Trojan win.32boh.df
Résolu
Bonjour,
je voudrai savoir comment on fait pour sen debarasser.j ai reussi a effacer virtumonde en utilisant vundofix;mais win32 est tjrs la merci
je voudrai savoir comment on fait pour sen debarasser.j ai reussi a effacer virtumonde en utilisant vundofix;mais win32 est tjrs la merci
Configuration: Windows XP Internet Explorer 6.0
26 réponses
-
A+ jlpjlp,
;-)
-
Contributeur sécuritéslt
philo2100
oui pas la peine d'avoir 10 posts ouverts!!!
a plus -
--
*****Dans chaque église, il y a toujours quelque chose qui cloche******
--->Je n'ai pas la prétention de résoudre les problèmes, j'essaie simplement de rendre service ;-) -
je crois que tu as raison, jlpjlp !
Vu les 3 topics, et l'état d'avancement du 1 (philae) il est préférable de fermer celui-ci.
cordialement.
;-) A+
-
Contributeur sécuritéCES POST EST FERME
-
Ben, oui....sinon, ça va tourner en "salade" indescriptible....
ce qui m'étonne c'est g persiste !
"Bonjour,
je voudrai savoir comment on fait pour sen debarasser.j ai reussi a effacer virtumonde en utilisant vundofix;mais win32 est tjrs la merci"
;-)
-
Contributeur sécuritéon a déjà continué depuis sur l'autre post, retournes y je t'y attends et t'ai répondu
-
on continue avec g svp
-
Contributeur sécuritéhello TLM
bein oui ./......
j'avais pas vu tout ça moi....lol
on continue où ??
-
sorry ,desoler
-
tu veux dire que tu as un troisième post en cour ?
ceci ?
http://www.commentcamarche.net/forum/affich 4262972 trojan win 32 bohdf#0
-
ben je suis avec philoe83 , on avanc e je crois mon nom d auteur est g
-
Il me semble...reste cool !!!
la panique ne sert pas en cas d'infection.
Le fait de multi-poster met le deuxième helper en porte-à-faux, par rapport aux instructions du premier, de plus ça devient une salade.
Et dans cette salade en général c'est le virus qui gagne du terrain....à toi donc, de prendre ça en considération, dans ton propre intérêt, et pas courtoisie envers le helper.
----------------------------------------------------
Tu en es où ?
-
desoler du desagrement j ai paniquer
-
salut jlpjlp
double-post qui finissent en queue de boudin !
Pas cool cette manière de faire !
http://www.commentcamarche.net/forum/affich 4261328 ki peux maider a analyser mon rapport hijack
je marque le post en résolu.
-
merci mais je pense kon peux fermer la discusiion jai kelkun ki maide
-
Contributeur sécuritéil faudrait un rapport combofix
pour decompresser un fichier
avec winzip:
http://www.logitheque.com/texte.asp?T=Decompresser
ou sinon telecharger 7 ZIP pour pouvoir decompresser: http://www.7-zip.org/fr/
_____________________
combofix (colle le rapport)
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
___________________________
RECOLLER UN RAPPORT HIJACKTHIS EN LE RENOMMANT COMME INDIQU2 DANS MON PREMIER MESSAGE
a plus -
ki peux maider?
-
SOS LOL
-
voici le rapport du scan en ligne avec bitdefender
Rapport d'analyse généré à: Sat, Dec 08, 2007 - 00:52:39
Voie d'analyse: A:\;C:\;D:\;
Statistiques
Temps
01:14:09
Fichiers
200525
Directoires
4493
Secteurs de boot
2
Archives
2148
Paquets programmes
5898
Résultats
Virus identifiés
10
Fichiers infectés
18
Fichiers suspects
0
Avertissements
0
Désinfectés
0
Fichiers effacés
18
Info sur les moteurs
Définition virus
880704
Version des moteurs
AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)
Analyse des plugins
14
Archive des plugins
38
Unpack des plugins
7
E-mail plugins
6
Système plugins
1
Paramètres d'analyse
Première action
Désinfecté
Seconde Action
Supprimé
Heuristique
Oui
Acceptez les avertissements
Oui
Extensions analysées
*;
Excludez les extensions
Analyse d'emails
Oui
Analyse des Archives
Oui
Analyser paquets programmes
Oui
Analyse des fichiers
Oui
Analyse de boot
Oui
Fichier analysé
Statut
C:\Program Files\DAEMON Tools\SetupDTSB.exe=>(CAB Sfx r)=>VVSN.exe
Infecté par: Generic.Adw.SaveNow.56AD4696
C:\Program Files\DAEMON Tools\SetupDTSB.exe=>(CAB Sfx r)=>VVSN.exe
Echec de la désinfection
C:\Program Files\DAEMON Tools\SetupDTSB.exe=>(CAB Sfx r)=>VVSN.exe
Supprimé
C:\Program Files\DAEMON Tools\SetupDTSB.exe=>(CAB Sfx r)
Echec de la mise à jour
C:\System Volume Information\_restore{F10B95C6-EA74-46AE-9729-9F4CAB51CFD2}\RP455\A0133735.exe=>(NSIS o)=>lzma_nsis0005=>(NSIS o)=>zlib_nsis0001
Infecté par: Trojan.Hotbar.A
C:\System Volume Information\_restore{F10B95C6-EA74-46AE-9729-9F4CAB51CFD2}\RP455\A0133735.exe=>(NSIS o)=>lzma_nsis0005=>(NSIS o)=>zlib_nsis0001
Echec de la désinfection
C:\System Volume Information\_restore{F10B95C6-EA74-46AE-9729-9F4CAB51CFD2}\RP455\A0133735.exe=>(NSIS o)=>lzma_nsis0005=>(NSIS o)=>zlib_nsis0001
Supprimé
C:\System Volume Information\_restore{F10B95C6-EA74-46AE-9729-9F4CAB51CFD2}\RP455\A0133735.exe=>(NSIS o)=>lzma_nsis0005=>(NSIS o)
Echec de la mise à jour
C:\System Volume Information\_restore{F10B95C6-EA74-46AE-9729-9F4CAB51CFD2}\RP455\A0133735.exe=>(NSIS o)=>lzma_nsis0005=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Infecté par: Trojan.Hotbar.A
C:\System Volume Information\_restore{F10B95C6-EA74-46AE-9729-9F4CAB51CFD2}\RP455\A0133735.exe=>(NSIS o)=>lzma_nsis0005=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Echec de la désinfection
C:\System Volume Information\_restore{F10B95C6-EA74-46AE-9729-9F4CAB51CFD2}\RP455\A0133735.exe=>(NSIS o)=>lzma_nsis0005=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Supprimé
C:\System Volume Information\_restore{F10B95C6-EA74-46AE-9729-9F4CAB51CFD2}\RP455\A0133735.exe=>(NSIS o)=>lzma_nsis0005=>(NSIS o)=>zlib_nsis0006=>(NSIS g)
Echec de la mise à jour
C:\System Volume Information\_restore{F10B95C6-EA74-46AE-9729-9F4CAB51CFD2}\RP455\A0133775.exe=>(NSIS o)=>zlib_nsis0001
Infecté par: Trojan.Hotbar.A
C:\System Volume Information\_restore{F10B95C6-EA74-46AE-9729-9F4CAB51CFD2}\RP455\A0133775.exe=>(NSIS o)=>zlib_nsis0001
Echec de la désinfection
C:\System Volume Information\_restore{F10B95C6-EA74-46AE-9729-9F4CAB51CFD2}\RP455\A0133775.exe=>(NSIS o)=>zlib_nsis0001
Supprimé
C:\System Volume Information\_restore{F10B95C6-EA74-46AE-9729-9F4CAB51CFD2}\RP455\A0133775.exe=>(NSIS o)
Echec de la mise à jour
C:\System Volume Information\_restore{F10B95C6-EA74-46AE-9729-9F4CAB51CFD2}\RP507\A0173006.dll
Infecté par: DeepScan:Generic.Virtumod.5F3F0E89
C:\System Volume Information\_restore{F10B95C6-EA74-46AE-9729-9F4CAB51CFD2}\RP507\A0173006.dll
Echec de la désinfection
C:\System Volume Information\_restore{F10B95C6-EA74-46AE-9729-9F4CAB51CFD2}\RP507\A0173006.dll
Supprimé
C:\WINDOWS\system32\dtkiarax.dll
Infecté par: Trojan.Vundo.DRR
C:\WINDOWS\system32\dtkiarax.dll
Echec de la désinfection
C:\WINDOWS\system32\dtkiarax.dll
Supprimé
C:\WINDOWS\system32\durjtubn.dll
Infecté par: Trojan.Vundo.DRV
C:\WINDOWS\system32\durjtubn.dll
Echec de la désinfection
C:\WINDOWS\system32\durjtubn.dll
Supprimé
C:\WINDOWS\system32\fuapylrc.dll
Infecté par: Trojan.Vundo.DRF
C:\WINDOWS\system32\fuapylrc.dll
Echec de la désinfection
C:\WINDOWS\system32\fuapylrc.dll
Supprimé
C:\WINDOWS\system32\jfdlstil.dll
Infecté par: Trojan.Vundo.DQO
C:\WINDOWS\system32\jfdlstil.dll
Echec de la désinfection
C:\WINDOWS\system32\jfdlstil.dll
Supprimé
C:\WINDOWS\system32\plwlosig.dll
Infecté par: Trojan.Vundo.DQO
C:\WINDOWS\system32\plwlosig.dll
Echec de la désinfection
C:\WINDOWS\system32\plwlosig.dll
Supprimé
C:\WINDOWS\system32\ptvuxpeb.dll
Infecté par: Trojan.Vundo.DQO
C:\WINDOWS\system32\ptvuxpeb.dll
Echec de la désinfection
C:\WINDOWS\system32\ptvuxpeb.dll
Supprimé
C:\WINDOWS\system32\qmuntjvq.dll
Infecté par: Trojan.Agent.AFSH
C:\WINDOWS\system32\qmuntjvq.dll
Echec de la désinfection
C:\WINDOWS\system32\qmuntjvq.dll
Supprimé
C:\WINDOWS\system32\qofxoubl.dll
Infecté par: Trojan.Vundo.DRL
C:\WINDOWS\system32\qofxoubl.dll
Echec de la désinfection
C:\WINDOWS\system32\qofxoubl.dll
Supprimé
C:\WINDOWS\system32\qxgxeuee.dll
Infecté par: Trojan.Vundo.DRV
C:\WINDOWS\system32\qxgxeuee.dll
Echec de la désinfection
C:\WINDOWS\system32\qxgxeuee.dll
Supprimé
C:\WINDOWS\system32\sqbnigww.dll
Infecté par: Trojan.Vundo.DQO
C:\WINDOWS\system32\sqbnigww.dll
Echec de la désinfection
C:\WINDOWS\system32\sqbnigww.dll
Supprimé
C:\WINDOWS\system32\vaeegudd.dll
Infecté par: Trojan.Agent.AFSH
C:\WINDOWS\system32\vaeegudd.dll
Echec de la désinfection
C:\WINDOWS\system32\vaeegudd.dll
Supprimé
C:\WINDOWS\system32\vxuqvpyy.dll
Infecté par: Trojan.Vundo.DRV
C:\WINDOWS\system32\vxuqvpyy.dll
Echec de la désinfection
C:\WINDOWS\system32\vxuqvpyy.dll
Supprimé
C:\WINDOWS\system32\wugifxgr.dll
Infecté par: Trojan.Vundo.DRK
C:\WINDOWS\system32\wugifxgr.dll
Echec de la désinfection
C:\WINDOWS\system32\wugifxgr.dll
Supprimé
- 1
- 2
Suivant