Rapport Trojan aidez moi plz !!

Fermé
antoine - 27 nov. 2004 à 15:11
 wallas - 2 janv. 2005 à 13:59
Voila avec le site avantivirus j'ai fait un scan online voici ce qu'il ma mit , pourriez vous m'adier mon PC RAM a fonc et ma bande passante est completement submerger de connerie ( 15mbits/sec)

Scan started at 27/11/2004 13:44:16

Scanning memory...
Scanning boot sectors...
Scanning files...
C:\oqwndsv.chm->/on-line.exe - Trojan:Win32/Dialer.CE -> Suspicious
C:\Documents and Settings\Toinou\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-4145b427-565f8b37.zip->Beyond.class - TrojanDownloader:Java/OpenStream.D -> Infected
C:\Documents and Settings\Toinou\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-ccec7aa-47108ec0.zip->Beyond.class - TrojanDownloader:Java/OpenStream.D -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\archive.jar-487b52a0-49fa94d2.zip->rundll32.exe - Trojan:Win32/StartPage.AQ -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\archive.jar-7c2b94df-70c3f817.zip->ProbeLoader.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-1ccc5eef-65ea7506.zip->GetAccess.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-1ccc5eef-65ea7506.zip->InsecureClassLoader.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-1ccc5eef-65ea7506.zip->Installer.class - TrojanDownloader:Java/OpenConnection.F -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-3e604f1-55a7fae5.zip->GetAccess.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-3e604f1-55a7fae5.zip->InsecureClassLoader.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-3e604f1-55a7fae5.zip->Installer.class - TrojanDownloader:Java/OpenConnection.F -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-413b4db4-3002835f.zip->GetAccess.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-413b4db4-3002835f.zip->InsecureClassLoader.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-413b4db4-3002835f.zip->Installer.class - TrojanDownloader:Java/OpenConnection.F -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-41deb812-76d57b9d.zip->GetAccess.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-41deb812-76d57b9d.zip->InsecureClassLoader.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-41deb812-76d57b9d.zip->Installer.class - TrojanDownloader:Java/OpenConnection.F -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-45f7b2d8-12af63cb.zip->GetAccess.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-45f7b2d8-12af63cb.zip->InsecureClassLoader.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-45f7b2d8-12af63cb.zip->Installer.class - TrojanDownloader:Java/OpenConnection.F -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-481b81b6-175166b6.zip->GetAccess.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-481b81b6-175166b6.zip->InsecureClassLoader.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-481b81b6-175166b6.zip->Installer.class - TrojanDownloader:Java/OpenConnection.F -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-546aaf36-701cdd57.zip->GetAccess.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-546aaf36-701cdd57.zip->InsecureClassLoader.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-546aaf36-701cdd57.zip->Installer.class - TrojanDownloader:Java/OpenConnection.F -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-5aefffee-177bbbe1.zip->GetAccess.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-5aefffee-177bbbe1.zip->InsecureClassLoader.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-5aefffee-177bbbe1.zip->Installer.class - TrojanDownloader:Java/OpenConnection.F -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-648c305b-294ed812.zip->GetAccess.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-648c305b-294ed812.zip->InsecureClassLoader.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-68ca096a-315d74a8.zip->GetAccess.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-68ca096a-315d74a8.zip->InsecureClassLoader.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-68ca096a-315d74a8.zip->Installer.class - TrojanDownloader:Java/OpenConnection.F -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-6d1df22f-52903488.zip->GetAccess.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-6d1df22f-52903488.zip->InsecureClassLoader.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-6d1df22f-52903488.zip->Installer.class - TrojanDownloader:Java/OpenConnection.F -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-7958a4de-2457c648.zip->GetAccess.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-7958a4de-2457c648.zip->InsecureClassLoader.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-7958a4de-2457c648.zip->Installer.class - TrojanDownloader:Java/OpenConnection.F -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-b14363a-20c98f13.zip->GetAccess.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-b14363a-20c98f13.zip->InsecureClassLoader.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\classload.jar-b14363a-20c98f13.zip->Installer.class - TrojanDownloader:Java/OpenConnection.F -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\count.jar-5e59ad58-6604d7b2.zip->Parser.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loaderadv119.jar-79e5197b-44dcfe71.zip->Counter.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loaderadv119.jar-79e5197b-44dcfe71.zip->Matrix.class - TrojanDownloader:Java/OpenStream.C -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loaderadv119.jar-79e5197b-44dcfe71.zip->Parser.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loaderadv2.jar-19b35d14-14c6dd71.zip->Counter.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loaderadv2.jar-19b35d14-14c6dd71.zip->Matrix.class - TrojanDownloader:Java/OpenStream.C -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loaderadv2.jar-19b35d14-14c6dd71.zip->Parser.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loaderadv237.jar-6360295a-2fb81449.zip->Counter.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loaderadv237.jar-6360295a-2fb81449.zip->Matrix.class - TrojanDownloader:Java/OpenStream.C -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loaderadv237.jar-6360295a-2fb81449.zip->Parser.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loaderadv3.jar-19c17495-72a8caaf.zip->Counter.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loaderadv3.jar-19c17495-72a8caaf.zip->Matrix.class - TrojanDownloader:Java/OpenStream.C -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loaderadv3.jar-19c17495-72a8caaf.zip->Parser.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loaderadv314.jar-14b26cda-64a79273.zip->Counter.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loaderadv314.jar-14b26cda-64a79273.zip->Matrix.class - TrojanDownloader:Java/OpenStream.C -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loaderadv314.jar-14b26cda-64a79273.zip->Parser.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loaderadv97.jar-1a9f1050-71f0761d.zip->Counter.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loaderadv97.jar-1a9f1050-71f0761d.zip->Matrix.class - TrojanDownloader:Java/OpenStream.C -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loaderadv97.jar-1a9f1050-71f0761d.zip->Parser.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loadertraff.jar-428149e2-261547b3.zip->Counter.class - Trojan:Java/ClassLoader -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loadertraff.jar-428149e2-261547b3.zip->Matrix.class - TrojanDownloader:Java/OpenStream.C -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\loadertraff.jar-428149e2-261547b3.zip->Parser.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\m_st_jv.jar-4b0a1e5a-27824577.zip->Dummy.class - Trojan:Java/Dummy.C (exact) -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\m_st_jv.jar-4b0a1e5a-27824577.zip->Beyond.class - TrojanDownloader:Java/OpenStream.H -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\nocheat.jar-67b60e84-5d7299b8.zip->Parser.class - Java/Bytverify -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\playup10.jar-37c009c3-2752f5ae.zip->Dummy.class - Trojan:Java/Dummy.C (exact) -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\playup10.jar-37c009c3-2752f5ae.zip->Beyond.class - TrojanDownloader:Java/OpenStream.H -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\playup_mas2.jar-c1ff7b6-1a4e17e8.zip->Dummy.class - Trojan:Java/Dummy.C (exact) -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\playup_mas2.jar-c1ff7b6-1a4e17e8.zip->Beyond.class - TrojanDownloader:Java/OpenStream.H -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\playup_pr25.jar-229a091-3ca99c9d.zip->Dummy.class - Trojan:Java/Dummy.C (exact) -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\playup_pr25.jar-229a091-3ca99c9d.zip->Beyond.class - TrojanDownloader:Java/OpenStream.H -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\playup_ro.jar-36d594bc-54ab0a7a.zip->Dummy.class - Trojan:Java/Dummy.C (exact) -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\playup_ro.jar-36d594bc-54ab0a7a.zip->Beyond.class - TrojanDownloader:Java/OpenStream.H -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\playup_v1ro.jar-6d9b3a0b-7280df27.zip->Dummy.class - Trojan:Java/Dummy.C (exact) -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Infected\playup_v1ro.jar-6d9b3a0b-7280df27.zip->Beyond.class - TrojanDownloader:Java/OpenStream.H -> Infected
C:\Program Files\Softwin\BitDefender Free Edition\Suspect\bla.exe - TrojanDropper:Win32/Small.gen -> Infected
C:\System Volume Information\_restore{17FA1D2F-337B-40FC-A7B1-61220FFDE30E}\RP170\A0157319.exe->(UPXW) - Backdoor:IRC/SdBot -> Infected
C:\System Volume Information\_restore{17FA1D2F-337B-40FC-A7B1-61220FFDE30E}\RP173\A0157460.exe - Backdoor:Win32/Rbot -> Infected
C:\System Volume Information\_restore{17FA1D2F-337B-40FC-A7B1-61220FFDE30E}\RP173\A0157461.exe - Tool:PornDialer.HQ -> Infected
C:\WINDOWS\Downloaded Program Files\LiveService.inf - TrojanDropper:Win32/Slaif.A* -> Infected
C:\WINDOWS\system32\explorer.exe - Trojan:Win32/StartPage.JV -> Infected
C:\WINDOWS\system32\secure32.txt->(SCRIPT0000) - JS/Harnig.A* -> Infected

Scanned
============================
Objects: 26538
Directories: 2512
Archives: 1320
Size(Kb): 1740137
Infected files: 84

Found
============================
Viruses found: 15
Suspicious files: 1
Disinfected files: 0
Mail files: 75
A voir également:

1 réponse

salut
comme bitdefender ne fonctionne pas mode sans échec je te propose ceci
1. d'abord virrer ceux infecté dans restauration système, pour ç a
*Pour effacer efficacement manuellement tu te mets en mode sans échec ou mode VGA, explications là
http://service1.symantec.com/SUPPORT/INTER/tsgeninfointl.nsf/fdocid/20020905112131924 ou là
http://www.aidewindows.net/urgence.php#sansechec
-pour windowsXP ou ME redémarrer ordi et tapoter F8 (ou F5 selon config) et choisir « Mode sans échec »
- pour Windows NT ou 9x.XX faire « Démarrer mode VGA »
et s’ils sont dans la restauration il faut la désactiver, explications là
http://www.libellules.ch/desactiver_restauration.php
faire Démarrer/panneauConfiguration/Système et là tu as onglet Restauration

2. tu charges Sysclean Package là:
http://fr.trendmicro-europe.com/enterprise/support/tsc.php
et le fichier dernière version signatures virus « LTPxxx.ZIP » (xxx représente les chiffres indiquant la version ) là
http://fr.trendmicro-europe.com/enterprise/support/pattern.php
tu décomprimes le ltpxxx.zip et place le fichier ltp$vpn.xxx dans le même répertoire que Sysclean

3. redémarre mode sans échec et lance SYSCLEAN
tu lance le scan en cliquant sur sysclean.com et il est créé un fichier sysclean.log dans ce répertoire ;

4. tu vas à
C:\Program Files\Softwin\BitDefender Free Edition\Infected\
et tu déplace le répertoire INFECTED dans corbeille
tu vides la corbeille
tu recrée un répertoire Infected là où il était dans bitdefender
a+
0
SALUT

Qu'est ce que c'est que ces fichiers virusés, je viens de charger sysclean et avast m'a détecté un virus a l'ouverture grrrrrr.... VBS Redlof (mis en quarantaine)
sympa....... pfffffff

log rav:
Scan started at 02/01/2005 11:43:56

Scanning memory...
Scanning boot sectors...
Scanning files...
C:\Documents and Settings\Propriétaire\Application Data\Thunderbird\Profiles\johovs0w.default\Mail\Local Folders\Éléments supprimés->(part0029:misc.zip)->misc.rtf.exe - Win32/Netsky.B@mm -> Infected
C:\Documents and Settings\Propriétaire\Application Data\Thunderbird\Profiles\johovs0w.default\Mail\Local Folders\Éléments supprimés->(part0031:bill.zip)->bill.scr - Win32/Netsky.B@mm -> Infected
C:\Documents and Settings\Propriétaire\Application Data\Thunderbird\Profiles\johovs0w.default\Mail\Local Folders\Éléments supprimés->(part0104:mails.rtf.com) - Win32/Netsky.B@mm -> Infected
C:\Documents and Settings\Propriétaire\Application Data\Thunderbird\Profiles\q9srg0pt.default\Mail\Local Folders\Éléments supprimés->(part0029:misc.zip)->misc.rtf.exe - Win32/Netsky.B@mm -> Infected
C:\Documents and Settings\Propriétaire\Application Data\Thunderbird\Profiles\q9srg0pt.default\Mail\Local Folders\Éléments supprimés->(part0031:bill.zip)->bill.scr - Win32/Netsky.B@mm -> Infected
C:\Documents and Settings\Propriétaire\Application Data\Thunderbird\Profiles\q9srg0pt.default\Mail\Local Folders\Éléments supprimés->(part0104:mails.rtf.com) - Win32/Netsky.B@mm -> Infected
C:\Documents and Settings\Propriétaire\Application Data\Thunderbird\Profiles\syio5mkx.default\Mail\Local Folders\Éléments supprimés->(part0029:misc.zip)->misc.rtf.exe - Win32/Netsky.B@mm -> Infected
C:\Documents and Settings\Propriétaire\Application Data\Thunderbird\Profiles\syio5mkx.default\Mail\Local Folders\Éléments supprimés->(part0031:bill.zip)->bill.scr - Win32/Netsky.B@mm -> Infected
C:\Documents and Settings\Propriétaire\Application Data\Thunderbird\Profiles\syio5mkx.default\Mail\Local Folders\Éléments supprimés->(part0104:mails.rtf.com) - Win32/Netsky.B@mm -> Infected
C:\RECYCLER\S-1-5-21-2992346770-107511503-1556744348-1003\Dc5.zip->Matrix.class - TrojanDownloader:Java/OpenStream.C -> Infected

Scanned
============================
Objects: 58691
Directories: 5002
Archives: 12804
Size(Kb): -1518767
Infected files: 10

Found
============================
Viruses found: 2
Suspicious files: 0
Disinfected files: 0
Mail files: 446



rav les supprime mais reviennent aussitot

je viens de tout nettoyer, temp. cookies, désactivé la restauration, redemmarré mais ça reste....
merci de votre soutien
0