Virus privacy protection

Fermé
lishuan - 10 nov. 2011 à 21:15
 lishuan - 13 nov. 2011 à 16:57
Bonjour,

J'ai été affecté par le virus privacy protection il y a quelque jour et je viens d'effectuer un scan avec " préscan" et je dépose ici le lien http://pjjoint.malekal.com/files.php?id=x14y11p11k8r13o11o10g13w12y15g8t6n5x10m12c5l5q7l5i12

Mais je ne comprends pas ce qu'il faut faire après.
Avez vous une idée ?

merci

A voir également:

23 réponses

Voici le rapport :

http://pjjoint.malekal.com/files.php?id=f11b5o11v8p13i9b7s15s15b12d5c8d13z13x11z11x15b12s8s9
0
Utilisateur anonyme
13 nov. 2011 à 13:39
re

a-t-on du changement à propos de malwarebytes ?
0
Voici le rapport :

Malwarebytes' Anti-Malware 1.51.2.1300
www.malwarebytes.org

Version de la base de données: 8152

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

13/11/2011 16:50:40
mbam-log-2011-11-13 (16-50-40).txt

Type d'examen: Examen complet (C:\|)
Elément(s) analysé(s): 249956
Temps écoulé: 34 minute(s), 25 seconde(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 7
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 8
Fichier(s) infecté(s): 42

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{19127AD2-394B-70F5-C650-B97867BAA1F7} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{19127AD2-394B-70F5-C650-B97867BAA1F7} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{43BF8CD1-C5D5-2230-7BB2-98F22C2B7DC6} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{43BF8CD1-C5D5-2230-7BB2-98F22C2B7DC6} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{494E6CEC-7483-A4EE-0938-895519A84BC7} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{494E6CEC-7483-A4EE-0938-895519A84BC7} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Mp3Tube (Adware.Mp3Tube) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
c:\WINDOWS\system32\config\systemprofile\application data\shopperreports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\config\systemprofile\application data\shopperreports3\IE (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\config\systemprofile\application data\shopperreports3\IE\cs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\config\systemprofile\application data\shopperreports3\IE\cs\db (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\config\systemprofile\application data\shopperreports3\IE\cs\dwld (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\config\systemprofile\application data\shopperreports3\IE\cs\report (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\config\systemprofile\application data\shopperreports3\IE\cs\res1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\c.guillaume\menu démarrer\programmes\p2pcontrol (Trojan.Agent) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
c:\documents and settings\c.guillaume\application data\Sun\Java\deployment\cache\6.0\12\19aa8acc-7d16b01f (Backdoor.0Access) -> Quarantined and deleted successfully.
c:\documents and settings\c.guillaume\Bureau\x3codec-1.5.0.0-setup.exe (Adware.Agent) -> Quarantined and deleted successfully.
c:\Kill'em\quarantine\464.tmp.kill'em (Exploit.Drop.Gen) -> Quarantined and deleted successfully.
c:\Kill'em\quarantine\privacy.exe.kill'em (Exploit.Drop.Gen) -> Quarantined and deleted successfully.
c:\Kill'em\quarantine\sai58.exe.kill'em (Adware.QuestBrowse) -> Quarantined and deleted successfully.
c:\Kill'em\quarantine\stb902.tmp.kill'em (Adware.Agent) -> Quarantined and deleted successfully.
c:\Kill'em\quarantine\vlc-1.1.5-win32.exe.kill'em (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\Kill'em\quarantine\sai281.exe.kill'em (Adware.ResultBar) -> Quarantined and deleted successfully.
c:\Kill'em\quarantine\xvid-win32.exe.kill'em (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\Kill'em\quarantine\3b33fec5.kill'em\X (Backdoor.0Access) -> Quarantined and deleted successfully.
c:\Kill'em\quarantine\3b33fec5.kill'em\U\80000000.@ (Trojan.Agent) -> Quarantined and deleted successfully.
c:\Kill'em\quarantine\3b33fec5.kill'em\U\800000cb.@ (Backdoor.0Access) -> Quarantined and deleted successfully.
c:\Kill'em\quarantine\3b33fec5.kill'em\U\800000cf.@ (Rootkit.Agent) -> Quarantined and deleted successfully.
c:\Qoobox\quarantine\C\WINDOWS\assembly\GAC_MSIL\desktop.ini.vir (Trojan.Agent) -> Quarantined and deleted successfully.
c:\Qoobox\quarantine\C\WINDOWS\system32\c_54325.nl_.vir (Backdoor.0Access) -> Quarantined and deleted successfully.
c:\system volume information\_restore{28b3a1c8-7833-4575-9485-1e67af2a77b1}\RP252\A0105428.ini (Trojan.Agent) -> Quarantined and deleted successfully.
c:\system volume information\_restore{28b3a1c8-7833-4575-9485-1e67af2a77b1}\RP252\A0106428.ini (Trojan.Agent) -> Quarantined and deleted successfully.
c:\system volume information\_restore{28b3a1c8-7833-4575-9485-1e67af2a77b1}\RP252\A0106635.ini (Trojan.Agent) -> Quarantined and deleted successfully.
c:\system volume information\_restore{28b3a1c8-7833-4575-9485-1e67af2a77b1}\RP253\A0106726.ini (Trojan.Agent) -> Quarantined and deleted successfully.
c:\system volume information\_restore{28b3a1c8-7833-4575-9485-1e67af2a77b1}\RP253\A0106693.ini (Trojan.Agent) -> Quarantined and deleted successfully.
c:\system volume information\_restore{28b3a1c8-7833-4575-9485-1e67af2a77b1}\RP253\A0107031.exe (Exploit.Drop.Gen) -> Quarantined and deleted successfully.
c:\system volume information\_restore{28b3a1c8-7833-4575-9485-1e67af2a77b1}\RP253\A0107001.ini (Trojan.Agent) -> Quarantined and deleted successfully.
c:\system volume information\_restore{28b3a1c8-7833-4575-9485-1e67af2a77b1}\RP253\A0107017.ini (Trojan.Agent) -> Quarantined and deleted successfully.
c:\system volume information\_restore{28b3a1c8-7833-4575-9485-1e67af2a77b1}\RP254\A0107182.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\system volume information\_restore{28b3a1c8-7833-4575-9485-1e67af2a77b1}\RP254\A0107348.ini (Trojan.Agent) -> Quarantined and deleted successfully.
c:\system volume information\_restore{28b3a1c8-7833-4575-9485-1e67af2a77b1}\RP254\A0107183.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\system volume information\_restore{28b3a1c8-7833-4575-9485-1e67af2a77b1}\RP254\A0107187.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\system volume information\_restore{28b3a1c8-7833-4575-9485-1e67af2a77b1}\RP254\A0107188.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\system volume information\_restore{28b3a1c8-7833-4575-9485-1e67af2a77b1}\RP254\A0107189.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\system volume information\_restore{28b3a1c8-7833-4575-9485-1e67af2a77b1}\RP254\A0107190.exe (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\system volume information\_restore{28b3a1c8-7833-4575-9485-1e67af2a77b1}\RP254\A0107327.ini (Trojan.Agent) -> Quarantined and deleted successfully.
c:\system volume information\_restore{28b3a1c8-7833-4575-9485-1e67af2a77b1}\RP254\A0107377.ini (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\config\systemprofile\application data\shopperreports3\IE\cs\Config.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\config\systemprofile\application data\shopperreports3\IE\cs\db\Aliases.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\config\systemprofile\application data\shopperreports3\IE\cs\db\Sites.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\config\systemprofile\application data\shopperreports3\IE\cs\dwld\whitelist.xip (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\config\systemprofile\application data\shopperreports3\IE\cs\report\aggr_storage.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\config\systemprofile\application data\shopperreports3\IE\cs\report\send_storage.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\config\systemprofile\application data\shopperreports3\IE\cs\res1\whitelist.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\c.guillaume\menu démarrer\programmes\p2pcontrol\claim money.lnk (Trojan.Agent) -> Quarantined and deleted successfully.
c:\documents and settings\c.guillaume\menu démarrer\programmes\p2pcontrol\p2pcontrol website.lnk (Trojan.Agent) -> Quarantined and deleted successfully.
c:\documents and settings\c.guillaume\menu démarrer\programmes\p2pcontrol\uninstall.lnk (Trojan.Agent) -> Quarantined and deleted successfully.
0