Virus

brams7777 Messages postés 127 Statut Membre -  
neor Messages postés 1119 Statut Membre -
Bonjour,

les amis (ies) j ai l impression que mon pc portable de maque packard bell est infecté par un virus, il y a different symptomes qui s'opere depuis quelque jours!

ralentissement,bug,mets du temps a s'allumer!

merci de votre aide pour savoir si j ai ete infecté!
A voir également:

3 réponses

Utilisateur anonyme
 
ta quoi comme antivirus ???
0
neor Messages postés 1119 Statut Membre 30
 
bonjour,

Télécharge HijackThis (outils de dignostic) ici :

-> Fais un clic droit sur un des liens et choisi enregistrer la cible sous .... le bureau
-> http://www.trendsecure.com/portal/en-US/_download/HJTInstall.exe
-> ftp://ftp.commentcamarche.com/download/HJTInstall.exe

-> Fais un double-clic sur HJTInstall.exe afin de lancer l'installation

-> Clique sur Install ensuite sur I Accept

-> Clique sur Do a scan system and save log file

-> Le bloc-notes s'ouvrira, fais un copier-coller de tout son contenu ici dans ta prochaine réponse
0
brams7777 Messages postés 127 Statut Membre 1
 
re,
merci de ton aide voila le rapport:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:07:07, on 28/11/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\conime.exe
C:\Program Files\BitComet\BitComet.exe
C:\Users\brams\Desktop\HijackThis.exe
c:\program files\google\googletoolbar1user.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://actus.sfr.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer avec Club-Internet
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: AddTask Class - {24F06550-65E3-4D1C-8CFE-839C296B5530} - (no file)
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Google\Google_BAE\BAE.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-18\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'Default user')
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Ajouter à Kaspersky Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~2.0_0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~2.0_0\bin\ssv.dll
O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing)
O13 - Gopher Prefix:
O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
O16 - DPF: {2357B3CF-7F8D-4451-8D81-FD6097610AEE} - http://activex.camfrogweb.com/advanced/2.0.2.20/cfweb_activex.camfrogweb.com-advanced-2.0.2.20_instmodule.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/VistaMSNPUpldfr-fr.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - https://www.touslesdrivers.com/index.php?v_page=29
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game06.zylom.com/activex/zylomgamesplayer.cab
O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697514} (NsvPlayX Control) - http://www.nullsoft.com/nsv/embed/nsvplayx_vp3_mp3.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS9\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS10\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS11\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS12\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS13\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS14\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS15\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS16\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS17\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS18\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS19\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS20\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS21\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS22\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS23\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS24\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS25\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS26\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS27\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS28\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS29\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS30\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS31\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS32\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS33\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS34\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS35\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS36\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS37\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS38\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS39\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS40\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS41\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O17 - HKLM\System\CS42\Services\Tcpip\..\{13B82BFE-6BCD-443A-898A-9437AFE82928}: NameServer = 192.168.1.1
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll,
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Unknown owner - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE (file missing)
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: @%SystemRoot%\System32\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software GmbH - C:\Windows\System32\TuneUpDefragService.exe
0
neor Messages postés 1119 Statut Membre 30
 
utilise Toolbar-S&D pour askbar

http://www.commentcamarche.net/faq/sujet 9685 supprimer les barres d outils toolbars indesirables

desinstaller completement norton vu que tu utilise kaspersky
http://service1.symantec.com/SUPPORT/INTER/tsgeninfointl.nsf/fr_docid/20050414110429924
0