Probleme internet explorer

nanoua971 Messages postés 18 Statut Membre -  
 gen-hackman -
Bonjour,
j'ai un petit soucis avec internet explorer, a chaque fois que je démarre mon pc une succession de page internet s'ouvre. je suis obliger d'ouvrir le gestionnaire des taches pour arrêter le processus. et la g constaté que même quand j'utilise le pc des pages internet s'ouvre sans arrêt.
je suppose que j'ai chopé un virus.
Que dois-je faire?
Aidez-moi s'il vous plait

3 réponses

  1. gen-hackman
     
    salut : Malwarebytes ne se passe pas en debut de desinfection..

    ==============================================

    ? Télécharge UsbFix

    (!) Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) susceptible d'avoir été infectées sans les ouvrir

    ? Double clic sur le raccourci UsbFix présent sur ton bureau .

    ? Au menu principal choisis l'option " F " pour français et tape sur [entrée] .

    ? Au second menu Choisis l'option " 1 " (recherche) et tape sur [entrée]

    ? Laisse travailler l'outil.

    ? Ensuite post le rapport UsbFix.txt qui apparaitra.

    Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque. ( C:\UsbFix.txt )

    ( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )

    Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
    Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
    Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.
    ?G3?-?@¢??@?(TM)©®?
    1
    1. nanoua971 Messages postés 18 Statut Membre
       
      OK
      0
    2. nanoua971 Messages postés 18 Statut Membre
       
      ############################## | UsbFix V6.100 |

      User : USER (Administrateurs) # PC-DE-USER
      Update on 18/03/2010 by El Desaparecido , C_XX & Chimay8
      Start at: 01:18:27 | 22/03/2010
      Website : http://pagesperso-orange.fr/NosTools/index.html
      Contact : FindyKill.Contact@gmail.com

      Mobile AMD Sempron(tm) Processor 3500+
      Microsoft® Windows Vista(TM) Édition Familiale Basique (6.0.6002 32-bit) # Service Pack 2
      Internet Explorer 8.0.6001.18882
      Windows Firewall Status : Enabled

      C:\ -> Disque fixe local # 149,05 Go (33,51 Go free) # NTFS
      D:\ -> Disque CD-ROM
      E:\ -> Disque CD-ROM
      G:\ -> Disque CD-ROM

      ################## | Elements infectieux |

      C:\autorun.inf -> fichier appelé : "C:\f2kmj.exe" ( Absent ! )
      C:\autorun.inf
      C:\sys

      ################## | Registre |

      [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "cdoosoft"
      [HKLM\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore] "DisableConfig"
      [HKLM\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore] "DisableSR"
      [HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoDesktop"
      [HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoFind"
      [HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoFolderOptions"
      [HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoRun"
      [HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoViewContextMenu"

      ################## | Mountpoints2 |

      HKCU\..\..\Explorer\MountPoints2\{05803d9c-2c1e-11de-a1a6-00a0d1c76a7e}
      shell\Auto\command =F:\Start.exe
      shell\AutoRun\command =C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL F:\Start.exe

      HKCU\..\..\Explorer\MountPoints2\{06832100-8255-11de-9a70-00199910b455}
      shell\AutoRun\command =F:\cv8j.exe
      shell\open\Command =F:\cv8j.exe

      HKCU\..\..\Explorer\MountPoints2\{085d78fc-6961-11de-8a38-00199910b455}
      shell\Auto\command =F:\Start.exe
      shell\AutoRun\command =C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL F:\Start.exe

      HKCU\..\..\Explorer\MountPoints2\{0f2e0c71-8bf0-11de-b31a-00199910b455}
      shell\AutoRun\command =6rxt26.exe
      shell\open\Command =6rxt26.exe

      HKCU\..\..\Explorer\MountPoints2\{1859a111-7f1d-11da-85d6-00a0d1c76a7e}
      shell\Auto\command =F:\Start.exe
      shell\AutoRun\command =C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL F:\Start.exe

      HKCU\..\..\Explorer\MountPoints2\{2a7e15a9-36ec-11de-9daf-00a0d1c76a7e}
      shell\AutoRun\command =F:\tfk8.exe
      shell\explore\Command =F:\tfk8.exe
      shell\open\Command =F:\tfk8.exe

      HKCU\..\..\Explorer\MountPoints2\{3ffd8a19-6464-11de-ad20-00199910b455}
      shell\AutoRun\command =G:\pagefile.pif
      shell\explore\Command =G:\pagefile.pif
      shell\open\Command =G:\pagefile.pif

      HKCU\..\..\Explorer\MountPoints2\{5aeef4bf-1267-11df-8e27-00a0d1c76a7e}
      shell\AutoRun\command =C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL WAAREos.EXe

      HKCU\..\..\Explorer\MountPoints2\{72716315-f1eb-11dd-a393-00199910b455}
      shell\AutoRun\command =E:\AutoRun.exe

      HKCU\..\..\Explorer\MountPoints2\{86ac6ee7-3be7-11de-935b-00a0d1c76a7e}
      shell\AutoRun\command =F:\pagefile.pif
      shell\explore\Command =F:\pagefile.pif
      shell\open\Command =F:\pagefile.pif

      HKCU\..\..\Explorer\MountPoints2\{9deff6e8-59c3-11de-8f52-00199910b455}
      shell\AutoRun\command =F:\pagefile.pif
      shell\explore\Command =F:\pagefile.pif
      shell\open\Command =F:\pagefile.pif

      HKCU\..\..\Explorer\MountPoints2\{c1d5feb6-7158-11de-a6d0-00a0d1c76a7e}
      shell\Auto\command =F:\Start.exe
      shell\AutoRun\command =C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL F:\Start.exe

      HKCU\..\..\Explorer\MountPoints2\{c1d5febb-7158-11de-a6d0-00a0d1c76a7e}
      shell\Auto\command =G:\Start.exe
      shell\AutoRun\command =C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL G:\Start.exe

      HKCU\..\..\Explorer\MountPoints2\{ce93a69f-80b9-11de-83a7-00199910b455}
      shell\AutoRun\command =F:\3j2h0tf.bat
      shell\open\Command =F:\3j2h0tf.bat

      HKCU\..\..\Explorer\MountPoints2\{ce93aa1e-80b9-11de-83a7-00199910b455}
      shell\AutoRun\command =F:\tyktjfww.exe
      shell\explore\Command =F:\tyktjfww.exe
      shell\open\Command =F:\tyktjfww.exe

      HKCU\..\..\Explorer\MountPoints2\{cec62a8c-b80b-11de-8741-00a0d1c76a7e}
      shell\AutoRun\command =F:\3c.exe
      shell\open\Command =F:\3c.exe

      HKCU\..\..\Explorer\MountPoints2\{dbce52c5-54c3-11de-9057-00a0d1c76a7e}
      shell\AutoRun\command =F:\start.exe
      shell\guadeloupe\command =F:\start.exe

      HKCU\..\..\Explorer\MountPoints2\{dc392de9-75d9-11de-9290-00a0d1c76a7e}
      shell\AutoRun\command =C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL LAuRe-Jean.eXe

      HKCU\..\..\Explorer\MountPoints2\{dea07652-ceb9-11dd-a38b-00199910b455}
      shell\AutoRun\command =C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL youfu.Exe

      HKCU\..\..\Explorer\MountPoints2\{e52962ee-5a5f-11de-9576-00199910b455}
      shell\AutoRun\command =F:\rcukd.cmd
      shell\explore\Command =F:\rcukd.cmd
      shell\open\Command =F:\rcukd.cmd

      HKCU\..\..\Explorer\MountPoints2\{ea3acc25-a1e9-11dd-8f3c-00199910b455}
      shell\AutoRun\command =f2kmj.exe
      shell\open\Command =f2kmj.exe

      HKCU\..\..\Explorer\MountPoints2\{ea3acc2b-a1e9-11dd-8f3c-00199910b455}
      shell\AutoRun\command =f2kmj.exe
      shell\open\Command =f2kmj.exe

      HKCU\..\..\Explorer\MountPoints2\{f424ad0e-bebc-11dd-956b-00a0d1c76a7e}
      shell\Auto\command =Start.exe
      shell\AutoRun\command =C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Start.exe

      HKCU\..\..\Explorer\MountPoints2\{f424ad14-bebc-11dd-956b-00a0d1c76a7e}
      shell\Auto\command =Start.exe
      shell\AutoRun\command =C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Start.exe

      HKCU\..\..\Explorer\MountPoints2\{f6a58d85-8d84-11de-8113-00199910b455}
      shell\AutoRun\command =F:\3c.exe
      shell\open\Command =F:\3c.exe

      ################## | Vaccin |


      ################## | ! Fin du rapport # UsbFix V6.100 ! |
      0
  2. gen-hackman
     
    Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) susceptibles d avoir été infectés sans les ouvrir

    ▶ Fais un clic droit sur le raccourci UsbFix présent sur ton bureau et choisi éxécuter en tant qu'administrateur .

    ▶ choisi l option 2 ( Suppression )

    ▶ Ton bureau disparaitra et le pc redémarrera .

    ▶ Au redémarrage , UsbFix scannera ton pc , laisse travailler l outil.

    ▶ Ensuite post le rapport UsbFix.txt qui apparaitra avec le bureau .

    ▶ Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque.( C:\UsbFix.txt )

    ( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )

    ######### | Désinstallation | #########

    ▶ Fais un clic droit sur le raccourci UsbFix présent sur ton bureau et choisi éxécuter en tant qu'administrateur .

    ▶ Choisi l option Désinstaller ....
    0
  3. Hassan94240 Messages postés 463 Statut Membre 56
     
    Salut, quelque pti scan de ton p.c.

    Télécharge: A-Squared,Super Anti Spware et Malwarbyte's

    (n'oublie pas de faire les mises à jour avant chaque scan)

    et fais des scan complet,

    termine par un bon pti coup de Ccleaner

    et ensuite redémarre ton ordi
    -2