Aller au contenu

bengab

Membres
  • Compteur de contenus

    4
  • Inscription

  • Dernière visite

bengab's Achievements

Junior Member

Junior Member (3/12)

0

Réputation sur la communauté

  1. saalut ipl, voici le rapport généré par sphjfix/spsehjfix merci pour ton aide (11/8/05 11:25:31) SPSeHjFix started v1.09 (11/8/05 11:25:31) OS: Win98SE A (4.10.67766446) (11/8/05 11:25:31) Language: français (11/8/05 11:25:33) Disinfect started (11/8/05 11:25:33) Bad-Dll(IEP): waqtx.dll (11/8/05 11:25:33) UBF: 4 (11/8/05 11:25:33) UBB: 3 (11/8/05 11:25:33) UBR: 19 (11/8/05 11:25:33) Bad IE-pages: deleted: HKCU\Software\Microsoft\Internet Explorer\Main, Search Bar: res://C:\WINDOWS\system\waqtx.dll/sp.html#93256 deleted: HKCU\Software\Microsoft\Internet Explorer\Main, Search Page: res://C:\WINDOWS\system\waqtx.dll/sp.html#93256 deleted: HKCU\Software\Microsoft\Internet Explorer\Main, Start Page: about:blank deleted: HKLM\Software\Microsoft\Internet Explorer\Main, Search Bar: res://C:\WINDOWS\system\waqtx.dll/sp.html#93256 deleted: HKLM\Software\Microsoft\Internet Explorer\Main, Search Page: res://C:\WINDOWS\system\waqtx.dll/sp.html#93256 deleted: HKLM\Software\Microsoft\Internet Explorer\Main, Start Page: about:blank deleted: HKLM\Software\Microsoft\Internet Explorer\Main, Default_Page_URL: about:blank deleted: HKLM\Software\Microsoft\Internet Explorer\Main, Default_Search_URL: res://C:\WINDOWS\system\waqtx.dll/sp.html#93256 deleted: HKLM\Software\Microsoft\Internet Explorer\Search, SearchAssistant: res://C:\WINDOWS\system\waqtx.dll/sp.html#93256 (11/8/05 11:25:33) Stealth-String not found: (11/8/05 11:25:33) No Files to delete. End without Reboot (11/8/05 11:25:34) Disinfect started (11/8/05 11:25:34) Bad-Dll(IEP): waqtx.dll (11/8/05 11:25:34) UBF: 4 (11/8/05 11:25:34) UBB: 3 (11/8/05 11:25:34) UBR: 19 (11/8/05 11:25:34) Bad IE-pages: (11/8/05 11:25:34) Stealth-String not found: (11/8/05 11:25:34) No Files to delete. End without Reboot (11/8/05 11:25:35) Disinfect started (11/8/05 11:25:35) Bad-Dll(IEP): waqtx.dll (11/8/05 11:25:35) UBF: 4 (11/8/05 11:25:35) UBB: 3 (11/8/05 11:25:35) UBR: 19 (11/8/05 11:25:35) Bad IE-pages: (11/8/05 11:25:35) Stealth-String not found: (11/8/05 11:25:35) No Files to delete. End without Reboot (11/8/05 11:25:36) Disinfect started (11/8/05 11:25:36) Bad-Dll(IEP): waqtx.dll (11/8/05 11:25:36) UBF: 4 (11/8/05 11:25:36) UBB: 3 (11/8/05 11:25:36) UBR: 19 (11/8/05 11:25:36) Bad IE-pages: (11/8/05 11:25:36) Stealth-String not found: (11/8/05 11:25:36) No Files to delete. End without Reboot (11/8/05 11:25:36) Disinfect started (11/8/05 11:25:36) Bad-Dll(IEP): waqtx.dll (11/8/05 11:25:36) UBF: 4 (11/8/05 11:25:36) UBB: 3 (11/8/05 11:25:36) UBR: 19 (11/8/05 11:25:36) Bad IE-pages: (11/8/05 11:25:36) Stealth-String not found: (11/8/05 11:25:36) No Files to delete. End without Reboot (11/8/05 11:25:36) Disinfect started (11/8/05 11:25:36) Bad-Dll(IEP): waqtx.dll (11/8/05 11:25:36) UBF: 4 (11/8/05 11:25:36) UBB: 3 (11/8/05 11:25:36) UBR: 19 (11/8/05 11:25:36) Bad IE-pages: (11/8/05 11:25:36) Stealth-String not found: (11/8/05 11:25:36) No Files to delete. End without Reboot (11/8/05 11:25:36) Disinfect started (11/8/05 11:25:36) Bad-Dll(IEP): waqtx.dll (11/8/05 11:25:36) UBF: 4 (11/8/05 11:25:36) UBB: 3 (11/8/05 11:25:36) UBR: 19 (11/8/05 11:25:36) Bad IE-pages: (11/8/05 11:25:36) Stealth-String not found: (11/8/05 11:25:36) No Files to delete. End without Reboot (11/8/05 11:25:36) Disinfect started (11/8/05 11:25:36) Bad-Dll(IEP): waqtx.dll (11/8/05 11:25:36) UBF: 4 (11/8/05 11:25:36) UBB: 3 (11/8/05 11:25:36) UBR: 19 (11/8/05 11:25:36) Bad IE-pages: (11/8/05 11:25:36) Stealth-String not found: (11/8/05 11:25:36) No Files to delete. End without Reboot (11/8/05 11:25:37) Disinfect started (11/8/05 11:25:37) Bad-Dll(IEP): waqtx.dll (11/8/05 11:25:37) UBF: 4 (11/8/05 11:25:37) UBB: 3 (11/8/05 11:25:37) UBR: 19 (11/8/05 11:25:37) Bad IE-pages: (11/8/05 11:25:37) Stealth-String not found: (11/8/05 11:25:37) No Files to delete. End without Reboot (11/8/05 11:25:37) Disinfect started (11/8/05 11:25:37) Bad-Dll(IEP): waqtx.dll (11/8/05 11:25:37) UBF: 4 (11/8/05 11:25:37) UBB: 3 (11/8/05 11:25:37) UBR: 19 (11/8/05 11:25:37) Bad IE-pages: (11/8/05 11:25:37) Stealth-String not found: (11/8/05 11:25:37) No Files to delete. End without Reboot (11/8/05 11:25:37) Disinfect started (11/8/05 11:25:37) Bad-Dll(IEP): waqtx.dll (11/8/05 11:25:37) UBF: 4 (11/8/05 11:25:37) UBB: 3 (11/8/05 11:25:37) UBR: 19 (11/8/05 11:25:37) Bad IE-pages: (11/8/05 11:25:37) Stealth-String not found: (11/8/05 11:25:37) No Files to delete. End without Reboot (11/8/05 11:25:37) Disinfect started (11/8/05 11:25:37) Bad-Dll(IEP): waqtx.dll (11/8/05 11:25:37) UBF: 4 (11/8/05 11:25:37) UBB: 3 (11/8/05 11:25:37) UBR: 19 (11/8/05 11:25:37) Bad IE-pages: (11/8/05 11:25:37) Stealth-String not found: (11/8/05 11:25:37) No Files to delete. End without Reboot (11/8/05 11:25:38) Disinfect started (11/8/05 11:25:38) Bad-Dll(IEP): waqtx.dll (11/8/05 11:25:38) UBF: 4 (11/8/05 11:25:38) UBB: 3 (11/8/05 11:25:38) UBR: 19 (11/8/05 11:25:38) Bad IE-pages: (11/8/05 11:25:38) Stealth-String not found: (11/8/05 11:25:38) No Files to delete. End without Reboot (11/8/05 11:25:38) Disinfect started (11/8/05 11:25:38) Bad-Dll(IEP): waqtx.dll (11/8/05 11:25:38) UBF: 4 (11/8/05 11:25:38) UBB: 3 (11/8/05 11:25:38) UBR: 19 (11/8/05 11:25:38) Bad IE-pages: (11/8/05 11:25:38) Stealth-String not found: (11/8/05 11:25:38) No Files to delete. End without Reboot (11/8/05 11:26:01) SPSeHjFix 2nd Step (11/8/05 11:26:01) RunServicesOnce-Key: (edited) (11/8/05 11:26:04) Cleaned ou trouver spybot serach and destroy. quand je decompresse smitfraudfix, il y a un fichier process.exe et un reg.exe puis un fichier .SmitfraudFix.cmd que faut-il faire ?je n'ai pas l'option 1 et 2 merci
  2. comme demandé voici le rapport Logfile of HijackThis v1.99.1 Scan saved at 20:23:19, on 07/11/05 Platform: Windows 98 SE (Win9x 4.10.2222A) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\SYSTEM\KERNEL32.DLL C:\WINDOWS\SYSTEM\MSGSRV32.EXE C:\WINDOWS\SYSTEM\MPREXE.EXE C:\WINDOWS\EXPLORER.EXE C:\WINDOWS\SYSTEM\DDHELP.EXE C:\PROGRAM FILES\HIJACKTHIS\HIJACKTHIS.EXE R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\system\waqtx.dll/sp.html#93256 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\system\waqtx.dll/sp.html#93256 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = res://C:\WINDOWS\system\waqtx.dll/sp.html#93256 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\system\waqtx.dll/sp.html#93256 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\system\waqtx.dll/sp.html#93256 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = res://C:\WINDOWS\system\waqtx.dll/sp.html#93256 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer fourni par Club Internet R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=proxy.club-internet.fr:8080 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = ;127.0.0.1;<local> R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - Default URLSearchHook is missing O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - C:\PROGRAM FILES\FLASHGET\JCCATCH.DLL O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 6.0\READER\ACTIVEX\ACROIEHELPER.DLL O2 - BHO: Class - {05A55FD0-07CB-11D2-9597-D96F9FF82934} - C:\WINDOWS\NTWY.DLL O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O4 - HKLM\..\Run: [scanRegistry] C:\WINDOWS\scanregw.exe /autorun O4 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe O4 - HKLM\..\Run: [systemTray] SysTray.Exe O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\SYSTEM\hpztsb01.exe O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [avast! Web Scanner] C:\PROGRA~1\ALWILS~1\AVAST4\ASHWEBSV.EXE O4 - HKLM\..\Run: [ashMaiSv] C:\PROGRA~1\ALWILS~1\AVAST4\ashmaisv.exe O4 - HKLM\..\Run: [APILW32.EXE] C:\WINDOWS\SYSTEM\APILW32.EXE O4 - HKLM\..\Run: [3322.TMP] C:\WINDOWS\TEMP\3322.TMP.exe O4 - HKLM\..\Run: [3332.TMP] C:\WINDOWS\TEMP\3332.TMP.exe O4 - HKLM\..\Run: [3322.TMP.EXE] C:\WINDOWS\TEMP\3322.TMP.EXE O4 - HKLM\..\Run: [3332.TMP.EXE] C:\WINDOWS\TEMP\3332.TMP.EXE O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme O4 - HKLM\..\RunServices: [schedulingAgent] mstask.exe O4 - HKLM\..\RunServices: [avast!] C:\Program Files\Alwil Software\Avast4\ashServ.exe O4 - HKLM\..\RunServices: [WINSZ.EXE] C:\WINDOWS\WINSZ.EXE /s O4 - HKCU\..\Run: [Windows installer] C:\winstall.exe O4 - Startup: Docteur Club Internet.lnk = C:\Program Files\Club-Internet\Dr Club Internet\bin\matcli.exe O4 - Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O8 - Extra context menu item: Recherche &Google - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmsearch.html O8 - Extra context menu item: &Traduire à partir de l'anglais - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmwordtrans.html O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmcache.html O8 - Extra context menu item: Pages similaires - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmsimilar.html O8 - Extra context menu item: Pages liées - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmbacklinks.html O8 - Extra context menu item: Télécharger avec FlashGet - C:\PROGRAM FILES\FLASHGET\jc_link.htm O8 - Extra context menu item: Télécharger tout avec FlashGet - C:\PROGRAM FILES\FLASHGET\jc_all.htm O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~1\OFFICE10\EXCEL.EXE/3000 O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRAM FILES\FLASHGET\FLASHGET.EXE O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRAM FILES\FLASHGET\FLASHGET.EXE O16 - DPF: fdjeux - https://www.fdjeux.net/classes/fdjeux.cab
  3. merci pour ta réponse. voici le rapport Logfile of HijackThis v1.99.1 Scan saved at 20:23:19, on 07/11/05 Platform: Windows 98 SE (Win9x 4.10.2222A) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\SYSTEM\KERNEL32.DLL C:\WINDOWS\SYSTEM\MSGSRV32.EXE C:\WINDOWS\SYSTEM\MPREXE.EXE C:\WINDOWS\EXPLORER.EXE C:\WINDOWS\SYSTEM\DDHELP.EXE C:\PROGRAM FILES\HIJACKTHIS\HIJACKTHIS.EXE R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\system\waqtx.dll/sp.html#93256 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\system\waqtx.dll/sp.html#93256 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = res://C:\WINDOWS\system\waqtx.dll/sp.html#93256 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\system\waqtx.dll/sp.html#93256 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\system\waqtx.dll/sp.html#93256 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = res://C:\WINDOWS\system\waqtx.dll/sp.html#93256 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer fourni par Club Internet R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=proxy.club-internet.fr:8080 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = ;127.0.0.1;<local> R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - Default URLSearchHook is missing O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - C:\PROGRAM FILES\FLASHGET\JCCATCH.DLL O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 6.0\READER\ACTIVEX\ACROIEHELPER.DLL O2 - BHO: Class - {05A55FD0-07CB-11D2-9597-D96F9FF82934} - C:\WINDOWS\NTWY.DLL O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O4 - HKLM\..\Run: [scanRegistry] C:\WINDOWS\scanregw.exe /autorun O4 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe O4 - HKLM\..\Run: [systemTray] SysTray.Exe O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\SYSTEM\hpztsb01.exe O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [avast! Web Scanner] C:\PROGRA~1\ALWILS~1\AVAST4\ASHWEBSV.EXE O4 - HKLM\..\Run: [ashMaiSv] C:\PROGRA~1\ALWILS~1\AVAST4\ashmaisv.exe O4 - HKLM\..\Run: [APILW32.EXE] C:\WINDOWS\SYSTEM\APILW32.EXE O4 - HKLM\..\Run: [3322.TMP] C:\WINDOWS\TEMP\3322.TMP.exe O4 - HKLM\..\Run: [3332.TMP] C:\WINDOWS\TEMP\3332.TMP.exe O4 - HKLM\..\Run: [3322.TMP.EXE] C:\WINDOWS\TEMP\3322.TMP.EXE O4 - HKLM\..\Run: [3332.TMP.EXE] C:\WINDOWS\TEMP\3332.TMP.EXE O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme O4 - HKLM\..\RunServices: [schedulingAgent] mstask.exe O4 - HKLM\..\RunServices: [avast!] C:\Program Files\Alwil Software\Avast4\ashServ.exe O4 - HKLM\..\RunServices: [WINSZ.EXE] C:\WINDOWS\WINSZ.EXE /s O4 - HKCU\..\Run: [Windows installer] C:\winstall.exe O4 - Startup: Docteur Club Internet.lnk = C:\Program Files\Club-Internet\Dr Club Internet\bin\matcli.exe O4 - Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O8 - Extra context menu item: Recherche &Google - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmsearch.html O8 - Extra context menu item: &Traduire à partir de l'anglais - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmwordtrans.html O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmcache.html O8 - Extra context menu item: Pages similaires - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmsimilar.html O8 - Extra context menu item: Pages liées - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmbacklinks.html O8 - Extra context menu item: Télécharger avec FlashGet - C:\PROGRAM FILES\FLASHGET\jc_link.htm O8 - Extra context menu item: Télécharger tout avec FlashGet - C:\PROGRAM FILES\FLASHGET\jc_all.htm O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~1\OFFICE10\EXCEL.EXE/3000 O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRAM FILES\FLASHGET\FLASHGET.EXE O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRAM FILES\FLASHGET\FLASHGET.EXE O16 - DPF: fdjeux - https://www.fdjeux.net/classes/fdjeux.cab
  4. bonjour a vous tous, depuis ce matin un icone rouge barré de blanc apparait en bas de mon ecran se nommant your computer is infected. des pages only the best ne font que s'ouvrir. j'ai comme antivirus avast et VRDb est activée quand l'écran de veille s'affiche. y-a-t-il moyen de restaurer le système et ce supprimer ce virus ? que faut-il faire ? je suis win 98 se. je vous remercie de votre aide. un débutant Bnegab
×
×
  • Créer...