Est ce que j'ai un virus
Résolu/Fermé
A voir également:
- Est ce que j'ai un virus
- Tinyurl virus - Forum Virus / Sécurité
- Svchost.exe virus - Guide
- Tlauncher virus ✓ - Forum Jeux vidéo
- Softonic virus - Forum Virus / Sécurité
- 6 proccesus svchost.exe Virus? ✓ - Forum Virus / Sécurité
76 réponses
y a un truc qui bloque
Desactive ton antivirus le temps de la manip ainsi que ton parefeu si présent
▶ Télécharge List&Kill'em et enregistre le sur ton bureau
▶ dezippe-le , (clic droit/ extraire.....)
Il ne necessite pas d'installation
▶double clic (clic droit "executer en tant qu'administrateur" pour Vista) pour lancer le scan
choisis la langue puis choisis l'option 1 = Mode Recherche
▶laisse travailler l'outil
▶Poste le contenu du rapport qui s'ouvre
Desactive ton antivirus le temps de la manip ainsi que ton parefeu si présent
▶ Télécharge List&Kill'em et enregistre le sur ton bureau
▶ dezippe-le , (clic droit/ extraire.....)
Il ne necessite pas d'installation
▶double clic (clic droit "executer en tant qu'administrateur" pour Vista) pour lancer le scan
choisis la langue puis choisis l'option 1 = Mode Recherche
▶laisse travailler l'outil
▶Poste le contenu du rapport qui s'ouvre
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
List'em by g3n-h@ckm@n 1.0.5.6
Thx to Chiquitine29.....
User : Administrateur (Administrateurs) # LINA-88888888
Update on 25/11/2009 by g3n-h@ckm@n ::::: 13:00
Start at: 13:35:55 | 25/11/2009
Contact : g3n-h@ckm@n sur CCM
Intel(R) Pentium(R) D CPU 2.80GHz
Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
Internet Explorer 8.0.6001.18702
Windows Firewall Status : Enabled
AV : AntiVir Desktop 9.0.1.32 [ Enabled | Updated ]
C:\ -> Disque fixe local | 50,41 Go (37,3 Go free) | NTFS
D:\ -> Disque fixe local | 98,63 Go (93,9 Go free) | NTFS
E:\ -> Disque amovible
F:\ -> Disque amovible
G:\ -> Disque amovible
H:\ -> Disque amovible
I:\ -> Disque CD-ROM
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processus en cours
C:\WINDOWS\System32\smss.exe 412
C:\WINDOWS\system32\csrss.exe 460
C:\WINDOWS\system32\winlogon.exe 484
C:\WINDOWS\system32\services.exe 528
C:\WINDOWS\system32\lsass.exe 540
C:\WINDOWS\system32\svchost.exe 740
C:\WINDOWS\system32\svchost.exe 800
C:\WINDOWS\System32\svchost.exe 840
C:\WINDOWS\system32\svchost.exe 880
C:\WINDOWS\system32\svchost.exe 968
C:\WINDOWS\system32\spoolsv.exe 1036
C:\Program Files\Avira\AntiVir Desktop\sched.exe 1084
C:\WINDOWS\System32\svchost.exe 1276
C:\Program Files\Avira\AntiVir Desktop\avguard.exe 1312
C:\WINDOWS\system32\dllhost.exe 1336
C:\Program Files\Java\jre6\bin\jqs.exe 1412
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe 1460
C:\WINDOWS\Explorer.EXE 1824
C:\WINDOWS\system32\svchost.exe 1992
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe 1224
C:\Program Files\Java\jre6\bin\jusched.exe 912
C:\WINDOWS\RTHDCPL.EXE 1284
D:\SUPERAntiSpyware\antispyware\SUPERAntiSpyware.exe 1744
C:\Program Files\Windows Live\Messenger\msnmsgr.exe 1848
C:\WINDOWS\system32\ctfmon.exe 2028
C:\WINDOWS\System32\alg.exe 2080
C:\Program Files\Free Download Manager\fdm.exe 2544
D:\QQSP5\Bin\QQ.exe 2848
D:\QQSP5\Bin\TXPlatform.exe 2896
D:\QQSP5\Bin\QQ.exe 2984
C:\Program Files\Windows Live\Contacts\wlcomm.exe 3048
C:\Program Files\Mozilla Firefox\firefox.exe 1956
D:\QQPinyin\2.3.614.201\QQPYConfig.exe 980
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Répertoire temporaire 1 pour List_Killem.zip\List_Kill'em.exe 2680
C:\WINDOWS\system32\cmd.exe 3768
C:\WINDOWS\system32\wbem\wmiprvse.exe 1172
C:\Documents and Settings\Administrateur\Local Settings\temp\6D.tmp\pv.exe 380
======================
Cles de demarrage "Run"
======================
! REG.EXE VERSION 3.0
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
SUPERAntiSpyware REG_SZ D:\SUPERAntiSpyware\antispyware\SUPERAntiSpyware.exe
msnmsgr REG_SZ "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
ctfmon.exe REG_SZ C:\WINDOWS\system32\ctfmon.exe
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
avgnt REG_SZ "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
Adobe ARM REG_SZ "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe"
SunJavaUpdateSched REG_SZ "C:\Program Files\Java\jre6\bin\jusched.exe"
Malwarebytes Anti-Malware (reboot) REG_SZ "D:\SUPERAntiSpyware\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
RTHDCPL REG_SZ RTHDCPL.EXE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents
=====================
cles additionnelles
=====================
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System
dontdisplaylastusername REG_DWORD 0x0
legalnoticecaption REG_SZ
legalnoticetext REG_SZ
shutdownwithoutlogon REG_DWORD 0x1
undockwithoutlogon REG_DWORD 0x1
ConsentPromptBehaviorAdmin REG_DWORD 0x2
PromptOnSecureDesktop REG_DWORD 0x1
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\dontdisplaylastusername
===============
===============
BHO :
======
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C920E44A-7F78-4E64-BDD7-A57026E7FEB7}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}
========
Services
========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services]
Ndisuio : 0x3
EapHost : 0x3
SharedAccess : 0x2
wuauserv : 0x2
=========
=========================
Environnement variables :
=========================
ALLUSERSPROFILE=C:\Documents and Settings\All Users
APPDATA=C:\Documents and Settings\Administrateur\Application Data
choix=1
CLIENTNAME=Console
CommonProgramFiles=C:\Program Files\Fichiers communs
COMPUTERNAME=LINA-88888888
ComSpec=C:\WINDOWS\system32\cmd.exe
FP_NO_HOST_CHECK=NO
HOMEDRIVE=C:
HOMEPATH=\Documents and Settings\Administrateur
LOGONSERVER=\\LINA-88888888
NUMBER_OF_PROCESSORS=2
OS=Windows_NT
Path=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 15 Model 4 Stepping 4, GenuineIntel
PROCESSOR_LEVEL=15
PROCESSOR_REVISION=0404
ProgramFiles=C:\Program Files
PROMPT=$P$G
SESSIONNAME=Console
SystemDrive=C:
SystemRoot=C:\WINDOWS
TEMP=C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp
TMP=C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp
USERDOMAIN=LINA-88888888
USERNAME=Administrateur
USERPROFILE=C:\Documents and Settings\Administrateur
windir=C:\WINDOWS
__COMPAT_LAYER=EnableNXShowUI
¤¤¤¤¤¤¤¤¤¤ Fichiers et dossiers presents :
C:\WINDOWS\IFinst27.exe
C:\WINDOWS\System32\drivers\etc\hosts.msn
C:\Documents and Settings\Administrateur\LOCAL Settings\Temp\AtiCimUn.exe
C:\Documents and Settings\Administrateur\LOCAL Settings\Temp\SSUPDATE.EXE
¤¤¤¤¤¤¤¤¤¤ Clés de registre Presentes :
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer "NoFolderOptions"
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe"
HKCR\CLSID\{9afb8248-617f-460d-9366-d71cdeda3179}
HKLM\Software\Classes\CLSID\{9AFB8248-617F-460D-9366-D71CDEDA3179}
=====================
Verification Rootkits
=====================
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-11-25 13:39:56
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
scanning hidden registry entries ...
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher]
"TracesProcessed"=dword:00000d68
source file error: C:\Documents and Settings\Administrateur\ntuser.dat
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
¤¤¤¤¤¤¤¤¤¤ C:\WINDOWS\Prefetch :
6-11-PRE-R300_XP-2K_DD_CCC_WD-201774E7.pf
ADOBEARM.EXE-1095AC0A.pf
ALG.EXE-0F138680.pf
ATI2EVXX.EXE-19D16EB9.pf
ATICIM.BIN-32882BEE.pf
AVGNT.EXE-200FEF40.pf
AVNOTIFY.EXE-05ED5FD8.pf
AVWSC.EXE-0283F9DD.pf
CCLEANER.EXE-25553E64.pf
CHCFG.EXE-349C526D.pf
CMD.EXE-087B4001.pf
CONTROL.EXE-013DBFB5.pf
CTFMON.EXE-0E17969B.pf
EFF.EXE-2B81C1E0.pf
EXPLORER.EXE-082F38A9.pf
FDM.EXE-1EBA87D2.pf
FIREFOX.EXE-28641590.pf
GOOGLETOOLBARNOTIFIER.EXE-3629C61D.pf
HELPCTR.EXE-3862B6F5.pf
HELPHOST.EXE-247D2792.pf
HELPSVC.EXE-2878DDA2.pf
IEXPLORE.EXE-27122324.pf
IKERNEL.EXE-0F497BD1.pf
INITIALIZE.EXE-2364E771.pf
INTEGRATOR.EXE-1A3ED115.pf
ISSETUP.EXE-34009256.pf
JAVA.EXE-0C263507.pf
JAVARA.EXE-19E9D0DA.pf
JAVAW.EXE-2DC32ABC.pf
JAVAWS.EXE-021AC9A9.pf
JQS.EXE-1D781F77.pf
JQSNOTIFY.EXE-24AE4A36.pf
JRE-6U17-WINDOWS-I586-IFTW-RV-320448FB.pf
JRE-6U17-WINDOWS-I586[1].EXE-1726F94F.pf
JUCHECK.EXE-395165C8.pf
JUSCHED.EXE-25206883.pf
JXPIINSTALL-RV(1).EXE-30C886C7.pf
JXPIINSTALL-RV(2).EXE-284FF8DA.pf
JXPIINSTALL-RV.EXE-3406D65C.pf
layout.ini
LOGON.SCR-151EFAEA.pf
LOGONUI.EXE-0AF22957.pf
MBAM-CLEAN[1].EXE-155E0D06.pf
MBAM-CLEAN[1].EXE-18612C82.pf
MBAM.EXE-1ED0838C.pf
MMC.EXE-39071BCC.pf
MSFEEDSSYNC.EXE-25E13438.pf
MSI14.TMP-2BA8F675.pf
MSI28.TMP-0308EA48.pf
MSI2A.TMP-23A204C7.pf
MSI32.TMP-12F0EC4D.pf
MSI3D.TMP-34A74AA7.pf
MSI44.TMP-09A67A91.pf
MSI4A.TMP-002709D4.pf
MSI51.TMP-028BF15D.pf
MSID.TMP-0C28F144.pf
MSIEXEC.EXE-2F8A8CAE.pf
MSNMSGR.EXE-030AB647.pf
MSXML4-KB973688-FRA.EXE-09B0174A.pf
NOTEPAD.EXE-189578DA.pf
NTOSBOOT-B00DFAAD.pf
OADUMP.EXE-083282BA.pf
OAHLP.EXE-295252E2.pf
OASRV.EXE-2C5CB9E3.pf
QQ.EXE-306166CB.pf
QQMUSIC.EXE-15D1348E.pf
QQPETAGENT.EXE-374B1CB7.pf
QQPETUPDATE.EXE-0F19E52E.pf
QQPYCONFIG.EXE-27FEB812.pf
QQPYLIVEUP.EXE-07B24536.pf
QQPYWIZARD.EXE-049B22E0.pf
QZONEMUSIC.EXE-36D38C5D.pf
REGEDIT.EXE-1B606482.pf
RTHDCPL.EXE-06918CFA.pf
RTLUPD.EXE-0FB215E6.pf
RUNDLL32.EXE-1356E43A.pf
RUNDLL32.EXE-1449EFD1.pf
RUNDLL32.EXE-147710F4.pf
RUNDLL32.EXE-14EC1EE8.pf
RUNDLL32.EXE-1586E753.pf
RUNDLL32.EXE-1655DF58.pf
RUNDLL32.EXE-17E17E8C.pf
RUNDLL32.EXE-18E5A94E.pf
RUNDLL32.EXE-19607BF1.pf
RUNDLL32.EXE-1C980510.pf
RUNDLL32.EXE-20056AF4.pf
RUNDLL32.EXE-2576181F.pf
RUNDLL32.EXE-2586AB1A.pf
RUNDLL32.EXE-285569AC.pf
RUNDLL32.EXE-2855CE4C.pf
RUNDLL32.EXE-29F0DE28.pf
RUNDLL32.EXE-2A0DDD9A.pf
RUNDLL32.EXE-2B8B23D4.pf
RUNDLL32.EXE-2C703AED.pf
RUNDLL32.EXE-2FF556E2.pf
RUNDLL32.EXE-330B8C85.pf
RUNDLL32.EXE-36A962EB.pf
RUNDLL32.EXE-3775BF93.pf
RUNDLL32.EXE-3A47DF99.pf
RUNDLL32.EXE-3D97474F.pf
RUNDLL32.EXE-437C3A1D.pf
RUNDLL32.EXE-470F11BD.pf
RUNDLL32.EXE-49A346FD.pf
RUNDLL32.EXE-4A250B28.pf
RUNDLL32.EXE-4ABAF25B.pf
RUNONCE.EXE-2803F297.pf
SETF9.TMP-34712C89.pf
SETUP.EXE-0D053A52.pf
SETUP.EXE-21989B2A.pf
SETUP.EXE-2B3578E2.pf
SSUPDATE.EXE-0B43BD98.pf
SUPERANTISPYWARE.EXE-04879524.pf
TXOPSHOW.EXE-08823BA3.pf
TXPLATFORM.EXE-278340E4.pf
UNINS000.EXE-09744A01.pf
UNPACK200.EXE-16F2D239.pf
UPDATE.EXE-2577D203.pf
UPDATE.EXE-2670F2A9.pf
UPDATE.EXE-36F2005E.pf
USERINIT.EXE-30B18140.pf
VERCLSID.EXE-3667BD89.pf
WGATRAY.EXE-0ED38BED.pf
WISPTIS.EXE-0C21B942.pf
WLCOMM.EXE-04AE9009.pf
WMIC.EXE-3B772CC6.pf
WMIPRVSE.EXE-28F301A9.pf
WSCNTFY.EXE-1B24F5EB.pf
WUAUCLT.EXE-399A8E72.pf
ZIPPER.EXE-2C9C69B1.pf
_IU14D2N.TMP-065EAFFD.pf
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
Thx to Chiquitine29.....
User : Administrateur (Administrateurs) # LINA-88888888
Update on 25/11/2009 by g3n-h@ckm@n ::::: 13:00
Start at: 13:35:55 | 25/11/2009
Contact : g3n-h@ckm@n sur CCM
Intel(R) Pentium(R) D CPU 2.80GHz
Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
Internet Explorer 8.0.6001.18702
Windows Firewall Status : Enabled
AV : AntiVir Desktop 9.0.1.32 [ Enabled | Updated ]
C:\ -> Disque fixe local | 50,41 Go (37,3 Go free) | NTFS
D:\ -> Disque fixe local | 98,63 Go (93,9 Go free) | NTFS
E:\ -> Disque amovible
F:\ -> Disque amovible
G:\ -> Disque amovible
H:\ -> Disque amovible
I:\ -> Disque CD-ROM
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processus en cours
C:\WINDOWS\System32\smss.exe 412
C:\WINDOWS\system32\csrss.exe 460
C:\WINDOWS\system32\winlogon.exe 484
C:\WINDOWS\system32\services.exe 528
C:\WINDOWS\system32\lsass.exe 540
C:\WINDOWS\system32\svchost.exe 740
C:\WINDOWS\system32\svchost.exe 800
C:\WINDOWS\System32\svchost.exe 840
C:\WINDOWS\system32\svchost.exe 880
C:\WINDOWS\system32\svchost.exe 968
C:\WINDOWS\system32\spoolsv.exe 1036
C:\Program Files\Avira\AntiVir Desktop\sched.exe 1084
C:\WINDOWS\System32\svchost.exe 1276
C:\Program Files\Avira\AntiVir Desktop\avguard.exe 1312
C:\WINDOWS\system32\dllhost.exe 1336
C:\Program Files\Java\jre6\bin\jqs.exe 1412
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe 1460
C:\WINDOWS\Explorer.EXE 1824
C:\WINDOWS\system32\svchost.exe 1992
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe 1224
C:\Program Files\Java\jre6\bin\jusched.exe 912
C:\WINDOWS\RTHDCPL.EXE 1284
D:\SUPERAntiSpyware\antispyware\SUPERAntiSpyware.exe 1744
C:\Program Files\Windows Live\Messenger\msnmsgr.exe 1848
C:\WINDOWS\system32\ctfmon.exe 2028
C:\WINDOWS\System32\alg.exe 2080
C:\Program Files\Free Download Manager\fdm.exe 2544
D:\QQSP5\Bin\QQ.exe 2848
D:\QQSP5\Bin\TXPlatform.exe 2896
D:\QQSP5\Bin\QQ.exe 2984
C:\Program Files\Windows Live\Contacts\wlcomm.exe 3048
C:\Program Files\Mozilla Firefox\firefox.exe 1956
D:\QQPinyin\2.3.614.201\QQPYConfig.exe 980
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Répertoire temporaire 1 pour List_Killem.zip\List_Kill'em.exe 2680
C:\WINDOWS\system32\cmd.exe 3768
C:\WINDOWS\system32\wbem\wmiprvse.exe 1172
C:\Documents and Settings\Administrateur\Local Settings\temp\6D.tmp\pv.exe 380
======================
Cles de demarrage "Run"
======================
! REG.EXE VERSION 3.0
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
SUPERAntiSpyware REG_SZ D:\SUPERAntiSpyware\antispyware\SUPERAntiSpyware.exe
msnmsgr REG_SZ "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
ctfmon.exe REG_SZ C:\WINDOWS\system32\ctfmon.exe
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
avgnt REG_SZ "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
Adobe ARM REG_SZ "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe"
SunJavaUpdateSched REG_SZ "C:\Program Files\Java\jre6\bin\jusched.exe"
Malwarebytes Anti-Malware (reboot) REG_SZ "D:\SUPERAntiSpyware\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
RTHDCPL REG_SZ RTHDCPL.EXE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents
=====================
cles additionnelles
=====================
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System
dontdisplaylastusername REG_DWORD 0x0
legalnoticecaption REG_SZ
legalnoticetext REG_SZ
shutdownwithoutlogon REG_DWORD 0x1
undockwithoutlogon REG_DWORD 0x1
ConsentPromptBehaviorAdmin REG_DWORD 0x2
PromptOnSecureDesktop REG_DWORD 0x1
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\dontdisplaylastusername
===============
===============
BHO :
======
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C920E44A-7F78-4E64-BDD7-A57026E7FEB7}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}
========
Services
========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services]
Ndisuio : 0x3
EapHost : 0x3
SharedAccess : 0x2
wuauserv : 0x2
=========
=========================
Environnement variables :
=========================
ALLUSERSPROFILE=C:\Documents and Settings\All Users
APPDATA=C:\Documents and Settings\Administrateur\Application Data
choix=1
CLIENTNAME=Console
CommonProgramFiles=C:\Program Files\Fichiers communs
COMPUTERNAME=LINA-88888888
ComSpec=C:\WINDOWS\system32\cmd.exe
FP_NO_HOST_CHECK=NO
HOMEDRIVE=C:
HOMEPATH=\Documents and Settings\Administrateur
LOGONSERVER=\\LINA-88888888
NUMBER_OF_PROCESSORS=2
OS=Windows_NT
Path=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 15 Model 4 Stepping 4, GenuineIntel
PROCESSOR_LEVEL=15
PROCESSOR_REVISION=0404
ProgramFiles=C:\Program Files
PROMPT=$P$G
SESSIONNAME=Console
SystemDrive=C:
SystemRoot=C:\WINDOWS
TEMP=C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp
TMP=C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp
USERDOMAIN=LINA-88888888
USERNAME=Administrateur
USERPROFILE=C:\Documents and Settings\Administrateur
windir=C:\WINDOWS
__COMPAT_LAYER=EnableNXShowUI
¤¤¤¤¤¤¤¤¤¤ Fichiers et dossiers presents :
C:\WINDOWS\IFinst27.exe
C:\WINDOWS\System32\drivers\etc\hosts.msn
C:\Documents and Settings\Administrateur\LOCAL Settings\Temp\AtiCimUn.exe
C:\Documents and Settings\Administrateur\LOCAL Settings\Temp\SSUPDATE.EXE
¤¤¤¤¤¤¤¤¤¤ Clés de registre Presentes :
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer "NoFolderOptions"
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe"
HKCR\CLSID\{9afb8248-617f-460d-9366-d71cdeda3179}
HKLM\Software\Classes\CLSID\{9AFB8248-617F-460D-9366-D71CDEDA3179}
=====================
Verification Rootkits
=====================
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-11-25 13:39:56
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
scanning hidden registry entries ...
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher]
"TracesProcessed"=dword:00000d68
source file error: C:\Documents and Settings\Administrateur\ntuser.dat
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
¤¤¤¤¤¤¤¤¤¤ C:\WINDOWS\Prefetch :
6-11-PRE-R300_XP-2K_DD_CCC_WD-201774E7.pf
ADOBEARM.EXE-1095AC0A.pf
ALG.EXE-0F138680.pf
ATI2EVXX.EXE-19D16EB9.pf
ATICIM.BIN-32882BEE.pf
AVGNT.EXE-200FEF40.pf
AVNOTIFY.EXE-05ED5FD8.pf
AVWSC.EXE-0283F9DD.pf
CCLEANER.EXE-25553E64.pf
CHCFG.EXE-349C526D.pf
CMD.EXE-087B4001.pf
CONTROL.EXE-013DBFB5.pf
CTFMON.EXE-0E17969B.pf
EFF.EXE-2B81C1E0.pf
EXPLORER.EXE-082F38A9.pf
FDM.EXE-1EBA87D2.pf
FIREFOX.EXE-28641590.pf
GOOGLETOOLBARNOTIFIER.EXE-3629C61D.pf
HELPCTR.EXE-3862B6F5.pf
HELPHOST.EXE-247D2792.pf
HELPSVC.EXE-2878DDA2.pf
IEXPLORE.EXE-27122324.pf
IKERNEL.EXE-0F497BD1.pf
INITIALIZE.EXE-2364E771.pf
INTEGRATOR.EXE-1A3ED115.pf
ISSETUP.EXE-34009256.pf
JAVA.EXE-0C263507.pf
JAVARA.EXE-19E9D0DA.pf
JAVAW.EXE-2DC32ABC.pf
JAVAWS.EXE-021AC9A9.pf
JQS.EXE-1D781F77.pf
JQSNOTIFY.EXE-24AE4A36.pf
JRE-6U17-WINDOWS-I586-IFTW-RV-320448FB.pf
JRE-6U17-WINDOWS-I586[1].EXE-1726F94F.pf
JUCHECK.EXE-395165C8.pf
JUSCHED.EXE-25206883.pf
JXPIINSTALL-RV(1).EXE-30C886C7.pf
JXPIINSTALL-RV(2).EXE-284FF8DA.pf
JXPIINSTALL-RV.EXE-3406D65C.pf
layout.ini
LOGON.SCR-151EFAEA.pf
LOGONUI.EXE-0AF22957.pf
MBAM-CLEAN[1].EXE-155E0D06.pf
MBAM-CLEAN[1].EXE-18612C82.pf
MBAM.EXE-1ED0838C.pf
MMC.EXE-39071BCC.pf
MSFEEDSSYNC.EXE-25E13438.pf
MSI14.TMP-2BA8F675.pf
MSI28.TMP-0308EA48.pf
MSI2A.TMP-23A204C7.pf
MSI32.TMP-12F0EC4D.pf
MSI3D.TMP-34A74AA7.pf
MSI44.TMP-09A67A91.pf
MSI4A.TMP-002709D4.pf
MSI51.TMP-028BF15D.pf
MSID.TMP-0C28F144.pf
MSIEXEC.EXE-2F8A8CAE.pf
MSNMSGR.EXE-030AB647.pf
MSXML4-KB973688-FRA.EXE-09B0174A.pf
NOTEPAD.EXE-189578DA.pf
NTOSBOOT-B00DFAAD.pf
OADUMP.EXE-083282BA.pf
OAHLP.EXE-295252E2.pf
OASRV.EXE-2C5CB9E3.pf
QQ.EXE-306166CB.pf
QQMUSIC.EXE-15D1348E.pf
QQPETAGENT.EXE-374B1CB7.pf
QQPETUPDATE.EXE-0F19E52E.pf
QQPYCONFIG.EXE-27FEB812.pf
QQPYLIVEUP.EXE-07B24536.pf
QQPYWIZARD.EXE-049B22E0.pf
QZONEMUSIC.EXE-36D38C5D.pf
REGEDIT.EXE-1B606482.pf
RTHDCPL.EXE-06918CFA.pf
RTLUPD.EXE-0FB215E6.pf
RUNDLL32.EXE-1356E43A.pf
RUNDLL32.EXE-1449EFD1.pf
RUNDLL32.EXE-147710F4.pf
RUNDLL32.EXE-14EC1EE8.pf
RUNDLL32.EXE-1586E753.pf
RUNDLL32.EXE-1655DF58.pf
RUNDLL32.EXE-17E17E8C.pf
RUNDLL32.EXE-18E5A94E.pf
RUNDLL32.EXE-19607BF1.pf
RUNDLL32.EXE-1C980510.pf
RUNDLL32.EXE-20056AF4.pf
RUNDLL32.EXE-2576181F.pf
RUNDLL32.EXE-2586AB1A.pf
RUNDLL32.EXE-285569AC.pf
RUNDLL32.EXE-2855CE4C.pf
RUNDLL32.EXE-29F0DE28.pf
RUNDLL32.EXE-2A0DDD9A.pf
RUNDLL32.EXE-2B8B23D4.pf
RUNDLL32.EXE-2C703AED.pf
RUNDLL32.EXE-2FF556E2.pf
RUNDLL32.EXE-330B8C85.pf
RUNDLL32.EXE-36A962EB.pf
RUNDLL32.EXE-3775BF93.pf
RUNDLL32.EXE-3A47DF99.pf
RUNDLL32.EXE-3D97474F.pf
RUNDLL32.EXE-437C3A1D.pf
RUNDLL32.EXE-470F11BD.pf
RUNDLL32.EXE-49A346FD.pf
RUNDLL32.EXE-4A250B28.pf
RUNDLL32.EXE-4ABAF25B.pf
RUNONCE.EXE-2803F297.pf
SETF9.TMP-34712C89.pf
SETUP.EXE-0D053A52.pf
SETUP.EXE-21989B2A.pf
SETUP.EXE-2B3578E2.pf
SSUPDATE.EXE-0B43BD98.pf
SUPERANTISPYWARE.EXE-04879524.pf
TXOPSHOW.EXE-08823BA3.pf
TXPLATFORM.EXE-278340E4.pf
UNINS000.EXE-09744A01.pf
UNPACK200.EXE-16F2D239.pf
UPDATE.EXE-2577D203.pf
UPDATE.EXE-2670F2A9.pf
UPDATE.EXE-36F2005E.pf
USERINIT.EXE-30B18140.pf
VERCLSID.EXE-3667BD89.pf
WGATRAY.EXE-0ED38BED.pf
WISPTIS.EXE-0C21B942.pf
WLCOMM.EXE-04AE9009.pf
WMIC.EXE-3B772CC6.pf
WMIPRVSE.EXE-28F301A9.pf
WSCNTFY.EXE-1B24F5EB.pf
WUAUCLT.EXE-399A8E72.pf
ZIPPER.EXE-2C9C69B1.pf
_IU14D2N.TMP-065EAFFD.pf
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
▶ Relance List&Kill'em comme tu as fait pour l'option 1 (soit en clic droit pour vista),
mais cette fois-ci :
▶ choisis l'option 2 = Mode Destruction
laisse travailler l'outil.
en fin de scan un rapport s'ouvre , ferme-le puis redemarre
▶ colle le contenu dans ta reponse
mais cette fois-ci :
▶ choisis l'option 2 = Mode Destruction
laisse travailler l'outil.
en fin de scan un rapport s'ouvre , ferme-le puis redemarre
▶ colle le contenu dans ta reponse
Kill'em by g3n-h@ckm@n 1.0.5.6
User : Administrateur (Administrateurs) # LINA-88888888
Update on 25/11/2009 by g3n-h@ckm@n ::::: 13:00
Start at: 15:54:10 | 25/11/2009
Contact : g3n-h@ckm@n sur CCM
Intel(R) Pentium(R) D CPU 2.80GHz
Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
Internet Explorer 8.0.6001.18702
Windows Firewall Status : Enabled
AV : AntiVir Desktop 9.0.1.32 [ Enabled | Updated ]
C:\ -> Disque fixe local | 50,41 Go (37,29 Go free) | NTFS
D:\ -> Disque fixe local | 98,63 Go (93,9 Go free) | NTFS
E:\ -> Disque amovible
F:\ -> Disque amovible
G:\ -> Disque amovible
H:\ -> Disque amovible
I:\ -> Disque CD-ROM
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processus en cours
C:\WINDOWS\System32\smss.exe 412
C:\WINDOWS\system32\csrss.exe 460
C:\WINDOWS\system32\winlogon.exe 484
C:\WINDOWS\system32\services.exe 528
C:\WINDOWS\system32\lsass.exe 540
C:\WINDOWS\system32\svchost.exe 740
C:\WINDOWS\system32\svchost.exe 800
C:\WINDOWS\System32\svchost.exe 840
C:\WINDOWS\system32\svchost.exe 880
C:\WINDOWS\system32\svchost.exe 968
C:\WINDOWS\system32\spoolsv.exe 1036
C:\Program Files\Avira\AntiVir Desktop\sched.exe 1084
C:\WINDOWS\System32\svchost.exe 1276
C:\Program Files\Avira\AntiVir Desktop\avguard.exe 1312
C:\WINDOWS\system32\dllhost.exe 1336
C:\Program Files\Java\jre6\bin\jqs.exe 1412
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe 1460
C:\WINDOWS\Explorer.EXE 1824
C:\WINDOWS\system32\svchost.exe 1992
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe 1224
C:\Program Files\Java\jre6\bin\jusched.exe 912
C:\WINDOWS\RTHDCPL.EXE 1284
C:\WINDOWS\system32\ctfmon.exe 2028
C:\WINDOWS\System32\alg.exe 2080
C:\Program Files\Free Download Manager\fdm.exe 2544
D:\QQSP5\Bin\TXPlatform.exe 2896
D:\QQSP5\Bin\QQ.exe 2984
D:\QQPinyin\2.3.614.201\QQPYConfig.exe 980
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Répertoire temporaire 2 pour List_Killem.zip\List_Kill'em.exe 4044
C:\WINDOWS\system32\cmd.exe 1600
C:\WINDOWS\system32\wbem\wmiprvse.exe 3248
C:\Documents and Settings\Administrateur\Local Settings\temp\95.tmp\pv.exe 1768
Fichiers analysés :
=================
¤¤¤¤¤¤¤¤¤¤ Fichiers et dossiers presents :
"C:\WINDOWS\IFinst27.exe"
"C:\WINDOWS\System32\drivers\etc\hosts.msn"
C:\Documents and Settings\Administrateur\LOCAL Settings\Temp\AtiCimUn.exe
C:\Documents and Settings\Administrateur\LOCAL Settings\Temp\SSUPDATE.EXE
¤¤¤¤¤¤¤¤¤¤ Action sur les fichiers :
Quarantaine :
AtiCimUn.exe.Kill'em
hosts.msn.Kill'em
IFinst27.exe.Kill'em
SSUPDATE.EXE.Kill'em
====================
Fichiers hosts nettoyés
====================
¤¤¤¤¤¤¤¤¤¤ C:\WINDOWS\Prefetch
6-11-PRE-R300_XP-2K_DD_CCC_WD-201774E7.pf
JRE-6U17-WINDOWS-I586-IFTW-RV-320448FB.pf
layout.ini
NTOSBOOT-B00DFAAD.pf
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
et maintenant XD j'ai un point d'interrogation sur controleur video (compatible vga
User : Administrateur (Administrateurs) # LINA-88888888
Update on 25/11/2009 by g3n-h@ckm@n ::::: 13:00
Start at: 15:54:10 | 25/11/2009
Contact : g3n-h@ckm@n sur CCM
Intel(R) Pentium(R) D CPU 2.80GHz
Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
Internet Explorer 8.0.6001.18702
Windows Firewall Status : Enabled
AV : AntiVir Desktop 9.0.1.32 [ Enabled | Updated ]
C:\ -> Disque fixe local | 50,41 Go (37,29 Go free) | NTFS
D:\ -> Disque fixe local | 98,63 Go (93,9 Go free) | NTFS
E:\ -> Disque amovible
F:\ -> Disque amovible
G:\ -> Disque amovible
H:\ -> Disque amovible
I:\ -> Disque CD-ROM
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processus en cours
C:\WINDOWS\System32\smss.exe 412
C:\WINDOWS\system32\csrss.exe 460
C:\WINDOWS\system32\winlogon.exe 484
C:\WINDOWS\system32\services.exe 528
C:\WINDOWS\system32\lsass.exe 540
C:\WINDOWS\system32\svchost.exe 740
C:\WINDOWS\system32\svchost.exe 800
C:\WINDOWS\System32\svchost.exe 840
C:\WINDOWS\system32\svchost.exe 880
C:\WINDOWS\system32\svchost.exe 968
C:\WINDOWS\system32\spoolsv.exe 1036
C:\Program Files\Avira\AntiVir Desktop\sched.exe 1084
C:\WINDOWS\System32\svchost.exe 1276
C:\Program Files\Avira\AntiVir Desktop\avguard.exe 1312
C:\WINDOWS\system32\dllhost.exe 1336
C:\Program Files\Java\jre6\bin\jqs.exe 1412
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe 1460
C:\WINDOWS\Explorer.EXE 1824
C:\WINDOWS\system32\svchost.exe 1992
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe 1224
C:\Program Files\Java\jre6\bin\jusched.exe 912
C:\WINDOWS\RTHDCPL.EXE 1284
C:\WINDOWS\system32\ctfmon.exe 2028
C:\WINDOWS\System32\alg.exe 2080
C:\Program Files\Free Download Manager\fdm.exe 2544
D:\QQSP5\Bin\TXPlatform.exe 2896
D:\QQSP5\Bin\QQ.exe 2984
D:\QQPinyin\2.3.614.201\QQPYConfig.exe 980
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Répertoire temporaire 2 pour List_Killem.zip\List_Kill'em.exe 4044
C:\WINDOWS\system32\cmd.exe 1600
C:\WINDOWS\system32\wbem\wmiprvse.exe 3248
C:\Documents and Settings\Administrateur\Local Settings\temp\95.tmp\pv.exe 1768
Fichiers analysés :
=================
¤¤¤¤¤¤¤¤¤¤ Fichiers et dossiers presents :
"C:\WINDOWS\IFinst27.exe"
"C:\WINDOWS\System32\drivers\etc\hosts.msn"
C:\Documents and Settings\Administrateur\LOCAL Settings\Temp\AtiCimUn.exe
C:\Documents and Settings\Administrateur\LOCAL Settings\Temp\SSUPDATE.EXE
¤¤¤¤¤¤¤¤¤¤ Action sur les fichiers :
Quarantaine :
AtiCimUn.exe.Kill'em
hosts.msn.Kill'em
IFinst27.exe.Kill'em
SSUPDATE.EXE.Kill'em
====================
Fichiers hosts nettoyés
====================
¤¤¤¤¤¤¤¤¤¤ C:\WINDOWS\Prefetch
6-11-PRE-R300_XP-2K_DD_CCC_WD-201774E7.pf
JRE-6U17-WINDOWS-I586-IFTW-RV-320448FB.pf
layout.ini
NTOSBOOT-B00DFAAD.pf
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
et maintenant XD j'ai un point d'interrogation sur controleur video (compatible vga
c'est bon j'ai redemarer et pour ecran pk y a ouf of range quand je met sur 1280 1024 pixels et que avant sa fesait pas sa
demarrer la detection , installer l'activeX demandé , et une fois ta configuration affichée , "telecharger les drivers"
tu tomberas sur une page qui te signalera tout pilote non ou mal installé
tu tomberas sur une page qui te signalera tout pilote non ou mal installé