Ativirus system PRO

Résolu
Parishilton -  
jlpjlp Messages postés 52399 Statut Contributeur sécurité -
Bonjour tout l monde
..probleme.. sur mon ordi est venu tout seul le (faux) antivirus Antivirus System PRO..y me bloque pas mal de choses et me signale des fausses infections.. je pete un cable.. quand j' ouvre regedit ou la restauration systeme, y me met un message comme quoi the file machinblablabla est infected etc .. ça fait que je peux quasiement rien ouvrir.. j ai regardé pas mal de tuto pour enlever ce truc mais j' arrive a aucun.. toutes les 2 scondes j ai des alertes de partout qui me dit qu un fichier est infecté c chiiiaaannt!!
JE sous => VISTA <=
j ai vraiment besoin d aide svpp..
A voir également:

28 réponses

jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 040
 
ok fais le reste

a plus
0
jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 040
 
tu utilise orbitdowloader?

si non utilisé:


tu télécharge Lop S&D.exe sur ton Bureau.https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2

* Double-clique dessus pour lancer l'installation
* Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau
* Séléctionne la langue souhaitée , puis choisis l'option 1 (Recherche)
* Patiente jusqu'à la fin du scan
* Poste le rapport généré (C:\lopR.txt)
0
Parishilton
 
nan orbitdownloader ne me dit rien


--------------------\\ Lop S&D 4.2.5-0 XP/Vista

Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6002 ) Service Pack 2
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Quad CPU Q6600 @ 2.40GHz )
BIOS : Default System BIOS
USER : The Lynx ( Administrator )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total:220 Go (Free:111 Go)
D:\ (CD or DVD)
E:\ (USB)
F:\ (USB)
G:\ (USB)
H:\ (USB)

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 25/11/2009|15:14 )

[ UAC => 0 ]

--------------------\\ Listing des dossiers dans Local

[19/06/2009|15:08] C:\Users\THELYN~1\AppData\Local\AA2DeployClient
[17/10/2009|09:05] C:\Users\THELYN~1\AppData\Local\Adobe
[28/03/2009|15:25] C:\Users\THELYN~1\AppData\Local\Apple
[03/11/2009|10:33] C:\Users\THELYN~1\AppData\Local\Apple Computer
[30/01/2009|14:29] C:\Users\THELYN~1\AppData\Local\Application Data
[25/11/2009|12:56] C:\Users\THELYN~1\AppData\Local\Apps
[27/07/2009|17:26] C:\Users\THELYN~1\AppData\Local\AquaMark3
[26/08/2009|20:42] C:\Users\THELYN~1\AppData\Local\ArmA 2 Demo
[24/11/2009|12:36] C:\Users\THELYN~1\AppData\Local\d3d9caps.dat
[15/10/2009|13:38] C:\Users\THELYN~1\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[15/08/2009|15:16] C:\Users\THELYN~1\AppData\Local\Deployment
[30/07/2009|13:42] C:\Users\THELYN~1\AppData\Local\DNA
[09/04/2009|23:55] C:\Users\THELYN~1\AppData\Local\DonationCoder_ScreenshotCaptor_InstallInfo.dat
[22/05/2009|10:24] C:\Users\THELYN~1\AppData\Local\Downloaded Installations
[30/07/2009|15:13] C:\Users\THELYN~1\AppData\Local\GamersFirst LIVE!
[29/09/2009|19:43] C:\Users\THELYN~1\AppData\Local\GDIPFONTCACHEV1.DAT
[17/07/2009|20:19] C:\Users\THELYN~1\AppData\Local\Google
[30/01/2009|14:29] C:\Users\THELYN~1\AppData\Local\Historique
[25/11/2009|13:21] C:\Users\THELYN~1\AppData\Local\IconCache.db
[30/08/2009|22:08] C:\Users\THELYN~1\AppData\Local\iZ3DStereoWallpaperCreato
[14/10/2009|17:31] C:\Users\THELYN~1\AppData\Local\Microsoft
[10/02/2009|10:10] C:\Users\THELYN~1\AppData\Local\Microsoft Games
[28/03/2009|20:32] C:\Users\THELYN~1\AppData\Local\Mozilla
[06/02/2009|20:58] C:\Users\THELYN~1\AppData\Local\Packard Bell
[22/05/2009|10:26] C:\Users\THELYN~1\AppData\Local\PC_Drivers_Headquarters
[17/06/2009|21:53] C:\Users\THELYN~1\AppData\Local\PunkBuster
[11/04/2009|18:47] C:\Users\THELYN~1\AppData\Local\Seven Zip
[25/11/2009|15:13] C:\Users\THELYN~1\AppData\Local\temp
[30/01/2009|14:29] C:\Users\THELYN~1\AppData\Local\Temporary Internet Files
[29/06/2009|17:57] C:\Users\THELYN~1\AppData\Local\Thunderbird
[06/02/2009|18:15] C:\Users\THELYN~1\AppData\Local\VirtualStore
[30/07/2009|15:22] C:\Users\THELYN~1\AppData\Local\WarRockDF
[01/09/2009|12:08] C:\Users\THELYN~1\AppData\Local\WeGame

--------------------\\ Tâches planifiées dans C:\Windows\tasks

[25/11/2009 15:09][--a--c---] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[25/11/2009 15:08][--a--c---] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[25/11/2009 15:09][--ah-c---] C:\Windows\tasks\User_Feed_Synchronization-{31390909-BCCA-4DB0-8E50-2920CFEF7A6E}.job
[25/11/2009 15:08][--ah-c---] C:\Windows\tasks\SA.DAT
[25/11/2009 13:22][--a------] C:\Windows\tasks\SCHEDLGU.TXT

--------------------\\ Listing des dossiers dans C:\ProgramData

[11/09/2009|14:48] C:\ProgramData\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[09/04/2009|22:00] C:\ProgramData\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[18/06/2009|18:41] C:\ProgramData\AA2DeployClient
[17/10/2009|15:58] C:\ProgramData\Adobe
[28/03/2009|15:24] C:\ProgramData\Apple
[02/11/2009|19:35] C:\ProgramData\Apple Computer
[02/11/2006|14:02] C:\ProgramData\Application Data
[07/05/2009|13:59] C:\ProgramData\Avira
[30/01/2009|14:16] C:\ProgramData\Bureau
[02/11/2006|14:02] C:\ProgramData\Desktop
[02/11/2006|14:02] C:\ProgramData\Documents
[11/04/2009|12:52] C:\ProgramData\EmailNotifier
[01/06/2009|14:38] C:\ProgramData\EPSON
[10/04/2009|16:03] C:\ProgramData\ezsid.dat
[30/01/2009|14:16] C:\ProgramData\Favoris
[02/11/2006|14:02] C:\ProgramData\Favorites
[06/02/2009|20:56] C:\ProgramData\FLEXnet
[13/06/2009|12:06] C:\ProgramData\Google
[10/04/2009|16:57] C:\ProgramData\IJJIGame
[01/09/2009|17:46] C:\ProgramData\iZ3D Driver
[01/10/2009|11:34] C:\ProgramData\ma-config.com
[06/09/2009|11:56] C:\ProgramData\Media Center Programs
[12/04/2009|13:47] C:\ProgramData\Megaupload
[30/01/2009|14:16] C:\ProgramData\Menu D‚marrer
[04/05/2009|09:26] C:\ProgramData\Microsoft
[11/04/2009|18:56] C:\ProgramData\Microsoft Help
[30/01/2009|14:16] C:\ProgramData\ModŠles
[31/07/2009|13:06] C:\ProgramData\NexonEU
[31/07/2009|11:57] C:\ProgramData\NexonUS
[25/11/2009|15:08] C:\ProgramData\NVIDIA
[25/11/2009|15:08] C:\ProgramData\nvModes.001
[25/11/2009|15:08] C:\ProgramData\nvModes.dat
[22/05/2009|10:25] C:\ProgramData\PC Drivers HeadQuarters
[23/11/2009|16:27] C:\ProgramData\PC Tools
[10/04/2009|16:59] C:\ProgramData\Pinnacle
[04/07/2009|18:09] C:\ProgramData\r2 Studios
[29/08/2009|17:04] C:\ProgramData\Real
[29/05/2009|10:37] C:\ProgramData\Skype
[02/11/2006|14:02] C:\ProgramData\Start Menu
[06/02/2009|20:32] C:\ProgramData\Symantec
[23/11/2009|16:35] C:\ProgramData\TEMP
[02/11/2006|14:02] C:\ProgramData\Templates
[24/11/2009|20:29] C:\ProgramData\TmForever
[08/02/2009|11:49] C:\ProgramData\UDL
[22/05/2009|11:01] C:\ProgramData\WindowsSearch
[25/11/2009|08:41] C:\ProgramData\Xfire

--------------------\\ Listing des dossiers dans C:\Program Files

[01/02/2009|14:33] C:\Program Files\3DO
[22/04/2009|11:38] C:\Program Files\Activision
[13/06/2009|12:04] C:\Program Files\Adobe
[24/11/2009|16:44] C:\Program Files\Ad-Remover
[17/11/2009|17:13] C:\Program Files\adslTV
[01/10/2009|11:42] C:\Program Files\AGEIA Technologies
[09/04/2009|11:04] C:\Program Files\Alwil Software
[11/04/2009|18:59] C:\Program Files\AoA Audio Extractor
[28/03/2009|15:25] C:\Program Files\Apple Software Update
[18/07/2009|19:40] C:\Program Files\AssaultCube_v1.0
[11/04/2009|10:08] C:\Program Files\Astrocycle3
[17/11/2009|17:10] C:\Program Files\Auslogics
[07/05/2009|13:59] C:\Program Files\Avira
[30/10/2009|12:03] C:\Program Files\AviSynth 2.5
[09/04/2009|21:59] C:\Program Files\Bonjour
[07/05/2009|14:07] C:\Program Files\CCleaner
[24/11/2009|16:42] C:\Program Files\Common Files
[22/11/2009|13:19] C:\Program Files\DivX
[01/08/2009|17:29] C:\Program Files\DNA
[08/02/2009|11:48] C:\Program Files\EPSON
[30/01/2009|14:16] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[04/05/2009|09:19] C:\Program Files\filehippo.com
[30/10/2009|11:45] C:\Program Files\Free Offers from Freeze.com
[27/07/2009|17:30] C:\Program Files\Futuremark
[10/04/2009|22:28] C:\Program Files\G4box
[30/07/2009|15:00] C:\Program Files\GamersFirst
[31/08/2009|20:55] C:\Program Files\GameSpy Arcade
[02/09/2009|13:03] C:\Program Files\GIMP-2.0
[14/10/2009|11:33] C:\Program Files\Google
[21/05/2008|10:53] C:\Program Files\HDReg
[06/09/2009|12:03] C:\Program Files\ImageConverter Plus
[31/08/2009|20:37] C:\Program Files\InstallShield Installation Information
[28/10/2009|13:54] C:\Program Files\Internet Explorer
[02/11/2009|19:35] C:\Program Files\iPod
[02/11/2009|19:36] C:\Program Files\iTunes
[29/08/2009|16:55] C:\Program Files\iZ3D Driver
[20/04/2009|16:23] C:\Program Files\Java
[19/11/2009|11:39] C:\Program Files\JkDefrag
[20/04/2009|16:24] C:\Program Files\JRE
[30/07/2009|13:19] C:\Program Files\Lavalys
[16/11/2009|17:29] C:\Program Files\LimeWire
[01/10/2009|11:34] C:\Program Files\ma-config.com
[03/06/2009|20:25] C:\Program Files\MarkAny
[19/09/2009|14:21] C:\Program Files\Microsoft
[02/11/2006|13:37] C:\Program Files\Microsoft Games
[11/04/2009|18:55] C:\Program Files\Microsoft Office
[11/04/2009|18:55] C:\Program Files\Microsoft Works
[14/10/2009|08:33] C:\Program Files\Motherboard Monitor 5
[27/10/2009|11:44] C:\Program Files\Movie Maker
[02/06/2009|16:16] C:\Program Files\Mozilla Firefox
[22/11/2009|13:17] C:\Program Files\Mozilla Firefox 3.5 Beta 4
[24/11/2009|16:18] C:\Program Files\Mozilla Firefox 3.6 Beta 1
[09/09/2009|17:50] C:\Program Files\Mozilla Thunderbird
[25/11/2009|15:08] C:\Program Files\Mozilla Thunderbird 3 Beta 2
[07/06/2009|11:26] C:\Program Files\mp3DirectCut
[05/06/2009|15:08] C:\Program Files\MP3Gain
[11/04/2009|18:55] C:\Program Files\MSBuild
[09/04/2009|14:20] C:\Program Files\MSXML 4.0
[06/09/2009|18:33] C:\Program Files\Nero
[21/05/2008|11:01] C:\Program Files\NeroInstall.bak
[04/11/2009|19:29] C:\Program Files\NVIDIA Corporation
[27/07/2009|17:34] C:\Program Files\OpenAL
[20/04/2009|16:24] C:\Program Files\OpenOffice.org 3
[09/09/2009|17:49] C:\Program Files\Packard Bell
[06/09/2009|12:04] C:\Program Files\Pando Networks
[22/05/2009|10:25] C:\Program Files\PC Drivers HeadQuarters
[04/07/2009|17:50] C:\Program Files\PS Smart Cleaner
[25/11/2009|12:50] C:\Program Files\QuickTime
[04/07/2009|18:09] C:\Program Files\r2 Studios
[17/06/2009|19:02] C:\Program Files\ramboost
[22/07/2009|15:25] C:\Program Files\Real
[01/10/2009|11:45] C:\Program Files\Realtek
[02/11/2006|13:37] C:\Program Files\Reference Assemblies
[04/07/2009|17:50] C:\Program Files\RegCleaner
[03/06/2009|20:25] C:\Program Files\Samsung
[23/09/2009|13:13] C:\Program Files\Sauerbraten
[09/04/2009|23:59] C:\Program Files\ScreenshotCaptor
[21/05/2008|10:54] C:\Program Files\Seagate
[31/08/2009|20:38] C:\Program Files\Sierra
[13/10/2009|19:38] C:\Program Files\Skype
[30/10/2009|11:34] C:\Program Files\Steam
[09/11/2009|15:42] C:\Program Files\SystemRequirementsLab
[25/04/2009|09:27] C:\Program Files\Teamspeak2_RC2
[12/10/2009|14:01] C:\Program Files\TmNationsForever
[31/07/2009|11:58] C:\Program Files\Tremulous
[24/11/2009|12:47] C:\Program Files\trend micro
[05/09/2009|22:16] C:\Program Files\Uniblue
[02/11/2006|14:01] C:\Program Files\Uninstall Information
[13/06/2009|11:51] C:\Program Files\UrbanTerror
[19/11/2009|11:39] C:\Program Files\uTorrent
[29/06/2009|17:28] C:\Program Files\Valve
[30/06/2009|20:05] C:\Program Files\Veoh Networks
[04/06/2009|21:19] C:\Program Files\VideoLAN
[09/09/2009|17:49] C:\Program Files\Winamp
[27/10/2009|11:44] C:\Program Files\Windows Calendar
[27/10/2009|11:44] C:\Program Files\Windows Collaboration
[27/10/2009|11:44] C:\Program Files\Windows Defender
[27/10/2009|11:44] C:\Program Files\Windows Journal
[09/04/2009|11:08] C:\Program Files\Windows Live
[09/04/2009|11:08] C:\Program Files\Windows Live SkyDrive
[11/11/2009|10:55] C:\Program Files\Windows Mail
[28/10/2009|13:54] C:\Program Files\Windows Media Player
[30/01/2009|14:16] C:\Program Files\Windows NT
[27/10/2009|11:44] C:\Program Files\Windows Photo Gallery
[17/11/2009|20:56] C:\Program Files\Windows Portable Devices
[27/10/2009|11:44] C:\Program Files\Windows Sidebar
[24/11/2009|19:40] C:\Program Files\Xfire
[04/06/2009|19:26] C:\Program Files\Yahoo!
[28/09/2009|11:04] C:\Program Files\Zanag
[17/11/2009|20:36] C:\Program Files\Zone Dactylo

--------------------\\ Listing des dossiers dans C:\Program Files\Common Files

[17/10/2009|09:04] C:\Program Files\Common Files\Adobe
[02/11/2009|19:35] C:\Program Files\Common Files\Apple
[11/04/2009|10:08] C:\Program Files\Common Files\Borland Shared
[30/10/2009|12:00] C:\Program Files\Common Files\DivX Shared
[24/11/2009|16:45] C:\Program Files\Common Files\DVDVideoSoft
[09/04/2009|22:47] C:\Program Files\Common Files\Futuremark Shared
[10/04/2009|18:40] C:\Program Files\Common Files\INCA Shared
[10/04/2009|10:27] C:\Program Files\Common Files\InstallShield
[20/04/2009|16:22] C:\Program Files\Common Files\Java
[21/05/2008|10:58] C:\Program Files\Common Files\Macrovision Shared
[19/09/2009|14:21] C:\Program Files\Common Files\microsoft shared
[24/11/2009|16:42] C:\Program Files\Common Files\Nero
[23/11/2009|16:27] C:\Program Files\Common Files\PC Tools
[11/04/2009|12:52] C:\Program Files\Common Files\PX Storage Engine
[02/11/2009|19:32] C:\Program Files\Common Files\Real
[02/11/2006|12:18] C:\Program Files\Common Files\Services
[02/07/2009|12:34] C:\Program Files\Common Files\Skype
[02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines
[05/10/2009|10:34] C:\Program Files\Common Files\Steam
[10/04/2009|00:01] C:\Program Files\Common Files\Storage
[03/06/2009|07:25] C:\Program Files\Common Files\Symantec Shared
[27/10/2009|11:44] C:\Program Files\Common Files\System
[09/04/2009|11:06] C:\Program Files\Common Files\Windows Live
[23/11/2009|17:46] C:\Program Files\Common Files\Wise Installation Wizard
[02/11/2009|19:32] C:\Program Files\Common Files\xing shared

--------------------\\ Process

( 56 Processes )

... OK !

--------------------\\ Recherche avec S_Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Recherche de Fichiers / Dossiers Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Verification du Registre

..... OK !

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE


--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-11-25 15:14:31
Windows 6.0.6002 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden files ...
C:\Windows\System32\wbem\Performance\WmiApRpl_new.ini 50088 bytes
scan completed successfully
hidden processes: 0
hidden files: 1

--------------------\\ Recherche d'autres infections

--------------------\\ Cracks & Keygens ..

C:\Users\THELYN~1\Downloads\cod4mw_modtools_v1\raw\fx\smoke\jeepride_crack_smoke.efx
C:\Users\THELYN~1\Downloads\cod4mw_modtools_v1\raw\materials\ch_asphaltcracks01
C:\Users\THELYN~1\Downloads\cod4mw_modtools_v1\raw\materials\ch_asphaltcracks01_dec
C:\Users\THELYN~1\Downloads\cod4mw_modtools_v1\raw\materials\me_decal_cracks_01
C:\Users\THELYN~1\Downloads\cod4mw_modtools_v1\raw\material_properties\ch_asphaltcracks01
C:\Users\THELYN~1\Downloads\cod4mw_modtools_v1\raw\material_properties\ch_asphaltcracks01_dec
C:\Users\THELYN~1\Downloads\cod4mw_modtools_v1\raw\material_properties\me_decal_cracks_01


[F:66][D:18]-> C:\Users\THELYN~1\AppData\Local\Temp
[F:25][D:1]-> C:\Users\THELYN~1\AppData\Roaming\MICROS~1\Windows\Cookies
[F:61][D:4]-> C:\Users\THELYN~1\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:5][D:9]-> C:\$Recycle.Bin

1 - "C:\Lop SD\LopR_1.txt" - 25/11/2009|15:15 - Option : [1]

--------------------\\ Fin du rapport a 15:15:20
[ UAC => 1 ]
0
jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 040
 
vire orbitdownloader si present via AJOUT/SUPPRESSION DE PROGRAMME

et si présent ici manuellement

C:\Program Files\Orbitdownloader
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Parishilton
 
Il n' est pas présent dans les 2 cas
0
jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 040
 
ok alors c'est bon

encore des soucis avec ton pc?



lance tools cleaner pour virer ce qui a été utilisé




tu peux vérifier avec antivir que tout est ok

rq: garde malwarebyte en complément d'antivir

a plus
0
Parishilton
 
ouais plus aucun pb; merci encoree
+
0
jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 040
 
ok bonne continuation
0