Sup virus dans mon ordi

sissi4027 Messages postés 49 Statut Membre -  
^^Marie^^ Messages postés 41884 Date d'inscription   Statut Membre Dernière intervention   -
Bonjour,

Je souhaite enlever un espion ou bien virus dans mon ordi comment faire?? merci de me venir en aide
Configuration: Windows XP
Firefox 3.0.2

4 réponses

  1. toptitbal Messages postés 5341 Date d'inscription   Statut Contributeur sécurité Dernière intervention   2 232
     
    Bonjour

    Télécharge le fichier d’installation d’Hijackthis en cliquant sur ce lien

    http://www.trendsecure.com/portal/en-US/tools/security_tools/hijackthis/download

    * Enregistre HJTInstall.exe sur ton bureau.

    * Double-clique sur HJTInstall.exe pour lancer le programme

    Tuto : https://www.malekal.com/tutoriel-hijackthis/
    http://pagesperso-orange.fr/rginformatique/section%20virus/Hijenr.gif
    http://pagesperso-orange.fr/rginformatique/section%20virus/demohijack.htm

    * Accepte la license en cliquant sur le bouton "I Accept"
    * Choisis l'option "Do a system scan and save a log file"
    * Clique sur "Save log" pour enregistrer le rapport qui s'ouvrira avec le bloc-note
    * Clique sur "Edition -> Sélectionner tout", puis sur "Edition -> Copier" pour copier tout le contenu du rapport

    * Colle le rapport que tu viens de copier sur ce forum
    0
    1. sissi4027 Messages postés 49 Statut Membre
       
      Bjr

      Je ne peux pas télécharger cela ne fonctionne pas!
      -1
  2. Utilisateur anonyme
     
    Salut Telecharge Malwarebytes' Anti-Malware et Spybot - Search & Destroy fait un scan et le tour et joue
    -1
  3. Utilisateur anonyme
     
    Essai le mode sans echec avec prise en charge reseau
    -1
    1. sissi4027 Messages postés 49 Statut Membre
       
      Bjr

      Je viens d'installer malwarebytes. Il tourne pour le moment et à déjà trouvé 3 éléments infectés, j'attend la fin!!
      -1
    2. sissi4027 Messages postés 49 Statut Membre
       
      il y a 46 éléments infectés que doit-je faire maintenant je répond quoi?
      -1
    3. sissi4027 Messages postés 49 Statut Membre
       
      voici le résultat de malwarebytes
      Malwarebytes' Anti-Malware 1.28
      Version de la base de données: 1234
      Windows 5.1.2600 Service Pack 2

      06/10/2008 18:28:17
      mbam-log-2008-10-06 (18-28-16).txt

      Type de recherche: Examen rapide
      Eléments examinés: 48123
      Temps écoulé: 11 minute(s), 26 second(s)

      Processus mémoire infecté(s): 0
      Module(s) mémoire infecté(s): 1
      Clé(s) du Registre infectée(s): 6
      Valeur(s) du Registre infectée(s): 2
      Elément(s) de données du Registre infecté(s): 3
      Dossier(s) infecté(s): 4
      Fichier(s) infecté(s): 31

      Processus mémoire infecté(s):
      (Aucun élément nuisible détecté)

      Module(s) mémoire infecté(s):
      C:\WINDOWS\system32\__c0051175.dat (Trojan.Agent) -> Delete on reboot.

      Clé(s) du Registre infectée(s):
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\tdssdata (Trojan.Agent) -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\SOFTWARE\tdss (Trojan.Agent) -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\__c0051175 (Trojan.Vundo) -> Delete on reboot.
      HKEY_CLASSES_ROOT\TypeLib\{3090402e-b1ce-43d1-8950-20fe0e88add9} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
      HKEY_CLASSES_ROOT\Interface\{d585a96e-6899-465a-9485-3e6a194db664} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
      HKEY_CLASSES_ROOT\Interface\{df1cedbd-e8d8-4490-b5ed-17377b36ccad} (Trojan.FakeAlert) -> Quarantined and deleted successfully.

      Valeur(s) du Registre infectée(s):
      HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\smart antivirus-2009.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
      HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ (Trojan.Agent) -> Quarantined and deleted successfully.

      Elément(s) de données du Registre infecté(s):
      HKEY_CLASSES_ROOT\scrfile\shell\open\command\ (Broken.OpenCommand) -> Bad: ("%1" %*) Good: ("%1" /S) -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Trojan.Agent) -> Data: c:\windows\system32\ -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Trojan.Agent) -> Data: system32\ -> Quarantined and deleted successfully.

      Dossier(s) infecté(s):
      C:\Program Files\PCHealthCenter (Trojan.Fakealert) -> Quarantined and deleted successfully.
      C:\Program Files\Smart Antivirus 2009 (Rogue.SmartAntivirus) -> Quarantined and deleted successfully.
      C:\Program Files\Smart Antivirus 2009\Infected (Rogue.SmartAntivirus) -> Quarantined and deleted successfully.
      C:\Program Files\Smart Antivirus 2009\Suspicious (Rogue.SmartAntivirus) -> Quarantined and deleted successfully.

      Fichier(s) infecté(s):
      C:\Program Files\Smart Antivirus 2009\Smart Antivirus-2009.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
      C:\Documents and Settings\Administrateur\Local Settings\Temp\pwrmgr.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
      C:\Documents and Settings\Administrateur\Local Settings\Temp\smchk.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
      C:\Documents and Settings\Administrateur\Local Settings\Temp\_A00F10A19B4.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
      C:\Program Files\PCHealthCenter\0.gif (Trojan.Fakealert) -> Quarantined and deleted successfully.
      C:\Program Files\PCHealthCenter\1.gif (Trojan.Fakealert) -> Quarantined and deleted successfully.
      C:\Program Files\PCHealthCenter\1.ico (Trojan.Fakealert) -> Quarantined and deleted successfully.
      C:\Program Files\PCHealthCenter\2.gif (Trojan.Fakealert) -> Quarantined and deleted successfully.
      C:\Program Files\PCHealthCenter\2.ico (Trojan.Fakealert) -> Quarantined and deleted successfully.
      C:\Program Files\PCHealthCenter\3.gif (Trojan.Fakealert) -> Quarantined and deleted successfully.
      C:\Program Files\PCHealthCenter\5.exe (Trojan.Fakealert) -> Quarantined and deleted successfully.
      C:\Program Files\PCHealthCenter\7.exe (Trojan.Fakealert) -> Quarantined and deleted successfully.
      C:\Program Files\PCHealthCenter\sc.html (Trojan.Fakealert) -> Quarantined and deleted successfully.
      C:\Program Files\Smart Antivirus 2009\vscan.tsi (Rogue.SmartAntivirus) -> Quarantined and deleted successfully.
      C:\Program Files\Smart Antivirus 2009\zlib.dll (Rogue.SmartAntivirus) -> Quarantined and deleted successfully.
      C:\Documents and Settings\Administrateur\Application Data\Microsoft\Internet Explorer\Quick Launch\Smart Antivirus-2009.lnk (Rogue.SmartAntivirus) -> Quarantined and deleted successfully.
      C:\Documents and Settings\Administrateur\Application Data\Adobe\Player.exe (Trojan.Agent) -> Quarantined and deleted successfully.
      C:\WINDOWS\system32\ (Trojan.Agent) -> Delete on reboot.
      C:\WINDOWS\system32\drivers\ (Trojan.Agent) -> Delete on reboot.
      C:\WINDOWS\system32\__c0051175.dat (Trojan.Vundo) -> Delete on reboot.
      C:\Documents and Settings\Administrateur\Local Settings\Temp\msfont32.dll (Trojan.FakeAlert) -> Quarantined and deleted successfully.
      C:\WINDOWS\system32\tdssadw.dll (Trojan.TDSS) -> Delete on reboot.
      C:\WINDOWS\system32\TDSSerrors.log (Trojan.TDSS) -> Delete on reboot.
      C:\WINDOWS\system32\tdssinit.dll (Rootkit.Agent) -> Delete on reboot.
      C:\WINDOWS\system32\TDSSl.dll (Trojan.TDSS) -> Delete on reboot.
      C:\WINDOWS\system32\tdsslog.dll (Trojan.TDSS) -> Delete on reboot.
      C:\WINDOWS\system32\tdssmain.dll (Rootkit.Agent) -> Delete on reboot.
      C:\WINDOWS\system32\tdssserf.dll (Rootkit.Agent) -> Delete on reboot.
      C:\WINDOWS\system32\tdssserf1.dll (Trojan.TDSS) -> Delete on reboot.
      C:\WINDOWS\system32\tdssservers.dat (Trojan.TDSS) -> Delete on reboot.
      C:\WINDOWS\system32\drivers\tdssserv.sys (Rootkit.Agent) -> Delete on reboot.
      -1
      1. Utilisateur anonyme > sissi4027 Messages postés 49 Statut Membre
         
        tu a installe un Rogue.SmartAntivirus c'est un faux antivirus telecharge RogueRemover FREE met le a jour et fait un scan tous ca apre avoir supprime avec Malwarebite tien moi au courant
        -1
      2. ^^Marie^^ Messages postés 41884 Date d'inscription   Statut Membre Dernière intervention   3 280 > Utilisateur anonyme
         
        Le rapport montre bien que TOUT a été supprimé.

        Quarantined and deleted successfully.
        Delete on reboot.
        -1
  4. Utilisateur anonyme
     
    supprime les tous et tien moi ou courant enois le rapport ici
    -1
    1. toptitbal Messages postés 5341 Date d'inscription   Statut Contributeur sécurité Dernière intervention   2 232
       
      Ils sont supprimés !
      -1