Tom's Guide > Forum > Sécurité - Virus > Publicités CID Envahissantes Malgrès Tout [ RESOLU]

Publicités CID Envahissantes Malgrès Tout [ RESOLU]

Forum Sécurité - Virus : Publicités CID Envahissantes Malgrès Tout [ RESOLU]

TomsGuide.com : 800 000 inscrits répondent à toutes vos questions high-tech et informatique. Pour obtenir de l'aide, inscrivez-vous gratuitement !
Mot :    Pseudo :           
 

Bonjour,

Depuis Mon téléchargement De MSGPluslive-450 Des pubs "CiD" M'envahissent..

J'ai Supprimé Les Sponsors Comme Indiqué sur D'autres Topics Mais Elles Sont toujours Là.


Aidez Moi Merci



PS : J'utilise Mozilla J'ai Aussi Une extension Bloquant Les Publicités..J'essaie


Message édité par Wamaaak le 15-03-2008 à 19:03:31
------------------------------ Vives Les Pâtes à La Carbo'
Liens sponsorisés
Inscrivez-vous ou connectez-vous pour masquer ceci.

Ce sujet a été déplacé de la catégorie Logiciels vers la catégorie Sécurité - Virus par Lonithe1

------------------------------ Log33kiel | Listing de logiciels gratuits ! | Log33kiel | Porno gratuit
Répondre à Loni

bonjour

1

Télécharge puis installe Hijackthis (Trend Micro)
Poste ensuite un rapport dans ta prochaine réponse.
AIDE : Comment utiliser Hijackthis v2.0.2

2

Télécharge Lop S&D.exe sur ton bureau

  • Double-clique dessus pour lancer l'installation
  • Puis double-clique sur le raccourci Lop S&D présent sur ton bureau
  • Séléctionne la langue souhaitée , puis choisis l'Option 1 ( Recherche )
  • Patiente jusqu'à la fin du scan
  • Poste le rapport généré ( C:\lopR.txt )


( Si le Bureau ne réapparait pas presse Ctrl + Alt + Suppr , Onglet Fichier , Nouvelle tâche , tape explorer.exe et valide )

------------------------------ Prévention et protection
/!\Marre de la pub: Firefox sécurisé/!\
Répondre à Sham_Rock

Merci Beaucoup Je vais Essayer

------------------------------ Vives Les Pâtes à La Carbo'
Répondre à Wamaaak

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:57:57, on 28/02/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft Etudes\Microsoft Encarta 2007 - Études DVD\EDICT.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Clavier+\Clavier.exe
C:\Program Files\Shareaza\Shareaza.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
C:\Program Files\Hercules\WiFi Station\WifiStation.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\setup\avast.setup
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\pctspk.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Shareaza Web Download Hook - {0EEDB912-C5FA-486F-8334-57288578C627} - C:\Program Files\Shareaza\Plugins\RazaWebHook.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: BHO pour Compagnon Web Encarta - {955BE0B8-BC85-4CAF-856E-8E0D8B610560} - C:\Program Files\Fichiers communs\Microsoft Shared\Encarta Web Companion\2007\ENCWCBAR.DLL
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: Compagnon Web Encarta - {147D6308-0614-4112-89B1-31402F9B82C4} - C:\Program Files\Fichiers communs\Microsoft Shared\Encarta Web Companion\2007\ENCWCBAR.DLL
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [EasyTuneIII] C:\Program Files\GigaByte\EasyTune\EasyTune.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [bait deaf idle setup] C:\Documents and Settings\All Users.WINDOWS\Application Data\Htm Support Bait Deaf\enc part.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [L07FXLRD_187229] "C:\Program Files\Microsoft Etudes\Microsoft Encarta 2007 - Études DVD\EDICT.EXE" -m
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Clavier+] C:\Program Files\Clavier+\Clavier.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Barre d'état système d'ATI CATALYST.lnk = C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
O4 - Global Startup: WiFi Station.lnk = ?
O8 - Extra context menu item: Download with &Shareaza - res://C:\Program Files\Shareaza\Plugins\RazaWebHook.dll/3000
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Barre de recherche Encarta - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Fichiers communs\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/bina [...] b56986.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b56907.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe

--
End of file - 7740 bytes

------------------------------ Vives Les Pâtes à La Carbo'
Répondre à Wamaaak


Re-Bonsoir

-----------------------------[ Lop S&D 4.0.0 ]---------------------------

[ Windows XP (NT 5.1) Build 2600, Service Pack 2 ]
[ USER : claudius ] [ "C:\Lop SD" ]
[ 28/02/2008 | 20:00:22,63 ] [ PC : GOD-70F1F15198F ]
[ MAJ : 26-02-2008 | 19:30 ]

-------------[ Listing des dossiers dans Application Data ]------------

[15/02/2002|23:55] C:\DOCUME~1\ADMINI~1\APPLIC~1\.
[15/02/2002|23:55] C:\DOCUME~1\ADMINI~1\APPLIC~1\..
[15/02/2002|23:55] C:\DOCUME~1\ADMINI~1\APPLIC~1\desktop.ini
[16/02/2002|00:54] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft

[13/03/2002|03:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\.
[13/03/2002|03:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\..
[16/02/2002|01:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ACD Systems
[13/03/2002|03:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[24/03/2002|05:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\desktop.ini
[24/03/2002|05:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[13/03/2002|03:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[13/03/2002|03:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint

[26/02/2008|18:51] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\.
[26/02/2008|18:51] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\..
[03/02/2008|11:34] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Apple Computer
[24/03/2002|09:20] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\desktop.ini
[26/01/2008|18:48] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\GamesBar
[01/12/2007|12:52] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Google
[19/02/2008|11:42] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Htm Support Bait Deaf
[26/02/2008|18:51] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Messenger Plus!
[01/12/2007|17:04] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Microsoft
[10/11/2007|11:39] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Nero
[15/12/2007|16:52] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\PlayFirst
[01/12/2007|15:40] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\QuickTime
[11/08/2007|12:33] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Symantec
[25/01/2008|19:06] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\TEMP
[22/02/2008|21:07] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Ulead Systems
[10/02/2008|13:20] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Windows Genuine Advantage
[19/02/2008|11:14] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\WLInstaller

[22/02/2008|21:03] C:\DOCUME~1\claudius\APPLIC~1\.
[22/02/2008|21:03] C:\DOCUME~1\claudius\APPLIC~1\..
[07/02/2008|14:41] C:\DOCUME~1\claudius\APPLIC~1\Adobe
[10/11/2007|11:42] C:\DOCUME~1\claudius\APPLIC~1\Ahead
[07/11/2007|22:00] C:\DOCUME~1\claudius\APPLIC~1\ATI
[24/03/2002|09:20] C:\DOCUME~1\claudius\APPLIC~1\desktop.ini
[24/03/2002|20:05] C:\DOCUME~1\claudius\APPLIC~1\eu
[01/12/2007|15:30] C:\DOCUME~1\claudius\APPLIC~1\Google
[03/03/2007|20:22] C:\DOCUME~1\claudius\APPLIC~1\Help
[14/12/2007|19:32] C:\DOCUME~1\claudius\APPLIC~1\Home Sweet Home
[24/03/2002|08:54] C:\DOCUME~1\claudius\APPLIC~1\Identities
[01/12/2007|12:19] C:\DOCUME~1\claudius\APPLIC~1\InstallShield
[01/12/2007|12:52] C:\DOCUME~1\claudius\APPLIC~1\Macromedia
[10/02/2008|13:22] C:\DOCUME~1\claudius\APPLIC~1\Media Player Classic
[27/02/2008|10:17] C:\DOCUME~1\claudius\APPLIC~1\Microsoft
[24/03/2002|20:05] C:\DOCUME~1\claudius\APPLIC~1\Mozilla
[15/12/2007|16:52] C:\DOCUME~1\claudius\APPLIC~1\PlayFirst
[30/01/2008|13:22] C:\DOCUME~1\claudius\APPLIC~1\Shareaza
[24/03/2002|20:03] C:\DOCUME~1\claudius\APPLIC~1\Sun
[24/03/2002|22:24] C:\DOCUME~1\claudius\APPLIC~1\Symantec
[18/02/2008|18:31] C:\DOCUME~1\claudius\APPLIC~1\Talkback
[22/02/2008|21:03] C:\DOCUME~1\claudius\APPLIC~1\Ulead Systems

[15/02/2002|23:55] C:\DOCUME~1\DEFAUL~1\APPLIC~1\.
[15/02/2002|23:55] C:\DOCUME~1\DEFAUL~1\APPLIC~1\..
[24/03/2002|05:07] C:\DOCUME~1\DEFAUL~1\APPLIC~1\desktop.ini
[24/03/2002|05:21] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft

[24/03/2002|09:20] C:\DOCUME~1\DEFAUL~1.WIN\APPLIC~1\.
[24/03/2002|09:20] C:\DOCUME~1\DEFAUL~1.WIN\APPLIC~1\..
[24/03/2002|09:20] C:\DOCUME~1\DEFAUL~1.WIN\APPLIC~1\desktop.ini
[20/12/2007|10:45] C:\DOCUME~1\DEFAUL~1.WIN\APPLIC~1\Microsoft

[16/02/2002|01:01] C:\DOCUME~1\LOCALS~1\APPLIC~1\.
[16/02/2002|01:01] C:\DOCUME~1\LOCALS~1\APPLIC~1\..
[16/02/2002|00:54] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft

[24/03/2002|08:52] C:\DOCUME~1\LOCALS~1.AUT\APPLIC~1\.
[24/03/2002|08:52] C:\DOCUME~1\LOCALS~1.AUT\APPLIC~1\..
[24/03/2002|08:52] C:\DOCUME~1\LOCALS~1.AUT\APPLIC~1\Microsoft

[16/02/2002|01:01] C:\DOCUME~1\NETWOR~1\APPLIC~1\.
[16/02/2002|01:01] C:\DOCUME~1\NETWOR~1\APPLIC~1\..
[16/02/2002|00:54] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

[25/02/2007|08:35] C:\DOCUME~1\NETWOR~1.AUT\APPLIC~1\.
[25/02/2007|08:35] C:\DOCUME~1\NETWOR~1.AUT\APPLIC~1\..
[24/03/2002|08:51] C:\DOCUME~1\NETWOR~1.AUT\APPLIC~1\Microsoft
[25/02/2007|08:35] C:\DOCUME~1\NETWOR~1.AUT\APPLIC~1\Symantec

----------------[ Tâches planifiées dans C:\WINDOWS\tasks ]---------------

[22/02/2008 12:00][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[28/02/2008 19:51][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 13:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini

---------------[ Listing des dossiers dans C:\Program Files ]--------------

[28/02/2008|19:56] C:\Program Files\.
[28/02/2008|19:56] C:\Program Files\..
[26/03/2002|22:28] C:\Program Files\Adobe
[24/03/2002|22:13] C:\Program Files\Alawar
[11/08/2007|12:38] C:\Program Files\Alwil Software
[03/02/2008|11:34] C:\Program Files\Apple Software Update
[07/11/2007|21:55] C:\Program Files\ATI Technologies
[14/12/2007|19:08] C:\Program Files\Boonty
[25/01/2008|18:15] C:\Program Files\BoontyGames
[11/08/2007|15:18] C:\Program Files\Brutal Chess
[05/12/2007|20:20] C:\Program Files\Clavier+
[16/02/2002|00:50] C:\Program Files\ComPlus Applications
[19/12/2007|19:38] C:\Program Files\Dofus
[25/02/2007|08:50] C:\Program Files\DX-Ball
[11/08/2007|15:17] C:\Program Files\DXBall2
[19/02/2008|11:14] C:\Program Files\Fichiers communs
[08/02/2008|17:49] C:\Program Files\Gamenext
[26/03/2002|22:30] C:\Program Files\GigaByte
[01/12/2007|12:52] C:\Program Files\Google
[01/12/2007|12:20] C:\Program Files\Hercules
[22/02/2008|21:01] C:\Program Files\InstallShield Installation Information
[14/02/2008|21:28] C:\Program Files\Internet Explorer
[24/03/2002|20:03] C:\Program Files\Java
[01/12/2007|15:42] C:\Program Files\K-Lite Codec Pack
[13/03/2002|03:47] C:\Program Files\Learn2.com
[25/01/2008|12:56] C:\Program Files\LiveKillCleanMessenger
[27/02/2008|10:17] C:\Program Files\Macrogaming
[25/02/2008|20:30] C:\Program Files\Messenger Plus! Live
[24/03/2002|09:09] C:\Program Files\Microsoft Etudes
[16/02/2002|00:56] C:\Program Files\microsoft frontpage
[24/03/2002|22:19] C:\Program Files\Microsoft Office
[24/03/2002|22:19] C:\Program Files\Microsoft.NET
[03/02/2008|11:29] C:\Program Files\Mindscape
[24/03/2002|05:18] C:\Program Files\movie maker
[28/02/2008|19:52] C:\Program Files\Mozilla Firefox
[16/02/2002|01:53] C:\Program Files\mplayer
[24/03/2002|05:22] C:\Program Files\msn gaming zone
[25/02/2008|20:30] C:\Program Files\MSN Messenger
[29/01/2008|17:56] C:\Program Files\Msncolor
[20/12/2007|10:58] C:\Program Files\MSXML 6.0
[27/02/2008|10:17] C:\Program Files\Navilog1
[10/11/2007|11:39] C:\Program Files\Nero
[24/03/2002|05:18] C:\Program Files\NetMeeting
[24/03/2002|08:37] C:\Program Files\Online Services
[20/12/2007|10:57] C:\Program Files\Outlook Express
[30/12/2007|15:36] C:\Program Files\PhotoFiltre
[03/02/2008|11:35] C:\Program Files\QuickTime
[13/03/2002|03:46] C:\Program Files\Real
[16/02/2002|00:53] C:\Program Files\Services en ligne
[30/01/2008|13:23] C:\Program Files\Shareaza
[20/02/2008|10:19] C:\Program Files\Shareaza Applications
[28/02/2008|19:56] C:\Program Files\Trend Micro
[22/02/2008|21:01] C:\Program Files\Ulead Systems
[16/02/2002|01:55] C:\Program Files\Uninstall Information
[13/03/2002|03:47] C:\Program Files\Viewpoint
[10/11/2007|17:38] C:\Program Files\Webteh
[25/02/2008|20:20] C:\Program Files\Windows Live
[08/02/2008|19:27] C:\Program Files\Windows Media Connect 2
[12/02/2008|12:47] C:\Program Files\windows media player
[24/03/2002|05:15] C:\Program Files\Windows NT
[20/02/2008|10:02] C:\Program Files\WindowsUpdate
[29/01/2008|18:27] C:\Program Files\WinRAR
[16/02/2002|00:56] C:\Program Files\xerox

------[ Listing des dossiers dans C:\Program Files\Fichiers communs ]------

[19/02/2008|11:14] C:\Program Files\Fichiers communs\.
[19/02/2008|11:14] C:\Program Files\Fichiers communs\..
[26/03/2002|22:28] C:\Program Files\Fichiers communs\Adobe
[10/11/2007|11:43] C:\Program Files\Fichiers communs\Ahead
[16/02/2002|04:59] C:\Program Files\Fichiers communs\DESIGNER
[13/03/2002|03:38] C:\Program Files\Fichiers communs\FDEUnInstaller.exe
[19/12/2007|17:46] C:\Program Files\Fichiers communs\i4j_jres
[07/11/2007|21:54] C:\Program Files\Fichiers communs\InstallShield
[24/03/2002|20:03] C:\Program Files\Fichiers communs\Java
[10/11/2007|11:44] C:\Program Files\Fichiers communs\LightScribe
[01/12/2007|17:05] C:\Program Files\Fichiers communs\Microsoft Shared
[16/02/2002|00:52] C:\Program Files\Fichiers communs\MSSoap
[13/03/2002|03:46] C:\Program Files\Fichiers communs\Nullsoft
[16/02/2002|00:55] C:\Program Files\Fichiers communs\ODBC
[13/03/2002|03:46] C:\Program Files\Fichiers communs\Real
[16/02/2002|00:52] C:\Program Files\Fichiers communs\Services
[16/02/2002|00:56] C:\Program Files\Fichiers communs\speechengines
[20/12/2007|10:57] C:\Program Files\Fichiers communs\System
[19/02/2008|11:38] C:\Program Files\Fichiers communs\WindowsLiveInstaller

----------------------[ Recherche avec S_Lop ]---------------------

C:\DOCUME~1\claudius\LOCALS~1\Temp\bis5A.exe

-----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Htm Support Bait Deaf
C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Htm Support Bait Deaf\enc part.exe

----------------------[ Verification du Registre ]----------------------

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"bait deaf idle setup"="C:\\Documents and Settings\\All Users.WINDOWS\\Application Data\\Htm Support Bait Deaf\\enc part.exe"

--------------------[ Verification du fichier Hosts ]---------------------

Fichier Hosts MODIFIE

127.0.0.1 bin.errorprotector.com ## added by CiD
127.0.0.1 br.errorsafe.com ## added by CiD
127.0.0.1 br.winantivirus.com ## added by CiD
127.0.0.1 br.winfixer.com ## added by CiD
127.0.0.1 cdn.drivecleaner.com ## added by CiD
127.0.0.1 cdn.errorsafe.com ## added by CiD
127.0.0.1 cdn.winsoftware.com ## added by CiD
127.0.0.1 de.errorsafe.com ## added by CiD
127.0.0.1 de.winantivirus.com ## added by CiD
127.0.0.1 download.cdn.drivecleaner.com ## added by CiD
127.0.0.1 download.cdn.errorsafe.com ## added by CiD
127.0.0.1 download.cdn.winsoftware.com ## added by CiD
127.0.0.1 download.errorsafe.com ## added by CiD
127.0.0.1 download.systemdoctor.com ## added by CiD
127.0.0.1 download.winantispyware.com ## added by CiD
127.0.0.1 download.windrivecleaner.com ## added by CiD
127.0.0.1 download.winfixer.com ## added by CiD
127.0.0.1 drivecleaner.com ## added by CiD
127.0.0.1 dynamique.drivecleaner.com ## added by CiD
127.0.0.1 errorprotector.com ## added by CiD
127.0.0.1 errorsafe.com ## added by CiD
127.0.0.1 es.winantivirus.com ## added by CiD
127.0.0.1 fr.winantivirus.com ## added by CiD
127.0.0.1 fr.winfixer.com ## added by CiD
127.0.0.1 go.drivecleaner.com ## added by CiD
127.0.0.1 go.errorsafe.com ## added by CiD
127.0.0.1 go.winantispyware.com ## added by CiD
127.0.0.1 go.winantivirus.com ## added by CiD
127.0.0.1 hk.winantivirus.com ## added by CiD
127.0.0.1 instlog.errorsafe.com ## added by CiD
127.0.0.1 instlog.winantivirus.com ## added by CiD
127.0.0.1 instlog.winfixer.com ## added by CiD
127.0.0.1 jsp.drivecleaner.com ## added by CiD
127.0.0.1 kb.errorsafe.com ## added by CiD
127.0.0.1 kb.winantivirus.com ## added by CiD
127.0.0.1 nl.errorsafe.com ## added by CiD
127.0.0.1 se.errorsafe.com ## added by CiD
127.0.0.1 secure.drivecleaner.com ## added by CiD
127.0.0.1 secure.errorsafe.com ## added by CiD
127.0.0.1 secure.winantispam.com ## added by CiD
127.0.0.1 secure.winantispy.com ## added by CiD
127.0.0.1 secure.winantivirus.com ## added by CiD
127.0.0.1 support.winantivirus.com ## added by CiD
127.0.0.1 trial.updates.winsoftware.com ## added by CiD
127.0.0.1 ulog.winantivirus.com ## added by CiD
127.0.0.1 utils.errorsafe.com ## added by CiD
127.0.0.1 utils.winantivirus.com ## added by CiD
127.0.0.1 utils.winfixer.com ## added by CiD
127.0.0.1 winantispyware.com ## added by CiD
127.0.0.1 winantivirus.com ## added by CiD
127.0.0.1 winfixer.com ## added by CiD
127.0.0.1 winfixer2006.com ## added by CiD
127.0.0.1 winsoftware.com ## added by CiD
127.0.0.1 www.drivecleaner.com ## added by CiD
127.0.0.1 www.errorprotector.com ## added by CiD
127.0.0.1 www.errorsafe.com ## added by CiD
127.0.0.1 www.systemdoctor.com ## added by CiD
127.0.0.1 www.utils.winfixer.com ## added by CiD
127.0.0.1 www.win-anti-virus-pro.com ## added by CiD
127.0.0.1 www.win-virus-pro.com ## added by CiD
127.0.0.1 www.winantispam.com ## added by CiD
127.0.0.1 www.winantispy.com ## added by CiD
127.0.0.1 www.winantispyware.com ## added by CiD
127.0.0.1 www.winantivirus.com ## added by CiD
127.0.0.1 www.winantiviruspro.com ## added by CiD
127.0.0.1 www.windrivecleaner.com ## added by CiD
127.0.0.1 www.windrivesafe.com ## added by CiD
127.0.0.1 www.winfixer.com ## added by CiD
127.0.0.1 www.winfixer2006.com ## added by CiD
127.0.0.1 www.winsoftware.com ## added by CiD

-> 72 ( 70 ## added by CiD )

/!\ 1 Not 127.0.0.1 !!

----------------[ Recherche de fichiers avec Catchme ]-----------------

catchme 0.3.1262 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-02-28 20:02:25
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden files ...
scan completed successfully
hidden files: 0

--------------------[ Recherche d'autres infections ]---------------------

Aucune autre infection trouvée !

/!\ [Fich:1776][Doss:66] C:\DOCUME~1\claudius\LOCALS~1\Temp
/!\ [Fich:1218][Doss:0] C:\DOCUME~1\claudius\Cookies
/!\ [Fich:15575][Doss:21] C:\DOCUME~1\claudius\LOCALS~1\TEMPOR~1\content.IE5

--------------------[ Fin du rapport a 20:04:32,43 ]----------------------

------------------------------ Vives Les Pâtes à La Carbo'
Répondre à Wamaaak

Voila..Merci De Ta réponse Sham_rock =D

Bizarre Les Fichier Hosts Avec Les Cid ... Mais Bon Je ne m'y connais Pas ^^

------------------------------ Vives Les Pâtes à La Carbo'
Répondre à Wamaaak

A demain..

------------------------------ Vives Les Pâtes à La Carbo'
Répondre à Wamaaak

bonsoir

1

Relance Lop S&D

  • Choisis cette fois ci l'Option 2 ( Suppression )

  • Ne ferme pas la fenêtre lors de la suppression !

  • Poste le rapport généré ( C:\lopR.txt )


( Si le Bureau ne réapparît pas presse Ctrl + Alt + Suppr , Onglet Fichier , Nouvelle tâche , tape explorer.exe et valide )

2

ajoute un nouveau log hijackthis

------------------------------ Prévention et protection
/!\Marre de la pub: Firefox sécurisé/!\
Répondre à Sham_Rock

Bonjour,

-----------------------------[ Lop S&D 4.0.0 ]---------------------------

[ Windows XP (NT 5.1) Build 2600, Service Pack 2 ]
[ USER : claudius ] [ "C:\Lop SD" ]
[ 29/02/2008 | 16:31:27,52 ] [ PC : GOD-70F1F15198F ]
[ MAJ : 26-02-2008 | 19:30 ]

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION /////////////////////////////

Supprimé! - C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Htm Support Bait Deaf\enc part.exe
Supprimé! - C:\DOCUME~1\claudius\LOCALS~1\Temp\bis5A.exe
Supprimé! - C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Htm Support Bait Deaf
Restauré! - Fichier Hosts

//////////////////////////////////////-\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\

Supprimé! - C:\Program Files\Viewpoint

//////////////////////////////////////-\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\


-------------[ Listing des dossiers dans Application Data ]------------

[15/02/2002|23:55] C:\DOCUME~1\ADMINI~1\APPLIC~1\.
[15/02/2002|23:55] C:\DOCUME~1\ADMINI~1\APPLIC~1\..
[15/02/2002|23:55] C:\DOCUME~1\ADMINI~1\APPLIC~1\desktop.ini
[16/02/2002|00:54] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft

[13/03/2002|03:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\.
[13/03/2002|03:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\..
[16/02/2002|01:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ACD Systems
[13/03/2002|03:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[24/03/2002|05:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\desktop.ini
[24/03/2002|05:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[13/03/2002|03:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[13/03/2002|03:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint

[29/02/2008|16:31] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\.
[29/02/2008|16:31] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\..
[03/02/2008|11:34] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Apple Computer
[24/03/2002|09:20] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\desktop.ini
[26/01/2008|18:48] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\GamesBar
[01/12/2007|12:52] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Google
[26/02/2008|18:51] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Messenger Plus!
[01/12/2007|17:04] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Microsoft
[10/11/2007|11:39] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Nero
[15/12/2007|16:52] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\PlayFirst
[01/12/2007|15:40] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\QuickTime
[11/08/2007|12:33] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Symantec
[25/01/2008|19:06] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\TEMP
[22/02/2008|21:07] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Ulead Systems
[10/02/2008|13:20] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Windows Genuine Advantage
[19/02/2008|11:14] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\WLInstaller

[22/02/2008|21:03] C:\DOCUME~1\claudius\APPLIC~1\.
[22/02/2008|21:03] C:\DOCUME~1\claudius\APPLIC~1\..
[07/02/2008|14:41] C:\DOCUME~1\claudius\APPLIC~1\Adobe
[10/11/2007|11:42] C:\DOCUME~1\claudius\APPLIC~1\Ahead
[07/11/2007|22:00] C:\DOCUME~1\claudius\APPLIC~1\ATI
[24/03/2002|09:20] C:\DOCUME~1\claudius\APPLIC~1\desktop.ini
[24/03/2002|20:05] C:\DOCUME~1\claudius\APPLIC~1\eu
[01/12/2007|15:30] C:\DOCUME~1\claudius\APPLIC~1\Google
[03/03/2007|20:22] C:\DOCUME~1\claudius\APPLIC~1\Help
[14/12/2007|19:32] C:\DOCUME~1\claudius\APPLIC~1\Home Sweet Home
[24/03/2002|08:54] C:\DOCUME~1\claudius\APPLIC~1\Identities
[01/12/2007|12:19] C:\DOCUME~1\claudius\APPLIC~1\InstallShield
[01/12/2007|12:52] C:\DOCUME~1\claudius\APPLIC~1\Macromedia
[10/02/2008|13:22] C:\DOCUME~1\claudius\APPLIC~1\Media Player Classic
[27/02/2008|10:17] C:\DOCUME~1\claudius\APPLIC~1\Microsoft
[24/03/2002|20:05] C:\DOCUME~1\claudius\APPLIC~1\Mozilla
[15/12/2007|16:52] C:\DOCUME~1\claudius\APPLIC~1\PlayFirst
[30/01/2008|13:22] C:\DOCUME~1\claudius\APPLIC~1\Shareaza
[24/03/2002|20:03] C:\DOCUME~1\claudius\APPLIC~1\Sun
[24/03/2002|22:24] C:\DOCUME~1\claudius\APPLIC~1\Symantec
[18/02/2008|18:31] C:\DOCUME~1\claudius\APPLIC~1\Talkback
[22/02/2008|21:03] C:\DOCUME~1\claudius\APPLIC~1\Ulead Systems

[15/02/2002|23:55] C:\DOCUME~1\DEFAUL~1\APPLIC~1\.
[15/02/2002|23:55] C:\DOCUME~1\DEFAUL~1\APPLIC~1\..
[24/03/2002|05:07] C:\DOCUME~1\DEFAUL~1\APPLIC~1\desktop.ini
[24/03/2002|05:21] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft

[24/03/2002|09:20] C:\DOCUME~1\DEFAUL~1.WIN\APPLIC~1\.
[24/03/2002|09:20] C:\DOCUME~1\DEFAUL~1.WIN\APPLIC~1\..
[24/03/2002|09:20] C:\DOCUME~1\DEFAUL~1.WIN\APPLIC~1\desktop.ini
[20/12/2007|10:45] C:\DOCUME~1\DEFAUL~1.WIN\APPLIC~1\Microsoft

[16/02/2002|01:01] C:\DOCUME~1\LOCALS~1\APPLIC~1\.
[16/02/2002|01:01] C:\DOCUME~1\LOCALS~1\APPLIC~1\..
[16/02/2002|00:54] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft

[24/03/2002|08:52] C:\DOCUME~1\LOCALS~1.AUT\APPLIC~1\.
[24/03/2002|08:52] C:\DOCUME~1\LOCALS~1.AUT\APPLIC~1\..
[24/03/2002|08:52] C:\DOCUME~1\LOCALS~1.AUT\APPLIC~1\Microsoft

[16/02/2002|01:01] C:\DOCUME~1\NETWOR~1\APPLIC~1\.
[16/02/2002|01:01] C:\DOCUME~1\NETWOR~1\APPLIC~1\..
[16/02/2002|00:54] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

[25/02/2007|08:35] C:\DOCUME~1\NETWOR~1.AUT\APPLIC~1\.
[25/02/2007|08:35] C:\DOCUME~1\NETWOR~1.AUT\APPLIC~1\..
[24/03/2002|08:51] C:\DOCUME~1\NETWOR~1.AUT\APPLIC~1\Microsoft
[25/02/2007|08:35] C:\DOCUME~1\NETWOR~1.AUT\APPLIC~1\Symantec

----------------[ Tâches planifiées dans C:\WINDOWS\tasks ]---------------

[22/02/2008 12:00][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[29/02/2008 16:25][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 13:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini

---------------[ Listing des dossiers dans C:\Program Files ]--------------

[29/02/2008|16:31] C:\Program Files\.
[29/02/2008|16:31] C:\Program Files\..
[26/03/2002|22:28] C:\Program Files\Adobe
[24/03/2002|22:13] C:\Program Files\Alawar
[11/08/2007|12:38] C:\Program Files\Alwil Software
[03/02/2008|11:34] C:\Program Files\Apple Software Update
[07/11/2007|21:55] C:\Program Files\ATI Technologies
[14/12/2007|19:08] C:\Program Files\Boonty
[25/01/2008|18:15] C:\Program Files\BoontyGames
[11/08/2007|15:18] C:\Program Files\Brutal Chess
[05/12/2007|20:20] C:\Program Files\Clavier+
[16/02/2002|00:50] C:\Program Files\ComPlus Applications
[19/12/2007|19:38] C:\Program Files\Dofus
[25/02/2007|08:50] C:\Program Files\DX-Ball
[11/08/2007|15:17] C:\Program Files\DXBall2
[19/02/2008|11:14] C:\Program Files\Fichiers communs
[08/02/2008|17:49] C:\Program Files\Gamenext
[26/03/2002|22:30] C:\Program Files\GigaByte
[01/12/2007|12:52] C:\Program Files\Google
[01/12/2007|12:20] C:\Program Files\Hercules
[22/02/2008|21:01] C:\Program Files\InstallShield Installation Information
[14/02/2008|21:28] C:\Program Files\Internet Explorer
[24/03/2002|20:03] C:\Program Files\Java
[01/12/2007|15:42] C:\Program Files\K-Lite Codec Pack
[13/03/2002|03:47] C:\Program Files\Learn2.com
[25/01/2008|12:56] C:\Program Files\LiveKillCleanMessenger
[27/02/2008|10:17] C:\Program Files\Macrogaming
[25/02/2008|20:30] C:\Program Files\Messenger Plus! Live
[24/03/2002|09:09] C:\Program Files\Microsoft Etudes
[16/02/2002|00:56] C:\Program Files\microsoft frontpage
[24/03/2002|22:19] C:\Program Files\Microsoft Office
[24/03/2002|22:19] C:\Program Files\Microsoft.NET
[03/02/2008|11:29] C:\Program Files\Mindscape
[24/03/2002|05:18] C:\Program Files\movie maker
[29/02/2008|16:27] C:\Program Files\Mozilla Firefox
[16/02/2002|01:53] C:\Program Files\mplayer
[24/03/2002|05:22] C:\Program Files\msn gaming zone
[25/02/2008|20:30] C:\Program Files\MSN Messenger
[29/01/2008|17:56] C:\Program Files\Msncolor
[20/12/2007|10:58] C:\Program Files\MSXML 6.0
[27/02/2008|10:17] C:\Program Files\Navilog1
[10/11/2007|11:39] C:\Program Files\Nero
[24/03/2002|05:18] C:\Program Files\NetMeeting
[24/03/2002|08:37] C:\Program Files\Online Services
[20/12/2007|10:57] C:\Program Files\Outlook Express
[30/12/2007|15:36] C:\Program Files\PhotoFiltre
[03/02/2008|11:35] C:\Program Files\QuickTime
[13/03/2002|03:46] C:\Program Files\Real
[16/02/2002|00:53] C:\Program Files\Services en ligne
[30/01/2008|13:23] C:\Program Files\Shareaza
[20/02/2008|10:19] C:\Program Files\Shareaza Applications
[28/02/2008|19:56] C:\Program Files\Trend Micro
[22/02/2008|21:01] C:\Program Files\Ulead Systems
[16/02/2002|01:55] C:\Program Files\Uninstall Information
[10/11/2007|17:38] C:\Program Files\Webteh
[25/02/2008|20:20] C:\Program Files\Windows Live
[08/02/2008|19:27] C:\Program Files\Windows Media Connect 2
[12/02/2008|12:47] C:\Program Files\windows media player
[24/03/2002|05:15] C:\Program Files\Windows NT
[20/02/2008|10:02] C:\Program Files\WindowsUpdate
[29/01/2008|18:27] C:\Program Files\WinRAR
[16/02/2002|00:56] C:\Program Files\xerox

------[ Listing des dossiers dans C:\Program Files\Fichiers communs ]------

[19/02/2008|11:14] C:\Program Files\Fichiers communs\.
[19/02/2008|11:14] C:\Program Files\Fichiers communs\..
[26/03/2002|22:28] C:\Program Files\Fichiers communs\Adobe
[10/11/2007|11:43] C:\Program Files\Fichiers communs\Ahead
[16/02/2002|04:59] C:\Program Files\Fichiers communs\DESIGNER
[13/03/2002|03:38] C:\Program Files\Fichiers communs\FDEUnInstaller.exe
[19/12/2007|17:46] C:\Program Files\Fichiers communs\i4j_jres
[07/11/2007|21:54] C:\Program Files\Fichiers communs\InstallShield
[24/03/2002|20:03] C:\Program Files\Fichiers communs\Java
[10/11/2007|11:44] C:\Program Files\Fichiers communs\LightScribe
[01/12/2007|17:05] C:\Program Files\Fichiers communs\Microsoft Shared
[16/02/2002|00:52] C:\Program Files\Fichiers communs\MSSoap
[13/03/2002|03:46] C:\Program Files\Fichiers communs\Nullsoft
[16/02/2002|00:55] C:\Program Files\Fichiers communs\ODBC
[13/03/2002|03:46] C:\Program Files\Fichiers communs\Real
[16/02/2002|00:52] C:\Program Files\Fichiers communs\Services
[16/02/2002|00:56] C:\Program Files\Fichiers communs\speechengines
[20/12/2007|10:57] C:\Program Files\Fichiers communs\System
[19/02/2008|11:38] C:\Program Files\Fichiers communs\WindowsLiveInstaller

----------------------[ Recherche avec S_Lop ]---------------------

Aucun fichier / dossier Lop trouvé !

-----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------

Aucun fichier / dossier Lop trouvé !

----------------------[ Verification du Registre ]----------------------

..... OK !

--------------------[ Verification du fichier Hosts ]---------------------

Fichier Hosts PROPRE


----------------[ Recherche de fichiers avec Catchme ]-----------------

catchme 0.3.1262 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-02-29 16:34:35
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden files ...
scan completed successfully
hidden files: 0

--------------------[ Recherche d'autres infections ]---------------------

Aucune autre infection trouvée !

/!\ [Fich:1774][Doss:66] C:\DOCUME~1\claudius\LOCALS~1\Temp
/!\ [Fich:1220][Doss:0] C:\DOCUME~1\claudius\Cookies
/!\ [Fich:15705][Doss:21] C:\DOCUME~1\claudius\LOCALS~1\TEMPOR~1\content.IE5

--------------------[ Fin du rapport a 16:37:02,84 ]----------------------

------------------------------ Vives Les Pâtes à La Carbo'
Répondre à Wamaaak

Ensuite je fais Quoi Avec hijackthis ? Pas Très Bien Compris...



PS: Normal Qu'Avast M'a Trouvé Un Cheval de Troie Pendant Le rapport De Lop ?

------------------------------ Vives Les Pâtes à La Carbo'
Répondre à Wamaaak

bonsoir

Citation :

Ensuite je fais Quoi Avec hijackthis ? Pas Très Bien Compris...



reposte un log hijackthis pour que je puisse vérifier stp

Citation :

PS: Normal Qu'Avast M'a Trouvé Un Cheval de Troie Pendant Le rapport De Lop ?



oui, ça arrive, ignore

------------------------------ Prévention et protection
/!\Marre de la pub: Firefox sécurisé/!\
Répondre à Sham_Rock

Re-Bonsoir

D'accord


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:40:01, on 29/02/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft Etudes\Microsoft Encarta 2007 - Études DVD\EDICT.EXE
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Clavier+\Clavier.exe
C:\Program Files\Shareaza\Shareaza.exe
C:\Program Files\Hercules\WiFi Station\WifiStation.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\pctspk.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\explorer.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Shareaza Web Download Hook - {0EEDB912-C5FA-486F-8334-57288578C627} - C:\Program Files\Shareaza\Plugins\RazaWebHook.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: BHO pour Compagnon Web Encarta - {955BE0B8-BC85-4CAF-856E-8E0D8B610560} - C:\Program Files\Fichiers communs\Microsoft Shared\Encarta Web Companion\2007\ENCWCBAR.DLL
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: Compagnon Web Encarta - {147D6308-0614-4112-89B1-31402F9B82C4} - C:\Program Files\Fichiers communs\Microsoft Shared\Encarta Web Companion\2007\ENCWCBAR.DLL
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [EasyTuneIII] C:\Program Files\GigaByte\EasyTune\EasyTune.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [L07FXLRD_187229] "C:\Program Files\Microsoft Etudes\Microsoft Encarta 2007 - Études DVD\EDICT.EXE" -m
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Clavier+] C:\Program Files\Clavier+\Clavier.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Barre d'état système d'ATI CATALYST.lnk = C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
O4 - Global Startup: WiFi Station.lnk = ?
O8 - Extra context menu item: Download with &Shareaza - res://C:\Program Files\Shareaza\Plugins\RazaWebHook.dll/3000
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Barre de recherche Encarta - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Fichiers communs\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/bina [...] b56986.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b56907.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe

--
End of file - 7364 bytes


Comme Ça ?.

------------------------------ Vives Les Pâtes à La Carbo'
Répondre à Wamaaak

re

~Télécharge Clean de Malekal

Enregistre-le sur ton bureau et dézippe-le
Cela va créer un dossier clean.
Double-clic sur ce dossier clean, tu y trouveras dedans plusieurs fichiers.
Double-clic sur clean.cmd.
Un menu va apparaître, choisis l'option 1 en appuyant sur la touche 1 de ton clavier.
Clean va travailler.
Poste le contenu du rapport généré en C:\rapport_clean.txt.

------------------------------ Prévention et protection
/!\Marre de la pub: Firefox sécurisé/!\
Répondre à Sham_Rock

Bonjour..

Je n'arrive Pas à aller sur le site de Malekal

Y'a t'il un autre Site ?

------------------------------ Vives Les Pâtes à La Carbo'
Répondre à Wamaaak

bonjour

tant pis

voilà ce que je te conseille:
tu vas remplacer Avast! par Antivir, qui lui est un vrai antivirus, tu vas faire un scan avec et poster le rapport. :)


Désinstalle correctement Avast!


Pour le remplacer par Antivir.

-->Tuto<--


Pourquoi changer ? : Avast! vs Antivir

------------------------------ Prévention et protection
/!\Marre de la pub: Firefox sécurisé/!\
Répondre à Sham_Rock

Dacodac Je suis En train De Télécharger Antivir ;)

------------------------------ Vives Les Pâtes à La Carbo'
Répondre à Wamaaak

Euuh..

J'ai fini le Scan mais je n'ai pas de rapport..

^^'

------------------------------ Vives Les Pâtes à La Carbo'
Répondre à Wamaaak

Sisi ^^

01.03.2008 14:47:54 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
01.03.2008 14:47:54 - Backup Directory: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\
01.03.2008 14:47:54 - Temp Directory: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\
01.03.2008 14:47:55 - Start the Update GUI... Displaymode: 0

01.03.2008 14:47:54 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
01.03.2008 14:47:54 - Backup Directory: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\
01.03.2008 14:47:54 - Temp Directory: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\
01.03.2008 14:47:55 - Start the Update GUI... Displaymode: 0

01.03.2008 14:48:00 - Keyfile: OK [FULL Mode]

01.03.2008 14:48:00 - Avira AntiVir PersonalEdition Classic

01.03.2008 14:48:03 - Master IDX file has changed
01.03.2008 14:48:15 - Keyfile: OK [FULL Mode]

01.03.2008 14:48:17 - Downloading the product.info file from http://dl1.avgate.net/upd/idx/classic-nt-en.info.gz
01.03.2008 14:48:38 - There was a problem updating from the specified server: Connection failed while downloading the file http://dl1.avgate.net/upd/idx/classic-nt-en.info.gz.
01.03.2008 14:48:38 - Switching to next update server
01.03.2008 14:48:59 - Connection failed while downloading the file http://dl2.avgate.net/upd/idx/master.idx.
01.03.2008 14:48:59 - Switching to next update server
01.03.2008 14:49:03 - Master IDX file has changed
01.03.2008 14:49:12 - Keyfile: OK [FULL Mode]

01.03.2008 14:49:12 - Downloading the product.info file from http://dl3.avgate.net/upd/idx/classic-nt-en.info.gz
01.03.2008 14:49:14 - File basic-nt/2k/avgntflt.sys's operating system doesn't match the current one. File ignored.
01.03.2008 14:49:14 - File basic-nt/avadmin.exe's operating system doesn't match the current one. File ignored.
01.03.2008 14:49:14 - File basic-nt/avgio64.sys's operating system doesn't match the current one. File ignored.
01.03.2008 14:49:14 - File basic-nt/imp64b.exe's operating system doesn't match the current one. File ignored.
01.03.2008 14:49:14 - File basic-nt/psapi.dll's operating system doesn't match the current one. File ignored.
01.03.2008 14:49:14 - File basic-nt/shlext64.dll's operating system doesn't match the current one. File ignored.
01.03.2008 14:49:14 - File basic-nt/vista64/avgntflt.sys's operating system doesn't match the current one. File ignored.
01.03.2008 14:49:14 - File basic-nt/wsctool.exe's operating system doesn't match the current one. File ignored.
01.03.2008 14:49:14 - File basic-nt/xp64/avgntflt.sys's operating system doesn't match the current one. File ignored.
01.03.2008 14:49:14 - File basic-nt/2k/avgntdd.sys's operating system doesn't match the current one. File ignored.
01.03.2008 14:49:14 - File basic-nt/2k/avgntmgr.sys's operating system doesn't match the current one. File ignored.
01.03.2008 14:49:14 - File basic-nt/nt/avgntdd.sys's operating system doesn't match the current one. File ignored.
01.03.2008 14:49:14 - File basic-nt/nt/avgntmgr.sys's operating system doesn't match the current one. File ignored.
01.03.2008 14:49:14 - File basic-nt/vista64/avgntflt.sys's operating system doesn't match the current one. File ignored.
01.03.2008 14:49:14 - Downloading the product.info file from http://dl3.avgate.net/upd/idx/vdf.info.gz
01.03.2008 14:49:19 - Keyfile: OK [FULL Mode]

01.03.2008 14:49:19 - Downloading the product.info file from http://dl3.avgate.net/upd/idx/specvir-nt.info.gz
01.03.2008 14:49:19 - Downloading the product.info file from http://dl3.avgate.net/upd/idx/engine.info.gz
01.03.2008 14:49:20 - Downloading the product.info file from http://dl3.avgate.net/upd/idx/engine-nt-en.info.gz
01.03.2008 14:49:21 - Module: SELFUPDATE Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 15
01.03.2008 14:49:21 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlib.dll 1.2.10.20 < 1.2.10.21
01.03.2008 14:49:21 - Module: MAIN Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 75
01.03.2008 14:49:21 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe 7.2.0.12 < 7.2.0.14
01.03.2008 14:49:21 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe 7.2.0.13 < 7.2.0.16
01.03.2008 14:49:21 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe 7.0.0.81 < 7.0.0.82
01.03.2008 14:49:22 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccguard.dll 7.0.1.34 < 7.0.1.35
01.03.2008 14:49:22 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\preupd.exe 7.0.0.34 < 7.0.0.36
01.03.2008 14:49:22 - Module: COMMAPPDATA Source: winwks\en\ Destination: C:\Documents and Settings\All Users.WINDOWS\Application Data\ Files: 1
01.03.2008 14:49:22 - Module: TEXT Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 3
01.03.2008 14:49:22 - Module: VDF Source: vdf\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 4
01.03.2008 14:49:23 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir1.vdf 7.0.0.0 < 7.0.1.95
01.03.2008 14:49:23 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir2.vdf 7.0.0.1 < 7.0.2.181
01.03.2008 14:49:23 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir3.vdf 7.0.0.2 < 7.0.2.215
01.03.2008 14:49:23 - Module: AVREP_NT Source: engine\nt\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
01.03.2008 14:49:23 - Module: ENGINE Source: engine\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 2
01.03.2008 14:49:23 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avewin32.dll 7.6.0.15 < 7.6.0.73
01.03.2008 14:49:23 - Module: ENGINE_NT_EN Source: engine\nt\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
01.03.2008 14:49:23 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avpack32.dll 7.3.0.15 < 7.6.0.3
01.03.2008 14:49:23 - Module: DRV Source: winwks\en\ Destination: C:\WINDOWS\SYSTEM32\drivers\ Files: 4
01.03.2008 14:49:23 - C:\WINDOWS\SYSTEM32\drivers\avipbb.sys 1.0.2.11 < 1.0.2.13
01.03.2008 14:49:23 - Minifilter is installed

01.03.2008 14:49:23 - Minifilter is possible

01.03.2008 14:49:23 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | FilterType

01.03.2008 14:49:23 - Initialize avnotify.exe

01.03.2008 14:49:23 - Starting avnotify.exe successful

01.03.2008 14:49:23 - Preparing to download files
01.03.2008 14:49:23 - 13 files need to be downloaded / copied from http://dl3.avgate.net/upd/
01.03.2008 14:49:23 - #1: Downloading and extracting http://dl3.avgate.net/upd/winwks/e [...] lib.dll.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\basic-nt/updlib.dll
01.03.2008 14:49:30 - #2: Downloading and extracting http://dl3.avgate.net/upd/winwks/e [...] ter.exe.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\basic-nt/avcenter.exe
01.03.2008 14:49:39 - #3: Downloading and extracting http://dl3.avgate.net/upd/winwks/e [...] gnt.exe.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\basic-nt/avgnt.exe
01.03.2008 14:49:44 - #4: Downloading and extracting http://dl3.avgate.net/upd/winwks/e [...] ard.exe.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\basic-nt/avguard.exe
01.03.2008 14:49:47 - #5: Downloading and extracting http://dl3.avgate.net/upd/winwks/e [...] ard.dll.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\basic-nt/ccguard.dll
01.03.2008 14:49:54 - #6: Downloading and extracting http://dl3.avgate.net/upd/winwks/e [...] upd.exe.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\basic-nt/preupd.exe
01.03.2008 14:49:56 - #7: Downloading and extracting http://dl3.avgate.net/upd/winwks/e [...] le.html.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\basic-nt/addr_file.html
01.03.2008 14:49:56 - #8: Downloading and extracting http://dl3.avgate.net/upd/vdf/antivir1.vdf.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\vdf\antivir1.vdf
01.03.2008 14:51:48 - #9: Downloading and extracting http://dl3.avgate.net/upd/vdf/antivir2.vdf.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\vdf\antivir2.vdf
01.03.2008 14:53:12 - #10: Downloading and extracting http://dl3.avgate.net/upd/vdf/antivir3.vdf.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\vdf\antivir3.vdf
01.03.2008 14:53:17 - #11: Downloading and extracting http://dl3.avgate.net/upd/engine/avewin32.dll.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\engine\avewin32.dll
01.03.2008 14:54:25 - #12: Downloading and extracting http://dl3.avgate.net/upd/engine/nt/avpack32.dll.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\engine\nt\avpack32.dll
01.03.2008 14:54:32 - #13: Downloading and extracting http://dl3.avgate.net/upd/winwks/e [...] pbb.sys.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\basic-nt/avipbb.sys
01.03.2008 14:54:48 - Service AVEService is not installed

01.03.2008 14:54:48 - Service AntiVirMailService is not installed

01.03.2008 14:54:48 - Initialize fwinst.exe

01.03.2008 14:54:48 - Initialize fwinst.exe

01.03.2008 14:54:48 - Service AntiVirFirewallService is not installed

01.03.2008 14:54:48 - Service antivirwebservice is not installed

01.03.2008 14:54:48 - Status of service AntiVirService is running

01.03.2008 14:54:48 - Initialize avgnt.exe

01.03.2008 14:54:48 - Status of service AntiVirScheduler is running

01.03.2008 14:54:48 - Minifilter is installed

01.03.2008 14:54:48 - Minifilter is possible

01.03.2008 14:54:48 - Initialize avscan.exe

01.03.2008 14:54:48 - Initialize avconfig.cpl

01.03.2008 14:54:48 - Initialize avcenter.exe

01.03.2008 14:54:48 - shell extension is installed

01.03.2008 14:54:48 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | RootkitsInstalled

01.03.2008 14:54:48 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | RootkitsInstalled

01.03.2008 14:54:48 - Service AVEService is not installed

01.03.2008 14:54:48 - Service AntiVirMailService is not installed

01.03.2008 14:54:48 - Initialize fwinst.exe

01.03.2008 14:54:48 - Initialize fwinst.exe

01.03.2008 14:54:48 - Service AntiVirFirewallService is not installed

01.03.2008 14:54:48 - shell extension is installed

01.03.2008 14:54:48 - Initialize regsvr32.exe

01.03.2008 14:54:49 - shell extension removed successfully

01.03.2008 14:54:49 - avgnt.exe closed.

01.03.2008 14:54:49 - Status of service AntiVirScheduler is running

01.03.2008 14:54:49 - Service AntiVirScheduler successfully stopped

01.03.2008 14:54:49 - Status of service AntiVirService is running

01.03.2008 14:54:51 - Service AntiVirService successfully stopped

01.03.2008 14:54:51 - Starting to install
01.03.2008 14:54:51 - Processing module SELFUPDATE Source: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
01.03.2008 14:54:52 - Current Direcory:C:\Program Files\Avira\AntiVir PersonalEdition Classic, About to execute C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\SelfUpdateTemp\update.exe --log-template="${DAY}.${MONTH}.${YEAR} ${HOUR}:${MINUTE}:${SECOND} - ${MSG}".Self Update helper
01.03.2008 14:54:56 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
01.03.2008 14:54:56 - Backup Directory: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\
01.03.2008 14:54:56 - Temp Directory: C:\WINDOWS\TEMP\Update_Temp\
01.03.2008 14:54:56 - Avira AntiVir PersonalEdition Classic

01.03.2008 14:54:56 - Self update: Copying file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\basic-nt/updlib.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlib.dll
01.03.2008 14:54:56 - Executing original update application
01.03.2008 14:54:56 - Current Direcory:C:\Program Files\Avira\AntiVir PersonalEdition Classic, About to execute C:\Program Files\Avira\AntiVir PersonalEdition Classic\update.exe --config-file="C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\update.conf" --install-path="C:\Program Files\Avira\AntiVir PersonalEdition Classic" --log-template="${DAY}.${MONTH}.${YEAR} ${HOUR}:${MINUTE}:${SECOND} - ${MSG}" --NoSelfUpdate "--TmpDir=C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a" "--LogFile=C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\LOGFILES\Upd-2008-03-01-14-47-54.log" "--TmpFilesList=C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\ToRemove.txt".Executing original update application
01.03.2008 14:54:58 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
01.03.2008 14:54:58 - Backup Directory: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\
01.03.2008 14:54:58 - Temp Directory: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\
01.03.2008 14:54:58 - Start the Update GUI... Displaymode: 0

01.03.2008 14:54:58 - Avira AntiVir PersonalEdition Classic

01.03.2008 14:54:58 - Master IDX file has changed
01.03.2008 14:54:58 - File basic-nt/2k/avgntflt.sys's operating system doesn't match the current one. File ignored.
01.03.2008 14:54:58 - File basic-nt/avadmin.exe's operating system doesn't match the current one. File ignored.
01.03.2008 14:54:58 - File basic-nt/avgio64.sys's operating system doesn't match the current one. File ignored.
01.03.2008 14:54:58 - File basic-nt/imp64b.exe's operating system doesn't match the current one. File ignored.
01.03.2008 14:54:58 - File basic-nt/psapi.dll's operating system doesn't match the current one. File ignored.
01.03.2008 14:54:58 - File basic-nt/shlext64.dll's operating system doesn't match the current one. File ignored.
01.03.2008 14:54:58 - File basic-nt/vista64/avgntflt.sys's operating system doesn't match the current one. File ignored.
01.03.2008 14:54:58 - File basic-nt/wsctool.exe's operating system doesn't match the current one. File ignored.
01.03.2008 14:54:58 - File basic-nt/xp64/avgntflt.sys's operating system doesn't match the current one. File ignored.
01.03.2008 14:54:58 - File basic-nt/2k/avgntdd.sys's operating system doesn't match the current one. File ignored.
01.03.2008 14:54:58 - File basic-nt/2k/avgntmgr.sys's operating system doesn't match the current one. File ignored.
01.03.2008 14:54:58 - File basic-nt/nt/avgntdd.sys's operating system doesn't match the current one. File ignored.
01.03.2008 14:54:58 - File basic-nt/nt/avgntmgr.sys's operating system doesn't match the current one. File ignored.
01.03.2008 14:54:58 - File basic-nt/vista64/avgntflt.sys's operating system doesn't match the current one. File ignored.
01.03.2008 14:54:58 - Downloading the product.info file from http://dl1.avgate.net/upd/idx/vdf.info.gz
01.03.2008 14:54:58 - Downloading the product.info file from http://dl1.avgate.net/upd/idx/specvir-nt.info.gz
01.03.2008 14:54:58 - Downloading the product.info file from http://dl1.avgate.net/upd/idx/engine.info.gz
01.03.2008 14:54:58 - Downloading the product.info file from http://dl1.avgate.net/upd/idx/engine-nt-en.info.gz
01.03.2008 14:54:58 - Module: SELFUPDATE Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 15
01.03.2008 14:54:58 - Module: MAIN Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 75
01.03.2008 14:54:59 - Module: COMMAPPDATA Source: winwks\en\ Destination: C:\Documents and Settings\All Users.WINDOWS\Application Data\ Files: 1
01.03.2008 14:54:59 - Module: TEXT Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 3
01.03.2008 14:54:59 - Module: VDF Source: vdf\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 4
01.03.2008 14:54:59 - Module: AVREP_NT Source: engine\nt\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
01.03.2008 14:54:59 - Module: ENGINE Source: engine\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 2
01.03.2008 14:54:59 - Module: ENGINE_NT_EN Source: engine\nt\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
01.03.2008 14:54:59 - Module: DRV Source: winwks\en\ Destination: C:\WINDOWS\SYSTEM32\drivers\ Files: 4
01.03.2008 14:54:59 - Minifilter is installed

01.03.2008 14:54:59 - Minifilter is possible

01.03.2008 14:54:59 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | FilterType

01.03.2008 14:54:59 - Preparing to download files
01.03.2008 14:54:59 - 12 files need to be downloaded / copied from http://dl1.avgate.net/upd/
01.03.2008 14:54:59 - File C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\basic-nt\avcenter.exe.gz already exists in temporary folder and it will not be downloaded again
01.03.2008 14:54:59 - File C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\basic-nt\avgnt.exe.gz already exists in temporary folder and it will not be downloaded again
01.03.2008 14:54:59 - File C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\basic-nt\avguard.exe.gz already exists in temporary folder and it will not be downloaded again
01.03.2008 14:55:00 - File C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\basic-nt\ccguard.dll.gz already exists in temporary folder and it will not be downloaded again
01.03.2008 14:55:00 - File C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\basic-nt\preupd.exe.gz already exists in temporary folder and it will not be downloaded again
01.03.2008 14:55:00 - File C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\basic-nt\addr_file.html.gz already exists in temporary folder and it will not be downloaded again
01.03.2008 14:55:00 - File C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\vdf\antivir1.vdf.gz already exists in temporary folder and it will not be downloaded again
01.03.2008 14:55:00 - File C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\vdf\antivir2.vdf.gz already exists in temporary folder and it will not be downloaded again
01.03.2008 14:55:00 - File C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\vdf\antivir3.vdf.gz already exists in temporary folder and it will not be downloaded again
01.03.2008 14:55:00 - File C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\engine\avewin32.dll.gz already exists in temporary folder and it will not be downloaded again
01.03.2008 14:55:00 - File C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\engine\nt\avpack32.dll.gz already exists in temporary folder and it will not be downloaded again
01.03.2008 14:55:00 - File C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\basic-nt\avipbb.sys.gz already exists in temporary folder and it will not be downloaded again
01.03.2008 14:55:00 - Starting to install
01.03.2008 14:55:01 - Processing module MAIN Source: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
01.03.2008 14:55:01 - File C:\Documents and Settings\All Users.WINDOWS\Application Data\addr_file.html will not be backed up because it doesn't exist
01.03.2008 14:55:01 - Processing module COMMAPPDATA Source: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\ Destination: C:\Documents and Settings\All Users.WINDOWS\Application Data\
01.03.2008 14:55:01 - Processing module VDF Source: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\vdf\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
01.03.2008 14:55:02 - Processing module ENGINE Source: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\engine\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
01.03.2008 14:55:03 - Processing module ENGINE_NT_EN Source: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\engine\nt\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
01.03.2008 14:55:03 - Processing module DRV Source: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47c95e8a\winwks\en\ Destination: C:\WINDOWS\SYSTEM32\drivers\
01.03.2008 14:55:03 - A total of 12 files were updated
01.03.2008 14:55:08 - Registry entry created successfully: Software\Avira\AntiVir PersonalEdition Classic |UpdateInProgress

01.03.2008 14:55:08 - Service AVEService is not installed

01.03.2008 14:55:08 - Service AntiVirMailService is not installed

01.03.2008 14:55:08 - Initialize fwinst.exe

01.03.2008 14:55:08 - Initialize fwinst.exe

01.03.2008 14:55:08 - Service AntiVirFirewallService is not installed

01.03.2008 14:55:08 - Service antivirwebservice is not installed

01.03.2008 14:55:08 - Status of service AntiVirService is stopped

01.03.2008 14:55:08 - Initialize avgnt.exe

01.03.2008 14:55:08 - Status of service AntiVirScheduler is stopped

01.03.2008 14:55:08 - Minifilter is installed

01.03.2008 14:55:08 - Minifilter is possible

01.03.2008 14:55:08 - Initialize avscan.exe

01.03.2008 14:55:08 - Initialize avconfig.cpl

01.03.2008 14:55:08 - Initialize avcenter.exe

01.03.2008 14:55:08 - shell extension is installed

01.03.2008 14:55:08 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | RootkitsInstalled

01.03.2008 14:55:08 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | RootkitsInstalled

01.03.2008 14:55:19 - Service AntiVirService successfully started

01.03.2008 14:55:20 - Starting avgnt.exe successful

01.03.2008 14:55:23 - Service AntiVirScheduler successfully started

01.03.2008 14:55:23 - shell extension is installed

01.03.2008 14:55:23 - Initialize regsvr32.exe

01.03.2008 14:55:24 - installation of shell extension successful

01.03.2008 14:55:24 - Cannot start the service antivirwebservice

01.03.2008 14:55:24 - Dialup: 0

01.03.2008 14:55:24 - Downloaded bytes: 7661768

01.03.2008 14:55:24 - Downloaded file(s): 13

01.03.2008 14:55:24 - Downloaded file(s): updlib.dll; avcenter.exe; avgnt.exe; avguard.exe; ccguard.dll; preupd.exe; addr_file.html; antivir1.vdf; antivir2.vdf; antivir3.vdf; avewin32.dll; avpack32.dll; avipbb.sys

01.03.2008 14:55:24 - Engine version local : 7.6.0.15

01.03.2008 14:55:24 - Engine version internet: 7.6.0.73

01.03.2008 14:55:24 - 0. VDF version local : 6.40.0.0

01.03.2008 14:55:24 - 0. VDF version internet: 6.40.0.0

01.03.2008 14:55:24 - 1. VDF version local : 7.0.0.0

01.03.2008 14:55:24 - 1. VDF version internet: 7.0.1.95

01.03.2008 14:55:24 - 2. VDF version local : 7.0.0.1

01.03.2008 14:55:24 - 2. VDF version internet: 7.0.2.181

01.03.2008 14:55:24 - 3. VDF version local : 7.0.0.2

01.03.2008 14:55:24 - 3. VDF version internet: 7.0.2.215

01.03.2008 14:55:24 - Required time: 00:26

01.03.2008 14:55:24 - Registry entry created successfully: Software\Avira\AntiVir PersonalEdition Classic |LastUpdate

01.03.2008 14:55:25 - Update finished successfully

------------------------------ Vives Les Pâtes à La Carbo'
Répondre à Wamaaak

C'est Fini alors ?

Si Oui Je te remercie Du Fond Du Coeur :D

Merci, merci merci..!

------------------------------ Vives Les Pâtes à La Carbo'
Répondre à Wamaaak

bonsoir

tu t'es trompé, ce n'est pas un rapport de scan ;O)
lis ce tuto
http://www.malekal.com/tutorial_antivir.php
et regarde dans l'onglet "report"

------------------------------ Prévention et protection
/!\Marre de la pub: Firefox sécurisé/!\
Répondre à Sham_Rock

Desolée du retard ;)

C'est Ca ?

AntiVir PersonalEdition Classic
Report file date: jeudi 6 mars 2008 11:31

Scanning for 1133894 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Username: claudius
Computer name: GOD-70F1F15198F

Version information:
BUILD.DAT : 270 15603 Bytes 19/09/2007 13:32:00
AVSCAN.EXE : 7.0.6.1 290856 Bytes 23/08/2007 13:16:29
AVSCAN.DLL : 7.0.6.0 49192 Bytes 16/08/2007 12:23:51
LUKE.DLL : 7.0.5.3 147496 Bytes 14/08/2007 15:32:47
LUKERES.DLL : 7.0.6.1 10280 Bytes 21/08/2007 12:35:20
ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 14:27:15
ANTIVIR1.VDF : 7.0.1.95 3367424 Bytes 14/12/2007 13:55:02
ANTIVIR2.VDF : 7.0.2.181 1993728 Bytes 24/02/2008 13:55:02
ANTIVIR3.VDF : 7.0.2.237 183808 Bytes 05/03/2008 17:46:29
AVEWIN32.DLL : 7.6.0.73 3334656 Bytes 01/03/2008 13:55:03
AVWINLL.DLL : 1.0.0.7 14376 Bytes 26/02/2007 10:36:26
AVPREF.DLL : 7.0.2.2 25640 Bytes 18/07/2007 07:39:17
AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 13:16:24
AVPACK32.DLL : 7.6.0.3 360488 Bytes 01/03/2008 13:55:03
AVREG.DLL : 7.0.1.6 30760 Bytes 18/07/2007 07:17:06
AVARKT.DLL : 1.0.0.20 278568 Bytes 28/08/2007 12:26:33
AVEVTLOG.DLL : 7.0.0.20 86056 Bytes 18/07/2007 07:10:18
NETNT.DLL : 7.0.0.0 7720 Bytes 08/03/2007 11:09:42
RCIMAGE.DLL : 7.0.1.30 2342952 Bytes 07/08/2007 12:38:13
RCTEXT.DLL : 7.0.62.0 86056 Bytes 21/08/2007 12:50:37
SQLITE3.DLL : 3.3.17.1 339968 Bytes 23/07/2007 09:37:21

Configuration settings for the scan:
Jobname..........................: My Documents
Configuration file...............: c:\program files\avira\antivir personaledition classic\mydocs.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: off
Scan boot sector.................: on
Boot sectors.....................: C:,
Scan memory......................: on
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: jeudi 6 mars 2008 11:31

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'usnsvc.exe' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'pctspk.exe' - '1' Module(s) have been scanned
Scan process 'LSSrvc.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'WiFiStation.exe' - '1' Module(s) have been scanned
Scan process 'CLI.exe' - '1' Module(s) have been scanned
Scan process 'Shareaza.exe' - '1' Module(s) have been scanned
Scan process 'Clavier.exe' - '1' Module(s) have been scanned
Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
Scan process 'GoogleToolbarNotifier.exe' - '1' Module(s) have been scanned
Scan process 'EDICT.EXE' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'qttask.exe' - '1' Module(s) have been scanned
Scan process 'CLI.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
38 processes with 38 modules were scanned

Start scanning boot sectors:
Boot sector 'C:\'
[NOTE] No virus was found!

Starting to scan the registry.
The registry was scanned ( '34' files ).


Starting the file scan:

Begin scan in 'C:\Documents and Settings\claudius\Mes documents'


End of the scan: jeudi 6 mars 2008 11:33
Used time: 01:54 min

The scan has been done completely.

53 Scanning directories
1028 Files were scanned
0 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
0 files were moved to quarantine
0 files were renamed
0 Files cannot be scanned
1028 Files not concerned
0 Archives were scanned
0 Warnings
0 Notes

------------------------------ Vives Les Pâtes à La Carbo'
Répondre à Wamaaak

bonjour

encore des soucis?

------------------------------ Prévention et protection
/!\Marre de la pub: Firefox sécurisé/!\
Répondre à Sham_Rock

Non Du tout :D


Merci Infiniment

Répondre à Wamaaak

bien ;O)

Supprime tous les programmes installés pour la désinfection.


Merci de consulter ce dossier (en pdf) pour en connaître davantage sur les risques du Net.

http://www.malekal.com/fichiers/projetantimalwares/reagir_miniban.gif

Si tu trouves ce document intéressant, n'hésite pas à le transmettre à tes contacts.

~Edite ton premier message (en cliquant sur la gomme) et marque [résolu] dans le titre.

:hello:

------------------------------ Prévention et protection
/!\Marre de la pub: Firefox sécurisé/!\
Répondre à Sham_Rock

Merci Beaucoup :D

J'ai Tout Supprimé Comme tu Ma Dit ;)

------------------------------ Vives Les Pâtes à La Carbo'
Répondre à Wamaaak

;)

------------------------------ Vives Les Pâtes à La Carbo'
Répondre à Wamaaak
Tom's Guide > Forum > Sécurité - Virus > Publicités CID Envahissantes Malgrès Tout [ RESOLU]
Aller à :

Il y a 372 utilisateurs connus et inconnus. Pour voir la liste des connectés connus, cliquez ici.

Attention

Vous allez répondre sur un sujet resté inactif pendant plus de 6 mois.
Assurez-vous d'apporter des éléments nouveaux à la discussion avant de poursuivre.

Répondre Annuler
Liens