SVCHOST.EXE

momo25 -  
 momo25 -
Bonjour,
SOS Y A SVCHOST.EXE qui me bouf halp
et le plus grave c que karspersky ne le notralise pas.
je vien de le décovrire sur l'option surveillance du réseau
Configuration: Windows XP Internet Explorer 6.0

9 réponses

  1. bobsatan Messages postés 169 Date d'inscription   Statut Membre Dernière intervention   3
     
    Sa crain, réinstalle ton PC, ou fait une recherche aprofondie avec ton kaspersky...
    0
  2. haha
     
    reformule je comprend pa ton probleme
    0
  3. momo25
     
    bon je navige a bas vites acouse de se truce et mon anti viruse le pron pour une aplic. du sistam je crois meme que c moi qui la autorizé mdr. que faire svp* y a mémé un adrise IP du pc qui me boufe .
    ps: dsl pour lorto. je suis de constantine algérie
    merci
    0
  4. haha
     
    ok, j'ai compris ta le processus SVCHOST.EXE qui tourne à 100% et fait ramé ton pc, t'es surement infecté
    0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. momo25
     
    comment je pue le bloqer j'utilse kaspersky 2009 / 8.0...
    svp et merci d'avonse
    0
  7. haha
     
    il faut que tu poste 1 rapport hijachthis et que quelq'un l'analyse, jpourrai pa le faire là trop de taff

    http://www.infos-du-net.com/telecharger/HijackThis,0301-454.html

    et le tuto pour posté le rapport sur le forum

    https://forums.cnetfrance.fr
    0
  8. momo25
     
    au la ca c pas du taf info je ne miconé pas mais je vé voire .
    mais moi je medmondé si je pouvé le rondre inactife on le bolqon car dans controle des applications je le treve sue le nome de generic Host Process for Win32 services et il et parmi les truce de confionce mdr.
    0
  9. momo25
     
    c bon pour 1 mais pour la 2 em fase ??? q*ue dall je ne sais pas koi faire sur le forum.
    mais bon le resulta et:

    Logfile of HijackThis v1.99.1
    Scan saved at 23:07:43, on 05/05/2009
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\igfxtray.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\system32\igfxsrvc.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\WINDOWS\RTHDCPL.EXE
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Internet Download Manager\IDMan.exe
    C:\Program Files\Internet Download Manager\IEMonitor.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\WinRAR\WinRAR.exe
    C:\DOCUME~1\BENCHI~1\LOCALS~1\Temp\Rar$EX00.797\HijackThis.exe
    C:\WINDOWS\system32\NOTEPAD.EXE

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
    O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
    O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
    O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O8 - Extra context menu item: Télécharger avec IDM - C:\Program Files\Internet Download Manager\IEExt.htm
    O8 - Extra context menu item: Télécharger le contenu de video FLV avec IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm
    O8 - Extra context menu item: Télécharger tous les liens avec IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm
    O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{32F3928D-3A67-4A3F-B8EF-23672DA20356}: NameServer = 193.251.169.165
    O17 - HKLM\System\CS1\Services\Tcpip\..\{32F3928D-3A67-4A3F-B8EF-23672DA20356}: NameServer = 193.251.169.165
    O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
    O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
    O20 - Winlogon Notify: klogon - C:\WINDOWS\system32\klogon.dll
    O23 - Service: Kaspersky Internet Security (AVP) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe" -r (file missing)
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    0
  10. momo25
     
    slt.
    j'ai toujour pas réglé le blam !!!*
    que faire svp y a pas une outre solustion.
    merci
    0