Cheval de troie impossible a supprimer

Medmed -  
crapoulou Messages postés 42848 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   -
Bonjour,Bonjour, je ne sais pas si c'est le bon forum mais je n'ai rien trouver d'autre

Voila mon probleme :

J'ai un virus cheval de troie du nom de Generique.PUP et je ne sais pas comment le supprimer mon enti virus n'arrive pas a le supprimer et ce programme lance des petit cheval de troie que mon anti virus arrive a supprimer ou a mettre en quarantaines est ce qu'on peux m'aider a supprimer ce virus ? surtout que mon anti virus est payant et que si il expire trop tot je risque de foutre en l'air mon ordi avec ce satané virus :s merci d'avance pour vos reponse j'éspaire avoir était assez clair !

JE SUIS SOUS WINDOWS VISTA !
A voir également:

23 réponses

Medmed
 
Oui j'ai fait malbwere voici le rapport log :
juste javais pas mal de virus d'ont plusieur trojan ( dada de 3 ) qu'il a supprimer certain sont impossible a supprimer il a dit le faire au redemarage il a redemarer l'ordi seul quand j'ai autoriser donc je pense que c'est bon .

Malwarebytes' Anti-Malware 1.37
Version de la base de données: 2182
Windows 6.0.6001 Service Pack 1

06/06/2009 16:13:33
mbam-log-2009-06-06 (16-13-33).txt

Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 242522
Temps écoulé: 2 hour(s), 17 minute(s), 48 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 2
Clé(s) du Registre infectée(s): 36
Valeur(s) du Registre infectée(s): 5
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 2
Fichier(s) infecté(s): 33

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
C:\Program Files\IEToolbar\ECO Bar\ecobar.dll (Adware.IEtoolbar) -> Delete on reboot.
C:\Program Files\IEToolbar\ECO Bar\tbhelper.dll (Adware.BHO) -> Delete on reboot.

Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\TypeLib\{2ee92bca-74c4-4d4b-88da-db9f9e3c9f93} (Adware.IEtoolbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{255c13ae-4bb0-45c3-bae1-ba6c088c43b3} (Adware.IEtoolbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{8fbb0d9a-1f7b-465b-8292-1593b880e92a} (Adware.IEtoolbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{10000000-1000-1000-1000-100000000000} (Adware.IEtoolbar) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{10000000-1000-1000-1000-100000000000} (Adware.IEtoolbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{6714adbd-c6c1-42a8-bd84-9c9339059421} (Adware.IEtoolbar) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6714adbd-c6c1-42a8-bd84-9c9339059421} (Adware.IEtoolbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6714adbd-c6c1-42a8-bd84-9c9339059421} (Adware.IEtoolbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\tbsb09835.ietoolbar (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{876dc38b-e22b-414a-a383-c6d291378b09} (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2dbb8f9a-f57b-445b-8232-15ebb895e9e9} (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{d35c0bae-cdb0-4ac3-ba98-baad087d433c} (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e67d5bc7-7129-493e-9281-f47bdaface4f} (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{57cadc46-58ff-4105-b733-5a9f3fc9783c} (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{6226ba26-c017-4007-928c-de9715c6fa67} (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6226ba26-c017-4007-928c-de9715c6fa67} (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\tbsb09835.ietoolbar.1 (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\tbsb09835.tbsb09835 (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\tbsb09835.tbsb09835.3 (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{d97fc677-694d-4a75-ac89-a5b85c2bcfed} (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d97fc677-694d-4a75-ac89-a5b85c2bcfed} (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{4509d3cc-b642-4745-b030-645b79522c6d} (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{4897bba6-48d9-468c-8efa-846275d7701b} (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{ca3eb689-8f09-4026-aa10-b9534c691ce0} (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\5872deaa-cc78-47da-60d7-4daca51d2225 (Adware.Adrotator) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\lvhzhfywcrbhkxezz (Adware.AdRotator) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\runit (Adware.Trace) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\tbsb05288.ietoolbar (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\tbsb05288.ietoolbar.1 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\tbsb05288.tbsb05288 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\tbsb05288.tbsb05288.3 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\urlsearchhook.toolbarurlsearchhook (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\urlsearchhook.toolbarurlsearchhook.1 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\runit (Adware.Trace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d14d50d3-d990-c5df-ed9a-ad1f344f60e4} (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{d14d50d3-d990-c5df-ed9a-ad1f344f60e4} (Adware.BHO) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{10000000-1000-1000-1000-100000000000} (Adware.IEtoolbar) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{10000000-1000-1000-1000-100000000000} (Adware.IEtoolbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{6226ba26-c017-4007-928c-de9715c6fa67} (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\kggeczqlqm (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\GroupManager (Backdoor.Bot) -> Quarantined and deleted successfully.

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
C:\Program Files\runit (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Program Files\IEToolbar\Bullseye Tool Bar (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
C:\Program Files\IEToolbar\ECO Bar\ecobar.dll (Adware.IEtoolbar) -> Delete on reboot.
C:\Program Files\IEToolbar\ECO Bar\tbhelper.dll (Adware.BHO) -> Delete on reboot.
C:\Program Files\IEToolbar\Bullseye Tool Bar\lw.dll (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
c:\program files\runit\runit_32.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\program files\ietoolbar\bullseye tool bar\tbhelper.dll (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
c:\Windows\bqrd60258.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\Windows\feoam2471.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\Windows\geck7267.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\Windows\hqfi71418.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\Windows\jrqcm1023.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\Windows\lids88065.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\Windows\wgfp4324.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\Windows\wnrr74340.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\Windows\System32\5872deaa-cc78-47da-60d7-4daca51d2225.exe (Adware.Adrotator) -> Quarantined and deleted successfully.
c:\Windows\System32\lvhzhfywcrbhkxezz.exe (Adware.AdRotator) -> Quarantined and deleted successfully.
c:\program files\runit\config.txt (Trojan.Agent) -> Quarantined and deleted successfully.
c:\program files\runit\runitu_32.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\program files\ietoolbar\bullseye tool bar\basis.xml (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
c:\program files\ietoolbar\bullseye tool bar\date2.html (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
c:\program files\ietoolbar\bullseye tool bar\icons.bmp (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
c:\program files\ietoolbar\bullseye tool bar\info.txt (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
c:\program files\ietoolbar\bullseye tool bar\lw.crc (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
c:\program files\ietoolbar\bullseye tool bar\lwpopper.html (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
c:\program files\ietoolbar\bullseye tool bar\popper3.html (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
c:\program files\ietoolbar\bullseye tool bar\popup1.html (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
c:\program files\ietoolbar\bullseye tool bar\popup2.html (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
c:\program files\ietoolbar\bullseye tool bar\uninstall.exe (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
c:\program files\ietoolbar\bullseye tool bar\version.txt (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
c:\program files\ietoolbar\bullseye tool bar\your_logo.png (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\components\5faa261d-b532-7e34-cd7b-ef1ec9e3cf2b.dll (Adware.Yoog) -> Quarantined and deleted successfully.
c:\Users\Mehdi\AppData\Roaming\microsoft\Windows\start menu\Programs\Startup\runit_32.lnk (Rogue.Link) -> Quarantined and deleted successfully.
C:\Windows\System32\vtbgnivpqzwfpuw.dll (Trojan.Agent) -> Delete on reboot.
C:\Program Files\Crack Installer\groupmanager.exe (Backdoor.Bot) -> Delete on reboot.
0
Utilisateur anonyme
 
Re

Ok ; impeccable

1)vide la quarantaine de Malwaresbytes

2)Lance un scan complet avec ton antivirus

merci de poster le rapport

@+
0
Medmed
 
Je lance avec le mabawere ou le mien ? McAfee SecurityCenter ?
0
Utilisateur anonyme
 
Re

Ton antivirus:McAfee

@+
0
Alexandte Messages postés 282 Statut Membre 31
 
Bonjour,
Je me joins à cette discussion !J'ai un antivirus nommé Avira et j'ai souvent ce virus cheal de troie qui revient j'ai beau faire refuser l'accès mais il revient toujours ! ( essaye de pénétrer 3 fois / jour ! au moins):-s
Merci de me répondre rapidement !
Alexandre
0
crapoulou Messages postés 42848 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   8 017
 
Salut Alexandte,
Merci de créer ton propre message sur le forum Virus / Sécurité :
http://www.commentcamarche.net/forum/forum 7 virus securite#ecrire
A+.
Crapoulou.
0