Salut, voilà une semaine que je suis infecté par le trojan rootkit " mebroot " qui commence sérieusement à me brouter le cul ![]()
Il est détecté par Nod32 à chaque démarrage du PC et je ne peut pas le supprimer ni le mettre en quarantaine
http://img405.imageshack.us/f/sanstitreztx.png/
J'ai essayé tout ce que j'ai pu à savoir analyse avec :
Nod32, Spybot, Ad-Aware, Malware's bytes, j'ai même essayé la première et troisième méthode sur ce site http://www.commentcamarche.net/faq/25171-infection-sinowal-mebroot-rootkit-mbr
Mbr me met
Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net
device: opened successfully
user: MBR read successfully
kernel: MBR read successfully
user & kernel MBR OK
Donc qu'il ne trouve rien, j'ose même plus me connecter à mes comptes, j'veut jouer à BC2 ![]()
Là je bute, je sais plus rien faire et je peut pas formater car le virus est dans la mémoire vive apparemment
Est ce possible que Nod32 se gourre ou le virus est bien là
Si oui je ne sais pas comment je l'ai chopé ...
J'ai besoin d'aide Svp ![]()
Salut
On va passer à la methode supreme (qui va tout te degager d'un coup) :
Telecharge combofix sur cette page http://www.bleepingcomputer.com/download/anti-virus/combofix
enregistre le fichier combofix sur ton bureau en lui donnant un autre nom par exemple coucou.exe ou nimporte quoi mais pas combofix.exe
Ensuite tu te lance, tu te laisse guider et s'il te demande d'installer la console de recuperation tu acceptes...
Ah oui et desactive ton antivirus avant de le lancer
Salut, voilà le rapport combofix, qui n'a apparemment rien trouvé étant donné qu'une fois terminé j'ai remis nod32 qui m'a remis l'alerte mebroot
ComboFix 10-07-24.01 - Shaoul 25/07/2010 11:28:36.1.2 - x86
Microsoft Windows 7 Édition Intégrale 6.1.7600.0.1252.33.1036.18.2046.1282 [GMT 2:00]
Lancé depuis: c:\users\Shaoul\Desktop\Coucou.exe
SP: Spybot - Search and Destroy *disabled* (Outdated) {ED588FAF-1B8F-43B4-ACA8-8E3C85DADBE9}
* Un antivirus résident est actif
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Install.exe
.
((((((((((((((((((((((((((((( Fichiers créés du 2010-06-25 au 2010-07-25 ))))))))))))))))))))))))))))))))))))
.
2010-07-25 09:34 . 2010-07-25
09:34 -------- d-----w- c:\users\Shaoul\AppData\Lo
cal\temp
2010-07-25 09:34 . 2010-07-25
09:34 -------- d-----w- c:\users\Public\AppData\Lo
cal\temp
2010-07-25 09:34 . 2010-07-25
09:34 -------- d-----w- c:\users\Default\AppData\L
ocal\temp
2010-07-23 13:15 . 2010-07-23 13:15 -------- d-----w- c:\program files\WorldOfGoo
2010-07-23 13:13 . 2010-07-24 12:32 -------- d-----w- c:\program files\L'Odyssée d'Abe
2010-07-21 13:50 . 2010-06-02
02:55 74072 ----a-w- c:\windows\system32\XAPOFX1_5
.dll
2010-07-21 13:50 . 2010-06-02
02:55 527192 ----a-w- c:\windows\system32\XAudio2_
7.dll
2010-07-21 13:50 . 2010-06-02
02:55 239960 ----a-w- c:\windows\system32\xactengi
ne3_7.dll
2010-07-21 13:50 . 2010-05-26
09:41 2106216 ----a-w- c:\windows\system32\D3DComp
iler_43.dll
2010-07-21 13:50 . 2010-05-26
09:41 1868128 ----a-w- c:\windows\system32\d3dcsx_
43.dll
2010-07-21 13:50 . 2010-05-26
09:41 470880 ----a-w- c:\windows\system32\d3dx10_4
3.dll
2010-07-21 13:50 . 2010-05-26
09:41 248672 ----a-w- c:\windows\system32\d3dx11_4
3.dll
2010-07-21 13:50 . 2010-05-26
09:41 1998168 ----a-w- c:\windows\system32\D3DX9_4
3.dll
2010-07-07 09:19 . 2010-07-07
09:19 -------- d-----w- c:\users\Shaoul\AppData\Ro
aming\Need for Speed World
2010-07-07 09:06 . 2010-07-07
09:06 -------- d-----w- c:\users\Shaoul\AppData\Lo
cal\Electronic_Arts_Inc
2010-07-05 11:33 . 2010-07-05 11:33 -------- d-----w- c:\windows\system32\Wat
2010-07-05 05:41 . 2010-07-05
05:41 -------- d-----w- c:\users\Shaoul\AppData\Lo
cal\Threat Expert
2010-07-05 05:34 . 2010-07-05 10:52 -------- d-----w- c:\program files\Common Files\PC Tools
2010-07-05 05:34 . 2010-07-05 11:28 -------- d-----w- c:\program files\Spyware Doctor
2010-07-05 05:34 . 2010-07-05
05:34 -------- d-----w- c:\users\Shaoul\AppData\Ro
aming\PC Tools
2010-07-05 05:34 . 2010-07-05 05:34 -------- d-----w- c:\programdata\PC Tools
2010-07-03 07:16 . 2010-07-19 18:50 -------- d-----w- c:\program files\Activision
2010-06-26 12:12 . 2010-06-26 12:12 -------- d-----w- c:\program files\NVIDIA Corporation
2010-06-25 15:00 . 2010-06-25 15:00 -------- d-----w- c:\program files\Microsoft.NET
2010-06-25 14:59 . 2009-11-25
10:47 99176 ----a-w- c:\windows\system32\Presentat
ionHostProxy.dll
2010-06-25 14:59 . 2009-11-25
10:47 49472 ----a-w- c:\windows\system32\netfxperf
.dll
2010-06-25 14:59 . 2009-11-25
10:47 297808 ----a-w- c:\windows\system32\mscoree.
dll
2010-06-25 14:59 . 2009-11-25
10:47 295264 ----a-w- c:\windows\system32\Presenta
tionHost.exe
2010-06-25 14:59 . 2009-11-25
10:47 1130824 ----a-w- c:\windows\system32\dfshim.
dll
2010-06-25 14:56 . 2010-05-09
09:14 641536 ----a-w- c:\windows\system32\CPFilter
s.dll
2010-06-25 14:56 . 2010-05-09
09:14 417792 ----a-w- c:\windows\system32\msdri.dl
l
2010-06-25 14:56 . 2010-03-24
06:37 1286456 ----a-w- c:\windows\system32\ntdll.d
ll
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-07-25 08:48 . 2009-12-10 16:03 -------- d-----w- c:\program files\Steam
2010-07-25 08:30 . 2010-03-18
16:37 -------- d-----w- c:\users\Shaoul\AppData\Ro
aming\Mumble
2010-07-24 20:50 . 2010-02-22
19:59 -------- d-----w- c:\users\Shaoul\AppData\Ro
aming\vlc
2010-07-24 18:04 . 2010-03-11
20:56 218808 ----a-w- c:\windows\system32\PnkBstrB
.exe
2010-07-24 17:32 . 2010-03-11
20:57 137256 ----a-w- c:\windows\system32\drivers\
PnkBstrK.sys
2010-07-24 15:58 . 2009-12-11 10:52 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-07-24 12:32 . 2010-07-23 13:13 -------- d-----w- c:\program files\L'Odyssée d'Abe
2010-07-21 14:02 . 2010-02-20 11:57 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2010-07-19 18:50 . 2010-06-03
10:35 -------- d-----w- c:\users\Shaoul\AppData\Ro
aming\Rainmeter
2010-07-19 18:50 . 2009-12-27
13:35 -------- d-----w- c:\users\Shaoul\AppData\Ro
aming\ArcSoft
2010-07-19 18:50 . 2009-12-10 15:11 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-07-19 18:50 . 2010-01-02 16:06 -------- d-----w- c:\program files\Vuze
2010-07-19 18:50 . 2010-05-21 14:20 -------- d-----w- c:\program files\AGEIA Technologies
2010-07-10 16:27 . 2010-03-30 08:08 -------- d-----w- c:\program files\Electronic Arts
2010-07-08 13:41 . 2009-07-14
08:39 704242 ----a-w- c:\windows\system32\perfh00C
.dat
2010-07-08 13:41 . 2009-07-14
08:39 130548 ----a-w- c:\windows\system32\perfc00C
.dat
2010-07-07 09:05 . 2010-03-30 08:12 -------- d-----w- c:\programdata\Electronic Arts
2010-06-24 14:49 . 2010-06-23 19:17 -------- d-----w- c:\programdata\NOS
2010-06-15 10:42 . 2010-01-02
16:06 -------- d-----w- c:\users\Shaoul\AppData\Ro
aming\Azureus
2010-06-10 11:54 . 2009-12-19 12:48 -------- d-----w- c:\program files\Garena
2010-06-09 10:24 . 2009-12-21 12:24 -------- d-----w- c:\program files\JDownloader
2010-06-09 09:44 . 2009-07-14 02:37 -------- d-----w- c:\program files\Windows Mail
2010-06-03 12:42 . 2010-06-03
12:13 -------- d-----w- c:\users\Shaoul\AppData\Ro
aming\Winamp
2010-06-03 12:13 . 2010-06-03 12:13 -------- d-----w- c:\program files\Winamp
2010-06-03 10:46 . 2010-06-03 10:34 -------- d-----w- c:\program files\Rainmeter
2010-05-31 18:40 . 2010-05-31 18:40 -------- d-----w- c:\programdata\WOP
2010-05-27 07:24 . 2010-06-09
08:56 34304 ----a-w- c:\windows\system32\atmlib.dl
l
2010-05-27 03:49 . 2010-06-09
08:56 293888 ----a-w- c:\windows\system32\atmfd.dl
l
2010-05-22 13:46 . 2010-05-22
13:46 495104 ----a-w- c:\windows\system32\sqlite3.
dll
2010-05-21 12:14 . 2009-12-10
14:46 221568 ------w- c:\windows\system32\MpSigStu
b.exe
2010-05-21 05:18 . 2010-06-09
08:57 977920 ----a-w- c:\windows\system32\wininet.
dll
2010-05-05 11:40 . 2010-05-07
17:08 311296 ----a-w- c:\windows\system32\TubeFind
er.exe
2010-05-05 02:46 . 2010-05-05
02:46 5550592 ----a-w- c:\windows\system32\drivers
\atikmdag.sys
2010-05-05 02:19 . 2010-05-05
02:19 143360 ----a-w- c:\windows\system32\atiapfxx
.exe
2010-05-05 02:19 . 2010-03-03
04:16 506880 ----a-w- c:\windows\system32\aticfx32
.dll
2010-05-05 02:16 . 2010-03-03
04:13 446464 ----a-w- c:\windows\system32\ATIDEMGX
.dll
2010-05-05 02:15 . 2010-05-05
02:15 372736 ----a-w- c:\windows\system32\atieclxx
.exe
2010-05-05 02:14 . 2010-05-05
02:14 172032 ----a-w- c:\windows\system32\atiesrxx
.exe
2010-05-05 02:14 . 2010-05-05
02:14 15024128 ----a-w- c:\windows\system32\atiogl
xx.dll
2010-05-05 02:13 . 2010-05-05
02:13 159744 ----a-w- c:\windows\system32\atitmmxx
.dll
2010-05-05 02:13 . 2010-03-03
04:10 356352 ----a-w- c:\windows\system32\atipdlxx
.dll
2010-05-05 02:12 . 2010-05-05
02:12 278528 ----a-w- c:\windows\system32\Oemdspif
.dll
2010-05-05 02:12 . 2010-05-05
02:12 11776 ----a-w- c:\windows\system32\atimuixx.
dll
2010-05-05 02:12 . 2010-05-05
02:12 43520 ----a-w- c:\windows\system32\ati2edxx.
dll
2010-05-05 02:08 . 2010-03-03
04:06 3611648 ----a-w- c:\windows\system32\atidxx3
2.dll
2010-05-05 01:41 . 2010-05-05
01:41 3788288 ----a-w- c:\windows\system32\atiumda
g.dll
2010-05-05 01:41 . 2010-05-05
01:41 53248 ----a-w- c:\windows\system32\aticalrt.
dll
2010-05-05 01:41 . 2010-05-05
01:41 53248 ----a-w- c:\windows\system32\aticalcl.
dll
2010-05-05 01:38 . 2010-05-05
01:38 4022272 ----a-w- c:\windows\system32\aticald
d.dll
2010-05-05 01:34 . 2010-03-03
03:23 50176 ----a-w- c:\windows\system32\coinst.dl
l
2010-05-05 01:23 . 2010-03-03
03:08 237568 ----a-w- c:\windows\system32\atiadlxx
.dll
2010-05-05 01:23 . 2010-05-05
01:23 12800 ----a-w- c:\windows\system32\atiglpxx.
dll
2010-05-05 01:23 . 2010-05-05
01:23 15360 ----a-w- c:\windows\system32\atigktxx.
dll
2010-05-05 01:23 . 2010-05-05
01:23 176128 ----a-w- c:\windows\system32\drivers\
atikmpag.sys
2010-05-05 01:22 . 2010-03-03
03:06 28160 ----a-w- c:\windows\system32\atiuxpag.
dll
2010-05-05 01:22 . 2010-05-05
01:22 20480 ----a-w- c:\windows\system32\atiu9pag.
dll
2010-05-05 01:21 . 2010-05-05
01:21 53248 ----a-w- c:\windows\system32\drivers\a
ti2erec.dll
2010-05-05 01:19 . 2010-05-05
01:19 3015680 ----a-w- c:\windows\system32\atiumdv
a.dll
2010-05-05 01:08 . 2010-05-05
01:08 52224 ----a-w- c:\windows\system32\atimpc32.
dll
2010-05-05 01:08 . 2010-05-05
01:08 52224 ----a-w- c:\windows\system32\amdpcom32
.dll
2010-05-01 14:49 . 2010-06-09
08:57 2326528 ----a-w- c:\windows\system32\win32k.
sys
2010-04-29 13:39 . 2010-02-20
11:58 38224 ----a-w- c:\windows\system32\drivers\m
bamswissarmy.sys
2010-04-29 13:39 . 2010-02-20
11:58 20952 ----a-w- c:\windows\system32\drivers\m
bam.sys
2010-04-28 21:17 . 2010-04-28
21:17 2110 ----a-w- c:\windows\system32\atipblag.d
at
2009-06-10 21:26 . 2009-07-14
02:04 9633792 --sha-r- c:\windows\Fonts\StaticCach
e.dat
2009-07-14 01:14 . 2009-07-13
23:42 396800 --sha-w- c:\windows\winsxs\x86_micros
oft-windows-mail-app_31bf3856ad364e35_6.1.7600.163
85_none_f12e83abb108c86c\WinMail.exe
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Cur
rentVersion\Run]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2009-09-29 2054360]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-03-02 98304]
"Launch LgDeviceAgent"="c:\program files\Logitech\GamePanel Software\LgDevAgt.exe" [2010-02-18 357448]
"Launch LCDMon"="c:\program files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe" [2010-02-18 1573448]
"Launch LGDCore"="c:\program files\Logitech\GamePanel Software\G-series Software\LGDCore.exe" [2010-02-18 3203144]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-06-09 976832]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Rainmeter.lnk - c:\program files\Rainmeter\Rainmeter.exe [2009-11-1 119296]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\cur
rentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechVideoRepair]
2005-06-08 14:24 458752 ----a-w- c:\program files\Logitech\Video\ISStart.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechVideoTray]
2005-06-08 14:14 217088 ----a-w- c:\program files\Logitech\Video\LogiTray.exe
[HKEY_CURRENT_USER\software\microsoft\windows\curr
entversion\run-]
"LogitechSoftwareUpdate"="c:\program files\Logitech\Video\ManifestEngine.exe" boot
Mode sans échec + Hitman Pro ![]()
[HKEY_LOCAL_MACHINE\software\microsoft\windows\cur
rentversion\run-]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"ArcSoft Connection Service"=c:\program files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN
v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\
v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R3
GarenaPEngine;GarenaPEngine;c:\users\Shaoul\AppDat
a\Local\Temp\NSW341D.tmp [x]
R3 LGVirHid;Logitech Gamepanel Virtual HID Device Driver;c:\windows\system32\drivers\LGVirHid.sys [2009-11-23 14856]
R3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [x]
R3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.0);c:\windows\system32\DRIVERS\RtTeam60.sys [2009-04-06 43008]
R3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtVlan60.sys [2007-12-03 19968]
R3 WatAdminSvc;Service Windows Activation
Technologies;c:\windows\system32\Wat\WatAdminSvc.e
xe [2010-07-05 1343400]
R4 sptd;sptd;c:\windows\system32\Drivers\sptd.sys [2010-02-13 691696]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2009-09-29 108792]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2010-05-05 172032]
S2
cpuz133;cpuz133;c:\windows\system32\drivers\cpuz13
3_x32.sys [2010-03-10 20968]
S2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe [2009-09-29 735960]
S2
epfwwfpr;epfwwfpr;c:\windows\system32\DRIVERS\epfw
wfpr.sys [2009-09-29 95896]
S2 RtNdPt60;Realtek NDIS Protocol Driver;c:\windows\system32\DRIVERS\RtNdPt60.sys [2009-07-20 27648]
S2 SBSDWSCService;SBSD Security Center Service;c:\program files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe [2009-12-17 1044808]
S3
amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atik
mdag.sys [2010-05-05 5550592]
S3
amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atik
mpag.sys [2010-05-05 176128]
S3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver;c:\windows\system32\drivers\LGBusEnum.sys [2009-11-23 19720]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-08-19 189440]
S3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.0);c:\windows\system32\DRIVERS\RtTeam60.sys [2009-04-06 43008]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys [2009-10-14 10064]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://home.neuf.fr/
FF - ProfilePath -
c:\users\Shaoul\AppData\Roaming\Mozilla\Firefox\Pr
ofiles\xy9kbai8.default\
FF - prefs.js: browser.startup.homepage -
hxxp://www.google.fr/webhp?client=firefox-a&rls=or
g.mozilla:fr:official&channel=s&hl=fr&source=hp&bt
nG=Recherche+Google
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
---- PARAMETRES FIREFOX ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.lu", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nu", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nz", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--p1ai", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbayh7gpa", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.tel", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.proxy.type", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.buffer.cache.count", 24);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.buffer.cache.size", 4096);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("dom.ipc.plugins.timeoutSecs", 45);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accelerometer.enabled", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js -
pref("security.ssl.allow_unrestricted_renego_every
where__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js -
pref("security.ssl.treat_unsafe_negotiation_as_bro
ken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js -
pref("extensions.{972ce4c6-7e08-4474-a285-3208198c
e6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js -
pref("extensions.{972ce4c6-7e08-4474-a285-3208198c
e6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.nptest.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npswf32.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npctrl.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npqtplugin.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
.
- - - - ORPHELINS SUPPRIMES - - - -
URLSearchHooks-{ecdee021-0d17-467f-a1ff-c7a1152309
49} - (no file)
Toolbar-{ecdee021-0d17-467f-a1ff-c7a115230949} - (no file)
WebBrowser-{ECDEE021-0D17-467F-A1FF-C7A115230949} - (no file)
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\
GarenaPEngine]
"ImagePath"="\??\c:\users\Shaoul\AppData\Local\Tem
p\NSW341D.tmp"
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
[HKEY_USERS\S-1-5-21-2200870565-1227533268-9148873
50-1000\Software\SecuROM\License information*]
"datasecu"=hex:04,f8,6c,1b,97,ae,7b,b8,a4,55,21,e4
,f8,db,3e,2c,70,5b,d4,5f,b6,
d0,f2,6f,00,b8,fb,05,d9,cf,5c,36,25,e9,5d,9a,e4,a0
,c9,25,d5,15,41,cf,a8,be,\
"rkeysecu"=hex:23,ec,14,09,12,ab,72,5e,07,33,ea,04
,23,eb,d5,44
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\P
CW\Security]
@Denied: (Full) (Everyone)
.
Heure de fin: 2010-07-25 11:36:20
ComboFix-quarantined-files.txt 2010-07-25 09:36
ComboFix2.txt 2010-07-05 10:54
Avant-CF: 180 721 348 608 octets libres
Après-CF: 181 453 398 016 octets libres
- - End Of File - - E5B1C90E8F8F8B1126DC231198C6768A
Marche pas sur W7 + dernière MàJ en 2007 ![]()
J'ai rien dit c'est la version clubic qu'est pas à jour, je go tester ![]()
Je l'ai sur Win7.
Y'a quelques beugs certes mais il fonctionne ![]()
C'est fait il n'a rien trouvé du tout ![]()