Interpreté moi se rapport HijackThis.SVP.merc - Page 2

Résolu
Précédent
  • 1
  • 2
  1. fethi031 Messages postés 40 Statut Membre 2
     
    Non j'ai pas fais d'analyse avec malwarebytes, je le connai meme pas.
    0
  2. geoffrey5 Messages postés 14008 Statut Contributeur sécurité 10
     
    ok... Fais ceci stp :

    ▶ Télécharge malwarebytes

    ▶ Voici mon tuto pour bien l installer et bien l utiliser :

    https://www.androidworld.fr/

    aide toi bien du tuto pour supprimer correctement ce qu il aura trouvé

    Après l analyse, redémarre le pc et poste le rapport !!
    0
  3. fethi031 Messages postés 40 Statut Membre 2
     
    Malwarebytes' Anti-Malware 1.29
    Version de la base de données: 1305
    Windows 5.1.2600 Service Pack 2

    22/10/2008 16:13:46
    mbam-log-2008-10-22 (16-13-46).txt

    Type de recherche: Examen complet (C:\|D:\|)
    Eléments examinés: 89465
    Temps écoulé: 46 minute(s), 45 second(s)

    Processus mémoire infecté(s): 0
    Module(s) mémoire infecté(s): 0
    Clé(s) du Registre infectée(s): 0
    Valeur(s) du Registre infectée(s): 2
    Elément(s) de données du Registre infecté(s): 0
    Dossier(s) infecté(s): 0
    Fichier(s) infecté(s): 18

    Processus mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Module(s) mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Clé(s) du Registre infectée(s):
    (Aucun élément nuisible détecté)

    Valeur(s) du Registre infectée(s):
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\negykup (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ponno (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.

    Elément(s) de données du Registre infecté(s):
    (Aucun élément nuisible détecté)

    Dossier(s) infecté(s):
    (Aucun élément nuisible détecté)

    Fichier(s) infecté(s):
    C:\WINDOWS\system32\wevezekur.exe (Trojan.FakeAlert.H) -> Delete on reboot.
    C:\WINDOWS\system32\fepedoubig.exe (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
    C:\Qoobox\Quarantine\C\WINDOWS\system32\gebrssrs.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
    C:\Qoobox\Quarantine\C\WINDOWS\system32\iifCstus.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
    C:\Qoobox\Quarantine\C\WINDOWS\system32\jnasnjvo.exe.vir (Trojan.LowZones) -> Quarantined and deleted successfully.
    C:\Qoobox\Quarantine\C\WINDOWS\system32\jtepworo.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
    C:\Qoobox\Quarantine\C\WINDOWS\system32\kmscpyci.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
    C:\Qoobox\Quarantine\C\WINDOWS\system32\okeerowq.exe.vir (Trojan.LowZones) -> Quarantined and deleted successfully.
    C:\Qoobox\Quarantine\C\WINDOWS\system32\yxgrhksd.exe.vir (Trojan.LowZones) -> Quarantined and deleted successfully.
    C:\System Volume Information\_restore{3AC03694-FA45-4536-B2C7-9783BBFBA99F}\RP47\A0033889.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
    C:\System Volume Information\_restore{3AC03694-FA45-4536-B2C7-9783BBFBA99F}\RP48\A0035964.exe (Adware.BHO) -> Quarantined and deleted successfully.
    C:\System Volume Information\_restore{3AC03694-FA45-4536-B2C7-9783BBFBA99F}\RP52\A0038120.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
    C:\System Volume Information\_restore{3AC03694-FA45-4536-B2C7-9783BBFBA99F}\RP52\A0038123.exe (Trojan.LowZones) -> Quarantined and deleted successfully.
    C:\System Volume Information\_restore{3AC03694-FA45-4536-B2C7-9783BBFBA99F}\RP52\A0038124.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
    C:\System Volume Information\_restore{3AC03694-FA45-4536-B2C7-9783BBFBA99F}\RP52\A0038125.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
    C:\System Volume Information\_restore{3AC03694-FA45-4536-B2C7-9783BBFBA99F}\RP52\A0038127.exe (Trojan.LowZones) -> Quarantined and deleted successfully.
    C:\System Volume Information\_restore{3AC03694-FA45-4536-B2C7-9783BBFBA99F}\RP55\A0038448.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\TDSSoixh.dll (Rootkit.Agent) -> Quarantined and deleted successfully.
    0
  4. geoffrey5 Messages postés 14008 Statut Contributeur sécurité 10
     
    ok... est ce que tu as encore des problèmes ?
    0
Précédent
  • 1
  • 2