Au secours,ordinateur infecté!!!

hiya -  
 hiya -
Bonsoir,
j'ai un virus dans mon ordinateur, qui revient a chaque fois que je le supprime,il s'agit de gy.exe .
J'ai remarqué aussi que mon ordinateur est devenu bcp plus lent, parfois dés que je le redemarre ,il se bloque,alors qu'un ecran bleu s'affiche et il redemarre.
j'ai besoin de votre aide
A voir également:

2 réponses

jacques.gache Messages postés 34829 Statut Contributeur sécurité 1 618
 
bonjour, peux tu nous mettre un ZHPdiag , Merci

Ouvres ce lien et télécharges ZHPDiag sur ton bureau :

https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html

.cliques droit dessus et extraire tous
.ouvres le nouveau dossier ZHPDiag
.double clique sur la seringue ZHPDiag
.cliques sur tous
.cliques sur la loupe attend quelque minutes
.cliques sur l'appariel photos
.enregistres le de façon à le retrouver
.tu fermes ZHPDiag
. tu ouvres ton rapport ZHPDiag
.cliques sur édition
.et puis tous sélectionner
.et recliques sur édition
.copier
.tu reviens sur le forum et dans le cadre de la discution tu cliques droit dans le cadre de discution
.et coller

0
hiya
 
Rapport de ZHPDiag v1.16.5 par Nicolas Coolman
Enregistré le 29/01/2009 21:15:14
Platform : Windows Vista (TM) Home Premium
MSIE: Internet Explorer v7.0.6000.16764

---\\ Processus lancés
C:\Program Files\Synaptics\SynTP\SynTPStart.exe
C:\Program Files\HP\QuickPlay\QPService.exe
%ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe
C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
C:\Program Files\Windows Sidebar\sidebar.exe
rundll32.exe
C:\Windows\ehome\ehTray.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\LG Electronics\Modem USB LG Electronics\UMAService.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe

---\\ Modification d'une valeur System.ini (F2)
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,

---\\ Pages de démarrage d'Internet Explorer (R0)
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.inwi.ma/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/...

---\\ Pages de recherche d'Internet Explorer (R1)
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchasst.htm

---\\ Redirection du fichier Hosts (O1)
O1 - Hosts: ::1 localhost

---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll

---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: NCO Toolbar 2.0 - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -
O3 - Toolbar: 1 - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll

---\\ Applications démarrées automatiquement par le registre (O4)
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [OnScreenDisplay] C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe
O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\YouCam" update "Software\CyberLink\YouCam\1.0"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [WAWifiMessage] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [UMService] C:\Program Files\LG Electronics\Modem USB LG Electronics\UMAService.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKCU\..\Run: [googletalk] "C:\Program Files\Google\Google Talk\googletalk.exe" /autostart
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKLM\..\policies\Explorer: [NoDriveTypeAutoRun] Data="227"
O4 - HKLM\..\policies\Explorer: [NoDrives] Data="0"

---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: inetcpl.cpl=no

---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: Envoyer l'&image au périphérique Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\bt_hot_icon.ico
O9 - Extra button: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Launch WinHTTrack - {36ECAF82-3300-8F84-092E-AFF36D6C7040} - C:\Program Files\WinHTTrack\WinHTTrackIEBar.dll,201
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\PROGRA~1\Skype\Toolbars\INTERN~1\favicon.ico
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFBARH.ICO
O9 - Extra button: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\bt_hot_icon.ico

---\\ Protocole additionnel et piratage de protocole (O18)
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL

---\\ Clé de Registre autorun SharedTaskScheduler (O22)
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030}

---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\system32\unregmp2.exe /ShowWMP
O40 - ASIC: Internet Explorer - {26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\system32\ie4uinit.exe -UserIconConfig
O40 - ASIC: Browser Customizations - {60B49E34-C7CC-11D0-8953-00A0C90347FF} - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
O40 - ASIC: Viewpoint Media Player - {03F998B2-0E00-11D3-A498-00104B6EB52E} - (not file)
O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - (not file)
O40 - ASIC: LightScribe Control Panel - {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "C:\Program Files\Common Files\LightScribe\LSRunOnce.exe"
O40 - ASIC: Macromedia Shockwave Director 10.1 - {166B1BCA-3F9C-11CF-8075-444553540000} - (not file)
O40 - ASIC: Viewpoint Media Player - {1B00725B-C455-4DE6-BFB6-AD540AD427CD} - C:\Program Files\Viewpoint\Viewpoint Experience Technology\AxMetaStream.dll
O40 - ASIC: (no name) - {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - (not file)
O40 - ASIC: Microsoft Windows Media Player 11.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\System32\wmpdxm.dll
O40 - ASIC: Macromedia Shockwave Director 10.1 - {2A202491-F00D-11cf-87CC-0020AFEECF20} - (not file)
O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - C:\Windows\system32\regsvr32.exe /s /n /i:/UserInstall C:\Windows\system32\themeui.dll
O40 - ASIC: Offline Browsing Pack - {3af36230-a269-11d1-b5bf-0000f8051515} - (not file)
O40 - ASIC: Microsoft Windows Mail 7 - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
O40 - ASIC: (no name) - {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - (not file)
O40 - ASIC: DirectDrawEx - {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - (not file)
O40 - ASIC: Internet Explorer Help - {45ea75a0-a269-11d1-b5bf-0000f8051515} - (not file)
O40 - ASIC: Microsoft Windows Script 5.7 - {4f645220-306d-11d2-995d-00c04f98bbc9} - (not file)
O40 - ASIC: Internet Explorer Setup Tools - {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - (not file)
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} - (not file)
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} - C:\Windows\system32\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI
O40 - ASIC: MSN Site Access - {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - (not file)
O40 - ASIC: Address Book 7 - {7790769C-0471-11d2-AF11-00C04FA35D02} - (not file)
O40 - ASIC: .NET Framework - {7C028AF8-F614-47B3-82DA-BA94E41B1089} - (not file)
O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
O40 - ASIC: Internet Explorer - {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\system32\ie4uinit.exe -BaseSettings
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install
O40 - ASIC: Dynamic HTML Data Binding - {9381D8F2-0288-11D0-9501-00AA00B911A5} - (not file)
O40 - ASIC: Microsoft Windows Media Player - {C3F0741D-618E-6F92-85FC-3076C4FA2606} - (not file)
O40 - ASIC: .NET Framework - {C6BAF60B-6E91-453F-BFF9-D3789CFEFCDD} - (not file)
O40 - ASIC: Internet Explorer Core Fonts - {C9E9A340-D1F1-11D0-821E-444553540600} - (not file)
O40 - ASIC: (no name) - {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - (not file)
O40 - ASIC: Adobe Flash Player - {D27CDB6E-AE6D-11CF-96B8-444553540000} - C:\Windows\system32\Macromed\Flash\Flash9d.ocx
O40 - ASIC: Internet Explorer - {DD81A211-1528-FACA-F79A-7559A162EBD0} - (not file)
O40 - ASIC: HTML Help - {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - (not file)
O40 - ASIC: Active Directory Service Interface - {E92B03AB-B707-11d2-9CBD-0000F87A369E} - (not file)
O40 - ASIC: Viewpoint Media Player - {ECF5423F-5673-DB0E-C267-793F8BAAB84D} - (not file)

---\\ Logiciels installés (O42)
O42 - Logiciel: Activation Assistant for the 2007 Microsoft Office suites
O42 - Logiciel: Adobe Flash Player ActiveX
O42 - Logiciel: AIM 6
O42 - Logiciel: Applian FLV Player
O42 - Logiciel: avast! Antivirus
O42 - Logiciel: Conexant HD Audio
O42 - Logiciel: HDAUDIO Soft Data Fax Modem with SmartCP
O42 - Logiciel: EasyPHP 1.8
O42 - Logiciel: FileZilla Client 3.1.5.1
O42 - Logiciel: Hauppauge MCE XP/Vista Software Encoder (2.0.25149)
O42 - Logiciel: Microsoft Office Home and Student 2007
O42 - Logiciel: CyberLink YouCam
O42 - Logiciel: PowerDirector
O42 - Logiciel: EA Link
O42 - Logiciel: Microsoft Document Explorer 2005
O42 - Logiciel: Module de prise en charge linguistique de Microsoft Document Explorer 2005 - FRA
O42 - Logiciel: Microsoft Visual Studio 2005 Professional - Français
O42 - Logiciel: NVIDIA Drivers
O42 - Logiciel: LiveUpdate (Symantec Corporation)
O42 - Logiciel: RealPlayer
O42 - Logiciel: QuickPlay SlingPlayer 0.4.4
O42 - Logiciel: Synaptics Pointing Device Driver
O42 - Logiciel: Viewpoint Media Player
O42 - Logiciel: My HP Games
O42 - Logiciel: WinHTTrack Website Copier 3.43
O42 - Logiciel: WinRAR archiver
O42 - Logiciel: HP Integrated Module with Bluetooth wireless technology 6.0.1.5500
O42 - Logiciel: HP Doc Viewer
O42 - Logiciel: Adobe Shockwave Player
O42 - Logiciel: DVD Suite
O42 - Logiciel: Google Talk (remove only)
O42 - Logiciel: Google Toolbar for Internet Explorer
O42 - Logiciel: muvee autoProducer 6.1
O42 - Logiciel: Hewlett-Packard Active Check
O42 - Logiciel: Atheros Driver Installation Program
O42 - Logiciel: HP Help and Support
O42 - Logiciel: Java(TM) 6 Update 2
O42 - Logiciel: HP Quick Launch Buttons 6.30 E1
O42 - Logiciel: Microsoft Works
O42 - Logiciel: Macromedia Extension Manager
O42 - Logiciel: Modem USB LG Electronics
O42 - Logiciel: NetWaiting
O42 - Logiciel: Power2Go
O42 - Logiciel: HP QuickPlay 3.6
O42 - Logiciel: HP User Guides 0087
O42 - Logiciel: RICOH R5C83x/84x Flash Media Controller Driver Ver.3.51.01
O42 - Logiciel: Skype™ 3.8
O42 - Logiciel: Hewlett-Packard Asset Agent for Health Check
O42 - Logiciel: VistaBootPRO 3.3
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable
O42 - Logiciel: HP QuickTouch 1.00 C4
O42 - Logiciel: MSXML 4.0 SP2 (KB954430)
O42 - Logiciel: Microsoft Office Excel MUI (French) 2007
O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007
O42 - Logiciel: Microsoft Office Word MUI (French) 2007
O42 - Logiciel: Microsoft Office Proof (Arabic) 2007
O42 - Logiciel: Microsoft Office Proof (German) 2007
O42 - Logiciel: Microsoft Office Proof (English) 2007
O42 - Logiciel: Microsoft Office Proof (French) 2007
O42 - Logiciel: Microsoft Office Proof (Dutch) 2007
O42 - Logiciel: Microsoft Office Proof (Spanish) 2007
O42 - Logiciel: Module de compatibilité pour Microsoft Office System 2007
O42 - Logiciel: Microsoft Office Proofing (French) 2007
O42 - Logiciel: Microsoft Office Shared MUI (French) 2007
O42 - Logiciel: Microsoft Office OneNote MUI (French) 2007
O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB955936)
O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB951338)
O42 - Logiciel: Security Update for Microsoft Office system 2007 (KB954326)
O42 - Logiciel: Security Update for Microsoft Office Excel 2007 (KB955470)
O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB951944)
O42 - Logiciel: Security Update for Microsoft Office system 2007 (KB951808)
O42 - Logiciel: Update for Office 2007 (KB946691)
O42 - Logiciel: Security Update for Microsoft Office Word 2007 (KB950113)
O42 - Logiciel: Security Update for Microsoft Office OneNote 2007 (KB950130)
O42 - Logiciel: Microsoft Office PowerPoint Viewer 2007 (French)
O42 - Logiciel: HP Easy Setup - Frontend
O42 - Logiciel: Microsoft Document Explorer 2005 Language Pack - FRA
O42 - Logiciel: HP Update
O42 - Logiciel: Adobe Reader 8.1.0 - Français
O42 - Logiciel: ESU for Microsoft Vista
O42 - Logiciel: Assistant de connexion Windows Live
O42 - Logiciel: Windows Live Messenger
O42 - Logiciel: HP Customer Experience Enhancements
O42 - Logiciel: MSXML 4.0 SP2 (KB936181)
O42 - Logiciel: MSXML 4.0 SP2 (KB941833)
O42 - Logiciel: LabelPrint
O42 - Logiciel: HP Wireless Assistant
O42 - Logiciel: NOD32 FiX
O42 - Logiciel: Windows Live installer

---\\ Contenu des dossiers Fichiers Communs (O43)
O43 - CFD:Common File Directory - C:\Program Files\Common Files\Adobe
O43 - CFD:Common File Directory - C:\Program Files\Common Files\AOL
O43 - CFD:Common File Directory - C:\Program Files\Common Files\Business Objects
O43 - CFD:Common File Directory - C:\Program Files\Common Files\DESIGNER
O43 - CFD:Common File Directory - C:\Program Files\Common Files\InstallShield
O43 - CFD:Common File Directory - C:\Program Files\Common Files\Java
O43 - CFD:Common File Directory - C:\Program Files\Common Files\LightScribe
O43 - CFD:Common File Directory - C:\Program Files\Common Files\Macromedia
O43 - CFD:Common File Directory - C:\Program Files\Common Files\Macrovision Shared
O43 - CFD:Common File Directory - C:\Program Files\Common Files\Merge Modules
O43 - CFD:Common File Directory - C:\Program Files\Common Files\microsoft shared
O43 - CFD:Common File Directory - C:\Program Files\Common Files\muvee Technologies
O43 - CFD:Common File Directory - C:\Program Files\Common Files\Real
O43 - CFD:Common File Directory - C:\Program Files\Common Files\Services
O43 - CFD:Common File Directory - C:\Program Files\Common Files\Skype
O43 - CFD:Common File Directory - C:\Program Files\Common Files\SpeechEngines
O43 - CFD:Common File Directory - C:\Program Files\Common Files\Symantec Shared
O43 - CFD:Common File Directory - C:\Program Files\Common Files\System
O43 - CFD:Common File Directory - C:\Program Files\Common Files\WindowsLiveInstaller
O43 - CFD:Common File Directory - C:\Program Files\Common Files\xing shared

---\\ Derniers fichiers modifiés ou crées sous System32 (O44)
O44 - LFC:Last File Created - C:\Windows\System32\Apphlpdm.dll -->01/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\batt.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\cfgmgr32.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\ci.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\clfs.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\config.nt -->07/01/2009
O44 - LFC:Last File Created - C:\Windows\System32\dispci.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\dnsapi.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\dnscacheugc.exe -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\dnsrslvr.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\dpx.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drvinst.exe -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\EncDec.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\es.dll -->05/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\f3ahvoas.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\FNTCACHE.DAT -->04/01/2009
O44 - LFC:Last File Created - C:\Windows\System32\fsquirt.exe -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\FwRemoteSvr.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\gameux.dll -->01/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\GameUXLegacyGDFs.dll -->31/10/2008
O44 - LFC:Last File Created - C:\Windows\System32\HPRM_BCD_FIX.LOG -->01/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\inetcomm.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\INETRES.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\IPSECSVC.DLL -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\kbd106n.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\kd1394.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\loadperf.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\lodctr.exe -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\LOG -->01/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\mcmde.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\Mpeg2Data.ax -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\mpg2splt.ax -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\mrt.exe -->10/01/2009
O44 - LFC:Last File Created - C:\Windows\System32\MSDvbNP.ax -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\mshtml.dll -->12/12/2008
O44 - LFC:Last File Created - C:\Windows\System32\mshtml.tlb -->12/12/2008
O44 - LFC:Last File Created - C:\Windows\System32\MSNP.ax -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NaturalLanguage6.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\netapi32.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\netcfg.exe -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\netiougc.exe -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0000.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0001.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0002.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0003.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0007.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0009.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData000a.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData000c.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData000d.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData000f.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0010.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0011.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0013.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0018.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0019.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData001a.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData001b.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData001d.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0020.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0021.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0022.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0024.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0026.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0027.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData002a.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0039.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData003e.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0045.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0046.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0047.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0049.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData004a.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData004b.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData004c.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData004e.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0414.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0416.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0816.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData081a.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsData0c1a.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0001.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0002.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0003.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0007.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0009.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons000a.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons000c.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons000d.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons000f.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0010.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0011.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0013.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0018.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0019.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons001a.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons001b.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons001d.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0020.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0021.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0022.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0024.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0026.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0027.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons002a.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0039.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons003e.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0045.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0046.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0047.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0049.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons004a.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons004b.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons004c.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons004e.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0414.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0416.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0816.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons081a.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsLexicons0c1a.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\NlsModels0011.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\nshhttp.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\ntkrnlpa.exe -->02/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\ntoskrnl.exe -->02/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\oleaut32.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\perfc009.dat -->29/01/2009
O44 - LFC:Last File Created - C:\Windows\System32\perfc00C.dat -->29/01/2009
O44 - LFC:Last File Created - C:\Windows\System32\perfh009.dat -->29/01/2009
O44 - LFC:Last File Created - C:\Windows\System32\perfh00C.dat -->29/01/2009
O44 - LFC:Last File Created - C:\Windows\System32\PerfStringBackup.INI -->29/01/2009
O44 - LFC:Last File Created - C:\Windows\System32\polstore.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\prflbmsg.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\printcom.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\psisdecd.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\psisrndr.ax -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\quartz.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\rstrui.exe -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\sbunattend.exe -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\schedsvc.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\setupapi.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\SetWinREL.LOG -->01/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\shell32.dll -->06/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\srclient.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\srcore.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\srdelayed.exe -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\tcpipcfg.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\umpnpmgr.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\unlodctr.exe -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\virus.zip -->29/01/2009
O44 - LFC:Last File Created - C:\Windows\System32\WebClnt.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\win32k.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\win32spl.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\winipsec.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\winload.exe -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\winresume.exe -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\wmpeffects.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\wpd_ci.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\wshrm.dll -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\103C_HP_cNB_Pavilion dv6700 Notebook PC_Y5335KV_0U_QCNF8090GG7_E459053-055_4A_I30CF_SQuanta_V85.24_F.2A_T080222_WV3-0_L40C_M959_J120_7AMD_8F82_91.90_#080222_N10DE054C;168C001C_(KN045EA#ABF)_XMOBILE_CN10_Z_2Rev 1.MRK -->01/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\atapi.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\ataport.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\bthenum.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\bthport.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\BTHUSB.SYS -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\i8042prt.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\kbdclass.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\kbdhid.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\monitor.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\mouclass.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\mrxdav.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\netio.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\ntfs.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\nwifi.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\pciide.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\pciidex.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\rmcast.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\sermouse.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\srv.sys -->16/12/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\tcpip.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\volsnap.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\Wdf01000.sys -->03/11/2008
O44 - LFC:Last File Created - C:\Windows\System32\drivers\WdfLdr.sys -->03/11/2008

---\\ Déni du service Local Security Authority (LSA) (O48)
O48 - LSA:Local Security Authority Authentication Packages -
O48 - LSA:Local Security Authority Notification Packages -


End of the scan:
0
jacques.gache Messages postés 34829 Statut Contributeur sécurité 1 618
 
bonjour pas grand chose sur ton pc à par des mises à jour à faire pour java et adobe et même vista pas de traces visible de ton gy.exe mais passes malwarebytes par sécurité

Telecharge malwarebytes

-> https://www.malekal.com/tutoriel-malwarebyte-anti-malware/

Tu l´instales; le programme va se mettre automatiquement a jour.

Une fois a jour, le programme va se lancer; click sur l´onglet parametre, et coche la case : "Arreter internet explorer pendant la suppression".

Click maintenant sur l´onglet recherche et coche la case : "executer un examen complet".

Puis click sur "rechercher".

Laisse le scanner le pc...

Si des elements on ete trouvés > click sur supprimer la selection.

si il t´es demandé de redemarrer > click sur "yes".

A la fin un rapport va s´ouvrir; sauvegarde le de maniere a le retrouver en vu de le poster sur le forum.

Copie et colle le rapport stp.

ps : les rapport sont aussi rangé dans l onglet rapport/log
0
hiya
 
concernant le gy.exe,il est detecté par Avast,je le supprime avec son autorun.inf(je le trouve ds tte mes partitions),et dés que je redemarre l'ord ,il revient a sa place.
merci d'avance
0