
Connaissez vous ce virus ?
Modérateur: Modérateurs et Modératrices
Logfile of HijackThis v1.99.1
Scan saved at 01:37:52, on 06/09/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\adslTV\adslTV.exe
C:\WINDOWS\system32\svchost.exe
C:\Documents and Settings\moi\Bureau\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.free.fr:3128
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: SnapFlash Class - {A44CBB0B-C77D-4BF5-87CC-B4EE79AD1B7E} - C:\Program Files\Fichiers communs\justDo\Jd2002.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [Windows LSASS Service] C:\DAO\svchost.exe
O4 - HKCU\..\Run: [CTFMON.EXE] I:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [RegEdit Extensions 1.0 (Beta)] rundll32.exe regedex.dll,StartExReg
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: TB-Tray.lnk = C:\Thunderbird-Tray\TBTray.exe
O8 - Extra context menu item: Save Flash with Flash Catcher - res://C:\Program Files\Fichiers communs\justDo\IECatcher.DLL/FlashCatcher.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: (no name) - {2C5ED0A2-778E-4E59-B4D2-E19A1A11F031} - C:\Documents and Settings\moi\Bureau\Linkman\IECon1.exe (file missing)
O9 - Extra 'Tools' menuitem: &Add URL to Linkman - {2C5ED0A2-778E-4E59-B4D2-E19A1A11F031} - C:\Documents and Settings\moi\Bureau\Linkman\IECon1.exe (file missing)
O9 - Extra button: (no name) - {3B18AD83-E87F-41C8-BCDE-C1EBB767E515} - C:\Documents and Settings\moi\Bureau\Linkman\IECon2.exe (file missing)
O9 - Extra 'Tools' menuitem: Add and &edit URL to Linkman - {3B18AD83-E87F-41C8-BCDE-C1EBB767E515} - C:\Documents and Settings\moi\Bureau\Linkman\IECon2.exe (file missing)
O9 - Extra button: Run DAP - {669695BC-A811-4A9D-8CDF-BA8C795F261C} - C:\PROGRA~1\DAP\DAP.EXE
O9 - Extra button: (no name) - {77D26230-12D4-41A3-BCC0-07C70B592C15} - C:\Documents and Settings\moi\Bureau\Linkman\Linkman.exe (file missing)
O9 - Extra 'Tools' menuitem: Show &Linkman - {77D26230-12D4-41A3-BCC0-07C70B592C15} - C:\Documents and Settings\moi\Bureau\Linkman\Linkman.exe (file missing)
O9 - Extra button: Flash Catcher - {90BAE0EF-F4BF-4FAC-B2EC-2C725C34AF12} - C:\Program Files\Fichiers communs\justDo\IECatcher.DLL
O9 - Extra 'Tools' menuitem: Flash Catcher - {90BAE0EF-F4BF-4FAC-B2EC-2C725C34AF12} - C:\Program Files\Fichiers communs\justDo\IECatcher.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
O20 - Winlogon Notify: WB - C:\PROGRA~1\Stardock\OBJECT~1\WINDOW~1\fastload.dll
O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - Unknown owner - C:\TuneUp Utilities 2006\WinStylerThemeSvc.exe (file missing)
la Mini-manip a écrit:Téléchargez et installez HiJackThis dans un répertoire qui lui sera réservé
http://assiste.com.free.fr/p/logitheque/hijackthis.php
Renommez le fichier HijackThis.exe en <votre>.exe
Retourner vers Sécurité (Contamination - Décontamination)
Utilisateurs parcourant ce forum: Aucun utilisateur enregistré et 51 invités