Virus Instant Access ?

rapha94 Messages postés 14 Statut Membre -  
green day Messages postés 26722 Statut Modérateur, Contributeur sécurité -
Bonjour à tous =)
Voila depuis plusieurs mois j'ai un virus qui m'ouvre tous le temps des pubs a la noix.
Voici quelque screens.. :

http://raphaduweb.free.fr/virus1.jpg.JPG
http://raphaduweb.free.fr/virus2.jpg.jpg

Sa va de la pub comme quoi j'aurai plein de virus jusqu'aux pages à caractères pornographiques.

J'ai remarqué quand fesant CTRL+ALT+SUPPR
j'avais Instant Access.exe !!

Je le désactive mais les pages de pub se charges toujours.
Je compte mettres mes pc en réseau ce soir et je ne veut pas invecter mon tout nouveau pc portable !

HELLLLPP

2 réponses

rapha94 Messages postés 14 Statut Membre
 
rapport :
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 21:53:36 05/09/2006

+ Scan result:

HKU\S-1-5-21-823518204-1958367476-725345543-1003\Software\IST -> Adware.ISTBar : No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Instant Access -> Dialer.Generic : No action taken.
HKU\S-1-5-21-823518204-1958367476-725345543-1003\Software\egdhtml -> Dialer.Generic : No action taken.

::Report end

------------------------------------------------
raport 2:
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 22:05:01 05/09/2006

+ Scan result:

C:\WINDOWS\system32\EGACCESS.dll -> Dialer.EgroupDial.x : Cleaned.
C:\WINDOWS\system32\egaccess4_1064.dll -> Dialer.EgroupDial.x : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@247realmedia[1].txt -> TrackingCookie.247realmedia : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@aolfr.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@microsoftwlmessengermkt.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@msnservices.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@sonymediasoftware.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@ads.addynamix[2].txt -> TrackingCookie.Addynamix : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@rotator.adjuggler[1].txt -> TrackingCookie.Adjuggler : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@adtech[1].txt -> TrackingCookie.Adtech : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@advertising[1].txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@iv2.bluestreak[1].txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@www.burstbeacon[1].txt -> TrackingCookie.Burstbeacon : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@burstnet[2].txt -> TrackingCookie.Burstnet : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@www.burstnet[1].txt -> TrackingCookie.Burstnet : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@casalemedia[2].txt -> TrackingCookie.Casalemedia : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@casinodelrio[1].txt -> TrackingCookie.Casinodelrio : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@www.casinodelrio[2].txt -> TrackingCookie.Casinodelrio : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@crbanner.casinopays[2].txt -> TrackingCookie.Casinopays : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@casinotropez[1].txt -> TrackingCookie.Casinotropez : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@www.casinotropez[1].txt -> TrackingCookie.Casinotropez : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@banner.clubdicecasino[1].txt -> TrackingCookie.Clubdicecasino : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@clubdicecasino[1].txt -> TrackingCookie.Clubdicecasino : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@com[1].txt -> TrackingCookie.Com : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@fl01.ct2.comclick[2].txt -> TrackingCookie.Comclick : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@data.coremetrics[1].txt -> TrackingCookie.Coremetrics : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@estat[1].txt -> TrackingCookie.Estat : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@as-eu.falkag[1].txt -> TrackingCookie.Falkag : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@as1.falkag[2].txt -> TrackingCookie.Falkag : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@ehg-gamespot.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@ehg-ubisoft.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@counter.hitslink[2].txt -> TrackingCookie.Hitslink : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@hotlog[1].txt -> TrackingCookie.Hotlog : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@ivwbox[1].txt -> TrackingCookie.Ivwbox : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@kmpads[2].txt -> TrackingCookie.Kmpads : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@www.myaffiliateprogram[2].txt -> TrackingCookie.Myaffiliateprogram : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@banner.newyorkcasino[1].txt -> TrackingCookie.Newyorkcasino : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@qksrv[2].txt -> TrackingCookie.Qksrv : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@questionmarket[1].txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@revenue[1].txt -> TrackingCookie.Revenue : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@bs.serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@smartadserver[1].txt -> TrackingCookie.Smartadserver : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@statcounter[2].txt -> TrackingCookie.Statcounter : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@trafic[1].txt -> TrackingCookie.Trafic : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@tribalfusion[2].txt -> TrackingCookie.Tribalfusion : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@valueclick[1].txt -> TrackingCookie.Valueclick : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@valueclick[3].txt -> TrackingCookie.Valueclick : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@webstat[1].txt -> TrackingCookie.Web-stat : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@weborama[1].txt -> TrackingCookie.Weborama : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@yadro[2].txt -> TrackingCookie.Yadro : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Rapha\Cookies\rapha@zedo[1].txt -> TrackingCookie.Zedo : Cleaned.

::Report end
0
green day Messages postés 26722 Statut Modérateur, Contributeur sécurité 2 163
 
Salut

en effet, ç'est bien ça !

Télécharge Blacklight (de F-Secure) :

https://www.f-secure.com/en

et sauvegarde le sur ton Bureau.

Double-clique blbeta.exe et accepte la licence ;clique Scan puis Next

Tu verras une liste de fichiers détectés apparaître. Tu verras également un rapport, sur ton Bureau, nommé fsbl.xxxxxxx.log (les xxxxxxx sont des chiffres).

Copie et colle le contenu de ce rapport dans ta prochaine réponse

ensuite :

Télécharge ceci :

Lien : http://www.infos-du-net.com/telecharger/HijackThis.html

Démo : http://pageperso.aol.fr/balltrap34/demohijack.htm

Choisir l'option "do a scan and a logfile", et faire un copier/coller du rapport ainsi générer sur le forum.

@+
0