TechSpot

Can't access Internet & Outlook

Inactive
By nihi
Mar 23, 2011
  1. Hi there,

    My PC got a virus yesterday & blocked all connection to internet. I've tried Avira, TFC, Malwarebytes Anti-Malware but they all failed to function. I tried AVG but the scanning result is 0.

    Below pls find the GMER & DDS reports.

    Thanks a lot for your kind help.

    --------------------

    GMER 1.0.15.15570 - http://www.gmer.net
    Rootkit scan 2011-03-23 17:28:20
    Windows 5.1.2600 Service Pack 3 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3 FUJITSU_MHW2080BH_PL rev.891F
    Running: nujc3hcf.exe; Driver: C:\WINDOWS.0\TEMP\fgqdifob.sys


    ---- System - GMER 1.0.15 ----

    INT 0x01 \SystemRoot\system32\DRIVERS\ati2mtag.sys (ATI Radeon WindowsNT Miniport Driver/ATI Technologies Inc.) F6FF259A
    INT 0x03 \SystemRoot\system32\DRIVERS\ati2mtag.sys (ATI Radeon WindowsNT Miniport Driver/ATI Technologies Inc.) F6FF2655

    ---- Kernel code sections - GMER 1.0.15 ----

    .text C:\WINDOWS.0\system32\DRIVERS\ati2mtag.sys section is writeable [0xF6E74000, 0x17D80E, 0xE8000020]
    ? C:\WINDOWS.0\TEMP\mbr.sys Le fichier sp嶰ifi?est introuvable. !

    ---- User IAT/EAT - GMER 1.0.15 ----

    IAT C:\WINDOWS.0\explorer.exe[2372] @ C:\WINDOWS.0\explorer.exe [KERNEL32.dll!GetProcAddress] [5CEA7774] C:\WINDOWS.0\system32\ShimEng.dll (Shim Engine DLL/Microsoft Corporation)
    IAT C:\WINDOWS.0\explorer.exe[2372] @ C:\WINDOWS.0\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] [5CEA7774] C:\WINDOWS.0\system32\ShimEng.dll (Shim Engine DLL/Microsoft Corporation)
    IAT C:\WINDOWS.0\explorer.exe[2372] @ C:\WINDOWS.0\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] [5CEA7774] C:\WINDOWS.0\system32\ShimEng.dll (Shim Engine DLL/Microsoft Corporation)
    IAT C:\WINDOWS.0\explorer.exe[2372] @ C:\WINDOWS.0\system32\Secur32.dll [KERNEL32.dll!GetProcAddress] [5CEA7774] C:\WINDOWS.0\system32\ShimEng.dll (Shim Engine DLL/Microsoft Corporation)
    IAT C:\WINDOWS.0\explorer.exe[2372] @ C:\WINDOWS.0\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [5CEA7774] C:\WINDOWS.0\system32\ShimEng.dll (Shim Engine DLL/Microsoft Corporation)
    IAT C:\WINDOWS.0\explorer.exe[2372] @ C:\WINDOWS.0\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [5CEA7774] C:\WINDOWS.0\system32\ShimEng.dll (Shim Engine DLL/Microsoft Corporation)
    IAT C:\WINDOWS.0\explorer.exe[2372] @ C:\WINDOWS.0\system32\msvcrt.dll [KERNEL32.dll!GetProcAddress] [5CEA7774] C:\WINDOWS.0\system32\ShimEng.dll (Shim Engine DLL/Microsoft Corporation)
    IAT C:\WINDOWS.0\explorer.exe[2372] @ C:\WINDOWS.0\system32\ole32.dll [KERNEL32.dll!GetProcAddress] [5CEA7774] C:\WINDOWS.0\system32\ShimEng.dll (Shim Engine DLL/Microsoft Corporation)
    IAT C:\WINDOWS.0\explorer.exe[2372] @ C:\WINDOWS.0\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] [5CEA7774] C:\WINDOWS.0\system32\ShimEng.dll (Shim Engine DLL/Microsoft Corporation)
    IAT C:\WINDOWS.0\explorer.exe[2372] @ C:\WINDOWS.0\system32\CRYPT32.dll [KERNEL32.dll!GetProcAddress] [5CEA7774] C:\WINDOWS.0\system32\ShimEng.dll (Shim Engine DLL/Microsoft Corporation)
    IAT C:\WINDOWS.0\explorer.exe[2372] @ C:\WINDOWS.0\system32\NETAPI32.dll [KERNEL32.dll!GetProcAddress] [5CEA7774] C:\WINDOWS.0\system32\ShimEng.dll (Shim Engine DLL/Microsoft Corporation)
    IAT C:\WINDOWS.0\explorer.exe[2372] @ C:\WINDOWS.0\system32\WININET.dll [KERNEL32.dll!GetProcAddress] [5CEA7774] C:\WINDOWS.0\system32\ShimEng.dll (Shim Engine DLL/Microsoft Corporation)
    IAT C:\WINDOWS.0\explorer.exe[2372] @ C:\WINDOWS.0\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] [5CEA7774] C:\WINDOWS.0\system32\ShimEng.dll (Shim Engine DLL/Microsoft Corporation)
    IAT C:\WINDOWS.0\explorer.exe[2372] @ C:\WINDOWS.0\system32\USERENV.dll [KERNEL32.dll!GetProcAddress] [5CEA7774] C:\WINDOWS.0\system32\ShimEng.dll (Shim Engine DLL/Microsoft Corporation)
    IAT C:\WINDOWS.0\explorer.exe[2372] @ C:\WINDOWS.0\system32\iphlpapi.dll [KERNEL32.dll!GetProcAddress] [5CEA7774] C:\WINDOWS.0\system32\ShimEng.dll (Shim Engine DLL/Microsoft Corporation)
    IAT C:\WINDOWS.0\explorer.exe[2372] @ C:\WINDOWS.0\system32\WS2_32.dll [KERNEL32.dll!GetProcAddress] [5CEA7774] C:\WINDOWS.0\system32\ShimEng.dll (Shim Engine DLL/Microsoft Corporation)
    IAT C:\WINDOWS.0\explorer.exe[2372] @ C:\WINDOWS.0\system32\WS2HELP.dll [KERNEL32.dll!GetProcAddress] [5CEA7774] C:\WINDOWS.0\system32\ShimEng.dll (Shim Engine DLL/Microsoft Corporation)

    ---- Devices - GMER 1.0.15 ----

    AttachedDevice \Driver\Tcpip \Device\Ip avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
    AttachedDevice \Driver\Tcpip \Device\Tcp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
    AttachedDevice \Driver\Tcpip \Device\Udp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
    AttachedDevice \Driver\Tcpip \Device\RawIp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
    AttachedDevice \FileSystem\Fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)

    ---- Registry - GMER 1.0.15 ----

    Reg HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders@Local AppData C:\Documents and Settings\MAURICE.MAURICE-1C27F72.010\Local Settings\Application Data

    ---- Disk sectors - GMER 1.0.15 ----

    Disk \Device\Harddisk0\DR0 malicious Win32:MBRoot code @ sector 156299267
    Disk \Device\Harddisk0\DR0 PE file @ sector 156299289

    ---- EOF - GMER 1.0.15 ----


    .
    DDS (Ver_11-03-05.01) - NTFSx86
    Run by MAURICE at 16:45:07,04 on 23/03/2011
    Internet Explorer: 8.0.6001.18702
    .
    ============== Running Processes ===============
    .
    C:\WINDOWS.0\system32\Ati2evxx.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    C:\WINDOWS.0\system32\Ati2evxx.exe
    C:\Program Files\AVG\AVG9\avgchsvx.exe
    C:\Program Files\AVG\AVG9\avgrsx.exe
    C:\Program Files\AVG\AVG9\avgcsrvx.exe
    C:\WINDOWS.0\system32\spoolsv.exe
    C:\WINDOWS.0\Explorer.EXE
    C:\Program Files\AVG\AVG9\avgwdsvc.exe
    D:\Mes documents\CDBurnerXP\NMSAccessU.exe
    C:\Program Files\AVG\AVG9\avgemc.exe
    C:\Program Files\AVG\AVG9\avgnsx.exe
    C:\Program Files\HPQ\Shared\Sierra Wireless\Win32\Unicode\SWIHPWMI.exe
    C:\Program Files\AVG\AVG9\avgcsrvx.exe
    C:\WINDOWS.0\system32\wbem\wmiprvse.exe
    C:\WINDOWS.0\system32\wscntfy.exe
    C:\WINDOWS.0\System32\alg.exe
    D:\Program Files\AxBx\VirusKeeper 2011 Pro Evaluation\vk_service.exe
    D:\Program Files\AxBx\VirusKeeper 2011 Pro Evaluation\VirusKeeper.exe
    D:\Program Files\AxBx\VirusKeeper 2011 Pro Evaluation\vk_watchop.exe
    C:\WINDOWS.0\system32\notepad.exe
    D:\Mes documents\XXXX\dds.scr
    C:\WINDOWS.0\System32\svchost.exe -k netsvcs
    C:\WINDOWS.0\system32\svchost.exe -k NetworkService
    C:\WINDOWS.0\system32\svchost.exe -k LocalService
    C:\WINDOWS.0\system32\svchost.exe -k LocalService
    C:\WINDOWS.0\system32\svchost.exe -k imgsvc
    .
    ============== Pseudo HJT Report ===============
    .
    mURLSearchHooks: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg9\toolbar\IEToolbar.dll
    BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\fichiers communs\adobe\acrobat\activex\AcroIEHelperShim.dll
    BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg9\avgssie.dll
    BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
    BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - d:\progra~1\micros~2\office12\GRA8E1~1.DLL
    BHO: Programme d'aide de l'Assistant de connexion Windows Live: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\fichiers communs\microsoft shared\windows live\WindowsLiveLogin.dll
    BHO: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg9\toolbar\IEToolbar.dll
    TB: AVG Security Toolbar: {ccc7a320-b3ca-4199-b1a6-9f516dd69829} - c:\program files\avg\avg9\toolbar\IEToolbar.dll
    mRun: [MSConfig] c:\windows.0\pchealth\helpctr\binaries\MSConfig.exe /auto
    mRun: [VirusKeeper] d:\program files\axbx\viruskeeper 2011 pro evaluation\VirusKeeper.exe
    mRunOnce: [Malwarebytes' Anti-Malware] d:\program files\malwarebytes' anti-malware\mbamgui.exe /install /silent
    dRun: [CTFMON.EXE] c:\windows.0\system32\ctfmon.exe
    IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
    IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
    IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - d:\progra~1\micros~2\office12\ONBttnIE.dll
    IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - d:\progra~1\micros~2\office12\REFIEBAR.DLL
    DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
    Handler: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - c:\program files\avg\avg9\toolbar\IEToolbar.dll
    Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - d:\progra~1\micros~2\office12\GR99D3~1.DLL
    Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg9\avgpp.dll
    Notify: AtiExtEvent - Ati2evxx.dll
    Notify: avgrsstarter - avgrsstx.dll
    SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - d:\progra~1\micros~2\office12\GRA8E1~1.DLL
    .
    ============= SERVICES / DRIVERS ===============
    .
    R? AVG Security Toolbar Service;AVG Security Toolbar Service
    S? avg9emc;AVG Free E-mail Scanner
    S? avg9wd;AVG Free WatchDog
    S? AvgLdx86;AVG Free AVI Loader Driver x86
    S? AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86
    S? AvgTdiX;AVG Free Network Redirector
    S? SWIHPWMI;SWIHPWMI
    S? vkservice;VirusKeeper antivirus/antispyware
    .
    =============== Created Last 30 ================
    .
    2011-03-23 15:27:10 -------- d-----w- d:\program files\AxBx
    2011-03-23 15:02:14 -------- dc----w- c:\docume~1\mauric~1.010\applic~1\Malwarebytes
    2011-03-23 15:02:08 38224 ----a-w- c:\windows.0\system32\drivers\mbamswissarmy.sys
    2011-03-23 15:02:00 -------- dc----w- c:\docume~1\alluse~1\applic~1\Malwarebytes
    2011-03-23 15:01:57 20952 ----a-w- c:\windows.0\system32\drivers\mbam.sys
    2011-03-23 15:01:56 -------- d-----w- d:\program files\Malwarebytes' Anti-Malware
    2011-03-23 14:34:44 -------- dc-h--w- c:\documents and settings\maurice.maurice-1c27f72.010\Modeles
    2011-03-23 14:25:47 -------- dc----w- c:\docume~1\mauric~1.010\locals~1\applic~1\Adobe
    2011-03-23 14:22:59 -------- dc-h--w- c:\documents and settings\maurice.maurice-1c27f72.010\Voisinage reseau
    2011-03-23 14:13:15 -------- dc----w- c:\documents and settings\maurice.maurice-1c27f72.010\Mes documents
    2011-03-23 14:12:35 -------- dc----w- c:\documents and settings\maurice.maurice-1c27f72.010\Favoris
    2011-03-23 14:12:35 -------- dc----w- c:\docume~1\mauric~1.010\locals~1\applic~1\Microsoft
    2011-03-23 14:12:33 -------- dc----w- c:\documents and settings\maurice.maurice-1c27f72.010\Menu Demarrer
    2011-03-23 14:12:29 -------- dc----w- c:\documents and settings\maurice.maurice-1c27f72.010\Bureau
    2011-03-23 08:34:17 -------- d-----w- c:\windows.0\Internet Logs
    2011-03-22 16:29:15 -------- d-----w- d:\program files\Kingsoft
    2011-03-22 16:27:37 -------- dc----w- c:\docume~1\alluse~1\applic~1\kingsoft
    2011-03-22 15:39:28 -------- dc----w- c:\docume~1\alluse~1\applic~1\MFAData
    .
    ==================== Find3M ====================
    .
    2011-01-25 13:14:33 2976440 ----a-w- d:\program files\ccsetup302.exe
    2010-10-07 07:40:21 45622688 ----a-w- d:\program files\eppexwin320fr.exe
    2010-10-04 12:16:27 1531593 ----a-w- d:\program files\winrar-x64-393.exe
    2010-09-22 11:23:00 99770040 ----a-w- d:\program files\avg_free_stf_eu_90_851a3009.exe
    2010-09-22 11:19:12 3427248 ----a-w- d:\program files\ccsetup235.exe
    2010-09-22 11:13:52 1266512 ----a-w- d:\program files\wlsetup-custom.exe
    2010-09-22 11:07:25 18590208 ----a-w- d:\program files\SkypeSetup.msi
    2010-09-22 10:52:09 7156384 ----a-w- d:\program files\gom-player_gom_player_2.1.26.5021_anglais_21309.EXE
    2010-09-22 10:25:12 21954904 ----a-w- d:\program files\installation_ie8-xp.exe
    2010-09-22 10:04:39 324222504 ----a-w- d:\program files\WindowsXP-KB936929-SP3-x86-FRA.exe
    2010-09-10 10:51:12 10496504 ----a-w- d:\program files\trjsetup682.exe
    2008-05-27 14:59:40 134247527 ----a-w- d:\program files\OOo_2.4.0_Win32Intel_install_wJRE_fr.exe
    2008-03-14 22:17:10 4377088 ----a-w- d:\program files\openofficeorg24.msi
    2008-02-08 20:33:18 323584 ----a-w- d:\program files\setup.exe
    2002-03-11 09:06:30 1822520 ----a-w- d:\program files\instmsiw.exe
    2002-03-11 08:45:04 1708856 ----a-w- d:\program files\instmsia.exe
    .
    ============= FINISH: 16:45:52,64 ===============


    .
    ==== Installed Programs ======================
    .
    Adobe Flash Player 10 ActiveX
    Adobe Reader 9.3.4 - Francais
    Assistant de connexion Windows Live
    ATI Catalyst Control Center
    ATI Display Driver
    AuthenTec Fingerprint Sensor Minimum Install
    AVG Free 9.0
    Broadcom NetXtreme Ethernet Controller
    Canon MF8000 Series
    Canon MP150
    Carte reseau local sans fil 802.11 Broadcom
    Catalyst Control Center - Branding
    Catalyst Control Center Core Implementation
    Catalyst Control Center Graphics Full Existing
    Catalyst Control Center Graphics Full New
    Catalyst Control Center Graphics Light
    Catalyst Control Center Localization Chinese Standard
    Catalyst Control Center Localization Chinese Traditional
    Catalyst Control Center Localization Czech
    Catalyst Control Center Localization Danish
    Catalyst Control Center Localization Dutch
    Catalyst Control Center Localization Finnish
    Catalyst Control Center Localization French
    Catalyst Control Center Localization German
    Catalyst Control Center Localization Greek
    Catalyst Control Center Localization Hungarian
    Catalyst Control Center Localization Italian
    Catalyst Control Center Localization Japanese
    Catalyst Control Center Localization Korean
    Catalyst Control Center Localization Norwegian
    Catalyst Control Center Localization Polish
    Catalyst Control Center Localization Portuguese
    Catalyst Control Center Localization Russian
    Catalyst Control Center Localization Spanish
    Catalyst Control Center Localization Swedish
    Catalyst Control Center Localization Thai
    Catalyst Control Center Localization Turkish
    ccc-core-preinstall
    ccc-core-static
    ccc-utility
    CCC Help Chinese Standard
    CCC Help Chinese Traditional
    CCC Help Czech
    CCC Help Danish
    CCC Help Dutch
    CCC Help English
    CCC Help Finnish
    CCC Help French
    CCC Help German
    CCC Help Greek
    CCC Help Hungarian
    CCC Help Italian
    CCC Help Japanese
    CCC Help Korean
    CCC Help Norwegian
    CCC Help Polish
    CCC Help Portuguese
    CCC Help Russian
    CCC Help Spanish
    CCC Help Swedish
    CCC Help Thai
    CCC Help Turkish
    CCleaner
    CDBurnerXP
    Coffret de pilotes Logitech Webcam Software
    Correctif pour Windows XP (KB952287)
    Correctif pour Windows XP (KB981793)
    GOM Player
    Hotfix for Windows XP (KB976002-v5)
    HP Broadband Wireless Modules
    HP Help and Support
    HP Integrated Module with Bluetooth wireless technology
    HP Wireless Assistant
    Installation Windows Live
    Malwarebytes' Anti-Malware
    Microsoft .NET Framework 2.0
    Microsoft Application Error Reporting
    Microsoft Choice Guard
    Microsoft Office Access MUI (English) 2007
    Microsoft Office Access Setup Metadata MUI (English) 2007
    Microsoft Office Enterprise 2007
    Microsoft Office Excel MUI (English) 2007
    Microsoft Office Groove MUI (English) 2007
    Microsoft Office Groove Setup Metadata MUI (English) 2007
    Microsoft Office InfoPath MUI (English) 2007
    Microsoft Office OneNote MUI (English) 2007
    Microsoft Office Outlook MUI (English) 2007
    Microsoft Office PowerPoint MUI (English) 2007
    Microsoft Office Proof (English) 2007
    Microsoft Office Proof (French) 2007
    Microsoft Office Proof (Spanish) 2007
    Microsoft Office Proofing (English) 2007
    Microsoft Office Publisher MUI (English) 2007
    Microsoft Office Shared MUI (English) 2007
    Microsoft Office Shared Setup Metadata MUI (English) 2007
    Microsoft Office Word MUI (English) 2007
    Microsoft Software Update for Web Folders (English) 12
    Microsoft Visual C++ 2005 Redistributable
    Mise a jour de securite pour Lecteur Windows Media (KB952069)
    Mise a jour de securite pour Lecteur Windows Media (KB954155)
    Mise a jour de securite pour Lecteur Windows Media (KB973540)
    Mise a jour de securite pour Lecteur Windows Media (KB975558)
    Mise a jour de securite pour Lecteur Windows Media (KB978695)
    Mise a jour de securite pour Lecteur Windows Media (KB979402)
    Mise a jour de securite pour Windows Internet Explorer 8 (KB2183461)
    Mise a jour de securite pour Windows Internet Explorer 8 (KB971961)
    Mise a jour de securite pour Windows Internet Explorer 8 (KB981332)
    Mise a jour de securite pour Windows Internet Explorer 8 (KB982381)
    Mise a jour de securite pour Windows XP (KB2079403)
    Mise a jour de securite pour Windows XP (KB2115168)
    Mise a jour de securite pour Windows XP (KB2121546)
    Mise a jour de securite pour Windows XP (KB2160329)
    Mise a jour de securite pour Windows XP (KB2229593)
    Mise a jour de securite pour Windows XP (KB2259922)
    Mise a jour de securite pour Windows XP (KB2286198)
    Mise a jour de securite pour Windows XP (KB2347290)
    Mise a jour de securite pour Windows XP (KB923561)
    Mise a jour de securite pour Windows XP (KB946648)
    Mise a jour de securite pour Windows XP (KB950760)
    Mise a jour de securite pour Windows XP (KB950762)
    Mise a jour de securite pour Windows XP (KB950974)
    Mise a jour de securite pour Windows XP (KB951376-v2)
    Mise a jour de securite pour Windows XP (KB951748)
    Mise a jour de securite pour Windows XP (KB952004)
    Mise a jour de securite pour Windows XP (KB952954)
    Mise a jour de securite pour Windows XP (KB954459)
    Mise a jour de securite pour Windows XP (KB956572)
    Mise a jour de securite pour Windows XP (KB956744)
    Mise a jour de securite pour Windows XP (KB956802)
    Mise a jour de securite pour Windows XP (KB956803)
    Mise a jour de securite pour Windows XP (KB956844)
    Mise a jour de securite pour Windows XP (KB958644)
    Mise a jour de securite pour Windows XP (KB958869)
    Mise a jour de securite pour Windows XP (KB959426)
    Mise a jour de securite pour Windows XP (KB960803)
    Mise a jour de securite pour Windows XP (KB960859)
    Mise a jour de securite pour Windows XP (KB961501)
    Mise a jour de securite pour Windows XP (KB969059)
    Mise a jour de securite pour Windows XP (KB970430)
    Mise a jour de securite pour Windows XP (KB971657)
    Mise a jour de securite pour Windows XP (KB972270)
    Mise a jour de securite pour Windows XP (KB973507)
    Mise a jour de securite pour Windows XP (KB973869)
    Mise a jour de securite pour Windows XP (KB973904)
    Mise a jour de securite pour Windows XP (KB974112)
    Mise a jour de securite pour Windows XP (KB974318)
    Mise a jour de securite pour Windows XP (KB974392)
    Mise a jour de securite pour Windows XP (KB974571)
    Mise a jour de securite pour Windows XP (KB975025)
    Mise a jour de securite pour Windows XP (KB975467)
    Mise a jour de securite pour Windows XP (KB975560)
    Mise a jour de securite pour Windows XP (KB975562)
    Mise a jour de securite pour Windows XP (KB975713)
    Mise a jour de securite pour Windows XP (KB977816)
    Mise a jour de securite pour Windows XP (KB977914)
    Mise a jour de securite pour Windows XP (KB978037)
    Mise a jour de securite pour Windows XP (KB978338)
    Mise a jour de securite pour Windows XP (KB978542)
    Mise a jour de securite pour Windows XP (KB978601)
    Mise a jour de securite pour Windows XP (KB978706)
    Mise a jour de securite pour Windows XP (KB979309)
    Mise a jour de securite pour Windows XP (KB979482)
    Mise a jour de securite pour Windows XP (KB980195)
    Mise a jour de securite pour Windows XP (KB980218)
    Mise a jour de securite pour Windows XP (KB980232)
    Mise a jour de securite pour Windows XP (KB980436)
    Mise a jour de securite pour Windows XP (KB981322)
    Mise a jour de securite pour Windows XP (KB981852)
    Mise a jour de securite pour Windows XP (KB981997)
    Mise a jour de securite pour Windows XP (KB982214)
    Mise a jour de securite pour Windows XP (KB982665)
    Mise a jour de securite pour Windows XP (KB982802)
    Mise a jour pour Windows Internet Explorer 8 (KB976662)
    Mise a jour pour Windows Internet Explorer 8 (KB982664)
    Mise a jour pour Windows XP (KB2141007)
    Mise a jour pour Windows XP (KB898461)
    Mise a jour pour Windows XP (KB951978)
    Mise a jour pour Windows XP (KB955759)
    Mise a jour pour Windows XP (KB961503)
    Mise a jour pour Windows XP (KB967715)
    Mise a jour pour Windows XP (KB968389)
    Mise a jour pour Windows XP (KB971737)
    Mise a jour pour Windows XP (KB973815)
    MSVCRT
    msvcrt_installer
    OpenOffice.org 2.4
    Outil de telechargement Windows Live
    Segoe UI
    Skype? 4.2
    SoundMAX
    Viewpoint Media Player
    VirusKeeper 2011 Pro Evaluation
    WebFldrs XP
    Windows Genuine Advantage Validation Tool (KB892130)
    Windows Internet Explorer 8
    Windows Live Call
    Windows Live Communications Platform
    Windows Live Messenger
    Windows XP Service Pack 3
    Winmail Opener 1.4
    WinRAR archiver
    .
    ==== End Of File ===========================
     
  2. Broni

    Broni Malware Annihilator Posts: 47,654   +267

    Welcome aboard [​IMG]

    Please, observe following rules:
    • Read all of my instructions very carefully. Your mistakes during cleaning process may have very serious consequences, like unbootable computer.
    • If you're stuck, or you're not sure about certain step, always ask before doing anything else.
    • Please refrain from running tools or applying updates other than those I suggest.
    • Never run more than one scan at a time.
    • Keep updating me regarding your computer behavior, good, or bad.
    • The cleaning process, once started, has to be completed. Even if your computer appears to act better, it may still be infected. Once the computer is totally clean, I'll certainly let you know.
    • If you leave the topic without explanation in the middle of a cleaning process, you may not be eligible to receive any more help in malware removal forum.
    • I close my topics if you have not replied in 5 days. If you need more time, simply let me know. If I closed your topic and you need it to be reopened, simply PM me.

    ===================================================================

    Download TDSSKiller and save it to your desktop.
    • Extract (unzip) its contents to your desktop.
    • Open the TDSSKiller folder and doubleclick on TDSSKiller.exe to run the application, then on Start Scan.
    • If an infected file is detected, the default action will be Cure, click on Continue.
    • If a suspicious file is detected, the default action will be Skip, click on Continue.
    • It may ask you to reboot the computer to complete the process. Click on Reboot Now.
    • If no reboot is require, click on Report. A log file should appear. Please copy and paste the contents of that file here.
    • If a reboot is required, the report can also be found in your root directory (usually C:\ folder) in the form of TDSSKiller_xxxx_log.txt. Please copy and paste the contents of that file here.
     
Topic Status:
Not open for further replies.


Add New Comment

TechSpot Members
Login or sign up for free,
it takes about 30 seconds.
You may also...


Get complete access to the TechSpot community. Join thousands of technology enthusiasts that contribute and share knowledge in our forum. Get a private inbox, upload your own photo gallery and more.