Message d erreur run dll

dawwood Messages postés 55 Date d'inscription   Statut Membre Dernière intervention   -  
 archet9 -
Bonsoir,

J' ai été hier sur un site un peu malveillant et depuis au démarrage de windows , jai un message d' erreur qui est le suivant : " erreur de chargement de C:\ windows \system32\sshnas.dll
l' accès à cet emplacement de la mémoire n' est pas valide "
Je voulais savoir si vous pouviez m aider à régler le problème car je crois que c' est un virus , donc si vous pouviez m aider à fixer les lignes sur le hi jack ça serait super gentil !
Bien à vous !
Configuration: Windows Vista
Firefox 3.5.5

4 réponses

  1. archet9
     
    Bonsoir,

    Ca sent le BAGLE....

    Télécharge FindyKill de Chiquitine29 sur ton bureau :

    https://www.commentcamarche.net/telecharger/securite/2759-adwcleaner/

    ! Déconnecte toi et ferme toutes applications en cours !

    • Double clique sur "FindyKill.exe" pour lancer l'installation et laisse les paramètres d'instalation par défaut .

    • Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...)

    • Fais un clic droit sur le raccourci FindyKill présent sur ton bureau et choisis "éxécuter en tant qu'administrateur" .
    • Au menu principal choisis l'option " F " pour français et tape sur [entrée] .

    • Au second menu Choisis l'option " 1 " (recherche) et tape sur [entrée]

    Laisse travailler l'outil et ne touche à rien ...

    --> Poste le rapport qui apparait à la fin , sur le forum ...

    ( le rapport est sauvegardé aussi sous C:\FindyKill.txt )
    ( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )

    a+
    0
    1. bud
       
      bonsoir jai le meme probleme: et je vien de faire le scan avec findykill et voici mon rapport d'erreur mai jsui tro dans la merde jai besoin de mon pc pour demain:
      ############################## | FindyKill V5.021 |

      # User : Guillaume GENOD (Administrateurs) # PC-DE-BUD
      # Update on 10/12/2009 by Chiquitine29
      # Start at: 21:38:44 | 10/12/2009
      # Website : http://pagesperso-orange.fr/NosTools/index.html
      # Contact : FindyKill.Contact@gmail.com

      # Intel(R) Core(TM)2 Duo CPU P8700 @ 2.53GHz
      # Microsoft® Windows Vista™ Professionnel (6.0.6002 32-bit) # Service Pack 2
      # Internet Explorer 8.0.6001.18865
      # Windows Firewall Status : Disabled

      # C:\ # Disque fixe local # 283,4 Go (151,6 Go free) [OS] # NTFS
      # D:\ # Disque fixe local # 14,65 Go (9,7 Go free) [RECOVERY] # NTFS
      # E:\ # Disque CD-ROM
      # F:\ # Disque amovible # 1,82 Go (1,82 Go free) [USB_DISK] # FAT

      ############################## | Processus actifs |

      C:\Windows\System32\smss.exe
      C:\Windows\system32\csrss.exe
      C:\Windows\system32\wininit.exe
      C:\Windows\system32\csrss.exe
      C:\Windows\system32\services.exe
      C:\Windows\system32\lsass.exe
      C:\Windows\system32\lsm.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\nvvsvc.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\System32\svchost.exe
      C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe
      C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe
      C:\Windows\System32\svchost.exe
      C:\Windows\System32\svchost.exe
      C:\Windows\system32\winlogon.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_ec3a90dd\STacSV.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\SLsvc.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\nvvsvc.exe
      C:\Windows\System32\ZoneLabs\vsmon.exe
      C:\Windows\system32\WLANExt.exe
      C:\Windows\System32\WLTRYSVC.EXE
      C:\Windows\System32\bcmwltry.exe
      C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
      C:\Windows\System32\spoolsv.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_ec3a90dd\aestsrv.exe
      C:\Windows\System32\svchost.exe
      C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
      C:\Windows\system32\DRIVERS\o2flash.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\rpcnet.exe
      C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
      C:\Windows\system32\svchost.exe
      C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
      C:\Windows\System32\svchost.exe
      C:\Windows\system32\SearchIndexer.exe
      C:\Windows\system32\Dwm.exe
      C:\Windows\Explorer.EXE
      C:\Windows\system32\taskeng.exe
      C:\Windows\system32\taskeng.exe
      C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe
      C:\Program Files\Windows Defender\MSASCui.exe
      C:\Program Files\DellTPad\Apoint.exe
      C:\Windows\OEM13Mon.exe
      C:\Windows\System32\WLTRAY.EXE
      C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
      C:\Program Files\Winamp\winampa.exe
      C:\Program Files\DellTPad\ApMsgFwd.exe
      C:\Windows\System32\rundll32.exe
      C:\Program Files\IDT\WDM\sttray.exe
      C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe
      C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
      C:\Program Files\DellTPad\HidFind.exe
      C:\Program Files\DellTPad\Apntex.exe
      C:\Program Files\Windows Media Player\wmpnscfg.exe
      C:\Program Files\Windows Media Player\wmpnetwk.exe
      C:\Program Files\Vista Start Menu\VistaStartMenu.exe
      C:\Program Files\SuperCopier2\SuperCopier2.exe
      C:\Program Files\RocketDock\RocketDock.exe
      C:\Program Files\Windows Live\Messenger\msnmsgr.exe
      C:\Program Files\Launchy\Launchy.exe
      C:\Windows\system32\SearchProtocolHost.exe
      C:\Program Files\BitDefender\BitDefender 2009\seccenter.exe
      C:\Windows\system32\wbem\wmiprvse.exe
      C:\Windows\system32\conime.exe
      C:\Windows\system32\wbem\wmiprvse.exe
      C:\Windows\system32\SearchFilterHost.exe
      C:\Windows\system32\WUDFHost.exe

      ################## | C: |


      ################## | C:\Windows |


      ################## | C:\Windows\system32 |


      ################## | C:\Windows\system32\drivers |


      ################## | C:\Users\Guillaume GENOD\AppData\Roaming |

      ################## | Temporary Internet Files |


      ################## | Registre / Clés infectieuses |

      Présent ! [HKLM\software\microsoft\security center] "AntiVirusDisableNotify"
      Présent ! [HKLM\software\microsoft\security center] "FirewallDisableNotify"
      Présent ! [HKLM\software\microsoft\security center] "UpdatesDisableNotify"
      Présent ! [HKLM\software\microsoft\security center\Svc] "AntiVirusOverride"
      Présent ! [HKLM\software\microsoft\security center\Svc] "FirewallOverride"

      ################## | Etat / Services / Informations |

      # Affichage des fichiers cachés : OK

      # Mode sans echec : OK

      # Uac : OK

      # Ndisuio -> Start = 3 ( Good = 3 | Bad = 4 )
      # EapHost -> Start = 3 ( Good = 2 | Bad = 4 )
      # Wlansvc -> Start = 2 ( Good = 2 | Bad = 4 )
      # (!) SharedAccess -> Start = 4 ( Good = 2 | Bad = 4 )
      # windefend -> Start = 2 ( Good = 2 | Bad = 4 )
      # wuauserv -> Start = 2 ( Good = 2 | Bad = 4 )
      # wscsvc -> Start = 2 ( Good = 2 | Bad = 4 )


      ################## | Cracks / Keygens / Serials |


      ################## | ! Fin du rapport # FindyKill V5.021 ! |
      0
  2. dawwood Messages postés 55 Date d'inscription   Statut Membre Dernière intervention   1
     
    Bonsoir Archet9 !

    Et merci de m apporter de ton soutien aussi rapidement , je m empresse de faire ce que tu as indiqué et je poste le rapport !

    A + :)
    0
  3. archet9
     
    ! Déconnecte toi et ferme toutes application en cours ( navigateur compris ) .

    • Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...)
    • Relance "FindyKill" : au menu principal choisis l'option " F " pour français et tape sur [entrée] .

    • Au second menu choisis l'option 2 (suppression) et tape sur [entrée]

    • Le pc va redémarrer automatiquement ...

    ? le programme va travailler , ne touche à rien ... , ton bureau ne sera pas accessible c est normal !

    --> Poste le rapport qui apparait à la fin ( le rapport est sauvegardé aussi sous C:\FindyKill.txt )

    /!\ Si le Bureau ne réapparait pas, presse Ctrl + Alt + Suppr , Onglet "Fichier" , "Nouvelle tâche" , tape explorer.exe et valide

    a+

    0
    1. bud
       
      je nest pa encore tout reesayer mai voila mon rapport :
      ############################## | FindyKill V5.021 |

      # User : Guillaume GENOD (Administrateurs) # PC-DE-BUD
      # Update on 10/12/2009 by Chiquitine29
      # Start at: 22:45:36 | 10/12/2009
      # Website : http://pagesperso-orange.fr/NosTools/index.html
      # Contact : FindyKill.Contact@gmail.com

      # Intel(R) Core(TM)2 Duo CPU P8700 @ 2.53GHz
      # Microsoft® Windows Vista™ Professionnel (6.0.6002 32-bit) # Service Pack 2
      # Internet Explorer 8.0.6001.18865
      # Windows Firewall Status : Disabled

      # C:\ # Disque fixe local # 283,4 Go (151,95 Go free) [OS] # NTFS
      # D:\ # Disque fixe local # 14,65 Go (9,7 Go free) [RECOVERY] # NTFS
      # E:\ # Disque CD-ROM
      # F:\ # Disque amovible # 7,45 Go (4,29 Go free) [ANARION KEY] # FAT32

      ############################## | Processus actifs |

      C:\Windows\System32\smss.exe
      C:\Windows\system32\csrss.exe
      C:\Windows\system32\wininit.exe
      C:\Windows\system32\csrss.exe
      C:\Windows\system32\services.exe
      C:\Windows\system32\lsass.exe
      C:\Windows\system32\lsm.exe
      C:\Windows\system32\winlogon.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\nvvsvc.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\System32\svchost.exe
      C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe
      C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe
      C:\Windows\System32\svchost.exe
      C:\Windows\System32\svchost.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_ec3a90dd\STacSV.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\SLsvc.exe
      C:\Windows\system32\nvvsvc.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\System32\ZoneLabs\vsmon.exe
      C:\Windows\system32\WLANExt.exe
      C:\Windows\System32\WLTRYSVC.EXE
      C:\Windows\System32\bcmwltry.exe
      C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
      C:\Windows\system32\Dwm.exe
      C:\Windows\System32\spoolsv.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\taskeng.exe
      C:\Windows\Explorer.EXE
      C:\Windows\system32\taskeng.exe
      C:\Windows\system32\taskeng.exe
      C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_ec3a90dd\aestsrv.exe
      C:\Windows\System32\svchost.exe
      C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
      C:\Windows\system32\DRIVERS\o2flash.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\rpcnet.exe
      C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
      C:\Windows\system32\svchost.exe
      C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
      C:\Windows\System32\svchost.exe
      C:\Windows\system32\SearchIndexer.exe
      C:\Windows\system32\WUDFHost.exe
      C:\Windows\system32\runonce.exe
      C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe
      C:\Windows\system32\conime.exe
      C:\Windows\system32\wbem\wmiprvse.exe
      C:\Windows\system32\PresentationSettings.exe

      ################## | C: |


      ################## | C:\Windows |


      ################## | C:\Windows\system32 |


      ################## | C:\Windows\system32\drivers |


      ################## | C:\Users\Guillaume GENOD\AppData\Roaming |


      ################## | Autres suppressions ... |

      ################## | Temporary Internet Files |


      ################## | Registre / Clés infectieuses |

      Supprimé ! [HKLM\software\microsoft\security center] "AntiVirusDisableNotify"
      Supprimé ! [HKLM\software\microsoft\security center] "FirewallDisableNotify"
      Supprimé ! [HKLM\software\microsoft\security center] "UpdatesDisableNotify"

      ################## | Etat / Services / Informations |

      # Mode sans echec : OK


      # Affichage des fichiers cachés : OK

      # Uac : OK

      # Ndisuio -> Start = 3 ( Good = 3 | Bad = 4 )
      # EapHost -> Start = 2 ( Good = 2 | Bad = 4 )
      # Wlansvc -> Start = 2 ( Good = 2 | Bad = 4 )
      # SharedAccess -> Start = 2 ( Good = 2 | Bad = 4 )
      # windefend -> Start = 2 ( Good = 2 | Bad = 4 )
      # wuauserv -> Start = 2 ( Good = 2 | Bad = 4 )
      # wscsvc -> Start = 2 ( Good = 2 | Bad = 4 )

      ################## | PEH ... |


      ################## | Cracks / Keygens / Serials |

      "F:\Autocad 2010\Serial\xf-a2010.exe"
      16/04/2009 21:16 |Size 81408 |Crc32 01e2a4ad |Md5 a31c3cea728550a58edc4f319b97288b


      ################## | ! Fin du rapport # FindyKill V5.021 ! |
      0
  4. archet9
     
    Télécharge RSIT (de random/random) sur le bureau :

    - Double clique sur RSIT.exe qui est sur le bureau
    - Clique sur "Continue" dans la fenêtre
    - RSIT téléchargera HijackThis si il n’est pas présent où détecté, alors il faudra accepter la licence
    - Poste le contenu de log.txt plus info.txt (réduit ds la barre de taches) à la fin de l’analyse .

    Les rapports sont dans le dossier ici C:\rsit
    a+
    0