:\Windows\ASScrPro.exe
ASUS Camera ScreenSaver REG_SZ C:\Windows\ASScrProlog.exe
TkBellExe REG_SZ "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
AppleSyncNotifier REG_SZ C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
QuickTime Task REG_SZ "C:\Program Files\QuickTime\QTTask.exe" -atboottime
iTunesHelper REG_SZ "C:\Program Files\iTunes\iTunesHelper.exe"
+-----[HKCU\...\Run]
Sidebar REG_SZ C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
MsnMsgr REG_SZ "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
swg REG_SZ C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
ROAD DATA REG_SZ "C:\ProgramData\Basefunkfunk.4wq9p"
ehTray.exe REG_SZ C:\Windows\ehome\ehTray.exe
ciwsowu REG_SZ c:\users\thomas\appdata\local\ciwsowu.exe ciwsowu
WMPNSCFG REG_SZ C:\Program Files\Windows Media Player\WMPNSCFG.exe
+-----[HKLM\...\Internet Explorer\MAIN]
Start Page : hxxp://fr.msn.com/
Start Page : hxxp://www.live.com/
+-----[HKCU\...\Internet Explorer\MAIN]
Start Page : hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Start Page : hxxp://www.deezer.com/\0http
+---------------------------------------------------------------------------+
+------------------------------- [ EOF - 137 lines ]
+---------------------------------------------------------------------------+
[ END at: 19:27:15 | 18/11/2008 ] - [ Time elapsed: 2 minutes, 43 seconds ]
START at: 19:24:31 | 18/11/2008
ON: Microsoft Windows [version 6.0.6001] ( Windows Vista )
Internet Explorer: 7.0.6001.18000
OPTION: Clean
EXECUTED FROM: C:\Program Files\Ad-remover\AD-Remover.bat
USER: thomas | PC: MR-ORDINATEUR
BOOT MODE: Normal
UAC is disable
DRIVE(S): C:\ D:\ E:\ F:\
~> Systemdrive: C:\
--------- [ PROCESSES ] ---------
\SystemRoot\System32\smss.exe [560]
C:\Windows\system32\csrss.exe [664]
C:\Windows\SYSTEM32\wininit.exe [716]
C:\Windows\system32\csrss.exe [728]
C:\Windows\system32\services.exe [764]
C:\Windows\system32\lsass.exe [776]
C:\Windows\system32\lsm.exe [784]
C:\Windows\SYSTEM32\winlogon.exe [828]
C:\Windows\system32\svchost.exe [968]
C:\Windows\system32\svchost.exe [1028]
C:\Windows\system32\Ati2evxx.exe [1164]
C:\Windows\System32\svchost.exe [1180]
C:\Windows\System32\svchost.exe [1248]
C:\Windows\system32\Ati2evxx.exe [1264]
C:\Windows\system32\svchost.exe [1280]
C:\Windows\system32\SLsvc.exe [1448]
C:\Windows\system32\svchost.exe [1512]
C:\Windows\system32\svchost.exe [1668]
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe [1840]
C:\Windows\system32\WLANExt.exe [1856]
C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [1872]
C:\Program Files\ATK Hotkey\ASLDRSrv.exe [1892]
C:\Program Files\ATKGFNEX\GFNEXSrv.exe [1916]
C:\Windows\system32\Dwm.exe [644]
C:\Windows\Explorer.EXE [964]
C:\Windows\System32\spoolsv.exe [1724]
C:\Windows\SYSTEM32\taskeng.exe [1976]
C:\Windows\system32\svchost.exe [1968]
C:\Program Files\ASUS\ASUS Live Update\ALU.exe [2116]
C:\Program Files\WebMediaViewer\qttask.exe [2240]
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2256]
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe [2264]
C:\Windows\RtHDVCpl.exe [2272]
C:\Program Files\ASUS\ATK Media\DMedia.exe [2288]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2308]
C:\Windows\ASScrPro.exe [2316]
C:\Program Files\ATK Hotkey\Hcontrol.exe [2552]
C:\Program Files\ATKOSD2\ATKOSD2.exe [2560]
C:\Program Files\Wireless Console 2\wcourier.exe [2568]
C:\Program Files\ASUS\Splendid\ACMON.exe [2576]
C:\Program Files\P4G\BatteryLife.exe [2584]
C:\Windows\System32\ACEngSvr.exe [2620]
C:\Windows\system32\ctfmon.exe [2864]
C:\Program Files\WebMediaViewer\qttaskm.exe [2876]
C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2920]
C:\Program Files\ATK Hotkey\ATKOSD.exe [2968]
C:\Program Files\iTunes\iTunesHelper.exe [2996]
C:\Program Files\Windows Sidebar\sidebar.exe [3056]
C:\Program Files\Windows Live\Messenger\msnmsgr.exe [3104]
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe [3112]
C:\Windows\ehome\ehtray.exe [3120]
C:\Program Files\Windows Media Player\wmpnscfg.exe [3128]
C:\Program Files\OLYMPUS\m-trip\Bin\m-tripLauncher.exe [3136]
C:\Windows\ehome\ehmsas.exe [3212]
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [3372]
C:\Program Files\Dassault Systemes\B11\intel_a\code\bin\CATSysDemon.exe [3416]
C:\Program Files\Bonjour\mDNSResponder.exe [3428]
C:\Windows\system32\svchost.exe [3456]
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [3488]
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [3612]
C:\Windows\System32\MrobeService.exe [3636]
C:\Windows\system32\svchost.exe [3684]
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [3740]
C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [3772]
C:\Windows\system32\svchost.exe [3804]
C:\Windows\System32\svchost.exe [3908]
C:\Windows\system32\SearchIndexer.exe [3972]
C:\Program Files\Windows Media Player\wmpnetwk.exe [1992]
C:\Program Files\iPod\bin\iPodService.exe [2376]
C:\Windows\system32\wbem\wmiprvse.exe [4320]
C:\Windows\system32\wbem\unsecapp.exe [4420]
C:\Windows\system32\conime.exe [4720]
C:\Program Files\Windows Live\Messenger\usnsvc.exe [5120]
C:\Windows\SYSTEM32\taskeng.exe [5260]
C:\Windows\system32\WUDFHost.exe [2508]
---------------------------- [~> 75]
+---------------------------------------------------------------------------+
+------------------------------- SERVICES DELETED
+---------------------------------------------------------------------------+
Deleted successfully ! - "Boonty Games"
+---------------------------------------------------------------------------+
+------------------------------- REGISTRY ELEMENTS DELETED
+---------------------------------------------------------------------------+
"HKEY_LOCAL_MACHINE\Software\Boonty"
"HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Boonty Games"
"HKEY_CURRENT_USER\SOFTWARE\Boonty"
+---------------------------------------------------------------------------+
+------------------------------- FILES\FOLDERS DELETED
+---------------------------------------------------------------------------+
[18/11/2008 12:20|--a------] C:\Windows\PFRO.log
[26/12/2007 22:15|d--------] C:\ProgramData\BOONTY
(!) ---- Temp files deleted.
(!) ---- Recycle bin emptied in all drives.
+---------- Added scan ...
+-----[HKLM\...\Run]
Windows Defender REG_EXPAND_SZ %ProgramFiles%\Windows Defender\MSASCui.exe -hide
SMSERIAL REG_SZ C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
IAAnotif REG_SZ "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
RtHDVCpl REG_SZ RtHDVCpl.exe
ATKMEDIA REG_SZ C:\Program Files\ASUS\ATK Media\DMEDIA.EXE
JMB36X IDE Setup REG_SZ C:\Windows\JM\JMInsIDE.exe
SynTPEnh REG_SZ C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
ASUS Screen Saver Protector REG_SZ C:\Windows\ASScrPro.exe
ASUS Camera ScreenSaver REG_SZ C:\Windows\ASScrProlog.exe
TkBellExe REG_SZ "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
AppleSyncNotifier REG_SZ C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
QuickTime Task REG_SZ "C:\Program Files\QuickTime\QTTask.exe" -atboottime
iTunesHelper REG_SZ "C:\Program Files\iTunes\iTunesHelper.exe"
+-----[HKCU\...\Run]
Sidebar REG_SZ C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
MsnMsgr REG_SZ "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
swg REG_SZ C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
ROAD DATA REG_SZ "C:\ProgramData\Basefunkfunk.4wq9p"
ehTray.exe REG_SZ C:\Windows\ehome\ehTray.exe
ciwsowu REG_SZ c:\users\thomas\appdata\local\ciwsowu.exe ciwsowu
WMPNSCFG REG_SZ C:\Program Files\Windows Media Player\WMPNSCFG.exe
+-----[HKLM\...\Internet Explorer\MAIN]
Start Page : hxxp://fr.msn.com/
Start Page : hxxp://www.live.com/
+-----[HKCU\...\Internet Explorer\MAIN]
Start Page : hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Start Page : hxxp://www.deezer.com/\0http
+---------------------------------------------------------------------------+
+------------------------------- [ EOF - 137 lines ]
+---------------------------------------------------------------------------+
[ END at: 19:27:15 | 18/11/2008 ] - [ Time elapsed: 2 minutes, 43 seconds ]
Non pk je n'ai pas acheté norton ?? trop cher mdr, ok je le désinstalle et ? paske la le virus est encore la...
"AV: Norton Internet Security (outdated)
FW: Norton Internet Security
AS: Avira AntiVir PersonalEdition (outdated)
AS: Windows Defender (disabled)
AS: Norton Internet Security (outdated)"
---> Donc on va supprimer correctement Norton et installer Antivir.
Pour supprimer Norton :
ftp://ftp.symantec.com/public/francais/removal_tools/Norton_Removal_Tool.exe
Antivir :
https://www.mediafire.com/?sharekey=1ab12433e284b403d2db6fb9a8902bda
FW: Norton Internet Security
AS: Avira AntiVir PersonalEdition (outdated)
AS: Windows Defender (disabled)
AS: Norton Internet Security (outdated)"
---> Donc on va supprimer correctement Norton et installer Antivir.
Pour supprimer Norton :
ftp://ftp.symantec.com/public/francais/removal_tools/Norton_Removal_Tool.exe
Antivir :
https://www.mediafire.com/?sharekey=1ab12433e284b403d2db6fb9a8902bda
antivir m'affiche une page je n'ai rien lancé j'ai fait une mise a jour et il me dit un virus ou un programme indésirable a été trouvé sur votre ordinateur c:\Program Files\WebMediaViewer\qttask.exe
je fais quoi ? quarantaine supprimer ? renommer refuser l'accès ? ignorer ?
je fais quoi ? quarantaine supprimer ? renommer refuser l'accès ? ignorer ?
---> Désinstalle AD-Remover.
---> Supprime le dossier RSIT situé dans C:\
---> Refais un scan RSIT et poste les rapports.
---> Supprime le dossier RSIT situé dans C:\
---> Refais un scan RSIT et poste les rapports.
oui c a d ? c quoi un scan RSIT ? c'est ac quel logiciel ? et la page antivir qui s'est ouverte j'en fait quoi je met en quarantaine je supprime je refuse l'accès, j'ignore ? dis moi sil te plais il m'a dit aussi contient le cheval de troie TRcrypt.ULPM.Gen bref
non je n'ai pas commencé j'ai juste fais la mise a jour et il reste encore 10 minutes de mise a jour j'attends pour lancer l'analyse ? ou non ?
il m'annonce 1900 minutes pour la mise a jour !! je dois laisser mon pc tourner pdt 1900 minutes ? je suis en cité U on est 1000 sur un seul serveur sa rame trop sa fait 31H !! sa va ptetre pas etre gérable si ?