Je ne peux plus installer d'antivirus

Bonjour, mon antivirus est périmé, et je n'arrive plus à télécharger d'antivirus. Je n'arrive pas à aller sur le site d'avast par exemple, lorsque je clique sur le lien je tombe sur "Impossible d'afficher la page" , pareil lorsque je veux télécharger un antivirus ou un scan.
Je dois avoir un virus, et je ne sais pas comment faire pour le détécter et le supprimer!
Merci d'avance
Configuration: Windows XP Internet Explorer 6.0

20 réponses

Résumé de la discussion

Le sujet expose un problème d’antivirus périmé et l’impossibilité de télécharger ou d’accéder à Avast, avec la crainte d’infection et la nécessité de détecter et supprimer les malwares. Plusieurs outils sont proposés pour analyser le système et obtenir des rapports exploitables, tels RSIT, HijackThis et UsbFix, afin d’identifier les composants potentiellement malveillants. Des alternatives incluent des scans en ligne, Malwarebytes et le mode sans échec avec prise en charge réseau, pour effectuer une analyse et supprimer les éléments détectés sans compromettre le système. En pratique, certains composants peuvent être signalés comme RiskTool par des antivirus, et des instructions complémentaires existent pour agir prudemment sur des supports externes et dans des configurations anciennes.

Bobot (l’IA à votre service)
  1. bonsoir,
    Télécharge random's system information tool (RSIT) et enregistre le sur ton bureau. http://images.malwareremoval.com/random/RSIT.exe

    Tuto : https://forum.pcastuces.com/randoms_system_information_tool_rsit-f31s31.htm
    Double clique sur RSIT.exe pour lancer l'outil.
    Clique sur ' continue ' à l'écran Disclaimer.
    Si l'outil HIjackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera et tu devras accepter la licence.
    Une fois le scan fini, 2 rapports vont apparaître. Poste le contenu des 2 rapports séparément. Ils se trouvent sur c :
    (log.txt & info.txt)
    (CTRL+A Pour tout sélectionner, CTRL+C pour copier et CTRL+V pour coller)

    Edit :

    sur un rapport rsit on voit plus d'information que sur un HT
    2
    1. je l'ai déjà, je m'en sert régulièrement mais le virus est toujours là.
      0
      1. Salut ,

        ~~~~~~~~~~~~~~~> Hijack This <~~~~~~~~~~~~~~~~~~~

        - Telecharger Hijack
        >http://www.infos-du-net.com/telecharger/HijackThis.html

        Une fois Hijack installer, exécuter le :
        - Cliquer sur "Do a system scan and save a logfile"

        - Un fichier texte s'ouvre, si ce n'est pas le cas celui-ci se trouve dans le même dossier que hijackthis.exe .
        - Faire édition / sélectionner tout
        - Clic droit / copier

        - Poste moi le rapport entier
        0
        1. Bonsoir.

          Je te laisse un lien pour un scan anti-virus en ligne :

          http://www.f-secure.com/en_EMEA/security/security-lab/tools-and-services/online-scanner/
          (choisis l'analyse complète, + long mais + efficace)

          Si tu ne peux y accéder, essaie en mode sans échec avec prise en charge réseau.

          A+
          0
          1. Voici le rapport:

            Logfile of Trend Micro HijackThis v2.0.2
            Scan saved at 18:34:09, on 01/09/2009
            Platform: Windows XP SP2 (WinNT 5.01.2600)
            MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
            Boot mode: Normal

            Running processes:
            C:\WINDOWS\System32\smss.exe
            C:\WINDOWS\system32\winlogon.exe
            C:\WINDOWS\system32\services.exe
            C:\WINDOWS\system32\lsass.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\System32\svchost.exe
            C:\WINDOWS\system32\spoolsv.exe
            C:\WINDOWS\Explorer.EXE
            C:\Program Files\Fichiers communs\InterVideo\RegMgr\iviRegMgr.exe
            C:\Program Files\Java\jre6\bin\jqs.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\system32\igfxtray.exe
            C:\WINDOWS\system32\hkcmd.exe
            C:\WINDOWS\system32\igfxpers.exe
            C:\Program Files\Java\jre6\bin\jusched.exe
            C:\WINDOWS\RTHDCPL.EXE
            C:\Program Files\Asus\EeePC ACPI\AsTray.exe
            C:\Program Files\Asus\EeePC ACPI\AsAcpiSvr.exe
            C:\Program Files\Elantech\ETDCtrl.exe
            C:\WINDOWS\system32\ctfmon.exe
            C:\Program Files\Windows Live\Messenger\msnmsgr.exe
            C:\WINDOWS\system32\igfxsrvc.exe
            D:\Program Files\Sun\StarOffice 8\program\soffice.exe
            D:\Program Files\Sun\StarOffice 8\program\soffice.BIN
            C:\WINDOWS\system32\igfxext.exe
            C:\WINDOWS\system32\wbem\wmiapsrv.exe
            C:\Program Files\Windows Live\Messenger\usnsvc.exe
            C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
            C:\Program Files\Internet Explorer\iexplore.exe
            C:\Documents and Settings\Pradon Violaine\Local Settings\Temporary Internet Files\Content.IE5\67Q9ATCV\HiJackThis[1].exe

            R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?cc=fr&toHttps=1&redig=55729C844D6A45819CAD368B3E178C9F
            R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
            R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://eeepc.asus.com/global
            R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
            O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
            O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
            O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
            O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
            O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
            O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
            O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
            O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
            O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
            O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
            O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "D:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
            O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
            O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
            O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
            O4 - HKLM\..\Run: [AsusTray] C:\Program Files\Asus\EeePC ACPI\AsTray.exe
            O4 - HKLM\..\Run: [AsusACPIServer] C:\Program Files\Asus\EeePC ACPI\AsAcpiSvr.exe
            O4 - HKLM\..\Run: [ETDWare] C:\Program Files\Elantech\ETDCtrl.exe
            O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
            O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
            O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
            O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
            O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
            O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
            O4 - Startup: StarOffice 8.lnk = D:\Program Files\Sun\StarOffice 8\program\quickstart.exe
            O4 - Global Startup: AutoRun OSCleaner.lnk = ?
            O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
            O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
            O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
            O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
            O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
            O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
            O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab
            O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
            O23 - Service: IviRegMgr - InterVideo - C:\Program Files\Fichiers communs\InterVideo\RegMgr\iviRegMgr.exe
            O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
            0
            1. Bonsoir ,

              Juste pour suivre le sujet merci .
              0
              1. salut chiquitine, il a préferé passer un Ht, je suis moi aussi ;-)
                0
                1. je vois ceci:
                  l'image centrale uniquement sur la 1ère ligne, et les 3 en bas. = Possibly Infected by Conficker A/B variant
                  Je vais faire le rapport rsit
                  0
                  1. Je n'arrive pas télécharger rsit, quand je clique sur le lien j'ai "Impossible d'afficcher la page"
                    0
                    1. ~~~~~~~~~~~~~~~~> Usbfix <~~~~~~~~~~~~~~~~~~~

                      Télécharge et installe UsbFix (de Chiquitine29) sur ton Bureau :

                      > http://sd-1.archive-host.com/membres/up/127028005715545653/UsbFix.exe

                      /!\ Renomme le en babacool.exe /!\

                      (!) Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) susceptibles d'avoir été infectées sans les ouvrir

                      • Double clic sur le raccourci UsbFix présent sur ton Bureau .

                      • Choisis l'option " 1 " (Recherche) et clique sur [Entrée]

                      • Laisse travailler l'outil.

                      • Ensuite poste le rapport UsbFix.txt qui apparaitra.

                      • Note :

                      Le rapport UsbFix.txt est sauvegardé a la racine du disque. ( C:\UsbFix.txt )

                      ( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )

                      • Note :

                      "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
                      Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
                      0
                      1. ############################## | UsbFix V6.024 |

                        User : Pradon Violaine (Administrateurs) # VIOLAINE
                        Update on 01/09/09 by Chiquitine29, C_XX & Chimay8
                        Start at: 20:11:57 | 01/09/2009
                        Website : http://pagesperso-orange.fr/NosTools/index.html

                        Intel(R) Celeron(R) M processor 900MHz
                        Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 2
                        Internet Explorer 6.0.2900.2180
                        Windows Firewall Status : Enabled

                        C:\ -> Disque fixe local # 3,72 Go (644,32 Mo free) # NTFS
                        D:\ -> Disque fixe local # 7,51 Go (6,29 Go free) # NTFS
                        J:\ -> Disque fixe local # 111,76 Go (62,16 Go free) [WD Passport] # FAT32

                        ############################## | Processus actifs |

                        C:\WINDOWS\System32\smss.exe
                        C:\WINDOWS\system32\csrss.exe
                        C:\WINDOWS\system32\winlogon.exe
                        C:\WINDOWS\system32\services.exe
                        C:\WINDOWS\system32\lsass.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\WINDOWS\System32\svchost.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\WINDOWS\system32\spoolsv.exe
                        C:\WINDOWS\Explorer.EXE
                        C:\Program Files\Fichiers communs\InterVideo\RegMgr\iviRegMgr.exe
                        C:\Program Files\Java\jre6\bin\jqs.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\WINDOWS\system32\igfxtray.exe
                        C:\WINDOWS\system32\igfxpers.exe
                        C:\Program Files\Java\jre6\bin\jusched.exe
                        C:\WINDOWS\RTHDCPL.EXE
                        C:\Program Files\Asus\EeePC ACPI\AsTray.exe
                        C:\Program Files\Asus\EeePC ACPI\AsAcpiSvr.exe
                        C:\Program Files\Elantech\ETDCtrl.exe
                        C:\WINDOWS\system32\ctfmon.exe
                        C:\Program Files\Windows Live\Messenger\msnmsgr.exe
                        C:\WINDOWS\system32\igfxsrvc.exe
                        D:\Program Files\Sun\StarOffice 8\program\soffice.exe
                        C:\WINDOWS\System32\alg.exe
                        D:\Program Files\Sun\StarOffice 8\program\soffice.BIN
                        C:\WINDOWS\system32\igfxext.exe
                        C:\WINDOWS\system32\wbem\wmiapsrv.exe
                        C:\Program Files\Windows Live\Messenger\usnsvc.exe
                        C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
                        C:\Program Files\Internet Explorer\iexplore.exe
                        C:\WINDOWS\system32\wbem\wmiprvse.exe

                        ################## | Fichiers # Dossiers infectieux |

                        Présent ! J:\autorun.inf
                        Présent ! J:\Recycler\S-5-3-42-2819952290-8240758988-879315005-3665
                        Présent ! J:\Recycler\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx

                        ################## | Suspect ! ... | https://www.virustotal.com/gui/ |

                        ################## | Registre # Clés Run infectieuses |

                        ################## | Registre # Mountpoints2 |

                        HKCU\..\..\Explorer\MountPoints2\{17dd3258-833b-11de-b586-0015afb3957e}
                        Shell\AutoRun\command =C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn

                        HKCU\..\..\Explorer\MountPoints2\{1ed5bd40-17e4-11de-b496-0015afb3957e}
                        Shell\AutoRun\command =C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RUNdLl32.ExE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn

                        HKCU\..\..\Explorer\MountPoints2\{2572dbba-0362-11de-b477-0015afb3957e}
                        Shell\AutoRun\command =C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn

                        HKCU\..\..\Explorer\MountPoints2\{405699dd-884e-11de-b58c-0015afb3957e}
                        Shell\AutoRun\command =C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn

                        HKCU\..\..\Explorer\MountPoints2\{44193528-538f-11de-b526-002215087f07}
                        Shell\AutoRun\command =C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn

                        HKCU\..\..\Explorer\MountPoints2\{5ca6a5ac-8d88-11de-b596-0015afb3957e}
                        Shell\AutoRun\command =C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn

                        HKCU\..\..\Explorer\MountPoints2\{6dc13eee-09b0-11de-b47b-0015afb3957e}
                        Shell\AutoRun\command =C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn

                        HKCU\..\..\Explorer\MountPoints2\{723cbf3b-032e-11de-b476-0015afb3957e}
                        Shell\AutoRun\command =C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn

                        ################## | Cracks / Keygens / Serials |

                        ################## | ! Fin du rapport # UsbFix V6.024 ! |

                        ############################## | UsbFix V6.024 |

                        User : Pradon Violaine (Administrateurs) # VIOLAINE
                        Update on 01/09/09 by Chiquitine29, C_XX & Chimay8
                        Start at: 20:11:57 | 01/09/2009
                        Website : http://pagesperso-orange.fr/NosTools/index.html

                        Intel(R) Celeron(R) M processor 900MHz
                        Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 2
                        Internet Explorer 6.0.2900.2180
                        Windows Firewall Status : Enabled

                        C:\ -> Disque fixe local # 3,72 Go (644,32 Mo free) # NTFS
                        D:\ -> Disque fixe local # 7,51 Go (6,29 Go free) # NTFS
                        J:\ -> Disque fixe local # 111,76 Go (62,16 Go free) [WD Passport] # FAT32

                        ############################## | Processus actifs |

                        C:\WINDOWS\System32\smss.exe
                        C:\WINDOWS\system32\csrss.exe
                        C:\WINDOWS\system32\winlogon.exe
                        C:\WINDOWS\system32\services.exe
                        C:\WINDOWS\system32\lsass.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\WINDOWS\System32\svchost.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\WINDOWS\system32\spoolsv.exe
                        C:\WINDOWS\Explorer.EXE
                        C:\Program Files\Fichiers communs\InterVideo\RegMgr\iviRegMgr.exe
                        C:\Program Files\Java\jre6\bin\jqs.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\WINDOWS\system32\igfxtray.exe
                        C:\WINDOWS\system32\igfxpers.exe
                        C:\Program Files\Java\jre6\bin\jusched.exe
                        C:\WINDOWS\RTHDCPL.EXE
                        C:\Program Files\Asus\EeePC ACPI\AsTray.exe
                        C:\Program Files\Asus\EeePC ACPI\AsAcpiSvr.exe
                        C:\Program Files\Elantech\ETDCtrl.exe
                        C:\WINDOWS\system32\ctfmon.exe
                        C:\Program Files\Windows Live\Messenger\msnmsgr.exe
                        C:\WINDOWS\system32\igfxsrvc.exe
                        D:\Program Files\Sun\StarOffice 8\program\soffice.exe
                        C:\WINDOWS\System32\alg.exe
                        D:\Program Files\Sun\StarOffice 8\program\soffice.BIN
                        C:\WINDOWS\system32\igfxext.exe
                        C:\WINDOWS\system32\wbem\wmiapsrv.exe
                        C:\Program Files\Windows Live\Messenger\usnsvc.exe
                        C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
                        C:\Program Files\Internet Explorer\iexplore.exe
                        C:\WINDOWS\system32\wbem\wmiprvse.exe

                        ################## | Fichiers # Dossiers infectieux |

                        Présent ! J:\autorun.inf
                        Présent ! J:\Recycler\S-5-3-42-2819952290-8240758988-879315005-3665
                        Présent ! J:\Recycler\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx

                        ################## | Suspect ! ... | https://www.virustotal.com/gui/ |

                        ################## | Registre # Clés Run infectieuses |

                        ################## | Registre # Mountpoints2 |

                        HKCU\..\..\Explorer\MountPoints2\{17dd3258-833b-11de-b586-0015afb3957e}
                        Shell\AutoRun\command =C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn

                        HKCU\..\..\Explorer\MountPoints2\{1ed5bd40-17e4-11de-b496-0015afb3957e}
                        Shell\AutoRun\command =C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RUNdLl32.ExE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn

                        HKCU\..\..\Explorer\MountPoints2\{2572dbba-0362-11de-b477-0015afb3957e}
                        Shell\AutoRun\command =C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn

                        HKCU\..\..\Explorer\MountPoints2\{405699dd-884e-11de-b58c-0015afb3957e}
                        Shell\AutoRun\command =C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn

                        HKCU\..\..\Explorer\MountPoints2\{44193528-538f-11de-b526-002215087f07}
                        Shell\AutoRun\command =C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn

                        HKCU\..\..\Explorer\MountPoints2\{5ca6a5ac-8d88-11de-b596-0015afb3957e}
                        Shell\AutoRun\command =C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn

                        HKCU\..\..\Explorer\MountPoints2\{6dc13eee-09b0-11de-b47b-0015afb3957e}
                        Shell\AutoRun\command =C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn

                        HKCU\..\..\Explorer\MountPoints2\{723cbf3b-032e-11de-b476-0015afb3957e}
                        Shell\AutoRun\command =C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn

                        ################## | Cracks / Keygens / Serials |

                        ################## | ! Fin du rapport # UsbFix V6.024 ! |
                        0
                        1. ~~~~~~~~~~~~~~~~> Usbfix <~~~~~~~~~~~~~~~~~~~

                          Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) susceptibles d avoir été infectées sans les ouvrir

                          • Fais un clic droit sur le raccourci UsbFix présent sur ton Bureau et choisis "Exécuter en tant qu'administrateur" .
                          • Choisis l' option 2 ( Suppression )

                          • Ton bureau disparaitra et le pc redémarrera .


                          • Au redémarrage , UsbFix scannera ton pc , laisse travailler l'outil.
                          • Ensuite poste le rapport UsbFix.txt qui apparaitra avec le bureau .

                          • Note :

                          Le rapport UsbFix.txt est sauvegardé a la racine du disque.( C:\UsbFix.txt )
                          ( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
                          0
                          1. Si je fais cela , ça va supprimer tout ce qu'il ya sur mon bureau et mon disque dur externe?
                            0
                            1. Non , pas tout , juste les objets infectés
                              0
                              1. Je n'arrive pas à poster le rapport.... je ne comprend pas....
                                J'ai essayé de retourner sur le site d'avast, j'ai eu "impossible d'afficher la page" lorsque j'ai cliqué sur le lien.
                                0
                              2. @elinare,
                                assez joué avec usbfix, le problème ne vient pas d'un support amovible même si usbfix a trouvé des infections sur j: ( au passage un grand merci à chiquitine29 qui suit ce topic pour cet outil ;-) )

                                Télécharge Malwarebytes' Anti-Malware:

                                https://www.malekal.com/tutoriel-malwarebyte-anti-malware/

                                . sur la page cliques sur Télécharger Malwarebyte's Anti-Malware
                                . enregistres le sur le bureau
                                . Double cliques sur le fichier téléchargé pour lancer le processus d'installation.
                                . Dans l'onglet "mise à jour", cliques sur le bouton Recherche de mise à jour
                                . si le pare-feu demande l'autorisation de se connecter pour malwarebytes, acceptes
                                . Une fois la mise à jour terminée,fermes Malwarebytes
                                . redemarres en mode sans échec pour savoir comment au cas ou tu ne saurrais pas regarde plus bas
                                . une fois en mode sans echec tu double-cliques sur l'icône de malwarebytes
                                . une fois ouvert rend-toi dans l'onglet, Recherche
                                . Sélectionnes Exécuter un examen complet
                                . Cliques sur Rechercher
                                . Le scan démarre.
                                . A la fin de l'analyse, un message s'affiche : L'examen s'est terminé normalement. Cliquez sur 'Afficher les résultats' pour afficher tous les objets trouvés.
                                . Cliques sur Ok pour poursuivre.
                                . Si des malwares ont été détectés, cliques sur Afficher les résultats
                                . Sélectionnes tout (ou laisses cochés) et cliques sur Supprimer la sélection Malwarebytes va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.
                                . Malwarebytes va ouvrir le bloc-notes et y copier le rapport d'analyse.
                                . redemarre le pc
                                . une fois redémarré en mode normal double-cliques sur malwarebytes
                                . rends toi dans l'onglet rapport/log
                                . tu cliques dessus pour l'afficher une fois affiché
                                . tu cliques sur edition en haut du boc notes,et puis sur sélectionner tous
                                . tu recliques sur edition et puis sur copier et tu reviens sur le forum et dans ta réponse
                                . tu cliques droit dans le cadre de la reponse et coller

                                Si tu as besoin d'aide regarde ce tutoriel :
                                https://www.malekal.com/tutoriel-malwarebyte-anti-malware/

                                (attention : pas de connexion possible en mode sans échec , donc copies ou imprimes bien la manipe pour éviter les erreurs ...)

                                pour redémarrer en mode sans échec :

                                Redémarrez l'ordinateur en tapotant la touche F8 plusieurs fois jusqu'à l'apparition d'un menu (blanc sur fond noir).
                                Ne t'inquiète pas si les couleurs et les icônes ne sont pas comme d'habitude
                                Dans ce menu, à l'aide des touches directionnelles, mettez en surbrillance la ligne Démarrer en mode sans échec.
                                Choisir le système d'exploitation à démarrer.
                                Choisir votre compte habituel pour vous loguer.
                                A l'avertissement disant que l'ordinateur a démarré en mode sans échec, cliquer sur Continuer.
                                Remarque: Sur certains ordinateurs, la touche F8 est inopérante. Utiliser dans ce cas la touche F5.

                                /!\ Ne jamais démarrer en mode sans échec via MSCONFIG /!\
                                0
                            2. Télécharge Malwarebytes' Anti-Malware:

                              mbam ne virera pas conficker ...

                              combofix plus script oui

                              ++

                              0
                              1. re chiquitine29,
                                Edit :
                                lis ceci :

                                https://www.commentcamarche.net/faq/16710-comment-supprimer-le-virus-conficker-downadup-kido

                                si mbam ne trouve rien à ce moment on lance un combofix
                                0
                              2. @Utilisateur anonymesi mbam ne trouve rien

                                >> il ne trouvera rien , ou alors je suis pas a jours de ce coté :)

                                0
                              3. @Utilisateur anonymesalut chiquitine29,
                                on attend voir le résultat, on sera fixé rapidement, sur ce bonne journée :-)
                                0
                            3. Salut tout l monde

                              J’ai mis un mot de passe pour kaspersky et malheureusement je l'ai oublié car maintenant je veux le désinstaller

                              Si quelqu'un a une solution merci d'avance
                               
                              0
                              1. 'lu,

                                Prendre contact avec eux.

                                (la prochaine fois mieux vaut créer ton propre sujet ;) )
                                0
                            4. dlld

                              il ne veut rien comprendre snake cela fait de nombreuses heures qu il pollue les topics et on lui repond comme toi mais il continue.
                              a bon entendeur.
                              0
                              1. Bonjour,
                                Mon problème, c'est que je ne peux plus installer d'anti virus (AVAST) ni Ad-Aware, Spybot - Search & Destroy, Spyware Doctor.
                                Quelqu'un a-t-il une solution à mon problème ?

                                info.txt logfile of random's system information tool 1.06 2010-01-02 11:52:06

                                ======Uninstall list======

                                -->C:\Program Files\Nero\Nero 7\nero\uninstall\UNNERO.exe /UNINSTALL
                                -->C:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
                                -->C:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL
                                -->C:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
                                -->C:\WINDOWS\UNNeroVision.exe /UNINSTALL
                                -->C:\WINDOWS\UNRecode.exe /UNINSTALL
                                -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
                                µTorrent-->"C:\Program Files\uTorrent\uTorrent.exe" /UNINSTALL
                                Ad-Aware-->"C:\Documents and Settings\All Users\Application Data\{CFBD8779-FAAB-4357-84F2-1EC8619FADA6}\Ad-AwareInstallation.exe" REMOVE=TRUE MODIFY=FALSE
                                Ad-Aware-->C:\Documents and Settings\All Users\Application Data\{CFBD8779-FAAB-4357-84F2-1EC8619FADA6}\Ad-AwareInstallation.exe
                                Adobe Download Manager-->"C:\WINDOWS\system32\rundll32.exe" "C:\Program Files\NOS\bin\getPlus_Helper.dll",Uninstall /IE2883E8F-472F-4fb0-9522-AC9BF37916A7 /Get1
                                Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
                                Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
                                Adobe Reader 9.2 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A92000000001}
                                Apple Application Support-->MsiExec.exe /I{3FA365DF-2D68-45ED-8F83-8C8A33E65143}
                                Apple Mobile Device Support-->MsiExec.exe /I{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}
                                Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
                                Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
                                Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
                                ATI - Utilitaire de désinstallation du logiciel-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
                                ATI Catalyst Control Center-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{055EE59D-217B-43A7-ABFF-507B966405D8}\setup.exe" -l0x444e
                                ATI Display Driver-->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
                                avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
                                Browser Defender 2.0.6.11-->"C:\Program Files\Spyware Doctor\BDT\unins000.exe"
                                CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
                                C-Media High Definition Audio Driver-->C:\WINDOWS\system32\cmirmdrv.exe
                                Conjugaison-->MsiExec.exe /I{057AA4D8-559F-42B1-98A0-508303834B2E}
                                Diskeeper Professional Edition-->MsiExec.exe /X{5511D34C-323F-42E0-8C82-0AEB3E920417}
                                ESET Online Scanner v3-->C:\Program Files\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe
                                Extension Système de Microsoft Money-->MsiExec.exe /X{8C64E13E-54BA-11D6-91B1-00500462BE80}
                                Falsh Player 10-->"C:\Program Files\FP\unins000.exe"
                                FileZilla Client 3.2.5-->C:\Program Files\FileZilla FTP Client\uninstall.exe
                                Heredis 7-->C:\WINDOWS\unvise32.exe C:\Program Files\Heredis 7\uninstal.log
                                Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
                                Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
                                Hotfix for Windows XP (KB915800-v4)-->"C:\WINDOWS\$NtUninstallKB915800-v4$\spuninst\spuninst.exe"
                                Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
                                Installation Windows Live-->MsiExec.exe /I{46ABBC54-1872-4AA3-95E2-F2C063A63F31}
                                ITE 8212 Controller-->C:\Program Files\InstallShield Installation Information\{00677F41-3751-4815-8F10-7CB62495D806}\setup.exe -runfromtemp -l0x0009 -removeonly
                                iTunes-->MsiExec.exe /I{A6FDF86A-F541-4E7B-AEA0-8849A2A700D5}
                                Java(TM) 6 Update 14-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216014FF}
                                K-Lite Codec Pack 5.5.1 (Full)-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
                                Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
                                LG PC Suite-->C:\Program Files\InstallShield Installation Information\{993960EE-CA4D-443F-8F88-E24260DD5FD2}\setup.exe -runfromtemp -l0x040c -removeonly
                                LG USB Modem Drivers-->MsiExec.exe /I{FA02ACAC-9E14-4878-A257-92A22A647C2C}
                                Ma-Config.com-->MsiExec.exe /X{18754BA4-4F0C-4E6E-888B-9496AFA05F43}
                                Marvell Miniport Driver-->C:\Program Files\Marvell\Miniport Driver\Uninst.exe
                                Messenger Plus! Live-->"C:\Program Files\Messenger Plus! Live\Uninstall.exe"
                                Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
                                Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - FRA-->MsiExec.exe /I{0BD83598-C2EF-3343-847B-7D2E84599128}
                                Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
                                Microsoft .NET Framework 3.5 Language Pack SP1 - fra-->MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31}
                                Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
                                Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
                                Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
                                Microsoft Corporation-->MsiExec.exe /I{B3BC9DB1-0B0A-48B0-B86B-EA77CAA7F800}
                                Microsoft LifeCam-->MsiExec.exe /X{36C97B5B-5593-45B8-B50E-DAD87036BD9D}
                                Microsoft Money-->MsiExec.exe /X{1D643CDB-4DD6-11D7-A4E0-000874180BB3}
                                Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
                                Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0015-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                                Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                                Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                                Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0019-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                                Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                                Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                                Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0044-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                                Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {B165D3C2-40AE-4D39-86F7-E5C87C4264C0}
                                Microsoft Office Access MUI (French) 2007-->MsiExec.exe /X{90120000-0015-040C-0000-0000000FF1CE}
                                Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
                                Microsoft Office InfoPath MUI (French) 2007-->MsiExec.exe /X{90120000-0044-040C-0000-0000000FF1CE}
                                Microsoft Office Outlook Connector-->MsiExec.exe /I{95120000-0122-040C-0000-0000000FF1CE}
                                Microsoft Office Outlook MUI (French) 2007-->MsiExec.exe /X{90120000-001A-040C-0000-0000000FF1CE}
                                Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
                                Microsoft Office Professional Plus 2007-->"C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
                                Microsoft Office Professional Plus 2007-->MsiExec.exe /X{90120000-0011-0000-0000-0000000FF1CE}
                                Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
                                Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
                                Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
                                Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
                                Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
                                Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
                                Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
                                Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {14809F99-C601-4D4A-9391-F1E8FAA964C5}
                                Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
                                Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
                                Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
                                Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}
                                Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
                                Microsoft Office Publisher MUI (French) 2007-->MsiExec.exe /X{90120000-0019-040C-0000-0000000FF1CE}
                                Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
                                Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
                                Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
                                Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
                                MioMore Desktop 2008-->C:\Program Files\InstallShield Installation Information\{7617FC2E-EA1B-4F07-A0F5-5D5F437CB32D}\setup.exe -runfromtemp -l0x040c -removeonly
                                Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127-v2)-->"C:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe"
                                Mise à jour de sécurité pour Windows Internet Explorer 7 (KB969897)-->"C:\WINDOWS\ie7updates\KB969897-IE7\spuninst\spuninst.exe"
                                Mise à jour de sécurité pour Windows Internet Explorer 8 (KB971961)-->"C:\WINDOWS\ie8updates\KB971961-IE8\spuninst\spuninst.exe"
                                Mise à jour de sécurité pour Windows Internet Explorer 8 (KB976325)-->"C:\WINDOWS\ie8updates\KB976325-IE8\spuninst\spuninst.exe"
                                Mise à jour Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {B761869A-B85C-40E2-994C-A1CE78AC8F2C}
                                Mise à jour Microsoft Office Outlook 2007 Help (KB963677)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {51EFB347-1F3D-4BAC-8B79-F056B904FE21}
                                Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {C3DCA38E-005E-41BA-A52A-7C3429F351C3}
                                Mise à jour Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {81536A04-DBFB-4DB3-978F-0F284590C223}
                                Mise à jour pour Windows Internet Explorer 8 (KB975364)-->"C:\WINDOWS\ie8updates\KB975364-IE8\spuninst\spuninst.exe"
                                MobileMe Control Panel-->MsiExec.exe /I{3AC54383-31D1-4907-961B-B12CBB1D0AE8}
                                Module linguistique Microsoft .NET Framework 3.5 SP1- fra-->c:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe
                                MSI Live Update 3-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\MSI\Live Update 3\Uninst.isu"
                                MSN BackUp 1.3.4-->C:\Program Files\MSN BackUp\uninst.exe
                                MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
                                MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
                                MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
                                MSXML 6 Service Pack 2 (KB954459)-->MsiExec.exe /I{97AA1F3C-DD64-4AA6-AEC5-F8F9F4CC21C5}
                                Nero 7 Demo-->MsiExec.exe /I{6F9C0903-4311-4619-7B30-F1E19CF11036}
                                Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
                                Package de pilotes Windows - ITE Tech. Inc. (iteraid) SCSIAdapter (09/17/2007 1.7.2.9)-->C:\PROGRA~1\DIFX\DPInst.exe /u C:\WINDOWS\system32\DRVSTORE\iteraid_B3A22BC8D20FEE619291DE05CD37AFB176A4DF85\iteraid.inf
                                Panda ActiveScan 2.0-->C:\Program Files\Panda Security\ActiveScan 2.0\as2uninst.exe
                                Plus de 200 000 Cliparts et Photos-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{D01940CE-8BD3-4258-B4E2-42F185AE1968}
                                PowerArchiver-->C:\Program Files\PowerArchiver\UNINST.EXE
                                PPP over Ethernet-->rundll32.exe pppoe32.dll,Uninstall
                                QuickTime-->MsiExec.exe /I{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}
                                Safari-->MsiExec.exe /I{D6E4E5D6-7693-4BB4-95BA-21F38FAFEE90}
                                Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
                                Security Update for 2007 Microsoft Office System (KB973704)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {E626DC89-A787-4553-9BB3-DC2EC7E1593F}
                                Security Update for Microsoft Office Excel 2007 (KB973593)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {7D6255E3-3423-4D8B-A328-F6F8D28DD5FE}
                                Security Update for Microsoft Office Outlook 2007 (KB972363)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {120BE9A0-9B09-4855-9E0C-7DEE45CB03C0}
                                Security Update for Microsoft Office PowerPoint 2007 (KB957789)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}
                                Security Update for Microsoft Office Publisher 2007 (KB969693)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {7BE67088-1EB3-4569-8E75-DDAFBF61BC4E}
                                Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
                                Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
                                Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
                                Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
                                Security Update for Microsoft Office Word 2007 (KB969604)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {CF3D6499-709C-43D0-8908-BC5652656050}
                                Security Update for Windows Search 4 - KB963093-->"C:\WINDOWS\$NtUninstallKB963093$\spuninst\spuninst.exe"
                                Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
                                SPAMfighter-->"C:\Program Files\SPAMfighter\uninstall.exe" Remove
                                Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
                                Spyware Doctor 7.0-->C:\Program Files\Spyware Doctor\unins000.exe /LOG
                                Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
                                Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
                                Update for Microsoft Office InfoPath 2007 (KB976416)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {432C5EE4-8096-4FF1-95E1-65219365DFF7}
                                Update for Outlook 2007 Junk Email Filter (kb976884)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {FB60F280-C70F-4174-BADB-471412AA42F0}
                                Urban Terror 4.1-->"C:\Documents and Settings\Jérémy\unins000.exe"
                                Visual C++ 2008 x86 Runtime - (v9.0.30729)-->MsiExec.exe /X{F333A33D-125C-32A2-8DCE-5C5D14231E27}
                                Visual C++ 2008 x86 Runtime - v9.0.30729.01-->C:\WINDOWS\system32\msiexec.exe /x {F333A33D-125C-32A2-8DCE-5C5D14231E27} /qb+ REBOOTPROMPT=""
                                VLC media player 1.0.3-->C:\Program Files\VideoLAN\VLC\uninstall.exe
                                Windows Internet Explorer 8-->"C:\WINDOWS\ie8\spuninst\spuninst.exe"
                                Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
                                Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
                                Windows Live Messenger-->MsiExec.exe /X{770F1BEC-2871-4E70-B837-FB8525FFA3B1}
                                Windows Live OneCare safety scanner-->RunDll32.exe "C:\Program Files\Windows Live Safety Center\wlscCore.dll",UninstallFunction WLSC_SCANNER_PRODUCT
                                Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
                                Windows Search 4.0-->"C:\WINDOWS\$NtUninstallKB940157$\spuninst\spuninst.exe"

                                ======Security center information======

                                AV: avast! antivirus 4.8.1368 [VPS 091231-0] (disabled)

                                ======System event log======

                                Computer Name: RAIMU
                                Event Code: 7035
                                Message: Un contrôle Démarrer a correctement été envoyé au service Service COM de gravage de CD IMAPI.

                                Record Number: 26722
                                Source Name: Service Control Manager
                                Time Written: 20091224151953.000000+060
                                Event Type: Informations
                                User: AUTORITE NT\SYSTEM

                                Computer Name: RAIMU
                                Event Code: 7036
                                Message: Le service Service COM de gravage de CD IMAPI est entré dans l'état : arrêté.

                                Record Number: 26721
                                Source Name: Service Control Manager
                                Time Written: 20091224151813.000000+060
                                Event Type: Informations
                                User:

                                Computer Name: RAIMU
                                Event Code: 7036
                                Message: Le service Service COM de gravage de CD IMAPI est entré dans l'état : en cours d'exécution.

                                Record Number: 26720
                                Source Name: Service Control Manager
                                Time Written: 20091224151807.000000+060
                                Event Type: Informations
                                User:

                                Computer Name: RAIMU
                                Event Code: 7035
                                Message: Un contrôle Démarrer a correctement été envoyé au service Service COM de gravage de CD IMAPI.

                                Record Number: 26719
                                Source Name: Service Control Manager
                                Time Written: 20091224151807.000000+060
                                Event Type: Informations
                                User: AUTORITE NT\SYSTEM

                                Computer Name: RAIMU
                                Event Code: 7036
                                Message: Le service Service COM de gravage de CD IMAPI est entré dans l'état : arrêté.

                                Record Number: 26718
                                Source Name: Service Control Manager
                                Time Written: 20091224151755.000000+060
                                Event Type: Informations
                                User:

                                =====Application event log=====

                                Computer Name: RAIMU
                                Event Code: 11728
                                Message: Produit : Outil de téléchargement Windows Live -- La configuration s'est terminée correctement.

                                Record Number: 3900
                                Source Name: MsiInstaller
                                Time Written: 20091004131738.000000+120
                                Event Type: Informations
                                User: RAIMU\Jean-Luc

                                Computer Name: RAIMU
                                Event Code: 11728
                                Message: Produit : Windows Live Call -- La configuration s'est terminée correctement.

                                Record Number: 3899
                                Source Name: MsiInstaller
                                Time Written: 20091004131738.000000+120
                                Event Type: Informations
                                User: RAIMU\Jean-Luc

                                Computer Name: RAIMU
                                Event Code: 11728
                                Message: Produit : Segoe UI -- La configuration s'est terminée correctement.

                                Record Number: 3898
                                Source Name: MsiInstaller
                                Time Written: 20091004131738.000000+120
                                Event Type: Informations
                                User: RAIMU\Jean-Luc

                                Computer Name: RAIMU
                                Event Code: 11728
                                Message: Produit : Windows Live Communications Platform -- La configuration s'est terminée correctement.

                                Record Number: 3897
                                Source Name: MsiInstaller
                                Time Written: 20091004131738.000000+120
                                Event Type: Informations
                                User: RAIMU\Jean-Luc

                                Computer Name: RAIMU
                                Event Code: 11728
                                Message: Product: Microsoft Application Error Reporting -- Configuration completed successfully.

                                Record Number: 3896
                                Source Name: MsiInstaller
                                Time Written: 20091004131738.000000+120
                                Event Type: Informations
                                User: RAIMU\Jean-Luc

                                ======Environment variables======

                                "ComSpec"=%SystemRoot%\system32\cmd.exe
                                "FP_NO_HOST_CHECK"=NO
                                "NUMBER_OF_PROCESSORS"=2
                                "OS"=Windows_NT
                                "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\system32\WBEM;C:\PROGRA~1\DISKEE~1\DISKEE~1\;C:\Program Files\QuickTime\QTSystem\;C:\Program Files\Executive Software\Diskeeper\
                                "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
                                "PROCESSOR_ARCHITECTURE"=x86
                                "PROCESSOR_IDENTIFIER"=x86 Family 15 Model 4 Stepping 1, GenuineIntel
                                "PROCESSOR_LEVEL"=15
                                "PROCESSOR_REVISION"=0401
                                "TEMP"=%SystemRoot%\TEMP
                                "TMP"=%SystemRoot%\TEMP
                                "windir"=%SystemRoot%
                                "CLASSPATH"=.;C:\Program Files\Java\jre6\lib\ext\QTJava.zip
                                "QTJAVA"=C:\Program Files\Java\jre6\lib\ext\QTJava.zip

                                -----------------EOF-----------------

                                Amicalement
                                Jean-Luc
                                0
                                1. Bonjour jlbonacchi,

                                  Veuillez créer votre propre discussion svp.

                                  Merci.
                                  0