Suis je toujours inféctés ?

Fermé
turko1 Messages postés 12 Date d'inscription dimanche 21 mars 2010 Statut Membre Dernière intervention 26 mars 2010 - 21 mars 2010 à 18:50
turko1 Messages postés 12 Date d'inscription dimanche 21 mars 2010 Statut Membre Dernière intervention 26 mars 2010 - 26 mars 2010 à 18:14
Bonsoir,

Hier matin j'ai reçus des alertes de mon antivirus (Antivir version gratuite) des trojen on été découvert de ce je l'ai et supprimé.

Certain de mes mot de passe de comptes avait été modifier j'ai pu tous récupérer par chance.

Les deux attaques ->

Dans le fichier 'C:\ProgramData\Atomtonsmags\clock phone bows data.exe'
un virus ou un programme indésirable 'TR/Dldr.Swizzor.Gen2' [trojan] a été détecté.
Action exécutée : Supprimer le fichier

Dans le fichier 'C:\ProgramData\Atomtonsmags\Upload tick.exe'
un virus ou un programme indésirable 'TR/Dldr.Swizzor.Gen2' [trojan] a été détecté.
Action exécutée : Supprimer le fichier

J'ai fait une analyse complète de mon pc avec antivir et spybot rien d'autre n'a été découvert.

Je me pose la question de savoir si je suis toujours infecté vu que c'est logiciel ne sont pas fiables a 100% .

J'écoute toute vos réponses merci d'avance

21 réponses

turko1 Messages postés 12 Date d'inscription dimanche 21 mars 2010 Statut Membre Dernière intervention 26 mars 2010
26 mars 2010 à 18:14
re,

J'ai fait l'analyse avec Lop S&D et je ferais gmer plutard vu que c est plus long et que je suis presser je re ce soir.

Ps: L'analyse n'a pas pu terminer car a la recherche dautre infections le programme a cesser de fonctionner.


--------------------\\ Lop S&D 4.2.5-0 XP/Vista

Microsoft® Windows Vista(TM) Professionnel ( v6.0.6002 ) Service Pack 2
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 CPU T5500 @ 1.66GHz )
BIOS : Ver 1.00PARTTBL1
USER : zakire ( Administrator )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total:51 Go (Free:5 Go)
D:\ (Local Disk) - NTFS - Total:51 Go (Free:19 Go)
E:\ (CD or DVD)
H:\ (CD or DVD)

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [4] ( ven. 26/03/2010|17:34 )

[ UAC => 1 ]

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ Lop Script

C:\Program Files\Circle Developeent


\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION

Supprime! - C:\Program Files\Circle Developeent

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\


--------------------\\ Listing des dossiers dans Local

[28/12/2008|01:34] C:\Users\zakire\AppData\Local\ABBYY
[23/05/2007|18:21] C:\Users\zakire\AppData\Local\acer eNM
[21/12/2008|16:18] C:\Users\zakire\AppData\Local\Adobe
[26/05/2007|17:03] C:\Users\zakire\AppData\Local\Ahead
[10/02/2010|13:53] C:\Users\zakire\AppData\Local\Apple
[10/02/2010|22:24] C:\Users\zakire\AppData\Local\Apple Computer
[23/05/2007|18:01] C:\Users\zakire\AppData\Local\Application Data
[25/03/2010|17:50] C:\Users\zakire\AppData\Local\ApplicationHistory
[28/12/2007|17:45] C:\Users\zakire\AppData\Local\Apps
[12/11/2007|19:39] C:\Users\zakire\AppData\Local\capcom
[12/01/2009|21:20] C:\Users\zakire\AppData\Local\Chat Republic Games
[15/10/2009|14:44] C:\Users\zakire\AppData\Local\d3d9caps.dat
[09/03/2010|15:05] C:\Users\zakire\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[11/02/2009|19:13] C:\Users\zakire\AppData\Local\Downloaded Installations
[29/06/2007|18:07] C:\Users\zakire\AppData\Local\fusioncache.dat
[25/02/2010|06:51] C:\Users\zakire\AppData\Local\GDIPFONTCACHEV1.DAT
[23/05/2007|21:30] C:\Users\zakire\AppData\Local\GHISLER
[07/01/2010|21:28] C:\Users\zakire\AppData\Local\Google
[23/05/2007|18:01] C:\Users\zakire\AppData\Local\Historique
[25/03/2010|15:19] C:\Users\zakire\AppData\Local\IconCache.db
[13/11/2007|22:34] C:\Users\zakire\AppData\Local\id Software
[01/10/2008|12:28] C:\Users\zakire\AppData\Local\Introversion
[02/12/2008|19:14] C:\Users\zakire\AppData\Local\Microsoft
[24/05/2007|02:40] C:\Users\zakire\AppData\Local\Microsoft Game Studios
[09/01/2010|15:17] C:\Users\zakire\AppData\Local\Microsoft Help
[07/01/2008|15:17] C:\Users\zakire\AppData\Local\MigWiz
[03/06/2007|15:16] C:\Users\zakire\AppData\Local\Mozilla
[08/11/2008|00:56] C:\Users\zakire\AppData\Local\Stardock
[15/09/2007|16:23] C:\Users\zakire\AppData\Local\Steam
[26/03/2010|17:34] C:\Users\zakire\AppData\Local\temp
[23/05/2007|18:01] C:\Users\zakire\AppData\Local\Temporary Internet Files
[24/05/2007|14:17] C:\Users\zakire\AppData\Local\VirtualStore

--------------------\\ Tâches planifiées dans C:\Windows\tasks

[26/03/2010 16:41][--a------] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[26/03/2010 14:23][--a------] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[20/03/2010 12:33][--a------] C:\Windows\tasks\Google Software Updater.job
[26/03/2010 17:15][--a------] C:\Windows\tasks\Maintenance en 1 clic.job
[26/03/2010 16:36][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{76FAD184-D0C8-41D5-9BC9-F6124D33BB9A}.job
[25/03/2010 17:48][--ah-----] C:\Windows\tasks\SA.DAT
[25/03/2010 15:20][--a------] C:\Windows\tasks\SCHEDLGU.TXT

--------------------\\ Listing des dossiers dans C:\ProgramData

[10/02/2010|13:58] C:\ProgramData\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[08/09/2008|22:04] C:\ProgramData\ABBYY
[07/03/2008|13:48] C:\ProgramData\addr_file.html
[18/11/2009|15:10] C:\ProgramData\Adobe
[10/02/2010|13:49] C:\ProgramData\Apple
[10/02/2010|21:26] C:\ProgramData\Apple Computer
[02/11/2006|14:02] C:\ProgramData\Application Data
[24/02/2008|04:23] C:\ProgramData\avg7
[17/05/2009|02:06] C:\ProgramData\Avira
[27/12/2007|01:22] C:\ProgramData\Azureus
[23/05/2007|17:57] C:\ProgramData\Bureau
[03/09/2008|22:40] C:\ProgramData\CanonBJ
[12/01/2009|21:20] C:\ProgramData\Chat Republic Games
[24/05/2007|21:45] C:\ProgramData\CyberLink
[02/11/2006|14:02] C:\ProgramData\Desktop
[21/03/2010|15:33] C:\ProgramData\DivX
[02/11/2006|14:02] C:\ProgramData\Documents
[11/02/2009|19:42] C:\ProgramData\Electronic Arts
[01/03/2008|15:43] C:\ProgramData\ezsid.dat
[24/06/2008|03:07] C:\ProgramData\ezsidmv.dat
[23/05/2007|17:57] C:\ProgramData\Favoris
[02/11/2006|14:02] C:\ProgramData\Favorites
[21/12/2008|15:48] C:\ProgramData\FLEXnet
[07/01/2010|21:29] C:\ProgramData\Google
[23/03/2009|00:35] C:\ProgramData\Google Updater
[26/02/2008|16:03] C:\ProgramData\Grisoft
[19/01/2009|16:40] C:\ProgramData\HP
[05/07/2009|01:31] C:\ProgramData\HP Product Assistant
[19/01/2009|11:50] C:\ProgramData\HPSSUPPLY
[19/01/2009|11:51] C:\ProgramData\hpzinstall.log
[23/05/2007|18:04] C:\ProgramData\InstallShield
[23/03/2010|01:27] C:\ProgramData\Intel
[21/03/2010|20:27] C:\ProgramData\Malwarebytes
[23/05/2007|17:57] C:\ProgramData\Menu Démarrer
[14/02/2010|01:38] C:\ProgramData\Messenger Plus!
[18/02/2009|13:33] C:\ProgramData\Microsoft
[24/05/2007|02:40] C:\ProgramData\Microsoft Games
[12/03/2010|09:35] C:\ProgramData\Microsoft Help
[23/05/2007|17:57] C:\ProgramData\Modèles
[23/05/2007|23:53] C:\ProgramData\Nero
[24/05/2007|13:59] C:\ProgramData\NtiDvdCopy
[13/02/2009|22:33] C:\ProgramData\NVIDIA
[26/03/2010|16:35] C:\ProgramData\nvModes.001
[26/03/2010|16:35] C:\ProgramData\nvModes.dat
[02/05/2009|10:57] C:\ProgramData\Office Genuine Advantage
[23/03/2010|01:30] C:\ProgramData\Roaming
[13/12/2009|03:39] C:\ProgramData\Skype
[20/07/2009|01:07] C:\ProgramData\Spybot - Search & Destroy
[02/11/2006|14:02] C:\ProgramData\Start Menu
[23/05/2007|19:19] C:\ProgramData\Symantec
[20/12/2008|14:51] C:\ProgramData\TEMP
[02/11/2006|14:02] C:\ProgramData\Templates
[19/01/2009|11:51] C:\ProgramData\WEBREG
[08/10/2009|18:47] C:\ProgramData\WindowsSearch
[02/01/2008|18:50] C:\ProgramData\WinZip
[14/01/2009|21:48] C:\ProgramData\WLInstaller

--------------------\\ Listing des dossiers dans C:\Program Files

[09/01/2010|15:00] C:\Program Files\AbiWord
[23/05/2007|18:13] C:\Program Files\Acer
[23/05/2007|18:07] C:\Program Files\Acer Inc
[26/11/2008|16:32] C:\Program Files\Activision
[15/01/2009|15:20] C:\Program Files\Adobe
[13/02/2009|22:26] C:\Program Files\AGEIA Technologies
[23/06/2007|21:19] C:\Program Files\Alcohol Soft
[23/05/2007|19:37] C:\Program Files\Alwil Software
[10/02/2010|13:53] C:\Program Files\Apple Software Update
[17/05/2009|02:06] C:\Program Files\Avira
[24/02/2008|02:08] C:\Program Files\CCleaner
[23/03/2010|01:27] C:\Program Files\Cisco
[26/11/2008|19:10] C:\Program Files\CodeStuff
[23/03/2010|23:32] C:\Program Files\Common Files
[26/12/2008|02:48] C:\Program Files\CyberLink
[23/05/2007|22:39] C:\Program Files\DAEMON Tools
[21/03/2010|15:52] C:\Program Files\DivX
[22/01/2010|20:44] C:\Program Files\Dofus
[01/03/2010|19:26] C:\Program Files\Dofus 2.0
[08/03/2009|13:41] C:\Program Files\Feuvert
[23/05/2007|17:57] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[07/02/2010|14:50] C:\Program Files\Google
[27/12/2008|06:33] C:\Program Files\Grisoft
[29/11/2008|15:22] C:\Program Files\HLSW
[19/01/2009|11:50] C:\Program Files\HP
[04/08/2009|14:07] C:\Program Files\InstallShield Installation Information
[23/03/2010|01:27] C:\Program Files\Intel
[26/03/2010|14:16] C:\Program Files\Internet Explorer
[10/02/2010|22:11] C:\Program Files\iPod
[10/02/2010|22:12] C:\Program Files\iTunes
[07/01/2010|21:37] C:\Program Files\Java
[23/05/2007|18:09] C:\Program Files\Launch Manager
[25/12/2009|11:33] C:\Program Files\LimeWire
[17/08/2008|22:44] C:\Program Files\Macrogaming
[21/03/2010|20:27] C:\Program Files\Malwarebytes' Anti-Malware
[05/11/2007|19:23] C:\Program Files\Maxis
[14/02/2010|01:37] C:\Program Files\Messenger Plus! Live
[18/02/2009|13:35] C:\Program Files\Microsoft
[24/05/2007|02:08] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[05/03/2008|14:32] C:\Program Files\Microsoft Games
[24/05/2007|00:17] C:\Program Files\Microsoft Office
[05/10/2009|00:18] C:\Program Files\Microsoft Office Outlook Connector
[21/01/2010|16:13] C:\Program Files\Microsoft Silverlight
[11/02/2008|14:36] C:\Program Files\Microsoft SQL Server Compact Edition
[14/01/2009|22:05] C:\Program Files\Microsoft Sync Framework
[24/05/2007|00:17] C:\Program Files\Microsoft Visual Studio
[24/05/2007|00:13] C:\Program Files\Microsoft Visual Studio 8
[02/05/2009|10:38] C:\Program Files\Microsoft Works
[24/05/2007|00:16] C:\Program Files\Microsoft.NET
[13/03/2010|00:08] C:\Program Files\Movie Maker
[23/03/2010|23:09] C:\Program Files\Mozilla Firefox
[24/05/2007|00:17] C:\Program Files\MSBuild
[11/02/2008|14:16] C:\Program Files\MSN Messenger
[23/05/2007|23:53] C:\Program Files\Nero
[22/12/2006|16:59] C:\Program Files\NewTech Infosystems
[08/03/2009|21:54] C:\Program Files\PhotoFiltre Studio
[20/12/2008|14:50] C:\Program Files\Portrait Professional Max 6
[10/02/2010|21:27] C:\Program Files\QuickTime
[03/11/2008|23:49] C:\Program Files\Real
[13/12/2006|08:51] C:\Program Files\Realtek
[02/11/2006|13:37] C:\Program Files\Reference Assemblies
[23/12/2009|14:22] C:\Program Files\Skype
[08/04/2008|20:54] C:\Program Files\SopCast
[29/11/2009|03:19] C:\Program Files\Spybot - Search & Destroy
[08/11/2008|00:56] C:\Program Files\Stardock
[28/11/2009|18:53] C:\Program Files\Steam
[13/12/2006|09:04] C:\Program Files\Synaptics
[13/02/2009|20:58] C:\Program Files\SystemRequirementsLab
[07/12/2008|14:50] C:\Program Files\TuneUpPortable
[02/11/2006|14:01] C:\Program Files\Uninstall Information
[29/12/2007|17:15] C:\Program Files\uTorrent
[24/05/2007|00:46] C:\Program Files\VideoLAN
[07/01/2010|21:28] C:\Program Files\Wakfu
[16/12/2009|02:53] C:\Program Files\Windows Calendar
[16/12/2009|02:52] C:\Program Files\Windows Collaboration
[16/12/2009|02:52] C:\Program Files\Windows Defender
[16/12/2009|02:52] C:\Program Files\Windows Journal
[14/12/2009|00:34] C:\Program Files\Windows Live
[11/02/2008|14:34] C:\Program Files\Windows Live Favorites
[14/01/2009|21:59] C:\Program Files\Windows Live SkyDrive
[14/01/2009|22:06] C:\Program Files\Windows Live Toolbar
[13/03/2010|00:08] C:\Program Files\Windows Mail
[16/12/2009|02:52] C:\Program Files\Windows Media Player
[23/05/2007|17:57] C:\Program Files\Windows NT
[16/12/2009|02:52] C:\Program Files\Windows Photo Gallery
[17/12/2009|13:50] C:\Program Files\Windows Portable Devices
[16/12/2009|02:52] C:\Program Files\Windows Sidebar
[03/01/2008|21:28] C:\Program Files\WinRAR

--------------------\\ Listing des dossiers dans C:\Program Files\Common Files

[23/05/2007|18:13] C:\Program Files\Common Files\Acer
[15/01/2009|15:19] C:\Program Files\Common Files\Adobe
[14/02/2010|11:56] C:\Program Files\Common Files\Adobe AIR
[24/05/2007|00:00] C:\Program Files\Common Files\Ahead
[10/02/2010|22:11] C:\Program Files\Common Files\Apple
[24/05/2007|00:17] C:\Program Files\Common Files\DESIGNER
[21/03/2010|15:51] C:\Program Files\Common Files\DivX Shared
[19/01/2009|11:50] C:\Program Files\Common Files\HP
[08/03/2009|13:41] C:\Program Files\Common Files\InstallShield
[23/03/2010|01:27] C:\Program Files\Common Files\Intel
[22/12/2006|16:59] C:\Program Files\Common Files\LightScribe
[23/05/2007|18:13] C:\Program Files\Common Files\Logitech
[23/03/2010|01:22] C:\Program Files\Common Files\microsoft shared
[22/12/2006|16:58] C:\Program Files\Common Files\muvee Technologies
[22/12/2006|16:59] C:\Program Files\Common Files\NewTech Infosystems
[21/03/2010|15:51] C:\Program Files\Common Files\PX Storage Engine
[04/11/2008|18:42] C:\Program Files\Common Files\Real
[02/11/2006|12:18] C:\Program Files\Common Files\Services
[13/12/2009|03:39] C:\Program Files\Common Files\Skype
[02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines
[28/11/2009|15:29] C:\Program Files\Common Files\Steam
[23/05/2007|19:21] C:\Program Files\Common Files\Symantec Shared
[16/12/2009|02:52] C:\Program Files\Common Files\System
[14/01/2009|21:50] C:\Program Files\Common Files\Windows Live
[11/02/2008|14:31] C:\Program Files\Common Files\WindowsLiveInstaller
[13/02/2009|22:25] C:\Program Files\Common Files\Wise Installation Wizard

--------------------\\ Process

( 94 Processes )

... OK !

--------------------\\ Recherche avec S_Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Recherche de Fichiers / Dossiers Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Verification du Registre

..... OK !

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE


--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-03-26 17:45:25
Windows 6.0.6002 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 4

--------------------\\ Recherche d'autres infections
0