bonjour me voila avec un nouveau probléme ayant êtes aider pour le dernier probléme le constat a été fait c'était windows live messenger le probléme donc ceci est regler maintenant le probléme est avec internet.
quand je vais sur internet sa fonctionne tout marche nikel mais lorsque je veux fait une recherche avec google la barre en bas a droite de la fenetre ce remplie a moitier pour la recherche et ensuite la recherche n'aboutit pas donc il y a un probléme qui doit venir quelque chose et ma question est encore qu'elle est ce probléme comment le raisoudre
merci a vous pour votre aide
![]()
virus ??
non je vien de faire un scan et les detection qui avais jlé ai mis en quarantaine
les detection
quelle detection ??
bah l'antivirus a detecter 3 virus il ne son pas rentrer dans le disque dur j'ai supprimé les fichier infecter maintenant j'ai plus de virus donc je voudrais juste savoir comme sa ce fait que les recherche avec google je suis obliger de fermer le fenetre internet en ouvrir une nouvelle et a ce moment la je reussi a faire ma recherche
Salut,
- Télécharge Hijackthis V 2.02 (HijackThis Installer) :
http://www.trendsecure.com/portal/en-US/threat_analytics/HJTInstall.exe
- Fais un double-clic sur HJTInstall.exe afin de lancer l'installation
- Clique sur Install ensuite sur I Accept
- Clique sur Do a scan system and save log file
- Le bloc-notes s'ouvrira, fais un copier-coller de tout son contenu ici dans ta prochaine réponse.
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\Rundll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Twain\Twain.exe
C:\Documents and Settings\mignot\Application Data\SpeedRunner\SpeedRunner.exe
C:\Documents and Settings\mignot\Application Data\Microsoft\Windows\gfmdy.exe
C:\Program Files\NETGEAR\WG311v3\WG311v3.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe
C:\WINDOWS\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe
C:\Program Files\aMSN\bin\wish.exe
C:\Program Files\Azureus\Azureus.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\mignot\Bureau\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.fr/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [fc6ce835] rundll32.exe "C:\WINDOWS\system32\vdrwnrnk.dll",b
O4 - HKLM\..\Run: [BMff5fdba9] Rundll32.exe "C:\WINDOWS\system32\bspldcpn.dll",s
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program
Files\Google\GoogleToolbarNotifier\GoogleToolbarNo
tifier.exe
O4 - HKCU\..\Run: [Twain] C:\Program Files\Twain\Twain.exe
O4 - HKCU\..\Run: [SpeedRunner] C:\Documents and Settings\mignot\Application Data\SpeedRunner\SpeedRunner.exe
O4 - HKCU\..\Run: [SfKg6wIP] C:\Documents and Settings\mignot\Application Data\Microsoft\Windows\gfmdy.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
O4 - Startup: TransBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe
O4 - Startup: UberIcon.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe
O4 - Startup: Y'z Shadow.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe
O4 - Global Startup: NETGEAR WG311v3 Smart Wizard.lnk = C:\Program Files\NETGEAR\WG311v3\WG311v3.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Apache Software Foundation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
O23 - Service: ForceWare user log service (nSvcLog) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
--
End of file - 5838 bytes
Infecté de chez infecté.
Merci de poster le début du rapport.
Fais un scan avec MalwareByte's Anti-Malware :
http://www.malekal.com/tutorial_MalwareBytes_AntiMalware.php
Supprime tout ce qu'il trouve et poste le rapport ici.
je comprend pas j'ai formater avant hier comment sa ce fait j'ai juste mis les drivers de ma carte mere de la CG et aussi j'ai telecharger windows live messenger aprés possible que quand j'ai telecharger kaspersky sa ma foutu une merde vu que la version d'essaie na même pas voulu ce lancer
Formate alors.
je peut pas formater y a trop de truc dont j'ai besoin je vais pas recommencer.
et en une minute j'ai 21 infection une truc m'échappe prend mon msn stp
darksheitan@hotmail.fr
Malwarebytes' Anti-Malware 1.11
Version de la base de données: 676
Type de recherche: Examen complet (C:\|)
Eléments examinés: 56681
Temps écoulé: 14 minute(s), 6 second(s)
Processus mémoire infecté(s): 2
Module(s) mémoire infecté(s): 3
Clé(s) du Registre infectée(s): 19
Valeur(s) du Registre infectée(s): 4
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 7
Fichier(s) infecté(s): 34
Processus mémoire infecté(s):
c:\program files\Twain\Twain.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\mignot\application data\speedrunner\speedrunner.exe (Adware.SurfAccuracy) -> No action taken.
Module(s) mémoire infecté(s):
c:\program files\mozilla firefox\components\srff.dll (Adware.SurfAccuracy) -> No action taken.
C:\WINDOWS\system32\ljjkhFwt.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vdrwnrnk.dll (Trojan.Vundo) -> No action taken.
Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr
entVersion\Explorer\Browser Helper Objects\{685eca44-2acc-41e8-b5f9-db58b8a89be5} (Trojan.Vundo) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{685eca44-2acc-41e8-b5f9-d
b58b8a89be5} (Trojan.Vundo) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre
ntVersion\Uninstall\speedrunner (Adware.SurfAccuracy) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\Curre
ntVersion\Uninstall\Twain (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\Software\SpeedRunner (Adware.SurfAccuracy) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\Curre
ntVersion\Uninstall\CPV (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\xpre (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\aoprndtws (Malware.Trace) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\jkwslist (Malware.Trace) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\MS Juan (Malware.Trace) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\affri (Malware.Trace) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\affltid (Malware.Trace) -> No action taken.
HKEY_CLASSES_ROOT\WR (Malware.Trace) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\rdfa (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\affltid (Malware.Trace) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\affri (Malware.Trace) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Juan (Malware.Trace) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> No action taken.
Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre
ntVersion\Run\Twain (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre
ntVersion\Run\SpeedRunner (Adware.SurfAccuracy) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr
entVersion\Explorer\ShellExecuteHooks\{f50b3f5e-85
6e-4757-9bb1-b35d46ca7719} (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr
entVersion\Run\BMff5fdba9 (Trojan.Agent) -> No action taken.
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro
l\LSA\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\ljjkhfwt -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro
l\Lsa\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\ljjkhfwt -> No action taken.
Dossier(s) infecté(s):
C:\Program Files\InetGet2 (Trojan.Downloader) -> No action taken.
C:\Program Files\Inet_Get_2 (Trojan.Downloader) -> No action taken.
C:\Program Files\Temporary (Trojan.Agent) -> No action taken.
C:\Program Files\CPV (Trojan.Downloader) -> No action taken.
C:\WINDOWS\system32\xcsDd01 (Trojan.Agent) -> No action taken.
C:\Program Files\Twain (Trojan.Agent) -> No action taken.
C:\Documents and Settings\mignot\Application Data\speedrunner (Adware.SurfAccuracy) -> No action taken.
Fichier(s) infecté(s):
c:\program files\Twain\Twain.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\mignot\application data\speedrunner\speedrunner.exe (Adware.SurfAccuracy) -> No action taken.
c:\program files\mozilla firefox\components\srff.dll (Adware.SurfAccuracy) -> No action taken.
C:\WINDOWS\system32\chimvejh.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\hjevmihc.ini (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljjkhFwt.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\twFhkjjl.ini (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\twFhkjjl.ini2 (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vdrwnrnk.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\knrnwrdv.ini (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\mignot\Local Settings\Temp\winvsnet.exe (Rogue.AntiSpyMaster) -> No action taken.
C:\Program Files\CPV\CPV8.dll (Adware.Bestrevenue) -> No action taken.
C:\System Volume
Information\_restore{F07BD76B-D8BD-4A58-BAE7-6B2EA
829C33A}\RP30\A0017273.dll (Trojan.Vundo) -> No action taken.
C:\System Volume
Information\_restore{F07BD76B-D8BD-4A58-BAE7-6B2EA
829C33A}\RP31\A0018428.exe (Trojan.Agent) -> No action taken.
C:\System Volume
Information\_restore{F07BD76B-D8BD-4A58-BAE7-6B2EA
829C33A}\RP31\A0018432.exe (Trojan.Agent) -> No action taken.
C:\System Volume
Information\_restore{F07BD76B-D8BD-4A58-BAE7-6B2EA
829C33A}\RP31\A0018433.dll (Adware.Bestrevenue) -> No action taken.
C:\System Volume
Information\_restore{F07BD76B-D8BD-4A58-BAE7-6B2EA
829C33A}\RP8\A0002224.exe (Rogue.AntiSpyMaster) -> No action taken.
C:\WINDOWS\b128.exe (Trojan.Downloader) -> No action taken.
C:\WINDOWS\b138.exe (Trojan.Downloader) -> No action taken.
C:\WINDOWS\b152.exe (Trojan.Insider) -> No action taken.
C:\WINDOWS\b155.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\b156.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\b157.exe (Trojan.Dropper) -> No action taken.
C:\WINDOWS\system32\hrgoxayi.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\okfitubx.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxywvTLB.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxyXnkLB.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yjaoxqdy.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xcsDd01\xcsDd011065.exe (Trojan.DownLoader) -> No action taken.
C:\Program Files\Twain\Twain.exe.lzma (Trojan.Agent) -> No action taken.
C:\Documents and Settings\mignot\Application Data\speedrunner\config.cfg (Adware.SurfAccuracy) -> No action taken.
C:\Documents and Settings\mignot\Application Data\speedrunner\SRUninstall.exe (Adware.SurfAccuracy) -> No action taken.
C:\WINDOWS\system32\bspldcpn.dll (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\pac.txt (Malware.Trace) -> No action taken.
Ah ok...
t'utilise un pare feu qaund t'es connecté au net ?
sinon ma premiere hypothese etais la bonne : VIRUS ![]()