Mise à jours impossible erreur 0x8DDD0018

Résolu
Mohhican81 -  
 benhures -
Bonjour,

Je viens de passer mon aprés midi sur ce forum et je n'est pas trouvé la solution à mon prôbléme .

Je sais que vous allez me dire que si , mais rien ne marche .

Voici mon blem :
Le site ne peut pas continuer, car un ou plusieurs des services Windows suivants ne sont pas exécutés :

Mises à jour automatiques (permet au site de rechercher, de télécharger et d'installer les mises à jour prioritaires destinées à votre ordinateur)

Suivi du code erreur 0x8DDD0018 ET DE erreur 0x80070422

et la solution windows cidessous ne fonctionne pas les mises à jours reste désactivé .

Service de transfert intelligent en arrière-plan (BITS) (accélère le téléchargement et résout les problèmes liés aux éventuelles interruptions du processus)
Journal des événements (conserve l'historique des opérations de mise à jour pour faciliter la résolution des problèmes le cas échéant)
Pour vérifier que ces services sont exécutés :
1. Cliquez sur Démarrer, puis sur Exécuter.
2. Entrez services.msc, puis cliquez sur OK.
3. Dans la liste de services, double-cliquez sur Mises à jour automatiques, puis cliquez sur Propriétés.
4. Dans la liste Type de démarrage, sélectionnez Automatique et cliquez sur Appliquer.
5. Vérifiez que l'état associé au service est Démarré. Si le service est arrêté, cliquez sur le bouton Démarrer.
6. Dans la liste de services, double-cliquez sur Service de transfert intelligent en arrière-plan et cliquez sur Propriétés.
7. Dans la liste Type de démarrage, sélectionnez Manuel et cliquez sur Appliquer.
8. Vérifiez que l'état associé au service est Démarré. Si le service est arrêté, cliquez sur le bouton Démarrer.
9. Dans la liste de services, double-cliquez sur Journal des événements et cliquez sur Propriétés.
10. Dans la liste Type de démarrage, sélectionnez Automatique et cliquez sur Appliquer.
11. Vérifiez que l'état du service est Démarré. Si le service est arrêté, cliquez sur le bouton Démarrer.
Si le problème persiste, vous serez peut-être amené à demander de l'aide à l'une des ressources suivantes.

ALORS AU SECOURS SVP AVANT QUE JE NE DETRUISE CET ORDINATEUR .

Merci d'avance au génie de l'informatique
Configuration: Windows XP
Internet Explorer 7.0

6 réponses

  1. Utilisateur anonyme
     
    Salut

    As-tu essayé ce qui suit ?

    Clique sur démarrer, exécuter puis tape cmd

    Et colle ce qui suit dans l'invite de commande :

    sc config wuauserv start= auto obj= LocalSystem
    sc config bits start= auto obj= LocalSystem
    sc config eventlog start= auto obj= LocalSystem
    net start wuauserv
    net start bits


    ++
    4
    1. mohhican81 Messages postés 35 Statut Membre
       
      Bonjour ,

      Merci de ton aide mais hélas je n'ai vu aucun changement .

      Je désespére ......
      0
    2. 0111001
       
      Merci !
      Trés pratique ton astuce !
      sa marche pour moi
      0
    3. benhures
       
      merci ça m'a bien dépanné.
      0
  2. Utilisateur anonyme
     
    Ok !!

    Essaye ce programme : dial a fix
    Tu trouveras ici un tuto plus détaillé si besoin

    Voir aussi le site de Microsoft

    ++
    0
    1. mohhican81 Messages postés 35 Statut Membre
       
      Bonjour,

      Encore merci ...............................

      Mais hélas toujours rien à faire .........

      Snif !
      0
  3. Utilisateur anonyme
     
    Tu as ce problème depuis quand ?

    Sinon poste un rapport Hijackthis afin de faire un diagnostic de ton PC

    Démo --> http://pagesperso-orange.fr/rginformatique/section%20virus/demohijack.htm

    ++
    0
    1. mohhican81 Messages postés 35 Statut Membre
       
      Bonjour,

      Voici ce que j'ai réussi à faire avec "Hijackthis" ( C'est grave docteur)

      Et sa dure depuis quinze jour avant sa fonctionner

      rapport:

      StartupList report, 5/28/2008, 20:40:57
      StartupList version: 1.52.2
      Started from : C:\Documents and Settings\Cathalot Patrick\Local Settings\Temp\_AZTMP1_\HijackThis.EXE
      Detected: Windows XP SP2 (WinNT 5.01.2600)
      Detected: Internet Explorer v7.00 (7.00.5730.0013)
      * Using default options
      ==================================================

      Running processes:

      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\Ati2evxx.exe
      C:\WINDOWS\system32\svchost.exe
      C:\Program Files\Windows Defender\MsMpEng.exe
      C:\WINDOWS\System32\svchost.exe
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\WINDOWS\system32\spoolsv.exe
      C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
      C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      C:\WINDOWS\system32\hinsrv.exe
      C:\Program Files\iolo\Common\Lib\ioloDMVSvc.exe
      C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
      C:\WINDOWS\system32\IoctlSvc.exe
      C:\Program Files\Fichiers communs\RbtProt\sgsrv.exe
      C:\WINDOWS\system32\svchost.exe
      C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\WINDOWS\system32\wscntfy.exe
      C:\WINDOWS\system32\Ati2evxx.exe
      C:\WINDOWS\Explorer.EXE
      C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe
      C:\Program Files\Logitech\MouseWare\system\em_exec.exe
      C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      C:\WINDOWS\RTHDCPL.EXE
      C:\Program Files\Olitec\USB ADSL\CnxDslTb.exe
      C:\Program Files\Skype\Phone\Skype.exe
      C:\Program Files\Microsoft ActiveSync\wcescomm.exe
      C:\WINDOWS\system32\ctfmon.exe
      C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
      C:\Program Files\Google\Google Updater\GoogleUpdater.exe
      C:\PROGRA~1\MI3AA1~1\rapimgr.exe
      C:\Program Files\Skype\Plugin Manager\SkypePM.exe
      C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
      C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
      C:\WINDOWS\system32\LVComsX.exe
      C:\PROGRA~1\INCRED~1\bin\IMApp.exe
      C:\Program Files\DAP\DAP.EXE
      C:\Program Files\HiYo\Bin\HiYo.exe
      C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
      C:\Program Files\Windows Live\Messenger\usnsvc.exe
      C:\Program Files\Internet Explorer\IEXPLORE.EXE
      C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
      C:\Documents and Settings\Cathalot Patrick\Local Settings\Temp\_AZTMP1_\HijackThis.exe
      C:\WINDOWS\system32\NOTEPAD.EXE
      C:\WINDOWS\system32\NOTEPAD.EXE

      --------------------------------------------------

      Listing of startup folders:

      Shell folders Common Startup:
      [C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage]
      ATI CATALYST System Tray.lnk = C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
      Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe

      --------------------------------------------------

      Checking Windows NT UserInit:

      [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
      UserInit = C:\WINDOWS\system32\Userinit.exe

      --------------------------------------------------

      Autorun entries from Registry:
      HKLM\Software\Microsoft\Windows\CurrentVersion\Run

      Logitech Utility = Logi_MwX.Exe
      Adobe Photo Downloader = "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"
      Adobe Reader Speed Launcher = "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
      DelayLoad = C:\DOCUME~1\CATHAL~1\LOCALS~1\Temp\msprint.exe
      avast! = C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      RTHDCPL = RTHDCPL.EXE
      Alcmtr = ALCMTR.EXE
      CnxDslTaskBar = C:\Program Files\Olitec\USB ADSL\CnxDslTb.exe
      HiYo = C:\Program Files\HiYo\bin\HiYo.exe /RunFromStartup

      --------------------------------------------------

      Autorun entries from Registry:
      HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices

      Windows Loader =
      Windows Explorer =
      Windows Update Service =
      Windows Startup =
      Windows Media Player =
      WindowsFS =

      --------------------------------------------------

      Autorun entries from Registry:
      HKCU\Software\Microsoft\Windows\CurrentVersion\Run

      Skype = "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
      H/PC Connection Agent = "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
      ctfmon.exe = C:\WINDOWS\system32\ctfmon.exe

      --------------------------------------------------

      Autorun entries in Registry subkeys of:
      HKLM\Software\Microsoft\Windows\CurrentVersion\Run

      [OptionalComponents]
      =

      --------------------------------------------------

      Shell & screensaver key from C:\WINDOWS\SYSTEM.INI:

      Shell=*INI section not found*
      SCRNSAVE.EXE=*INI section not found*
      drivers=*INI section not found*

      Shell & screensaver key from Registry:

      Shell=Explorer.exe
      SCRNSAVE.EXE=C:\WINDOWS\CLOCKS~1.SCR
      drivers=*Registry value not found*

      Policies Shell key:

      HKCU\..\Policies: Shell=*Registry value not found*
      HKLM\..\Policies: Shell=*Registry value not found*

      --------------------------------------------------


      Enumerating Browser Helper Objects:

      (no name) - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
      (no name) - C:\WINDOWS\system32\awtqrpoP.dll (file missing) - {0B9928CA-2B38-43C8-BE19-A4A6386DE417}
      (no name) - C:\WINDOWS\nldfmtapowe.dll (file missing) - {13B80BBC-97B5-4124-A5D8-72C3390A095D}
      Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll - {22BF413B-C6D2-4d91-82A9-A0F997BA588C}
      (no name) - C:\PROGRA~1\ALTAVI~1\ALTAVI~1.DLL - {4E7BD74F-2B8D-469E-92EA-EC65A294AE31}
      EoRezoBHO - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll (file missing) - {64F56FC1-1272-44CD-BA6E-39723696E350}
      (no name) - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
      (no name) - (no file) - {7E853D72-626A-48EC-A868-BA8D5E23E045}
      (no name) - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll - {9030D464-4C02-4ABF-8ECC-5164760863C6}
      (no name) - c:\program files\google\googletoolbar1.dll - {AA58ED58-01DD-4d91-8333-CF10577473F7}
      (no name) - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D}

      --------------------------------------------------

      Enumerating Task Scheduler jobs:

      AppleSoftwareUpdate.job
      MP Scheduled Scan.job

      --------------------------------------------------

      Enumerating Download Program Files:

      [InstallerObj Class]
      InProcServer32 = C:\WINDOWS\Downloaded Program Files\installer.dll
      CODEBASE = http://www.1-click.com/common/files/installer-hidden-test.cab

      [{02BF25D5-8C17-4B23-BC80-D3488ABDDC6B}]
      CODEBASE = http://www.apple.com/qtactivex/qtplugin.cab

      [MessengerStatsClient Class]
      InProcServer32 = C:\WINDOWS\Downloaded Program Files\MessengerStatsPAClient.dll
      CODEBASE = http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab

      [Windows Genuine Advantage Validation Tool]
      InProcServer32 = C:\WINDOWS\system32\LegitCheckControl.DLL
      CODEBASE = http://download.microsoft.com/download/8/b/d/8bd77752-5704-4d68-a152-f7252adaa4f2/LegitCheckControl.cab

      [{238F6F83-B8B4-11CF-8771-00A024541EE3}]
      CODEBASE = http://a516.g.akamai.net/f/516/25175/7d/runaware.download.akamai.com/25175/citrix/wficat-no-eula.cab

      [ActiveFormX Contrôle]
      InProcServer32 = C:\WINDOWS\DOWNLO~1\AFAUTO~1.OCX
      CODEBASE = http://ssl-tb.sitadelle.com/...

      [MSN Photo Upload Tool]
      InProcServer32 = C:\WINDOWS\Downloaded Program Files\MsnPUpld.dll
      CODEBASE = http://1144bison.spaces.live.com//PhotoUpload/MsnPUpld.cab

      [NMInstall Control]
      InProcServer32 = C:\WINDOWS\system32\NMINST~1.DLL
      CODEBASE = http://a14.g.akamai.net/f/14/7141/1d/fr.nielsennetpanel.com/download/OpiStat_preinstaller_activex_fr_4.60.63.0_MEGAPANEL_EUROPE_SILENT.cab

      [MUCatalogWebControl Class]
      InProcServer32 = C:\WINDOWS\system32\MicrosoftUpdateCatalogWebControl.dll
      CODEBASE = http://www.catalog.update.microsoft.com/ClientControl/en/x86/MuCatalogWebControl.cab?1211654808812

      [BDSCANONLINE Control]
      InProcServer32 = C:\WINDOWS\DOWNLO~1\oscan8.ocx
      CODEBASE = http://www.bitdefender.fr/scan8/oscan8.cab

      [WUWebControl Class]
      InProcServer32 = C:\WINDOWS\system32\wuweb.dll
      CODEBASE = http://www.update.microsoft.com/...

      [MUWebControl Class]
      InProcServer32 = C:\WINDOWS\system32\muweb.dll
      CODEBASE = http://update.microsoft.com/...

      [HouseCall Control]
      InProcServer32 = C:\WINDOWS\DOWNLO~1\xscan53.ocx
      CODEBASE = https://www.trendmicro.com/en_us/forHome/products/housecall.html

      [Windows Live Photo Upload Control]
      InProcServer32 = C:\WINDOWS\Downloaded Program Files\CONFLICT.1\MsnPUpld.dll
      CODEBASE = http://1144bison.spaces.live.com/PhotoUpload/MsnPUpld.cab

      [ActiveScan Installer Class]
      InProcServer32 = C:\WINDOWS\Downloaded Program Files\asinst.dll
      CODEBASE = http://acs.pandasoftware.com/activescan/as5free/asinst.cab

      [DeskUpdate- Activex Control]
      InProcServer32 = C:\WINDOWS\DOWNLO~1\activex.ocx
      CODEBASE = https://www.songtexte.de

      [AdSignerLCContrl Class]
      InProcServer32 = C:\WINDOWS\Downloaded Program Files\AdSignerADP.dll
      CODEBASE = https://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP.cab

      [ZoneIntro Class]
      InProcServer32 = C:\WINDOWS\Downloaded Program Files\Zintro.ocx
      CODEBASE = http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab

      [Shockwave Flash Object]
      InProcServer32 = C:\WINDOWS\system32\Macromed\Flash\Flash9e.ocx
      CODEBASE = http://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab

      --------------------------------------------------

      Enumerating ShellServiceObjectDelayLoad items:

      PostBootReminder: C:\WINDOWS\system32\SHELL32.dll
      CDBurn: C:\WINDOWS\system32\SHELL32.dll
      WebCheck: C:\WINDOWS\system32\webcheck.dll
      WPDShServiceObj: C:\WINDOWS\system32\WPDShServiceObj.dll
      pxgdslro: C:\WINDOWS\pxgdslro.dll
      gnowmebk: C:\WINDOWS\gnowmebk.dll
      SysTray: C:\WINDOWS\system32\stobject.dll

      --------------------------------------------------
      End of report, 11,165 bytes
      Report generated in 0.047 seconds

      Command line options:
      /verbose - to add additional info on each section
      /complete - to include empty sections and unsuspicious data
      /full - to include several rarely-important sections
      /force9x - to include Win9x-only startups even if running on WinNT
      /forcent - to include WinNT-only startups even if running on Win9x
      /forceall - to include all Win9x and WinNT startups, regardless of platform
      /history - to list version history only
      0
  4. Utilisateur anonyme
     
    Désinstalle le car il est mal installé ! Télécharge le à partir du lien que je t'ai mit plus haut, et poste un rapport comme il est indiqué dans la démo

    ++
    0
    1. mohhican81 Messages postés 35 Statut Membre
       
      BONJOUR,

      une petite précision j'ai découvert ce messsage hier :

      l'instruction " 0x46c42F6 emploie l'adresse mémoire 0x03bbca88 la mémoire ne peut pas être "read"
      par contre j'ai pas reinstallé le programme désolé
      0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. Utilisateur anonyme
     
    Hello

    Regarde ici pour plus d'info, tu y trouveras également des méthodes afin de réparer tes mises à jour !

    Cependant je pense plutôt que ton problème est causé par une infection.

    Profite en également pour faire une analyse antivirus en ligne avec Bitdefender
    (Fonctionne avec IE)
    Clique dans la colonne de gauche sur "Bitdefender scan online", puis sur "j'accepte", et installe l'activ X via la barre anti-popup.
    Une fois installé, clique sur "démarrer l'analyse" et poste le rapport quand l'analyse sera terminée.

    ++
    0
  7. mohhican81 Messages postés 35 Statut Membre
     
    Bonjour;

    Je viens t'informer que j'ai réussi enfin à régler mon prôbléme . HOURA !!!!!!!!!! HOURA !!!!!!!

    Effectivement j'étais contaminé par un cheval de troie et plein d'autre bestiole malgré mon antivirus et antispyware .

    Merci pour ton aide et surtout le temps passé pour réssoudre mon prôbléme .

    Bye à trés bientôt j'espére pour autre chose moins casse pied .

    Cordialement

    Mohhican81
    0
    1. BeGoody
       
      Bonjour Mohhican81,

      Je fais face au meme probleme que toi et je viens de tomber sur ton post!
      Peux tu indiquer dans le forum comment tu as fait pour remettre les choses d'aplomb ?

      Merci d'avance.

      BeGoody
      0
    2. mohhican81 Messages postés 35 Statut Membre > BeGoody
       
      Salut ,

      Désolé je viens juste de rentrer du Périgord ; alors voici comment j'ai fais tu lis tous les post de :

      "Mise à jours impossible erreur 0x8DDD0018"
      par Mohhican81
      Statut : Résolu
      dimanche 25 mai 2008 à 18:57:44

      moi sa a fonctionné au dernier par l'analyse anti-virus

      Voilà mr j'espére t'avoir renseigner

      Bye Mohhican81
      0
    3. pas de calais > mohhican81 Messages postés 35 Statut Membre
       
      salut

      voila mon probleme et que je n arrive pas a activer mes mise a jour automatique donc j ai suivit tout ce que vous aver expliquer et voila ce que me donne hijactthis:

      Logfile of Trend Micro HijackThis v2.0.2
      Scan saved at 17:23:10, on 12/12/2008
      Platform: Windows XP SP2 (WinNT 5.01.2600)
      MSIE: Internet Explorer v7.00 (7.00.6000.16735)
      Boot mode: Normal

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\system32\spoolsv.exe
      C:\WINDOWS\System32\cisvc.exe
      C:\Program Files\Pack Securite\Anti-Virus\fsgk32st.exe
      C:\Program Files\Pack Securite\Anti-Virus\FSGK32.EXE
      C:\Program Files\Pack Securite\Common\FSMA32.EXE
      C:\Program Files\Pack Securite\Common\FSMB32.EXE
      C:\WINDOWS\System32\svchost.exe
      C:\Program Files\Pack Securite\Common\FCH32.EXE
      C:\WINDOWS\Explorer.EXE
      C:\Program Files\Pack Securite\Common\FAMEH32.EXE
      C:\Program Files\Pack Securite\Anti-Virus\fsqh.exe
      C:\Program Files\Pack Securite\FSPC\fspc.exe
      C:\Program Files\Pack Securite\FSAUA\program\fsaua.exe
      C:\Program Files\Pack Securite\Anti-Virus\fssm32.exe
      C:\Program Files\Pack Securite\FWES\Program\fsdfwd.exe
      C:\WINDOWS\system32\wscntfy.exe
      C:\Program Files\Pack Securite\FSAUA\program\fsus.exe
      C:\WINDOWS\RTHDCPL.EXE
      C:\WINDOWS\system32\igfxtray.exe
      C:\Program Files\Ulead Systems\Ulead Photo Explorer 8.0 SE Basic\Monitor.exe
      C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe
      C:\Program Files\Kiwee Toolbar2\1.5.131\kwtbaim.exe
      C:\Program Files\Pack Securite\Common\FSM32.EXE
      C:\WINDOWS\system32\ctfmon.exe
      C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
      C:\Program Files\Messenger\msmsgs.exe
      C:\Program Files\QUAD Utilities\QUAD Registry Cleaner\QUAD Scheduler.exe
      C:\Program Files\Pack Securite\Anti-Virus\fsav32.exe
      C:\Program Files\QUAD Utilities\QUAD Registry Cleaner\QUAD Registry Cleaner.exe
      C:\WINDOWS\System32\wbem\wmiapsrv.exe
      C:\Program Files\Logitech\MouseWare\system\em_exec.exe
      C:\Program Files\Pack Securite\FSGUI\fsguidll.exe
      C:\WINDOWS\System32\svchost.exe
      C:\Program Files\Java\jre1.6.0_04\bin\jucheck.exe
      C:\WINDOWS\system32\cidaemon.exe
      C:\WINDOWS\system32\cidaemon.exe
      C:\Program Files\Internet Explorer\IEXPLORE.EXE
      C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
      C:\Program Files\Windows Defender\MsMpEng.exe
      C:\Program Files\Windows Defender\MSASCui.exe
      C:\Program Files\Mozilla Firefox\firefox.exe
      C:\Documents and Settings\nico\Bureau\HiJackThis.exe

      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://lo.st#
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      R3 - URLSearchHook: Kiwee Toolbar - {6638A9DE-0745-4292-8A2E-AE530E7B9B3F} - C:\Program Files\Kiwee Toolbar2\1.5.131\KiweeIEToolbar.dll
      R3 - URLSearchHook: (no name) - {9CB65206-89C4-402c-BA80-02D8C59F9B1D} - (no file)
      O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll (file missing)
      O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
      O3 - Toolbar: (no name) - {FE063DB9-4EC0-403e-8DD8-394C54984B2C} - (no file)
      O3 - Toolbar: Kiwee Toolbar - {6638A9DE-0745-4292-8A2E-AE530E7B9B3F} - C:\Program Files\Kiwee Toolbar2\1.5.131\KiweeIEToolbar.dll
      O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
      O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
      O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
      O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
      O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
      O4 - HKLM\..\Run: [Ulead AutoDetector] C:\Program Files\Ulead Systems\Ulead Photo Explorer 8.0 SE Basic\Monitor.exe
      O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe"
      O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
      O4 - HKLM\..\Run: [KiweeHook] "C:\Program Files\Kiwee Toolbar2\1.5.131\kwtbaim.exe"
      O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Pack Securite\Common\FSM32.EXE" /splash
      O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Pack Securite\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
      O4 - HKLM\..\Run: [Windows UDP Control Center] fxstaller.exe
      O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
      O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
      O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
      O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
      O4 - HKCU\..\Run: [jethcrn] c:\documents and settings\nico\local settings\application data\jethcrn.exe jethcrn
      O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
      O4 - HKCU\..\Run: [dpqrdmq] c:\documents and settings\nico\local settings\application data\dpqrdmq.exe dpqrdmq
      O4 - HKCU\..\Run: [suisuqi] "c:\documents and settings\nico\local settings\application data\suisuqi.exe" suisuqi
      O4 - HKCU\..\Run: [QUAD Scheduler] C:\Program Files\QUAD Utilities\QUAD Registry Cleaner\QUAD Scheduler.exe
      O4 - HKCU\..\Run: [QUAD Windows service] C:\Program Files\QUAD Utilities\QUAD Registry Cleaner\QUAD Registry Cleaner.exe -h
      O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
      O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
      O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
      O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
      O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
      O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
      O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
      O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
      O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
      O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
      O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
      O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
      O20 - AppInit_DLLs: cwnhpf.dll
      O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\Pack Securite\Anti-Virus\fsgk32st.exe
      O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\Pack Securite\FSAUA\program\fsaua.exe
      O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Pack Securite\FWES\Program\fsdfwd.exe
      O23 - Service: FSMA - F-Secure Corporation - C:\Program Files\Pack Securite\Common\FSMA32.EXE
      O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
      0
    4. mohhican81 > pas de calais
       
      Bonsoir ;

      désolé je ne serais pas d'un grand secour j'étais le malade

      Le docteur c'est lui: contact_19 sur le même post tu clique répondre à contact_19 il te seras surement utile
      0
    5. Utilisateur anonyme > pas de calais
       
      Salut à vous ;)


      Pas de calais, crées toi un sujet propre à ton problème. On y gagnera en clarté !

      Ceci dit, tu peux poster ton rapport Hijackthis dans la section Virus/sécurité en cliquant en haut à droite sur "Posez votre question", car ton PC est effectivement infecté.


      ++
      0