Home > General > Antivirusxp08

Antivirusxp08

vite vite pourvus que ça soit bientot fini!!!!!!! Download SDFix and save it to your desktop. HKEY_CURRENT_USER\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> Quarantined and deleted successfully. antivirusxp08 [RESOLVED] Started by mbrikha , Jul 27 2008 11:43 PM « Prev Page 4 of 6 2 3 4 5 6 Next This topic is locked #46 mbrikha Posted 01

J'avais pas la procédure devant moi quand j'ai fais sa alors j'ai oublier de cliquer sur suprimer apres le scan. décidement mon pc gagne sur ma patience... Prosessen er tidkrevende. C:\Program Files\MyWebSearch\bar\Settings\setting2.htm (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\MyWebSearch\bar\Settings\s_pid.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.browseroverlaybarbutton (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Program Files\MyWebSearch\bar\icons (Adware.MyWebSearch) -> Quarantined and deleted successfully.

Then drag the CFScript.txt into ComboFix.exe as depicted in the animation below. HKEY_CLASSES_ROOT\Interface\{de38c398-b328-4f4c-a3ad-1b5e4ed93477} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully. Please go to “start” >>“control panel” >> “add/remove programs” and uninstall the following if present, if not just proceed:DriveCleaner 2006 Freerhcnncj0e905 Probably wont be thereUsing windows explorer please delete the following

HKEY_LOCAL_MACHINE\SOFTWARE\rhc1f8j0e392 (Rogue.Multiple) -> No action taken. C:\Documents and Settings\Chastity Burton\Application Data\alot\Product_0\Product_0.xml.backup (Adware.BHO) -> Quarantined and deleted successfully. C:\Windows\System32\prsBLkkj.ini (Trojan.Vundo) -> No action taken. C:\Documents and Settings\Chastity Burton\Application Data\alot\Product_6\Product_6.xml.backup (Adware.BHO) -> Quarantined and deleted successfully.

C:\Documents and Settings\Chastity Burton\Application Data\alot\TimerManager\TimerManager.xml (Adware.BHO) -> Quarantined and deleted successfully. Contenu du dossier 'Scheduled Tasks/Tƒches planifi‚es' 2008-02-26 C:\Windows\Tasks\McDefragTask.job - c:\PROGRA~1\mcafee\mqc\QcConsol.exe [2007-12-04 13:32] 2008-07-31 C:\Windows\Tasks\McQcTask.job - c:\PROGRA~1\mcafee\mqc\QcConsol.exe [2007-12-04 13:32] . - - - - ORPHANS REMOVED - - - - SSODL-wqLxMX-{82810EF4-282B-A45E-66F4-2C288AD68A4C} - C:\Documents and Settings\Chastity Burton\Application Data\alot\Product_5 (Adware.BHO) -> Quarantined and deleted successfully. Dossier(s) infecté(s): C:\Program Files\rhc1f8j0e392 (Rogue.Multiple) -> No action taken.

HKEY_CLASSES_ROOT\cdmyidd.securitytoolbar (Trojan.BHO) -> Quarantined and deleted successfully. Je comprends que ça t'agace mais : - si on ne va pas jusqu'au bout, le problème risque de revenir - pour éviter tout ça, il aurait fallu ne pas être HKEY_CLASSES_ROOT\Interface\{7473d295-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully. Afin de supprimer un maximum d'infections, il convient de redémarrer votre ordinateur en mode sans échec, pour cela suivez les instructions de cette page : Redémarrer en mode sans échec Démarrer

Sikkerheden halter, men det kan der gres noget ved. C:\Documents and Settings\Chastity Burton\Local Settings\Temp\.ttF.tmp (Trojan.Downloader) -> Quarantined and deleted successfully. If you believe this post is offensive or violates the CNET Forums' Usage policies, you can report it below (this will not automatically remove the post). C:\Windows\System32\xpufgtdm.ini (Trojan.Vundo) -> Quarantined and deleted successfully.

C:\Documents and Settings\Chastity Burton\Application Data\alot\Product_2\Product_2.xml (Adware.BHO) -> Quarantined and deleted successfully. Le programme Antivirus XP 2008 c'est installé magiquement sur mon ordi et il me donne du fil a retordre. Attention : n'utilise pas ta souris ni ton clavier pendant que le programme tourne. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\aoprndtws (Trojan.Vundo) -> Quarantined and deleted successfully.

After reboot, (in case it asks to reboot), please post the following reports/logs into your next reply:VirScan.org resultCombofix.txt A new HijackThis log. 0 #48 mbrikha Posted 01 August 2008 - 03:45 Registry Data Items Infected: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\StartMenuLogOff (Hijack.StartMenu) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{00a6faf6-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

Faut tu je recommence ?

this is what it came up with. C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL (Adware.MyWebSearch) -> Delete on reboot. Tu le retrouveras dans l'onglet "rapports/logs" de malwarebyte's A part ça, non ce n'est pas fini... august 2008 - 21:15 #1 Der ser ikke ud til at vre meget virus/spyware tilbage.

HKEY_CLASSES_ROOT\Interface\{2e3537fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Chastity Burton\Application Data\alot\Resources\Images\default_215_alot_music_freeradio.bmp (Adware.BHO) -> Quarantined and deleted successfully. C:\Documents and Settings\Chastity Burton\Local Settings\Temp\.ttD.tmp (Trojan.Downloader) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{286f5011-d462-4803-8ed3-5938434f6415} (Trojan.Vundo) -> No action taken.

C:\Program Files\MyWebSearch\bar\icons\CM.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> Quarantined and deleted successfully. Once you have made your post and are waiting, please DO NOT make another reply until it has been responded to by a member of the HJT Team. C:\Program Files\MyWebSearch\bar\1.bin\F3POPSWT.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Windows\System32\xlbstmgn.dll (Trojan.Vundo) -> No action taken. C:\Documents and Settings\Chastity Burton\Application Data\alot\Product_3\Product_3.xml (Adware.BHO) -> Quarantined and deleted successfully. C:\Program Files\MyWebSearch\bar\Settings\prevcfg2.htm (Adware.MyWebSearch) -> Quarantined and deleted successfully. Automatic scanning, healing and system check will be executed. 5.

About CNET Privacy Policy Ad Choice Terms of Use Mobile User Agreement Help Center Rechercher Inscrivez-vous Connexion Accueil Encyclopédie Forum Astuces Télécharger News Sites Pro Emploi High-Tech Santé-Médecine Droit-Finances CodeS-SourceS NextPLZ C:\Documents and Settings\Chastity Burton\Application Data\alot\ErrorSearch (Adware.BHO) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{17de5e5e-bfe3-4e83-8e1f-8755795359ec} (Adware.MyWebSearch) -> Quarantined and deleted successfully.