clarkcool
Messages postés7Date d'inscriptionsamedi 1 janvier 2005StatutMembreDernière intervention 4 mars 2009
-
4 mars 2009 à 15:13
PL59
Messages postés613Date d'inscriptionjeudi 30 octobre 2008StatutMembreDernière intervention26 juillet 2019
-
4 mars 2009 à 18:00
Bonjour,
j'ai un soucis avec mon ordinateur ca a commencé avec un écran bleu avec le message kernel data inpage error ensuite lorsque j'ouvrais une page internet il y a en haut marqué votre ordi est infecté avec un lien menant a un pseudo antivirus antivirus pro xp ou un truc comme ca et pour finir mes contact msn me disent que je leur envoie des liens vers un site nommé hi5 avec paris hilton nue etc je ne peut plus redemarré mon ordinateur qu'en mode sans echec maintenant j'ai donc fait un scan avec antivir dont voila le rapport pouvez vous m'aidez ?
merci
Avira AntiVir Personal
Report file date: mercredi 1 janvier 2070 02:10
Scanning for 1281455 virus strains and unwanted programs.
Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 3, v.5512) [5.1.2600]
Boot mode: Save mode with network
Username: Administrateur
Computer name: DARKPHOE-C89725
Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:,
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium
Start of the scan: mercredi 1 janvier 2070 02:10
The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process '300823.exe' - '1' Module(s) have been scanned
Module is infected -> 'C:\Documents and Settings\Administrateur\300823.exe'
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'system.exe' - '1' Module(s) have been scanned
Scan process 'userinit.exe' - '1' Module(s) have been scanned
Module is infected -> 'C:\windows\system32\userinit.exe'
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
Process '300823.exe' has been terminated
Process 'userinit.exe' has been terminated
C:\Documents and Settings\Administrateur\300823.exe
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] The file was deleted!
C:\windows\system32\userinit.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was deleted!
16 processes with 14 modules were scanned
Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Starting to scan the registry.
C:\RECYCLER\S-1-5-21-4433330076-3138016472-978095942-4455\mwau.exe
[DETECTION] Is the TR/Agent2.eeg Trojan
[NOTE] The file was deleted!
The registry was scanned ( '62' files ).
Starting the file scan:
Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\Documents and Settings\Administrateur\708677.exe
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Bureau\Ne-Yo - Year Of The Gentleman + Bonus Tracks (2008) by molen.rar
[0] Archive type: RAR
--> Bonus\She Got Her Own.mp3
[DETECTION] Contains recognition pattern of the EXP/ASF.GetCodec.Gen exploit
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Bureau\AH 1.1\ah.dll
[DETECTION] Is the TR/Dldr.Delf.rgy Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\0453486
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\1112620
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\12227.sys
[DETECTION] Is the TR/Rootkit.Gen Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\1352381
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\1665382
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\18711.sys
[DETECTION] Is the TR/Rootkit.Gen Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\2087648
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\21062.sys
[DETECTION] Is the TR/Rootkit.Gen Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\2427353
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\272.exe
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\3118213
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\32251.sys
[DETECTION] Is the TR/Rootkit.Gen Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\3453566
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\38153.sys
[DETECTION] Is the TR/Rootkit.Gen Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\390.exe
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\44261.sys
[DETECTION] Is the TR/Rootkit.Gen Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\4520810
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\53611.sys
[DETECTION] Is the TR/Rootkit.Gen Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\65823.sys
[DETECTION] Is the TR/Rootkit.Gen Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\7462103
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\767.exe
[DETECTION] Is the TR/Buzus.aniu Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\8353366
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\934.exe
[DETECTION] Is the TR/Buzus.aniu Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temp\mousehook.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\8IJQQ05E\espp[1].exe
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\8IJQQ05E\espp[2].exe
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\AMMNVGCW\lsp[1].exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\B6VS2FM9\ag23[1].exe
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Mes documents\LimeWire\Incomplete\T-5088466-hypnose ejaculation precoce(192k 44100 stereo).snd
[DETECTION] Contains recognition pattern of the EXP/ASF.GetCodec.Gen exploit
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Mes documents\LimeWire\Incomplete\JOPFIWNI7ZVQQ2OFVCPYKV5QQMFYW3VP\Desktop Dreamscapes\Desktop Dreamscapes Vol.1_Additional Files.exe
[0] Archive type: CAB SFX (self extracting)
--> \Disk1\asteroid field - black hole.prp
[WARNING] No further files can be extracted from this archive. The archive will be closed
C:\Documents and Settings\Administrateur\Mes documents\LimeWire\Saved\starquake [incl crack by Core].zip
[0] Archive type: ZIP
--> crack.exe
[DETECTION] Is the TR/Drop.Agent.noc Trojan
--> setup.exe
[DETECTION] Is the TR/Drop.Agent.noc Trojan
[NOTE] The file was deleted!
C:\Documents and Settings\Administrateur\Mes documents\Ma musique\Pussycat Dolls - Doll Domination [2008]\09 Magic.mp3
[DETECTION] Contains recognition pattern of the EXP/ASF.GetCodec.Gen exploit
[NOTE] The file was deleted!
C:\Program Files\eMule\Temp\004.part
[0] Archive type: RAR
--> FL Studio 6.0.8_install.exe
[1] Archive type: NSIS
--> Settings/Hat_1-002.wav
[WARNING] No further files can be extracted from this archive. The archive will be closed
C:\Program Files\SAV\sav0.dat
[DETECTION] Is the TR/Fakealert.ACZ Trojan
[NOTE] The file was deleted!
C:\Program Files\SAV\sav1.dat
[DETECTION] Is the TR/Fakealert.acz.1 Trojan
[NOTE] The file was deleted!
C:\Program Files\Windows Trust\Ressources\MS.Controls.exe
[DETECTION] Is the TR/Agent.519361.A Trojan
[NOTE] The file was deleted!
C:\Program Files\Windows Trust\Ressources\MS.TFramework.exe
[DETECTION] Is the TR/Agent.331619.A Trojan
[NOTE] The file was deleted!
C:\RECYCLER\S-1-5-21-1595901572-9676703719-031218397-9750\mwau.exe
[DETECTION] Is the TR/Agent2.eeg Trojan
[NOTE] The file was deleted!
C:\RECYCLER\S-1-5-21-5901695822-8237449452-680260764-9026\mwau.exe
[DETECTION] Is the TR/Agent2.eeg Trojan
[NOTE] The file was deleted!
C:\RECYCLER\S-1-5-21-6102524017-7491491433-844810345-5942\mwau.exe
[DETECTION] Is the TR/Agent2.eeg Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\021.exe
[DETECTION] Is the TR/Agent2.eeg Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\058.exe
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\078.exe
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\137.exe
[DETECTION] Is the TR/Agent2.eeg Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\160.exe
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\246.exe
[DETECTION] Is the TR/Agent2.eeg Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\261.exe
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\322.exe
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\343.exe
[DETECTION] Is the TR/Agent2.eeg Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\388.exe
[DETECTION] Is the TR/Agent2.eeg Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\415.exe
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\465.exe
[DETECTION] Is the TR/Agent2.eeg Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\571.exe
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\804.exe
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\820.exe
[DETECTION] Is the TR/Agent2.eeg Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\ntdll64.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\pcehtr.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\qrwgvr.VIR
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\system.exe
[WARNING] The file could not be opened!
C:\WINDOWS\system32\vhgnrdus.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\5M5BGXAT\lsp[2].exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was deleted!
C:\WINDOWS\system32\dllcache\userinit.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was deleted!
C:\WINDOWS\Temp\8051261
[DETECTION] Is the TR/Agent2.egz Trojan
[NOTE] The file was deleted!
C:\WINDOWS\Temp\mousehook.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was deleted!
End of the scan: mercredi 1 janvier 2070 03:15
Used time: 1:04:43 Hour(s)
The scan has been done completely.
17425 Scanning directories
565317 Files were scanned
70 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
67 files were deleted
0 files were repaired
0 files were moved to quarantine
0 files were renamed
2 Files cannot be scanned
565245 Files not concerned
7136 Archives were scanned
4 Warnings
67 Notes
PL59
Messages postés613Date d'inscriptionjeudi 30 octobre 2008StatutMembreDernière intervention26 juillet 201921 4 mars 2009 à 15:31
Bonjour démarre en mode sans échec plusieurs fois F8 au démarrage ensuite clique sur ton compte est lance une analyse avec ton antivirus et lance Spybot et fais un scan sa corrigera pas mal de virus et autres ensuite vas sur internet et télécharge SDfix http://sdfix.net/SDFix.exe + le tuto https://www.malekal.com/slenfbot-still-an-other-irc-bot/
Ensuite télécharge smitfraud fix http://siri.urz.free.fr/Fix/SmitfraudFix.exe
+ son tuto http://www.malekal.com/tutorial_SmitFraudfix.php
clarkcool
Messages postés7Date d'inscriptionsamedi 1 janvier 2005StatutMembreDernière intervention 4 mars 2009 4 mars 2009 à 16:37
merci mais lorsque je redemarre le mode sans echec est tout noir il n'y a aucun icone et lorsque je fais ctrl alt supp il y a un message qui marque le gestionnaire des taches a ete desactivé par l'administrateur et quand j"essai de redemarré en mode normal plus rien plus d'icones ni barre des taches juste le pointeur souris je suis dégouté que faire je ne peux pas formaté j'ai plein de photo de ma fille dedans que faire?
merci
PL59
Messages postés613Date d'inscriptionjeudi 30 octobre 2008StatutMembreDernière intervention26 juillet 201921 4 mars 2009 à 16:52
Bon pour le mode normal ou il a plus rien fais ctrl alt suppr fais fichier nouvelle tâche et tape explorer.exe sa devrais faire revenir fais déja sa après on verra ^^
Cordialement PL59
Vous n’avez pas trouvé la réponse que vous recherchez ?
clarkcool
Messages postés7Date d'inscriptionsamedi 1 janvier 2005StatutMembreDernière intervention 4 mars 2009 4 mars 2009 à 17:02
ben non ca marche pas comme je l'ai cité plus haut quand je fais alt ctrl supp cela me met
le gestionnaire des taches a été desactivé par l'administrateur je suis completement bloqué