Pc qui rame suis je infecté

BONSOIR DEPUIT UN MOMENT DEJA MON PC RENCONTRE DES DIFFICULTES AU DEMARAGE.IL RAME , SANS PARLER DES FENETRES INTEMPESTIVES ET AUTRE PETITS SOUCIS. J AI FAI DES SCAN AVEC AVAST ET WINDOWS DEFENDER MS ILS NE TROUVE RIEN.TOUT A L HEURE J AI MEME DU FAIRE UNE RESTAURATION DU SYSTEME EN MODE SANS ECHEC CAR MSN PUIT WINDOWS NE REPONDAIT PLUS ; L ORDI C EST ETEINT PUI RALLUME ET C RE ETEINT ENSUITE L ECRAN ETAIT NOIR. pouvez vous m aidez?
Configuration: Windows Vista
Internet Explorer 7.0

10 réponses

  1. Salut !! essayes Malwarebyte anti malware et fait un scan complet en te déconnectant d'internet et ferme toutes tes applications (il est téléchargeable sur ce site et gratuit).Avant le scan fait la mise à jour de Malwarebyte
    1
    1. Y a des chances.
      Un reformatage s'impose !
      0
      1. En faite ton ordi est infecter par un masters
        0
        1. UN MASTERS C EST QUOI AU JUSTE?
          0
        2. @severinane vous posez pas la question pour le moment, suivez le conseil de jimkiller
          0
      2. Ne formate qu'en dernier recours, essaies de faire un scan avec hijackthis ou bien un autre antivirus comme avira antivir
        0
        1. bonsoir, avant tout, si votre pc est infecté, vous n'auriez pas du faire de restauration système car vous aggravez l'infection car certains nuisibles se dissimulent dans les points de restauration. Téléchargez malwarbyte anti-malware le mettre à jour puis faites un scan complet et poster le rapport pour voir
          0
          1. non non la seul chose a faire est plus compliquee
            0
            1. le virus est venu de l'interieur car ton pc s'est etein c'est ca oui oui tu doit trouver les programmes instaler un peut avant le probleme et les analyser un par un utilise un des antivirus donner par les autre si ya rien a faire tu le reformattte et tu reinstale internet ca doit etre de la qu'il vient
              0
              1. merci d avoir repondu je vais faire ce que tu as dis ms franchement ca m enerve le pc est neuf et moi je mi connait pa trop.
                0
              2. @severinane formate pas pour le moment ! il doit y avoir une autre solution. As-tu essayées Malwarebyte?(message n°3)
                0
              3. @jimkillerSALUT IL EST TARD MS J AI FAI UN SCAN AVEC L ANTI MALWARE MALWAREBYTES ET CA A DURER PLUS D UNE HEURE. IL N A RIEN DETECTE JE COMPREND PAS.
                Malwarebytes' Anti-Malware 1.34
                Version de la base de données: 1794
                Windows 6.0.6001 Service Pack 1

                23/02/2009 00:54:48
                mbam-log-2009-02-23 (00-54-48).txt

                Type de recherche: Examen complet (C:\|D:\|)
                Eléments examinés: 141582
                Temps écoulé: 1 hour(s), 18 minute(s), 9 second(s)

                Processus mémoire infecté(s): 0
                Module(s) mémoire infecté(s): 0
                Clé(s) du Registre infectée(s): 0
                Valeur(s) du Registre infectée(s): 0
                Elément(s) de données du Registre infecté(s): 0
                Dossier(s) infecté(s): 0
                Fichier(s) infecté(s): 0

                Processus mémoire infecté(s):
                (Aucun élément nuisible détecté)

                Module(s) mémoire infecté(s):
                (Aucun élément nuisible détecté)

                Clé(s) du Registre infectée(s):
                (Aucun élément nuisible détecté)

                Valeur(s) du Registre infectée(s):
                (Aucun élément nuisible détecté)

                Elément(s) de données du Registre infecté(s):
                (Aucun élément nuisible détecté)

                Dossier(s) infecté(s):
                (Aucun élément nuisible détecté)

                Fichier(s) infecté(s):
                (Aucun élément nuisible détecté)
                0
            2. Contributeur sécurité
              Bonjour,
              c'est pas ça qui faut faire, je reprends :

              Pour commencer : faire un petit nettoyage de l'ordi et du registre avec Ccleaner, regarde bien le Tuto CCleaner

              Ensuite :

              Télécharge le fichier d'installation d'HijackThis.

              Enregistre HJTInstall.exe sur ton bureau.

              Renomme Hijackthis en Tutu

              Double-clique sur HJTInstall.exe (tutu) pour lancer le programme

              Par défaut, il s'installera là :
              C:\Program Files\Trend Micro\HijackThis

              Accepte la licence en cliquant sur le bouton "I Accept"

              Choisis l'option "Do a system scan and save a log file"

              Clique sur "Save log" pour enregistrer le rapport qui s'ouvrira avec le bloc-note

              Clique sur "Edition -> Sélectionner tout", puis sur "Edition -> Copier" pour copier tout le contenu du rapport

              Colle le rapport que tu viens de copier sur ce forum

              Ne fixe encore AUCUNE ligne, cela pourrait empêcher ton PC de fonctionner correctement

              Tutoriaux (ne fixe rien pour le moment !!)

              Pour ceux qui ont vista, ne pas oublier de désactiver Le contrôle des comptes utilisateurs
              0
              1. SLT

                J AI FAI UN NETTOYAGE AVEC CCLEANER MAIS MAINTENANT IMPOSSIBLE DE TELECHARGER HIJACKTHIS POUR RAPPORT
                0
            3. C BON JE POSTE LE RAPPORT HIJACKTHIS

              Logfile of Trend Micro HijackThis v2.0.2
              Scan saved at 18:16:20, on 23/02/2009
              Platform: Windows Vista SP1 (WinNT 6.00.1905)
              MSIE: Internet Explorer v7.00 (7.00.6001.18000)
              Boot mode: Normal

              Running processes:
              C:\Windows\System32\smss.exe
              C:\Windows\system32\csrss.exe
              C:\Windows\system32\wininit.exe
              C:\Windows\system32\csrss.exe
              C:\Windows\system32\winlogon.exe
              C:\Windows\system32\services.exe
              C:\Windows\system32\lsass.exe
              C:\Windows\system32\lsm.exe
              C:\Windows\system32\svchost.exe
              C:\Program Files\Norman\Npm\Bin\Elogsvc.exe
              C:\Windows\system32\svchost.exe
              C:\Windows\System32\svchost.exe
              C:\Windows\System32\svchost.exe
              C:\Windows\System32\svchost.exe
              C:\Windows\system32\svchost.exe
              C:\Windows\system32\SLsvc.exe
              C:\Windows\system32\svchost.exe
              C:\Program Files\Norman\Npm\Bin\Zanda.exe
              C:\Program Files\Norman\npm\bin\nvoy.exe
              C:\Windows\system32\svchost.exe
              C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
              C:\Program Files\Alwil Software\Avast4\ashServ.exe
              C:\Windows\System32\spoolsv.exe
              C:\Windows\system32\svchost.exe
              C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
              C:\Windows\system32\svchost.exe
              C:\Program Files\Fujitsu Siemens Computers\SystemDiagnostics\OnlineDiagnostic\TestManager\TestHandler.exe
              C:\Windows\System32\svchost.exe
              C:\Windows\system32\taskeng.exe
              C:\Windows\system32\SearchIndexer.exe
              C:\Windows\system32\Dwm.exe
              C:\Windows\Explorer.EXE
              C:\Program Files\Norman\Npm\bin\NVCSCHED.EXE
              C:\Program Files\Windows Defender\MSASCui.exe
              C:\Windows\System32\igfxtray.exe
              C:\Windows\System32\hkcmd.exe
              C:\Windows\System32\igfxpers.exe
              C:\Windows\RtHDVCpl.exe
              C:\Program Files\Launch Manager\HotkeyApp.exe
              C:\Program Files\Synaptics\SynTP\SynTPStart.exe
              C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
              C:\Program Files\Picasa2\PicasaMediaDetector.exe
              C:\Program Files\Norman\Npm\Bin\Zlh.exe
              C:\Program Files\Alwil Software\Avast4\ashDisp.exe
              C:\Program Files\Windows Sidebar\sidebar.exe
              C:\Users\carine\AppData\Roaming\Microsoft\Live Search\Notification-LiveSearch.exe
              C:\Program Files\Norman\Npm\bin\NJEEVES.EXE
              C:\Windows\system32\taskeng.exe
              C:\Program Files\Norman\npc\bin\npcsvc32.exe
              C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
              C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
              C:\Program Files\Norman\nse\bin\NSESVC.EXE
              C:\Program Files\Norman\npc\bin\nuaa.exe
              C:\Users\carine\AppData\Roaming\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
              C:\Windows\system32\igfxsrvc.exe
              C:\Program Files\Launch Manager\WisLMSvc.exe
              C:\Windows\system32\wbem\wmiprvse.exe
              C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
              C:\Windows\system32\svchost.exe
              C:\Program Files\Norman\Nvc\bin\nvcoas.exe
              C:\Program Files\Windows Sidebar\sidebar.exe
              C:\Program Files\Norman\Nvc\Bin\Nip.exe
              C:\Program Files\Norman\Nvc\Bin\cclaw.exe
              C:\Program Files\Internet Explorer\iexplore.exe
              C:\Program Files\Yahoo!\Companion\Installs\cpn\ytbb.exe
              C:\Program Files\Windows Live\Messenger\msnmsgr.exe
              C:\Program Files\Windows Live\Contacts\wlcomm.exe
              C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
              C:\Windows\system32\SearchProtocolHost.exe
              C:\Windows\system32\SearchFilterHost.exe
              C:\Windows\system32\wbem\wmiprvse.exe

              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
              R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
              R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
              R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
              R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
              R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
              O1 - Hosts: ::1 localhost
              O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
              O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
              O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
              O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
              O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
              O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
              O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
              O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
              O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
              O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
              O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
              O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
              O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
              O4 - HKLM\..\Run: [HotkeyApp] "C:\Program Files\Launch Manager\HotkeyApp.exe"
              O4 - HKLM\..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe
              O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
              O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
              O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
              O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
              O4 - HKLM\..\Run: [Norman ZANDA] "C:\Program Files\Norman\Npm\Bin\ZLH.EXE" /LOAD /SPLASH
              O4 - HKLM\..\Run: [NPCTray] C:\Program Files\Norman\npc\bin\npc_tray.exe /LOAD
              O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
              O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
              O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
              O4 - HKCU\..\Run: [recinfo] c:\recinfo\recinfo.exe
              O4 - HKCU\..\Run: [fsc-reg] C:\ProgramData\fsc-reg\fscreg.exe 20090126
              O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
              O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
              O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
              O4 - HKUS\S-1-5-18\..\Run: [fsc-reg] C:\ProgramData\fsc-reg\fscreg.exe (User 'SYSTEM')
              O4 - HKUS\.DEFAULT\..\Run: [fsc-reg] C:\ProgramData\fsc-reg\fscreg.exe (User 'Default user')
              O4 - Startup: Outil de notification Live Search.lnk = C:\Users\carine\AppData\Roaming\Microsoft\Live Search\Notification-LiveSearch.exe
              O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
              O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
              O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
              O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
              O10 - Unknown file in Winsock LSP: c:\program files\norman\npc\bin\nlf.dll
              O10 - Unknown file in Winsock LSP: c:\program files\norman\npc\bin\nlf.dll
              O10 - Unknown file in Winsock LSP: c:\program files\norman\npc\bin\nlf.dll
              O10 - Unknown file in Winsock LSP: c:\program files\norman\npc\bin\nlf.dll
              O10 - Unknown file in Winsock LSP: c:\program files\norman\npc\bin\nlf.dll
              O10 - Unknown file in Winsock LSP: c:\program files\norman\npc\bin\nlf.dll
              O10 - Unknown file in Winsock LSP: c:\program files\norman\npc\bin\nlf.dll
              O10 - Unknown file in Winsock LSP: c:\program files\norman\npc\bin\nlf.dll
              O10 - Unknown file in Winsock LSP: c:\program files\norman\npc\bin\nlf.dll
              O10 - Unknown file in Winsock LSP: c:\program files\norman\npc\bin\nlf.dll
              O10 - Unknown file in Winsock LSP: c:\program files\norman\npc\bin\nlf.dll
              O13 - Gopher Prefix:
              O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL
              O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
              O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
              O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
              O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
              O23 - Service: Norman eLogger service 6 (eLoggerSvc6) - Norman ASA - C:\Program Files\Norman\Npm\Bin\Elogsvc.exe
              O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
              O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
              O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
              O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
              O23 - Service: Norman NJeeves - Norman ASA - C:\Program Files\Norman\Npm\bin\NJEEVES.EXE
              O23 - Service: Norman ZANDA - Norman ASA - C:\Program Files\Norman\Npm\Bin\Zanda.exe
              O23 - Service: Norman Parental Control (NPC) - Norman ASA - C:\Program Files\Norman\npc\bin\npcsvc32.exe
              O23 - Service: Norman Scanner Engine Service (nsesvc) - Norman ASA - C:\Program Files\Norman\nse\bin\NSESVC.EXE
              O23 - Service: Norman User Activity Agent (NUAA) - Norman ASA - C:\Program Files\Norman\npc\bin\nuaa.exe
              O23 - Service: Norman Virus Control on-access component (nvcoas) - Norman ASA - C:\Program Files\Norman\Nvc\bin\nvcoas.exe
              O23 - Service: Norman Virus Control Scheduler (NVCScheduler) - Norman ASA - C:\Program Files\Norman\Npm\bin\NVCSCHED.EXE
              O23 - Service: Norman's Very Own supplY of resources (NVOY) - Norman ASA - C:\Program Files\Norman\npm\bin\nvoy.exe
              O23 - Service: Fujitsu Siemens Computers Diagnostic Testhandler (TestHandler) - Fujitsu Siemens Computers - C:\Program Files\Fujitsu Siemens Computers\SystemDiagnostics\OnlineDiagnostic\TestManager\TestHandler.exe
              O23 - Service: WisLMSvc - Wistron Corp. - C:\Program Files\Launch Manager\WisLMSvc.exe
              0