Actualité informatique
Test comparatif matériel informatique
Jeux vidéo
Astuces informatique
Vidéo
Télécharger
Services en ligne
Forum informatique
01Business



|||-  

virus trojan downloader Adware.Look2Me [RESOLU]

 

Ajouter une réponse
 

 
Page photos
 
     
Vider la liste des messages à citer
 
 Page :
1
Auteur
 Sujet :

virus trojan downloader Adware.Look2Me [RESOLU]

Prévenir les modérateurs en cas d'abus 
Lhana
lhana
Présent de temps en temps (De 50 à 99 messages postés)
  1. Posté le 05/10/2005 à 18:29:42  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Bonjour,

 Mon ordinateur s'est reinfécter de virus , voici le rapport d'analyse de symantec security , pouvez vous m'aider svp?
 44751 files scanned, 70 file(s) infected on your disk drives.


 No viruses were detected in memory.

 Your computer is free of known threats.  Virus Detection does not check compressed files.

 Your computer appears safe for now.  For real-time protection from viruses, hackers and privacy threats, upgrade to Norton Internet Security™.

 No viruses were detected in memory.

 The scan was cancelled before finishing. To restart the scan, click here.

 Your computer is free of known threats.  Virus Detection does not check compressed files.

 Your computer appears safe for now.  For real-time protection from viruses, hackers and privacy threats, upgrade to Norton Internet Security™.

 Search for the name of the threat(s) listed below on the Symantec Security Response site for removal information.

 Warning! The scan detected a virus that is active in your computer's memory.
 The scan ended to prevent further infection.

 You should shut down your computer immediately and restart it with an antivirus rescue disk or similar tool.


 No viruses were detected in memory.

 Your computer is infected with at least one known virus or Trojan horse.

 Search for the name of the threat(s) listed below on the Symantec Security Response site for removal information.


 No viruses were detected in memory.

 Your computer is infected with at least one known virus or Trojan horse.

 Note: The scan was cancelled before finishing. There may be more infected files on this computer.

 Search for the name of the threat(s) listed below on the Symantec Security Response site for removal information.


 A scan has not been run. To start Virus Detection, click here.

 c:\Program Files\SurfAccuracy\SAccU.exe is infected with Adware.SurfAccuracy
 c:\Program Files\HbTools\bin\4.6.4.0\HbtH​ostOE.dll is infected with Adware.Hotbar
 c:\_RESTORE\TEMP\MSC30.0 is infected with Adware.Look2Me
 c:\_RESTORE\TEMP\OHTWA400.0 is infected with Adware.Look2Me
 c:\WINDOWS\Temporary Internet Files\Content.IE5\IFG2GJFU\cou​nt[1].jar is infected with Trojan.ByteVerify
 c:\WINDOWS\Temporary Internet Files\Content.IE5\1QUCQ78Q\cou​nt[1].jar is infected with Trojan.ByteVerify
 c:\WINDOWS\SYSTEM\DQCPROP.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\onbccu32.dll is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\NLWRSESM.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\AZV02W9X.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\MQC30.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\IMWDIAL.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\MPRECR40.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\QMARTZ.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\WQPDINFO.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\SFMSETUP.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\NVTBIOS.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\JXEG1X32.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\TPD32.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\XHILEXR.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\WHNG32.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\CN7XXW9X.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\CMTDLL.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\MOXBDE40.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\OWBCINT.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\APR_CPL.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\WELP32T.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\stleay32.dll is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\LPEXPAND.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\SALSRV32.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\CHL3D.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\CDICONFG.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\IG1X329X.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\NBRSCS.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\SYIW9X.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\UANP.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\QKVD.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\mtc71.dll is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\DHVENUM.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\PHPD.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\mOpi32x.dll is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\BIseball.dll is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\WR5INF16.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\OFTWA400.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\MPPMSP.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\DMTMETA.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\ER.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\CCMNCTR.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\DCIP32.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\UHER32.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\ABSTREAM.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\PHNMAP.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\DQTACLEN.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\SKTUP4.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\DRNIM.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\KDUSER.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\ixfxres.dll is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\JQT.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\DDOUND.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\WEASTATD.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\RYCLTS5.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\AJV01W9X.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\NDRSRU.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\NMWRSPTB.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\JVT.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\MQIEFTP.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\NIRSDE.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\MUXML.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\RACLTC3.DLL is infected with Adware.Look2Me
 c:\WINDOWS\SYSTEM\WCASTATD.DLL is infected with Adware.Look2Me




 Merci d'avance

gchris
Débutant confirmé (de 1 000 à 4 999 messages postés)
  1. Posté le 05/10/2005 à 19:04:42  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Désactive la restauration automatique du système. Si tu ne sais pas comment faire, regarde la:
 
 -Pour xp: http://www.libellules.ch/desac [...] ration.php
 
 -Pour Millenium : http://service1.symantec.com/S [...] 0091903924
 ---

 Panneau de configuration -> ajout/suppression de programmes :

 SurfAccuracy -> Désinstaller si présent.
 HbTools -> Désinstaller si présent.
 ---

 -Télécharge : Pocket KillBox
 -Décompresses-le (clic droit -> extraire tout)

 Crée un fichier texte (bloc note) et colle ceci à l'interrieur :

 



c:\WINDOWS\SYSTEM\DQCPROP.DLL
 c:\WINDOWS\SYSTEM\onbccu32.dll
 c:\WINDOWS\SYSTEM\NLWRSESM.DLL
 c:\WINDOWS\SYSTEM\AZV02W9X.DLL
 c:\WINDOWS\SYSTEM\MQC30.DLL
 c:\WINDOWS\SYSTEM\IMWDIAL.DLL
 c:\WINDOWS\SYSTEM\MPRECR40.DLL
 c:\WINDOWS\SYSTEM\QMARTZ.DLL
 c:\WINDOWS\SYSTEM\WQPDINFO.DLL
 c:\WINDOWS\SYSTEM\SFMSETUP.DLL
 c:\WINDOWS\SYSTEM\NVTBIOS.DLL
 c:\WINDOWS\SYSTEM\JXEG1X32.DLL
 c:\WINDOWS\SYSTEM\TPD32.DLL
 c:\WINDOWS\SYSTEM\XHILEXR.DLL
 c:\WINDOWS\SYSTEM\WHNG32.DLL
 c:\WINDOWS\SYSTEM\CN7XXW9X.DLL
 c:\WINDOWS\SYSTEM\CMTDLL.DLL
 c:\WINDOWS\SYSTEM\MOXBDE40.DLL
 c:\WINDOWS\SYSTEM\OWBCINT.DLL
 c:\WINDOWS\SYSTEM\APR_CPL.DLL
 c:\WINDOWS\SYSTEM\WELP32T.DLL
 c:\WINDOWS\SYSTEM\stleay32.dll
 c:\WINDOWS\SYSTEM\LPEXPAND.DLL
 c:\WINDOWS\SYSTEM\SALSRV32.DLL
 c:\WINDOWS\SYSTEM\CHL3D.DLL
 c:\WINDOWS\SYSTEM\CDICONFG.DLL
 c:\WINDOWS\SYSTEM\NBRSCS.DLL
 c:\WINDOWS\SYSTEM\SYIW9X.DLL
 c:\WINDOWS\SYSTEM\UANP.DLL
 c:\WINDOWS\SYSTEM\QKVD.DLL
 c:\WINDOWS\SYSTEM\mtc71.dll
 c:\WINDOWS\SYSTEM\DHVENUM.DLL
 c:\WINDOWS\SYSTEM\PHPD.DLL
 c:\WINDOWS\SYSTEM\mOpi32x.dll
 c:\WINDOWS\SYSTEM\BIseball.dll
 c:\WINDOWS\SYSTEM\WR5INF16.DLL
 c:\WINDOWS\SYSTEM\OFTWA400.DLL
 c:\WINDOWS\SYSTEM\MPPMSP.DLL
 c:\WINDOWS\SYSTEM\DMTMETA.DLL
 c:\WINDOWS\SYSTEM\ER.DLL
 c:\WINDOWS\SYSTEM\CCMNCTR.DLL
 c:\WINDOWS\SYSTEM\DCIP32.DLL
 c:\WINDOWS\SYSTEM\UHER32.DLL
 c:\WINDOWS\SYSTEM\ABSTREAM.DLL
 c:\WINDOWS\SYSTEM\PHNMAP.DLL
 c:\WINDOWS\SYSTEM\DQTACLEN.DLL
 c:\WINDOWS\SYSTEM\SKTUP4.DLL
 c:\WINDOWS\SYSTEM\DRNIM.DLL
 c:\WINDOWS\SYSTEM\KDUSER.DLL
 c:\WINDOWS\SYSTEM\ixfxres.dll
 c:\WINDOWS\SYSTEM\JQT.DLL
 c:\WINDOWS\SYSTEM\DDOUND.DLL
 c:\WINDOWS\SYSTEM\WEASTATD.DLL
 c:\WINDOWS\SYSTEM\RYCLTS5.DLL
 c:\WINDOWS\SYSTEM\AJV01W9X.DLL
 c:\WINDOWS\SYSTEM\NDRSRU.DLL
 c:\WINDOWS\SYSTEM\NMWRSPTB.DLL
 c:\WINDOWS\SYSTEM\JVT.DLL
 c:\WINDOWS\SYSTEM\MQIEFTP.DLL
 c:\WINDOWS\SYSTEM\NIRSDE.DLL
 c:\WINDOWS\SYSTEM\MUXML.DLL
 c:\WINDOWS\SYSTEM\RACLTC3.DLL
 c:\WINDOWS\SYSTEM\WCASTATD.DLL




 click sur edition -> sélectionner tout.
 ---

 Lance Killebox -> file -> past from the clipboard
 Coche les cases "delete on reboot" et "End explorer shell while killing file"
 clique sur "delete file"
 Répond yes au deux messages.
 ---

 -Redémarre en mode sans échec, (en tapotant F8 au démarrage).  Si tu ne comprend pas, >>regarde ici<<.
 



-Assures-toi que tu as accès aux fichiers cachés.
 -Explorateur windows->outils->options des dossiers->affichage
 "Afficher les fichiers cachés"->coché
 "Masquer les extensions.."->décoché
 "Masquer les fichiers protégers du système"->décoché




 -Supprimes manuellement les fichiers suivants: (en gras)

 c:\Program Files\SurfAccuracy <-dossier
 c:\Program Files\HbTools <-dossier
 c:\WINDOWS\Temporary Internet Files\Content.IE5 <-vide le contenu du dossier content.IE5

 Vide ta corbeille.
 ---

 Redémarre ton pc.
 Refais un scan en ligne pour controler

(Publicité)
lhana
Présent de temps en temps (De 50 à 99 messages postés)
  1. Posté le 22/10/2005 à 19:41:14  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
je crois avoir bien suivi les instruction à part le redmarrage en mode sans échec que je n'ai pas réussi à faire.
 J'ai refai un scan de controle, et apparement les virus sont toujours là et d'autre se sont rajouter.
 Voici le rapport d'analyse, de l'aide svp
 Virus Status: Safe!
 Your computer is free of known threats.
 Virus Status: Infected!
 Your computer is infected with at least one known threat.
 
 
 
  48854 files scanned, 221 file(s) infected on your disk drives.


  No viruses were detected in memory.

 Your computer is free of known threats.  Virus Detection does not check compressed files.

 Your computer appears safe for now.  For real-time protection from viruses, hackers and privacy threats, upgrade to Norton Internet Security™.
 
 No viruses were detected in memory.

 The scan was cancelled before finishing. To restart the scan, click here.

 Your computer is free of known threats.  Virus Detection does not check compressed files.

 Your computer appears safe for now.  For real-time protection from viruses, hackers and privacy threats, upgrade to Norton Internet Security™.

 Search for the name of the threat(s) listed below on the Symantec Security Response site for removal information.
 
 Warning! The scan detected a virus that is active in your computer's memory.
 The scan ended to prevent further infection.

 You should shut down your computer immediately and restart it with an antivirus rescue disk or similar tool.
 

 No viruses were detected in memory.

 Your computer is infected with at least one known virus or Trojan horse.

 Search for the name of the threat(s) listed below on the Symantec Security Response site for removal information.
 

 No viruses were detected in memory.

 Your computer is infected with at least one known virus or Trojan horse.

 Note: The scan was cancelled before finishing. There may be more infected files on this computer.

 Search for the name of the threat(s) listed below on the Symantec Security Response site for removal information.
 

 A scan has not been run. To start Virus Detection, click here.

 c:\!KillBox\WCASTATD.DLL is infected with Adware.Look2Me  
 c:\!KillBox\RACLTC3.DLL is infected with Adware.Look2Me  
 c:\!KillBox\MUXML.DLL is infected with Adware.Look2Me  
 c:\!KillBox\NIRSDE.DLL is infected with Adware.Look2Me  
 c:\!KillBox\MQIEFTP.DLL is infected with Adware.Look2Me  
 c:\!KillBox\JVT.DLL is infected with Adware.Look2Me  
 c:\!KillBox\NMWRSPTB.DLL is infected with Adware.Look2Me  
 c:\!KillBox\NDRSRU.DLL is infected with Adware.Look2Me  
 c:\!KillBox\AJV01W9X.DLL is infected with Adware.Look2Me  
 c:\!KillBox\RYCLTS5.DLL is infected with Adware.Look2Me  
 c:\!KillBox\WEASTATD.DLL is infected with Adware.Look2Me  
 c:\!KillBox\DDOUND.DLL is infected with Adware.Look2Me  
 c:\!KillBox\JQT.DLL is infected with Adware.Look2Me  
 c:\!KillBox\ixfxres.dll is infected with Adware.Look2Me  
 c:\!KillBox\KDUSER.DLL is infected with Adware.Look2Me  
 c:\!KillBox\DRNIM.DLL is infected with Adware.Look2Me  
 c:\!KillBox\SKTUP4.DLL is infected with Adware.Look2Me  
 c:\!KillBox\DQTACLEN.DLL is infected with Adware.Look2Me  
 c:\!KillBox\PHNMAP.DLL is infected with Adware.Look2Me  
 c:\!KillBox\ABSTREAM.DLL is infected with Adware.Look2Me  
 c:\!KillBox\UHER32.DLL is infected with Adware.Look2Me  
 c:\!KillBox\DCIP32.DLL is infected with Adware.Look2Me  
 c:\!KillBox\CCMNCTR.DLL is infected with Adware.Look2Me  
 c:\!KillBox\ER.DLL is infected with Adware.Look2Me  
 c:\!KillBox\DMTMETA.DLL is infected with Adware.Look2Me  
 c:\!KillBox\MPPMSP.DLL is infected with Adware.Look2Me  
 c:\!KillBox\OFTWA400.DLL is infected with Adware.Look2Me  
 c:\!KillBox\WR5INF16.DLL is infected with Adware.Look2Me  
 c:\!KillBox\BIseball.dll is infected with Adware.Look2Me  
 c:\!KillBox\mOpi32x.dll is infected with Adware.Look2Me  
 c:\!KillBox\PHPD.DLL is infected with Adware.Look2Me  
 c:\!KillBox\DHVENUM.DLL is infected with Adware.Look2Me  
 c:\!KillBox\mtc71.dll is infected with Adware.Look2Me  
 c:\!KillBox\QKVD.DLL is infected with Adware.Look2Me  
 c:\!KillBox\UANP.DLL is infected with Adware.Look2Me  
 c:\!KillBox\SYIW9X.DLL is infected with Adware.Look2Me  
 c:\!KillBox\NBRSCS.DLL is infected with Adware.Look2Me  
 c:\!KillBox\CDICONFG.DLL is infected with Adware.Look2Me  
 c:\!KillBox\CHL3D.DLL is infected with Adware.Look2Me  
 c:\!KillBox\SALSRV32.DLL is infected with Adware.Look2Me  
 c:\!KillBox\LPEXPAND.DLL is infected with Adware.Look2Me  
 c:\!KillBox\stleay32.dll is infected with Adware.Look2Me  
 c:\!KillBox\WELP32T.DLL is infected with Adware.Look2Me  
 c:\!KillBox\APR_CPL.DLL is infected with Adware.Look2Me  
 c:\!KillBox\OWBCINT.DLL is infected with Adware.Look2Me  
 c:\!KillBox\MOXBDE40.DLL is infected with Adware.Look2Me  
 c:\!KillBox\CMTDLL.DLL is infected with Adware.Look2Me  
 c:\!KillBox\CN7XXW9X.DLL is infected with Adware.Look2Me  
 c:\!KillBox\WHNG32.DLL is infected with Adware.Look2Me  
 c:\!KillBox\XHILEXR.DLL is infected with Adware.Look2Me  
 c:\!KillBox\TPD32.DLL is infected with Adware.Look2Me  
 c:\!KillBox\JXEG1X32.DLL is infected with Adware.Look2Me  
 c:\!KillBox\NVTBIOS.DLL is infected with Adware.Look2Me  
 c:\!KillBox\WQPDINFO.DLL is infected with Adware.Look2Me  
 c:\!KillBox\QMARTZ.DLL is infected with Adware.Look2Me  
 c:\!KillBox\MPRECR40.DLL is infected with Adware.Look2Me  
 c:\!KillBox\IMWDIAL.DLL is infected with Adware.Look2Me  
 c:\!KillBox\MQC30.DLL is infected with Adware.Look2Me  
 c:\!KillBox\AZV02W9X.DLL is infected with Adware.Look2Me  
 c:\!KillBox\NLWRSESM.DLL is infected with Adware.Look2Me  
 c:\!KillBox\onbccu32.dll is infected with Adware.Look2Me  
 c:\!KillBox\DQCPROP.DLL is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MVVCR70.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MVIOLE.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\NRWRSFR.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\IGCFGDLL.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\NRWRSSL.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MKVCP60.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\BOTMETER.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\SZP32.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\FBNTEXT.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MYREPL40.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MOENCODE.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MRCOREE.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\WUV9VCM.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\NQWRSPT.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\VWMONAPI.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\TLD32.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\APV02W9X.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\DXMSRPCN.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\IKPEERS.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\SHPDLL.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\LORASP.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\DRMASF.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\IVGCMN.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\CVMPOBJ.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\SCFTPEGX.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\SFFTPUB.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\DZGHELP.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\WXPSHELL.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\OUTWA400.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MBXBDE40.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\UYNP.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\NIONN16.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\IB_NDI.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\NFWDDI.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\RUCLIB.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\AIICAP.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MIC42LOC.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\WRADRVUD.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\SDCE5132.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\OZCOM400.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\NFWRSSK.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MCTEXT40.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\LNRT.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MCCOREE.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\PAWEROLD.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\QAVD.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\SDLEAY32.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\GEFSPI~1.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\SNROBJ.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MYOEACCT.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\DJSENH.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\NYWRSCS.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\IX41_QC.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\AEFSIPC.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\STFTPUB.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MXTEXT40.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\JUSD400.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\IO1XDD.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\NTSWAN32.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\NTWRSFR.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\LNAETK32.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\APV02W9X.1 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MRDART32.0 is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\DQCPROP.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\onbccu32.dll is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\DNGEST.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\NLWRSESM.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\AZV02W9X.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\MQC30.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\NKRSRU.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\OYENGL32.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\RNCLTC3.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\MHYUV.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\CCMMCTRL.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\IMWDIAL.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\SODPAPI.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\MPRECR40.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\QMARTZ.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\WQPDINFO.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\WUCTHUNK.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\NVTBIOS.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\JXEG1X32.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\TPD32.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\XHILEXR.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\WHNG32.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\JET.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\MIREPL35.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\CHMMCTRL.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\CN7XXW9X.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\ITGCMN.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\CMTDLL.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\ED.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\EOPSRV.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\QZWMCI32.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\MLIMRT16.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\FVAMEBUF.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\UDLMON.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\RDVPSP.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\Mestère.dll is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\NYWRSNL.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\llbeay32.dll is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\mfident.dll is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\imengine.dll is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\JJSH400.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\MOXBDE40.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\OWBCINT.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\APR_CPL.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\WELP32T.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\stleay32.dll is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\LPEXPAND.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\SALSRV32.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\CHL3D.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\CDICONFG.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\IG1X329X.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\NBRSCS.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\SYIW9X.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\UANP.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\QKVD.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\mtc71.dll is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\DHVENUM.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\PHPD.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\mOpi32x.dll is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\BIseball.dll is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\WR5INF16.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\OFTWA400.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\MPPMSP.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\DMTMETA.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\ER.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\CCMNCTR.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\DCIP32.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\UHER32.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\ABSTREAM.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\PHNMAP.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\DQTACLEN.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\SKTUP4.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\DRNIM.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\KDUSER.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\ixfxres.dll is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\JQT.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\DDOUND.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\WEASTATD.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\RYCLTS5.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\AJV01W9X.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\NDRSRU.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\NMWRSPTB.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\JVT.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\MQIEFTP.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\NIRSDE.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\MUXML.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\RACLTC3.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\WCASTATD.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\SZEM0409.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\FHWPP.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\dimsgnet.dll is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\wnp.dll is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\EL.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\DMWSOCKX.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\RSCLTSPX.DLL is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\Ab coeur de l'ordinateur.dll is infected with Adware.Look2Me  



 
 

lhana
Présent de temps en temps (De 50 à 99 messages postés)
  1. Posté le 23/10/2005 à 20:10:25  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
svp que-dois faire?????????

gchris
Débutant confirmé (de 1 000 à 4 999 messages postés)
  1. Posté le 23/10/2005 à 20:17:16  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
-Télécharger Adware SE: http://img36.exs.cx/img36/2375​/download0hy.gif
 -Le patch pour franciser ad aware SE: PATCH FR  
 -Mets le à jour et clique sur l'engrennage (deuxième icône en haut à droite) >> "Interface" >> Français.
 -Clique sur l'engrennage >> "Analyse" >> Coche la case "Analyser dans les archives".
 -Scanner le pc et supprimer tout ce qu'il trouve.
 ---

 -Télécharger a2 est un bon anti-trojan (gratuit): http://img36.exs.cx/img36/2375​/download0hy.gif

 -Il est gratuit, mais il faut t'inscrire pour obtenir ton code par mail (5 mn). Met le à jour passe et supprime ce qu'il trouve.

(Publicité)
lhana
Présent de temps en temps (De 50 à 99 messages postés)
  1. Posté le 24/10/2005 à 15:34:50  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Bonjour,

 J'avais déjà Adware SE, je l'ai donc lancer il a trouver des fichiers infectés et j'ai supprimé, ensuite j'ai télécharger a2 qui m'a enlever beaucoup de fichier infécté ( 300 environs).
 Pour être sûre que mon ordinateur n'est plus infécté j'ai refais un scan de contrôle et je ne comprend il m'indique qu'il y a encore des virus
 voici le scan:
 47746 files scanned, 235 file(s) infected on your disk drives.


  No viruses were detected in memory.

 Your computer is free of known threats.  Virus Detection does not check compressed files.

 Your computer appears safe for now.  For real-time protection from viruses, hackers and privacy threats, upgrade to Norton Internet Security™.
 
 No viruses were detected in memory.

 The scan was cancelled before finishing. To restart the scan, click here.

 Your computer is free of known threats.  Virus Detection does not check compressed files.

 Your computer appears safe for now.  For real-time protection from viruses, hackers and privacy threats, upgrade to Norton Internet Security™.

 Search for the name of the threat(s) listed below on the Symantec Security Response site for removal information.
 
 Warning! The scan detected a virus that is active in your computer's memory.
 The scan ended to prevent further infection.

 You should shut down your computer immediately and restart it with an antivirus rescue disk or similar tool.
 

 No viruses were detected in memory.

 Your computer is infected with at least one known virus or Trojan horse.

 Search for the name of the threat(s) listed below on the Symantec Security Response site for removal information.
 

 No viruses were detected in memory.

 Your computer is infected with at least one known virus or Trojan horse.

 Note: The scan was cancelled before finishing. There may be more infected files on this computer.

 Search for the name of the threat(s) listed below on the Symantec Security Response site for removal information.
 

 A scan has not been run. To start Virus Detection, click here.

 c:\_RESTORE\TEMP\MVVCR70.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MVIOLE.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\NRWRSFR.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\IGCFGDLL.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\NRWRSSL.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MKVCP60.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\BOTMETER.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\SZP32.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\FBNTEXT.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MYREPL40.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MOENCODE.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MRCOREE.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\WUV9VCM.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\NQWRSPT.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\VWMONAPI.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\TLD32.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\APV02W9X.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\DXMSRPCN.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\IKPEERS.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\SHPDLL.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\LORASP.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\DRMASF.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\IVGCMN.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\CVMPOBJ.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\SCFTPEGX.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\SFFTPUB.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\DZGHELP.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\WXPSHELL.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\OUTWA400.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MBXBDE40.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\UYNP.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\NIONN16.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\IB_NDI.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\NFWDDI.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\RUCLIB.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\AIICAP.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MIC42LOC.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\WRADRVUD.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\SDCE5132.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\OZCOM400.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\NFWRSSK.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MCTEXT40.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\LNRT.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MCCOREE.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\PAWEROLD.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\QAVD.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\SDLEAY32.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\GEFSPI~1.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\SNROBJ.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MYOEACCT.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\DJSENH.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\NYWRSCS.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\IX41_QC.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\AEFSIPC.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\STFTPUB.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MXTEXT40.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\JUSD400.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\IO1XDD.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\NTSWAN32.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\NTWRSFR.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\LNAETK32.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\APV02W9X.1 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MRDART32.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\RSCLTSPX.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\DCVVOX.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\WBVCORE.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\OABCBCP.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\MUIMRT16.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\PIINTRAY.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\RPVPSP.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\LTAECOL.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\JXDW400.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\FSAMEBUF.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\WZ2N50.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\OXECNV32.0 is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057011.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057012.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057013.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057014.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057015.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057016.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057017.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057018.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057019.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057020.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057021.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057022.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057023.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057026.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057027.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057028.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057031.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057034.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057035.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057036.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057037.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057038.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057039.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057040.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057041.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057042.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057043.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057044.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057045.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057046.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057047.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057048.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057049.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057050.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057051.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057052.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057053.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057054.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057055.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057056.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057057.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057061.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057062.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057063.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057064.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057065.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057066.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057067.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057068.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057069.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057070.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057071.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057072.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057073.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057074.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057075.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057076.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057077.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057078.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057079.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057080.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057081.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057082.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057083.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057084.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057085.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057086.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057087.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057088.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057089.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057090.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057091.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057092.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057093.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057094.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057095.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057096.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057097.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057098.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057099.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057100.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057101.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057102.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057103.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057104.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057105.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057106.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057107.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057108.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057109.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057110.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057111.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057112.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057113.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057116.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057120.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057121.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057122.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057123.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057124.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057125.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057126.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057127.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057128.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057129.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057130.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057131.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057132.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057133.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057134.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057135.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057136.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057137.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057138.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057139.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057140.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057141.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057142.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057143.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057144.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057145.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057146.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057147.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057148.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057149.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057150.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057151.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057152.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057153.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057154.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057155.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057156.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057157.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057158.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057159.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057160.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057161.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057162.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057163.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057164.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057165.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057166.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057167.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057168.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057169.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057170.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057171.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057172.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057173.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057174.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057175.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057176.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057177.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057178.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057179.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057180.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\A0057181.CPY is infected with Adware.Look2Me  
 c:\_RESTORE\TEMP\SHEM0409.0 is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\vbxml.dll is infected with Adware.Look2Me  
 c:\WINDOWS\SYSTEM\MOXBDE40.DLL is infected with Adware.Look2Me  

 

gchris
Débutant confirmé (de 1 000 à 4 999 messages postés)
  1. Posté le 24/10/2005 à 18:03:53  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
-Redémarre en mode sans échec, (en tapotant F8 au démarrage).  Si tu ne comprend pas, >>regarde ici<<.
 



-Assures-toi que tu as accès aux fichiers cachés.
 -Explorateur windows->outils->options des dossiers->affichage
 "Afficher les fichiers cachés"->coché
 "Masquer les extensions.."->décoché
 "Masquer les fichiers protégers du système"->décoché




 -Supprimes manuellement les fichiers suivants: (en gras)

 c:\WINDOWS\SYSTEM\vbxml.dll <-fichier
 c:\WINDOWS\SYSTEM\MOXBDE40.DLL <-fichier

 Vide ta corbeille.
 ---

 Désactive la restauration automatique du système. Si tu ne sais pas comment faire, regarde la:
 
 -Pour xp: http://www.libellules.ch/desac [...] ration.php
 
 -Pour Millenium : http://service1.symantec.com/S [...] 0091903924
 ---

 Redémarre ton pc.
 Refais un scan de contrôle.

lhana
Présent de temps en temps (De 50 à 99 messages postés)
  1. Posté le 24/10/2005 à 19:41:37  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
j'ai réussi a redémarrer en mode sans échec mais par contre je n'arrive pas a trouver explorateur windows, ou se trouve-il svp?

(Publicité)
gchris
Débutant confirmé (de 1 000 à 4 999 messages postés)
  1. Posté le 24/10/2005 à 19:44:01  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
poste de travail

lhana
Présent de temps en temps (De 50 à 99 messages postés)
  1. Posté le 24/10/2005 à 20:23:38  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
je n'arrive pas a effacer le fichier c:\WINDOWS\SYSTEM\MOXBDE40.DLL , il y a un message qui me dit:impossible de supprimer, le fichier est utilisé par windows .
 Que faire svp?

gchris
Débutant confirmé (de 1 000 à 4 999 messages postés)
  1. Posté le 25/10/2005 à 18:16:33  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
via le mode sans échec...

(Publicité)
lhana
Présent de temps en temps (De 50 à 99 messages postés)
  1. Posté le 25/10/2005 à 20:08:39  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Je viens d'essayer avec le mode sans échec et ça ne marche pas non plus, le meme message s'affiche( impossible de supprimer)
 que faire?

gchris
Débutant confirmé (de 1 000 à 4 999 messages postés)
  1. Posté le 26/10/2005 à 18:24:40  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
-Télécharge HijackThis: http://www.spywareinfo.com/~me​rijn/images/hijackthis_big.gif (lien sur l'image).
 -Crée un dossier nommé HijackThis et place le dedans.
 -Exécute le et clique sur Do a scan and save log file.
 -Copie et colle ici ton rapport ouvert avec le bloc note. Sans rien faire d'autre.

lhana
Présent de temps en temps (De 50 à 99 messages postés)
  1. Posté le 27/10/2005 à 19:14:11  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
voici le rapport :


 Logfile of HijackThis v1.99.1
 Scan saved at 20:17:00, on 27/10/2005
 Platform: Windows ME (Win9x 4.90.3000)
 MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

 Running processes:
 C:\WINDOWS\SYSTEM\KERNEL32.DLL
 C:\WINDOWS\SYSTEM\MSGSRV32.EXE
 C:\WINDOWS\SYSTEM\MPREXE.EXE
 C:\WINDOWS\SYSTEM\MSTASK.EXE
 C:\WINDOWS\SYSTEM\SSDPSRV.EXE
 C:\WINDOWS\SYSTEM\NVSVC.EXE
 C:\PROGRAM FILES\MESSENGERPLUS! 3\MSGPLUS.EXE
 C:\WINDOWS\SYSTEM\KB891711\KB8​91711.EXE
 C:\WINDOWS\SYSTEM\STIMON.EXE
 C:\PROGRAM FILES\PANDA SOFTWARE\PANDA ANTIVIRUS PLATINUM\FIREWALL\PAVFIRES.EXE
 C:\WINDOWS\SYSTEM\mmtask.tsk
 C:\WINDOWS\SYSTEM\RESTORE\STMG​R.EXE
 C:\WINDOWS\EXPLORER.EXE
 C:\WINDOWS\RUNDLL32.EXE
 C:\WINDOWS\TASKMON.EXE
 C:\WINDOWS\SYSTEM\SYSTRAY.EXE
 C:\PROGRAM FILES\NETROPA\MULTIMEDIA KEYBOARD\MMKEYBD.EXE
 C:\WINDOWS\SYSTEM\PRINTRAY.EXE
 C:\PROGRAM FILES\FICHIERS COMMUNS\REAL\UPDATE_OB\REALSCH​ED.EXE
 C:\WINDOWS\LOADQM.EXE
 C:\WINDOWS\SYSTEM\SPOOL32.EXE
 C:\WINDOWS\SYSTEM\QTTASK.EXE
 C:\PROGRAM FILES\PANDA SOFTWARE\PANDA ANTIVIRUS PLATINUM\APVXDWIN.EXE
 C:\WINDOWS\SYSTEM\LEXBCES.EXE
 C:\WINDOWS\RUNDLL32.EXE
 C:\WINDOWS\SYSTEM\WMIEXE.EXE
 C:\WINDOWS\SYSTEM\RPCSS.EXE
 C:\PROGRAM FILES\MSN MESSENGER\MSNMSGR.EXE
 C:\PROGRAM FILES\SAGEM WI-FI USB 802.11G\WLANUTL.EXE
 C:\PROGRAM FILES\NETROPA\MULTIMEDIA KEYBOARD\TRAYMON.EXE
 C:\PROGRAM FILES\NETROPA\ONSCREEN DISPLAY\OSD.EXE
 C:\PROGRAM FILES\PANDA SOFTWARE\PANDA ANTIVIRUS PLATINUM\PAVPROXY.EXE
 C:\WINDOWS\SYSTEM\SBUTILS\SBWE​BHOST.EXE
 C:\WINDOWS\SYSTEM\DDHELP.EXE
 C:\WINDOWS\SYSTEM\PSTORES.EXE
 C:\WINDOWS\RUNDLL32.EXE
 C:\WINDOWS\BUREAU\HIJACKTHIS.E​XE

 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://www.google.fr/
 R1 - HKCU\Software\Microsoft\Window​s\CurrentVersion\Internet Settings,ProxyOverride = localhost
 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Toolbar,LinksFolderNa​me = Liens
 O3 - Toolbar: &Kangaroo - {663C7429-E454-11D3-B9AE-0000B​4C32B4D} - C:\IDC\WEBKA.DLL
 O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C​9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
 O4 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun
 O4 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe
 O4 - HKLM\..\Run: [PCHealth] C:\WINDOWS\PCHealth\Support\PC​HSchd.exe -s
 O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
 O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrSch​eme
 O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
 O4 - HKLM\..\Run: [reminder.exe] C:\Program Files\BackWeb\tuner\reminder.e​xe
 O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\SYSTEM\NvCpl.dll,Nv​Startup
 O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
 O4 - HKLM\..\Run: [Hidserv] Hidserv.exe run
 O4 - HKLM\..\Run: [LexStart] Lexstart.exe
 O4 - HKLM\..\Run: [LexmarkPrinTray] PrinTray.exe
 O4 - HKLM\..\Run: [LXSUPMON] C:\WINDOWS\SYSTEM\LXSUPMON.EXE RUN
 O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsch​ed.exe"  -osboot
 O4 - HKLM\..\Run: [LoadQM] loadqm.exe
 O4 - HKLM\..\Run: [QuickTime Task] "C:\WINDOWS\SYSTEM\QTTASK.EXE" -atboottime
 O4 - HKLM\..\Run: [SCANINICIO] "C:\Program Files\Panda Software\Panda Antivirus Platinum\Inicio.exe"
 O4 - HKLM\..\Run: [APVXDWIN] "C:\Program Files\Panda Software\Panda Antivirus Platinum\APVXDWIN.EXE" /s
 O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrSch​eme
 O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
 O4 - HKLM\..\RunServices: [SSDPSRV] C:\WINDOWS\SYSTEM\ssdpsrv.exe
 O4 - HKLM\..\RunServices: [*StateMgr] C:\WINDOWS\System\Restore\Stat​eMgr.exe
 O4 - HKLM\..\RunServices: [NVSvc] C:\WINDOWS\SYSTEM\nvsvc.exe -runservice
 O4 - HKLM\..\RunServices: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
 O4 - HKLM\..\RunServices: [KB891711] C:\WINDOWS\SYSTEM\KB891711\KB8​91711.EXE
 O4 - HKLM\..\RunServices: [StillImageMonitor] C:\WINDOWS\SYSTEM\STIMON.EXE
 O4 - HKLM\..\RunServices: [PANDASCHEDULER] "C:\Program Files\Panda Software\Panda Antivirus Platinum\Pavsched.exe"
 O4 - HKLM\..\RunServices: [PAVFIRES] C:\Program Files\Panda Software\Panda Antivirus Platinum\Firewall\PavFires.exe
 O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\Money Express.exe"
 O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\SYSTEM\NVMCTRAY.DLL​,NvTaskbarInit
 O4 - HKCU\..\Run: [Registry Cleaner] "C:\PROGRAM FILES\TPT REGISTRY_CLEANER (TRIAL)\REGCLEAN.EXE"
 O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
 O4 - HKCU\..\Run: [msnmsgr] "C:\PROGRAM FILES\MSN MESSENGER\MSNMSGR.EXE" /background
 O4 - Startup: Sagem - Utilitaire réseau pour Clé USB Wi-Fi 802.11g.lnk = C:\Program Files\SAGEM Wi-Fi USB 802.11g\WLANUTL.exe
 O4 - Global Startup: Securitoo AntiVirus Firewall.lnk = C:\Program Files\Securitoo\av_fw\backweb\​1044199\Program\backweb-104419​9.exe
 O8 - Extra context menu item: &Search - http://kx.bar.need2find.com/KX [...] .html?p=KX
 O9 - Extra button: Kangaroo - {06A18DC1-FE86-11d3-B9AF-0000B​4C32B4D} - http://knowledge-assistant.com [...] r/tbie.asp (file missing)
 O12 - Plugin for .mts: C:\Program Files\MetaCreations\MetaStream​\npmetastream.dll
 O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD​1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/ [...] b31267.cab
 O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-22031​3175592} (ZoneIntro Class) - http://messenger.zone.msn.com/ [...] b32846.cab
 O16 - DPF: {14B87622-7E19-4EA8-93B3-97215​F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/ [...] b31267.cab
 O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6​333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/ [...] b31267.cab
 O16 - DPF: {17492023-C23A-453E-A040-C7C58​0BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
 O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F3855​91623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/ [...] b31267.cab
 O16 - DPF: {8EB3FF4E-86A1-4717-884D-7BA2D​38272CB} (F-Secure Online Scanner) - http://www.securitoo.com/fra/pages/navol/fscax.cab
 O16 - DPF: Interface Chat Wanadoo - http://chat14.x-echo.com/versi [...] atsign.cab
 O16 - DPF: {644E432F-49D3-41A1-8DD5-E0991​62EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/s [...] /cabsa.cab
 O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105​AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/s [...] vSniff.cab
 O16 - DPF: {511F9316-771B-4953-A268-1C36D​A667FE9} - http://ip.sponsoradulto.com/ca [...] comInt.cab
 O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0​A5519FF} (MsnMessengerSetupDownloadCont​rol Class) - http://messenger.msn.com/downl [...] loader.cab
 O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730​F4EE499} - http://www.bitdefender.com/scan8/oscan8.cab
 O16 - DPF: Interface Chat Voila - http://chat7.x-echo.com/versio [...] atsign.cab

(Publicité)
gchris
Débutant confirmé (de 1 000 à 4 999 messages postés)
  1. Posté le 27/10/2005 à 19:20:20  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
télécharge kill2me
 Dézippe-le sur ton bureau
 Exécute-le.

lhana
Présent de temps en temps (De 50 à 99 messages postés)
  1. Posté le 27/10/2005 à 19:28:39  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
et ensuite?

gchris
Débutant confirmé (de 1 000 à 4 999 messages postés)
  1. Posté le 27/10/2005 à 19:32:11  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
colle un nouveau log hjt.

lhana
Présent de temps en temps (De 50 à 99 messages postés)
  1. Posté le 27/10/2005 à 19:35:46  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Logfile of HijackThis v1.99.1
 Scan saved at 20:39:16, on 27/10/2005
 Platform: Windows ME (Win9x 4.90.3000)
 MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

 Running processes:
 C:\WINDOWS\SYSTEM\KERNEL32.DLL
 C:\WINDOWS\SYSTEM\MSGSRV32.EXE
 C:\WINDOWS\SYSTEM\MPREXE.EXE
 C:\WINDOWS\SYSTEM\MSTASK.EXE
 C:\WINDOWS\SYSTEM\SSDPSRV.EXE
 C:\WINDOWS\SYSTEM\NVSVC.EXE
 C:\PROGRAM FILES\MESSENGERPLUS! 3\MSGPLUS.EXE
 C:\WINDOWS\SYSTEM\KB891711\KB8​91711.EXE
 C:\WINDOWS\SYSTEM\STIMON.EXE
 C:\PROGRAM FILES\PANDA SOFTWARE\PANDA ANTIVIRUS PLATINUM\FIREWALL\PAVFIRES.EXE
 C:\WINDOWS\SYSTEM\mmtask.tsk
 C:\WINDOWS\SYSTEM\RESTORE\STMG​R.EXE
 C:\WINDOWS\RUNDLL32.EXE
 C:\WINDOWS\TASKMON.EXE
 C:\WINDOWS\SYSTEM\SYSTRAY.EXE
 C:\PROGRAM FILES\NETROPA\MULTIMEDIA KEYBOARD\MMKEYBD.EXE
 C:\WINDOWS\SYSTEM\PRINTRAY.EXE
 C:\PROGRAM FILES\FICHIERS COMMUNS\REAL\UPDATE_OB\REALSCH​ED.EXE
 C:\WINDOWS\LOADQM.EXE
 C:\WINDOWS\SYSTEM\SPOOL32.EXE
 C:\WINDOWS\SYSTEM\QTTASK.EXE
 C:\PROGRAM FILES\PANDA SOFTWARE\PANDA ANTIVIRUS PLATINUM\APVXDWIN.EXE
 C:\WINDOWS\SYSTEM\LEXBCES.EXE
 C:\WINDOWS\RUNDLL32.EXE
 C:\WINDOWS\SYSTEM\WMIEXE.EXE
 C:\WINDOWS\SYSTEM\RPCSS.EXE
 C:\PROGRAM FILES\MSN MESSENGER\MSNMSGR.EXE
 C:\PROGRAM FILES\SAGEM WI-FI USB 802.11G\WLANUTL.EXE
 C:\PROGRAM FILES\NETROPA\MULTIMEDIA KEYBOARD\TRAYMON.EXE
 C:\PROGRAM FILES\NETROPA\ONSCREEN DISPLAY\OSD.EXE
 C:\PROGRAM FILES\PANDA SOFTWARE\PANDA ANTIVIRUS PLATINUM\PAVPROXY.EXE
 C:\WINDOWS\SYSTEM\SBUTILS\SBWE​BHOST.EXE
 C:\WINDOWS\SYSTEM\DDHELP.EXE
 C:\WINDOWS\SYSTEM\PSTORES.EXE
 C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
 C:\WINDOWS\EXPLORER.EXE
 C:\WINDOWS\BUREAU\HIJACKTHIS.E​XE

 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://v4.windowsupdate.microsoft.com/
 R1 - HKCU\Software\Microsoft\Window​s\CurrentVersion\Internet Settings,ProxyOverride = localhost
 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Toolbar,LinksFolderNa​me = Liens
 O3 - Toolbar: &Kangaroo - {663C7429-E454-11D3-B9AE-0000B​4C32B4D} - C:\IDC\WEBKA.DLL
 O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C​9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
 O4 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun
 O4 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe
 O4 - HKLM\..\Run: [PCHealth] C:\WINDOWS\PCHealth\Support\PC​HSchd.exe -s
 O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
 O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrSch​eme
 O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
 O4 - HKLM\..\Run: [reminder.exe] C:\Program Files\BackWeb\tuner\reminder.e​xe
 O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\SYSTEM\NvCpl.dll,Nv​Startup
 O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
 O4 - HKLM\..\Run: [Hidserv] Hidserv.exe run
 O4 - HKLM\..\Run: [LexStart] Lexstart.exe
 O4 - HKLM\..\Run: [LexmarkPrinTray] PrinTray.exe
 O4 - HKLM\..\Run: [LXSUPMON] C:\WINDOWS\SYSTEM\LXSUPMON.EXE RUN
 O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsch​ed.exe"  -osboot
 O4 - HKLM\..\Run: [LoadQM] loadqm.exe
 O4 - HKLM\..\Run: [QuickTime Task] "C:\WINDOWS\SYSTEM\QTTASK.EXE" -atboottime
 O4 - HKLM\..\Run: [SCANINICIO] "C:\Program Files\Panda Software\Panda Antivirus Platinum\Inicio.exe"
 O4 - HKLM\..\Run: [APVXDWIN] "C:\Program Files\Panda Software\Panda Antivirus Platinum\APVXDWIN.EXE" /s
 O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrSch​eme
 O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
 O4 - HKLM\..\RunServices: [SSDPSRV] C:\WINDOWS\SYSTEM\ssdpsrv.exe
 O4 - HKLM\..\RunServices: [*StateMgr] C:\WINDOWS\System\Restore\Stat​eMgr.exe
 O4 - HKLM\..\RunServices: [NVSvc] C:\WINDOWS\SYSTEM\nvsvc.exe -runservice
 O4 - HKLM\..\RunServices: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
 O4 - HKLM\..\RunServices: [KB891711] C:\WINDOWS\SYSTEM\KB891711\KB8​91711.EXE
 O4 - HKLM\..\RunServices: [StillImageMonitor] C:\WINDOWS\SYSTEM\STIMON.EXE
 O4 - HKLM\..\RunServices: [PANDASCHEDULER] "C:\Program Files\Panda Software\Panda Antivirus Platinum\Pavsched.exe"
 O4 - HKLM\..\RunServices: [PAVFIRES] C:\Program Files\Panda Software\Panda Antivirus Platinum\Firewall\PavFires.exe
 O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\Money Express.exe"
 O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\SYSTEM\NVMCTRAY.DLL​,NvTaskbarInit
 O4 - HKCU\..\Run: [Registry Cleaner] "C:\PROGRAM FILES\TPT REGISTRY_CLEANER (TRIAL)\REGCLEAN.EXE"
 O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
 O4 - HKCU\..\Run: [msnmsgr] "C:\PROGRAM FILES\MSN MESSENGER\MSNMSGR.EXE" /background
 O4 - Startup: Sagem - Utilitaire réseau pour Clé USB Wi-Fi 802.11g.lnk = C:\Program Files\SAGEM Wi-Fi USB 802.11g\WLANUTL.exe
 O4 - Global Startup: Securitoo AntiVirus Firewall.lnk = C:\Program Files\Securitoo\av_fw\backweb\​1044199\Program\backweb-104419​9.exe
 O8 - Extra context menu item: &Search - http://kx.bar.need2find.com/KX [...] .html?p=KX
 O9 - Extra button: Kangaroo - {06A18DC1-FE86-11d3-B9AF-0000B​4C32B4D} - http://knowledge-assistant.com [...] r/tbie.asp (file missing)
 O12 - Plugin for .mts: C:\Program Files\MetaCreations\MetaStream​\npmetastream.dll
 O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD​1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/ [...] b31267.cab
 O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-22031​3175592} (ZoneIntro Class) - http://messenger.zone.msn.com/ [...] b32846.cab
 O16 - DPF: {14B87622-7E19-4EA8-93B3-97215​F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/ [...] b31267.cab
 O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6​333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/ [...] b31267.cab
 O16 - DPF: {17492023-C23A-453E-A040-C7C58​0BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
 O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F3855​91623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/ [...] b31267.cab
 O16 - DPF: {8EB3FF4E-86A1-4717-884D-7BA2D​38272CB} (F-Secure Online Scanner) - http://www.securitoo.com/fra/pages/navol/fscax.cab
 O16 - DPF: Interface Chat Wanadoo - http://chat14.x-echo.com/versi [...] atsign.cab
 O16 - DPF: {644E432F-49D3-41A1-8DD5-E0991​62EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/s [...] /cabsa.cab
 O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105​AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/s [...] vSniff.cab
 O16 - DPF: {511F9316-771B-4953-A268-1C36D​A667FE9} - http://ip.sponsoradulto.com/ca [...] comInt.cab
 O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0​A5519FF} (MsnMessengerSetupDownloadCont​rol Class) - http://messenger.msn.com/downl [...] loader.cab
 O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730​F4EE499} - http://www.bitdefender.com/scan8/oscan8.cab
 O16 - DPF: Interface Chat Voila - http://chat7.x-echo.com/versio [...] atsign.cab

gchris
Débutant confirmé (de 1 000 à 4 999 messages postés)
  1. Posté le 28/10/2005 à 17:00:43  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
O8 - Extra context menu item: &Search - http://kx.bar.need2find.com/KX [...] .html?p=KX
 O9 - Extra button: Kangaroo - {06A18DC1-FE86-11d3-B9AF-0000B​4C32B4D} - http://knowledge-assistant.com [...] r/tbie.asp (file missing)
 O16 - DPF: {511F9316-771B-4953-A268-1C36D​A667FE9} - http://ip.sponsoradulto.com/ca [...] comInt.cab

 lance hijackthis -> do a system scan only -> coche les lignes indiquées -> clique sur Fix Checked.

lhana
Présent de temps en temps (De 50 à 99 messages postés)
  1. Posté le 11/11/2005 à 10:11:45  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
C'est bon il n'y a plus d'Adware.Look2Me sur mon ordinateur, merci beaucoup de ton aide

gchris
Débutant confirmé (de 1 000 à 4 999 messages postés)
  1. Posté le 11/11/2005 à 10:15:06  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
nickel.

 Page :
1

Aller à :
 

Sujets relatifs
virus sur mon pc virus clé usb
infection par trojan dropper Virus "survival.vbe"
j ai le virus survival vbe qui abimme toute mes clé usb besoin d aide plus d'Internet virus?
[Résolu] PC très lent après installation d'un logiciel Virus sur 01net.com ?!
virus mise a jour java.. impossible de demarrer en mode sans echec Virus JS:Includer-APY [Trj]
Plus de sujets relatifs à : virus trojan downloader Adware.Look2Me [RESOLU]