Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e)

Bonjour

 

Depuis ce matin, il m'est impossible de lancer Avast, CCleaner et a-squarred.

 

Que faire ?

 

Voici un rapport

 

############################## [ FindyKill V4.728 ]

 

# User : mesureux (Administrateurs) # MESUREUX-9A93E3

# Update on 13/05/09 by Chiquitine29

# Start at: 14:06:16 | 15/05/2009

# Website : http://pagesperso-orange.fr/NosTools/findykill.html

 

# AMD Athlon 64 X2 Dual Core Processor 4400+

# Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 2

# Internet Explorer 6.0.2900.2180

# Windows Firewall Status : Enabled

# AV : Avira AntiVir PersonalEdition 8.0.1.30 [ Enabled | Updated ]

# FW : ActiveArmor Firewall[ (!) Disabled ]1.0

 

# A:\ # Lecteur de disquettes 3 ½ pouces

# C:\ # Disque fixe local # 221.62 Go (139.27 Go free) [VIDEOS] # NTFS

# E:\ # Disque fixe local # 76.67 Go (62.54 Go free) [DONNÉES] # FAT32

# F:\ # Disque fixe local # 244.14 Go (195.42 Go free) [PROGRAMMES] # NTFS

# G:\ # Disque fixe local # 149.01 Go (97.64 Go free) [DIVERS] # FAT32

# I:\ # Disque CD-ROM

 

############################## [ Processus actifs ]

 

F:\WINDOWS\System32\smss.exe

F:\WINDOWS\system32\csrss.exe

F:\WINDOWS\system32\winlogon.exe

F:\WINDOWS\system32\services.exe

F:\WINDOWS\system32\lsass.exe

F:\WINDOWS\system32\svchost.exe

F:\WINDOWS\system32\svchost.exe

F:\WINDOWS\System32\svchost.exe

F:\WINDOWS\system32\svchost.exe

F:\WINDOWS\system32\svchost.exe

F:\WINDOWS\system32\spoolsv.exe

F:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe

F:\Program Files\AskBarDis\bar\bin\AskService.exe

F:\Program Files\Bonjour\mDNSResponder.exe

F:\WINDOWS\system32\svchost.exe

F:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe

F:\Program Files\Java\jre6\bin\jqs.exe

F:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe

F:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE

F:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe

F:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe

F:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe

F:\WINDOWS\system32\nvsvc32.exe

F:\WINDOWS\Installer\MSI38.tmp

F:\Documents and Settings\All Users\Application Data\SeekappSrch\seekapp139.exe

F:\WINDOWS\system32\svchost.exe

F:\WINDOWS\System32\TUProgSt.exe

F:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe

F:\WINDOWS\system32\wbem\wmiapsrv.exe

F:\WINDOWS\Explorer.EXE

F:\WINDOWS\system32\RUNDLL32.EXE

F:\Program Files\EasySearch\SiteVacuumClient.exe

F:\WINDOWS\system32\rundll32.exe

F:\WINDOWS\system32\ctfmon.exe

F:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe

F:\Documents and Settings\mesureux\Application Data\drivers\winupgro.exe

F:\Program Files\PLANET\PLANET WL-8316\WL-8316 Configuration Utility.exe

F:\Program Files\SeekappSrch\seekapp.exe

F:\Documents and Settings\mesureux\Application Data\m\flec006.exe

F:\Program Files\Internet Explorer\IEXPLORE.EXE

F:\WINDOWS\system32\wintems.exe

F:\WINDOWS\system32\wbem\wmiprvse.exe

 

################## [ Processus infectieux stoppés ]

 

"F:\Documents and Settings\mesureux\Application Data\drivers\winupgro.exe" (2148)

"F:\Documents and Settings\mesureux\Application Data\m\flec006.exe" (3668)

"F:\WINDOWS\system32\wintems.exe" (2520)

 

################## [ Fichiers / Dossiers infectieux ]

 

Found ! F:\WINDOWS\Prefetch\128843.EXE-0F118BD7.pf

Found ! F:\WINDOWS\Prefetch\202578.EXE-0E75C25E.pf

Found ! F:\WINDOWS\Prefetch\204406.EXE-24870BE4.pf

Found ! F:\WINDOWS\Prefetch\206015.EXE-2D956575.pf

Found ! F:\WINDOWS\Prefetch\207828.EXE-02256382.pf

Found ! F:\WINDOWS\Prefetch\211765.EXE-344DFE93.pf

Found ! F:\WINDOWS\Prefetch\217281.EXE-3B5A1E03.pf

Found ! F:\WINDOWS\Prefetch\221187.EXE-16EC5943.pf

Found ! F:\WINDOWS\Prefetch\222953.EXE-34E16EF5.pf

Found ! F:\WINDOWS\Prefetch\236125.EXE-11F886D0.pf

Found ! F:\WINDOWS\Prefetch\243078.EXE-2B9F4F36.pf

Found ! F:\WINDOWS\Prefetch\500046.EXE-01E4D544.pf

Found ! F:\WINDOWS\Prefetch\518468.EXE-31CE2063.pf

Found ! F:\WINDOWS\Prefetch\94109.EXE-1C835C15.pf

Found ! F:\WINDOWS\Prefetch\95062.EXE-0148ED0B.pf

Found ! F:\WINDOWS\Prefetch\96921.EXE-26936B39.pf

Found ! F:\WINDOWS\Prefetch\FLEC006.EXE-13C5958A.pf

Found ! F:\WINDOWS\Prefetch\MDELK.EXE-0EF461CE.pf

Found ! F:\WINDOWS\Prefetch\WINTEMS.EXE-377E42D4.pf

Found ! F:\WINDOWS\system32\ban_list.txt

Found ! F:\WINDOWS\system32\mdelk.exe

Found ! F:\WINDOWS\system32\wintems.exe

Found ! "F:\Documents and Settings\mesureux\Application Data\drivers"

Found ! "F:\Documents and Settings\mesureux\Application Data\drivers\downld"

Found ! "F:\Documents and Settings\mesureux\Application Data\drivers\srosa2.sys"

Found ! "F:\Documents and Settings\mesureux\Application Data\drivers\wfsintwq.sys"

Found ! "F:\Documents and Settings\mesureux\Application Data\drivers\winupgro.exe"

Found ! "F:\Documents and Settings\mesureux\Application Data\m"

Found ! "F:\Documents and Settings\mesureux\Application Data\m\data.oct"

Found ! "F:\Documents and Settings\mesureux\Application Data\m\flec006.exe"

Found ! "F:\Documents and Settings\mesureux\Application Data\m\list.oct"

Found ! "F:\Documents and Settings\mesureux\Application Data\m\shared"

Found ! "F:\Documents and Settings\mesureux\Application Data\m\srvlist.oct"

 

################## [ Infected Temp Files ]

 

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\01234567\b64[1].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\01234567\b64_1[1].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\01234567\b64_3[1].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\01234567\b64_3[2].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\01234567\b64_6[1].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\01234567\file[1].txt

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\01234567\ieps[1].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\4XQ3OLUR\b64[1].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\4XQ3OLUR\b64[2].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\4XQ3OLUR\b64[3].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\4XQ3OLUR\b64[4].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\4XQ3OLUR\b64[5].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\4XQ3OLUR\b64_1[1].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\4XQ3OLUR\b64_3[1].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\4XQ3OLUR\b64_3[2].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\4XQ3OLUR\b64_6[1].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\4XQ3OLUR\servernames[1].htm

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\JWRV2OSZ\b64[1].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\JWRV2OSZ\b64[2].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\JWRV2OSZ\b64_1[1].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\JWRV2OSZ\b64_1[2].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\JWRV2OSZ\b64_3[1].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\JWRV2OSZ\b64_3[2].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\JWRV2OSZ\b64_6[1].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\JWRV2OSZ\b64_6[2].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\JWRV2OSZ\file[1].txt

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\U9QRE701\b64_1[1].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\U9QRE701\b64_1[2].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\U9QRE701\b64_3[1].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\U9QRE701\b64_3[2].jpg

Found ! F:\Documents and Settings\mesureux\Local Settings\Temporary Internet Files\Content.IE5\U9QRE701\b64_6[1].jpg

 

################## [ Registre / Clés infectieuses ]

 

Found ! HKEY_USERS\S-1-5-21-1708537768-1844823847-725345543-1004\Software\Local AppWizard-Generated Applications\Droppix_Label_Maker_2.8.5_(Key+Serial)

Found ! HKEY_USERS\S-1-5-21-1708537768-1844823847-725345543-1004\Software\Local AppWizard-Generated Applications\hldrrr

Found ! HKEY_USERS\S-1-5-21-1708537768-1844823847-725345543-1004\Software\Local AppWizard-Generated Applications\install_patch

Found ! HKEY_USERS\S-1-5-21-1708537768-1844823847-725345543-1004\Software\Local AppWizard-Generated Applications\key_gen

Found ! HKEY_USERS\S-1-5-21-1708537768-1844823847-725345543-1004\Software\Local AppWizard-Generated Applications\mdelk

Found ! HKEY_USERS\S-1-5-21-1708537768-1844823847-725345543-1004\Software\Local AppWizard-Generated Applications\msnmsgr

Found ! HKEY_USERS\S-1-5-21-1708537768-1844823847-725345543-1004\Software\Local AppWizard-Generated Applications\nideiect

Found ! HKEY_USERS\S-1-5-21-1708537768-1844823847-725345543-1004\Software\Local AppWizard-Generated Applications\winfilse

Found ! HKEY_USERS\S-1-5-21-1708537768-1844823847-725345543-1004\Software\Local AppWizard-Generated Applications\winupgro

Found ! HKEY_USERS\S-1-5-21-1708537768-1844823847-725345543-1004\Software\bisoft

Found ! HKEY_USERS\S-1-5-21-1708537768-1844823847-725345543-1004\Software\DateTime4

Found ! HKEY_USERS\S-1-5-21-1708537768-1844823847-725345543-1004\Software\FFC

Found ! HKEY_USERS\S-1-5-21-1708537768-1844823847-725345543-1004\Software\MuleAppData

Found ! HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\Droppix_Label_Maker_2.8.5_(Key+Serial)

Found ! HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\hldrrr

Found ! HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\install_patch

Found ! HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\key_gen

Found ! HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\mdelk

Found ! HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\msnmsgr

Found ! HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\nideiect

Found ! HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\winfilse

Found ! HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\winupgro

Found ! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srosa

Found ! HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\srosa

Found ! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SROSA

Found ! HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_SROSA

Found ! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sK9Ou0s

Found ! HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sK9Ou0s

Found ! HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\sK9Ou0s

Found ! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SK9OU0S

Found ! HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_SK9OU0S

Found ! HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_SK9OU0S

Found ! HKEY_CURRENT_USER\Software\bisoft

Found ! HKEY_CURRENT_USER\Software\DateTime4

Found ! HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\"drvsyskit"

Found ! HKEY_USERS\S-1-5-21-1708537768-1844823847-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\"drvsyskit"

Found ! HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\"german.exe"

Found ! HKEY_USERS\S-1-5-21-1708537768-1844823847-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\"german.exe"

Found ! HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\"mule_st_key"

Found ! HKEY_USERS\S-1-5-21-1708537768-1844823847-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\"mule_st_key"

 

# (!) HKLM\SYSTEM\...\Services\srosa -> Start = 0x1

# (!) HKLM\SYSTEM\...\Services\sK9Ou0s -> Start = 0x1

 

################## [ Recherche dans supports amovibles]

 

Found ! C:\InfoSat.txt

 

################## [ Registre / Mountpoints2 ]

 

# -> Not found !

 

################## [ ! Fin du rapport # FindyKill V4.728 ! ]

Invité
Ce sujet ne peut plus recevoir de nouvelles réponses.
  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...