Erreur application svchost Virus ? - Sécurité - Virus
Ceci répond-il à votre question ? Oui | Non
 

Ajouter une réponse



 Mot :   Pseudo :  
 
Bas de page
Auteur
 Sujet : Erreur application svchost Virus ?
 
Profil : IDNaute
Plus d'informations

Salut,
 
Je travail sur l'ordi de mon père qui reçois après une connexion ADSL et un peu de surf, ce message " L'exception exception logicielle inconnue (0xc0000409) s'est produite dans l'application à l'emplacement 0x6feea3c0  SVCHOST.EXE Erreur Application"
 
A la suite de ce message, il est impossible de continuer le surf, IE se bloque sur site sensible bien qu'il n'y ait aucun site référencé dans la rubrique site sensible.
 
1. J'ai procédé à une analyse EWIDO (voir Log)
2. J'ai installé hijackthis (voir log)
3. J'ai installé Ccleaner et procédé au nettoyage.
4. Je lui installe Zone Alarm
 
Quelqu'un peut-il interpréter les logs Merci,
 
Logfile of HijackThis v1.99.1
Scan saved at 11:06:31, on 7/09/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
 
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb07.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Documents and Settings\Georges\Mes documents\Mes logiciels\Hijackthis\HijackThis.exe
 
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb07.exe
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKCU\..\Run: [Compaq Service Drivers] ntdat32.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\RunServices: [Compaq Service Drivers] ntdat32.exe
O4 - Global Startup: hp psc 1000 series.lnk = ?
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/window [...] 6346713421
O17 - HKLM\System\CCS\Services\Tcpip\..\{0A100909-2178-4BC5-A418-BF35FB4769AA}: NameServer = 193.121.171.135 194.119.228.67
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
 
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------
 
 + Created at: 10:26:47 07/09/2006
 
 + Scan result:  
 
 
 
C:\Documents and Settings\Georges\Cookies\georges@247realmedia[1].txt -> TrackingCookie.247realmedia : No action taken.
C:\Documents and Settings\Georges\Cookies\debuysschere@2o7[2].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@redcats.122.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@adtech[1].txt -> TrackingCookie.Adtech : No action taken.
C:\Documents and Settings\Georges\Cookies\debuysschere@advertising[2].txt -> TrackingCookie.Advertising : No action taken.
C:\Documents and Settings\Georges\Cookies\debuysschere@servedby.advertising[1].txt -> TrackingCookie.Advertising : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@advertising[2].txt -> TrackingCookie.Advertising : No action taken.
C:\Documents and Settings\Administrateur\Cookies\administrateur@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
C:\Documents and Settings\Georges\Cookies\debuysschere@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@bfast[1].txt -> TrackingCookie.Bfast : No action taken.
C:\Documents and Settings\Georges\Cookies\debuysschere@bluestreak[1].txt -> TrackingCookie.Bluestreak : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@bluestreak[1].txt -> TrackingCookie.Bluestreak : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@iv2.bluestreak[1].txt -> TrackingCookie.Bluestreak : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@casalemedia[1].txt -> TrackingCookie.Casalemedia : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@promo.casinotropez[1].txt -> TrackingCookie.Casinotropez : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@clickbank[1].txt -> TrackingCookie.Clickbank : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@fl01.ct2.comclick[2].txt -> TrackingCookie.Comclick : No action taken.
C:\Documents and Settings\Georges\Cookies\debuysschere@cpvfeed[1].txt -> TrackingCookie.Cpvfeed : No action taken.
C:\Documents and Settings\Georges\Cookies\debuysschere@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@e-2dj6wfk4ojcjcgp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@e-2dj6wjl4uodzkbp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\Georges\Cookies\debuysschere@estat[1].txt -> TrackingCookie.Estat : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@estat[1].txt -> TrackingCookie.Estat : No action taken.
C:\Documents and Settings\Georges\Cookies\debuysschere@as-eu.falkag[1].txt -> TrackingCookie.Falkag : No action taken.
C:\Documents and Settings\Georges\Cookies\debuysschere@as1.falkag[1].txt -> TrackingCookie.Falkag : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@as-eu.falkag[1].txt -> TrackingCookie.Falkag : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@as1.falkag[1].txt -> TrackingCookie.Falkag : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@fastclick[2].txt -> TrackingCookie.Fastclick : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@media.fastclick[1].txt -> TrackingCookie.Fastclick : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@ehg-dig.hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@ehg-systran.hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@ehg-warnerbrothers.hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@counter.hitslink[2].txt -> TrackingCookie.Hitslink : No action taken.
C:\Documents and Settings\Georges\Cookies\debuysschere@ivwbox[1].txt -> TrackingCookie.Ivwbox : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@ivwbox[2].txt -> TrackingCookie.Ivwbox : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@server.iad.liveperson[2].txt -> TrackingCookie.Liveperson : No action taken.
C:\Documents and Settings\Georges\Cookies\debuysschere@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@overture[1].txt -> TrackingCookie.Overture : No action taken.
C:\Documents and Settings\Georges\Cookies\debuysschere@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@serving-sys[1].txt -> TrackingCookie.Serving-sys : No action taken.
C:\Documents and Settings\Georges\Cookies\debuysschere@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : No action taken.
C:\Documents and Settings\Administrateur\Cookies\administrateur@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : No action taken.
C:\Documents and Settings\Georges\Cookies\debuysschere@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@trafic[1].txt -> TrackingCookie.Trafic : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@valueclick[1].txt -> TrackingCookie.Valueclick : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@webstat[1].txt -> TrackingCookie.Web-stat : No action taken.
C:\Documents and Settings\Georges\Cookies\debuysschere@weborama[1].txt -> TrackingCookie.Weborama : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@weborama[1].txt -> TrackingCookie.Weborama : No action taken.
C:\Documents and Settings\Georges\Cookies\debuysschere@statse.webtrendslive[1].txt -> TrackingCookie.Webtrendslive : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : No action taken.
C:\Documents and Settings\Georges\Cookies\georges@zedo[2].txt -> TrackingCookie.Zedo : No action taken.
 
 
::Report end
 

Liens


Aller à :
Ajouter une réponse
  FORUM Infos-du-Net » Sécurité - Virus » Erreur application svchost Virus ?
 

Liens