Pc infecté et bloqué - Page 4

Précédent
  • 1
  • 2
  • 3
  • 4
  1. tudel1 Messages postés 39 Statut Membre
     
    bon je désespère un peu. C'est pas mieux , ca bloque de plus en plus à chaque démarrage du mode normal:
    - 1ere fois je n'ai plus aucun icone ni sur le bureau, ni sur la barre de lancement, à part l'horloge, une icone que je connais pas et le rond de windows
    - 2ème fois: ca bloque pour écrire le mot de passe de ma session
    - 3ème fois ca n'ouvre même plus
    - le retour au mode sans échec a été très laborieux
    0
  2. tudel1 Messages postés 39 Statut Membre
     
    bonjour je remonte le sujet, car mon problème est toujours présent. Si jamais gen-hackman est là pour m'aider?
    0
  3. tudel1 Messages postés 39 Statut Membre
     
    bonjour, est-ce que cela serait possible que quelqu'un prenne le relais de gen-hackman en attendant son retour, merci d'avance
    0
  4. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  5. tudel1 Messages postés 39 Statut Membre
     
    Bon désolé d'insister, mais comme je vois que Gen-hackman est à nouveau présent. Euh un peu d'aide? MErci, merci
    0
  6. gen-hackman
     
    essaie de desinstaller Bump Top

    ensuite :

    ▶ Clique sur le menu Demarrer /Panneau de configuration/Options des dossiers/ puis dans l'onglet Affichage
    * - Coche Afficher les fichiers et dossiers cachés
    * - Décoche Masquer les extensions des fichiers dont le type est connu
    * - Décoche Masquer les fichiers protégés du système d'exploitation (recommandé)

    ▶ clique sur Appliquer, puis OK.

    N'oublie pas de recacher à nouveau les fichiers cachés et protégés du système d'exploitation en fin de désinfection, c'est important

    Fais analyser le(s) fichier(s) suivants sur Virustotal :

    Virus Total

    * Clique sur Parcourir en haut, choisis Poste de travail et cherche ces fichiers :

    c:\windows\system32\finger.exe


    * Clique maintenant sur Envoyer le fichier. et laisse travailler tant que "Situation actuelle : en cours d'analyse" est affiché.
    * Il est possible que le fichier soit mis en file d'attente en raison d'un grand nombre de demandes d'analyses. En ce cas, il te faudra patienter sans actualiser la page.
    * Lorsque l'analyse est terminée ("Situation actuelle: terminé"), clique sur Formaté
    * Une nouvelle fenêtre de ton navigateur va apparaître
    * Clique alors sur les deux fleches
    * Fais un clic droit sur la page, et choisis Sélectionner tout, puis copier
    * Enfin colle le résultat dans ta prochaine réponse.

    Note : Pour analyser un autre fichier, clique en bas sur Autre fichier.
    0
  7. tudel1 Messages postés 39 Statut Membre
     
    Je n'ai pas trouvé le bouton formaté.
    Je colle ce qu'il y avait inscrit

    Le fichier a déjà été analysé:
    MD5: 91ef2f0ca3cc256c8196587dbefc8e42
    First received: 2009.09.11 21:17:21 UTC
    Date 2009.10.23 21:54:03 UTC [>12D]
    Résultats 0/41
    Permalink: analisis/81dfac7c54f115c9565183fb435ab8f24619ba68bf6c3774b72c068d1b41fdce-1256334843
    0
  8. gen-hackman
     
    c'est la liste ou il est indiqué tous les antivirus qui m'interesse primordialement ;)
    0
  9. tudel1 Messages postés 39 Statut Membre
     
    j'ai trouvé (enfin je crois)

    Fichier finger.exe reçu le 2009.10.23 21:54:03 (UTC)
    Antivirus Version Dernière mise à jour Résultat
    a-squared 4.5.0.41 2009.10.23 -
    AhnLab-V3 5.0.0.2 2009.10.23 -
    AntiVir 7.9.1.44 2009.10.23 -
    Antiy-AVL 2.0.3.7 2009.10.23 -
    Authentium 5.1.2.4 2009.10.23 -
    Avast 4.8.1351.0 2009.10.22 -
    AVG 8.5.0.423 2009.10.23 -
    BitDefender 7.2 2009.10.23 -
    CAT-QuickHeal 10.00 2009.10.23 -
    ClamAV 0.94.1 2009.10.23 -
    Comodo 2707 2009.10.23 -
    DrWeb 5.0.0.12182 2009.10.23 -
    eSafe 7.0.17.0 2009.10.22 -
    eTrust-Vet 35.1.7082 2009.10.23 -
    F-Prot 4.5.1.85 2009.10.23 -
    F-Secure 9.0.15370.0 2009.10.22 -
    Fortinet 3.120.0.0 2009.10.23 -
    GData 19 2009.10.23 -
    Ikarus T3.1.1.72.0 2009.10.23 -
    Jiangmin 11.0.800 2009.10.23 -
    K7AntiVirus 7.10.878 2009.10.23 -
    Kaspersky 7.0.0.125 2009.10.23 -
    McAfee 5780 2009.10.23 -
    McAfee+Artemis 5780 2009.10.23 -
    McAfee-GW-Edition 6.8.5 2009.10.23 -
    Microsoft 1.5202 2009.10.23 -
    NOD32 4537 2009.10.23 -
    Norman 6.03.02 2009.10.23 -
    nProtect 2009.1.8.0 2009.10.23 -
    Panda 10.0.2.2 2009.10.23 -
    PCTools 4.4.2.0 2009.10.19 -
    Prevx 3.0 2009.10.23 -
    Rising 21.52.44.00 2009.10.23 -
    Sophos 4.46.0 2009.10.23 -
    Sunbelt 3.2.1858.2 2009.10.23 -
    Symantec 1.4.4.12 2009.10.23 -
    TheHacker 6.5.0.2.051 2009.10.22 -
    TrendMicro 8.950.0.1094 2009.10.23 -
    VBA32 3.12.10.11 2009.10.23 -
    ViRobot 2009.10.23.2003 2009.10.23 -
    VirusBuster 4.6.5.0 2009.10.23 -
    Information additionnelle
    File size: 10240 bytes
    MD5   : 91ef2f0ca3cc256c8196587dbefc8e42
    SHA1  : 5c40906a5d720a46ddd6ec5c9e73bde431f9c821
    SHA256: 81dfac7c54f115c9565183fb435ab8f24619ba68bf6c3774b72c068d1b41fdce
    PEInfo: PE Structure information<br> <br> ( base data )<br> entrypointaddress.: 0x1824<br> timedatestamp.....: 0x4A8571D1 (Fri Aug 14 16:16:49 2009)<br> machinetype.......: 0x14C (Intel I386)<br> <br> ( 4 sections )<br> name viradd virsiz rawdsiz ntrpy md5<br> .text 0x1000 0x1284 0x1400 5.78 63df8f033ea0b673429ab50e640a3e22<br>.data 0x3000 0x588 0x200 1.78 26dc3385a018f7cedb78702080004255<br>.rsrc 0x4000 0x828 0xA00 3.83 4d4db3ad5eb99b2d7c01124a94a7b0be<br>.reloc 0x5000 0x206 0x400 2.88 f32dae1abdccc1d09f6cbb199bf90ae6<br> <br> ( 5 imports )<br> <br>> kernel32.dll: SetThreadUILanguage, HeapSetInformation, GetLastError, FormatMessageA, LocalFree, UnhandledExceptionFilter, GetCurrentProcess, TerminateProcess, GetSystemTimeAsFileTime, GetCurrentProcessId, GetCurrentThreadId, GetTickCount, QueryPerformanceCounter, GetModuleHandleA, SetUnhandledExceptionFilter, InterlockedCompareExchange, Sleep, InterlockedExchange<br>> msvcrt.dll: _XcptFilter, _exit, _cexit, __getmainargs, strrchr, _iob, exit, _initterm, _amsg_exit, __setusermatherr, _adjust_fdiv, __p__commode, __p__fmode, fflush, isprint, isspace, putchar, _write, _controlfp, _except_handler4_common, _terminate@@YAXXZ, __set_app_type<br>> mswsock.dll: s_perror<br>> user32.dll: CharToOemBuffA<br>> ws2_32.dll: -, -, -, getaddrinfo, -, -, -, -, freeaddrinfo, -<br> <br> ( 0 exports )<br>
    TrID  : File type identification<br>Win32 Executable Generic (42.3%)<br>Win32 Dynamic Link Library (generic) (37.6%)<br>Generic Win/DOS Executable (9.9%)<br>DOS Executable Generic (9.9%)<br>Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
    ssdeep: 192:yJdhwdosbg7bVPOLdhWWEWP0GrenAWgd0Wu:6GosaonWQVrpWQ0W
    PEiD  : -
    RDS   : NSRL Reference Data Set<br>-

    Antivirus Version Dernière mise à jour Résultat
    a-squared 4.5.0.41 2009.10.23 -
    AhnLab-V3 5.0.0.2 2009.10.23 -
    AntiVir 7.9.1.44 2009.10.23 -
    Antiy-AVL 2.0.3.7 2009.10.23 -
    Authentium 5.1.2.4 2009.10.23 -
    Avast 4.8.1351.0 2009.10.22 -
    AVG 8.5.0.423 2009.10.23 -
    BitDefender 7.2 2009.10.23 -
    CAT-QuickHeal 10.00 2009.10.23 -
    ClamAV 0.94.1 2009.10.23 -
    Comodo 2707 2009.10.23 -
    DrWeb 5.0.0.12182 2009.10.23 -
    eSafe 7.0.17.0 2009.10.22 -
    eTrust-Vet 35.1.7082 2009.10.23 -
    F-Prot 4.5.1.85 2009.10.23 -
    F-Secure 9.0.15370.0 2009.10.22 -
    Fortinet 3.120.0.0 2009.10.23 -
    GData 19 2009.10.23 -
    Ikarus T3.1.1.72.0 2009.10.23 -
    Jiangmin 11.0.800 2009.10.23 -
    K7AntiVirus 7.10.878 2009.10.23 -
    Kaspersky 7.0.0.125 2009.10.23 -
    McAfee 5780 2009.10.23 -
    McAfee+Artemis 5780 2009.10.23 -
    McAfee-GW-Edition 6.8.5 2009.10.23 -
    Microsoft 1.5202 2009.10.23 -
    NOD32 4537 2009.10.23 -
    Norman 6.03.02 2009.10.23 -
    nProtect 2009.1.8.0 2009.10.23 -
    Panda 10.0.2.2 2009.10.23 -
    PCTools 4.4.2.0 2009.10.19 -
    Prevx 3.0 2009.10.23 -
    Rising 21.52.44.00 2009.10.23 -
    Sophos 4.46.0 2009.10.23 -
    Sunbelt 3.2.1858.2 2009.10.23 -
    Symantec 1.4.4.12 2009.10.23 -
    TheHacker 6.5.0.2.051 2009.10.22 -
    TrendMicro 8.950.0.1094 2009.10.23 -
    VBA32 3.12.10.11 2009.10.23 -
    ViRobot 2009.10.23.2003 2009.10.23 -
    VirusBuster 4.6.5.0 2009.10.23 -

    Information additionnelle
    File size: 10240 bytes
    MD5   : 91ef2f0ca3cc256c8196587dbefc8e42
    SHA1  : 5c40906a5d720a46ddd6ec5c9e73bde431f9c821
    SHA256: 81dfac7c54f115c9565183fb435ab8f24619ba68bf6c3774b72c068d1b41fdce
    PEInfo: PE Structure information<br> <br> ( base data )<br> entrypointaddress.: 0x1824<br> timedatestamp.....: 0x4A8571D1 (Fri Aug 14 16:16:49 2009)<br> machinetype.......: 0x14C (Intel I386)<br> <br> ( 4 sections )<br> name viradd virsiz rawdsiz ntrpy md5<br> .text 0x1000 0x1284 0x1400 5.78 63df8f033ea0b673429ab50e640a3e22<br>.data 0x3000 0x588 0x200 1.78 26dc3385a018f7cedb78702080004255<br>.rsrc 0x4000 0x828 0xA00 3.83 4d4db3ad5eb99b2d7c01124a94a7b0be<br>.reloc 0x5000 0x206 0x400 2.88 f32dae1abdccc1d09f6cbb199bf90ae6<br> <br> ( 5 imports )<br> <br>> kernel32.dll: SetThreadUILanguage, HeapSetInformation, GetLastError, FormatMessageA, LocalFree, UnhandledExceptionFilter, GetCurrentProcess, TerminateProcess, GetSystemTimeAsFileTime, GetCurrentProcessId, GetCurrentThreadId, GetTickCount, QueryPerformanceCounter, GetModuleHandleA, SetUnhandledExceptionFilter, InterlockedCompareExchange, Sleep, InterlockedExchange<br>> msvcrt.dll: _XcptFilter, _exit, _cexit, __getmainargs, strrchr, _iob, exit, _initterm, _amsg_exit, __setusermatherr, _adjust_fdiv, __p__commode, __p__fmode, fflush, isprint, isspace, putchar, _write, _controlfp, _except_handler4_common, _terminate@@YAXXZ, __set_app_type<br>> mswsock.dll: s_perror<br>> user32.dll: CharToOemBuffA<br>> ws2_32.dll: -, -, -, getaddrinfo, -, -, -, -, freeaddrinfo, -<br> <br> ( 0 exports )<br>
    TrID  : File type identification<br>Win32 Executable Generic (42.3%)<br>Win32 Dynamic Link Library (generic) (37.6%)<br>Generic Win/DOS Executable (9.9%)<br>DOS Executable Generic (9.9%)<br>Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
    ssdeep: 192:yJdhwdosbg7bVPOLdhWWEWP0GrenAWgd0Wu:6GosaonWQVrpWQ0W
    PEiD  : -
    RDS   : NSRL Reference Data Set<br>-
    0
  10. gen-hackman
     
    ok le fichier a l air legitime

    bump top desinstallé ?
    0
  11. tudel1 Messages postés 39 Statut Membre
     
    non je ne peux rien désinstaller
    0
  12. gen-hackman
     
    fais analyser ce nouveau fichier sur virus total :

    c:\windows\system32\drivers\srv2.sys
    0
Précédent
  • 1
  • 2
  • 3
  • 4