Au secours svp antivirxp08 ne veut pas s enle
qbfinest
Messages postés
13
Statut
Membre
-
qbfinest Messages postés 13 Statut Membre -
qbfinest Messages postés 13 Statut Membre -
Bonjour,
j ai mon fond d ecran ki est aparu en bleu avec un message me disant ke je suis infester de virus et ke je dois mettre un antivirus
mon antivirus va très bien mais j'ai ce nouveau logiciel ki est aparu alors ke je n ai rien demander (antivirxp08)
aider moi a le suprimmer avant ke ca foute en l aire tous mon ordinateur s'il vous plait...je sais plus koi faire
j ai mon fond d ecran ki est aparu en bleu avec un message me disant ke je suis infester de virus et ke je dois mettre un antivirus
mon antivirus va très bien mais j'ai ce nouveau logiciel ki est aparu alors ke je n ai rien demander (antivirxp08)
aider moi a le suprimmer avant ke ca foute en l aire tous mon ordinateur s'il vous plait...je sais plus koi faire
14 réponses
qbfinest,
Télécharger Malwarebytes : http://www.malwarebytes.org/mbam.php
Tutoriel Malwarebytes : http://www.pcinfo-web.com/...
Télécharger Malwarebytes : http://www.malwarebytes.org/mbam.php
Tutoriel Malwarebytes : http://www.pcinfo-web.com/...
J ai eu aussi ce problème un mois passer. J ai donc suprimer mon antivirus et je l ai reinstalé... Sa marcher.
Esperon que c'est le même problème que j ai eu. Bonne chance.
Esperon que c'est le même problème que j ai eu. Bonne chance.
oui bien sur ke j'ai essayer de l enlever via ajouter/supprimer des programmes...ca ne fonctionne pas
mido2... pk dois-je telecharger ce fichier.... c'est koi comme virus ca peut etre grave?
mido2... pk dois-je telecharger ce fichier.... c'est koi comme virus ca peut etre grave?
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
alors j'ai suprimer mon antivirus et ai réinstaler un nouveau mais ca ne change rien il ne veut pas s'enlever.. j'ai meme fais un scan complet mais rien a faire....
merci de repondre a c heures en tous cas...c'est très gentil a vous
merci de repondre a c heures en tous cas...c'est très gentil a vous
As tu n ettoyer ton disque dure?
Sinon, il faudra que tu réinstal windos sans efface tes documans.
Car le fau antivirus n'est pas détectable sur suprimme programme.
Je sais, c'est chien ce tipe de marché qui simpose sur nos ordi, sans notre consantmant.
Sinon, il faudra que tu réinstal windos sans efface tes documans.
Car le fau antivirus n'est pas détectable sur suprimme programme.
Je sais, c'est chien ce tipe de marché qui simpose sur nos ordi, sans notre consantmant.
grave je te le fais pas dire.... mais mino2 ma di de telecharger Télécharger Malwarebytes...et je suis entrain de l'utiliser.... donc j essai déjà ca....ya pas d autre solution ke de réinstaler windows sinon????...j vien de formeter mon ordi y a tous juste 2 mois
il faudrait ke je puisse parler a mido2....je sais pas si il ou elle m entend...mais j aurai surmenet besoin de cette personne pour la suite...merci
voila mon rapport keske j en fais????
Malwarebytes' Anti-Malware 1.24
Version de la base de données: 1053
Windows 5.1.2600 Service Pack 2
04:45:23 15.08.2008
mbam-log-8-15-2008 (04-45-23).txt
Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 129034
Temps écoulé: 38 minute(s), 33 second(s)
Processus mémoire infecté(s): 2
Module(s) mémoire infecté(s): 3
Clé(s) du Registre infectée(s): 3
Valeur(s) du Registre infectée(s): 5
Elément(s) de données du Registre infecté(s): 3
Dossier(s) infecté(s): 12
Fichier(s) infecté(s): 18
Processus mémoire infecté(s):
C:\Program Files\rhc3g1j0en29\rhc3g1j0en29.exe (Rogue.Multiple) -> Unloaded process successfully.
C:\WINDOWS\system32\pphc7g1j0en29.exe (Trojan.FakeAlert) -> Unloaded process successfully.
Module(s) mémoire infecté(s):
C:\Program Files\rhc3g1j0en29\MFC71.dll (Rogue.Multiple) -> Delete on reboot.
C:\Program Files\rhc3g1j0en29\msvcp71.dll (Rogue.Multiple) -> Delete on reboot.
C:\Program Files\rhc3g1j0en29\msvcr71.dll (Rogue.Multiple) -> Delete on reboot.
Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\rhc3g1j0en29 (Rogue.Multiple) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\rhc3g1j0en29 (Rogue.Multiple) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Software Notifier (Rogue.Multiple) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\smrhc3g1j0en29 (Rogue.Multiple) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Control Panel\Desktop\wallpaper (Hijack.Wallpaper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Control Panel\Desktop\originalwallpaper (Hijack.Wallpaper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Control Panel\Desktop\convertedwallpaper (Hijack.Wallpaper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Control Panel\Desktop\scrnsave.exe (Hijack.Wallpaper) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\System (Rootkit.DNSChanger) -> Data: kdgeg.exe -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispBackgroundPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispScrSavPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Dossier(s) infecté(s):
C:\Program Files\rhc3g1j0en29 (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29 (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine\Autorun (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine\Autorun\HKCU (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine\Autorun\HKCU\RunOnce (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine\Autorun\HKLM (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine\Autorun\HKLM\RunOnce (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine\Autorun\StartMenuAllUsers (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine\Autorun\StartMenuCurrentUser (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine\BrowserObjects (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine\Packages (Rogue.Multiple) -> Quarantined and deleted successfully.
Fichier(s) infecté(s):
C:\WINDOWS\system32\kdgeg.exe (Rootkit.DNSChanger) -> Delete on reboot.
C:\Program Files\rhc3g1j0en29\database.dat (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhc3g1j0en29\license.txt (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhc3g1j0en29\MFC71.dll (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhc3g1j0en29\MFC71ENU.DLL (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhc3g1j0en29\msvcp71.dll (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhc3g1j0en29\msvcr71.dll (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhc3g1j0en29\rhc3g1j0en29.exe (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhc3g1j0en29\rhc3g1j0en29.exe.local (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhc3g1j0en29\Uninstall.exe (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\blphc7g1j0en29.scr (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\phc7g1j0en29.bmp (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\pphc7g1j0en29.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\Microsoft\Internet Explorer\Quick Launch\Antivirus XP 2008.lnk (Rogue.Antivirus2008) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\dat69.tmp (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\.tt1.tmp (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\.tt2.tmp (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\.tt4.tmp (Trojan.Downloader) -> Quarantined and deleted successfully.
Malwarebytes' Anti-Malware 1.24
Version de la base de données: 1053
Windows 5.1.2600 Service Pack 2
04:45:23 15.08.2008
mbam-log-8-15-2008 (04-45-23).txt
Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 129034
Temps écoulé: 38 minute(s), 33 second(s)
Processus mémoire infecté(s): 2
Module(s) mémoire infecté(s): 3
Clé(s) du Registre infectée(s): 3
Valeur(s) du Registre infectée(s): 5
Elément(s) de données du Registre infecté(s): 3
Dossier(s) infecté(s): 12
Fichier(s) infecté(s): 18
Processus mémoire infecté(s):
C:\Program Files\rhc3g1j0en29\rhc3g1j0en29.exe (Rogue.Multiple) -> Unloaded process successfully.
C:\WINDOWS\system32\pphc7g1j0en29.exe (Trojan.FakeAlert) -> Unloaded process successfully.
Module(s) mémoire infecté(s):
C:\Program Files\rhc3g1j0en29\MFC71.dll (Rogue.Multiple) -> Delete on reboot.
C:\Program Files\rhc3g1j0en29\msvcp71.dll (Rogue.Multiple) -> Delete on reboot.
C:\Program Files\rhc3g1j0en29\msvcr71.dll (Rogue.Multiple) -> Delete on reboot.
Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\rhc3g1j0en29 (Rogue.Multiple) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\rhc3g1j0en29 (Rogue.Multiple) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Software Notifier (Rogue.Multiple) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\smrhc3g1j0en29 (Rogue.Multiple) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Control Panel\Desktop\wallpaper (Hijack.Wallpaper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Control Panel\Desktop\originalwallpaper (Hijack.Wallpaper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Control Panel\Desktop\convertedwallpaper (Hijack.Wallpaper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Control Panel\Desktop\scrnsave.exe (Hijack.Wallpaper) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\System (Rootkit.DNSChanger) -> Data: kdgeg.exe -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispBackgroundPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispScrSavPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Dossier(s) infecté(s):
C:\Program Files\rhc3g1j0en29 (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29 (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine\Autorun (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine\Autorun\HKCU (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine\Autorun\HKCU\RunOnce (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine\Autorun\HKLM (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine\Autorun\HKLM\RunOnce (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine\Autorun\StartMenuAllUsers (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine\Autorun\StartMenuCurrentUser (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine\BrowserObjects (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\rhc3g1j0en29\Quarantine\Packages (Rogue.Multiple) -> Quarantined and deleted successfully.
Fichier(s) infecté(s):
C:\WINDOWS\system32\kdgeg.exe (Rootkit.DNSChanger) -> Delete on reboot.
C:\Program Files\rhc3g1j0en29\database.dat (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhc3g1j0en29\license.txt (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhc3g1j0en29\MFC71.dll (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhc3g1j0en29\MFC71ENU.DLL (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhc3g1j0en29\msvcp71.dll (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhc3g1j0en29\msvcr71.dll (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhc3g1j0en29\rhc3g1j0en29.exe (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhc3g1j0en29\rhc3g1j0en29.exe.local (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Program Files\rhc3g1j0en29\Uninstall.exe (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\blphc7g1j0en29.scr (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\phc7g1j0en29.bmp (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\pphc7g1j0en29.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Application Data\Microsoft\Internet Explorer\Quick Launch\Antivirus XP 2008.lnk (Rogue.Antivirus2008) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\dat69.tmp (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\.tt1.tmp (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\.tt2.tmp (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\.tt4.tmp (Trojan.Downloader) -> Quarantined and deleted successfully.