Virus fichier msn

blet80 -  
 blet80 -
bjr, j ai un souçi , je n arrive plus a ouvrir mes messages sur msn...j ai pratiquement tout essayer , desinstaller msn , avast , antivirus msn.... remit avast , msn, et antivirus msn...aprés analyse du premier avast : 1 fichier detecté....mit en quarantaine et ensuite une analyse de mon msn... ça s arrete et me marque : FICHIER EXCEPTION EXTERNE C0000006 (6076) C:\program files\Installshield\...\-AE9E-A56A2A92E549setup.exe.... je ne sait plus quoi faire aidez moi...merci
A voir également:

62 réponses

marino41
 
Bonsoir, j'arrive peut-être un petit peu tard, mais j'ai eu le même soucis. J'ai suivi des conseils d'un autre forum : enlever hosts.msn . Et depuis, impeccable
0
blet80
 
salut marino41, merci de m eclairer ,mais ce fichier HOSTS.MSN , il se trouve ou ? je ne l ai pas trouvé , aide moi . a bientot . cdt
0
blet80
 
salut dédétraqué , j ai telecharger : http://www.geekstogo.com/forum/files/file/398-otl-oldtimers-list-it/
et ça me marque : OTL cannot be run from a tempory folder!!! please download et to your desktop or other suitable location .............. quel truc de dingue....lol...merci encore
0
blet80
 
et sinon je ne trouve pas de dossier a ce nom : C:\program files\installshied
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
dédétraqué Messages postés 4522 Statut Contributeur sécurité 286
 
Salut blet80


OTL cannot be run from a tempory folder
Tu n'as pas télécharger sur le bureau, mais dans un dossier temporaire.

Télécharge le de nouveau


@++ :)
0
blet80
 
OTL Extras logfile created on: 03/04/2010 12:38:41 - Run 1
OTL by OldTimer - Version 3.1.37.3 Folder = C:\Users\magali\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0SBLQLE0
Windows Vista Home Basic Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18904)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy

2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 52,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 73,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 219,88 Gb Total Space | 165,78 Gb Free Space | 75,40% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: PC-DE-MAGALI
Current User Name: magali
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-1387491191-4130723623-2553399250-1000\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

[color=#E56717]========== Shell Spawning ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[color=#E56717]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{01CBA320-8150-44DB-B4FE-BADC3B54A526}" = lport=137 | protocol=17 | dir=in | app=system |
"{152A77DA-7622-437A-86FF-6C23A671FF36}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{15A246D2-59BA-4AD8-82FE-44554DCF3D39}" = rport=138 | protocol=17 | dir=out | app=system |
"{17A0F3F5-8EED-4519-9621-0291CAEDB700}" = lport=2869 | protocol=6 | dir=in | app=system |
"{1CD07EC1-71FB-4652-84D7-C10D36D7F535}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{32317827-11EC-4028-BD7B-0298030DD2E7}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{4D808437-020D-4934-B4FE-C4349DC9C3D4}" = lport=3587 | protocol=6 | dir=in | svc=p2psvc | app=%systemroot%\system32\svchost.exe |
"{4F019005-7B4A-465D-AC2F-C76A84918F23}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\p2phost.exe |
"{593BC363-2320-43E6-A188-92B95536E653}" = lport=5722 | protocol=6 | dir=in | svc=dfsr | app=%systemroot%\system32\dfsr.exe |
"{5A8B4D12-9285-45AB-BD1F-57D11E702642}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{5DEA05CF-24B4-456F-ABA3-41F08C94C4EB}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\p2phost.exe |
"{66ECE672-6EF6-4132-814B-801A8BE9BE31}" = lport=445 | protocol=6 | dir=in | app=system |
"{6ABC4C17-1AF6-43A9-94D5-0458E26A6B16}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{6BE0076C-D581-4155-BC41-CFD34B82B8CC}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{70AC888C-D4FC-4DD4-BB12-5F4775206385}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{7565265E-C69B-4075-A221-4ED935B98B39}" = rport=139 | protocol=6 | dir=out | app=system |
"{75E40BD7-59FD-4579-89C3-4555C174FDA0}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{7743884E-F9C0-4879-A20A-57259B2BA5A6}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{77E7ED18-2D40-4506-BC7E-595B7E77F666}" = rport=445 | protocol=6 | dir=out | app=system |
"{7B052172-59D2-40E7-A6C9-C90570C21769}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\p2phost.exe |
"{865B8767-A175-4517-87EB-FA2D047D9D5B}" = rport=3587 | protocol=6 | dir=out | svc=p2psvc | app=%systemroot%\system32\svchost.exe |
"{9186FF36-8591-4799-8E5E-228915B54275}" = lport=3540 | protocol=17 | dir=in | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe |
"{95C1CBD6-E114-4C1F-934C-809A817AE8D8}" = lport=139 | protocol=6 | dir=in | app=system |
"{A4FD8142-466A-4378-92AA-B822D764B138}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{A7D3F67A-1FAB-451A-98F5-70A656062F57}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{AB27892E-D8AD-49AA-A88B-94C83FFA55BC}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{AD63579B-5BC9-48F5-9955-5AF0A65FCDEB}" = lport=3587 | protocol=6 | dir=in | svc=p2psvc | app=%systemroot%\system32\svchost.exe |
"{AF5862C0-D9B4-4CB1-848B-32170E1F72B5}" = lport=5722 | protocol=6 | dir=in | svc=dfsr | app=%systemroot%\system32\dfsr.exe |
"{B303F515-94BC-4BD7-86A6-7F80127ECA8E}" = rport=5722 | protocol=6 | dir=out | svc=dfsr | app=%systemroot%\system32\dfsr.exe |
"{B739F976-229F-4AD7-80C9-47F75CDB04BD}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{BE4E668E-1FCA-4E6B-8EC5-50C3CCA41482}" = rport=137 | protocol=17 | dir=out | app=system |
"{C02251B3-3FB6-40D6-A9C4-EF47800C00D0}" = rport=3587 | protocol=6 | dir=out | svc=p2psvc | app=%systemroot%\system32\svchost.exe |
"{DAFE0619-7808-4E63-8AD0-0C524DB2EADC}" = lport=138 | protocol=17 | dir=in | app=system |
"{E1780078-F967-42EA-B195-A12887D14E43}" = rport=5722 | protocol=6 | dir=out | svc=dfsr | app=%systemroot%\system32\dfsr.exe |
"{E2A94E5D-0C73-49B6-9A4B-2978C518CE0F}" = rport=3540 | protocol=17 | dir=out | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe |
"{E44A49E8-8E02-42E5-A08D-75A13DA0881B}" = rport=3540 | protocol=17 | dir=out | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe |
"{F3E58D15-09F7-4560-81E1-CC9FD82AD2DF}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\p2phost.exe |
"{F90F1B4D-54FD-43E9-A80D-5D4C4EB34171}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{FB94B961-2B9E-471C-8BD1-58E6A6387276}" = lport=3540 | protocol=17 | dir=in | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe |
"{FE81184B-6ECD-465E-A710-AF2BCBEA6063}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{12C42DE3-FFC7-4280-B82D-FC9C837F58AC}" = dir=in | app=c:\program files\windows live\messenger\wlcsdk.exe |
"{14B2EDFC-9084-4CEA-9310-35030F9C011E}" = protocol=6 | dir=out | app=%systemroot%\system32\p2phost.exe |
"{1B826AE0-EDC4-4EF9-8942-DDEF6B7DBD2F}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{31E5E608-50B3-4B25-89FA-554D15A548EE}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{3F7C5FB1-40AE-4402-BDB0-D0FB1FE92294}" = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe |
"{41F72320-9655-4680-8D47-251A86243F37}" = protocol=6 | dir=in | app=%systemroot%\system32\p2phost.exe |
"{4697688E-3357-49E4-87D7-487578FF169A}" = protocol=6 | dir=in | app=c:\program files\msn messenger\msnmsgr.exe |
"{4C4FFB5A-8D7E-48AC-9761-92531B6E1AEB}" = protocol=6 | dir=in | app=%programfiles%\windows collaboration\wincollab.exe |
"{53AACFA0-5CA3-4989-990F-8E8304EC32FE}" = protocol=6 | dir=in | app=%systemroot%\system32\p2phost.exe |
"{5569A99A-5825-40AF-B399-3F11C585DBA0}" = protocol=6 | dir=out | app=%systemroot%\system32\p2phost.exe |
"{59544445-E343-4B68-A7B3-F38AD3330335}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{60B30D71-CE28-43AC-B3C0-949BA3FE1C8F}" = protocol=17 | dir=out | app=%programfiles%\windows collaboration\wincollab.exe |
"{66EC0F85-1DAD-4DA7-9846-89AB90D747AE}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{803A2C31-2505-4FE9-8BE9-6DB2A6723ACF}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{81C41287-600F-45FD-A4C6-625E49709D2C}" = protocol=6 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\backupsvc.exe |
"{8A11A9E7-7545-4B8D-8126-DFC1C1AA632C}" = protocol=17 | dir=in | app=%programfiles%\windows collaboration\wincollab.exe |
"{8B6DBEAA-7ED4-4750-A814-3039E4ED3DA0}" = protocol=17 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\schedulersvc.exe |
"{8D74446B-CC87-481F-9A51-DB375B553056}" = protocol=17 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\backupsvc.exe |
"{9557FCDA-C3DE-4A7A-9F19-C8D07813D598}" = protocol=6 | dir=in | app=c:\program files\msn messenger\msnmsgr.exe |
"{9E5B3B2A-215E-49E3-9CC2-8E43170E5909}" = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe |
"{A03824AE-EB68-4DDB-9A02-166C9BA99C97}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{A12FEF91-D47C-4B0F-B1DB-E3DBC48BBF8D}" = protocol=6 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\schedulersvc.exe |
"{A873B73B-3E0D-4654-A891-23A50FEAAD67}" = protocol=6 | dir=in | app=%programfiles%\windows collaboration\wincollab.exe |
"{A8CAB816-2374-4432-99D3-0182805BBE26}" = protocol=17 | dir=in | app=%programfiles%\windows collaboration\wincollab.exe |
"{ABE56F48-684D-4FBB-8F6D-C3933DCAC8D2}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{B2733B72-F842-4B0C-A0B3-D5CD2F1DF699}" = protocol=6 | dir=out | app=%programfiles%\windows collaboration\wincollab.exe |
"{BC146F45-B765-402E-89AA-1890FA0EB800}" = protocol=17 | dir=in | app=c:\program files\msn messenger\msnmsgr.exe |
"{BC428C9F-2BDE-4EB3-9CA4-40FE2D501527}" = protocol=17 | dir=in | app=c:\program files\msn messenger\msnmsgr.exe |
"{CE2A7D36-0B58-4798-8A6F-D9AEF52098CE}" = protocol=17 | dir=out | app=%programfiles%\windows collaboration\wincollab.exe |
"{DD39B125-4C93-4161-A047-02080A806A23}" = protocol=6 | dir=out | app=%programfiles%\windows collaboration\wincollab.exe |
"{ED069826-DF13-4C49-88DA-D7B816CD82F6}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"TCP Query User{3CB6D808-DF55-4942-8191-9B7CD793D7F2}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"UDP Query User{BF0162FE-F256-49FA-80E1-2A6E3D3344ED}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0214A441-A4AB-43A8-8DEF-2F73C5364673}" = Microsoft Works
"{06A8FE5C-D836-FF51-0523-A2A625AAF6F8}" = ccc-core-static
"{08C30E6C-9E7C-19F8-923F-29881AC96968}" = Catalyst Control Center Graphics Light
"{0E24362B-2091-79D5-1BF5-B2D6ABF7FB5D}" = CCC Help English
"{1192E4DD-2A20-73BC-64B8-55A0DEB7F7DF}" = Catalyst Control Center Localization Greek
"{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now Standard
"{1601F21D-245A-6CF1-E463-D531FA5E8DE3}" = Catalyst Control Center Localization Chinese Standard
"{173FF673-515B-F94A-1ED0-9710512095D5}" = Catalyst Control Center Localization Turkish
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{20471B27-D702-4FE8-8DEC-0702CC8C0A85}" = InterVideo WinDVD 8
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Outil de téléchargement Windows Live
"{2075CB0A-D26F-4DAA-B424-5079296B43BA}" = Windows Live FolderShare
"{2244A1E7-C525-5D5C-064A-18BDF00E9E7D}" = Catalyst Control Center Localization Dutch
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8
"{26C85DDE-38FA-8D58-5110-19B00F46FABB}" = Catalyst Control Center Localization Thai
"{295C8DC2-953E-3C4C-BA8E-E0B12CB70587}" = ATI Catalyst Install Manager
"{2B463FAA-B1F6-B8DD-74FC-789F1855B26A}" = Catalyst Control Center Localization Chinese Traditional
"{2EAF7E61-068E-11DF-953C-005056806466}" = Google Earth
"{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
"{3246B736-3993-EAC8-4349-0B89E278B94F}" = CCC Help French
"{374A2986-A483-94E9-281A-BB6262CF51B6}" = Catalyst Control Center Localization French
"{3DB0448D-AD82-4923-B305-D001E521A964}" = eMachines Power Management
"{3E31821C-7917-367E-938E-E65FC413EA31}" = Microsoft .NET Framework 3.5 Language Pack SP1 - fra
"{3E7D43D6-8596-8F83-8A23-BDD2D347DC53}" = Catalyst Control Center Localization Korean
"{4634B21A-CC07-4396-890C-2B8168661FEA}" = Windows Live Writer
"{46ABBC54-1872-4AA3-95E2-F2C063A63F31}" = Installation Windows Live
"{477461BB-6439-E292-1A63-D2E75A0C988A}" = Catalyst Control Center Localization Danish
"{480C2AF6-928F-8D8F-890B-60F423B24958}" = Catalyst Control Center Graphics Full New
"{4BB7B60B-5BFE-E9BD-23A5-A59BEAC9CC9A}" = Catalyst Control Center Localization Norwegian
"{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}" = Microsoft Search Enhancement Pack
"{5285AB31-5B13-11B0-30AA-8989371C3187}" = CCC Help Czech
"{53B20C18-D8D4-4588-8737-9BBFE303C354}" = Windows Live Movie Maker
"{5DD76286-9BE7-4894-A990-E905E91AC818}" = Windows Live Mail
"{616185CB-4F3F-B469-E820-F39C18812134}" = Catalyst Control Center Localization German
"{6B958F51-EFCD-B548-A387-D70C91FDD743}" = Catalyst Control Center Localization Finnish
"{6C6C16FB-C009-85C4-1DE0-16A5259E82B2}" = ccc-utility
"{6D5ACB46-C2D4-A72A-9576-D890EB6601F8}" = Catalyst Control Center Localization Hungarian
"{6E434AAA-24B3-8550-5EAB-4D7BF4AC5563}" = Catalyst Control Center InstallProxy
"{6FD64B29-3743-4B9B-2A8E-09058D6D4084}" = CCC Help Swedish
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{72FBCECF-1D9B-80EE-BDA9-6A1AE7BA1B67}" = Catalyst Control Center Localization Russian
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{770F1BEC-2871-4E70-B837-FB8525FFA3B1}" = Windows Live Messenger
"{7EC5E32C-AC18-E228-BBA2-D326D462129D}" = CCC Help Korean
"{7F6DCE52-E736-259E-66EE-993B037A2110}" = CCC Help Hungarian
"{7F811A54-5A09-4579-90E1-C93498E230D9}" = eMachines Recovery Management
"{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}" = Windows Live Call
"{83C5B0BD-FD82-BC9F-1AB1-97861D0FC285}" = CCC Help German
"{88731AD7-51B3-F878-F485-0D8FCBC55C23}" = Catalyst Control Center Localization Italian
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A74E887-8F0F-4017-AF53-CBA42211AAA5}" = Microsoft Sync Framework Runtime Native v1.0 (x86)
"{8C63F89D-8F38-26FB-9B38-BCC35EBCDEB6}" = CCC Help Greek
"{95120000-00AF-040C-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (French)
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{955B0760-04FF-90B6-FB9C-689A2DAB5E0F}" = Catalyst Control Center Localization Polish
"{9FB7069F-53BB-CC75-ED87-2D0FC706BE3C}" = Catalyst Control Center Localization Japanese
"{A2351C4F-AB5C-7CE7-B902-A17AE3ABCD75}" = CCC Help Danish
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A77255C4-AFCB-44A3-BF0F-2091A71FFD9E}" = Video Web Camera
"{A77B00B0-3D6B-85AB-D0F3-BD54C7327A22}" = CCC Help Japanese
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AA66BC5E-2D8F-0281-848F-50BBBB9AC0EE}" = CCC Help Finnish
"{AAC6B463-EFFB-1C27-7191-BE816018D61E}" = Skins
"{AC76BA86-7AD7-1036-7B44-A93000000001}" = Adobe Reader 9.3 - Français
"{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9
"{AD3735F6-99ED-07CE-369D-C8CFA60E1B69}" = Catalyst Control Center Localization Spanish
"{AE9A833A-4AFD-28A8-0D34-73CC4A49F7BA}" = Catalyst Control Center Localization Czech
"{B0B7B105-66E1-4C64-770D-6DAE8D7EBCDC}" = Catalyst Control Center Graphics Previews Vista
"{B11F6E12-2EBE-666A-1A46-B844B01E1C17}" = CCC Help Chinese Standard
"{B131E59D-202C-43C6-84C9-68F0C37541F1}" = Galerie de photos Windows Live
"{B1E58B81-B607-65B5-6F95-7839E996C7EA}" = Catalyst Control Center Graphics Full Existing
"{B547E931-7B8D-A6FA-153D-07BAA8A2362F}" = CCC Help Chinese Traditional
"{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86)
"{BE6BAF22-649B-F0B6-A293-95FD4BBC2AD8}" = CCC Help Spanish
"{BF1E7FE0-CBF1-95DD-7D1B-78B95E7169E5}" = CCC Help Thai
"{C0A1B7C2-8BA5-DF18-04BE-FBC7D51DA52E}" = Catalyst Control Center Localization Swedish
"{C3EB6CE4-02C1-3D6C-35BF-E680A6A2F699}" = CCC Help Dutch
"{CA4EE5B1-5158-87F5-FBD8-2FAB51DBC731}" = CCC Help Italian
"{CCFB344A-638B-4EA6-3561-642F50E21384}" = CCC Help Portuguese
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D5D81435-B8DE-4CAF-867F-7998F2B92CFC}" = Windows Live Contrôle parental
"{DC24971E-1946-445D-8A82-CE685433FA7D}" = Realtek USB 2.0 Card Reader
"{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}" = Assistant de connexion Windows Live
"{E0248296-8F9F-B422-2E81-88E9A8C5235C}" = CCC Help Russian
"{E1CE24C9-FC4F-D497-A222-A40EA93F4FDA}" = CCC Help Turkish
"{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update
"{E601DDC5-7374-4BAC-5ECA-625459D910C0}" = Catalyst Control Center Core Implementation
"{EC154C5D-3295-F336-4E11-BA91705B1E8A}" = CCC Help Norwegian
"{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F174496B-5C47-92F1-C074-8369443D2433}" = CCC Help Polish
"{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}" = 32 Bit HP CIO Components Installer
"{F7D27C70-90F5-49B9-B188-0A133C0CE353}" = Windows Live Toolbar
"{FE0646A7-19D0-41B4-A2BB-2C35D644270D}" = Windows Live OneCare safety scanner
"{FF960B70-DEF5-E739-A8FB-65E60509851B}" = Catalyst Control Center Localization Portuguese
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"avast5" = avast! Free Antivirus
"CCleaner" = CCleaner
"Clean Virus MSN_is1" = Clean Virus MSN
"eMachines Screensaver" = eMachines ScreenSaver
"Google Desktop" = Google Desktop
"InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now 5
"InstallShield_{20471B27-D702-4FE8-8DEC-0702CC8C0A85}" = InterVideo WinDVD 8
"InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8
"LManager" = Launch Manager
"Microsoft .NET Framework 3.5 Language Pack SP1 - fra" = Module linguistique Microsoft .NET Framework 3.5 SP1- fra
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"Windows Live OneCare safety scanner" = Windows Live OneCare safety scanner
"WinLiveSuite_Wave3" = Installation Windows Live

[color=#E56717]========== Last 10 Event Log Errors ==========[/color]

[ Application Events ]
Error - 21/03/2010 05:45:02 | Computer Name = PC-de-magali | Source = WinMgmt | ID = 10
Description =

Error - 21/03/2010 10:14:41 | Computer Name = PC-de-magali | Source = WinMgmt | ID = 10
Description =

Error - 21/03/2010 19:45:04 | Computer Name = PC-de-magali | Source = WinMgmt | ID = 10
Description =

Error - 22/03/2010 02:41:16 | Computer Name = PC-de-magali | Source = WinMgmt | ID = 10
Description =

Error - 22/03/2010 02:48:59 | Computer Name = PC-de-magali | Source = WinMgmt | ID = 10
Description =

Error - 22/03/2010 09:03:53 | Computer Name = PC-de-magali | Source = WinMgmt | ID = 10
Description =

Error - 22/03/2010 17:46:42 | Computer Name = PC-de-magali | Source = Application Hang | ID = 1002
Description = Le programme iexplore.exe version 8.0.6001.18882 a cessé d'interagir
avec Windows et a été fermé. Pour déterminer si des informations supplémentaires
sont disponibles, consultez l'historique du problème dans l'application Rapports
et solutions aux problèmes du Panneau de configuration. ID de processus : 17b8 Heure
de début : 01caca08b29039d0 Heure de fin : 0

Error - 22/03/2010 17:50:00 | Computer Name = PC-de-magali | Source = WinMgmt | ID = 10
Description =

Error - 23/03/2010 03:20:29 | Computer Name = PC-de-magali | Source = WinMgmt | ID = 10
Description =

Error - 23/03/2010 08:26:19 | Computer Name = PC-de-magali | Source = RasClient | ID = 20227
Description =

[ System Events ]
Error - 02/04/2010 02:14:34 | Computer Name = PC-de-magali | Source = disk | ID = 262151
Description = Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux.

Error - 02/04/2010 02:14:42 | Computer Name = PC-de-magali | Source = disk | ID = 262151
Description = Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux.

Error - 02/04/2010 02:14:51 | Computer Name = PC-de-magali | Source = disk | ID = 262151
Description = Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux.

Error - 02/04/2010 02:14:59 | Computer Name = PC-de-magali | Source = disk | ID = 262151
Description = Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux.

Error - 02/04/2010 02:15:07 | Computer Name = PC-de-magali | Source = disk | ID = 262151
Description = Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux.

Error - 02/04/2010 02:15:15 | Computer Name = PC-de-magali | Source = disk | ID = 262151
Description = Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux.

Error - 02/04/2010 02:15:23 | Computer Name = PC-de-magali | Source = disk | ID = 262151
Description = Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux.

Error - 02/04/2010 07:51:35 | Computer Name = PC-de-magali | Source = bowser | ID = 8003
Description =

Error - 02/04/2010 08:03:22 | Computer Name = PC-de-magali | Source = BROWSER | ID = 8032
Description =

Error - 03/04/2010 04:17:29 | Computer Name = PC-de-magali | Source = Service Control Manager | ID = 7000
Description =


< End of report >
0
blet80
 
bjr dédétraqué j ai encore un rapport a poster...mais ça beugue...sinon j ai une personne qui m a ecrit sur le forum qu il fallait enlever le dossier "HOSTS.MSN" , mais je ne l ai pas trouvé . merci de m eclairer . cdt
0
dédétraqué Messages postés 4522 Statut Contributeur sécurité 286
 
Salut blet80


Utilise cjoint.com pour poster en lien tes rapports :
https://www.cjoint.com/

- Clique sur Parcourir pour aller chercher le rapport
- Clique sur Ouvrir ensuite sur Créer le lien Cjoint

- Fais un copier/coller du lien qui est devant Le lien a été créé: dans ta prochaine réponse.

Il devrais ce trouver dans ce dossier:
C:\WINDOWS\system32\drivers\etc


@++ :)
0
blet80
 
bsr , ok, je suis entrain de chercher aprés le fichier ..dur dur , a bientot merci
0
blet80
 
re, quand je tape : C:\WINDOWS\system32\drivers\etc aprés parcourir en haut pour trouver le fichier et plusieurs dossiers apparaissent qui sont : HOSTS - IMHOSTS.SAM - NETWORKS - PROTOCOL - SERVICES ....mais que choisir ??? c est un peu compliqué pour mes notions d informatique...LOL...mais on va y arriver. merci dédétraqué
0
dédétraqué Messages postés 4522 Statut Contributeur sécurité 286
 
Salut blet80


Si tu ne le voie pas, alors il n'est présent.

Poste le rapport OTL.txt en utilisant cjoint


@++ :)
0
blet80
 
re bsr , desolé mais ça ne fonctionne pas....c est noté JOINDRE UN FICHIER, UNE IMAGE, UNE PHOTO mais je peut pas faire un copier collé du rapport OTL.TXT et dans parcourir , je ne le trouve pas.... et sinon je l envoie a quelle adresse e-mail? ou joindre une URL ??? desolé mais je comprend plus rien....merci d etre patient . a bientot
0
dédétraqué Messages postés 4522 Statut Contributeur sécurité 286
 
Salut blet80


OK je viens de voir :
OTL by OldTimer - Version 3.1.37.3 Folder = C:\Users\magali\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0SBLQLE0


Encore dans un dossier temporaire, il faut télécharger sur le bureau.


@++ :)
0
blet80
 
bjr , avez vous eu le rapport OTL.txt ??? j ai reussi a l envoyer....ouf...en esperant votre reception. merci et a bientot
0
dédétraqué Messages postés 4522 Statut Contributeur sécurité 286
 
Salut blet80


Non j'ai pas le rapport


@++ :)
0
blet80
 
bjr , ah bon !!! pourtant il est bien parti a l adresse : https://forums.commentcamarche.net/forum/affich-17082511-virus-fichier-msn . c est bien ça ??? que dois je faire ? merci et a bientot dédétraqué
0
blet80
 
bonjour , j attend vos instructions pour la suite svp ; a bientot cdt
0
dédétraqué Messages postés 4522 Statut Contributeur sécurité 286
 
Salut blet80


Télécharge OTL (de OldTimer) et enregistre-le sur ton Bureau. (c'est ici que tu bloques, faut télécharger sur le bureau)
http://www.geekstogo.com/forum/files/file/398-otl-oldtimers-list-it/

- Quitte les applications en cours afin de ne pas interrompre le scan.
- Faire un clique droit sur OTL.exe présent sur le bureau et choisir exécuter en tant qu'administrateur pour lancer le programme
- Une fenêtre apparaît. Dans la section Output en haut de cette fenêtre, coche "Minimal Output". Fais de même avec "Scan All Users".
- Coche également les cases à côté de "LOP Check" et "Purity Check".
- Dans la zone Extra List, coche "Use Safelist".

Ne modifie pas les autres paramètres!

- Clique sur le bouton Run Scan.
- Une fois l'analyse terminée, deux fenêtres vont s'ouvrir dans le Bloc-notes : OTL.txt et Extras.txt. Ils se trouvent au même endroit que OTListIT2 (donc par défaut sur le Bureau).

Utilise cjoint.com pour poster en lien tes rapports :
https://www.cjoint.com/

- Clique sur Parcourir pour aller chercher le rapport
- Clique sur Ouvrir ensuite sur Créer le lien Cjoint

- Fais un copier/coller du lien qui est devant Le lien a été créé: dans ta prochaine réponse.


@++ :)
0