Virus Activité illicite demelee

nico -  
 nico -
Bonjour,

depuis hier soir des que j'allume mon ordi une page s'ouvre avec ecrit en haut activité illicite demelee, avec des logos de la republique francaise et dela gendarmerie.
Il m'est impossible de faire autre chose ou d'ouvrir une autre page.

Comment faire pour se débarrasser de ce virus svp??

merci

A voir également:

3 réponses

PerinneStorm Messages postés 49 Statut Membre 13
 
bonjour

que te dit ton antivirus ?
0
nico
 
J'ai redémarrer en mode sans echec et je fais un scan avec malwarebytes anti-maleware. Je vous mettrais le résultat

merci
0
nico
 
Voila le rapport

Merci de m'aider!!!!!

Malwarebytes Anti-Malware (Trial) 1.60.1.1000
www.malwarebytes.org

Database version: v2012.02.23.05

Windows XP Service Pack 3 x86 NTFS (Safe Mode/Networking)
Internet Explorer 7.0.5730.13
Administrateur :: CATHERINE [administrator]

Protection: Disabled

24/02/2012 11:21:37
mbam-log-2012-02-24 (11-21-37).txt

Scan type: Full scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 237734
Time elapsed: 22 minute(s), 21 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 11
C:\WINDOWS\system32\aswrdr.dll (RootKit.0Access.H) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{66EBC64C-43A2-4B51-A681-FD9FF7C8A078}\RP137\A0053778.dll (RootKit.0Access.H) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{66EBC64C-43A2-4B51-A681-FD9FF7C8A078}\RP137\A0053779.dll (RootKit.0Access.H) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{66EBC64C-43A2-4B51-A681-FD9FF7C8A078}\RP137\A0053780.dll (RootKit.0Access.H) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{66EBC64C-43A2-4B51-A681-FD9FF7C8A078}\RP137\A0053781.dll (RootKit.0Access.H) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{66EBC64C-43A2-4B51-A681-FD9FF7C8A078}\RP137\A0053782.exe (Trojan.VUPX.PTI1) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{66EBC64C-43A2-4B51-A681-FD9FF7C8A078}\RP137\A0053783.exe (Trojan.Zbot.TxGen) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{66EBC64C-43A2-4B51-A681-FD9FF7C8A078}\RP137\A0053784.dll (RootKit.0Access.H) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{66EBC64C-43A2-4B51-A681-FD9FF7C8A078}\RP137\A0053785.dll (RootKit.0Access.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\cmigameport.dll (RootKit.0Access.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\pwisvc.dll (RootKit.0Access.H) -> Quarantined and deleted successfully.

(end)
0