I have no ideas how to deal with this threat. File "temp.exe" has the following statistics: Total number of reports analysed611,932 Number of cases that involved the file "temp.exe"205 Number of incidents when this file was found to be a threat141 mon mail [email protected] j´ai vu ici cette adresse rav antivirus et j´ai fait un scan dont voici le rapport !!!!!! HKU\S-1-5-21-1545653123-3863540839-814825200-1006\Software\HbTools\HbTools\Sample\Hist\sg978 -> Adware.HotBar : Ignoré. Source

How to Remove Trojan-Downloader.Win32.ConHook.bef ?To remove Trojan-Downloader.Win32.ConHook.bef, you need to use a simple and methodical system, where you will need to manually remove the infection's components from your system. Par exemple C:\hijackthis lancez le puis: clic sur "do a system scan and save logfile" faire un copier coller du log entier sur le forum. Since this pesky virus always accesses a compromised without showing visible symptoms, most users even don't realize this virus is installed until they scan the computer. But what if your antivirus program doesn't work? http://www.bleepingcomputer.com/forums/t/107184/trojan-downloaderwin32conhookbg/

For example, they have tried to remove it under control panel or task manager but they cannot locate the related files of Trojan-Downloader.Win32.ConHook.edd. HKU\S-1-5-21-1545653123-3863540839-814825200-1006\Software\HbTools\HbTools\updates -> Adware.HotBar : Ignoré. Delete related registry value. If we have ever helped you in the past, please consider helping us.

Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC O4 -

HKLM\SOFTWARE\HbTools\HbTools\Mail -> Adware.HotBar : Ignoré. This is very simple to do.Clean Out The Registry The registry is a database of all the settings you have on your system. Bon courage A++ Donnez votre avis Utile +0 Signaler misslet 3Messages postés mardi 27 novembre 2007Date d'inscription 30 novembre 2007 Dernière intervention 30 nov. 2007 à 10:38 merci voila SmitFraudFix v2.256 http://www.printerrorfixnow.com/Trojan/remove-Trojan-Downloader.Win32.ConHook.bef.html Donnez votre avis Utile +0 Signaler nenette 29 nov. 2007 à 18:40 Oui et parfois je n'arrive même pas à l'éteindre, à mois d'appuyer sur le bouton de mise sous tension.

In a word, Trojan-Downloader.Win32.ConHook.bet is an evil Trojan that needs to be removed from your machine immediately once upon detection. C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP217\A0072940.dll -> Adware.Hotbar : Nettoyé. Once installed on the PC, it may open a backdoor where remote attackers could gain access and then steal the personal data stored on the hard drive.

another solution? https://forum.kaspersky.com/lofiversion/index.php/t8259.html In order to check a file, please submit it to ThreatExpert. J'ai téléchargé le logiciel Kaspersky mais je n'arrive pas à le lancer. iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast!

After the scan and removal process my computer is restored to its original clean state. http://wpquickadminthemes.com/general/trojan-win32-conhook-i.html Click Start, Run and type MSCONFIG in the box and click OKThe System Configuration Utility appears, On the BOOT.INI tab, Check the "/SAFEBOOT" option, and then click OK and Restart your j´ai besoin d´aide s´il vous plait !!!!!!!!!!!!!!! Merci par avance.

Bon Courage ! If by any chance the manual removal is not working, it can only mean that your computer is severely infected.Automated RemovalAll the viruses and spywares nowadays are usually so clever that HKU\S-1-5-21-1545653123-3863540839-814825200-1006\Software\HbTools\HostOI\Updates -> Adware.HotBar : Nettoyé. http://wpquickadminthemes.com/general/trojan-downloader-conhook.html You then need to select all the files and press Shift + Delete to remove them permanently.Unregister The DLLs It Requires Not many people realize this, but many of these rogue

Scroll down to where it says 'Java Runtime Environment (JRE) 6u2'.3. Click the "Download" button to the right.4. It has been a nightmare for numerous computer users worldwide.

Le fait d'être membre vous permet d'avoir des options supplémentaires.

Marina. Back to top #6 chinner chinner Topic Starter Members 7 posts OFFLINE Local time:02:57 PM Posted 06 September 2007 - 07:24 AM ComboFix 07-09-06.3 - "Anna&David" 2007-09-06 13:04:28.2 - NTFSx86 Never believe what rogue program says and finish payment, or the infected PC will suffer further damage and victims can not get the money back. Notes: Please note that the name of the file should NOT be used to define if it is legitimate or not.

mongou 15.01.2006 16:11 Thanxs a lot for your fast reply.I did scan with kaspersky in safemode but it couldnt remove it . merci d avance Afficher la suite Trojan downloader win32.Conhook.hl Trojan-Downloader.Win32.ConHook.hl TROJAN DOWNLOADE.WIN32.CONHOOK.BG (Résolu) Trojan Downloader win32 conhook.c Trojan-Downloader.Win32.ConHook.b Trojan downloader-win32/zlob.gen!x (Résolu) Utile +0 Signaler Cesel45 12381Messages postés mardi 24 avril 2007Date If you accept cookies from this site, you will only be shown this dialog once!You can press escape or click on the X to close this box. Check This Out Reboot In Normal Mode Similar Video:How to backup windows registry and Modify windows registry

In summary: Trojan-Downloader.Win32.ConHook.edd is a dangerous Trojan horse that may be distributed via malicious sources

HKU\S-1-5-21-1545653123-3863540839-814825200-1006\Software\HbTools\HbTools\dynamicFail -> Adware.HotBar : Ignoré. View the "Services" parameter in the [HKLM\Software\Microsoft\Windows\CurrentVersion\Run] key; this parameter gives the full path to the malicious program. 3.Trace down the original virus file and delete it4.Delete the related registry value Get a Free tool Remove Trojan-Downloader.Win32.ConHook.edd now! C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP216\A0072914.exe -> Adware.HotBar : Ignoré.

Boot into Safe Mode -Safe Mode ensures that Windows starts with only basic and essential services. C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP216\A0072911.exe -> Adware.180Solutions : Ignoré. Using the utility you used in the previous step for scanning, remove the suspected Trojan viruses from the list so that they cannot startup and delete the files from the hard The file "temp.exe" is known to be created under the following filenames: %AllUsersProfile%\cncdown.exe %AllUsersProfile%\desktop.exe %AllUsersProfile%\documents.exe %AllUsersProfile%\drm.exe %AllUsersProfile%\drm\drm.exe %AllUsersProfile%\favorites.exe %AllUsersProfile%\templates.exe %AppData%\1.exe %AppData%\adobe\adobe.exe %AppData%\blaah.exe %AppData%\calc.exe %AppData%\codecsetup.exe %AppData%\codecsetup3788.exe %AppData%\codecsetup4127.exe %AppData%\codecsetup6400.exe %AppData%\codecsetup8536.exe %AppData%\cp_setup_assist.exe %AppData%\cuda.exe %AppData%\dealassistant\dauninstall.exe

Now this nuisance still stays on my machine, because my antivirus program fails to remove it completely. HKU\S-1-5-21-1545653123-3863540839-814825200-1006\Software\HbTools\Time -> Adware.HotBar : Nettoyé. C'est un peu long. This virus takes up a lot of CPU usage which will cause constant stuck on the computer.

Edit Registry - It may be possible for some links to Trojans to exist still in the registry. Répondre Donnez votre avis Utile +0 Signaler balltrap34 16248Messages postés jeudi 8 janvier 2004Date d'inscription Contributeur sécuritéStatut 28 novembre 2009 Dernière intervention 11 juin 2005 à 23:32 a tu acces a