Publicités intempestives !!!!

Fermé
Steph - 15 déc. 2008 à 18:54
 Steph - 15 déc. 2008 à 21:28
Bonjour,

J'ai des tas de fenetres publicitaires qui s'ouvrent meme quand internet explorer est pas ouvert...Est ce que quelqu'un peut m'aider ? merci :)
A voir également:

4 réponses

toto666 Messages postés 325 Date d'inscription jeudi 20 novembre 2008 Statut Membre Dernière intervention 27 mai 2009 14
15 déc. 2008 à 18:56
1)Navilog:


Télécharge sur ton bureau http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe]Navil­­­­og1.exe


1)double-clic dessus pour l'installer et le lancer
Quand il sera installé
Désactive tes logiciels de sécurité (ex:avast)
2)Taper « F »
3) Appuyer sur une touche jusqu'à arriver aux options
4) Choisit « option 1 » ( = tape 1 )
ne pas utiliser les autres sans avis , il peut y avoir des processus légitimes
5)un rapport : fixnavi.txt dans C:\
6) le copier/coller dans la réponse

2)Télécharger et installer Malwarebytes anti-malware


http://www.malwarebytes.org/mbam/program/mbam-setup.exe

1)Double-clic « mbam-setup »,l'installation se lance (installer sans rien changer).
2)Lance le programme,va dans l'onlet « mise à jour » puis clique « recherche de mise à jour ».
3)Va dans l'onglet « recherche » puis cocher « Exécuter un exament complet » >>clique « rechercher » puis lancer l'examen.
4)A la fin du scan ,si il y a des infections clique « afficher résultat ».
5)fermer toutes les autres applications.
6)Vérifier si tout est coché et clic « Supprimer la sélection ».

7)Un rapport s'ouvre copier-coller dans la réponse
Suit cette procédure merci
0
le scan est pas terminer avec navilog, c normal?
0
Search Navipromo version 3.7.0 commencé le 15/12/2008 à 18:59:47,88

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

Outil exécuté depuis C:\Program Files\navilog1

Mise à jour le 10.12.2008 à 21h00 par IL-MAFIOSO

Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Pentium(R) Dual CPU E2140 @ 1.60GHz )
BIOS : BIOS Date: 11/14/07 17:05:16 Ver: 08.00.13
USER : christjoce ( Administrator )
BOOT : Normal boot

Antivirus : Norton Internet Security 15.0.0.60 (Activated)
Firewall : Norton Internet Security 15.0.0.60 (Activated)

C:\ (Local Disk) - NTFS - Total:222 Go (Free:165 Go)
D:\ (Local Disk) - FAT32 - Total:9 Go (Free:9 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)


Recherche executé en mode normal

*** Recherche Programmes installés ***


*** Recherche dossiers dans "C:\Windows" ***


*** Recherche dossiers dans "C:\Program Files" ***

...\InternetGameBox trouvé !
...\MessengerSkinner trouvé !

*** Recherche dossiers dans "c:\progra~2\micros~1\windows\startm~1\programs" ***

...\InternetGameBox trouvé !
...\MessengerSkinner trouvé !

*** Recherche dossiers dans "c:\progra~2\micros~1\windows\startm~1" ***


*** Recherche dossiers dans "C:\ProgramData" ***


*** Recherche dossiers dans "c:\users\christ~1\appdata\roaming\micros~1\windows\startm~1\programs" ***


*** Recherche dossiers dans "C:\Users\christjoce\AppData\Local\virtualstore\Program Files" ***

...\InternetGameBox trouvé !

*** Recherche dossiers dans "C:\Users\christjoce\AppData\Roaming" ***

...\MessengerSkinner trouvé !

*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net



*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!

* Recherche dans "C:\Windows\system32" *

* Recherche dans "C:\Users\christjoce\AppData\Local\Microsoft" *

* Recherche dans "C:\Users\christjoce\AppData\Local\virtualstore\windows\system32" *

* Recherche dans "C:\Users\christjoce\AppData\Local" *



*** Recherche fichiers ***


c:\users\public\desktop\InternetGameBox.lnk trouvé !

*** Recherche clés spécifiques dans le Registre ***
!! Les clés trouvées ne sont pas forcément infectées !!

HKEY_CURRENT_USER\Software\Lanconfig trouvé !
HKEY_CURRENT_USER\Software\mc trouvé !

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"mquukww"="\"c:\\users\\christjoce\\appdata\\local\\mquukww.exe\" mquukww"


*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche nouveaux fichiers Instant Access :


2)Recherche Heuristique :

* Dans "C:\Windows\system32" :


* Dans "C:\Users\christjoce\AppData\Local\Microsoft" :


* Dans "C:\Users\christjoce\AppData\Local\virtualstore\windows\system32" :


* Dans "C:\Users\christjoce\AppData\Local" :

mquukww.dat trouvé !
mquukww_nav.dat trouvé !
mquukww_navps.dat trouvé !

3)Recherche Certificats :

Certificat Egroup trouvé !
Certificat Electronic-Group trouvé !
Certificat Montorgueil absent !
Certificat OOO-Favorit trouvé !
Certificat Sunny-Day-Design-Ltd absent !

4)Recherche autres dossiers et fichiers connus :



*** Analyse terminée le 15/12/2008 à 19:36:43,85 ***
0
Malwarebytes' Anti-Malware 1.31
Version de la base de données: 1501
Windows 6.0.6001 Service Pack 1

15/12/2008 20:55:25
mbam-log-2008-12-15 (20-55-20).txt

Type de recherche: Examen complet (C:\|D:\|E:\|F:\|G:\|H:\|I:\|)
Eléments examinés: 205548
Temps écoulé: 1 hour(s), 45 minute(s), 1 second(s)

Processus mémoire infecté(s): 1
Module(s) mémoire infecté(s): 14
Clé(s) du Registre infectée(s): 5
Valeur(s) du Registre infectée(s): 1
Elément(s) de données du Registre infecté(s): 1
Dossier(s) infecté(s): 16
Fichier(s) infecté(s): 76

Processus mémoire infecté(s):
C:\Program Files\BitDownload\BitDownload.exe (Trojan.Lop) -> No action taken.

Module(s) mémoire infecté(s):
C:\Program Files\BitDownload\player.dll (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\rtl70.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\Units.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\vcl70.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\vclshlctrls70.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\vclx70.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\winskind7r.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\CDBurningPlugin.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\CDRipper.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\ClosestSearch.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\Notification.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\PeerInfoSearch.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\Search.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\VirtualTracker.bpl (Trojan.Lop) -> No action taken.

Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\internetgamebox (Adware.EGDAccess) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bitdownload (Trojan.Lop) -> No action taken.
HKEY_CLASSES_ROOT\BitDownload (Trojan.Lop) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{94656e59-00b0-8f47-5b17-c40f38217ce5} (Adware.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{94656e59-00b0-8f47-5b17-c40f38217ce5} (Adware.BHO) -> No action taken.

Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\bitdownload (Trojan.Lop) -> No action taken.

Elément(s) de données du Registre infecté(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\Start Page (Hijack.Homepage) -> Bad: (http://www.iesearch.com/) Good: (https://www.google.com/?gws_rd=ssl -> No action taken.

Dossier(s) infecté(s):
C:\Program Files\MessengerSkinner (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\download (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\resources (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\InternetGameBox (Adware.EGDAccess) -> No action taken.
C:\Program Files\InternetGameBox\ressources (Adware.EGDAccess) -> No action taken.
C:\Program Files\InternetGameBox\ressources\favoris (Adware.EGDAccess) -> No action taken.
C:\Program Files\InternetGameBox\skins (Adware.EGDAccess) -> No action taken.
C:\Program Files\BitDownload (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\Lang (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\log (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\Media (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\rip (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\Skin (Trojan.Lop) -> No action taken.
C:\Users\christjoce\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitDownload (Trojan.Lop) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitDownload (Trojan.Lop) -> No action taken.

Fichier(s) infecté(s):
C:\Users\christjoce\Local Settings\Application Data\mquukww_navps.dat (Adware.Navipromo.H) -> No action taken.
C:\Users\christjoce\Local Settings\Application Data\mquukww_nav.dat (Adware.Navipromo.H) -> No action taken.
C:\Users\christjoce\Local Settings\Application Data\mquukww.dat (Adware.Navipromo.H) -> No action taken.
C:\Program Files\MessengerSkinner\MessengerSkinnerDll.dll (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\uninst.exe (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\download\defaultPack.cab (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\resources\appconfig.xml (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\resources\btn.rgn (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\resources\btnBnr.rgn (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\resources\btnIn.rgn (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\resources\btnInNormal.bmp (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\resources\btnInOver.bmp (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\resources\btnNormal.bmp (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\resources\btnNormal.gif (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\resources\btnNormalBnr.bmp (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\resources\btnNormalBnr.gif (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\resources\btnOver.bmp (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\resources\btnOver.gif (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\resources\btnOverBnr.bmp (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\resources\btnOverBnr.gif (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\MessengerSkinner\resources\languages_v2.xml (Rogue.MessengerSkinner) -> No action taken.
C:\Program Files\InternetGameBox\InternetGameBox.exe (Adware.EGDAccess) -> No action taken.
C:\Program Files\InternetGameBox\language (Adware.EGDAccess) -> No action taken.
C:\Program Files\InternetGameBox\uninst.exe (Adware.EGDAccess) -> No action taken.
C:\Program Files\InternetGameBox\ressources\AttenteOff.html (Adware.EGDAccess) -> No action taken.
C:\Program Files\InternetGameBox\ressources\AttenteOn.html (Adware.EGDAccess) -> No action taken.
C:\Program Files\InternetGameBox\ressources\configv2_en.xml (Adware.EGDAccess) -> No action taken.
C:\Program Files\InternetGameBox\ressources\configv2_es.xml (Adware.EGDAccess) -> No action taken.
C:\Program Files\InternetGameBox\ressources\configv2_fr.xml (Adware.EGDAccess) -> No action taken.
C:\Program Files\InternetGameBox\ressources\favoris\defaultv2.swf (Adware.EGDAccess) -> No action taken.
C:\Program Files\InternetGameBox\skins\skinv2.skn (Adware.EGDAccess) -> No action taken.
C:\Program Files\BitDownload\BitDownload.exe (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\BitDownload.ico (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\EndProg.exe (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\iphox_downloader_p.exe (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\player.dll (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\RegExt.exe (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\rtl70.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\set.ini (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\tcpip_patcher.sys (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\Uninstall.exe (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\Units.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\vcl70.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\vclshlctrls70.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\vclx70.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\VersionChecker.exe (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\WinSkinD7R.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\Lang\English.lng (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\Lang\Russian.lng (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\log\BitDownload.log (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\Media\FileComplete.wav (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\CDBurningPlugin.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\CDRipper.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\ClosestSearch.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\Notification.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\PeerInfoSearch.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\Search.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\VirtualTracker.bpl (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\rip\akrip32.dll (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\rip\cdcache.dll (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\rip\lame_enc.dll (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\rip\Rip.dll (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\rip\vorb_enc.dll (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\plug-ins\rip\xtenc.dll (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\Skin\Aqua.skn (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\Skin\Default.skn (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\Skin\Desert.skn (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\Skin\Forest.skn (Trojan.Lop) -> No action taken.
C:\Program Files\BitDownload\Skin\Sea.skn (Trojan.Lop) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitDownload\BitDownload Downloads.lnk (Trojan.Lop) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitDownload\BitDownload Uninstall.lnk (Trojan.Lop) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitDownload\BitDownload.lnk (Trojan.Lop) -> No action taken.
C:\Users\christjoce\Desktop\BitDownload.lnk (Trojan.Lop) -> No action taken.
C:\Program Files\EoRezo (Rogue.Eorezo) -> No action taken.
C:\Users\Public\Desktop\InternetGameBox.lnk (Adware.EGDAccess) -> No action taken.
C:\Windows\System32\utbwmnixvefvhxv.dll (Adware.BHO) -> No action taken.
0
toto666 Messages postés 325 Date d'inscription jeudi 20 novembre 2008 Statut Membre Dernière intervention 27 mai 2009 14
15 déc. 2008 à 19:44
I)Redémarre ton PC en mode sans échec !

Solution 1 avec la touche F8 (ou parfois F5 ou f2 ou f4)

- Au démarrage de ton ordinateur presser successivement (intervalle d'une seconde) la touche F8 jusqu'à arriver au menu de démarrage avancé permettant de sélectionner le Mode sans échec.

- Vous naviguez dans le menu jusqu'à l'option "mode sans échec" grâce aux flèches de direction.

- Validez avec la touche Entrée.

Note : Sur certains PC , c'est la touche F5 puis F8 qu'il convient d'utiliser(vois f2 ou f4)


II)lance navilog


1)Cette fois choisis l'option 2 (tape 2)
2)Copier-coller le rapport et dit moi si toujours des problèmes !

Puis poste moi ton rapport malware'sbytes...stp
0
toto666 Messages postés 325 Date d'inscription jeudi 20 novembre 2008 Statut Membre Dernière intervention 27 mai 2009 14
15 déc. 2008 à 21:05
Je vois dans ton log de malware's bytes que tu n'a pas supprimé les infections trouvés supprimes les stp!
0
Malwarebytes' Anti-Malware 1.31
Version de la base de données: 1501
Windows 6.0.6001 Service Pack 1

15/12/2008 21:06:11
mbam-log-2008-12-15 (21-06-11).txt

Type de recherche: Examen complet (C:\|D:\|E:\|F:\|G:\|H:\|I:\|)
Eléments examinés: 205548
Temps écoulé: 1 hour(s), 45 minute(s), 1 second(s)

Processus mémoire infecté(s): 1
Module(s) mémoire infecté(s): 14
Clé(s) du Registre infectée(s): 5
Valeur(s) du Registre infectée(s): 1
Elément(s) de données du Registre infecté(s): 1
Dossier(s) infecté(s): 16
Fichier(s) infecté(s): 76

Processus mémoire infecté(s):
C:\Program Files\BitDownload\BitDownload.exe (Trojan.Lop) -> Unloaded process successfully.

Module(s) mémoire infecté(s):
C:\Program Files\BitDownload\player.dll (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\rtl70.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\Units.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\vcl70.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\vclshlctrls70.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\vclx70.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\winskind7r.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\plug-ins\CDBurningPlugin.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\plug-ins\CDRipper.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\plug-ins\ClosestSearch.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\plug-ins\Notification.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\plug-ins\PeerInfoSearch.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\plug-ins\Search.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\plug-ins\VirtualTracker.bpl (Trojan.Lop) -> Delete on reboot.

Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\internetgamebox (Adware.EGDAccess) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bitdownload (Trojan.Lop) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\BitDownload (Trojan.Lop) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{94656e59-00b0-8f47-5b17-c40f38217ce5} (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{94656e59-00b0-8f47-5b17-c40f38217ce5} (Adware.BHO) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\bitdownload (Trojan.Lop) -> Quarantined and deleted successfully.

Elément(s) de données du Registre infecté(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\Start Page (Hijack.Homepage) -> Bad: (http://www.iesearch.com/) Good: (https://www.google.com/?gws_rd=ssl -> Quarantined and deleted successfully.

Dossier(s) infecté(s):
C:\Program Files\MessengerSkinner (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\download (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\resources (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\InternetGameBox (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\InternetGameBox\ressources (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\InternetGameBox\ressources\favoris (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\InternetGameBox\skins (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\Lang (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\log (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\Media (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\plug-ins (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\plug-ins\rip (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\Skin (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Users\christjoce\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitDownload (Trojan.Lop) -> Quarantined and deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitDownload (Trojan.Lop) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
C:\Users\christjoce\Local Settings\Application Data\mquukww_navps.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\Users\christjoce\Local Settings\Application Data\mquukww_nav.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\Users\christjoce\Local Settings\Application Data\mquukww.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\MessengerSkinnerDll.dll (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\uninst.exe (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\download\defaultPack.cab (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\resources\appconfig.xml (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\resources\btn.rgn (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\resources\btnBnr.rgn (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\resources\btnIn.rgn (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\resources\btnInNormal.bmp (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\resources\btnInOver.bmp (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\resources\btnNormal.bmp (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\resources\btnNormal.gif (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\resources\btnNormalBnr.bmp (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\resources\btnNormalBnr.gif (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\resources\btnOver.bmp (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\resources\btnOver.gif (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\resources\btnOverBnr.bmp (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\resources\btnOverBnr.gif (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\MessengerSkinner\resources\languages_v2.xml (Rogue.MessengerSkinner) -> Quarantined and deleted successfully.
C:\Program Files\InternetGameBox\InternetGameBox.exe (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\InternetGameBox\language (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\InternetGameBox\uninst.exe (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\InternetGameBox\ressources\AttenteOff.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\InternetGameBox\ressources\AttenteOn.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\InternetGameBox\ressources\configv2_en.xml (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\InternetGameBox\ressources\configv2_es.xml (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\InternetGameBox\ressources\configv2_fr.xml (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\InternetGameBox\ressources\favoris\defaultv2.swf (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\InternetGameBox\skins\skinv2.skn (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\BitDownload.exe (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\BitDownload.ico (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\EndProg.exe (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\iphox_downloader_p.exe (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\player.dll (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\RegExt.exe (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\rtl70.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\set.ini (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\tcpip_patcher.sys (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\Uninstall.exe (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\Units.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\vcl70.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\vclshlctrls70.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\vclx70.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\VersionChecker.exe (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\WinSkinD7R.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\Lang\English.lng (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\Lang\Russian.lng (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\log\BitDownload.log (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\Media\FileComplete.wav (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\plug-ins\CDBurningPlugin.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\plug-ins\CDRipper.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\plug-ins\ClosestSearch.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\plug-ins\Notification.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\plug-ins\PeerInfoSearch.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\plug-ins\Search.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\plug-ins\VirtualTracker.bpl (Trojan.Lop) -> Delete on reboot.
C:\Program Files\BitDownload\plug-ins\rip\akrip32.dll (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\plug-ins\rip\cdcache.dll (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\plug-ins\rip\lame_enc.dll (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\plug-ins\rip\Rip.dll (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\plug-ins\rip\vorb_enc.dll (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\plug-ins\rip\xtenc.dll (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\Skin\Aqua.skn (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\Skin\Default.skn (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\Skin\Desert.skn (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\Skin\Forest.skn (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload\Skin\Sea.skn (Trojan.Lop) -> Quarantined and deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitDownload\BitDownload Downloads.lnk (Trojan.Lop) -> Quarantined and deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitDownload\BitDownload Uninstall.lnk (Trojan.Lop) -> Quarantined and deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitDownload\BitDownload.lnk (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Users\christjoce\Desktop\BitDownload.lnk (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Program Files\EoRezo (Rogue.Eorezo) -> Delete on reboot.
C:\Users\Public\Desktop\InternetGameBox.lnk (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Windows\System32\utbwmnixvefvhxv.dll (Adware.BHO) -> Delete on reboot.
0
toto666 Messages postés 325 Date d'inscription jeudi 20 novembre 2008 Statut Membre Dernière intervention 27 mai 2009 14
15 déc. 2008 à 21:11
Fait moi le Navilog stp a demain!
0
Je n'arrive pas a rouvrir Navilog je vous recontacterait demain et merci
0