|
|
|
|
Bonjour le Forum,
Depuis hier, au démarrage écran bleu avec message :du type "STOP : 0x0000007B etc....
Mon Kaspersky 9 ne veut plus se lancer message :
"Kaspersky antivirus 2009 avp.exe n'est pas une application Win32 valide"
Mon application msn est aussi bloquée !
J'ai fait un rapport avec Findykill, voir ci-dessous :
----------------- FindyKill V4.705 ------------------
* User : Administrateur - LAMBIU
* Emplacement : D:\Program Files\FindyKill
* Outils Mis a jours le 17/11/08 par Chiquitine29
* Recherche effectuée à 15:41:50 le 17/11/2008
* Windows XP - Internet Explorer 7.0.5730.13
((((((((((((((((( *** Recherche *** ))))))))))))))))))
--------------- [ Processus actifs ] ----------------
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\csrss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\Explorer.EXE
D:\WINDOWS\system32\ctfmon.exe
D:\WINDOWS\system32\spool\drivers\w32x86\3\CAP4LAK.EXE
D:\Program Files\Microsoft Office\Office\OSA.EXE
D:\WINDOWS\system32\CAP4RSK.EXE
D:\WINDOWS\system32\spool\drivers\w32x86\3\CAP4SWK.EXE
D:\WINDOWS\system32\netdde.exe
D:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe
D:\WINDOWS\System32\dllhost.exe
D:\WINDOWS\system32\oodag.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\System32\wbem\wmiapsrv.exe
D:\Program Files\Canon\CAL\CALMAIN.exe
D:\WINDOWS\System32\alg.exe
D:\WINDOWS\system32\ntvdm.exe
D:\WINDOWS\SYSTEM32\WOWEXEC.EXE
--------------- [ Fichiers/Dossiers infectieux ] ----------------
»»»» Presence des fichiers dans D:
»»»» Presence des fichiers dans D:\WINDOWS
»»»» Presence des fichiers dans D:\WINDOWS\Prefetch
Found ! - D:\WINDOWS\prefetch\FLEC006.EXE-054677C7.pf
Found ! - D:\WINDOWS\prefetch\169473.EXE-1FE28E22.pf
Found ! - D:\WINDOWS\prefetch\MDELK.EXE-0EF461CE.pf
Found ! - D:\WINDOWS\prefetch\157466.EXE-37CFF31F.pf
Found ! - D:\WINDOWS\prefetch\163775.EXE-0A7AB389.pf
Found ! - D:\WINDOWS\prefetch\WINTEMS.EXE-377E42D4.pf
Found ! - D:\WINDOWS\prefetch\178666.EXE-0E1F249F.pf
Found ! - D:\WINDOWS\prefetch\130627.EXE-09AA4B51.pf
Found ! - D:\WINDOWS\prefetch\140311.EXE-207B441F.pf
Found ! - D:\WINDOWS\prefetch\154732.EXE-0F1B2FC2.pf
Found ! - D:\WINDOWS\prefetch\101756.EXE-2FF81281.pf
Found ! - D:\WINDOWS\prefetch\104009.EXE-1D64453E.pf
Found ! - D:\WINDOWS\prefetch\135284.EXE-2D2B240B.pf
Found ! - D:\WINDOWS\prefetch\145228.EXE-39DCA4A2.pf
Found ! - D:\WINDOWS\prefetch\152979.EXE-124F2F1B.pf
Found ! - D:\WINDOWS\prefetch\172257.EXE-14B953E4.pf
Found ! - D:\WINDOWS\prefetch\WINFILSE.EXE-0C5BAB91.pf
Found ! - D:\WINDOWS\prefetch\275756.EXE-3B28A9E5.pf
Found ! - D:\WINDOWS\prefetch\279381.EXE-1EC0F757.pf
Found ! - D:\WINDOWS\prefetch\323234.EXE-2DD3FAB6.pf
Found ! - D:\WINDOWS\prefetch\338126.EXE-3347A793.pf
Found ! - D:\WINDOWS\Prefetch\KEYGEN.EXE-31AD3262.pf
Found ! - D:\WINDOWS\Prefetch\KEYGEN.EXE-31AD3262.pf
»»»» Presence des fichiers dans D:\WINDOWS\system32
Found ! [17/11/2008 14:41] - D:\WINDOWS\system32\mdelk.exe
Found ! [17/11/2008 14:41] - D:\WINDOWS\system32\wintems.exe
Found ! [17/11/2008 14:42] - D:\WINDOWS\system32\ban_list.txt
»»»» Presence des fichiers dans D:\WINDOWS\system32\drivers
Found ! [17/11/2008 14:40] - D:\WINDOWS\system32\drivers\srosa.sys
Found ! [17/11/2008 14:40] - D:\WINDOWS\system32\drivers\srosa2.sys
Found ! [27/08/2004 04:05] - D:\WINDOWS\system32\drivers\winfilse.exe
Found ! [16/11/2008 22:23] - "D:\WINDOWS\system32\drivers\downld"
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\364714.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\366697.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\90550.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\92132.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\176463.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\191695.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\264320.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\310266.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\330475.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\109397.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\110869.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\170304.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\178666.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\182652.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\128364.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\130117.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\114504.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\116036.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\145599.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\154732.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\163104.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\239604.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\305779.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\349212.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\138819.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\121294.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\124338.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\161352.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\172257.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\176413.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\247315.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\290027.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\305128.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\301082.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\303786.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\328252.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\338126.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\343243.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\420434.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\468784.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\484416.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\126511.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\128644.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\162163.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\171666.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\181200.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\233335.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\278961.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\292069.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\117388.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\121935.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\155864.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\173689.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\220296.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\261676.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\276297.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\115676.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\116988.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\138899.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\145749.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\155373.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\209991.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\257900.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\276838.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\115045.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\116597.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\129836.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\136316.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\140932.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\146901.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\165828.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\225544.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\275385.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\296336.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\106473.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\130187.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\134813.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\164186.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\175993.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\184194.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\203292.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\263639.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\313661.exe
Found ! [16/11/2008 22:23] D:\WINDOWS\system32\drivers\downld\332768.exe
»»»» Presence des fichiers dans D:\Documents and Settings\Administrateur\Application Data
Found ! [17/11/2008 14:41] - "D:\Documents and Settings\Administrateur\Application Data\m\flec006.exe"
Found ! [17/11/2008 14:42] - "D:\Documents and Settings\Administrateur\Application Data\m\list.oct"
Found ! [17/11/2008 14:42] - "D:\Documents and Settings\Administrateur\Application Data\m\data.oct"
Found ! [17/11/2008 14:42] - "D:\Documents and Settings\Administrateur\Application Data\m\srvlist.oct"
Found ! [16/11/2008 22:37] - "D:\Documents and Settings\Administrateur\Application Data\m\shared"
Found ! [16/11/2008 22:36] - "D:\Documents and Settings\Administrateur\Application Data\m"
»»»» Presence des fichiers dans D:\DOCUME~1\ADMINI~1\LOCALS~1\Temp
»»»» Presence des fichiers dans D:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5
--------------- [ Registre / Startup ] ----------------
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
AVP REG_SZ "D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\OptionalComponents
! REG.EXE VERSION 3.0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run
msnmsgr REG_SZ "D:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
ctfmon.exe REG_SZ D:\WINDOWS\system32\ctfmon.exe
--------------- [ Registre / Clés infectieuses ] ----------------
Found ! - HKEY_USERS\S-1-5-21-1757981266-1708537768-854245398-500\Software\Local AppWizard-Generated Applications\keygen
Found ! - HKEY_USERS\S-1-5-21-1757981266-1708537768-854245398-500\Software\Local AppWizard-Generated Applications\MsnMsgr
Found ! - HKEY_USERS\S-1-5-21-1757981266-1708537768-854245398-500\Software\Local AppWizard-Generated Applications\winfilse
Found ! - HKEY_USERS\S-1-5-21-1757981266-1708537768-854245398-500\Software\bisoft
Found ! - HKEY_USERS\S-1-5-21-1757981266-1708537768-854245398-500\Software\DateTime4
Found ! - HKEY_USERS\S-1-5-21-1757981266-1708537768-854245398-500\Software\FFC
Found ! - HKEY_USERS\S-1-5-21-1757981266-1708537768-854245398-500\Software\FirtR
Found ! - HKEY_USERS\S-1-5-21-1757981266-1708537768-854245398-500\Software\MuleAppData
Found ! - HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\keygen
Found ! - HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\MsnMsgr
Found ! - HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\winfilse
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srosa
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\srosa
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\srosa
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SROSA
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_SROSA
Found ! - HKEY_CURRENT_USER\Software\bisoft
Found ! - HKEY_CURRENT_USER\Software\DateTime4
Found ! - HKEY_CURRENT_USER\Software\FirtR
--------------- [ Etat / Services ] ----------------
Clé manquante : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot
- sans echec non fonctionnel !!
Clé manquante : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal
- sans echec non fonctionnel !!
Clé manquante : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network
- sans echec non fonctionnel !!
+- Services : [ Auto=2 / Demande=3 / Désactivé=4 ]
/!\ Ndisuio - Type de démarrage = 4
/!\ Ip6Fw - Type de démarrage = 4
SharedAccess - Type de démarrage = 2
/!\ wuauserv - Type de démarrage = 4
/!\ wscsvc - Type de démarrage = 4
--------------- [ Recherche dans supports amovibles] ----------------
+- Informations :
C: - Lecteur fixe
D: - Lecteur fixe
F: - Lecteur fixe
G: - Lecteur fixe
+- presence des fichiers :
--------------- [ Registre / Mountpoint2 ] ----------------
-> Not found !
------------------- ! Fin du rapport ! --------------------
Merci de m'aider. Claude
Configuration: Windows XP Netscape 7.1
Salut
|
Tes cracks,faut les balancer à la poubelle
|
Relance HJT(scan only)et coche ces lignes
|
Re:
|
Courage c'est presque terminé
|
Re :
|
Re:
|
Avant de réinstaller Kaspersky
|
Re:
|
Relance Navilog, Sur le menu principal, choisis l'option 2.
|
Re:
|
Re bonsoir Chimay8,
|
Attend,pas terminer
|
Re :
|
De rien
|