CONNEXION
  • RetourJeux
    • Sorties
    • Hit Parade
    • Les + populaires
    • Les + attendus
    • Soluces
    • Tous les Jeux
    • Gaming
  • RetourActu Gaming
    • News
    • Astuces
    • Tests
    • Previews
    • Toute l'actu gaming
  • RetourBons plans
    • Bons plans
    • Bons plans Smartphone
    • Bons plans Hardware
    • Bons plans Image et Son
    • Bons plans Amazon
    • Bons plans Cdiscount
    • Bons plans Decathlon
    • Bons plans Fnac
    • Tous les Bons plans
  • RetourJVTech
    • Actus High-Tech
    • Intelligence Artificielle
    • Smartphones
    • Mobilité urbaine
    • Hardware
    • Image et son
    • Tutoriels
    • Tests produits High-Tech
    • Guides d'achat High-Tech
    • JVTech
  • RetourCulture
    • Actus Culture
    • Culture
  • RetourVidéos
    • A la une
    • Gaming Live
    • Vidéos Tests
    • Vidéos Previews
    • Gameplay
    • Trailers
    • Chroniques
    • Replay Web TV
    • Toutes les vidéos
  • RetourForums
    • Hardware PC
    • PS5
    • Switch 2
    • Xbox Series
    • Switch
    • Pokemon pocket
    • FC 25 Ultimate Team
    • League of Legends
    • Tous les Forums
  • PC
  • PS5
  • Xbox Series
  • Switch 2
  • PS4
  • One
  • Switch
  • iOS
  • Android
  • MMO
  • RPG
  • FPS
En ce moment Genshin Impact Valhalla Breath of the wild Animal Crossing GTA 5 Red dead 2
Liste des sujets

Infecté par trojan rootkit " mebroot "

Diazepine
Diazepine
Niveau 9
25 juillet 2010 à 10:40:44

Salut, voilà une semaine que je suis infecté par le trojan rootkit " mebroot " qui commence sérieusement à me brouter le cul :(
Il est détecté par Nod32 à chaque démarrage du PC et je ne peut pas le supprimer ni le mettre en quarantaine
http://img405.imageshack.us/f/sanstitreztx.png/ :(

J'ai essayé tout ce que j'ai pu à savoir analyse avec :
Nod32, Spybot, Ad-Aware, Malware's bytes, j'ai même essayé la première et troisième méthode sur ce site http://www.commentcamarche.net/faq/25171-infection-sinowal-mebroot-rootkit-mbr

Mbr me met
Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net

device: opened successfully
user: MBR read successfully
kernel: MBR read successfully
user & kernel MBR OK

Donc qu'il ne trouve rien, j'ose même plus me connecter à mes comptes, j'veut jouer à BC2 :snif2:
Là je bute, je sais plus rien faire et je peut pas formater car le virus est dans la mémoire vive apparemment :(

Est ce possible que Nod32 se gourre ou le virus est bien là :question: Si oui je ne sais pas comment je l'ai chopé ...
J'ai besoin d'aide Svp :merci:

quinny_dx
quinny_dx
Niveau 9
25 juillet 2010 à 11:11:11

Salut

On va passer à la methode supreme (qui va tout te degager d'un coup) :

Telecharge combofix sur cette page http://www.bleepingcomputer.com/download/anti-virus/combofix

enregistre le fichier combofix sur ton bureau en lui donnant un autre nom par exemple coucou.exe ou nimporte quoi mais pas combofix.exe

Ensuite tu te lance, tu te laisse guider et s'il te demande d'installer la console de recuperation tu acceptes...

quinny_dx
quinny_dx
Niveau 9
25 juillet 2010 à 11:12:13

Ah oui et desactive ton antivirus avant de le lancer

Diazepine
Diazepine
Niveau 9
25 juillet 2010 à 11:41:14

Salut, voilà le rapport combofix, qui n'a apparemment rien trouvé étant donné qu'une fois terminé j'ai remis nod32 qui m'a remis l'alerte mebroot :(

ComboFix 10-07-24.01 - Shaoul 25/07/2010 11:28:36.1.2 - x86
Microsoft Windows 7 Édition Intégrale 6.1.7600.0.1252.33.1036.18.2046.1282 [GMT 2:00]
Lancé depuis: c:\users\Shaoul\Desktop\Coucou.exe
SP: Spybot - Search and Destroy *disabled* (Outdated) {ED588FAF-1B8F-43B4-ACA8-8E3C85DADBE9}
* Un antivirus résident est actif

.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Install.exe

.
((((((((((((((((((((((((((((( Fichiers créés du 2010-06-25 au 2010-07-25 ))))))))))))))))))))))))))))))))))))
.

2010-07-25 09:34 . 2010-07-25
09:34 -------- d-----w- c:\users\Shaoul\AppData\Lo
cal\temp
2010-07-25 09:34 . 2010-07-25
09:34 -------- d-----w- c:\users\Public\AppData\Lo
cal\temp
2010-07-25 09:34 . 2010-07-25
09:34 -------- d-----w- c:\users\Default\AppData\L
ocal\temp
2010-07-23 13:15 . 2010-07-23 13:15 -------- d-----w- c:\program files\WorldOfGoo
2010-07-23 13:13 . 2010-07-24 12:32 -------- d-----w- c:\program files\L'Odyssée d'Abe
2010-07-21 13:50 . 2010-06-02
02:55 74072 ----a-w- c:\windows\system32\XAPOFX1_5
.dll
2010-07-21 13:50 . 2010-06-02
02:55 527192 ----a-w- c:\windows\system32\XAudio2_
7.dll
2010-07-21 13:50 . 2010-06-02
02:55 239960 ----a-w- c:\windows\system32\xactengi
ne3_7.dll
2010-07-21 13:50 . 2010-05-26
09:41 2106216 ----a-w- c:\windows\system32\D3DComp
iler_43.dll
2010-07-21 13:50 . 2010-05-26
09:41 1868128 ----a-w- c:\windows\system32\d3dcsx_
43.dll
2010-07-21 13:50 . 2010-05-26
09:41 470880 ----a-w- c:\windows\system32\d3dx10_4
3.dll
2010-07-21 13:50 . 2010-05-26
09:41 248672 ----a-w- c:\windows\system32\d3dx11_4
3.dll
2010-07-21 13:50 . 2010-05-26
09:41 1998168 ----a-w- c:\windows\system32\D3DX9_4
3.dll
2010-07-07 09:19 . 2010-07-07
09:19 -------- d-----w- c:\users\Shaoul\AppData\Ro
aming\Need for Speed World
2010-07-07 09:06 . 2010-07-07
09:06 -------- d-----w- c:\users\Shaoul\AppData\Lo
cal\Electronic_Arts_Inc
2010-07-05 11:33 . 2010-07-05 11:33 -------- d-----w- c:\windows\system32\Wat
2010-07-05 05:41 . 2010-07-05
05:41 -------- d-----w- c:\users\Shaoul\AppData\Lo
cal\Threat Expert
2010-07-05 05:34 . 2010-07-05 10:52 -------- d-----w- c:\program files\Common Files\PC Tools
2010-07-05 05:34 . 2010-07-05 11:28 -------- d-----w- c:\program files\Spyware Doctor
2010-07-05 05:34 . 2010-07-05
05:34 -------- d-----w- c:\users\Shaoul\AppData\Ro
aming\PC Tools
2010-07-05 05:34 . 2010-07-05 05:34 -------- d-----w- c:\programdata\PC Tools
2010-07-03 07:16 . 2010-07-19 18:50 -------- d-----w- c:\program files\Activision
2010-06-26 12:12 . 2010-06-26 12:12 -------- d-----w- c:\program files\NVIDIA Corporation
2010-06-25 15:00 . 2010-06-25 15:00 -------- d-----w- c:\program files\Microsoft.NET
2010-06-25 14:59 . 2009-11-25
10:47 99176 ----a-w- c:\windows\system32\Presentat
ionHostProxy.dll
2010-06-25 14:59 . 2009-11-25
10:47 49472 ----a-w- c:\windows\system32\netfxperf
.dll
2010-06-25 14:59 . 2009-11-25
10:47 297808 ----a-w- c:\windows\system32\mscoree.
dll
2010-06-25 14:59 . 2009-11-25
10:47 295264 ----a-w- c:\windows\system32\Presenta
tionHost.exe
2010-06-25 14:59 . 2009-11-25
10:47 1130824 ----a-w- c:\windows\system32\dfshim.
dll
2010-06-25 14:56 . 2010-05-09
09:14 641536 ----a-w- c:\windows\system32\CPFilter
s.dll
2010-06-25 14:56 . 2010-05-09
09:14 417792 ----a-w- c:\windows\system32\msdri.dl
l
2010-06-25 14:56 . 2010-03-24
06:37 1286456 ----a-w- c:\windows\system32\ntdll.d
ll

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-07-25 08:48 . 2009-12-10 16:03 -------- d-----w- c:\program files\Steam
2010-07-25 08:30 . 2010-03-18
16:37 -------- d-----w- c:\users\Shaoul\AppData\Ro
aming\Mumble
2010-07-24 20:50 . 2010-02-22
19:59 -------- d-----w- c:\users\Shaoul\AppData\Ro
aming\vlc
2010-07-24 18:04 . 2010-03-11
20:56 218808 ----a-w- c:\windows\system32\PnkBstrB
.exe
2010-07-24 17:32 . 2010-03-11
20:57 137256 ----a-w- c:\windows\system32\drivers\
PnkBstrK.sys
2010-07-24 15:58 . 2009-12-11 10:52 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-07-24 12:32 . 2010-07-23 13:13 -------- d-----w- c:\program files\L'Odyssée d'Abe
2010-07-21 14:02 . 2010-02-20 11:57 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2010-07-19 18:50 . 2010-06-03
10:35 -------- d-----w- c:\users\Shaoul\AppData\Ro
aming\Rainmeter
2010-07-19 18:50 . 2009-12-27
13:35 -------- d-----w- c:\users\Shaoul\AppData\Ro
aming\ArcSoft
2010-07-19 18:50 . 2009-12-10 15:11 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-07-19 18:50 . 2010-01-02 16:06 -------- d-----w- c:\program files\Vuze
2010-07-19 18:50 . 2010-05-21 14:20 -------- d-----w- c:\program files\AGEIA Technologies
2010-07-10 16:27 . 2010-03-30 08:08 -------- d-----w- c:\program files\Electronic Arts
2010-07-08 13:41 . 2009-07-14
08:39 704242 ----a-w- c:\windows\system32\perfh00C
.dat
2010-07-08 13:41 . 2009-07-14
08:39 130548 ----a-w- c:\windows\system32\perfc00C
.dat
2010-07-07 09:05 . 2010-03-30 08:12 -------- d-----w- c:\programdata\Electronic Arts
2010-06-24 14:49 . 2010-06-23 19:17 -------- d-----w- c:\programdata\NOS
2010-06-15 10:42 . 2010-01-02
16:06 -------- d-----w- c:\users\Shaoul\AppData\Ro
aming\Azureus
2010-06-10 11:54 . 2009-12-19 12:48 -------- d-----w- c:\program files\Garena
2010-06-09 10:24 . 2009-12-21 12:24 -------- d-----w- c:\program files\JDownloader
2010-06-09 09:44 . 2009-07-14 02:37 -------- d-----w- c:\program files\Windows Mail
2010-06-03 12:42 . 2010-06-03
12:13 -------- d-----w- c:\users\Shaoul\AppData\Ro
aming\Winamp
2010-06-03 12:13 . 2010-06-03 12:13 -------- d-----w- c:\program files\Winamp
2010-06-03 10:46 . 2010-06-03 10:34 -------- d-----w- c:\program files\Rainmeter
2010-05-31 18:40 . 2010-05-31 18:40 -------- d-----w- c:\programdata\WOP
2010-05-27 07:24 . 2010-06-09
08:56 34304 ----a-w- c:\windows\system32\atmlib.dl
l
2010-05-27 03:49 . 2010-06-09
08:56 293888 ----a-w- c:\windows\system32\atmfd.dl
l
2010-05-22 13:46 . 2010-05-22
13:46 495104 ----a-w- c:\windows\system32\sqlite3.
dll
2010-05-21 12:14 . 2009-12-10
14:46 221568 ------w- c:\windows\system32\MpSigStu
b.exe
2010-05-21 05:18 . 2010-06-09
08:57 977920 ----a-w- c:\windows\system32\wininet.
dll
2010-05-05 11:40 . 2010-05-07
17:08 311296 ----a-w- c:\windows\system32\TubeFind
er.exe
2010-05-05 02:46 . 2010-05-05
02:46 5550592 ----a-w- c:\windows\system32\drivers
\atikmdag.sys
2010-05-05 02:19 . 2010-05-05
02:19 143360 ----a-w- c:\windows\system32\atiapfxx
.exe
2010-05-05 02:19 . 2010-03-03
04:16 506880 ----a-w- c:\windows\system32\aticfx32
.dll
2010-05-05 02:16 . 2010-03-03
04:13 446464 ----a-w- c:\windows\system32\ATIDEMGX
.dll
2010-05-05 02:15 . 2010-05-05
02:15 372736 ----a-w- c:\windows\system32\atieclxx
.exe
2010-05-05 02:14 . 2010-05-05
02:14 172032 ----a-w- c:\windows\system32\atiesrxx
.exe
2010-05-05 02:14 . 2010-05-05
02:14 15024128 ----a-w- c:\windows\system32\atiogl
xx.dll
2010-05-05 02:13 . 2010-05-05
02:13 159744 ----a-w- c:\windows\system32\atitmmxx
.dll
2010-05-05 02:13 . 2010-03-03
04:10 356352 ----a-w- c:\windows\system32\atipdlxx
.dll
2010-05-05 02:12 . 2010-05-05
02:12 278528 ----a-w- c:\windows\system32\Oemdspif
.dll
2010-05-05 02:12 . 2010-05-05
02:12 11776 ----a-w- c:\windows\system32\atimuixx.
dll
2010-05-05 02:12 . 2010-05-05
02:12 43520 ----a-w- c:\windows\system32\ati2edxx.
dll
2010-05-05 02:08 . 2010-03-03
04:06 3611648 ----a-w- c:\windows\system32\atidxx3
2.dll
2010-05-05 01:41 . 2010-05-05
01:41 3788288 ----a-w- c:\windows\system32\atiumda
g.dll
2010-05-05 01:41 . 2010-05-05
01:41 53248 ----a-w- c:\windows\system32\aticalrt.
dll
2010-05-05 01:41 . 2010-05-05
01:41 53248 ----a-w- c:\windows\system32\aticalcl.
dll
2010-05-05 01:38 . 2010-05-05
01:38 4022272 ----a-w- c:\windows\system32\aticald
d.dll
2010-05-05 01:34 . 2010-03-03
03:23 50176 ----a-w- c:\windows\system32\coinst.dl
l
2010-05-05 01:23 . 2010-03-03
03:08 237568 ----a-w- c:\windows\system32\atiadlxx
.dll
2010-05-05 01:23 . 2010-05-05
01:23 12800 ----a-w- c:\windows\system32\atiglpxx.
dll
2010-05-05 01:23 . 2010-05-05
01:23 15360 ----a-w- c:\windows\system32\atigktxx.
dll
2010-05-05 01:23 . 2010-05-05
01:23 176128 ----a-w- c:\windows\system32\drivers\
atikmpag.sys
2010-05-05 01:22 . 2010-03-03
03:06 28160 ----a-w- c:\windows\system32\atiuxpag.
dll
2010-05-05 01:22 . 2010-05-05
01:22 20480 ----a-w- c:\windows\system32\atiu9pag.
dll
2010-05-05 01:21 . 2010-05-05
01:21 53248 ----a-w- c:\windows\system32\drivers\a
ti2erec.dll
2010-05-05 01:19 . 2010-05-05
01:19 3015680 ----a-w- c:\windows\system32\atiumdv
a.dll
2010-05-05 01:08 . 2010-05-05
01:08 52224 ----a-w- c:\windows\system32\atimpc32.
dll
2010-05-05 01:08 . 2010-05-05
01:08 52224 ----a-w- c:\windows\system32\amdpcom32
.dll
2010-05-01 14:49 . 2010-06-09
08:57 2326528 ----a-w- c:\windows\system32\win32k.
sys
2010-04-29 13:39 . 2010-02-20
11:58 38224 ----a-w- c:\windows\system32\drivers\m
bamswissarmy.sys
2010-04-29 13:39 . 2010-02-20
11:58 20952 ----a-w- c:\windows\system32\drivers\m
bam.sys
2010-04-28 21:17 . 2010-04-28
21:17 2110 ----a-w- c:\windows\system32\atipblag.d
at
2009-06-10 21:26 . 2009-07-14
02:04 9633792 --sha-r- c:\windows\Fonts\StaticCach
e.dat
2009-07-14 01:14 . 2009-07-13
23:42 396800 --sha-w- c:\windows\winsxs\x86_micros
oft-windows-mail-app_31bf3856ad364e35_6.1.7600.163
85_none_f12e83abb108c86c\WinMail.exe
.

((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.

  • Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés

REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Cur
rentVersion\Run]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2009-09-29 2054360]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-03-02 98304]
"Launch LgDeviceAgent"="c:\program files\Logitech\GamePanel Software\LgDevAgt.exe" [2010-02-18 357448]
"Launch LCDMon"="c:\program files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe" [2010-02-18 1573448]
"Launch LGDCore"="c:\program files\Logitech\GamePanel Software\G-series Software\LGDCore.exe" [2010-02-18 3203144]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-06-09 976832]

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Rainmeter.lnk - c:\program files\Rainmeter\Rainmeter.exe [2009-11-1 119296]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\cur
rentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechVideoRepair]
2005-06-08 14:24 458752 ----a-w- c:\program files\Logitech\Video\ISStart.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechVideoTray]
2005-06-08 14:14 217088 ----a-w- c:\program files\Logitech\Video\LogiTray.exe

[HKEY_CURRENT_USER\software\microsoft\windows\curr
entversion\run-]
"LogitechSoftwareUpdate"="c:\program files\Logitech\Video\ManifestEngine.exe" boot

MobRules
MobRules
Niveau 10
25 juillet 2010 à 11:41:28

Mode sans échec + Hitman Pro :ok:

Diazepine
Diazepine
Niveau 9
25 juillet 2010 à 11:41:39

[HKEY_LOCAL_MACHINE\software\microsoft\windows\cur
rentversion\run-]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"ArcSoft Connection Service"=c:\program files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN
v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\
v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R3
GarenaPEngine;GarenaPEngine;c:\users\Shaoul\AppDat
a\Local\Temp\NSW341D.tmp [x]
R3 LGVirHid;Logitech Gamepanel Virtual HID Device Driver;c:\windows\system32\drivers\LGVirHid.sys [2009-11-23 14856]
R3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [x]
R3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.0);c:\windows\system32\DRIVERS\RtTeam60.sys [2009-04-06 43008]
R3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtVlan60.sys [2007-12-03 19968]
R3 WatAdminSvc;Service Windows Activation
Technologies;c:\windows\system32\Wat\WatAdminSvc.e
xe [2010-07-05 1343400]
R4 sptd;sptd;c:\windows\system32\Drivers\sptd.sys [2010-02-13 691696]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2009-09-29 108792]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2010-05-05 172032]
S2
cpuz133;cpuz133;c:\windows\system32\drivers\cpuz13
3_x32.sys [2010-03-10 20968]
S2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe [2009-09-29 735960]
S2
epfwwfpr;epfwwfpr;c:\windows\system32\DRIVERS\epfw
wfpr.sys [2009-09-29 95896]
S2 RtNdPt60;Realtek NDIS Protocol Driver;c:\windows\system32\DRIVERS\RtNdPt60.sys [2009-07-20 27648]
S2 SBSDWSCService;SBSD Security Center Service;c:\program files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe [2009-12-17 1044808]
S3
amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atik
mdag.sys [2010-05-05 5550592]
S3
amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atik
mpag.sys [2010-05-05 176128]
S3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver;c:\windows\system32\drivers\LGBusEnum.sys [2009-11-23 19720]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-08-19 189440]
S3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.0);c:\windows\system32\DRIVERS\RtTeam60.sys [2009-04-06 43008]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys [2009-10-14 10064]

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://home.neuf.fr/
FF - ProfilePath -
c:\users\Shaoul\AppData\Roaming\Mozilla\Firefox\Pr
ofiles\xy9kbai8.default\
FF - prefs.js: browser.startup.homepage -
hxxp://www.google.fr/webhp?client=firefox-a&rls=or
g.mozilla:fr:official&channel=s&hl=fr&source=hp&bt
nG=Recherche+Google
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll

---- PARAMETRES FIREFOX ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.lu", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nu", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nz", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--p1ai", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbayh7gpa", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.tel", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.proxy.type", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.buffer.cache.count", 24);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.buffer.cache.size", 4096);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("dom.ipc.plugins.timeoutSecs", 45);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accelerometer.enabled", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js -
pref("security.ssl.allow_unrestricted_renego_every
where__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js -
pref("security.ssl.treat_unsafe_negotiation_as_bro
ken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js -
pref("extensions.{972ce4c6-7e08-4474-a285-3208198c
e6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js -
pref("extensions.{972ce4c6-7e08-4474-a285-3208198c
e6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.nptest.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npswf32.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npctrl.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npqtplugin.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
.
- - - - ORPHELINS SUPPRIMES - - - -

URLSearchHooks-{ecdee021-0d17-467f-a1ff-c7a1152309
49} - (no file)
Toolbar-{ecdee021-0d17-467f-a1ff-c7a115230949} - (no file)
WebBrowser-{ECDEE021-0D17-467F-A1FF-C7A115230949} - (no file)

[HKEY_LOCAL_MACHINE\system\ControlSet001\services\
GarenaPEngine]

"ImagePath"="\??\c:\users\Shaoul\AppData\Local\Tem
p\NSW341D.tmp"
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------

[HKEY_USERS\S-1-5-21-2200870565-1227533268-9148873
50-1000\Software\SecuROM\License information*]

"datasecu"=hex:04,f8,6c,1b,97,ae,7b,b8,a4,55,21,e4
,f8,db,3e,2c,70,5b,d4,5f,b6,

d0,f2,6f,00,b8,fb,05,d9,cf,5c,36,25,e9,5d,9a,e4,a0
,c9,25,d5,15,41,cf,a8,be,\

"rkeysecu"=hex:23,ec,14,09,12,ab,72,5e,07,33,ea,04
,23,eb,d5,44

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\P
CW\Security]
@Denied: (Full) (Everyone)
.
Heure de fin: 2010-07-25 11:36:20
ComboFix-quarantined-files.txt 2010-07-25 09:36
ComboFix2.txt 2010-07-05 10:54

Avant-CF: 180 721 348 608 octets libres
Après-CF: 181 453 398 016 octets libres

- - End Of File - - E5B1C90E8F8F8B1126DC231198C6768A

Diazepine
Diazepine
Niveau 9
25 juillet 2010 à 11:44:37
  1. MobRules Voir le profil de MobRules
  2. Posté le 25 juillet 2010 à 11:41:28 Avertir un administrateur
  3. Mode sans échec + Hitman Pro :ok:

Marche pas sur W7 + dernière MàJ en 2007 :snif:

Diazepine
Diazepine
Niveau 9
25 juillet 2010 à 11:45:43

J'ai rien dit c'est la version clubic qu'est pas à jour, je go tester :ok:

MobRules
MobRules
Niveau 10
25 juillet 2010 à 11:51:54

Je l'ai sur Win7.

Y'a quelques beugs certes mais il fonctionne :(

Diazepine
Diazepine
Niveau 9
25 juillet 2010 à 11:53:13

C'est fait il n'a rien trouvé du tout :-(

Sous forums
  • Aide à l'achat Mac
  • Création de sites web
  • Création de Jeux
  • Linux
  • Programmation
  • Internet
  • Steam Deck
  • Macintosh
  • Hardware
La vidéo du moment