Chargement en cours...
Connexion au forum informatique de Sur-la-Toile
La discussion « virus » se trouve dans le forum « Virus, troyens, etc... »
Statut de la discussion » virus « ( normale)

virus

Le 21 mai à 18:13 #

salut
voici le log

Code:
  1.   Logfile of Trend Micro HijackThis v2.0.2
  2.   Scan saved at 18:11:36, on 21/05/2008
  3.   Platform: Windows Vista (WinNT 6.00.1904)
  4.   MSIE: Internet Explorer v7.00 (7.00.6000.16643)
  5.   Boot mode: Normal
  6.   
  7.   Running processes:
  8.   C:\Windows\system32\Dwm.exe
  9.   C:\Windows\Explorer.EXE
  10.   C:\Windows\system32\taskeng.exe
  11.   C:\Program Files\Windows Defender\MSASCui.exe
  12.   C:\hp\support\hpsysdrv.exe
  13.   C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
  14.   c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
  15.   C:\Windows\RtHDVCpl.exe
  16.   C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
  17.   C:\Program Files\Alwil Software\Avast4\ashDisp.exe
  18.   C:\Windows\system32\schtasks.exe
  19.   C:\Program Files\Hercules\WiFi Station\WiFiStation.exe
  20.   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
  21.   C:\Windows\System32\mobsync.exe
  22.   C:\hp\kbd\kbd.exe
  23.   C:\Program Files\Internet Explorer\ieuser.exe
  24.   C:\Users\FLO\Desktop\HiJackThis.exe
  25.   
  26.   R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
  27.   R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
  28.   R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
  29.   R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
  30.   R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
  31.   R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
  32.   R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
  33.   R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
  34.   R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
  35.   O1 - Hosts: ::1 localhost
  36.   O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
  37.   O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
  38.   O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
  39.   O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
  40.   O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
  41.   O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
  42.   O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
  43.   O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE
  44.   O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
  45.   O4 - HKLM\..\Run: [StartCCC] "c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
  46.   O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
  47.   O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
  48.   O4 - HKLM\..\Run: [SunJavaUpdateReg] "C:\Windows\system32\jureg.exe"
  49.   O4 - HKLM\..\Run: [HP Software Update] c:\Program Files\HP\HP Software Update\HPWuSchd2.exe
  50.   O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
  51.   O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
  52.   O4 - HKLM\..\RunOnce: [PCDrProfiler] C:\Program Files\PC-Doctor 5 for Windows\RunProfiler.exe -r
  53.   O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
  54.   O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
  55.   O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
  56.   O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
  57.   O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
  58.   O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
  59.   O4 - Global Startup: WiFi Station.lnk = C:\Program Files\Hercules\WiFi Station\WiFiStation.exe
  60.   O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
  61.   O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
  62.   O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
  63.   O13 - Gopher Prefix:
  64.   O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
  65.   O17 - HKLM\System\CCS\Services\Tcpip\..\{CC20F442-AA93-475F-9914-2BF402EDDBC3}: NameServer = 192.168.1.1
  66.   O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
  67.   O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
  68.   O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
  69.   O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
  70.   O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
  71.   O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
  72.   O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
  73.   O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Common Files\InstallShield\Driver50\Intel 32\IDriverT.exe
  74.   O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe
  75.   O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
  76.   O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
  77.   O23 - Service: RoxMediaDB9 - Sonic Solutions - c:\Program Files\Common Files\Roxio Shared.0\SharedCOM\RoxMediaDB9.exe
  78.   O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
  79.   O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
  80.   
  81.   --
  82.   End of file - 6518 bytes


    Ajout du 22-05-2008 à 16:31:

    c'est pour analyser mon log hijackthis

    Le 22 mai à 17:02 #

    dans le hijack = rien de visible

    tu as encore des problèmes ?

    Le 22 mai à 18:39 #

    non, aucun problème
    merci de votre aide
    a+
    morinas
    » Liste des Forums » Virus, troyens, etc...

    Sujets Connexes

    Arakien & WéWé


    Forums

    Navigation


    Publicité

    Connectés

    Il y a actuellement 83 visiteurs et 3 toiliens en ligne.

    Recherche

    Concours


    Sauf mention contraire, le contenu du blog et du forum est sous licence Creative Commons By-Sa. Vous avez le droit de le reproduire à condition de citer l'auteur, de faire un lien vers la page d'origine, et de partager vos travaux dérivés selon les mêmes conditions.

    Conditions d'utilisation -

    Partenaires: [Informatique Multimédia] [Portail du Maroc] [Actualité High Tech]
    [Tutoriaux Photoshop] [éligibilité ADSL] [Astuces Windows]

    Page générée en 339 millisecondes sur WWW1.