C:\WINDOWS\system32\autodis.dl​l (Spyware.BZub) -> Quarantined and deleted successfully. AVG shows Vundo.CB, Vundo.CJ and a Trojan Horse Agent.AMAW. D:\WINDOWS\system32\pphcaqlj0ec6p.exe (Trojan.FakeAlert) -> Unloaded process successfully. Virus? navigate here

c:\documents and settings\All Users\Application Data\titewiko c:\documents and settings\All Users\Application Data\tukideka c:\documents and settings\All Users\Application Data\vipuliji c:\documents and settings\All Users\Application Data\wotupogo c:\windows\system32\autodis.dll c:\windows\system32\drivers\jydosnrk.sys c:\windows\system32\hov c:\windows\system32\uvfdclkszfd.dll . ((((((((((((((((((((((((((((((((((((((( Drivers/Services ))))))))))))))))))))))))))))))))))))))))))))))))) . -------\Legacy_JYDOSNRK -------\Service_jydosnrk Une fois l'installation effectuée, le fix s'exécutera automatiquement Si ce n'est pas le cas, double-clique sur le raccourci Navilog1 présent sur le bureau. TallGuy_AZ, Dec 26, 2008 #13 dvk01 Derek Moderator Malware Specialist Joined: Dec 14, 2002 Messages: 50,602 sorry forgot to attach it Attached Files: CFScript2.txt File size: 155 bytes Views: 3 Pager] --a------ 2006-11-30 22:49 4662776 D:\Program Files\Yahoo!\Messenger\YahooMessenger.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\zBrowser Launcher] --a------ 2003-12-01 11:38 892928 D:\Program Files\Logitech\iTouch\iTouch.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AtiPTA] --a------ 2006-02-21 21:05 344064 D:\WINDOWS\system32\atiptaxx.exe [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusDisableNotify"=dword:00000001 "UpdatesDisableNotify"=dword:00000001 "FirewallOverride"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring] "DisableMonitoring"=dword:00000001

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\rhceqlj0ec6p (Rogue.Multiple) -> Quarantined and deleted successfully. Note: Combofix prevents autorun of ALL CDs, floppies and USB devices to assist with malware removal & increase security. D:\Documents and Settings\Default\Local Settings\Temp\60325cahp25caq.exe (Trojan.Downloader) -> Quarantined and deleted successfully. fais tout!

windows installer keeps launhing Help Required (on step 2) Ridiculous amounts of computer troubles HJT help plz - Slow startup, message on startup, browser history wiped out Autodis.dll help Deckard's Another HKEY_CURRENT_USER\SOFTWARE\Microsoft\OLE\UpdateWin (Worm.Sdbot) -> Quarantined and deleted successfully. C:\WINDOWS\system32\xlib254.dl​l (Trojan.Agent) -> Quarantined and deleted successfully. dig this Droits limités sur la session actuelle. *** Recherche avec GenericNaviSearch *** !!!

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\netx (Trojan.Downloader) -> Quarantined and deleted successfully. Please see the Autodesk Creative Commons FAQ for more information. D:\WINDOWS\system32\ati2evxx.exe D:\WINDOWS\system32\ati2evxx.exe D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe D:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe D:\WINDOWS\system32\LEXBCES.EXE D:\WINDOWS\system32\LEXPPS.EXE D:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe D:\Program Files\Common Files\LightScribe\LSSrvc.exe D:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE D:\Program Files\CyberLink\Shared Files\RichVideo.exe D:\Program Files\Internet Explorer\IEXPLORE.EXE D:\Qoobox\Quarantine\D\WINDOWS\system32\lphcaqlj0ec6p.exe.vir D:\Program Files\Internet Explorer\IEXPLORE.EXE Tous ces résultats peuvent révéler des fichiers légitimes !!! !!!

hijack log [SOLVED] Panda active scan report..Highjacked..Help SOS pppl my compt is so messed up :/ Please Help I'm Hanging Up Tons of random pop ups and warnings. D:\Documents and Settings\Default\Application Data\rhceqlj0ec6p\Quarantine\Autorun\HKLM\RunOnce (Rogue.Multiple) -> Quarantined and deleted successfully. D:\Program Files\rhceqlj0ec6p\msvcr71.dll (Rogue.Multiple) -> Delete on reboot. View Answer Related Questions You may search : Has Infectedc 092 Windows 092 System32 092 Pmnli 092 Virus Trojan Virus Trojan.Vundo Infectedc Virus Trojan.Vundo Search Result Index Os : Can't Remove

Memory Modules Infected: D:\Documents and Settings\Default\Local Settings\Temp\wndutl32.dll (Trojan.FakeAlert) -> Delete on reboot. check over here Newer Than: Search this thread only Search this forum only Display results as threads Useful Searches Recent Posts More... Alors le problème du message qui apparaissait est résolu mais mon ordi s'arrête toujours quand il veut!!! Join our site today to ask your question.

C:\WINDOWS\system32\mcrh.tmp (Malware.Trace) -> Quarantined and deleted successfully. Please start a New Thread if you're having a similar issue.View our Welcome Guide to learn how to use this site. Weird Stuff going on...do I have a virus? http://controlpanelsource.com/general/vundo-dw.html MediaCodec Zlob Trojan attack Another Malware Crush 3.7 victim - Please Help http://www.google.es/ ndt2.sys, perfs.exe, routing.exe help?

D:\Documents and Settings\Default\Local Settings\Temp\60325cahp25cap.exe (Trojan.Downloader) -> Quarantined and deleted successfully. D:\Documents and Settings\Default\Application Data\rhceqlj0ec6p\Quarantine (Rogue.Multiple) -> Quarantined and deleted successfully. scanning hidden files ...

D:\WINDOWS\svhoster.exe (Trojan.Agent) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\IProxyProvider (Trojan.Vundo) -> Quarantined and deleted successfully. Ce matin j'ai essayé de le rallumer mais pareil, rien !! Bon je mets le rapport auquel je ne comprends rien! D:\Documents and Settings\Default\Local Settings\Temp\.tt4.tmp (Trojan.Downloader) -> Quarantined and deleted successfully.

Causes: Incorrect registration of REX services. Et là il a redémarré mais bon je n'ose plus l'éteindre!!! HKEY_CURRENT_USER\SOFTWARE\Mic​rosoft\contim (Trojan.Vundo) -> Quarantined and deleted successfully. weblink Advertisement Recent Posts Windows 10 - Disk read error Tabvla replied Mar 17, 2017 at 4:00 PM News from the web #3 poochee replied Mar 17, 2017 at 3:57 PM Impossible

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispBackgroundPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\UpdateWin (Worm.Sdbot) -> Quarantined and deleted successfully. D:\Program Files\PCHealthCenter\3.gif (Trojan.Fakealert) -> Quarantined and deleted successfully. First Post i got trojan virus win32_Aegrus Question explorer.exe constant lockup - wip32.trojan.bho and much more [SOLVED] pop-up problem Setthetrend.com popups Inaccessible control panel and suspicious popup window Something is constantly

PS: le rapport est sauvegardé à la racine du disque (fixnavi.txt)

--------------- Il vaut mieux aller plus loin avec quelqu'un que nulle part avec tout le mondeJe n'accepte aucune D:\WINDOWS\system32\autodis.dll (Spyware.BZub) -> Delete on reboot. Ne fais pas le choix 2,3 ou 4 sans notre avis/accord ! D:\Documents and Settings\Default\Application Data\rhceqlj0ec6p\Quarantine\Autorun\HKLM (Rogue.Multiple) -> Quarantined and deleted successfully.

Non sans mal car mon ordi ne voulait pas redémarrer. De plus, quand il s'allume, il est hyper long... Obfustat.ADXW threats found computer keeps shutting down computer infected... Contents of the 'Scheduled Tasks' folder . - - - - ORPHANS REMOVED - - - - HKLM-Run-lphcaqlj0ec6p - D:\WINDOWS\system32\lphcaqlj0ec6p.exe HKLM-Run-SMrhceqlj0ec6p - D:\Program Files\rhceqlj0ec6p\rhceqlj0ec6p.exe . ------- Supplementary Scan ------- .

D:\WINDOWS\svx.exe (Trojan.Downloader) -> Quarantined and deleted successfully. A vérifier impérativement avant toute suppression manuelle !!! * Recherche dans "C:\WINDOWS\system32" * Fichiers trouvés : zvzcazr.exe trouvé ! * Recherche dans "C:\Documents and Settings\Zezette\locals~1\appl​ic~1" * *** Recherche fichiers *** C:\WINDOWS\pack.epk D:\Documents and Settings\Default\Application Data\rhceqlj0ec6p\Quarantine\Autorun\StartMenuAllUsers (Rogue.Multiple) -> Quarantined and deleted successfully. This will start ComboFix again.

This will create a zip file inside C:\QooBox\ named something like [38][emailprotected] at the end it will pop up an alert & open your browser and ask you to send the D:\Program Files\PCHealthCenter\e (Trojan.Fakealert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\Control Panel\Desktop\scrnsave.exe (Hijack.Wallpaper) -> Quarantined and deleted successfully. D:\WINDOWS\sv.exe (Trojan.Downloader) -> Unloaded process successfully.

Contents of the 'Scheduled Tasks' folder 2008-12-23 c:\windows\Tasks\Disk Cleanup.job - c:\windows\system32\cleanmgr.exe [2008-04-13 17:12] 2008-12-23 c:\windows\Tasks\Fast & Safe Cleanup.job - c:\progra~1\NORTON~1\NORTON~3\Qdcsfs.exe [] . . ------- Supplementary Scan ------- . HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\MS Juan (Malware.Trace) -> Quarantined and deleted successfully. D:\Documents and Settings\Default\Application Data\rhceqlj0ec6p\Quarantine\BrowserObjects (Rogue.Multiple) -> Quarantined and deleted successfully. HELP PLEASE.