Bagle après ELIBAGLA, COMBOFIX, FINDYKII

lollie.jupiter Messages postés 2 Statut Membre -  
g!rly Messages postés 18462 Statut Contributeur -
Bonjour,
j'ai attrapé le virus Bagle en téléchargeant un screensaver sur Emule (et non un crack, je précise!!). ceci dit j'ai cliqué un peu vite sur l'icône bizarre (une ambulance). j'ai regardé les forums et essayé plusieurs méthodes : ELIBAGLA, COMBOFIX,... mes antivirus ne marchent plus. J'ai réussi à obtenir le rapport suivant :

----------------- FindyKill V4.709 ------------------

* User : Laurie Viala - ACER-38A46E2ACC
* Emplacement : C:\Program Files\FindyKill
* Outils Mis a jours le 10/12/08 par Chiquitine29
* Recherche effectuée à 12:08:16 le 16/12/2008
* Windows XP - Internet Explorer 7.0.5730.13

((((((((((((((((( *** Recherche *** ))))))))))))))))))

--------------- [ Processus actifs ] ----------------

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Acer\eManager\anbmServ.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\acer\epm\epm-dm.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Spyware-Secure\Spyware-Secure_trial.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DNA\btdna.exe
C:\documents and settings\laurie viala\local settings\application data\wgpzcluf.exe
C:\Documents and Settings\Laurie Viala\Application Data\drivers\winupgro.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\431421.exe
C:\Program Files\Internet Explorer\iexplore.exe

--------------- [ Processus infectieux stoppés ] ----------------

"C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\431421.exe" (3648)
"C:\Documents and Settings\Laurie Viala\Application Data\drivers\winupgro.exe" (1340)

--------------- [ Fichiers/Dossiers infectieux ] ----------------

»»»» Presence des fichiers dans C:

Found ! [16/12/2008 11:49] - C:\InfoSat.txt

»»»» Presence des fichiers dans C:\WINDOWS

»»»» Presence des fichiers dans C:\WINDOWS\Prefetch

Found ! - C:\WINDOWS\prefetch\MDELK.EXE-0EF461CE.pf
Found ! - C:\WINDOWS\prefetch\142562.EXE-2D1CFA9E.pf
Found ! - C:\WINDOWS\prefetch\WINTEMS.EXE-377E42D4.pf
Found ! - C:\WINDOWS\prefetch\FLEC006.EXE-0CC6B1B9.pf
Found ! - C:\WINDOWS\prefetch\192890.EXE-034A384D.pf
Found ! - C:\WINDOWS\prefetch\392484.EXE-2DDC54AC.pf
Found ! - C:\WINDOWS\prefetch\419312.EXE-146A33F6.pf
Found ! - C:\WINDOWS\prefetch\172953.EXE-2D762E32.pf
Found ! - C:\WINDOWS\prefetch\300203.EXE-01A61D2F.pf
Found ! - C:\WINDOWS\prefetch\327484.EXE-1CF934C2.pf
Found ! - C:\WINDOWS\Prefetch\KEY_GENERATOR.EXE-0EFFFCDB.pf

»»»» Presence des fichiers dans C:\WINDOWS\system32

Found ! [16/12/2008 11:55] - C:\WINDOWS\system32\mdelk.exe
Found ! [16/12/2008 11:55] - C:\WINDOWS\system32\wintems.exe
Found ! [16/12/2008 11:56] - C:\WINDOWS\system32\ban_list.txt

»»»» Presence des fichiers dans C:\WINDOWS\system32\config\systemprofile\AppData\Roaming

»»»» Presence des fichiers dans C:\WINDOWS\system32\drivers

»»»» Presence des fichiers dans C:\Documents and Settings\Laurie Viala\Application Data

Found ! [16/12/2008 11:56] - "C:\Documents and Settings\Laurie Viala\Application Data\m\flec006.exe"
Found ! [16/12/2008 11:57] - "C:\Documents and Settings\Laurie Viala\Application Data\m\list.oct"
Found ! [16/12/2008 11:57] - "C:\Documents and Settings\Laurie Viala\Application Data\m\data.oct"
Found ! [16/12/2008 11:57] - "C:\Documents and Settings\Laurie Viala\Application Data\m\srvlist.oct"
Found ! [16/12/2008 10:23] - "C:\Documents and Settings\Laurie Viala\Application Data\m\shared"
Found ! [16/12/2008 10:23] - "C:\Documents and Settings\Laurie Viala\Application Data\m"
Found ! [16/12/2008 10:16] - "C:\Documents and Settings\Laurie Viala\Application Data\drivers"
Found ! [16/12/2008 11:55] - "C:\Documents and Settings\Laurie Viala\Application Data\drivers\srosa.sys"
Found ! [16/12/2008 11:55] - "C:\Documents and Settings\Laurie Viala\Application Data\drivers\srosa2.sys"
Found ! [05/04/2004 09:04] - "C:\Documents and Settings\Laurie Viala\Application Data\drivers\winupgro.exe"
Found ! [16/12/2008 10:16] - "C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld"
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\134656.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\137578.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\142562.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\153359.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\155375.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\155968.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\164281.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\165437.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\165843.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\192890.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\217265.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\218375.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\218468.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\328765.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\329421.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\329437.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\351234.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\352453.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\353015.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\354093.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\355203.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\355671.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\370515.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\370953.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\371453.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\392484.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\419312.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\434750.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\436109.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\436812.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\106312.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\110968.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\113781.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\132484.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\133937.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\134281.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\142609.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\144015.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\144531.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\172953.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\202218.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\203250.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\203375.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\228718.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\229812.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\229859.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\249265.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\252515.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\253031.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\253734.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\254687.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\255531.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\274781.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\275234.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\275671.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\300203.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\327484.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\370015.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\370937.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\371078.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\95562.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\97593.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\97671.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\105984.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\116234.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\117750.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\118328.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\126484.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\127250.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\127656.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\158265.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\179421.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\180281.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\180296.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\215578.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\216281.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\216296.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\236093.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\237218.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\237734.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\238687.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\239609.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\240125.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\255703.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\256171.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\256578.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\270406.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\314750.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\329859.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\330875.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\331218.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\96546.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\98515.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\98531.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\103250.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\111875.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\113296.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\113734.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\122093.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\123828.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\124171.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\173125.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\193078.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\193953.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\362906.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\363609.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\363656.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\386296.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\387625.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\388031.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\392718.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\393625.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\394203.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\409531.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\410000.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\410468.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\430359.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\455781.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\468468.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\469125.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\469234.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\98734.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\101421.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\107703.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\111953.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\121140.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\122921.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\123359.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\131671.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\132968.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\133375.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\185796.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\186812.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\289281.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\289968.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\290015.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\314031.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\315171.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\315796.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\316718.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\317703.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\318265.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\333515.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\334109.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\334406.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\359109.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\387140.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\388453.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\405796.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\406703.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\406859.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\139156.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\142453.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\142671.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\148046.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\158375.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\162390.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\163406.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\172546.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\173265.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\173578.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\206718.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\232812.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\233796.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\233859.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\337171.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\338062.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\338187.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\361812.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\363265.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\363671.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\364390.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\365156.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\365765.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\382953.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\383562.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\383890.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\403859.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\431421.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\446093.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\447046.exe
Found ! [16/12/2008 10:16] - C:\Documents and Settings\Laurie Viala\Application Data\drivers\downld\447250.exe

»»»» Presence des fichiers dans C:\DOCUME~1\LAURIE~1\LOCALS~1\Temp

»»»» Presence des fichiers dans C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5

Found ! [16/12/2008 11:55] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\UE3GB0QM\b64_3[1].jpg
Found ! [24/10/2008 16:57] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\M43CXGSN\33463e0ef68b4adf9edfc217b648f7[1].jpg
Found ! [16/12/2008 12:00] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\M43CXGSN\b64_1[1].jpg
Found ! [16/12/2008 11:57] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\ITILFCSB\mxd[1].jpg
Found ! [16/12/2008 11:10] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\Y3250FI3\b64_3[1].jpg
Found ! [24/10/2008 16:58] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\6EWW6F40\ab45301bba0484b64434d90990e52a[1].jpg
Found ! [16/12/2008 11:16] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\6EWW6F40\b64_1[1].jpg
Found ! [16/12/2008 11:16] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\6EWW6F40\b64_2[1].jpg
Found ! [16/12/2008 11:24] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\9HNA4VI7\b64_1[1].jpg
Found ! [16/12/2008 11:20] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\H80VTTSD\b64_3[1].jpg
Found ! [21/01/2007 00:14] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\H80VTTSD\WMP911b38e9-faaa-45ee-80f4-d5370b646786[1]..jpg
Found ! [16/12/2008 11:11] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\4L67KT67\b64[1].jpg
Found ! [16/12/2008 11:12] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\0LMZW9YN\mxd[1].jpg
Found ! [16/12/2008 11:24] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\ODQNKLAF\b64_2[1].jpg
Found ! [16/12/2008 10:57] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\YPZUCVLJ\b64[1].jpg
Found ! [16/12/2008 10:59] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\YPZUCVLJ\b64_1[1].jpg
Found ! [16/12/2008 10:59] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\YPZUCVLJ\b64_2[1].jpg
Found ! [16/12/2008 12:00] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\YPZUCVLJ\b64_2[2].jpg
Found ! [16/12/2008 11:10] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\J0A8TO93\mxd[1].jpg
Found ! [16/12/2008 11:56] - C:\Documents and Settings\Laurie Viala\Local Settings\Temporary Internet Files\Content.IE5\IP7NZ8BO\b64[1].jpg

--------------- [ Registre / Startup ] ----------------

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
MSMSGS="C:\Program Files\Messenger\msmsgs.exe" /background
ctfmon.exe=C:\WINDOWS\system32\ctfmon.exe
BitTorrent DNA="C:\Program Files\DNA\btdna.exe"
wgpzcluf="c:\documents and settings\laurie viala\local settings\application data\wgpzcluf.exe" wgpzcluf
SpybotSD TeaTimer=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
epm-dm=c:\acer\epm\epm-dm.exe
TkBellExe="C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
QuickTime Task="C:\Program Files\QuickTime\qttask.exe" -atboottime
DAEMON Tools="C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
avast!=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
Spyware-Secure=C:\Program Files\Spyware-Secure\Spyware-Secure_trial.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents=
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL=
Installed=1
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI=
Installed=1
NoChange=1
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS=
Installed=1

[HKEY_CURRENT_USER\software\local appwizard-generated applications\DestComp]
[HKEY_CURRENT_USER\software\local appwizard-generated applications\hprbui]
[HKEY_CURRENT_USER\software\local appwizard-generated applications\key_generator]
[HKEY_CURRENT_USER\software\local appwizard-generated applications\Launch Tool]
[HKEY_CURRENT_USER\software\local appwizard-generated applications\msmsgs]
[HKEY_CURRENT_USER\software\local appwizard-generated applications\winupgro]

--------------- [ Registre / Clés infectieuses ] ----------------

Found ! - HKEY_USERS\S-1-5-21-2239472735-2119691922-1141095706-1005\Software\Local AppWizard-Generated Applications\key_generator
Found ! - HKEY_USERS\S-1-5-21-2239472735-2119691922-1141095706-1005\Software\Local AppWizard-Generated Applications\winupgro
Found ! - HKEY_USERS\S-1-5-21-2239472735-2119691922-1141095706-1005\Software\bisoft
Found ! - HKEY_USERS\S-1-5-21-2239472735-2119691922-1141095706-1005\Software\DateTime4
Found ! - HKEY_USERS\S-1-5-21-2239472735-2119691922-1141095706-1005\Software\FFC
Found ! - HKEY_USERS\S-1-5-21-2239472735-2119691922-1141095706-1005\Software\FirtR
Found ! - HKEY_USERS\S-1-5-21-2239472735-2119691922-1141095706-1005\Software\MuleAppData
Found ! - HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\key_generator
Found ! - HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\winupgro
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srosa
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\srosa
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\srosa
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SROSA
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_SROSA
Found ! - HKEY_CURRENT_USER\Software\bisoft
Found ! - HKEY_CURRENT_USER\Software\DateTime4
Found ! - HKEY_CURRENT_USER\Software\FirtR
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SK9OU0S
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_SK9OU0S
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_SK9OU0S
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sK9Ou0s
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sK9Ou0s
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sK9Ou0s

--------------- [ Etat / Services ] ----------------

Clé manquante : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot

- sans echec non fonctionnel !!

Clé manquante : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal

- sans echec non fonctionnel !!

Clé manquante : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network

- sans echec non fonctionnel !!

+- Services : [ Auto=2 / Demande=3 / Désactivé=4 ]

/!\ Ndisuio - Type de démarrage = 4

/!\ Ip6Fw - Type de démarrage = 4

/!\ SharedAccess - Type de démarrage = 4

/!\ wuauserv - Type de démarrage = 4

/!\ wscsvc - Type de démarrage = 4

--------------- [ Recherche dans supports amovibles] ----------------

+- Informations :

C: - Lecteur fixe

D: - Lecteur fixe

E: - Lecteur de CD-ROM

+- presence des fichiers :

--------------- [ Registre / Mountpoint2 ] ----------------

Found ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{33ff791c-c58f-11db-aaeb-00c09fbba3fa}\Shell\AutoRun\command
Found ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5b3357c2-78a8-11da-a99f-00c09fbba3fa}\Shell\AutoRun\command
Found ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8eb71424-5e4f-11dc-ab45-00c09fbba3fa}\Shell\AutoRun\command
Found ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9a1a56c4-480a-11dc-ab31-00c09fbba3fa}\Shell\AutoRun\command
Found ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a910ece0-b133-11db-aaca-00c09fbba3fa}\Shell\AutoRun\command
Found ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b319f72e-940a-11db-aa9c-00c09fbba3fa}\Shell\AutoRun\command
Found ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{cb31cd3a-b13f-11db-aacb-00c09fbba3fa}\Shell\AutoRun\command
Found ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{cb31cd3b-b13f-11db-aacb-00c09fbba3fa}\Shell\AutoRun\command
Found ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{cf48fb0c-d1e4-11dc-ab85-0012f0d19fe9}\Shell\AutoRun\command
Found ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{eb0be1ce-fd7c-11dc-ab99-0012f0d19fe9}\Shell\AutoRun\command
Found ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f9192944-18b6-11dc-ab1c-00c09fbba3fa}\Shell\AutoRun\command

------------------- ! Fin du rapport ! --------------------

merci de votre aide!!!

1 réponse

g!rly Messages postés 18462 Statut Contributeur 406
 
salut,

passe l´option 2 de findykill et post son rapport

@+
0