Virus vp2.8866.org/hf/x/y.js

Bonjour,
Bonsoir,

En recherchant une musique de publicité
Avast 4.8 y a détecté ce virus :

vp2.8866.org/hf/x/y.js

Comment vérifier s'il est bien supprimé??
Où est-il ?? Que fait-il ??
Merci d'avance !<code>Configuration: Windows Vista Internet Explorer

7 réponses

  1. Hello ;-)

    Tu possède 2 Antivirus :

    C'est pas bon ...

    Pour rappel : un seul antivirus et un seul antispyware par ordinateur

    Cela ne te protège pas forcement mieux mais ce qui est certains c'est que ça te ralenti l'ordinateur voir peu occasionner des plantages, plus d'infos :

    https://forum.malekal.com/viewtopic.php?t=4650&start=

    ► Symantec, Norton
    ► Avast

    Désinstalle Norton proprement :
    http://service1.symantec.com/SUPPORT/INTER/tsgeninfointl.nsf/fr_docid/20050414110429924

    ======================================

    Hijackthis nous a rien montré ...

    Fait ceci pour un scan un peu plus clair :

    ◆ Télécharge sur ton bureaux RSIT ( Random's Systeme Information Tools ) :

    >> http://images.malwareremoval.com/random/RSIT.exe

    ◆ Double clique sur RSIT.exe qui se trouve sur ton bureau pour le lancer
    ◆ Une fenêtre intitulé " Disclaimer of Warranty " s'ouvre clique sur continue

    Le rapport commence ...

    # Les rapports ce trouvent à cet endroit : C:\rsit\info.txt C:\rsit\log.txt ...

    /l\ NE LES POSTES PAS SUR LE FORUM /l\

    Rend toi à cette adresse :

    http://www.cijoint.fr

    Héberge les et envoie moi les liens ..
    1
    1. Hello

      --> Est tu infecté par ce Virus ?

      0
      1. Bonsoir
        Ne sachant pas comment agir,je n'ai rien fait, mis à part Ccleaner; j'ai fermé certaines pages d'IE.
        C'est tout!
        0
        1. >> Télécharge Hijackthis

          .•´¯`•-> Hijackthis <-•´¯`•.

          ● Installe le sur ton bureaux

          ● Clique sur l'icône Hijackthis qui se trouve sur ton bureaux

          ● L'option à choisir est "Do a system scan and save a logfile"

          ● Un fichier texte s'ouvre ...

          ● Copie son intégralité et envoie le dans ta prochaine réponse

          ¯¥¯ Tuto ¯¥¯
          0
          1. Bonjour
            Voici le rapport:

            Logfile of Trend Micro HijackThis v2.0.2
            Scan saved at 11:11:17, on 12/10/2009
            Platform: Windows Vista SP2 (WinNT 6.00.1906)
            MSIE: Internet Explorer v8.00 (8.00.6001.18813)
            Boot mode: Normal

            Running processes:
            C:\Windows\system32\Dwm.exe
            C:\Windows\Explorer.EXE
            C:\Program Files\Windows Defender\MSASCui.exe
            C:\Windows\RtHDVCpl.exe
            C:\Acer\Empowering Technology\SysMonitor.exe
            C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
            C:\Program Files\Acer Arcade Live\Acer PlayMovie\PMVService.exe
            C:\Windows\vVX3000.exe
            C:\Program Files\Alwil Software\Avast4\ashDisp.exe
            C:\Program Files\Windows Media Player\wmpnscfg.exe
            C:\Windows\ehome\ehtray.exe
            C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSharing.exe
            C:\Windows\system32\taskeng.exe
            C:\Windows\ehome\ehmsas.exe
            C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
            C:\Acer\Empowering Technology\ACER.EMPOWERING.FRAMEWORK.SUPERVISOR.EXE
            C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE
            C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
            C:\Windows\system32\wbem\unsecapp.exe
            C:\Windows\System32\OptionalFeatures.exe
            C:\Program Files\Mozilla Firefox\firefox.exe
            C:\Windows\system32\SearchFilterHost.exe
            C:\Program Files\HijackThis.exe

            R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
            R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
            R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
            O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
            O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
            O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
            O2 - BHO: Winamp Toolbar Loader - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files\Winamp Toolbar\winamptb.dll
            O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
            O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll
            O2 - BHO: NitroPDFBHO Class - {CF070CB8-F02F-4af4-A7B7-8D45CAD4BB54} - (no file)
            O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\system32\eDStoolbar.dll
            O3 - Toolbar: Winamp Toolbar - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll
            O3 - Toolbar: (no name) - {D554D8FC-B36D-4BB4-93DB-4A3394D505E3} - (no file)
            O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
            O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
            O4 - HKLM\..\Run: [Acer Empowering Technology Monitor] C:\Acer\Empowering Technology\SysMonitor.exe
            O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
            O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
            O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files\Acer Arcade Live\Acer PlayMovie\PMVService.exe"
            O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
            O4 - HKLM\..\Run: [VX3000] C:\Windows\vVX3000.exe
            O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
            O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
            O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
            O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
            O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
            O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
            O4 - Global Startup: Empowering Technology Launcher.lnk = ?
            O4 - Global Startup: PCM Media Sharing.lnk = C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSharing.exe
            O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
            O9 - Extra button: PDF Download - {F1C0FD6C-A6A0-49a7-A932-71A56461867F} - c:\Program Files\Nitro PDF\PDF Download\NitroPDF.dll (HKCU)
            O15 - Trusted Zone: https://www.orange.fr/portail
            O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
            O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
            O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
            O23 - Service: ePerformance Service (AcerMemUsageCheckService) - Unknown owner - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
            O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
            O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
            O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
            O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
            O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
            O23 - Service: eDSService.exe (eDataSecurity Service) - HiTRSUT - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe
            O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
            O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
            O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
            O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
            O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
            0
            1. Bonsoir,ou bonjour
              RAS aujourd'hui
              Je suivrai tes conseils demain.
              Surtout pour faire la différence entre anti-virus et autres.
              Merci beaucoup, et à +
              0
              1. Sa avance ?

                Par ce que sa ce fait pas de disparaitre d'un coup sans rien dire ...
                0