Tres tres lent sur internet

Chande -  
 Utilisateur anonyme -
Bonjour,
puis je me permettre , de soumettre mon rapport Hijack (avec RSIT) ?
Mon portable est très très lent notamment sur interne
J'ai traité contre virus et malware

merci
jl

le ficher log :

Logfile of random's system information tool 1.06 (written by random/random)
Run by Defosse at 2009-04-03 09:40:57
Microsoft Windows XP Édition familiale Service Pack 2
System drive C: has 2 GB (10%) free of 19 GB
Total RAM: 959 MB (58% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 09:42:42, on 03/04/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\carpserv.exe
C:\WINDOWS\system32\ICO.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\Program Files\Webroot\WebrootSecurity\SpySweeper.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Defosse\Bureau\RSIT.exe
C:\Program Files\trend micro\Defosse.exe
C:\Program Files\Windows Live Toolbar\msn_sl.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.club-vaio.sony-europe.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [CARPService] "carpserv.exe"
O4 - HKLM\..\Run: [Apoint] "C:\Program Files\Apoint\Apoint.exe"
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [Mouse Suite 98 Daemon] "ICO.EXE"
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\system32\ezSP_Px.exe
O4 - HKLM\..\Run: [HKSERV.EXE] "C:\Program Files\Sony\HotKey Utility\HKserv.exe"
O4 - HKLM\..\Run: [ATIModeChange] "Ati2mdxx.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [SpySweeper] C:\Program Files\Webroot\WebrootSecurity\SpySweeperUI.exe /startintray
O4 - HKCU\..\Run: [MsnMsgr] "C:\PROGRA~1\WINDOW~4\MESSEN~1\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.club-vaio.sony-europe.com/
O15 - Trusted Zone: *.sony-europe.com
O15 - Trusted Zone: *.sonystyle-europe.com
O15 - Trusted Zone: *.vaio-link.com
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\PROGRA~1\FICHIE~1\SONYSH~1\AVLib\Sptisrv.exe
O23 - Service: VAIO Media Music Server (VAIOMediaPlatform-MusicServer-AppServer) - Sony Corporation - C:\Program Files\SONY\vaio media music server\SSSvr.exe
O23 - Service: VAIO Media Music Server (HTTP) (VAIOMediaPlatform-MusicServer-HTTP) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\vaio media platform\sv_httpd.exe
O23 - Service: VAIO Media Music Server (UPnP) (VAIOMediaPlatform-MusicServer-UPnP) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\vaio media platform\UPnPFramework.exe
O23 - Service: VAIO Media Photo Server (VAIOMediaPlatform-PhotoServer-AppServer) - Sony Corporation - C:\Program Files\sony\photo server\appsrv\PhotoAppSrv.exe
O23 - Service: VAIO Media Photo Server (HTTP) (VAIOMediaPlatform-PhotoServer-HTTP) - Sony Corporation - C:\Program Files\Fichiers communs\sony shared\vaio media platform\SV_Httpd.exe
O23 - Service: VAIO Media Photo Server (UPnP) (VAIOMediaPlatform-PhotoServer-UPnP) - Sony Corporation - C:\Program Files\Fichiers communs\sony shared\vaio media platform\UPnPFramework.exe
O23 - Service: Moteur Webroot Spy Sweeper (WebrootSpySweeperService) - Webroot Software, Inc. (www.webroot.com) - C:\Program Files\Webroot\WebrootSecurity\SpySweeper.exe
O23 - Service: Webroot Client Service (WRConsumerService) - Webroot Software, Inc. - C:\Program Files\Webroot\WebrootSecurity\WRConsumerService.exe
A voir également:

10 réponses

Utilisateur anonyme
 
bonjour j espere que tu as un pc costaud car Spysweeper est tres efficace mais il demande enormément de ressources

XP SP2 => Windows Update => XP SP3

Télécharge SDFix sur ton bureau :
ici :SDFix
ou ici SDFix
ou ici SDFix

--> Double-clique sur SDFix.exe et choisis "Install" .

Tuto

Puis une fois l'installe faite ,

Impératif : Démarrer en mode sans echec .

/!\ Ne jamais démarrer en mode sans échec via MSCONFIG /!\

Comment aller en Mode sans échec :
1) Redémarre ton ordi .
2) Tapote la touche F8 immédiatement, (F5 sur certains PC) juste après le "Bip" .
3) Tu tapotes jusqu' à l'apparition de l'écran avec les options de démarrage .
4) Choisis la première option : Sans Échec , et valide en tapant sur [Entrée] .
5) Choisis ton compte habituel ( et pas Administrateur ).
attention : pas de connexion possible en mode sans échec , donc copie ou imprime bien la manipe pour éviter les erreurs ...

Ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double-clique sur RunThis.bat pour lancer l'outil .
-->Tapes Y pour lancer le script ...
Le Fix supprime les services du virus et nettoie le registre, de ce fait un redémarrage est nécessaire , donc :
presses une touche pour redémarrer quand il te le sera demandé .

Le PC va mettre du temps avant de démarrer ( c'est normal ), après le chargement du Bureau presses une touche lorsque "Finished" s'affiche .

Le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier
C:\SDFix sous le nom "Report.txt".

Poste ce dernier dans ta prochaine réponse

Si SDfix ne se lance pas (ça arrive!)

* Démarrer->Exécuter

* Copie/colle ceci :

%systemroot%\system32\cmd.exe /K %systemdrive%\SDFix\apps\FixPath.exe

* Clique sur ok, et valide.

* Redémarre et essaye de nouveau de lancer SDfix. --
G3и-н@¢км@и™©®
0
Chande
 
Voici !

Merci

[b]SDFix: Version 1.240 [/b]
Run by Defosse on 06/04/2009 at 11:56

Microsoft Windows XP [version 5.1.2600]
Running From: C:\SDFix

[b]Checking Services [/b]:

Restoring Default Security Values
Restoring Default Hosts File

Rebooting

[b]Checking Files [/b]:

No Trojan Files Found

Removing Temp Files

[b]ADS Check [/b]:

[b]Final Check [/b]:

catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-04-06 12:12:15
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden services & system hive ...

scanning hidden registry entries ...

scanning hidden files ...

scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0

[b]Remaining Services [/b]:

Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[b]Remaining Files [/b]:

[b]Files with Hidden Attributes [/b]:

Mon 12 Jan 2009 77,824 A..H. --- "C:\RECYCLER\S-1-5-21-833581325-923511681-1580506407-1005\Dc178.tmp"
Tue 13 Jan 2009 80,896 A..H. --- "C:\RECYCLER\S-1-5-21-833581325-923511681-1580506407-1005\Dc179.tmp"
Mon 12 Jan 2009 74,240 ...H. --- "C:\Documents and Settings\Defosse\Bureau\~WRL0535.tmp"
Mon 12 Jan 2009 77,824 ...H. --- "C:\Documents and Settings\Defosse\Bureau\~WRL3084.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS019C2D39-F17C-46E7-BE3C-6B8FBF9329B8.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS073C9A78-DF88-43C3-9862-23B3CF47A720.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS0AE8FEDD-DE9B-4789-9E73-9D719E0A2345.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS0D07EB79-F593-41B1-9A9C-CFC42A2DA864.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS0ECA8B57-6874-44F2-8860-8C0453C96A80.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS0FA07D2C-E469-4766-9450-336090C50904.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS1B72C843-BC95-4514-BDB9-7F053D659C84.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS1C06E434-F8C5-4402-BDAD-AD21D95B671D.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS1EF6BD03-6BFA-4EDA-994F-9D31EBF2F49B.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS24DA84F4-8826-4604-AAE1-08D00995B8D6.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS2663B78B-83CD-4814-8FFB-EFEC8BAD0EDC.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS27EC1BD3-883C-4068-B72A-5B8DD1239F0F.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS29DA7B10-FD41-411A-B4C0-49B1D1FBA6F5.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS2A4862F8-7419-4C23-B7A9-3E7C6AD7C306.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS2C82FFA9-1F03-435B-9977-E46ED759704B.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS2DE692FC-622B-4574-89AF-E2F778C86509.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS31714750-34DE-4AC2-9196-94EDAFC1B13A.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS32B72EF2-FE38-4E2D-972A-68006A7546CF.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS360BA3AE-2BC3-4500-A048-BEE35A97BB49.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS39C7588D-30D9-44CC-9F5E-8C41E5D4DE32.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS3C21828C-1924-45B6-A452-5836C07A12E9.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS3FBFC87E-AF90-4D73-9221-441E6EAC8C95.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS3F1EA79E-D28B-4C51-98BD-7B66805B3A3D.tmp"
Mon 6 Apr 2009 65,536 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS40C49412-DB4C-4F7D-8E6B-B5087619E8F5.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS40F9987E-13F1-4640-A3DE-091107986A8E.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS428B74BD-BA6C-462F-8EFB-ED59FA468734.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS43E95E08-11C7-4FE7-AB91-282412B7AB8D.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS450277E7-D466-46A1-BACF-C9705765F591.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS52D82E33-46C9-4345-8BB9-2F2520E38C72.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS573F78A0-7FA6-495D-ADA8-975BE401EFB2.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS57C96F30-3FA5-4028-BD5F-737D9AD9ABEA.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS598E6CD1-7979-4842-B46A-4CBA4254CFEF.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS5EF35E88-84FB-44CF-8B5E-4B4CF2F02C45.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS6169072B-114B-4A1F-88E8-91E72226D9A2.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS644CDE24-8D65-46F9-A00B-4A2F92888811.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS65EB7966-5C1C-4383-B199-59CED27F4FA3.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS658712B5-AA6C-4DD4-B2A5-1BC2D7BE9756.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS65F40CDD-7608-42EE-BE2E-A2CE02AEF48E.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS6555AE2B-E38D-4724-91EC-8B77089B1821.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS688887B9-8391-4258-9F50-A1A7EE9DF2E3.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS6ACFA916-8951-4313-8246-C5F481E2F9E3.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS6C7FA347-6544-48F9-9762-D16797BEA5F2.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS6C1AC5D7-7B1C-4FFD-825F-6B2A9CB7DA8B.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS6D730668-B134-4678-9DDF-828794D70DDC.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS705FB90E-4606-4F64-B99C-2E2F3F558D40.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS74A63331-3E4D-407E-9EF4-F40D4CEFB033.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS760CE5D1-6A27-419C-8650-F98158990F63.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS77BED182-FEE2-4F20-A073-03E8631C0884.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS78CC8D83-1B80-4C59-AE67-9F527BC50324.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS7954FBD2-07FC-4A09-BE1D-B4D50409CCD9.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS7EB46691-23D4-4F48-9DEB-730E2F8E2118.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS81928620-AE61-4C79-A6AB-CA935A402631.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS87C83B0A-0C9C-418D-BEB5-45A574AD019C.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS87443416-A5A8-41B1-AB17-A59C54C27F94.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS89E73A84-B7FB-482E-9AA0-AE45DB592612.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS900808DB-5958-4D51-9CBC-4C909D7D33F1.tmp"
Mon 6 Apr 2009 65,536 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS91E6B70C-37B2-4D56-B9A9-3D3E19FB0435.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS91D86921-A041-4B61-9807-E9B2F69C2AC6.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS9527CE11-1D87-4807-8683-1D7CC78D8317.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS9BED7E1A-5905-45E8-80DA-729826AA2F9F.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS9D2FCE3F-7EBB-420A-93C6-016D751A2B92.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMS9D52A333-38A8-44C8-95D8-2339898DEF97.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSA0D1F643-4F28-406C-AF58-76E2D003967F.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSA134949E-2083-4393-B243-AF6409DCE35F.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSA34EC7E0-EFAF-4A10-86A6-0BDF52A87A48.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSA52E2542-0140-485D-ADF9-0CC1E5E6FD87.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSA5E1F44E-0EBA-41EF-85A3-C99B372F2185.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSA7FDC54C-58E8-4101-8456-2E06E620C534.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSA81004B2-AE2E-493A-ABED-ACC4CEC63DA2.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSA9113F4E-8CBC-4B9C-AD08-E946BD3F52FD.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSAA0BA4EB-8CE9-4D43-9225-4C0A5B843E81.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSAEC6F54C-9A72-4A06-9D97-417D1A79EACD.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSAE70AB49-7CAB-4787-8E66-26839662A1C3.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSAE461EF2-4C99-40D2-B389-5ADB9FAA3451.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSB1C545EC-D33C-4FE0-AFB5-46BFFC41CC9C.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSB35DC65E-F861-4B6D-8E71-3363809CE2DE.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSB486DF83-9504-4E22-827E-D997D5AA4A01.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSBA56687B-EE35-4281-B605-74E46FB22511.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSBBCF9DDB-9E2D-43E3-9C98-12F36134AADF.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSBE64BD27-ECF0-4789-86FA-AF3D065C82ED.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSC06D3BD4-B6B4-4A52-BB3C-A7CD8492802C.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSC0B6C8B6-34BB-4FF6-92FB-7D79ED34D4A4.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSC41CDD03-FA6D-46DE-A49B-3B10DB8A7900.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSC526C859-2156-48F2-9E65-2FF2953C72CD.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSC7888080-1343-44A2-853F-D348128E0BFD.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSC844940D-41FC-4EDC-B066-B13B781E0B06.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSCB031C26-945C-4CBF-A84B-1E35D096ED88.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSD0E1D763-66B5-4149-B422-2D4B98839B77.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSD39551DB-A217-4AB2-ABD1-E5B9CA9123DE.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSD469521E-0B51-4E80-9460-62CB142B09B2.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSD61C426A-EC83-4BF2-A3D9-760338117A7B.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSD818A159-7572-4DD3-8AD3-813E7631409C.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSD86B0B50-DB1A-49B5-816F-786617C00300.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSDF6C2A44-B98F-426C-A6FB-2D2187609A7E.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSE0B68197-9218-4039-A67E-5474E59F35F8.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSE3EFA146-E6B2-463C-9E76-08444B4418D7.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSE610344F-0D73-47F0-80A8-51EA214A491F.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSECB54B66-0522-435A-9513-77356798092F.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSEE37C865-919D-4D9E-998E-ECB699828A17.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSF28886BB-1E37-4842-A7C5-128258CA5F0D.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSFEE90BB6-4118-4BB5-8859-FB671F0A23DC.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSFE00A728-B284-4479-B847-969BB0068830.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSFF235CB0-540A-4486-BFB7-A0B97EBFC17D.tmp"
Mon 6 Apr 2009 0 A..H. --- "C:\WINDOWS\Temp\wrstemp\SSMSFFEB2E34-2C2F-48A2-B216-D27D67F43530.tmp"
Sun 26 Oct 2008 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Sun 19 Oct 2008 0 ...H. --- "C:\Documents and Settings\Defosse\Application Data\Microsoft\Word\~WRL0004.tmp"
Sun 25 May 2008 1,994,752 A.SH. --- "C:\Documents and Settings\Defosse\Bureau\Italie\101OLYMP\SIV23E.tmp"
Sun 25 May 2008 823,296 A.SH. --- "C:\Documents and Settings\Defosse\Bureau\Italie\101OLYMP\SIV23F.tmp"
Thu 19 Jun 2008 2,916,352 A.SH. --- "C:\Documents and Settings\Defosse\Bureau\Italie\101OLYMP\SIV67.tmp"

[b]Finished![/b]
0
Utilisateur anonyme
 
oulaaaahhhh !!

> Télécharge Dr Web CureIt sur ton Bureau :

- Double clique <drweb-cureit.exe> et ensuite clique sur <Analyse>;

- Clique <Ok> à l'invite de l'analyse rapide. S'il trouve des processus infectés alors clique le bouton <Oui>.
Note : une fenêtre s'ouvrira avec options pour "Commander" ou "50% de réduction" : Quitte en cliquant le "X".
- Lorsque le scan rapide est terminé, clique sur le menu <Options> puis <Changer la configuration> ; Choisis l'onglet <Scanner>, et décoche <Analyse heuristique>. Clique ensuite sur <Ok>.
- De retour à la fenêtre principale : clique pour activer <Analyse complète>
- Clique le bouton avec flèche verte sur la droite, et le scan débutera.
- Clique <Oui> pour tout à l'invite "Désinfecter ?" lorsqu'un fichier est détecté, et ensuite clique "Désinfecter".
- Lorsque le scan sera complété, regarde si tu peux cliquer sur l' icône, adjacente aux fichiers détectés (plusieurs feuilles l'une sur l'autre). Si oui, alors clique dessus et ensuite clique sur l'icône <Suivant>, au dessous, et choisis <Déplacer en quarantaine l'objet indésirable>.
- Du menu principal de l'outil, au haut à gauche, clique sur le menu <Fichier> et choisis <Enregistrer le rapport>. Sauvegarde le rapport sur ton Bureau. Ce dernier se nommera DrWeb.csv
- Ferme Dr.Web Cureit
- Redémarre ton ordi (important car certains fichiers peuvent être déplacés/réparés au redémarrage).
- Suite au redémarrage, poste (Copie/Colle) le contenu du rapport de Dr.Web dans ta prochaine réponse.
0
Chande
 
voici le rapport DrWeb :
SDFix.exe\SDFix\apps\Process.exe;C:\Documents and Settings\Defosse\Bureau\SDFix.exe;Tool.Prockill;;
SDFix.exe;C:\Documents and Settings\Defosse\Bureau;L'archive contient des éléments infectés;Quarantaine.;

SDFIX c'est bien le logiciel qui est censé supprimper les virus !!!?

Toujours aussi lent !
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Utilisateur anonyme
 
oui c est normal qu il ait ete detecte comme malware :)

Imprime ces instructions car il faudra fermer toutes les fenêtres et applications lors de l'installation et de l'analyse.

Télécharges :
Malwarebytes ou :
Malwarebytes

* Installe le ( choisis bien "francais" ; ne modifie pas les paramètres d'installe ) et mets le à jour .

(NB : S'il te manque "COMCTL32.OCX" lors de l'installe, alors télécharge le ici : COMCTL32.OCX

* Potasses le Tuto pour te familiariser avec le prg :

( cela dis, il est très simple d'utilisation ).

relance malwarebytes en suivant scrupuleusement ces consignes :

! Déconnecte toi et ferme toutes applications en cours !

* Lance Malwarebyte's .

Fais un examen dit "Complet" .

--> Laisse le programme travailler ( et ne rien faire d'autre avec le PC durant le scan ).
--> à la fin tu cliques sur "résultat" .
--> Vérifie que tous les objets infectés soient validés, puis clique sur " suppression " .

Note : si il faut redémarrer ton PC pour finir le nettoyage, fais le !

Poste le rapport sauvegardé après la suppression des objets infectés (dans l'onglet "rapport/log"de Malwarebytes, le dernier en date)
0
Chande
 
Voici,

Merci

Malwarebytes' Anti-Malware 1.35
Version de la base de données: 1904
Windows 5.1.2600 Service Pack 2

07/04/2009 08:37:05
mbam-log-2009-04-07 (08-37-05).txt

Type de recherche: Examen complet (C:\|)
Eléments examinés: 117022
Temps écoulé: 3 hour(s), 4 minute(s), 12 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
0
Utilisateur anonyme
 
bonjour !

Télécharge Superantispyware (SAS)

Choisis "enregistrer" et enregistre-le sur ton bureau.

Double-clique sur l'icône d'installation qui vient de se créer et suis les instructions.

Créé une icône sur le bureau.

Double-clique sur l'icône de SAS (une tête dans un cercle rouge barré) pour le lancer.

- Si l'outil te demande de mettre à jour le programme ("update the program definitions", clique sur yes.
- Sous Configuration and Preferences, clique sur le bouton "Preferences"
- Clique sur l'onglet "Scanning Control "
- Dans "Scanner Options ", assure toi que la case devant lles lignes suivantes est cochée :

Close browsers before scanning
Scan for tracking cookies
Terminate memory threats before quarantining
- Laisse les autres lignes décochées.

- Clique sur le bouton "Close" pour quitter l'écran du centre de contrôle.

- Dans la fenêtre principale, clique, dans "Scan for Harmful Software", sur "Scan your computer".

Dans la colonne de gauche, coche C:\Fixed Drive.

Dans la colonne de droite, sous "Complete scan", clique sur "Perform Complete Scan"

Clique sur "next" pour lancer le scan. Patiente pendant la durée du scan.

A la fin du scan, une fenêtre de résultats s'ouvre . Clique sur OK.

Assure toi que toutes les lignes de la fenêtre blanche sont cochées et clique sur "Next".

Tout ce qui a été trouvé sera mis en quarantaine. S'il t'es demandé de redémarrer l'ordi ("reboot"), clique sur Yes.

Pour recopier les informations sur le forum, fais ceci :

- après le redémarrage de l'ordi, double-clique sur l'icône pour lancer SAS.
- Clique sur "Preferences" puis sur l'onglet "Statistics/Logs ".
- Dans "scanners logs", double-clique sur SUPERAntiSpyware Scan Log.

- Le rapport va s'ouvrir dans ton éditeur de texte par défaut.

- Copie son contenu dans ta réponse.

Regarde bien le tuto SUPERAntiSpyware il est très bien expliqué.
0
chande
 
voila

Et internet a retrouver un peu de vigueur !

Merci

SUPERAntiSpyware Scan Log
https://www.superantispyware.com/

Generated 04/08/2009 at 07:25 PM

Application Version : 4.26.1000

Core Rules Database Version : 3834
Trace Rules Database Version: 1790

Scan type : Quick Scan
Total Scan Time : 01:10:11

Memory items scanned : 418
Memory threats detected : 0
Registry items scanned : 427
Registry threats detected : 0
File items scanned : 14916
File threats detected : 33

Adware.Tracking Cookie
C:\Documents and Settings\Defosse\Cookies\defosse@iv2.bluestreak[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@tradedoubler[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@track.effiliation[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@xiti[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@indextools[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@sfr.122.2o7[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@247realmedia[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@atdmt[2].txt
C:\Documents and Settings\Defosse\Cookies\defosse@ad.zanox[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@boursoramabanque.solution.weborama[2].txt
C:\Documents and Settings\Defosse\Cookies\defosse@ad.yieldmanager[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@www.smartadserver[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@2o7[2].txt
C:\Documents and Settings\Defosse\Cookies\defosse@media.adrevolver[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@weborama[2].txt
C:\Documents and Settings\Defosse\Cookies\defosse@adrevolver[2].txt
C:\Documents and Settings\Defosse\Cookies\defosse@mediaplex[2].txt
C:\Documents and Settings\Defosse\Cookies\defosse@yourmedia[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@adtech[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@serving-sys[2].txt
C:\Documents and Settings\Defosse\Cookies\defosse@statcounter[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@doubleclick[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@sixapart.adbureau[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@smartadserver[2].txt
C:\Documents and Settings\Defosse\Cookies\defosse@advertising[2].txt
C:\Documents and Settings\Defosse\Cookies\defosse@samsung.solution.weborama[2].txt
C:\Documents and Settings\Defosse\Cookies\defosse@bluestreak[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@adviva[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@wysistat[1].txt
C:\Documents and Settings\Defosse\Cookies\defosse@adbrite[2].txt
C:\Documents and Settings\Defosse\Cookies\defosse@revsci[2].txt
C:\Documents and Settings\Defosse\Cookies\defosse@bs.serving-sys[2].txt
C:\Documents and Settings\Defosse\Cookies\defosse@ad.caradisiac[1].txt
0
Utilisateur anonyme
 
salut :

---> Désactive ton antivirus le temps de la manipulation car OTMoveIt3 est détecté comme une infection à tort.

---> Télécharge OTMoveIt3 (OldTimer) sur ton Bureau :

---> Double-clique sur OTMoveIt3.exe afin de le lancer.

---> Copie (Ctrl+C) le texte suivant ci-dessous :



:processes
explorer.exe

:files
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Adobe Gamma Loader.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Microsoft Office.lnk
C:\WINDOWS\npornap.INI
C:\PollSt.txt
C:\Pollog.txt
C:\rsit

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"QuickTime Task"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MsnMsgr"=-

:commands
[purity]
[emptytemp]
[start explorer]
[reboot]



---> Colle (Ctrl+V) le texte précédemment copié dans le cadre Paste Instructions for Items to be Moved.

---> Clique maintenant sur le bouton MoveIt! puis ferme OTMoveIt3.

Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
Accepte en cliquant sur YES.

---> Poste le rapport situé dans ce dossier : C:\_OTMoveIt\MovedFiles\
Le nom du rapport correspond au moment de sa création : date_heure.log

ensuite :

Passer de Avast à AntiVir :

Désinstalle via Ajout/Suppression de Programmes (si présents) :

* Avast!

Télécharge et exécute le Désinstalleur d'Avast!.:

Ceci effacera la majorité des traces du produit Avast! d'Alwil Software.

Télécharge Ccleaner sur ton Bureau. :

* Clique sur "download the latest version"
* Installe-le en laissant seulement les options suivantes cochées :

- Ajouter un raccourci sur le Bureau
- Contrôler automatiquement les mises à jour de CCleaner

* Lance le Nettoyage
* Clique sur Chercher des erreurs et sauvegarde si tu le souhaites.

plus de precision sur la configuration de ccleaner te seront donnees plus tard

tuto : Comment utiliser CCleaner.
***************

Télécharge Antivir en Francais ou :Antivir en Francais sur ton Bureau.:

* Double clique sur l'exécutable téléchargé pour lancer l'installation.
* À la fin de l'installation, clique sur Finish.
* Ouvre Antivir, assure-toi qu’il soit bien à jour !
* Dans l'onglet Protection Locale, choisis Contrôler.
* Active la recherche de rootkits via le + de Recherche de Rootkits, puis dans Sélection manuelle, coche tout (tes partitions de disque dur).
* Clique sur la loupe du milieu pour lancer le scan en tant qu'Administrateur.
* Poste moi le rapport généré : Pour cela, clique sur l'onglet Aperçu, puis choisis Rapports, tu trouveras son rapport..
* Sélectionne le rapport et clique sur l'icône "Afficher le fichier de rapport du rapport sélectionné.

Note : Pour une éradication des menaces plus efficace, lance le scan en mode sans échec.

Pourquoi changer ? :Avast Vs Antivir

Tuto Antivir: Comment installer et utiliser AntiVir.

Configuration de Antivir (Merci Nico) :

clic droit sur son icone dans la barre des taches et séléctionner Configurer Antivir.

cocher la case : Mode Expert.

=> Cliquer sur Scanner dans le volet de gauche :

> Dans "Fichiers" séléctionner Tous les fichiers.

> Dans procédure de recherche, cocher Autoriser l'arrêt, et dans "priorité scanner" séléctionner Elevé.

> Dans "Autres réglages" cocher toutes les cases.

NE SURTOUT PAS OUBLIER LA RECHERCHE DES ROOTKIT QUI EST TRES IMPORTANTE !

=> Cliquer sur "Recherche" dans le volet de gauche et appliquer les mêmes paramètres que précédemment.

=> Dérouler "Recherche" en cliquant sur le +. Cliquer sur "Heuristique" :

> Cocher "Heuristique de MacroVirus" et "Heuristique fichier Win32" avec degré d'indentification ELEVE !

=> Dans le volet de gauche, dérouler "Guard" puis dérouler "Recherche" :

> Cocher "Heuristique de MacroVirus" et "Heuristique fichier Win32" avec degré d'identification ELEVE !

0
chande
 
voici el rapport moveit
c'est toujours très lent
cois tu vraiment sue le fait de changer d'antivirus va resoudre le problème,....je suis prê de cracque et de tout réinstaller !

merci
========== PROCESSES ==========
Process explorer.exe killed successfully.
========== FILES ==========
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Adobe Gamma Loader.lnk moved successfully.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Microsoft Office.lnk moved successfully.
C:\WINDOWS\npornap.INI moved successfully.
C:\PollSt.txt moved successfully.
C:\Pollog.txt moved successfully.
C:\rsit moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\MsnMsgr deleted successfully.
========== COMMANDS ==========
File delete failed. C:\DOCUME~1\Defosse\LOCALS~1\Temp\~DFAD4A.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\Defosse\LOCALS~1\Temp\~DFDEA0.tmp scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Internet Explorer cache folder emptied.
File delete failed. C:\Documents and Settings\Defosse\Local Settings\Temporary Internet Files\Content.IE5\X9P7EHWN\affich-11866887-tres-tres-lent-sur-internet[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Defosse\Local Settings\Temporary Internet Files\Content.IE5\GZRY5QF5\prospect[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Defosse\Local Settings\Temporary Internet Files\Content.IE5\GZRY5QF5\weborama[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Defosse\Local Settings\Temporary Internet Files\Content.IE5\86VW9A8R\;var1=;var2=;var3=;var4=;var7=;var8=;var9=;var10=;sz=728x90,468x60;ord=9596374768927418[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Defosse\Local Settings\Temporary Internet Files\Content.IE5\86VW9A8R\ads[6].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Defosse\Local Settings\Temporary Internet Files\Content.IE5\86VW9A8R\ads[7].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Defosse\Local Settings\Temporary Internet Files\Content.IE5\86VW9A8R\ma_selection[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Defosse\Local Settings\Temporary Internet Files\Content.IE5\86VW9A8R\panel_new_mobile[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Defosse\Local Settings\Temporary Internet Files\Content.IE5\7LY2VKYP\Generic[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Defosse\Local Settings\Temporary Internet Files\Content.IE5\7LY2VKYP\inbox[2].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Defosse\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Defosse\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat scheduled to be deleted on reboot.
User's Temporary Internet Files folder emptied.
Local Service Temp folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
Local Service Temporary Internet Files folder emptied.
Network Service Temp folder emptied.
Network Service Temporary Internet Files folder emptied.
File delete failed. C:\WINDOWS\temp\_av_proI.tm~a01772\setup.lok scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\_avast4_\Webshlock.txt scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS06C3691C-3C50-444E-92D8-D66B4D0AD300.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS08F8D1AD-8180-452D-969D-C92127435E70.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS09FF62B7-FD10-453B-8AD4-57F35564BFC5.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS0AFC4FB2-C91A-4D8B-A1F5-D49F68ADBBF8.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS0C3305CE-BA92-4F86-A142-4CAF76AD6A54.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS129DE7F9-64C8-41BC-952A-DEED0CFFF8B4.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS13EE9DB5-EAB3-402E-95D6-259DCFEA5ED5.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS13F2164F-CAE2-4104-9819-8E4E1B8F0BF5.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS1659E2F7-88B3-4146-9AB8-6F476E443D43.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS18E8126F-0E1B-43B3-B8B7-59EE4D6A2D1A.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS23DE9019-1B1D-4DF2-95FD-1CFCB736529E.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS28055D9A-8251-4654-8AB0-8A69B1661366.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS2CADC005-AFC8-4463-A28C-1FFA51605BBE.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS31334818-53F7-407E-97C7-1142F51767AC.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS32931B1E-00EE-48AD-A4A0-00B483ADC241.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS36E2B698-6743-44D6-A11F-E2E4558F3440.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS3C1EDD96-C3B7-4AE3-BB66-FD85C7273E7A.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS3C28F8F9-273A-475E-8BA5-FD7EB363B9FB.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS3D20091B-5CDC-4860-B183-AB3EA67BF630.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS3D3B75F9-E44B-452A-854A-2956C9449D88.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS443D7ACB-A769-44D6-9204-5A978552D03E.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS45E42166-3761-494E-8850-C2D584F2D187.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS47E8C1EC-127B-4E90-9DE5-10B048645145.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS47F5D147-F3BA-4146-BE1D-517DAFC776F2.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS483F0E47-3E3B-4D60-B5F5-29835923D605.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS4DB1BCF6-F5CC-44FB-A32D-FC16F3720B3D.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS4F1A7EDC-B8C6-4FEA-9A74-EE072962DF1C.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS541B1B22-C357-499C-A36A-E8896C54F0CF.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS594A7DE8-B2BD-4D64-8357-75AF5B4D8617.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS5C548CEC-BBE4-489E-880B-D2572398123A.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS5C7D7106-30F8-49B4-9224-576356A73640.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS5CA84928-26F7-4B36-87A0-275791DF8276.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS5DC58D6C-6654-45FB-8E14-C18696952D0F.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS6375CA59-3028-4C7A-B9D9-B98C232B6925.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS68551098-50FC-4120-8A7C-BD8C8559E9F5.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS6909485E-D0C2-456B-94F3-6EA3A06003A3.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS6945A6A2-3D06-4A8A-A144-1D576A470101.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS6F527E6B-2F79-495D-8300-60D2CB3CFB90.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS70B8B95C-883A-4FE8-AEB6-41A3A369819C.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS736949E5-2B3F-4185-9ED8-8BB0C59FDC4F.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS743F5C60-2082-4323-A985-249E59EE83C5.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS75E1593D-99F4-440A-AA6F-0811F62FDCEA.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS7661B57B-F7D5-4A6B-BE92-7183A9C08463.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS7A977917-EB26-483D-9911-4D87852C462D.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS7BD8486A-326A-4825-A98E-768732D96B38.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS7C278A3A-2D55-4F98-B961-BADD93940864.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS7E1BBCAB-9E6F-4E89-A211-B3F339C2520D.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS7F37E311-C0CF-4C6E-9707-2370A7FBE015.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS7F749989-B82A-401E-9042-FEA9FD7544A3.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS8B6982A1-00A9-4022-804B-1314D153855D.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS8CDABC25-34FC-4E61-8B68-5482290C366C.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS8FC37EA9-C99F-4CA9-A9F7-615DB94236C3.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS8FF6E8D6-AFA6-4BCE-88C3-2D728689DA1C.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS9002351C-881D-4422-8A31-CB4AD82C610A.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS9027643F-262E-4496-ABE1-80130D556B48.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS93395CF5-694A-4FA5-A9D2-33C1C694ED75.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS9CBF5B85-F8AB-446F-95D9-6B6A79FAC9BE.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS9D8222F5-C828-41E1-AD65-C44B04F13D9C.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMS9DD43A40-C751-4167-8122-A83EF83D3B9B.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSA0153E9B-426F-4006-A461-E0C8D3029DC2.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSA07130CA-CDD8-406C-87D1-E34D83D27E43.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSA283AE8B-3629-4E40-861F-DD28EB9BC32C.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSA2A9B223-EDAE-41D9-BA6B-8EBC8ABB913E.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSA309BA90-BAF7-4B16-A755-A5454FF80346.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSA4B15C86-848A-48B4-8C2A-558E90D8D324.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSA5CDEE97-C654-43D0-91C1-6DDF59EFED51.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSAA2A0ED8-C5A0-4906-9C8F-5F1C973F7025.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSAA2B46B8-A1D3-4B25-B305-87CEB005FC61.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSADBEB9EB-6F5B-4F45-9A8B-489FD3094D44.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSAE384A8B-F171-48A1-B3CB-58D96E100CB8.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSB0A4D6C5-817E-4861-9D86-36CCDAD61A18.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSB32AE8DF-A80F-4DB3-BB28-3EDD31B23F7C.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSB3E135E1-F5C2-473A-BA29-EDE2D6F894FB.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSB5AAB775-46BF-4356-AB38-13F1CC7C979F.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSB5BF53EF-1087-4DE5-B68A-43CE84BE6F98.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSB84D0B1F-98E7-49E7-9806-AE179D08B8E2.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSBA41AA70-97B3-4587-A611-D457107043E8.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSC133D79A-21EE-4952-8F27-12B88123067A.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSC40FEBE5-92CD-4F17-98E2-1D3EF6DFD942.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSC54D6D33-A2F7-4181-829A-308174F8BD49.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSC5653C37-8C71-4B06-ABC6-4664B6829AC2.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSC5837E16-B6D4-4071-A541-DFDEB1A5F449.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSCA920F8C-41C9-4B51-97D6-8AF6F6417C1E.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSCAE3D795-DE45-413C-911F-778E2ACD5A36.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSCBBB1446-4A56-4C1D-84E5-696D9EE9622A.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSD062E45A-B05F-406B-BD04-AE7682514DD6.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSD12421EF-7CD9-4340-BA1E-3318372215AF.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSD2FC376D-FCD9-42A0-AF50-3316BB46C7BA.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSD4A44A5B-6A98-4FA4-A879-1A70384F4FC9.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSDC4A0AAA-8FBD-4A87-ABCD-6C0BA6DAAA44.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSDD2A7C4B-5949-4464-BE18-D4A4158EB899.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSE15B4EAD-8CA1-48DE-AD59-CBE150F5CD25.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSEA35385C-790C-453D-B0B4-0949AC44DE37.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSEA8EE401-50F5-4B1B-8E9C-FEB6C0EE6DE7.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSEC67683F-2E69-4527-B918-6F0C7BADA214.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSEEB66FD7-6BCF-46FF-8977-B8A7B1818565.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSF013F4C3-866D-41DC-8141-9A10743450AA.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSF1124E49-3751-410D-8892-3809970BF301.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSF34A7FE9-5026-40DF-B815-534421E83354.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSF63F4F66-0C82-4211-8CED-713180A9F12D.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSF89D24F6-A0DF-42F7-92FE-FD1789ADBF81.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSFA25C9F1-9F28-42E9-BB36-E96465530597.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSFD152614-D935-4067-9729-DABEBA4EB671.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\wrstemp\SSMSFD76634C-7EB9-4B45-BA8D-A501E1952E68.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_570.dat scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_ae8.dat scheduled to be deleted on reboot.
Windows Temp folder emptied.
Temp folders emptied.
Explorer started successfully

OTMoveIt3 by OldTimer - Version 1.0.10.0 log created on 04102009_152636
0
Utilisateur anonyme
 
pas de patience ?

:)

Imprime ces instructions car il faudra fermer toutes les fenêtres et applications lors de l'installation et de l'analyse.

Télécharges :
Malwarebytes ou :
Malwarebytes

* Installe le ( choisis bien "francais" ; ne modifie pas les paramètres d'installe ) et mets le à jour .

(NB : S'il te manque "COMCTL32.OCX" lors de l'installe, alors télécharge le ici : COMCTL32.OCX

* Potasses le Tuto pour te familiariser avec le prg :

( cela dis, il est très simple d'utilisation ).

relance malwarebytes en suivant scrupuleusement ces consignes :

! Déconnecte toi et ferme toutes applications en cours !

* Lance Malwarebyte's .

Fais un examen dit "Complet" .

--> Laisse le programme travailler ( et ne rien faire d'autre avec le PC durant le scan ).
--> à la fin tu cliques sur "résultat" .
--> Vérifie que tous les objets infectés soient validés, puis clique sur " suppression " .

Note : si il faut redémarrer ton PC pour finir le nettoyage, fais le !

Poste le rapport sauvegardé après la suppression des objets infectés (dans l'onglet "rapport/log"de Malwarebytes, le dernier en date)

0