Probleme iexplorer, virus?
est-ce un virus?
44 réponses
Un problème lié à Internet Explorer se manifeste par un grand nombre de processus iexplore invisibles à l'écran et par des publicités indésirables après redémarrage sous Windows Vista. Plusieurs réponses évoquent des pistes techniques comme la vérification de la configuration DNS et DhcpNameServer, l’utilisation d’outils de nettoyage tels que UsbFix, et la nécessité potentielle de mettre Windows à jour. D'autres propositions suggèrent de décaler temporairement la protection antivirus et antispyware pour permettre le nettoyage, puis d'analyser les rapports des outils et de vérifier les mises à jour logicielles. D'autres éléments indiquent que le comportement peut varier selon les droits d'exécution et les extensions actives, ce qui peut influencer l'efficacité des méthodes proposées dans certains contextes.
-
les mises a jour de Microsoft Windows Vista se telechargent-elles .?
-
c est fait! je dois malheureusement quitte!
si il reste peu de travail a faire vous pourriez me donner la marche a suivre!
sinon j apprecierais que l on continue une autre fois
merci mille fois de votre precieuse aide -
il faut que tu mettes les mises a jour en automatique dans le panneau de configuration
-
si je clique sur recherche de mise a jour j obtiens le servie pack 3 de office xp
quand je commence l installation j obtiens le message :le composant que vous essayez d utiliser se trouve sur un cd-rom... inserez le disque et cliquez sur ok -
demarrer/windows update....
-
euh... je fais comment!
-
quel rapport ?
je te parle de vista
??????????????? -
la mise a jour du service pack 3 ne peut se faire puisque je n ai pas les disques d installation de office xp
-
mets windows a jour
-
¤¤¤¤¤¤¤¤¤¤ Kill'em by g3n-h@ckm@n 2.1.3.0 ¤¤¤¤¤¤¤¤¤¤
User : Denis (Administrateurs)
Update on 04/01/2011 by g3n-h@ckm@n ::::: 03.55
Start at: 02:47:50 | 2011-01-04
Intel(R) Pentium(R) Dual CPU E2180 @ 2.00GHz
Microsoft® Windows Vista(TM) Édition Familiale Premium (6.0.6000 32-bit) #
Internet Explorer 8.0.6001.18904
Windows Firewall Status : Disabled
AV : Norton Internet Security 15.0.0.60 [ Enabled | (!) Outdated ]
FW : Norton Internet Security[ Enabled ]15.0.0.60
C:\ -> Disque fixe local | 325,98 Go (238,95 Go free) [COMPAQ] | NTFS
D:\ -> Disque fixe local | 9,37 Go (9,29 Go free) [FACTORY_IMAGE] | NTFS
E:\ -> Disque CD-ROM
F:\ -> Disque amovible
G:\ -> Disque amovible
H:\ -> Disque amovible
I:\ -> Disque amovible
J:\ -> Disque amovible
¤¤¤¤¤¤¤¤¤¤ Files/folders :
Quarantined & Deleted !! : C:\Users\All Users\Application Data\Microsoft\Internet Explorer\DLLs\c.cgm
Quarantined & Deleted !! : C:\Users\Denis\AppData\Local\d3d9caps.dat
Quarantined & Deleted !! : C:\Users\Denis\AppData\Local\GDIPFONTCACHEV1.DAT
Quarantined & Deleted !! : C:\Windows\system32\AbaleZip.dll
Quarantined & Deleted !! : C:\Windows\System32\x64
¤¤¤¤¤¤¤¤¤¤ Hosts ¤¤¤¤¤¤¤¤¤¤
127.0.0.1 localhost
¤¤¤¤¤¤¤¤¤¤ Registry ¤¤¤¤¤¤¤¤¤¤
Deleted : HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main : xml2u
Deleted : HKCU\Software\AvScan
¤¤¤¤¤¤¤¤¤¤ Internet Explorer ¤¤¤¤¤¤¤¤¤¤
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
Local Page = C:\WINDOWS\system32\blank.htm
Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
Start Page = https://www.google.com/?gws_rd=ssl
Local Page = C:\WINDOWS\system32\blank.htm
Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
¤¤¤¤¤¤¤¤¤¤ Security Center ¤¤¤¤¤¤¤¤¤¤
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
cval = 1 (0x1)
UacDisableNotify = 1 (0x1)
InternetSettingsDisableNotify = 1 (0x1)
AutoUpdateDisableNotify = 1 (0x1)
AntiVirusDisableNotify = 0 (0x0)
FirewallDisableNotify = 0 (0x0)
UpdatesDisableNotify = 0 (0x0)
FirstRunDisabled = 1 (0x1)
AntiVirusOverride = 0 (0x0)
FirewallOverride = 0 (0x0)
¤¤¤¤¤¤¤¤¤¤ Services ¤¤¤¤¤¤¤¤¤¤
Ndisuio : Start = 3
EapHost : Start = 2
Wlansvc : Start = 2
SharedAccess : Start = 2
windefend : Start = 2
wuauserv : Start = 2
wscsvc : Start = 2
¤¤¤¤¤¤¤¤¤¤ Winlogon
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
AutoRestartShell = 1 (0x1)
Shell = explorer.exe
Userinit = C:\Windows\System32\userinit.exe,
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
Disk Cleaned
Prefetch cleaned
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
FEATURE_BROWSER_EMULATION | svchost :
====================================
Deleted : HKLM\Software\Microsoft\Internet Explorer\Main\featurecontrol\FEATURE_BROWSER_EMULATION : svchost.exe
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
Windows 6.0.6000 Disk: ST3360320AS rev.3.CHL -> Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-2
device: opened successfully
user: MBR read successfully
Disk trace:
called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll ataport.SYS intelide.sys
1 ntkrnlpa!IofCallDriver[0x82827F8E] -> \Device\Harddisk0\DR0[0x857F7500]
3 nt[0x828B0D35] -> ntkrnlpa!IofCallDriver[0x82827F8E] -> [0x8500D928]
5 acpi[0x8046932A] -> ntkrnlpa!IofCallDriver[0x82827F8E] -> \Device\Ide\IdeDeviceP2T0L0-2[0x84FFE030]
kernel: MBR read successfully
user & kernel MBR OK
End of Scan : 2:49:02
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ ( EOF ) ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ -
tu me postes Kill'em.txt qui est sur ton bureau ?
-
c est fait
-
clic droit executer en tant qu'administrateur sur "C:\Program Files\List_Kill'em\del_reg
-
voici le fichier list em
http://www.cijoint.fr/cjlink.php?file=cj201101/cijqCWaJ9v.txt
et le fichier more
http://www.cijoint.fr/cjlink.php?file=cj201101/cijJxGduJz.txt -
clic droit executer en tant qu'administrateur sur "C:\Program Files\List_Kill'em\List'em.bat (l'engrenage)
-
lorsque je clique sur executer comme admin et apres je fais serach j obtiens le message d erreur suivant
windows ne trouve pas le fichier list'em.bat , verifier que vous avez entrer le nom correct et reesayer -
ben oui si j ai pas le resultat escompté....
-
dois je le refaire?
-
oui c'est ca tu ne l'as pas executé avec le clic droit "executer en tant qu'administrateur" à partir de l'icone sur le bureau
-
DNS Server Search Order: 24.200.243.189
HKLM\SYSTEM\CCS\Services\Tcpip\..\{23665C9F-4764-44D2-8172-4D55B4054882}: DhcpNameServer=24.200.241.37 24.201.245.77 24.200.243.189
FEATURE_BROWSER_EMULATION | svchost :
====================================
DNS Server Search Order: 24.200.243.189
HKLM\SYSTEM\CCS\Services\Tcpip\..\{23665C9F-4764-44D2-8172-4D55B4054882}: DhcpNameServer=24.200.241.37 24.201.245.77 24.200.243.189
FEATURE_BROWSER_EMULATION | svchost :
====================================
- 1
- 2
- 3