Probleme de spyware non detecte par ad-aware
Forum Sécurité - Virus : Probleme de spyware non detecte par ad-aware
Bonjour
J'ai un spyware sur mon oridinateur mais je n'arrive pas a l'enlever et ad-aware ne le detecte pas.
J'ai fait plusieur scan et ad-aware a detecte plusieur chose et les a supprimer mais le spyware est toujours sur mon ordinateur
merci de votre aide
++
telecharges ewido security et fais un scan
fait 1 hijackthis et tu met le resultat
J'ai lancer le scan ewido et apres je fait le HijackThis
Le rapport ewido :
---------------------------------------------------------
ewido anti-malware - Rapport de scan
---------------------------------------------------------
+ Créé le: 23:14:35, 18/03/2006
+ Somme de contrôle: 697DC78F
+ Résultats du scan:
[2108] C:\winstall.exe -> Not-A-Virus.Hoax.Win32.Renos.bw : Nettoyer et sauvegarder
:mozilla.6:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Atdmt : Nettoyer et sauvegarder
:mozilla.18:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyer et sauvegarder
:mozilla.19:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyer et sauvegarder
:mozilla.34:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyer et sauvegarder
:mozilla.36:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyer et sauvegarder
:mozilla.37:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Estat : Nettoyer et sauvegarder
:mozilla.39:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyer et sauvegarder
:mozilla.46:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Adtech : Nettoyer et sauvegarder
:mozilla.47:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Adtech : Nettoyer et sauvegarder
:mozilla.50:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Doubleclick : Nettoyer et sauvegarder
:mozilla.53:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Weborama : Nettoyer et sauvegarder
:mozilla.54:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Weborama : Nettoyer et sauvegarder
:mozilla.55:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Weborama : Nettoyer et sauvegarder
:mozilla.56:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Comclick : Nettoyer et sauvegarder
:mozilla.57:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Comclick : Nettoyer et sauvegarder
:mozilla.58:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Comclick : Nettoyer et sauvegarder
:mozilla.59:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Bluestreak : Nettoyer et sauvegarder
:mozilla.60:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Falkag : Nettoyer et sauvegarder
:mozilla.61:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Falkag : Nettoyer et sauvegarder
:mozilla.62:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Falkag : Nettoyer et sauvegarder
:mozilla.63:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Falkag : Nettoyer et sauvegarder
:mozilla.64:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Falkag : Nettoyer et sauvegarder
:mozilla.65:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Falkag : Nettoyer et sauvegarder
:mozilla.67:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyer et sauvegarder
:mozilla.68:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyer et sauvegarder
:mozilla.69:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyer et sauvegarder
:mozilla.70:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyer et sauvegarder
:mozilla.74:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Com : Nettoyer et sauvegarder
:mozilla.79:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Ru4 : Nettoyer et sauvegarder
:mozilla.80:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Ru4 : Nettoyer et sauvegarder
:mozilla.81:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Ru4 : Nettoyer et sauvegarder
:mozilla.82:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Ru4 : Nettoyer et sauvegarder
:mozilla.92:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Paypopup : Nettoyer et sauvegarder
:mozilla.93:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Paypopup : Nettoyer et sauvegarder
:mozilla.94:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Paypopup : Nettoyer et sauvegarder
:mozilla.95:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Paypopup : Nettoyer et sauvegarder
:mozilla.96:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Paypopup : Nettoyer et sauvegarder
:mozilla.113:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Advertising : Nettoyer et sauvegarder
:mozilla.114:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Advertising : Nettoyer et sauvegarder
:mozilla.116:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Sitestat : Nettoyer et sauvegarder
:mozilla.117:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Sitestat : Nettoyer et sauvegarder
:mozilla.137:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Mediaplex : Nettoyer et sauvegarder
:mozilla.173:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyer et sauvegarder
:mozilla.174:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyer et sauvegarder
:mozilla.184:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.2o7 : Nettoyer et sauvegarder
:mozilla.185:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.2o7 : Nettoyer et sauvegarder
:mozilla.190:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyer et sauvegarder
:mozilla.193:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyer et sauvegarder
:mozilla.194:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyer et sauvegarder
:mozilla.195:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyer et sauvegarder
:mozilla.206:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyer et sauvegarder
:mozilla.210:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Enhance : Nettoyer et sauvegarder
:mozilla.212:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Spylog : Nettoyer et sauvegarder
:mozilla.215:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Hotlog : Nettoyer et sauvegarder
:mozilla.218:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Yadro : Nettoyer et sauvegarder
:mozilla.223:C:\Documents and Settings\Yann\Application Data\Mozilla\Firefox\Profiles\91jtt6d9.default\cookies.txt -> TrackingCookie.Trafic : Nettoyer et sauvegarder
C:\Documents and Settings\Yann\Local Settings\Temporary Internet Files\Content.IE5\7AG2TDJ4\tool2[1].txt -> Not-A-Virus.Hoax.Win32.Renos.bw : Nettoyer et sauvegarder
C:\Program Files\SpySheriff -> Adware.SpySheriff : Nettoyer et sauvegarder
C:\Program Files\SpySheriff\SpySheriff.exe -> Adware.SpySheriff : Nettoyer et sauvegarder
C:\Program Files\SpySheriff\Uninstall.exe -> Adware.SpySheriff : Nettoyer et sauvegarder
C:\WINDOWS\tool2.exe -> Not-A-Virus.Hoax.Win32.Renos.bw : Nettoyer et sauvegarder
C:\winstall.exe -> Not-A-Virus.Hoax.Win32.Renos.bw : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\aaw6.rar/ujTO4el.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\aaw6.rar/RhXO712.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\aaw6.rar/uhdi0E3.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\aaw6.rar/iolW3JK.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\aaw6.rar/MPjhIp0.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\aaw6.rar/dOebJ1J.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\EClea2_0.rar/m1Vqo1B.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\EClea2_0.rar/j1RqT22.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\EClea2_0.rar/j6E17uC.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\EClea2_0.rar/x4mpTLB.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\EClea2_0.rar/dil4nqm.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\EClea2_0.rar/ThF8w24.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\Pest Patrol v44 00 Fr.rar/EKW56p5.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\Pest Patrol v44 00 Fr.rar/BI22y3i.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\Pest Patrol v44 00 Fr.rar/dttU3SU.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\Pest Patrol v44 00 Fr.rar/ONRmHv1.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\Pest Patrol v44 00 Fr.rar/t3mK0bC.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\Pest Patrol v44 00 Fr.rar/B7K2LW0.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\spybotsd12.rar/ut21I3o.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\spybotsd12.rar/rr3L54W.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\spybotsd12.rar/k1YrmeP.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\spybotsd12.rar/gfS7mgs.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\spybotsd12.rar/LBodYc6.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\spybot\spybot _ xp antispy\spybot _ xp antispy _ regcleaner _ pestpatrol+autres aides_garantis_sans_spyware_par_Tarsounet\vie privee\spybotsd12.rar/rFMSq7j.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\reglage ordi et window\Tweak XP Pro v4.0.1\Tweak-XP.4.Pro.Server.Check.and.Blacklisting.Crack-BetaMaster.rar/iolW3JK.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\reglage ordi et window\Tweak XP Pro v4.0.1\Tweak-XP.4.Pro.Server.Check.and.Blacklisting.Crack-BetaMaster.rar/x28svVK.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\reglage ordi et window\Tweak XP Pro v4.0.1\Tweak-XP.4.Pro.Server.Check.and.Blacklisting.Crack-BetaMaster.rar/x85P70y.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\reglage ordi et window\Tweak XP Pro v4.0.1\Tweak-XP.4.Pro.Server.Check.and.Blacklisting.Crack-BetaMaster.rar/N5Ub8mr.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\reglage ordi et window\Tweak XP Pro v4.0.1\Tweak-XP.4.Pro.Server.Check.and.Blacklisting.Crack-BetaMaster.rar/tepPjq4.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
D:\programe\reglage ordi et window\Tweak XP Pro v4.0.1\Tweak-XP.4.Pro.Server.Check.and.Blacklisting.Crack-BetaMaster.rar/mwgGLt4.exe -> Worm.Drefir.i : Nettoyer et sauvegarder
::Fin du rapport
Le rapport HijackThis :
Logfile of HijackThis v1.99.1
Scan saved at 23:15:59, on 18/03/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\acer\Acer eConsole\MediaServerService.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Acer\eRecovery\Monitor.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Acer\Acer eMode Management\AspireService.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\eMule\emule.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.BIN
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\ewido anti-malware\ewidoguard.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Documents and Settings\Yann\Bureau\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://global.acer.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://global.acer.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://global.acer.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O4 - HKLM\..\Run: [LaunchApp] Alaunch
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [ntiMUI] c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [eRecoveryService] C:\Program Files\Acer\eRecovery\Monitor.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [AspireService] C:\Program Files\Acer\Acer eMode Management\AspireService.exe
O4 - HKLM\..\Run: [MediaSync] C:\Program Files\Acer\Acer eConsole\MediaSync.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: RaConfig2500.lnk = C:\Program Files\RALINK\RT2500 USB Wireless LAN Card\Installer\WINXP\RaConfig2500.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/downloads [...] nicode.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
Apperement il y a toujours un probleme car mon par feu se desactive et je ne peux plus l'activer mais le spyware n'est plus detecte par windows donc il doit etre detruit (j'espere)
slt ton spywar peu prendre l'apparence d'un chevale de trois c'est pour ca que ton anti-virus n'arrive pas a l'enlever telecharger kaspersky et essaye
le scan kaspersy n'a rien donné
le dernier rapport HijackThis :
Logfile of HijackThis v1.99.1
Scan saved at 17:31:26, on 19/03/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\acer\Acer eConsole\MediaServerService.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Acer\eRecovery\Monitor.exe
C:\Program Files\ewido anti-malware\ewidoguard.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Acer\Acer eMode Management\AspireService.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\eMule\emule.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\WINDOWS\system32\divxsm.exe
C:\Documents and Settings\Yann\Bureau\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://global.acer.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://global.acer.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://global.acer.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O4 - HKLM\..\Run: [LaunchApp] Alaunch
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [ntiMUI] c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [eRecoveryService] C:\Program Files\Acer\eRecovery\Monitor.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [AspireService] C:\Program Files\Acer\Acer eMode Management\AspireService.exe
O4 - HKLM\..\Run: [MediaSync] C:\Program Files\Acer\Acer eConsole\MediaSync.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: RaConfig2500.lnk = C:\Program Files\RALINK\RT2500 USB Wireless LAN Card\Installer\WINXP\RaConfig2500.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/downloads [...] nicode.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
Il y a 2811 utilisateurs connus et inconnus. Pour voir la liste des connectés connus, cliquez ici.
