Problème de virus

sahra2701 Messages postés 2 Statut Membre -  
papyber Messages postés 6430 Statut Contributeur sécurité -
Au fait j'ai mêm fait le test hijackthis et voici le résultat Merci beaucoup pour votre Aide

Logfile of HijackThis v1.99.1
Scan saved at 00:20:41, on 29/03/2007
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS.0\System32\smss.exe
C:\WINDOWS.0\system32\winlogon.exe
C:\WINDOWS.0\system32\services.exe
C:\WINDOWS.0\System32\svchost.exe
C:\WINDOWS.0\System32\svchost.exe
C:\WINDOWS.0\Explorer.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS.0\System32\wpabaln.exe
C:\WINDOWS.0\System32\iexplore.exe
C:\WINDOWS.0\System32\zqojdzta.exe
C:\WINDOWS.0\System32\rundll32.exe
C:\WINDOWS.0\System32\winIogon.exe
C:\WINDOWS.0\Explorer.exe
C:\Documents and Settings\aida yahyaoui\Bureau\Scanner.exe.exe
C:\WINDOWS.0\system32\svchost.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {34C1DCDD-ACF4-4933-8295-CFF1F68C1021} - C:\WINDOWS.0\System32\pmkhh.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: (no name) - {57E218E6-5A80-4f0c-AB25-83598F25D7E9} - C:\WINDOWS.0\System32\eaogqrke.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {A0E336C5-4C49-42ED-972B-F65EAB2B3EDb} - C:\WINDOWS.0\System32\ermycnjt.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: (no name) - {E1DAC82B-1C81-41B2-AC1B-6AE2653965E0} - C:\WINDOWS.0\System32\yayvvsr.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS.0\System32\msdxm.ocx
O4 - HKLM\..\Run: [Application Layer Gateway Service] C:\WINDOWS.0\System32\algs.exe
O4 - HKLM\..\Run: [Advanced DHTML Enable] C:\WINDOWS.0\System32\zqojdzta.exe
O4 - HKLM\..\Run: [Microsft Security Monitor Process] mssmpp.exe
O4 - HKLM\..\Run: [Spooler SubSystem App] C:\WINDOWS.0\System32\spooIsv.exe
O4 - HKLM\..\Run: [Client Server Runtime Process] C:\WINDOWS.0\System32\csrs.exe
O4 - HKLM\..\Run: [Windows Logon Application] C:\WINDOWS.0\System32\winIogon.exe
O4 - HKLM\..\Run: [uvnx] c:\windows.0\system32\uvcx.exe
O4 - HKLM\..\Run: [SvcManager] c:\windows.0\system32\system4.exe
O4 - HKLM\..\Run: [Microsoft Internet Explorer] C:\WINDOWS.0\System32\iexplore.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [Windows Explorer] C:\WINDOWS.0\System32\explorer.exe
O4 - HKLM\..\Run: [Winamp Agent] C:\WINDOWS.0\System32\winamp.exe
O4 - HKLM\..\Run: [SoundService] rundll32.exe "C:\WINDOWS.0\System32\nyscxnjb.dll",setvm
O4 - HKLM\..\Run: [VT100 Emulator] C:\WINDOWS.0\System32\VT100.EXE
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\RunServices: [Microsft Security Monitor Process] mssmpp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS.0\System32\CTFMON.EXE
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS.0\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS.0\web\related.htm
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: pmkhh - C:\WINDOWS.0\System32\pmkhh.dll
O20 - Winlogon Notify: rpcc - C:\WINDOWS.0\System32\rpcc.dll
O20 - Winlogon Notify: yayvvsr - C:\WINDOWS.0\SYSTEM32\yayvvsr.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: LSA Shell Export-Version - Unknown owner - C:\WINDOWS.0\lsass.exe
O23 - Service: Scheduling Agent (Mstinit) - Unknown owner - C:\WINDOWS.0\mstinit.exe
O23 - Service: Windows NT-Session Manager - Unknown owner - C:\WINDOWS.0\smss.exe
A voir également:

1 réponse

papyber Messages postés 6430 Statut Contributeur sécurité 257
 
télécharge GenProc sur ton bureau
http://www.alt-shift-return.org/Info/Fichiers/GenProc.zip

dézippe le dossier, double-clique sur GenProc.bat et poste le contenu du rapport qui s'ouvre

Aide en images : http://www.alt-shift-return.org/Info/GenProc-HowTo.html
0