no save
Assistance
Achat
News

Forum | virus/sécurité
PBM alerte virus
CHELMI18, le mer. 16 juil. 2008 à 18:07:45
merci DESTRIO 5

Voici le rapport


Username "Client" - 16/07/2008 17:55:50 [Fixwareout edited 9/01/2007]

~~~~~ Prerun check

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters
"nameserver"="85.255.116.52 85.255.112.106" <Value cleared.
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{639A49F5-9438-4FCE-9A1F-B4AAF192B47F}
"nameserver"="85.255.116.52,85.255.112.106" <Value cleared.
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{249E7637-DCD1-4364-873A-3FC0943E5FC5}
"DhcpNameServer"="85.255.116.52,85.255.112.106" <Value cleared.

Cache de résolution DNS vidé.


System was rebooted successfully.

~~~~~ Postrun check
HKLM\SOFTWARE\~\Winlogon\ "System"=""
....
....
~~~~~ Misc files.
C:\Documents and Settings\Client\Application Data\Install.dat Deleted
....
~~~~~ Checking for older varients.
....


C:\Program Files\SpyLocked 4.3 < Found
Additional tools are recommended.

~~~~~ Current runs (hklm hkcu "run" Keys Only)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SiSPower"="Rundll32.exe SiSPower.dll,ModeAgent"
"SiS Windows KeyHook"="C:\\WINDOWS\\system32\\keyhook.exe"
"SiSUSBRG"="C:\\WINDOWS\\SiSUSBrg.exe"
"SoundMan"="SOUNDMAN.EXE"
"AGRSMMSG"="AGRSMMSG.exe"
"Apoint"="C:\\Program Files\\Apoint2K\\Apoint.exe"
"LiveMonitor"="C:\\Program Files\\MSI\\Live Update 3\\LMonitor.exe"
"RemoteControl"="\"C:\\Program Files\\CyberLink\\PowerDVD\\PDVDServ.exe\""
"EPSON Stylus CX6400"="C:\\WINDOWS\\System32\\spool\\DRIVERS\\W32X86\\3\\E_S10IC2.EXE /P19 \"EPSON Stylus CX6400\" /O6 \"USB001\" /M \"Stylus CX6400\""
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"carpediem"="C:\\Program Files\\Lemoncast\\lemoncast.exe"
"PViever"="\"C:\\Program Files\\Gay-Lesbian-Photo\\Gay-Lesbian-Photo.exe\" hide"
"DownloadAccelerator"="\"C:\\Program Files\\DAP\\DAP.EXE\" /STARTUP"
"dc6_check"="C:\\Program Files\\SystemDoctor 2006 Free\\dcmon.exe"
"cmonitor"=""
"USDR6cw"="C:\\Program Files\\SystemDoctor 2006 Free\\USDR6cw.exe -c"
"pas_check"="C:\\Program Files\\SystemDoctor 2006 Free\\pasmon.exe"
"Zone Labs Client"="\"C:\\Program Files\\Zone Labs\\ZoneAlarm\\zlclient.exe\""
"ZoneAlarm Client"="\"C:\\Program Files\\Zone Labs\\ZoneAlarm\\zlclient.exe\""
"Picasa Media Detector"="C:\\Program Files\\Picasa2\\PicasaMediaDetector.exe"
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.6.0_05\\bin\\jusched.exe\""
"ClamWin"="\"C:\\Program Files\\ClamWin\\bin\\ClamTray.exe\" --logon"
"V0400Mon.exe"="C:\\WINDOWS\\V0400Mon.exe"
"asc32"="\"C:\\Program Files\\ASC 2.1\\asc 2.1.exe\""
"BitDefender Antiphishing Helper"="\"C:\\Program Files\\BitDefender\\BitDefender 2008\\IEShow.exe\""
"BDAgent"="\"C:\\Program Files\\BitDefender\\BitDefender 2008\\bdagent.exe\""

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\ctfmon.exe"
"Power2GoExpress"="\"C:\\Program Files\\CyberLink\\Power2Go\\Power2GoExpress.exe\""
"Yahoo! Pager"="\"C:\\PROGRA~1\\Yahoo!\\MESSEN~1\\YAHOOM~1.EXE\" -quiet"
"MsnMsgr"="\"C:\\Program Files\\MSN Messenger\\MsnMsgr.Exe\" /background"
"SystemDoctor 2006 Free"=""
"Uniblue RegistryBooster 2"="C:\\Program Files\\Uniblue\\RegistryBooster 2\\RegistryBooster.exe /S"
"Weflirt"="\"C:\\Program Files\\Weflirt\\weflirt.exe\" -background"
"Creative Live! Cam Manager"="\"C:\\Program Files\\Creative\\Creative Live! Cam\\Live! Cam Manager\\CTLCMgr.exe\""
"wblogon"="C:\\WINDOWS\\system32\\ubpr01.exe"
"AUTORUN_VAL"="C:\\Program Files\\ASC 2.1\\asc 2.1.exe "
....
Hosts file was reset, If you use a custom hosts file please replace it...
~~~~~ End report ~~~~~
PrécédentDestrio5
juil. 08
Destrio5
juil. 08
Suivant
REPONSES
Destrio5
juil. 08
CHELMI18
juil. 08
Destrio5
juil. 08
CHELMI18
juil. 08
Destrio5
juil. 08
CHELMI18
juil. 08
Destrio5
juil. 08
CHELMI18
juil. 08
Destrio5
juil. 08
CHELMI18
juil. 08
Version Web
Réalisé par RedShift
no save