mon ordi portable bug pas mal
Messages postés
Date d'inscription
lundi 23 février 2009
Dernière intervention
9 mars 2023
21 juin 2009 à 15:46
Utilisateur anonyme - 21 juin 2009 à 18:39
Utilisateur anonyme - 21 juin 2009 à 18:39
A voir également:
- mon ordi portable bug pas mal
- Mon ordi rame que faire - Guide
- Bug yahoo mail - Accueil - Mail
- Comment reinitialiser un ordi - Guide
- Ordi scrabble - Télécharger - Jeux vidéo
- Installer calculatrice sur mon portable - Télécharger - Calcul & Conversion
3 réponses
Utilisateur anonyme
21 juin 2009 à 16:00
21 juin 2009 à 16:00
• Bonjour
• Télécharge et installe Malwarebytes' Anti-Malware
• (NB : S'il te manque"COMCTL32.OCX" lors de l'installe, alors télécharge le ici :
• A la fin de l'installation, veille à ce que l'option « mettre a jour Malwarebyte's Anti-Malware » soit cochée
• Lance MBAM et laisse les Mises à jour se télécharger (sinon fais les manuellement au lancement du programme)
• Puis va dans l'onglet "Recherche", coche "Exécuter un examen complet" puis "Rechercher"
• Sélectionne tes disques durs" puis clique sur "Lancer l’examen"
• A la fin du scan, clique sur Afficher les résultats
• Coche tous les éléments détectés puis clique sur Supprimer la sélection
• Enregistre le rapport
• S'il t'est demandé de redémarrer, clique sur Yes
• Poste le rapport de scan après la suppression ici
• Si tu as besoin d’aide regarde ce tutorial
• Télécharge et installe Malwarebytes' Anti-Malware
• (NB : S'il te manque"COMCTL32.OCX" lors de l'installe, alors télécharge le ici :
• A la fin de l'installation, veille à ce que l'option « mettre a jour Malwarebyte's Anti-Malware » soit cochée
• Lance MBAM et laisse les Mises à jour se télécharger (sinon fais les manuellement au lancement du programme)
• Puis va dans l'onglet "Recherche", coche "Exécuter un examen complet" puis "Rechercher"
• Sélectionne tes disques durs" puis clique sur "Lancer l’examen"
• A la fin du scan, clique sur Afficher les résultats
• Coche tous les éléments détectés puis clique sur Supprimer la sélection
• Enregistre le rapport
• S'il t'est demandé de redémarrer, clique sur Yes
• Poste le rapport de scan après la suppression ici
• Si tu as besoin d’aide regarde ce tutorial
Messages postés
Date d'inscription
lundi 23 février 2009
Dernière intervention
9 mars 2023
21 juin 2009 à 18:27
21 juin 2009 à 18:27
voila le rapport de scan:
Malwarebytes' Anti-Malware 1.38
Version de la base de données: 2318
Windows 5.1.2600 Service Pack 2
21/06/2009 18:14:40
mbam-log-2009-06-21 (18-14-40).txt
Type de recherche: Examen complet (C:\|)
Eléments examinés: 273516
Temps écoulé: 1 hour(s), 49 minute(s), 51 second(s)
Processus mémoire infecté(s): 6
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 6
Valeur(s) du Registre infectée(s): 2
Elément(s) de données du Registre infecté(s): 1
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 36
Processus mémoire infecté(s):
C:\WINDOWS\system\mrsvss.exe (Backdoor.SdBot) -> Unloaded process successfully.
C:\WINDOWS\system\mrsvss.exe (Backdoor.SdBot) -> Unloaded process successfully.
C:\WINDOWS\smngr.exe (Backdoor.SdBot) -> Unloaded process successfully.
C:\l.exe (Trojan.Agent) -> Unloaded process successfully.
C:\WINDOWS\winsvc32.exe (Backdoor.Bot) -> Unloaded process successfully.
C:\WINDOWS\system32\system.exe (Spyware.OnlineGames) -> Unloaded process successfully.
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mrsvss service (Backdoor.SdBot) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\mrsvss service (Backdoor.SdBot) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mrsvss service (Backdoor.SdBot) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sysdrv32 (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sysdrv32 (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sysdrv32 (Backdoor.Bot) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Windows Data Serivce (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mozillacorp (Spyware.OnlineGames) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Spyware.OnlineGames) -> Data: c:\windows\system32\system.exe -> Quarantined and deleted successfully.
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
C:\WINDOWS\system\mrsvss.exe (Backdoor.SdBot) -> Delete on reboot.
C:\WINDOWS\smngr.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\loc.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\documents and settings\ap\local settings\temporary internet files\Content.IE5\OB5CEN8A\install.48208[1].exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\documents and settings\ap\local settings\temporary internet files\Content.IE5\WUVAD5HB\loc[1].exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\documents and settings\poste26\222540.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\documents and settings\poste26\250060.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\documents and settings\poste26\local settings\temporary internet files\Content.IE5\LD9HO5XW\loc[1].exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\documents and settings\localservice\local settings\temporary internet files\Content.IE5\YHIAKLVE\l[1].exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\documents and settings\xc\208478.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\documents and settings\xc\741760.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\documents and settings\xc\local settings\temporary internet files\Content.IE5\K5M3KX2J\loc[1].exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\documents and settings\xc\local settings\temporary internet files\Content.IE5\S5A30TQ3\nes[1].exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP453\A0098605.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP453\A0099809.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP453\A0099813.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP453\A0099814.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP453\A0099815.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP453\A0099817.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP453\A0099818.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP453\A0099816.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP455\A0107234.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP455\A0107306.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP455\A0107307.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP455\A0107308.sys (Backdoor.Bot) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP455\A0111379.sys (Backdoor.Bot) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP456\A0114383.sys (Backdoor.Bot) -> Quarantined and deleted successfully.
c:\WINDOWS\no6.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\WINDOWS\CSC\d4\8000B2AB (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\Ms06.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\no6.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\drivers\sysdrv32.sys (Backdoor.Bot) -> Quarantined and deleted successfully.
c:\l.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\winsvc32.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\system.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\winamp.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
Malwarebytes' Anti-Malware 1.38
Version de la base de données: 2318
Windows 5.1.2600 Service Pack 2
21/06/2009 18:14:40
mbam-log-2009-06-21 (18-14-40).txt
Type de recherche: Examen complet (C:\|)
Eléments examinés: 273516
Temps écoulé: 1 hour(s), 49 minute(s), 51 second(s)
Processus mémoire infecté(s): 6
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 6
Valeur(s) du Registre infectée(s): 2
Elément(s) de données du Registre infecté(s): 1
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 36
Processus mémoire infecté(s):
C:\WINDOWS\system\mrsvss.exe (Backdoor.SdBot) -> Unloaded process successfully.
C:\WINDOWS\system\mrsvss.exe (Backdoor.SdBot) -> Unloaded process successfully.
C:\WINDOWS\smngr.exe (Backdoor.SdBot) -> Unloaded process successfully.
C:\l.exe (Trojan.Agent) -> Unloaded process successfully.
C:\WINDOWS\winsvc32.exe (Backdoor.Bot) -> Unloaded process successfully.
C:\WINDOWS\system32\system.exe (Spyware.OnlineGames) -> Unloaded process successfully.
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mrsvss service (Backdoor.SdBot) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\mrsvss service (Backdoor.SdBot) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mrsvss service (Backdoor.SdBot) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sysdrv32 (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sysdrv32 (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sysdrv32 (Backdoor.Bot) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Windows Data Serivce (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mozillacorp (Spyware.OnlineGames) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Spyware.OnlineGames) -> Data: c:\windows\system32\system.exe -> Quarantined and deleted successfully.
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
C:\WINDOWS\system\mrsvss.exe (Backdoor.SdBot) -> Delete on reboot.
C:\WINDOWS\smngr.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\loc.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\documents and settings\ap\local settings\temporary internet files\Content.IE5\OB5CEN8A\install.48208[1].exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\documents and settings\ap\local settings\temporary internet files\Content.IE5\WUVAD5HB\loc[1].exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\documents and settings\poste26\222540.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\documents and settings\poste26\250060.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\documents and settings\poste26\local settings\temporary internet files\Content.IE5\LD9HO5XW\loc[1].exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\documents and settings\localservice\local settings\temporary internet files\Content.IE5\YHIAKLVE\l[1].exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\documents and settings\xc\208478.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\documents and settings\xc\741760.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\documents and settings\xc\local settings\temporary internet files\Content.IE5\K5M3KX2J\loc[1].exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\documents and settings\xc\local settings\temporary internet files\Content.IE5\S5A30TQ3\nes[1].exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP453\A0098605.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP453\A0099809.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP453\A0099813.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP453\A0099814.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP453\A0099815.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP453\A0099817.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP453\A0099818.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP453\A0099816.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP455\A0107234.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP455\A0107306.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP455\A0107307.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP455\A0107308.sys (Backdoor.Bot) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP455\A0111379.sys (Backdoor.Bot) -> Quarantined and deleted successfully.
c:\system volume information\_restore{53aa0f30-77c8-43ed-a1a7-49e68d32e3db}\RP456\A0114383.sys (Backdoor.Bot) -> Quarantined and deleted successfully.
c:\WINDOWS\no6.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\WINDOWS\CSC\d4\8000B2AB (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\Ms06.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\no6.exe (Backdoor.SdBot) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\drivers\sysdrv32.sys (Backdoor.Bot) -> Quarantined and deleted successfully.
c:\l.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\winsvc32.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\system.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\winamp.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
Utilisateur anonyme
21 juin 2009 à 18:39
21 juin 2009 à 18:39
C:\WINDOWS\system\mrsvss.exe (Backdoor.SdBot) -> Delete on reboot
Tu éteint ton pc et tu le redémarres.(important)
• Télécharge :
/!\ Important (Sous Vista) /!\
Vous devez exécuter RSIT avec les droits d'administrateur, pour cela Clique droit sur RSIT et "Lancer en tant qu'administrateur"
• Double clique sur RSIT.exe pour lancer l'outil.
• Clique sur 'Continue' à l'écran Disclaimer.
• Si l'outil Hijackthis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera et tu devras accepter la licence.
• Une fois le scan fini , 2 rapports vont apparaitre. Poste le contenu des 2 rapports.
( C:\RSIT\log.txt et C:\RSIT\info.txt )
• CTRL A pour sélectionner tout, CTRL C pour copier et puis CTRL V pour coller
• tuto: :
Tu éteint ton pc et tu le redémarres.(important)
• Télécharge :
/!\ Important (Sous Vista) /!\
Vous devez exécuter RSIT avec les droits d'administrateur, pour cela Clique droit sur RSIT et "Lancer en tant qu'administrateur"
• Double clique sur RSIT.exe pour lancer l'outil.
• Clique sur 'Continue' à l'écran Disclaimer.
• Si l'outil Hijackthis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera et tu devras accepter la licence.
• Une fois le scan fini , 2 rapports vont apparaitre. Poste le contenu des 2 rapports.
( C:\RSIT\log.txt et C:\RSIT\info.txt )
• CTRL A pour sélectionner tout, CTRL C pour copier et puis CTRL V pour coller
• tuto: :