no save
Assistance
Achat
News

Forum | virus/sécurité
[WORM/IrcBot.827392.2] Analyse log HijackThis
ktherine, le lun. 07 juil. 2008 à 11:04:14
bonjour et merci de votre aide

pour ce qui est de Vundo : il n a rien trouvé

VundoFix V7.0.6

Scan started at 09:18:36 07/07/2008

Listing files found while scanning....

No infected files were found.


Beginning removal...

pour l autre voici le rapport


[b]SDFix: Version 1.202 /b
Run by nenfants on 07/07/2008 at 09:52

Microsoft Windows XP [version 5.1.2600]
Running From: C:\DOCUME~1\nenfants\Bureau\SDFix

[b]Checking Services /b:


Restoring Default Security Values
Restoring Default Hosts File

Rebooting


[b]Checking Files /b:

No Trojan Files Found






Removing Temp Files

[b]ADS Check /b:



[b]Final Check /b:

catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-07-07 10:45:48
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden services & system hive ...

scanning hidden registry entries ...

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher]
"TracesProcessed"=dword:00000096
"TracesSuccessful"=dword:0000004c

scanning hidden files ...

scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0


[b]Remaining Services /b:




Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Flagship Studios\\Hellgate London\\Launcher.exe"="C:\\Program Files\\Flagship Studios\\Hellgate London\\Launcher.exe:*:Enabled:Hellgate : London"
"C:\\Program Files\\ICQ6\\ICQ.exe"="C:\\Program Files\\ICQ6\\ICQ.exe:*:Enabled:ICQ Library"
"C:\\Rohan\\rohanclient.exe"="C:\\Rohan\\rohanclient.exe:*:Enabled:Rohan Online Game"
"C:\\Program Files\\Steam\\SteamApps\\martal\\counter-strike source\\hl2.exe"="C:\\Program Files\\Steam\\SteamApps\\martal\\counter-strike source\\hl2.exe:*:Enabled:hl2"
"C:\\Program Files\\AVG\\AVG8\\avgupd.exe"="C:\\Program Files\\AVG\\AVG8\\avgupd.exe:*:Enabled:avgupd.exe"
"C:\\Program Files\\AVG\\AVG8\\avgemc.exe"="C:\\Program Files\\AVG\\AVG8\\avgemc.exe:*:Enabled:avgemc.exe"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype. Take a deep breath "

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[b]Remaining Files /b:



[b]Files with Hidden Attributes /b:

Mon 28 Apr 2008 4,348 ..SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Wed 4 Jun 2008 4,348 ..SH. --- "C:\Documents and Settings\All Users.WINDOWS\DRM\DRMv1.bak"
Mon 2 Jun 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\f7db876e78b88fd8276fd7d29cb7e4eb\BIT1.tmp"

[b]Finished!/b



bon j ai tenté un truc, lancer le jeu (que le trojan me bloque) sans l antivirus et là ca fonctionne

mais c'est la porte ouverte aux virus

que dois je faire

merci
Précédentcygnus_hakuchou
juil. 08
ktherine
juil. 08
Suivant
REPONSES
cygnus_hakuchou
juil. 08
ktherine
juil. 08
ktherine
juil. 08
cygnus_hakuchou
juil. 08
ktherine
juil. 08
ktherine
juil. 08
cygnus_hakuchou
juil. 08
Version Web
Réalisé par RedShift
no save