Pollution antivirus xp 2008

Résolu
rene45 Messages postés 9 Date d'inscription   Statut Membre Dernière intervention   -  
rene45 Messages postés 9 Date d'inscription   Statut Membre Dernière intervention   -
Bonjour,
Depuis quelques heures je suis ennuyé par antivirus xp 2008 qio vient de s'installer et qui me détecte des virus, il m'affiche un fond d'écran signalant "spyware detected" que je ne peux supprimer

que faire ?

merci
A voir également:

5 réponses

chefpunky Messages postés 673 Date d'inscription   Statut Membre Dernière intervention   31
 
Imprime c' est instruction car tout devre etre fermé!!

!!comment enlever antivirus xp2008!!

Telcharge MBAM
https://www.commentcamarche.net/telecharger/ 34055379 malwarebyte s anti malware

1.1 met le a jour
1.2 fais une recherche COMPLETE
1.3 a la fin du scan click sur "afficher le resultat"
1.5 nettoit tout
1.6 poste le rapport sur ce forum.
2
rene45 Messages postés 9 Date d'inscription   Statut Membre Dernière intervention   1
 
J'ai passé malwarebytes comme prévu

apparemment je n'ai plus le problème

voici le rapport obtenu

merci

Malwarebytes' Anti-Malware 1.24
Version de la base de données: 1026
Windows 5.1.2600 Service Pack 2

12:31:03 05/08/2008
mbam-log-8-5-2008 (12-31-03).txt

Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 157320
Temps écoulé: 1 hour(s), 18 minute(s), 4 second(s)

Processus mémoire infecté(s): 5
Module(s) mémoire infecté(s): 3
Clé(s) du Registre infectée(s): 4
Valeur(s) du Registre infectée(s): 6
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 12
Fichier(s) infecté(s): 17

Processus mémoire infecté(s):
C:\Program Files\rhcjg8j0ecfp\rhcjg8j0ecfp.exe (Rogue.Multiple) -> Unloaded process successfully.
C:\WINDOWS\system32\blphcng8j0ecfp.scr (Trojan.FakeAlert) -> Unloaded process successfully.
C:\WINDOWS\system32\lphcng8j0ecfp.exe (Trojan.FakeAlert) -> Unloaded process successfully.
C:\WINDOWS\system32\pphcng8j0ecfp.exe (Trojan.FakeAlert) -> Unloaded process successfully.
C:\WINDOWS\system32\CbEvtSvc.exe (Trojan.MyDoom) -> Unloaded process successfully.

Module(s) mémoire infecté(s):
C:\Program Files\rhcjg8j0ecfp\MFC71.dll (Rogue.Multiple) -> Delete on reboot.
C:\Program Files\rhcjg8j0ecfp\msvcp71.dll (Rogue.Multiple) -> Delete on reboot.
C:\Program Files\rhcjg8j0ecfp\msvcr71.dll (Rogue.Multiple) -> Delete on reboot.

Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\rhcjg8j0ecfp (Rogue.Multiple) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\rhcjg8j0ecfp (Rogue.Multiple) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\CbEvtSvc (Trojan.MyDoom) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Software Notifier (Rogue.Multiple) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\smrhcjg8j0ecfp (Rogue.Multiple) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lphcng8j0ecfp (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Control Panel\Desktop\wallpaper (Hijack.Wallpaper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Control Panel\Desktop\originalwallpaper (Hijack.Wallpaper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Control Panel\Desktop\convertedwallpaper (Hijack.Wallpaper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Control Panel\Desktop\scrnsave.exe (Hijack.Wallpaper) -> Quarantined and deleted successfully.

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
C:\Program Files\rhcjg8j0ecfp (Rogue.Multiple) -> Delete on reboot.
C:\Documents and Settings\Propriétaire\Application Data\rhcjg8j0ecfp (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Propriétaire\Application Data\rhcjg8j0ecfp\Quarantine (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Propriétaire\Application Data\rhcjg8j0ecfp\Quarantine\Autorun (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Propriétaire\Application Data\rhcjg8j0ecfp\Quarantine\Autorun\HKCU (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Propriétaire\Application Data\rhcjg8j0ecfp\Quarantine\Autorun\HKCU\RunOnce (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Propriétaire\Application Data\rhcjg8j0ecfp\Quarantine\Autorun\HKLM (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Propriétaire\Application Data\rhcjg8j0ecfp\Quarantine\Autorun\HKLM\RunOnce (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Propriétaire\Application Data\rhcjg8j0ecfp\Quarantine\Autorun\StartMenuAllUsers (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Propriétaire\Application Data\rhcjg8j0ecfp\Quarantine\Autorun\StartMenuCurrentUser (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Propriétaire\Application Data\rhcjg8j0ecfp\Quarantine\BrowserObjects (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Propriétaire\Application Data\rhcjg8j0ecfp\Quarantine\Packages (Rogue.Multiple) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
C:\Program Files\rhcjg8j0ecfp\database.dat (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhcjg8j0ecfp\license.txt (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhcjg8j0ecfp\MFC71.dll (Rogue.Multiple) -> Delete on reboot.
C:\Program Files\rhcjg8j0ecfp\MFC71ENU.DLL (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhcjg8j0ecfp\msvcp71.dll (Rogue.Multiple) -> Delete on reboot.
C:\Program Files\rhcjg8j0ecfp\msvcr71.dll (Rogue.Multiple) -> Delete on reboot.
C:\Program Files\rhcjg8j0ecfp\rhcjg8j0ecfp.exe (Rogue.Multiple) -> Delete on reboot.
C:\Program Files\rhcjg8j0ecfp\rhcjg8j0ecfp.exe.local (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhcjg8j0ecfp\Uninstall.exe (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Bureau\Antivirus XP 2008.lnk (Rogue.Antivirus) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\blphcng8j0ecfp.scr (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\lphcng8j0ecfp.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\phcng8j0ecfp.bmp (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\pphcng8j0ecfp.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\CbEvtSvc.exe (Trojan.MyDoom) -> Quarantined and deleted successfully.
C:\Documents and Settings\Propriétaire\Application Data\Microsoft\Internet Explorer\Quick Launch\Antivirus XP 2008.lnk (Rogue.Antivirus2008) -> Quarantined and deleted successfully.
C:\Documents and Settings\Propriétaire\Local Settings\Temp\.tt4.tmp (Trojan.Downloader) -> Quarantined and deleted successfully.
0
chefpunky Messages postés 673 Date d'inscription   Statut Membre Dernière intervention   31
 
as tu encore des probleme d' alerte et antivirus 2008
0
PhilKMBE Messages postés 1 Date d'inscription   Statut Membre Dernière intervention  
 
Bonjour,

J'ai trouvé et testé cette solution déjà sur 4 PC's infectés soit avec l'affichage de "antivirus 2008" ou pages de publicités qui s'ouvrent réguliérement:

Malwarebytes' Anti-Malware 1.24 (version gratuite)
https://www.download3k.com/Install-Malwarebytes-Anti-Malware.html
https://www.clubic.com/telecharger-fiche215092-malwarebytes-anti-malware.html
Perform quick scan + fermer toutes les applications + tourner scan anti-virus complet.

REM: Sur PC Privé, j'ai installé "antivir-personal-edition"
https://www.clubic.com/telecharger-fiche10821-avira-antivir-personal-free-antivirus.html

Bonne journée,

Philippe
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
rene45 Messages postés 9 Date d'inscription   Statut Membre Dernière intervention   1
 
Merci à tous

tout est rentré dans l'ordre

bonne journée

René
0