Jai des vers sur mon pc. au secours.

Fermé
bjoernik - 31 mars 2008 à 19:01
bjoernik Messages postés 10 Date d'inscription lundi 31 mars 2008 Statut Membre Dernière intervention 3 avril 2008 - 31 mars 2008 à 19:22
Bonjour,

Après avoir lu quelques posts sur kavo et les vers, je me retrouve coincé. J'ai exécuté kavokiller mais il semble que kavo n'était pas seul. De plus, je pourrais formater mais mes 3 clés USB sont infectées par un New Folder.exe qui me tape sur le système car il se régénère. Il me faut donc une solution pour désinfecter mes clés et mon système simultanément. J'ai exécuté le scan en ligne de Kaspersky et j'ai attrapé 5 virus dont Virus.Win32.VB.eg et Trojan-PSW.Win32.OnLineGames.sbo.

Aidez-moi SVP je ne m'en sortirai pas tout seul.
A voir également:

2 réponses

bjoernik Messages postés 10 Date d'inscription lundi 31 mars 2008 Statut Membre Dernière intervention 3 avril 2008
31 mars 2008 à 19:18
Voici mon rapport Kaspersky:

KASPERSKY ONLINE SCANNER REPORT
Monday, March 31, 2008 2:50:09 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 31/03/2008
Kaspersky Anti-Virus database records: 674426
Scan Settings
Scan using the following antivirus database extended
Scan Archives true
Scan Mail Bases true
Scan Target My Computer
C:\
D:\
E:\
F:\
G:\
H:\
J:\
K:\
Scan Statistics
Total number of scanned objects 53485
Number of viruses found 5
Number of infected objects 60
Number of suspicious objects 0
Duration of the scan process 01:11:47

Infected Object Name Virus Name Last Action
C:\tmf3w3g0.com Infected: Trojan-PSW.Win32.OnLineGames.sbo skipped
C:\AUT0EXEC.BAT Infected: Virus.Win32.VB.eg skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\SYSTEM Object is locked skipped
C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped
C:\WINDOWS\system32\config\DEFAULT Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\drivers\sptd.sys Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\dllcache\Regedit32.com Infected: Virus.Win32.VB.eg skipped
C:\WINDOWS\system32\dllcache\Shell32.com Infected: Virus.Win32.VB.eg skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\rund1132.exe Infected: Virus.Win32.VB.eg skipped
C:\WINDOWS\system32\M5VBVM60.EXE Infected: Virus.Win32.VB.eg skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\dllchache\Empty.jpg Infected: Virus.Win32.VB.eg skipped
C:\WINDOWS\system32\dllchache\Blank.doc Infected: Virus.Win32.VB.eg skipped
C:\WINDOWS\system32\dllchache\Zero.txt Infected: Virus.Win32.VB.eg skipped
C:\WINDOWS\system32\dllchache\Hole.zip Infected: Virus.Win32.VB.eg skipped
C:\WINDOWS\system32\dllchache\Unoccupied.reg Infected: Virus.Win32.VB.eg skipped
C:\WINDOWS\system32\dllchache.exe Infected: Virus.Win32.VB.eg skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\system32.exe Infected: Virus.Win32.VB.eg skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\ASUS\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\ASUS\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\ASUS\Local Settings\Temp\NERO14775\Toolbar.exe Infected: not-a-virus:AdTool.Win32.MyWebSearch.bm skipped
C:\Documents and Settings\ASUS\Local Settings\Temp\~DF3414.tmp Object is locked skipped
C:\Documents and Settings\ASUS\Local Settings\Temp\~DF3513.tmp Object is locked skipped
C:\Documents and Settings\ASUS\Local Settings\Temp\~DF37D1.tmp Object is locked skipped
C:\Documents and Settings\ASUS\Local Settings\Temp\~DF3946.tmp Object is locked skipped
C:\Documents and Settings\ASUS\Local Settings\Temp\~DF41A2.tmp Object is locked skipped
C:\Documents and Settings\ASUS\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\ASUS\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\ASUS\Local Settings\Temporary Internet Files\Content.IE5\OLABKXUF\popup[1].htm Infected: Trojan-Clicker.HTML.Agent.a skipped
C:\Documents and Settings\ASUS\Local Settings\Temporary Internet Files\Content.IE5\TODH3D5F\popup[1].htm Infected: Trojan-Clicker.HTML.Agent.a skipped
C:\Documents and Settings\ASUS\Local Settings\Temporary Internet Files\Content.IE5\MQUDT9S2\popup[1].htm Infected: Trojan-Clicker.HTML.Agent.a skipped
C:\Documents and Settings\ASUS\Local Settings\Temporary Internet Files\Content.IE5\3759159Y\popup[1].htm Infected: Trojan-Clicker.HTML.Agent.a skipped
C:\Documents and Settings\ASUS\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped
C:\Documents and Settings\ASUS\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\ASUS\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\ASUS\Local Settings\Application Data\Ahead\Nero Home\bl.db Object is locked skipped
C:\Documents and Settings\ASUS\Local Settings\Application Data\Ahead\Nero Home\SII.db Object is locked skipped
C:\Documents and Settings\ASUS\Local Settings\Application Data\Ahead\Nero Home\SID.db Object is locked skipped
C:\Documents and Settings\ASUS\Local Settings\Application Data\Ahead\Nero Home\is2.db Object is locked skipped
C:\Documents and Settings\ASUS\Bureau\photo\DCIM.exe Infected: Virus.Win32.VB.eg skipped
C:\Documents and Settings\ASUS\Cookies\index.dat Object is locked skipped
C:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP209\A0032822.exe Infected: Trojan-PSW.Win32.OnLineGames.sbo skipped
C:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP209\A0032823.dll Infected: Trojan-PSW.Win32.OnLineGames.sbn skipped
C:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP209\A0032824.com Infected: Trojan-PSW.Win32.OnLineGames.sbo skipped
C:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP209\A0032863.exe Infected: Trojan-PSW.Win32.OnLineGames.sbo skipped
C:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP209\A0032864.dll Infected: Trojan-PSW.Win32.OnLineGames.sbn skipped
C:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP209\A0032865.com Infected: Trojan-PSW.Win32.OnLineGames.sbo skipped
C:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP209\A0032944.exe Infected: Trojan-PSW.Win32.OnLineGames.sbo skipped
C:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP209\A0032945.DLL Infected: Trojan-PSW.Win32.OnLineGames.sbn skipped
C:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP209\A0032946.com Infected: Trojan-PSW.Win32.OnLineGames.sbo skipped
C:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP209\A0033032.exe Infected: Trojan-PSW.Win32.OnLineGames.sbo skipped
C:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP209\A0033033.dll Infected: Trojan-PSW.Win32.OnLineGames.sbn skipped
C:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP210\A0033130.exe Infected: Virus.Win32.VB.eg skipped
C:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP210\A0033131.exe Infected: Virus.Win32.VB.eg skipped
C:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP212\A0033410.exe Infected: Virus.Win32.VB.eg skipped
C:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP216\A0033895.exe/Toolbar.exe Infected: not-a-virus:AdTool.Win32.MyWebSearch.bm skipped
C:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP216\A0033895.exe 7-Zip: infected - 1 skipped
C:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP218\change.log Object is locked skipped
D:\tmf3w3g0.com Infected: Trojan-PSW.Win32.OnLineGames.sbo skipped
D:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP209\A0032826.com Infected: Trojan-PSW.Win32.OnLineGames.sbo skipped
D:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP209\A0032867.com Infected: Trojan-PSW.Win32.OnLineGames.sbo skipped
D:\System Volume Information\_restore{BD9DC7EA-9D3F-4D1D-870A-5AFE320595D3}\RP209\A0032948.com Infected: Trojan-PSW.Win32.OnLineGames.sbo skipped
F:\DCIM\100CASIO.exe Infected: Virus.Win32.VB.eg skipped
F:\DCIM.exe Infected: Virus.Win32.VB.eg skipped
F:\New Folder.exe Infected: Virus.Win32.VB.eg skipped
F:\Nouveau dossier (2).exe Infected: Virus.Win32.VB.eg skipped
F:\Nouveau dossier.exe Infected: Virus.Win32.VB.eg skipped
F:\p.exe Infected: Virus.Win32.VB.eg skipped
J:\SMA.exe Infected: Virus.Win32.VB.eg skipped
J:\El_Hachemi_Guerouabi_CD1__Chaabi_Alg_rien__Nado_Coeur_\El Hachemi Guerouabi.exe Infected: Virus.Win32.VB.eg skipped
J:\New Folder.exe Infected: Virus.Win32.VB.eg skipped
J:\El_Hachemi_Guerouabi_CD1__Chaabi_Alg_rien__Nado_Coeur_.exe Infected: Virus.Win32.VB.eg skipped
J:\tupac de h.exe Infected: Virus.Win32.VB.eg skipped
J:\SMA\alit.asp_fichiers\default.asp_fichiers.exe Infected: Virus.Win32.VB.eg skipped
J:\SMA\alit.asp_fichiers\the-boxer.asp_fichiers.exe Infected: Virus.Win32.VB.eg skipped
J:\SMA\alit.asp_fichiers\quotesali_fichiers.exe Infected: Virus.Win32.VB.eg skipped
J:\SMA\alit.asp_fichiers.exe Infected: Virus.Win32.VB.eg skipped
J:\SMA\Mohammed Ali’s quotes! « African Press International (API) quotes_fichiers.exe Infected: Virus.Win32.VB.eg skipped
J:\Genesis.exe Infected: Virus.Win32.VB.eg skipped
J:\Kanye_West-College_Dropout-2004-RNS.exe Infected: Virus.Win32.VB.eg skipped
J:\Kanye_West-Late_Registration-2005-RNS.exe Infected: Virus.Win32.VB.eg skipped
J:\Lupe_Fiasco-The_Cool-(RapGodFathers.com).exe Infected: Virus.Win32.VB.eg skipped
K:\New Folder.exe Infected: Virus.Win32.VB.eg skipped
Scan process completed.
0
bjoernik Messages postés 10 Date d'inscription lundi 31 mars 2008 Statut Membre Dernière intervention 3 avril 2008
31 mars 2008 à 19:22
J'ai aussi essayé Hijackthis mais le rapport en .txt ne s'ouvre pas, un peu comme Rav qui se ferme tout seul.
0