alex_ccm
Messages postés40Date d'inscriptionsamedi 2 août 2008StatutMembreDernière intervention 5 mai 2012
-
3 août 2008 à 10:18
chimay8
Messages postés7720Date d'inscriptionjeudi 1 mai 2008StatutContributeur sécuritéDernière intervention 3 janvier 2014
-
3 août 2008 à 10:24
Bonjour,
Apres un rapport Hijack et un Malwarebyte's, il se trouve que j'ai sur mon ordinateur portable 21 objets dangereux dont:
Aidez moi à éliminer tout ca sans perdre d'information précieuses...En fait j'aimerais qu'on me guide
pour effectuer les bonnes manips dans le bon ordre de la suppression des trojan jusqu'à l'installation du bon Antivirus
(car j'ai Avast et j'ai pensé à Antivir) MERCI infiniment ;)
Rapport Malwarebyte's en mode sans echec:
Malwarebytes' Anti-Malware 1.24
Version de la base de données: 1017
Windows 6.0.6000
Clé(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Secure Solutions (Rogue.Multiple) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\MS Juan (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\7e1121e8 (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\bm7d221274 (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\msserver (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\cmds (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\s9201 (Rogue.Multiple) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
C:\ProgramData\Secure Solutions (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\ProgramData\Secure Solutions\Antispyware 2008 XP (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\ProgramData\Secure Solutions\Antispyware 2008 XP\BASE (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\ProgramData\Secure Solutions\Antispyware 2008 XP\DELETED (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\ProgramData\Secure Solutions\Antispyware 2008 XP\LOG (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\ProgramData\Secure Solutions\Antispyware 2008 XP\SAVED (Rogue.Multiple) -> Quarantined and deleted successfully.
Fichier(s) infecté(s):
C:\Users\Tidome\AppData\Local\Temp\vnokhukl.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\Users\Tidome\AppData\Local\Temp\hijjtbuu.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\Users\Tidome\AppData\Local\Temp\xxyvtqOI.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\Users\Tidome\AppData\Local\Temp\yayaXNgH.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\ProgramData\Secure Solutions\Antispyware 2008 XP\as2008xp.exe (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\ProgramData\Secure Solutions\Antispyware 2008 XP\LOG\20080802163638537.log (Rogue.Multiple) -> Quarantined and deleted successfully.
Rapport Hijack
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:18:52, on 02/08/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16681)
Boot mode: Normal