par antolien » 26 Oct 2002 02:27
oui, bit-defender à l'air bien rapport qualité prix mais je ne l'ai jamais testé, il y a aussi nod32 dans le même genre.
<BR>
<BR>au fait fo verifier ça pour js seeker :
<BR>
<BR>When JS.Seeker is executed, it makes changes to the following registry keys:
<BR>
<BR>HKEY_CURRENT_USERSoftwareMicrosoftInternet ExplorerMainStart Page
<BR>HKEY_CURRENT_USERSoftwareMicrosoftInternet ExplorerMainSearch Bar
<BR>HKEY_CURRENT_USERSoftwareMicrosoftInternet ExplorerMainDefault_Page_URL
<BR>HKEY_CURRENT_USERSoftwareMicrosoftInternet ExplorerMainDefault_Search_URL
<BR>HKEY_CURRENT_USERSoftwareNetscapeNetscape NavigatorMainHome Page
<BR>
<BR>The original registry values are saved in the Windows folder as Backup1.reg and Backup2.reg .
<BR>
<BR>The Trojan horse creates the file Homereg111.reg in the Windows folder and sets the previously mentioned registry keys to its own values. It then runs Removeit.hta, which deletes the file Runme.hta from the C:WindowsStart MenuProgramsStartup folder.
<BR>
<BR>JS.Seeker also creates the Prefs.js file in the Windows folder. This is a JavaScript file that changes Netscape Preferences to its own.
<BR>
<BR>
<BR>ça c'est ce qu'il fait et voici ce qu'il fo faire :
<BR>
<BR>To remove JS.Seeker you need to:
<BR>Run a full system scan and delete any files that are detected as infected.
<BR>Delete the Homereg111.reg and Prefs.js files.
<BR>Restore original settings by merging Backup1.reg and Backup2.reg into the registry.
<BR>
<BR>To find and delete the Homereg111.reg and Prefs.js files:
<BR>1. Click Start, point to Find, and click Files or Folders.
<BR>2. Make sure that Look in is set to (C:) and that Include subfolders is checked.
<BR>3. In the Named box, type the following file names:
<BR>
<BR>homereg111.reg prefs.js
<BR>
<BR>4. Click Find Now. Windows will find the files (if they exist) and display them in the lower pane of the Find dialog box.
<BR>5. Select each displayed file, press Delete, and click Yes to confirm.
<BR>6. Leave the Find: All Files window open, and go on to the next section.
<BR>
<BR>To find and merge Backup1.reg and Backup2.reg into the registry:
<BR>1. Click New Search, and click OK to confirm.
<BR>2. Make sure that Look in is set to (C:) and that Include subfolders is checked.
<BR>3. In the Named box, type the following file names:
<BR>
<BR>backup1.reg backup2.reg
<BR>
<BR>4. When found, double-click each of these files to restore the registry settings.
<BR>5. Once the registry has been restored and the computer is working correctly, delete Backup1.reg and Backup2.reg.
<BR>
<BR>c'est terrible hein ?
<BR>