Echec de l'analyse anti virus après téléchargement
Malekal_morte- Messages postés 178136 Date d'inscription Statut Modérateur, Contributeur sécurité Dernière intervention -
Depuis quelque temps, quand je télécharge n'importe quel fichier sur mon navigateur il y a le msg d'erreur : ''Echec de l'analyse antivirus'' et je ne peut pas ouvrir le document
Merci de votre aide d'avance
15 réponses
L'erreur 'Échec de l'analyse antivirus' survient lors du téléchargement de fichiers sous Windows 7 et Chrome, empêchant l'ouverture des documents et crée des blocages intermittents selon les configurations. Plusieurs réponses suggèrent de supprimer des programmes indésirables et extensions malveillantes comme BrowserProtect, puis d'utiliser RogueKiller et FRST pour nettoyer le système et restaurer les paramètres. Des rapports et scans, notamment Malwarebytes, sont évoqués pour diagnostiquer les infections et évaluer la nécessité d'une remise à niveau du système ou d'une réinstallation potentielle. En cas d'échec, certains évoquent aussi la possibilité de tester un autre antivirus tout en considérant la sauvegarde des données et les limites liées aux mises à jour Windows.
-
Salut,
A transférer par clef USB :
[*] Télécharger sur le bureau https://forum.malekal.com/viewtopic.php?t=29444&start= (suivre le lien officiel)
[*] !!! ATTENTION !! Sur la page de RogueKiller - "Prendre Lien de téléchargement" - avec les cercles violets. En cliquant sur ces cercles le programme se télécharge.
[*] Quitter tous les programmes
[*] Lancer RogueKiller.exe.
[*] Attendre que le Prescan ait fini ...
[*] Lance un scan afin de débloquer le bouton Suppression à droite.
[*] Clic sur Suppression.
[*] Copie/colle le contenu du rapport ici.
!!! Je répète bien faire Suppression à droite et poster le rapport. !!!
Like the angel you are, you laugh creating a lightness in my chest,
Your eyes they penetrate me,
(Your answer's always 'maybe')
That's when I got up and left -
Programmes et fonctionnalités du panneau de configuration, désinstalle :
Ares
BingBar
Claro
Google Toolbar
Mediabar
BrowserProtect
WebplayerToolbar
Shareaza
Ouvre le bloc-notes : Menu Démarrer / Tous les programmes / Accessoires et Bloc-Notes.
Copie/colle dedans ce qui suit :
() C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
(Teruten) C:\Windows\System32\FsUsbExService.Exe
() C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
AppInit_DLLs: c:\progra~2\browse~1\261095~1.52\{c16c1~1\browse~1.dll => C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.dll [2212304 2013-01-16] ()
BHO: Claro LTD Helper Object - {000F18F2-09EB-4A59-82B2-5AE4184C39C3} - C:\Program Files\Claro LTD\claro\1.8.8.5\bh\claro.dll (Montera Technologeis LTD)
SearchScopes: HKCU - bProtectorDefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
BHO: MediaBar - {EE9A4208-64EC-11DE-8440-204256D89593} - C:\Program Files\Shareaza Applications\MediaBar\ToolBar\ShareazaMediabarDx.dll ()
Toolbar: HKLM - MediaBar - {EE9A4208-64EC-11DE-8440-204256D89593} - C:\Program Files\Shareaza Applications\MediaBar\ToolBar\ShareazaMediabarDx.dll ()
Toolbar: HKLM - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM - Webplayer Toolbar - {4a1b5397-2a80-4f7d-af70-327d9e2103c6} - C:\Users\figue\AppData\Roaming\WebplayerToolbar\WebplayerToolbar.dll (Simply Tech LTD)
Toolbar: HKLM - Claro LTD Toolbar - {9E131A93-EED7-4BEB-B015-A0ADB30B5646} - C:\Program Files\Claro LTD\claro\1.8.8.5\claroTlbr.dll (Montera Technologeis LTD)
Toolbar: HKLM - QuickShare Widget - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\system32\mscoree.dll (Microsoft Corporation)
Toolbar: HKCU - &Google - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll (Google Inc.)
BHO: Webplayer Toolbar - {4a1b5397-2a80-4f7d-af70-327d9e2103c6} - C:\Users\figue\AppData\Roaming\WebplayerToolbar\WebplayerToolbar.dll (Simply Tech LTD)
CHR Extension: (QuickShare Widget) - C:\Users\figue\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl [2014-03-13]
CHR Extension: (Claro Toolbar) - C:\Users\figue\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcillohgikpecbmgioknapdpcjofaafl [2014-03-13]
CHR HKLM\...\Chrome\Extension: [dcillohgikpecbmgioknapdpcjofaafl] - C:\Users\figue\AppData\Roaming\Claro\claro.crx [2012-11-01]
CHR HKLM\...\Chrome\Extension: [dhkplhfnhceodhffomolpfigojocbpcb] - C:\Users\figue\AppData\Roaming\BabylonToolbar\CR\BabylonChrome1.crx [2012-11-01]
CHR HKLM\...\Chrome\Extension: [mljlkfaflemgicpnbejggbnmjgkhbfdo] - C:\Program Files\SmartInline\smartinline.crx [2012-11-16]
CHR HKLM\...\Chrome\Extension: [pgafcinpmmpklohkojmllohdhomoefph] - C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.crx [2013-02-07]
CHR HKLM\...\Chrome\Extension: [pmlghpafmmnmmkjdhacccolfgnkiboco] - C:\Program Files\1ClickDownload\oneclickdownloader11.crx [2012-08-07]
CHR HKCU\...\Chrome\Extension: [amfclgbdpgndipgoegfpkkgobahigbcl] - C:\Users\figue\AppData\Local\Smartbar/Application\0Extension.crx [2013-01-01]
R2 BrowserProtect; C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe [2550224 2013-01-16] ()
Menu Fichier / Enregistrer-sous
Place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
Relance FRST et clic sur le bouton fixlist.txt
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.
-
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version:11-05-2014 01
Ran by figue at 2014-05-14 05:33:55 Run:1
Running from C:\Users\figue\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
() C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
(Teruten) C:\Windows\System32\FsUsbExService.Exe
() C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
AppInit_DLLs: c:\progra~2\browse~1\261095~1.52\{c16c1~1\browse~1.dll => C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.dll [2212304 2013-01-16] ()
BHO: Claro LTD Helper Object - {000F18F2-09EB-4A59-82B2-5AE4184C39C3} - C:\Program Files\Claro LTD\claro\1.8.8.5\bh\claro.dll (Montera Technologeis LTD)
SearchScopes: HKCU - bProtectorDefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
BHO: MediaBar - {EE9A4208-64EC-11DE-8440-204256D89593} - C:\Program Files\Shareaza Applications\MediaBar\ToolBar\ShareazaMediabarDx.dll ()
Toolbar: HKLM - MediaBar - {EE9A4208-64EC-11DE-8440-204256D89593} - C:\Program Files\Shareaza Applications\MediaBar\ToolBar\ShareazaMediabarDx.dll ()
Toolbar: HKLM - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM - Webplayer Toolbar - {4a1b5397-2a80-4f7d-af70-327d9e2103c6} - C:\Users\figue\AppData\Roaming\WebplayerToolbar\WebplayerToolbar.dll (Simply Tech LTD)
Toolbar: HKLM - Claro LTD Toolbar - {9E131A93-EED7-4BEB-B015-A0ADB30B5646} - C:\Program Files\Claro LTD\claro\1.8.8.5\claroTlbr.dll (Montera Technologeis LTD)
Toolbar: HKLM - QuickShare Widget - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\system32\mscoree.dll (Microsoft Corporation)
Toolbar: HKCU - &Google - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll (Google Inc.)
BHO: Webplayer Toolbar - {4a1b5397-2a80-4f7d-af70-327d9e2103c6} - C:\Users\figue\AppData\Roaming\WebplayerToolbar\WebplayerToolbar.dll (Simply Tech LTD)
CHR Extension: (QuickShare Widget) - C:\Users\figue\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl [2014-03-13]
CHR Extension: (Claro Toolbar) - C:\Users\figue\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcillohgikpecbmgioknapdpcjofaafl [2014-03-13]
CHR HKLM\...\Chrome\Extension: [dcillohgikpecbmgioknapdpcjofaafl] - C:\Users\figue\AppData\Roaming\Claro\claro.crx [2012-11-01]
CHR HKLM\...\Chrome\Extension: [dhkplhfnhceodhffomolpfigojocbpcb] - C:\Users\figue\AppData\Roaming\BabylonToolbar\CR\BabylonChrome1.crx [2012-11-01]
CHR HKLM\...\Chrome\Extension: [mljlkfaflemgicpnbejggbnmjgkhbfdo] - C:\Program Files\SmartInline\smartinline.crx [2012-11-16]
CHR HKLM\...\Chrome\Extension: [pgafcinpmmpklohkojmllohdhomoefph] - C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.crx [2013-02-07]
CHR HKLM\...\Chrome\Extension: [pmlghpafmmnmmkjdhacccolfgnkiboco] - C:\Program Files\1ClickDownload\oneclickdownloader11.crx [2012-08-07]
CHR HKCU\...\Chrome\Extension: [amfclgbdpgndipgoegfpkkgobahigbcl] - C:\Users\figue\AppData\Local\Smartbar/Application\0Extension.crx [2013-01-01]
R2 BrowserProtect; C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe [2550224 2013-01-16] ()
*****************
C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe => No running process found
[2080] C:\Windows\System32\FsUsbExService.Exe => Process closed successfully.
C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe => No running process found
"c:\progra~2\browse~1\261095~1.52\{c16c1~1\browse~1.dll" => Value Data removed successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000F18F2-09EB-4A59-82B2-5AE4184C39C3} => Key not found.
HKCR\CLSID\{000F18F2-09EB-4A59-82B2-5AE4184C39C3} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\bProtectorDefaultScope => Value not found.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE9A4208-64EC-11DE-8440-204256D89593} => Key not found.
HKCR\CLSID\{EE9A4208-64EC-11DE-8440-204256D89593} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{EE9A4208-64EC-11DE-8440-204256D89593} => Value not found.
HKCR\CLSID\{EE9A4208-64EC-11DE-8440-204256D89593} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{8dcb7100-df86-4384-8842-8fa844297b3f} => Value not found.
HKCR\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{4a1b5397-2a80-4f7d-af70-327d9e2103c6} => Value not found.
HKCR\CLSID\{4a1b5397-2a80-4f7d-af70-327d9e2103c6} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{9E131A93-EED7-4BEB-B015-A0ADB30B5646} => Value not found.
HKCR\CLSID\{9E131A93-EED7-4BEB-B015-A0ADB30B5646} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{ae07101b-46d4-4a98-af68-0333ea26e113} => Value deleted successfully.
HKCR\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113} => Key deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Value not found.
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Key not found.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4a1b5397-2a80-4f7d-af70-327d9e2103c6} => Key not found.
HKCR\CLSID\{4a1b5397-2a80-4f7d-af70-327d9e2103c6} => Key not found.
C:\Users\figue\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl => Moved successfully.
C:\Users\figue\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcillohgikpecbmgioknapdpcjofaafl directory not found.
HKLM\SOFTWARE\Google\Chrome\Extensions\dcillohgikpecbmgioknapdpcjofaafl => Key not found.
C:\Users\figue\AppData\Roaming\Claro\claro.crx => Moved successfully.
HKLM\SOFTWARE\Google\Chrome\Extensions\dhkplhfnhceodhffomolpfigojocbpcb => Key deleted successfully.
"C:\Users\figue\AppData\Roaming\BabylonToolbar\CR\BabylonChrome1.crx" => File/Directory not found.
HKLM\SOFTWARE\Google\Chrome\Extensions\mljlkfaflemgicpnbejggbnmjgkhbfdo => Key deleted successfully.
C:\Program Files\SmartInline\smartinline.crx => Moved successfully.
HKLM\SOFTWARE\Google\Chrome\Extensions\pgafcinpmmpklohkojmllohdhomoefph => Key not found.
Could not move "C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.crx" => Scheduled to move on reboot.
HKLM\SOFTWARE\Google\Chrome\Extensions\pmlghpafmmnmmkjdhacccolfgnkiboco => Key deleted successfully.
C:\Program Files\1ClickDownload\oneclickdownloader11.crx => Moved successfully.
HKCU\SOFTWARE\Google\Chrome\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl => Key deleted successfully.
Could not move "C:\Users\figue\AppData\Local\Smartbar/Application\0Extension.crx" => Scheduled to move on reboot.
BrowserProtect => Service not found.
=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-05-14 05:40:39)<=
C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.crx => Is moved successfully.
"C:\Users\figue\AppData\Local\Smartbar/Application\0Extension.crx" => File could not move.
==== End of Fixlog ====
-
-
refais un scan FRST et fais passer les rapports par http://pjjoint.malekal.com
-
-
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question -
-
https://pjjoint.malekal.com/files.php?id=FRST_20140514_c5n13n515i10 voici le lien, maintenant je pourrais répondre que vers 16h15
-
Désinstalle :
McAfee Security Scan
RegistryBooster
SmartInline
J'ai l'impression que tu as Kaspersky avec en plus Microsoft Security Essential.
Si c'est le cas, un seul antivirus par PC, donc désinstalle un des deux.
A moins que ce soit des restes pour Kaspersky.
Ouvre le bloc-notes : Menu Démarrer / Tous les programmes / Accessoires et Bloc-Notes.
Copie/colle dedans ce qui suit :
FF Extension: OneClickDownloader - C:\Users\figue\AppData\Roaming\Mozilla\Firefox\profiles\extensions\OneClickDownload@OneClickDownload.com [2012-09-04]
HKLM\Software\Microsoft\Internet Explorer\Main,Start Default_Page_URL = http://ww1.certified-toolbar.com <b>[Pays IL - 82.80.196.117]</b>
BHO: SmartInline - {8B482FEC-B7B9-48EA-A366-86D2EAF6FFDA} - C:\Program Files\SmartInline\ContentHost.dll (Smartinline)
HKU\S-1-5-21-3354903158-501296427-4267268913-1000\...\Run: [Browser Infrastructure Helper] => C:\Users\figue\AppData\Local\Smartbar\Application\QuickShare.exe startup
HKU\S-1-5-21-3354903158-501296427-4267268913-1000\...\Run: [RegistryBooster] => C:\Program Files\Uniblue\RegistryBooster\launcher.exe delay 20000
HKU\S-1-5-21-3354903158-501296427-4267268913-1000\...\Run: [Tunebite] => C:\Program Files\RapidSolution\Tunebite\Tunebite.exe -tray
Menu Fichier / Enregistrer-sous
Place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
Relance FRST et clic sur le bouton fixlist.txt
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.
-
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version:11-05-2014 01
Ran by figue at 2014-05-14 16:46:43 Run:2
Running from C:\Users\figue\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
FF Extension: OneClickDownloader - C:\Users\figue\AppData\Roaming\Mozilla\Firefox\profiles\extensions\OneClickDownload@OneClickDownload.com [2012-09-04]
HKLM\Software\Microsoft\Internet Explorer\Main,Start Default_Page_URL = http://search.certified-toolbar.com?si=38268&home=true&tid=77 <b>[Pays IL - 82.80.196.117]</b>
BHO: SmartInline - {8B482FEC-B7B9-48EA-A366-86D2EAF6FFDA} - C:\Program Files\SmartInline\ContentHost.dll (Smartinline)
HKU\S-1-5-21-3354903158-501296427-4267268913-1000\...\Run: [Browser Infrastructure Helper] => C:\Users\figue\AppData\Local\Smartbar\Application\QuickShare.exe startup
HKU\S-1-5-21-3354903158-501296427-4267268913-1000\...\Run: [RegistryBooster] => C:\Program Files\Uniblue\RegistryBooster\launcher.exe delay 20000
HKU\S-1-5-21-3354903158-501296427-4267268913-1000\...\Run: [Tunebite] => C:\Program Files\RapidSolution\Tunebite\Tunebite.exe -tray
*****************
C:\Users\figue\AppData\Roaming\Mozilla\Firefox\profiles\extensions\OneClickDownload@OneClickDownload.com => Moved successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Default_Page_URL => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8B482FEC-B7B9-48EA-A366-86D2EAF6FFDA} => Key not found.
HKCR\CLSID\{8B482FEC-B7B9-48EA-A366-86D2EAF6FFDA} => Key not found.
HKU\S-1-5-21-3354903158-501296427-4267268913-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Browser Infrastructure Helper => Value deleted successfully.
HKU\S-1-5-21-3354903158-501296427-4267268913-1000\Software\Microsoft\Windows\CurrentVersion\Run\\RegistryBooster => Value deleted successfully.
HKU\S-1-5-21-3354903158-501296427-4267268913-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Tunebite => Value deleted successfully.
==== End of Fixlog ==== -
bon je pense que ça doit aller mieux.
Faudrait faire du ménage dans les programmes installés et voilou :)
plus de pubs ?
-
Ca me met toujours, echec de l'analyse de l'anti virus quand je veux télécharger un fichier sur internet
-
passe RogueKiller : https://forums.commentcamarche.net/forum/affich-28377178-echec-de-l-analyse-anti-virus-apres-telechargement#1
Si tu ne peux pas le télécharger, fais ça : https://www.malekal.com/sirefef-impossible-de-telecharger-sur-internet-explorer/
Like the angel you are, you laugh creating a lightness in my chest,
Your eyes they penetrate me,
(Your answer's always 'maybe')
That's when I got up and left-
RogueKiller V8.8.15 [Mar 27 2014] par Adlice Software
mail : https://www.adlice.com/contact/
Remontees : https://forum.adlice.com/
Site Web : http://www.surlatoile.org/RogueKiller/
Blog : https://www.adlice.com/
Systeme d'exploitation : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Demarrage : Mode normal
Utilisateur : figue [Droits d'admin]
Mode : Suppression -- Date : 05/14/2014 23:52:11
| ARK || FAK || MBR |
¤¤¤ Processus malicieux : 0 ¤¤¤
¤¤¤ Entrees de registre : 5 ¤¤¤
[HJ POL][PUM] HKLM\[...]\ActiveDesktop : NoChangingWallPaper (0) -> REMPLACÉ ()
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {645FF040-5081-101B-9F08-00AA002F954E} (1) -> REMPLACÉ (0)
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {645FF040-5081-101B-9F08-00AA002F954E} (1) -> REMPLACÉ (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> REMPLACÉ (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REMPLACÉ (0)
¤¤¤ Tâches planifiées : 2 ¤¤¤
[V1][SUSP PATH] EasyShare Registration Task.job : C:\Windows\system32\rundll32.exe - C:\PROGRA~2\Kodak\EasyShareSetup\$REGIS~1\Registration_7.5.30.2.sxt _RegistrationOffer@16 [7][-] -> SUPPRIMÉ
[V1][SUSP PATH] ShareazaNAG.job : C:\Users\figue\AppData\Local\Temp\Shareaza_setup.exe - NAGMETHOD=Schedule [x][x] -> SUPPRIMÉ
¤¤¤ Entrées Startup : 0 ¤¤¤
¤¤¤ Navigateurs web : 0 ¤¤¤
¤¤¤ Addons navigateur : 0 ¤¤¤
¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤
¤¤¤ Driver : [CHARGE] ¤¤¤
[Address] EAT @explorer.exe (ConvertINetMultiByteToUnicode) : rasman.dll -> HOOKED (C:\Windows\System32\MLANG.dll @ 0x6B642727)
[Address] EAT @explorer.exe (ConvertINetReset) : rasman.dll -> HOOKED (C:\Windows\System32\MLANG.dll @ 0x6B641532)
[Address] EAT @explorer.exe (ConvertINetString) : rasman.dll -> HOOKED (C:\Windows\System32\MLANG.dll @ 0x6B6426FB)
[Address] EAT @explorer.exe (ConvertINetUnicodeToMultiByte) : rasman.dll -> HOOKED (C:\Windows\System32\MLANG.dll @ 0x6B631B69)
[Address] EAT @explorer.exe (DllCanUnloadNow) : rasman.dll -> HOOKED (C:\Windows\System32\MLANG.dll @ 0x6B633866)
[Address] EAT @explorer.exe (DllGetClassObject) : rasman.dll -> HOOKED (C:\Windows\System32\MLANG.dll @ 0x6B632434)
[Address] EAT @explorer.exe (GetGlobalFontLinkObject) : rasman.dll -> HOOKED (C:\Windows\System32\MLANG.dll @ 0x6B647F3C)
[Address] EAT @explorer.exe (IsConvertINetStringAvailable) : rasman.dll -> HOOKED (C:\Windows\System32\MLANG.dll @ 0x6B63765D)
[Address] EAT @explorer.exe (LcidToRfc1766A) : rasman.dll -> HOOKED (C:\Windows\System32\MLANG.dll @ 0x6B63F69D)
[Address] EAT @explorer.exe (LcidToRfc1766W) : rasman.dll -> HOOKED (C:\Windows\System32\MLANG.dll @ 0x6B634877)
[Address] EAT @explorer.exe (Rfc1766ToLcidA) : rasman.dll -> HOOKED (C:\Windows\System32\MLANG.dll @ 0x6B63F638)
[Address] EAT @explorer.exe (Rfc1766ToLcidW) : rasman.dll -> HOOKED (C:\Windows\System32\MLANG.dll @ 0x6B634971)
[Address] EAT @explorer.exe (DllCanUnloadNow) : imapi2.dll -> HOOKED (C:\Windows\system32\wbem\wbemsvc.dll @ 0x6FA793B2)
[Address] EAT @explorer.exe (DllGetClassObject) : imapi2.dll -> HOOKED (C:\Windows\system32\wbem\wbemsvc.dll @ 0x6FA79375)
[Address] EAT @explorer.exe (DllRegisterServer) : imapi2.dll -> HOOKED (C:\Windows\system32\wbem\wbemsvc.dll @ 0x6FA79554)
[Address] EAT @explorer.exe (DllUnregisterServer) : imapi2.dll -> HOOKED (C:\Windows\system32\wbem\wbemsvc.dll @ 0x6FA796B8)
¤¤¤ Ruches Externes: ¤¤¤
¤¤¤ Infection : ¤¤¤
¤¤¤ Fichier HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
127.0.0.1 localhost
::1 localhost
¤¤¤ MBR Verif: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ SCSI) Hitachi HDT725032VLA SCSI Disk Device +++++
--- User ---
[MBR] 226a0d8c18e1f437d7fb585892d31598
[BSP] 2552b2d2227b2ea2b3c92a526a1a6f5d : HP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 297704 MB
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 609698880 | Size: 7538 MB
User = LL1 ... OK!
Error reading LL2 MBR! ([0x1] Fonction incorrecte. )
+++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ USB) USB DISK 2.0 USB Device +++++
--- User ---
[MBR] 1f89d61a65b5bd72e00aa30170dbe9fd
[BSP] 33a07a59d299ab4ea9f4ab0156f9d86f : Windows XP MBR Code
Partition table:
0 - [XXXXXX] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 8064 | Size: 3820 MB
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Cette demande n'est pas prise en charge. )
+++++ PhysicalDrive2: (\\.\PHYSICALDRIVE2 @ USB) Generic USB SD Reader USB Device +++++
Error reading User MBR! ([0x15] Le périphérique n'est pas prêt. )
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Cette demande n'est pas prise en charge. )
+++++ PhysicalDrive3: (\\.\PHYSICALDRIVE3 @ USB) Generic USB CF Reader USB Device +++++
Error reading User MBR! ([0x15] Le périphérique n'est pas prêt. )
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Cette demande n'est pas prise en charge. )
+++++ PhysicalDrive4: (\\.\PHYSICALDRIVE4 @ USB) Generic USB SM Reader USB Device +++++
Error reading User MBR! ([0x15] Le périphérique n'est pas prêt. )
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Cette demande n'est pas prise en charge. )
+++++ PhysicalDrive5: (\\.\PHYSICALDRIVE5 @ USB) Generic USB MS Reader USB Device +++++
Error reading User MBR! ([0x15] Le périphérique n'est pas prêt. )
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Cette demande n'est pas prise en charge. )
Termine : << RKreport[0]_D_05142014_235211.txt >>
RKreport[0]_S_05142014_235026.txt
-
-
Ton Microsoft Security Essentials, il fonctionnait bien ?
-
Passe ça aussi :
Passe un coup de TDSSKiller : https://forum.malekal.com/viewtopic.php?t=28637&start=
Fais skip sur les détections.
Clic en haut à droite sur reports.
Vas sur http://pjjoint.malekal.com et copie/colle le contenu du rapport TDSSKiller en bas, fais envoyer.
Donne le lien du rapport pjjoint ici dans un nouveau message.
et un coup de Eset Repair : https://forum.malekal.com/viewtopic.php?t=20428&start=
et enfin Voir : https://support.microsoft.com/en-us/windows?ui=en-US&rs=en-001&ad=US
-
ok je vais le faire mais deja pour le eset repair, on parle de cd ou dvd windows mais je ne l'ai pas
-
https://pjjoint.malekal.com/files.php?id=20140516_t13w7l5h10l9 voila un rapport malwarebytes anti-malware. Et réinstaller Windows, veut dire que je perdrais toutes mes données?