Trojan FakeAlertTroyen. FakeAlert piratera le fond de bureau avec une image alertant l'utilisateur que leur système informatique a été contaminé par un logiciel espion. Troyen. FakeAlert change aussi quelques donnés de la base de registre comme, en rendant infirme des permissions pour l'utilisateur pour changer l'image de base et en montrant le bureau actif pour montrer le contenu de web. |
Niveau de danger:
7
7
Type: Trojan
Symptômes communs d'infection:
Autres mutations connues:
- Se connecte à l'Internet sans permission
- Montre des annonces commerciales
- Faillite immédiate des programmes normaux de systèmes
- Connexion à Internet lente
- Menu contextuel ennuyeux
- Ordinateur lent
Comment enlever Trojan FakeAlert vous-même
Les fichiers associés à la contamination (Trojan FakeAlert):
xxx1750.exe
msiconf.exe
funfsnv.dll
ibmsmyi.dll
xxx8458.exe
~tmpd.exe
o06vu2k0.exe
rosqxvmn.dll
c.exe
video1055.cfg.exe
i.exe
lfstbwvd.dll
msxml71.dll
f.exe
g.exe
n.exe
sybjajrz32.dll
MSx.exe
YUR10.exe
a.exe
wbxdpgfentg.dll
svchost.exe
y.exe
x.exe
winmgnt.exe
window.exe
win64.exe
win32e.exe
waol.exe
o.exe
wndutl32.dll
0000005378.exe
time.exe
svcinit.exe
getsn32.dll
svchost32.exe
qttasks.exe
msupdate.exe
mssys.exe
vmgspntbmtk.dll
loader.exe
internet.exe
iexplorer.exe
iedll.exe
funny.exe
funniest.exe
editpad.exe
accesss.exe
video232.cfg.exe
video1063.cfg.exe
dgrpsetu32.dll
setup_110103_3_.exe
video1054.cfg.exe
dfmlxbpkvkd.dll
dfmlxbpkqfv.dll
dfmlxbpkksw.dll
zafhemm.dll
peltodgx.dll
3.exe
dfmlxbpkosq.dll
video1019.cfg.exe
b.exe
YUREA.exe
dkwqgnbe.dll
sdetcs.dll
vszynz.dll
ltelxvds.dll
d.exe
uesiuqcr.exe
csrssc.exe
brastk.exe
userinit.exe
e.exe
skash[1].exe
xxx4470.exe
xxx7949.exe
xxx5533.exe
xxx648.exe
xxx10106.exe
wvfsrqab.dll
~tmpg.exe
~tmpb.exe
Install[2].exe
update.1.014[1].exe
dbxdrv.dll
dbldrv.dll
~tmpq.exe
file.exe
winlogon.exe
iv.exe
procgdyu32.exe
procgdyg32.exe
xwusuhzh.exe
tes1.exe
procgdbu32.exe
install.exe
setup.exe
Install[1].exe
A9installertest_77011807[1].exe
msiconf.exe
funfsnv.dll
ibmsmyi.dll
xxx8458.exe
~tmpd.exe
o06vu2k0.exe
rosqxvmn.dll
c.exe
video1055.cfg.exe
i.exe
lfstbwvd.dll
msxml71.dll
f.exe
g.exe
n.exe
sybjajrz32.dll
MSx.exe
YUR10.exe
a.exe
wbxdpgfentg.dll
svchost.exe
y.exe
x.exe
winmgnt.exe
window.exe
win64.exe
win32e.exe
waol.exe
o.exe
wndutl32.dll
0000005378.exe
time.exe
svcinit.exe
getsn32.dll
svchost32.exe
qttasks.exe
msupdate.exe
mssys.exe
vmgspntbmtk.dll
loader.exe
internet.exe
iexplorer.exe
iedll.exe
funny.exe
funniest.exe
editpad.exe
accesss.exe
video232.cfg.exe
video1063.cfg.exe
dgrpsetu32.dll
setup_110103_3_.exe
video1054.cfg.exe
dfmlxbpkvkd.dll
dfmlxbpkqfv.dll
dfmlxbpkksw.dll
zafhemm.dll
peltodgx.dll
3.exe
dfmlxbpkosq.dll
video1019.cfg.exe
b.exe
YUREA.exe
dkwqgnbe.dll
sdetcs.dll
vszynz.dll
ltelxvds.dll
d.exe
uesiuqcr.exe
csrssc.exe
brastk.exe
userinit.exe
e.exe
skash[1].exe
xxx4470.exe
xxx7949.exe
xxx5533.exe
xxx648.exe
xxx10106.exe
wvfsrqab.dll
~tmpg.exe
~tmpb.exe
Install[2].exe
update.1.014[1].exe
dbxdrv.dll
dbldrv.dll
~tmpq.exe
file.exe
winlogon.exe
iv.exe
procgdyu32.exe
procgdyg32.exe
xwusuhzh.exe
tes1.exe
procgdbu32.exe
install.exe
setup.exe
Install[1].exe
A9installertest_77011807[1].exe
Utilisation de bibliothèques de lien dynamique (Trojan FakeAlert):
funfsnv.dll
ibmsmyi.dll
lfstbwvd.dll
msxml71.dll
getsn32.dll
vmgspntbmtk.dll
sybjajrz32.dll
wbxdpgfentg.dll
dgrpsetu32.dll
wndutl32.dll
dfmlxbpkvkd.dll
dfmlxbpkqfv.dll
dfmlxbpkksw.dll
zafhemm.dll
peltodgx.dll
dfmlxbpkosq.dll
vszynz.dll
sdetcs.dll
dkwqgnbe.dll
ltelxvds.dll
rosqxvmn.dll
wvfsrqab.dll
dbxdrv.dll
dbldrv.dll
ibmsmyi.dll
lfstbwvd.dll
msxml71.dll
getsn32.dll
vmgspntbmtk.dll
sybjajrz32.dll
wbxdpgfentg.dll
dgrpsetu32.dll
wndutl32.dll
dfmlxbpkvkd.dll
dfmlxbpkqfv.dll
dfmlxbpkksw.dll
zafhemm.dll
peltodgx.dll
dfmlxbpkosq.dll
vszynz.dll
sdetcs.dll
dkwqgnbe.dll
ltelxvds.dll
rosqxvmn.dll
wvfsrqab.dll
dbxdrv.dll
dbldrv.dll
Les processus pour tuer (Trojan FakeAlert):
window.exe
win64.exe
win32e.exe
waol.exe
time.exe
svcinit.exe
svchost32.exe
qttasks.exe
~tmpq.exe
msupdate.exe
update.1.014[1].exe
Install[2].exe
~tmpb.exe
~tmpg.exe
xxx10106.exe
xxx648.exe
xxx5533.exe
xxx7949.exe
xxx4470.exe
mssys.exe
skash[1].exe
xxx1750.exe
msiconf.exe
xxx8458.exe
~tmpd.exe
o06vu2k0.exe
c.exe
video1055.cfg.exe
i.exe
loader.exe
o.exe
internet.exe
iexplorer.exe
iedll.exe
funny.exe
funniest.exe
editpad.exe
0000005378.exe
accesss.exe
video232.cfg.exe
video1063.cfg.exe
setup_110103_3_.exe
video1054.cfg.exe
3.exe
video1019.cfg.exe
b.exe
YUREA.exe
d.exe
uesiuqcr.exe
csrssc.exe
brastk.exe
userinit.exe
e.exe
winmgnt.exe
x.exe
y.exe
svchost.exe
a.exe
YUR10.exe
MSx.exe
n.exe
g.exe
f.exe
file.exe
winlogon.exe
iv.exe
procgdyu32.exe
procgdyg32.exe
xwusuhzh.exe
tes1.exe
procgdbu32.exe
install.exe
setup.exe
Install[1].exe
A9installertest_77011807[1].exe
win64.exe
win32e.exe
waol.exe
time.exe
svcinit.exe
svchost32.exe
qttasks.exe
~tmpq.exe
msupdate.exe
update.1.014[1].exe
Install[2].exe
~tmpb.exe
~tmpg.exe
xxx10106.exe
xxx648.exe
xxx5533.exe
xxx7949.exe
xxx4470.exe
mssys.exe
skash[1].exe
xxx1750.exe
msiconf.exe
xxx8458.exe
~tmpd.exe
o06vu2k0.exe
c.exe
video1055.cfg.exe
i.exe
loader.exe
o.exe
internet.exe
iexplorer.exe
iedll.exe
funny.exe
funniest.exe
editpad.exe
0000005378.exe
accesss.exe
video232.cfg.exe
video1063.cfg.exe
setup_110103_3_.exe
video1054.cfg.exe
3.exe
video1019.cfg.exe
b.exe
YUREA.exe
d.exe
uesiuqcr.exe
csrssc.exe
brastk.exe
userinit.exe
e.exe
winmgnt.exe
x.exe
y.exe
svchost.exe
a.exe
YUR10.exe
MSx.exe
n.exe
g.exe
f.exe
file.exe
winlogon.exe
iv.exe
procgdyu32.exe
procgdyg32.exe
xwusuhzh.exe
tes1.exe
procgdbu32.exe
install.exe
setup.exe
Install[1].exe
A9installertest_77011807[1].exe
Enlevez des entrées d'enregistrement (Trojan FakeAlert):
Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{020487CC-FC04-4B1E-863F-D9801796230B}
Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{99f8405b-63d1-421a-83bb-7b4b0642ac28}
{99f8405b-63d1-421a-83bb-7b4b0642ac28}
SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{049e2207-f9ef-40da-91f7-8819d0c33a84}
{049e2207-f9ef-40da-91f7-8819d0c33a84}
Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\procgdyu32.exe
Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\procgdyg32.exe
Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\procgdwb32.exe
Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\procgdnb32.exe
Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\procgdbl32.exe
MICROSOFT\WINDOWS\CURRENTVERSION\RUN\msiexec.exe
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7D1C5E13-29D8-4BCD-B4B8-5F5819A53BAD}
MICROSOFT\WINDOWS\CURRENTVERSION\RUN\Jnskdfmf9eldfd
Microsoft\Internet Explorer\Toolbar\{D92C8B24-6818-4992-AFDD-7E96C92E28BD}
Microsoft\Internet Explorer\Toolbar\{4B87885D-104A-4C24-A9BB-7D795B8039A2}
Microsoft\Internet Explorer\Toolbar\{ED2FC0D9-9ABF-42E3-96F8-049740A1C435}
{65DE966D-11D1-4bb1-BF7E-B8A273514DAF}
Microsoft\Windows\CurrentVersion\Uninstall\Inet Delivery
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39F63908-E12A-4A21-A7EB-67CA3B876C52}
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A013E591-B570-4013-A2D6-E8CB72E80FAF}
Microsoft\Internet Explorer\Toolbar\{DD75AB82-CBE3-4096-825E-C24BFA82B5FF}
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F153B5EF-2158-4FB7-9125-EB012324DFE9}
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A7424EB-44B1-4255-BA99-4C596A85C235}
MICROSOFT\WINDOWS\CURRENTVERSION\RUN\MSFox
{83E03729-A156-46EC-9CB8-AFEDC71AEC0A}
Microsoft\Wind
{4B745BDE-F479-42DE-9C18-37422EA83BCC}
{34B5A18E-62D7-47AD-8801-1DA95CACC9BA}
{3FA72DBF-0A46-4C6E-A998-29EA2BC76977}
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3FA72DBF-0A46-4C6E-A998-29EA2BC76977}
Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{99f8405b-63d1-421a-83bb-7b4b0642ac28}
{99f8405b-63d1-421a-83bb-7b4b0642ac28}
SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{049e2207-f9ef-40da-91f7-8819d0c33a84}
{049e2207-f9ef-40da-91f7-8819d0c33a84}
Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\procgdyu32.exe
Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\procgdyg32.exe
Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\procgdwb32.exe
Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\procgdnb32.exe
Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\procgdbl32.exe
MICROSOFT\WINDOWS\CURRENTVERSION\RUN\msiexec.exe
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7D1C5E13-29D8-4BCD-B4B8-5F5819A53BAD}
MICROSOFT\WINDOWS\CURRENTVERSION\RUN\Jnskdfmf9eldfd
Microsoft\Internet Explorer\Toolbar\{D92C8B24-6818-4992-AFDD-7E96C92E28BD}
Microsoft\Internet Explorer\Toolbar\{4B87885D-104A-4C24-A9BB-7D795B8039A2}
Microsoft\Internet Explorer\Toolbar\{ED2FC0D9-9ABF-42E3-96F8-049740A1C435}
{65DE966D-11D1-4bb1-BF7E-B8A273514DAF}
Microsoft\Windows\CurrentVersion\Uninstall\Inet Delivery
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39F63908-E12A-4A21-A7EB-67CA3B876C52}
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A013E591-B570-4013-A2D6-E8CB72E80FAF}
Microsoft\Internet Explorer\Toolbar\{DD75AB82-CBE3-4096-825E-C24BFA82B5FF}
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F153B5EF-2158-4FB7-9125-EB012324DFE9}
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A7424EB-44B1-4255-BA99-4C596A85C235}
MICROSOFT\WINDOWS\CURRENTVERSION\RUN\MSFox
{83E03729-A156-46EC-9CB8-AFEDC71AEC0A}
Microsoft\Wind
{4B745BDE-F479-42DE-9C18-37422EA83BCC}
{34B5A18E-62D7-47AD-8801-1DA95CACC9BA}
{3FA72DBF-0A46-4C6E-A998-29EA2BC76977}
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3FA72DBF-0A46-4C6E-A998-29EA2BC76977}









Commentaires
Je n'arrive pas éliminer le détestable spyware Antivirus XP 2008
Merci de m'aider
salut j'ai les deux également fakealert et antivirus2008pro, j'ai passé tout mon we dessus et j'arrive pas à les enlever avec tous les antispywares du monde, il n'y aurait pas une facon manuelle?
salut j ai telechargé le spyhunter c vrai il arrive à détecter le trojan.fake alert mais il n arrive pa à le supprimer merci de bien vouloir me dire comment faire