Probléme avec un Virus !

Résolu/Fermé
yeplayep Messages postés 18 Date d'inscription dimanche 12 septembre 2010 Statut Membre Dernière intervention 17 octobre 2010 - 12 sept. 2010 à 05:41
RVRESIDENT Messages postés 18 Date d'inscription vendredi 18 mars 2011 Statut Membre Dernière intervention 20 mars 2011 - 18 mars 2011 à 14:01
Bonjour, voici mon probleme . J'ai chopé un virus en surfant sur un site de fims en streaming . Ce virus se nomme '' click potato'' . Je n'arrive pas a le supprimer avec mon antivirus , avec ccleaner ainsi que ds le desinstallage de programmes . Aidez moi silvouplait c'est urgent . Je me sers beaucoup de mon ordinateur pour mon boulot donc je n'ai pas trés envie de tout perdre ^^ . Merci a l'avance en attendant une reponsse au plus vite de mon sauveur ou sauveuse :) . Ps : Je suis sur windows 7 .



23 réponses

Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org

Version de la base de données: 5405

Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.18999

27/12/2010 21:36:12
mbam-log-2010-12-27 (21-36-12).txt

Type d'examen: Examen rapide
Elément(s) analysé(s): 142297
Temps écoulé: 9 minute(s), 6 seconde(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 1
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 4
Fichier(s) infecté(s): 2

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\fcn (Rogue.Residue) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
c:\program files\clickpotatolite (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\program files\clickpotatolite\bin (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\program files\shopperreports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin (Adware.ShopperReports) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
c:\Users\norq\Desktop\everest poker.fr(2).exe (PUP.Casino) -> Not selected for removal.
c:\Users\norq\local settings\application data\sqccheco_navps.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
0
Helpppp pleaseee !!!! Je me suis choppée "clickpotatoe" ...

Scan Malwarebytes :

Malwarebytes' Anti-Malware 1.44
Version de la base de données: 3741
Windows 6.0.6001 Service Pack 1
Internet Explorer 8.0.6001.18882

15/03/2011 21:00:21
mbam-log-2011-03-15 (21-00-21).txt

Type de recherche: Examen complet (A:\|C:\|D:\|)
Eléments examinés: 241133
Temps écoulé: 46 minute(s), 18 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 1
Clé(s) du Registre infectée(s): 22
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 1
Fichier(s) infecté(s): 9

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
C:\Program Files\ShoppingReport2\Bin\2.7.34\ShoppingReport.dll (Adware.SmartShopper) -> Delete on reboot.

Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\TypeLib\{f244a744-534d-4a46-855f-c0c7e9f27daa} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{030c9927-10fc-4169-97a2-55becd5d88d8} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{258c9770-1713-4021-8d7e-1f184a2bd754} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{258c9770-1713-4021-8d7e-1f184a2bd754} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{258c9770-1713-4021-8d7e-1f184a2bd754} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{258c9770-1713-4021-8d7e-1f184a2bd754} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{3e2dfd6a-4e20-4d4c-aa8b-e1f9dbef3c80} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{714e0876-fcee-49ce-a429-b9ad8aefcb56} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{bdea95cf-f0e6-41e0-bd3d-b00f39a4e939} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{bdea95cf-f0e6-41e0-bd3d-b00f39a4e939} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{bdea95cf-f0e6-41e0-bd3d-b00f39a4e939} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{dd15bcc0-5fe9-4690-a957-99fa60ed9d26} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport2.hbax (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport2.hbax.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport2.hbinfoband (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport2.hbinfoband.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport2.iebutton (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport2.iebutton.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport2.iebuttona (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport2.iebuttona.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport2.rprtctrl (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport2.rprtctrl.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
C:\ProgramData\2ACA5CC3-0F83-453D-A079-1076FE1A8B65 (Adware.Seekmo) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
C:\Program Files\ShoppingReport2\Bin\2.7.34\ShoppingReport.dll (Adware.SmartShopper) -> Quarantined and deleted successfully.
C:\Users\Linkmat\AppData\Local\Temp\nshD899.tmp\Install.dll (Adware.Seekmo) -> Quarantined and deleted successfully.
C:\Users\Linkmat\AppData\Local\Temp\nshE8BF.tmp\Install.dll (Adware.Seekmo) -> Quarantined and deleted successfully.
C:\Users\Linkmat\AppData\Local\Temp\nsi289C.tmp\Install.dll (Adware.Seekmo) -> Quarantined and deleted successfully.
C:\Users\Linkmat\AppData\Local\Temp\nsi64A2.tmp\Install.dll (Adware.Seekmo) -> Quarantined and deleted successfully.
C:\Users\Linkmat\AppData\Local\Temp\nskF4E0.tmp\Install.dll (Adware.Seekmo) -> Quarantined and deleted successfully.
C:\Users\Linkmat\AppData\Local\Temp\nsn6D97.tmp\Install.dll (Adware.Seekmo) -> Quarantined and deleted successfully.
C:\Users\Linkmat\AppData\Local\Temp\nsrF4DF.tmp\Install.dll (Adware.Seekmo) -> Quarantined and deleted successfully.
C:\Users\Linkmat\AppData\Local\Temp\nsx2301.tmp\Install.dll (Adware.Seekmo) -> Quarantined and deleted successfully.

Et toujours pas débarasser de ce truc ....
0
RVRESIDENT Messages postés 18 Date d'inscription vendredi 18 mars 2011 Statut Membre Dernière intervention 20 mars 2011
Modifié par RVRESIDENT le 18/03/2011 à 14:20
Au secours aidez moi !
Je viens de choper ce truc et j'ai beaucoup de mal à comprendre cette procédure ! :(
J'ai fait ce qu'il faut avec Malwarebites et tout a apparemment disparu, aussi bien dans le dossier Programmes que dans ma barre des tâches.
Et ensuite ?
0