Infecté par des virus ou trojan je ne sais pa
Fermé
Aurelieeee
Messages postés
64
Date d'inscription
mardi 26 septembre 2006
Statut
Membre
Dernière intervention
19 avril 2007
-
7 nov. 2006 à 11:19
Aurelieeee Messages postés 64 Date d'inscription mardi 26 septembre 2006 Statut Membre Dernière intervention 19 avril 2007 - 7 nov. 2006 à 16:11
Aurelieeee Messages postés 64 Date d'inscription mardi 26 septembre 2006 Statut Membre Dernière intervention 19 avril 2007 - 7 nov. 2006 à 16:11
A voir également:
- Infecté par des virus ou trojan je ne sais pa
- Virus trojan al11 ✓ - Forum Virus
- Trojan remover - Télécharger - Antivirus & Antimalwares
- Message virus iphone site adulte - Forum iPhone
- Trojan wacatac ✓ - Forum Virus
- L'ordinateur d'arthur a été infecté par un virus répertorié récemment. son anti-virus ne l'a pas détecté. qu'a-t-il pu se passer ? ✓ - Forum Virus
1 réponse
Aurelieeee
Messages postés
64
Date d'inscription
mardi 26 septembre 2006
Statut
Membre
Dernière intervention
19 avril 2007
4
7 nov. 2006 à 16:11
7 nov. 2006 à 16:11
Je join un rapport d'ewido ainsi qu'un scan avec Bit defendre Online fin de complété un eventuel manque d'information.
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 14:38:32 07/11/2006
+ Scan result:
C:\mjbvlado.exe -> Backdoor.Pakes : No action taken.
C:\Documents and Settings\nou\Local Settings\Temp\2.dlb -> Downloader.Tibs.gc : No action taken.
C:\Documents and Settings\nou\Local Settings\Temp\6.dlb -> Downloader.Tibs.gc : No action taken.
C:\Documents and Settings\nou\Local Settings\Temp\7.dlb -> Downloader.Tibs.gc : No action taken.
C:\Documents and Settings\nou\Local Settings\Temp\Temporary Internet Files\Content.IE5\WD2FKPUR\loader[1].exe -> Downloader.Tiny.bm : No action taken.
[1184] C:\Documents and Settings\All Users\Documents\Settings\winsys2f.dll -> Proxy.Xorpix.at : No action taken.
C:\Documents and Settings\nou\Cookies\nou@247realmedia[1].txt -> TrackingCookie.247realmedia : No action taken.
C:\Documents and Settings\nou\Cookies\nou@2o7[2].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\nou\Cookies\nou@adtech[2].txt -> TrackingCookie.Adtech : No action taken.
C:\Documents and Settings\nou\Cookies\nou@bluestreak[2].txt -> TrackingCookie.Bluestreak : No action taken.
C:\Documents and Settings\nou\Cookies\nou@com[1].txt -> TrackingCookie.Com : No action taken.
C:\Documents and Settings\nou\Cookies\nou@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : No action taken.
C:\Documents and Settings\nou\Cookies\nou@estat[1].txt -> TrackingCookie.Estat : No action taken.
C:\Documents and Settings\nou\Cookies\nou@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : No action taken.
C:\Documents and Settings\nou\Cookies\nou@tacoda[1].txt -> TrackingCookie.Tacoda : No action taken.
C:\Documents and Settings\nou\Cookies\nou@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : No action taken.
C:\Documents and Settings\nou\Cookies\nou@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : No action taken.
C:\Documents and Settings\nou\Cookies\nou@weborama[2].txt -> TrackingCookie.Weborama : No action taken.
C:\WINDOWS\system32\msasvc.exe -> Trojan.Sinowal.bh : No action taken.
[964] C:\WINDOWS\System32\msasvc.exe -> Trojan.Sinowal.bh : No action taken.
::Report end
______________________________________________________
BitDefender Online Scanner
Scan report generated at: Tue, Nov 07, 2006 - 12:50:18
Scan path: A:\;C:\;D:\;E:\;
Statistics
Time
01:13:47
Files
131743
Folders
2871
Boot Sectors
2
Archives
2302
Packed Files
8794
Results
Identified Viruses
4
Infected Files
5
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
5
Engines Info
Virus Definitions
312708
Engine build
AVCORE v1.0 (build 2310) (i386) (Apr 17 2006 16:24:38)
Scan plugins
13
Archive plugins
38
Unpack plugins
6
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP18\A0002648.exe=>(NSIS o)=>zlib_nsis0002
Infected with: Trojan.Dropper.VB
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP18\A0002648.exe=>(NSIS o)=>zlib_nsis0002
Disinfection failed
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP18\A0002648.exe=>(NSIS o)=>zlib_nsis0002
Deleted
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP18\A0002648.exe=>(NSIS o)
Update failed
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022921.exe
Infected with: Trojan.Downloader.Small.CPT
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022921.exe
Deleted
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022991.dll
Infected with: Generic.Malware.SMdldg.D37C9328
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022991.dll
Disinfection failed
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022991.dll
Deleted
C:\WINDOWS\msagent\agentsvr.exe
Infected with: Win32.Mixor.A@mm
C:\WINDOWS\msagent\agentsvr.exe
Disinfection failed
C:\WINDOWS\msagent\agentsvr.exe
Deleted
C:\WINDOWS\system32\dllcache\agentsvr.exe
Infected with: Win32.Mixor.A@mm
C:\WINDOWS\system32\dllcache\agentsvr.exe
Disinfection failed
C:\WINDOWS\system32\dllcache\agentsvr.exe
Deleted
voila voila :/
UNe question aussi, les fichiers placé en quarentaire par ewido doivent-ils etre suprimé ?
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 14:38:32 07/11/2006
+ Scan result:
C:\mjbvlado.exe -> Backdoor.Pakes : No action taken.
C:\Documents and Settings\nou\Local Settings\Temp\2.dlb -> Downloader.Tibs.gc : No action taken.
C:\Documents and Settings\nou\Local Settings\Temp\6.dlb -> Downloader.Tibs.gc : No action taken.
C:\Documents and Settings\nou\Local Settings\Temp\7.dlb -> Downloader.Tibs.gc : No action taken.
C:\Documents and Settings\nou\Local Settings\Temp\Temporary Internet Files\Content.IE5\WD2FKPUR\loader[1].exe -> Downloader.Tiny.bm : No action taken.
[1184] C:\Documents and Settings\All Users\Documents\Settings\winsys2f.dll -> Proxy.Xorpix.at : No action taken.
C:\Documents and Settings\nou\Cookies\nou@247realmedia[1].txt -> TrackingCookie.247realmedia : No action taken.
C:\Documents and Settings\nou\Cookies\nou@2o7[2].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\nou\Cookies\nou@adtech[2].txt -> TrackingCookie.Adtech : No action taken.
C:\Documents and Settings\nou\Cookies\nou@bluestreak[2].txt -> TrackingCookie.Bluestreak : No action taken.
C:\Documents and Settings\nou\Cookies\nou@com[1].txt -> TrackingCookie.Com : No action taken.
C:\Documents and Settings\nou\Cookies\nou@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : No action taken.
C:\Documents and Settings\nou\Cookies\nou@estat[1].txt -> TrackingCookie.Estat : No action taken.
C:\Documents and Settings\nou\Cookies\nou@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : No action taken.
C:\Documents and Settings\nou\Cookies\nou@tacoda[1].txt -> TrackingCookie.Tacoda : No action taken.
C:\Documents and Settings\nou\Cookies\nou@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : No action taken.
C:\Documents and Settings\nou\Cookies\nou@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : No action taken.
C:\Documents and Settings\nou\Cookies\nou@weborama[2].txt -> TrackingCookie.Weborama : No action taken.
C:\WINDOWS\system32\msasvc.exe -> Trojan.Sinowal.bh : No action taken.
[964] C:\WINDOWS\System32\msasvc.exe -> Trojan.Sinowal.bh : No action taken.
::Report end
______________________________________________________
BitDefender Online Scanner
Scan report generated at: Tue, Nov 07, 2006 - 12:50:18
Scan path: A:\;C:\;D:\;E:\;
Statistics
Time
01:13:47
Files
131743
Folders
2871
Boot Sectors
2
Archives
2302
Packed Files
8794
Results
Identified Viruses
4
Infected Files
5
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
5
Engines Info
Virus Definitions
312708
Engine build
AVCORE v1.0 (build 2310) (i386) (Apr 17 2006 16:24:38)
Scan plugins
13
Archive plugins
38
Unpack plugins
6
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP18\A0002648.exe=>(NSIS o)=>zlib_nsis0002
Infected with: Trojan.Dropper.VB
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP18\A0002648.exe=>(NSIS o)=>zlib_nsis0002
Disinfection failed
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP18\A0002648.exe=>(NSIS o)=>zlib_nsis0002
Deleted
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP18\A0002648.exe=>(NSIS o)
Update failed
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022921.exe
Infected with: Trojan.Downloader.Small.CPT
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022921.exe
Deleted
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022991.dll
Infected with: Generic.Malware.SMdldg.D37C9328
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022991.dll
Disinfection failed
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022991.dll
Deleted
C:\WINDOWS\msagent\agentsvr.exe
Infected with: Win32.Mixor.A@mm
C:\WINDOWS\msagent\agentsvr.exe
Disinfection failed
C:\WINDOWS\msagent\agentsvr.exe
Deleted
C:\WINDOWS\system32\dllcache\agentsvr.exe
Infected with: Win32.Mixor.A@mm
C:\WINDOWS\system32\dllcache\agentsvr.exe
Disinfection failed
C:\WINDOWS\system32\dllcache\agentsvr.exe
Deleted
voila voila :/
UNe question aussi, les fichiers placé en quarentaire par ewido doivent-ils etre suprimé ?