Systemes 32.exe

je suis nul en informatique. au bout de quelque temps mon ordi s arrete en dit va s eteindre ave systeme 32 services.exe
j ai mns et crois que cela vient de cela car ce produit a chaque fois que les enfants y vont. comment faire pour s en debarasser et de plus il y a dans mon panneau de configuration winviruspros 20006 qui ne veutpas partir commment faire ??? svp

merci d avance

12 réponses

Résumé de la discussion

Le fil décrit une infection informatique manifestée par des symptômes liés à des processus système et des modules malveillants, avec la présence récurrente de programmes indésirables comme HijackThis et WinVirusPros. Plusieurs conseils proposent une approche pas à pas comprenant l’utilisation d’outils dédiés en mode normal et en mode sans échec, puis des suppressions ciblées et vérifications via des rapports de scan. Parmi les étapes recommandées figurent l’installation et l’exécution de HijackThis, Spybot Search & Destroy, AVG Anti-Spyware et CCleaner, avec des actions comme « vérifier tout », « corriger », et le redémarrage en mode sans échec. En cas de persistance, il peut être utile de nettoyer les points de restauration et de vérifier les services actifs, car certains composants malveillants s’y dissimulent parfois et réémergent après nettoyage.

Bobot (l’IA à votre service)
  1. Contributeur
    bonsoir lespagnol ,

    fais le pas à pas proposé ici: virus methode preliminaire de desinfection version fr
    et colles, ici, les 3 rapports avec tes conclusions/ commentaires. ((Merci lyonnais92))

    a++
    0
    1. bonjour lance

      j ai resolu mon probleme de systeme 32 mais j'en ai un autre

      as tu une solution

      merci

      quand je ferme une sessionpour une autre , le message suivant appparait : SAS WINDOWS : winlogon.exe
      L4INSTRUCTION A 0x010f41e3 emlpoie l'adresse memoire 0x010f41e3 la memoire ne peut pas etre "read" cliquer sur ok pour terminer le programme ou cliquer sur annuler pour le dabloquer le programme et je clique sur l'u ou l'autre et l'ordi sarrete

      que faire ???
      0
  2. voici le premier
    VG Anti-Spyware - Rapport d'analyse
    ---------------------------------------------------------

    + Créé à: 23:21:10 18/11/2006

    + Résultat de l'analyse:

    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP299\A0668564.dll -> Adware.WinAntiVirus : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP299\A0674738.dll -> Adware.WinAntiVirus : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP300\A0679128.dll -> Adware.WinAntiVirus : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0703966.dll -> Adware.WinAntiVirus : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0714472.dll -> Adware.WinAntiVirus : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0716760.exe -> Adware.WinAntiVirus : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0717904.exe -> Adware.WinAntiVirus : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724180.dll -> Adware.WinAntiVirus : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP305\A0728016.dll -> Adware.WinAntiVirus : Ignoré.
    C:\WINDOWS\system32\SpOrder.dll -> Adware.WinAntiVirus : Ignoré.
    C:\Documents and Settings\lespagnol bruno\Local Settings\Temp\USDR6V_0001_D13M1007\installer.exe -> Adware.WinFixer : Ignoré.
    C:\Documents and Settings\lespagnol bruno\Application Data\errorsafefrenchnewreleaseinstall[1].exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP300\A0690955.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP300\A0692275.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0693603.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0718014.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724189.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724540.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724543.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724671.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724881.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP305\A0729447.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP305\A0729448.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré.
    C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP308\A0743675.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré.
    C:\WINDOWS\Downloaded Program Files\UWA6PV_0001_N91M2107NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré.
    C:\Documents and Settings\lespagnol bruno\Cookies\lespagnol bruno@247realmedia[2].txt -> TrackingCookie.247realmedia : Nettoyé.
    :mozilla.84:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
    :mozilla.85:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
    C:\Documents and Settings\lespagnol bruno\Cookies\lespagnol bruno@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
    C:\Documents and Settings\lespagnol bruno\Cookies\lespagnol bruno@msnservices.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
    :mozilla.23:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Com : Nettoyé.
    C:\Documents and Settings\lespagnol bruno\Cookies\lespagnol bruno@com[1].txt -> TrackingCookie.Com : Nettoyé.
    C:\Documents and Settings\lespagnol bruno\Cookies\lespagnol bruno@estat[1].txt -> TrackingCookie.Estat : Nettoyé.
    :mozilla.15:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé.
    :mozilla.16:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé.
    :mozilla.17:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé.
    :mozilla.18:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé.
    :mozilla.19:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé.
    C:\Documents and Settings\lespagnol bruno\Cookies\lespagnol bruno@as1.falkag[2].txt -> TrackingCookie.Falkag : Nettoyé.
    :mozilla.197:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé.
    :mozilla.218:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé.
    :mozilla.219:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé.
    C:\Documents and Settings\lespagnol bruno\Cookies\lespagnol bruno@overture[1].txt -> TrackingCookie.Overture : Nettoyé.
    C:\Documents and Settings\lespagnol bruno\Cookies\lespagnol bruno@questionmarket[1].txt -> TrackingCookie.Questionmarket : Nettoyé.
    :mozilla.137:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
    :mozilla.138:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
    :mozilla.139:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
    :mozilla.140:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
    :mozilla.141:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
    :mozilla.142:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
    :mozilla.143:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
    :mozilla.144:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
    :mozilla.145:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
    :mozilla.146:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
    :mozilla.147:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
    :mozilla.148:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
    :mozilla.149:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
    :mozilla.150:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
    C:\Documents and Settings\lespagnol bruno\Cookies\lespagnol bruno@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Nettoyé.
    :mozilla.119:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
    :mozilla.120:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
    :mozilla.121:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
    :mozilla.122:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
    :mozilla.123:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
    C:\Documents and Settings\lespagnol bruno\Cookies\lespagnol bruno@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Nettoyé.
    C:\Documents and Settings\lespagnol bruno\Cookies\lespagnol bruno@serving-sys[2].txt -> TrackingCookie.Serving-sys : Nettoyé.
    :mozilla.202:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
    :mozilla.203:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
    :mozilla.204:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
    :mozilla.205:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
    C:\Documents and Settings\lespagnol bruno\Cookies\lespagnol bruno@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Nettoyé.
    :mozilla.183:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
    :mozilla.184:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
    :mozilla.185:C:\Documents and Settings\lespagnol bruno\Application Data\Mozilla\Firefox\Profiles\5oyy8sd2.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
    C:\Documents and Settings\lespagnol bruno\Cookies\lespagnol bruno@weborama[1].txt -> TrackingCookie.Weborama : Nettoyé.
    C:\Documents and Settings\lespagnol bruno\Local Settings\Temp\NI.UWA6PV_0001_N91M2107\setup.exe -> Trojan.Fakealert : Nettoyé et sauvegardé (mise en quarantaine).

    Fin du rapport
    0
    1. Contributeur
      bonjour bubu37,

      ok!
      j'attends les autres.

      bon courage
      0
      1. bonjour voici le 2 envore merci de votre aide
        Scanned File
        Status

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP300\A0690955.exe
        Infected with: Trojan.Downloader.Winfixer.O

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP300\A0690955.exe
        Disinfection failed

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP300\A0690955.exe
        Deleted

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP300\A0692275.exe
        Infected with: Trojan.Downloader.Winfixer.O

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP300\A0692275.exe
        Disinfection failed

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP300\A0692275.exe
        Deleted

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0693603.exe
        Infected with: Trojan.Downloader.Winfixer.O

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0693603.exe
        Disinfection failed

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0693603.exe
        Deleted

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0718014.exe
        Infected with: Trojan.Downloader.Winfixer.O

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0718014.exe
        Disinfection failed

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0718014.exe
        Deleted

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724189.exe
        Infected with: Trojan.Downloader.Winfixer.O

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724189.exe
        Disinfection failed

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724189.exe
        Deleted

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724540.exe
        Infected with: Trojan.Downloader.Winfixer.O

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724540.exe
        Disinfection failed

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724540.exe
        Deleted

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724543.exe
        Infected with: Trojan.Downloader.Winfixer.O

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724543.exe
        Disinfection failed

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724543.exe
        Deleted

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724671.exe
        Infected with: Trojan.Downloader.Winfixer.O

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724671.exe
        Disinfection failed

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724671.exe
        Deleted

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724881.exe
        Infected with: Trojan.Downloader.Winfixer.O

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724881.exe
        Disinfection failed

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP301\A0724881.exe
        Deleted

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP305\A0729447.exe
        Infected with: Trojan.Downloader.Winfixer.O

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP305\A0729447.exe
        Disinfection failed

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP305\A0729447.exe
        Deleted

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP305\A0729448.exe
        Infected with: Trojan.Downloader.Winfixer.O

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP305\A0729448.exe
        Disinfection failed

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP305\A0729448.exe
        Deleted

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP308\A0743675.exe
        Infected with: Trojan.Downloader.Winfixer.O

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP308\A0743675.exe
        Disinfection failed

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP308\A0743675.exe
        Deleted

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP313\A0748329.exe
        Infected with: Trojan.Downloader.Winfixer.O

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP313\A0748329.exe
        Disinfection failed

        C:\System Volume Information\_restore{BFF47CA5-5A04-4EB5-9BD6-A355AD3022B3}\RP313\A0748329.exe
        Deleted

        C:\WINDOWS\Downloaded Program Files\UWA6PV_0001_N91M2107NetInstaller.exe
        Infected with: Trojan.Downloader.Winfixer.O

        C:\WINDOWS\Downloaded Program Files\UWA6PV_0001_N91M2107NetInstaller.exe
        Disinfection failed

        C:\WINDOWS\Downloaded Program Files\UWA6PV_0001_N91M2107NetInstaller.exe
        Deleted
        0
      2. voici ce que je trouve

        mais j ai rein selectionne qu en pense tu
        Scan saved at 12:17:16, on 19/11/2006
        Platform: Windows XP SP2 (WinNT 5.01.2600)
        MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\Ati2evxx.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\System32\svchost.exe
        C:\WINDOWS\system32\spoolsv.exe
        C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
        C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
        C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\system32\Ati2evxx.exe
        C:\WINDOWS\Explorer.EXE
        C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
        C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
        C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
        C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
        C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
        C:\PROGRA~1\Wanadoo\CnxMon.exe
        C:\Program Files\Creative\Shared Files\CamTray.exe
        C:\Program Files\QuickTime\qttask.exe
        C:\Program Files\TomTom HOME\TomTomHOME.exe
        C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
        C:\Program Files\SPAMfighter\SFAgent.exe
        C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
        C:\Program Files\Google\GoogleToolbarNotifier\1.0.720.3640\GoogleToolbarNotifier.exe
        C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe
        C:\PROGRA~1\Wanadoo\ComComp.exe
        C:\PROGRA~1\Wanadoo\Watch.exe
        C:\Program Files\Internet Explorer\iexplore.exe
        C:\DOCUME~1\LESPAG~1\LOCALS~1\Temp\Répertoire temporaire 4 pour hijackthis.zip\HijackThis.exe

        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.orange.fr/portail
        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
        R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
        R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customize/fuji/defaults/su/*https://fr.yahoo.com/?p=us
        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
        R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
        R3 - URLSearchHook: (no name) - - (no file)
        O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
        O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
        O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
        O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
        O2 - BHO: Reactivator - {AC2E8306-D24E-4082-8669-7781499F4E03} - C:\PROGRA~1\EVERYT~1.1\everycom.dll
        O3 - Toolbar: Every Toolbar - {A20A76AD-7A29-4756-87FE-70C334CB40C0} - C:\PROGRA~1\EVERYT~1.1\everycom.dll
        O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
        O4 - HKLM\..\Run: [SoundMAXPnP] "C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe"
        O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
        O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
        O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
        O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
        O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
        O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
        O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\Wanadoo\CnxMon.exe
        O4 - HKLM\..\Run: [Creative WebCam Tray] C:\Program Files\Creative\Shared Files\CamTray.exe
        O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
        O4 - HKLM\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME\TomTomHOME.exe" -s
        O4 - HKLM\..\Run: [kav] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
        O4 - HKLM\..\Run: [SPAMfighter Agent] "C:\Program Files\SPAMfighter\SFAgent.exe" update delay 60
        O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
        O4 - HKCU\..\Run: [fsc-reminder.exe] "C:\WINDOWS\reminder\fsc-reminder.exe" 2453716 14
        O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\1.0.720.3640\GoogleToolbarNotifier.exe"
        O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
        O8 - Extra context menu item: &Every Toolbar Search - res://C:\PROGRA~1\EVERYT~1.1\everycom.dll/GoRSDN.dll.htm
        O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
        O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
        O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
        O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
        O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
        O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
        O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/download/scanner/wlscbase8460.cab
        O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
        O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
        O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
        O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
        O17 - HKLM\System\CCS\Services\Tcpip\..\{CA210A64-19FB-43E0-B020-81A9CF2A40D3}: NameServer = 80.10.246.1 80.10.246.132
        O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
        O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
        O20 - Winlogon Notify: klogon - C:\WINDOWS\system32\klogon.dll
        O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
        O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
        O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
        O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
        O23 - Service: Kaspersky Anti-Virus 6.0 (AVP) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" -r (file missing)
        O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
        0
    2. Contributeur
      re,

      >>> crées un nouveau dossier (clic drt > "nouveau" > "dossier" à la racine de c:\ (là où il y a "Windows", "Program Files"...),
      nommes-le "hijackthis" et copie dedans le fichier "hijackthis.exe" qui se trouve ici:
      C:\DOCUME~1\LESPAG~1\LOCALS~1\Temp\Répertoire temporaire 4 pour hijackthis.zip\HijackThis.exe pour ne pas le perdre pendant les nettoyages.

      >>> note très importante:
      1°) ce qui suit doit être imprimé ou enregistré dans un fichier texte sur le bureau pour utilisation en "mode sans échec (donc forum inaccessible)
      2°) les utilitaires indiqués doivent être téléchargés, installés et mis à jour en "mode normal" avant toute utilisation.
      3°) démarrer en mode sans échec et utiliser les utilitaires dans l'ordre.

      ** télécharges « spybot » si tu ne l’as pas déjà: https://www.01net.com/telecharger/windows/Securite/anti-spyware/fiches/26157.html
      lances le apres install. >
      dans « langue » choisis « fr » (si besoin est)
      dans « mode » choisir « mode avancé »
      clic sur « réglages » (à gauche) >> « modules add. », coches toutes les cases sauf la dernière (traceur...)
      reviens sur l'onglet "spybot-S&D" (à gauche) cliques sur "vérif tout"
      quand c'est fini supprimes tt ce q’il trouve en cliquant sur "corriger..."
      (s'il te propose de redémarrer le pc pour finir le nettoyage acceptes et laisses-le faire, (mais dès que c'est fini redémarres en mode sans echec et continues les étapes)
      utilises la rubrique "aide" si nécssaire

      ** télécharges "AVG Anti-Spyware" (pour WinXP et 2000) si tu ne l’as pas déjà:
      https://www.avg.com/en-ww/free-antivirus-download
      Cliques sur "mise à jour " puis clic sur "Analyse" > "Paramètres" > "Comment réagir"
      dans le menu déroulant choisir "Supprimer"
      à la fin:clic sur "Appliquer toutes les Actions".
      Tuto ici : https://www.malekal.com/tutorial-et-guide-ewido-v4/
      Et ici: https://www.pcparadise.fr ((merci kevlar))

      ** télécharges « CCleaner » si tu ne l’as pas déjà:
      https://www.01net.com/404/
      après l’install. lances-le et
      Clic sur "Options" > "Avancé" et décoches la case "Effacer uniquement ...que 48 heures".
      clic sur « erreurs » (à gauche) coches toutes les cases (sauf la dernière), puis
      clic sur « chercher des erreurs » une fois fini,
      clic sur « réparer les erreurs »
      au message pour sauvegarder la base de registre clic « oui »
      dans la fenêtre qui apparaît clic sur « corriger toutes les erreurs » puis sur « ok »
      recommencer jusqu’a ce qu’il n’y aie plus d’erreurs.
      dans la colonne de gauche clic sur « nettoyeur »puis « analyse ».
      attendre la fin et clic sur « lancer le nettoyage » autant de fois que nécessaire.
      + tard, tu feras une défragmentation de tes partitions
      redémarres en "mode normal".

      3°)si tout fonctionne bien supprimes les anciens points de restauration:
      clic droit sur "poste de travail" > "propriétés" > "restau
      système" > coches la case "désacticer..." > "appl."
      quand c'est près décoches cette même case > "ok"
      > fermes tout et redémarres ton pc.
      relances hijackthis > "scanner > "do a system scan and save a log"
      et postes, ici, ce nouveau rapport avec tes commentaires

      a++
      0
      1. bonjour

        j ai fait tout ce que tu m'as dit mais voila

        l'orid s arrete toujours et a chaque fois que je quitte internet jamais pendant et jamais avant avec le meme message

        de plus winproantivus 2006 est detecté mais impossible de le supprimer il est toujours dans le panneau de config

        merci de ton aide
        0
    3. ecoute j ai fait tut ce que tu m as dit mais voici le resultat
      l'ordi s arrete toujours avec ce message mais il s'arrete souvent a chaque fois que je quitte internet et non pendant ou avant

      de plus winprovirus 2006 est detecté mais reste toujurs dans le panneau de conf impossible a supprimer

      que faire merci d avance
      0
      1. Contributeur
        bonjour bubu37,

        il est où le rapport hijack demandé à la fin de la procédure?
        --
        est-ce que "winprovirus 2006" apparaît dans "ajout &..."?
        si oui désinstalles-le.
        sinon lances "rechercher" sur "wiprovirus" et supprimes ce qui sort et ce rapportant à ce prog.
        (si difficulté en mode normal" essaies en mode sans échec

        a+
        0
        1. bonjur et encore merci

          pour winantivirus pro 2006 dans rechercher il y a ce fichier jusqu'a win antivirus pro13 je mets dans le corbeille et dans le panneau de conf apparait toujurs le 2006 j ai peur de vider la corbeille en faisant une connerie

          pour le rapport je ne comprends rien pour hita merci de me redonner la manip

          mon ordi j arrete toujours mais je pense que c est a chauqe fois que les enfants vont sur mns peut etre je me trompes

          merci pour ton aide

          je suis nul je le sais mais cela m enerve que c est ordi s arrete a chaque fin d internet
          0
      2. Contributeur
        bonjour bubu37,

        ne t'inqiètes pas tant, on ne peut pas tout savoir
        0
        1. encore merci voila la fenetre

          Logfile of HijackThis v1.99.1
          Scan saved at 14:46:30, on 24/11/2006
          Platform: Windows XP SP2 (WinNT 5.01.2600)
          MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

          Running processes:
          C:\WINDOWS\System32\smss.exe

          pour la corbeille tu crois que cela va virer winproantivirus 2006 ?

          j attends pour la suite c est surper sympa
          0
      3. Contributeur
        re,

        il manque beaucoup dans le rapport.
        ouvre le dossier hijackthis qui se trouve dans c:\program files
        et cherches le fichier texte qui s'y trouve,
        ouvres-le et clic sur "édition" > "selectionner tout"
        clic de nouveau sur "édition" > "copier"
        tu viens das ton post (là où tu nous écris, clic droit > "coller"
        et vérifies s'il est entier
        et tu envoies

        a+
        0
        1. ok bien vu

          voici le resultat j attends de tes nouvelles mille fois merci

          Logfile of HijackThis v1.99.1
          Scan saved at 14:58:38, on 24/11/2006
          Platform: Windows XP SP2 (WinNT 5.01.2600)
          MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

          Running processes:
          C:\WINDOWS\System32\smss.exe
          C:\WINDOWS\system32\winlogon.exe
          C:\WINDOWS\system32\services.exe
          C:\WINDOWS\system32\lsass.exe
          C:\WINDOWS\system32\Ati2evxx.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\System32\svchost.exe
          C:\WINDOWS\system32\spoolsv.exe
          C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
          C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
          C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\system32\Ati2evxx.exe
          C:\WINDOWS\Explorer.EXE
          C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
          C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
          C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
          C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
          C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
          C:\PROGRA~1\Wanadoo\CnxMon.exe
          C:\Program Files\Creative\Shared Files\CamTray.exe
          C:\Program Files\QuickTime\qttask.exe
          C:\Program Files\TomTom HOME\TomTomHOME.exe
          C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
          C:\Program Files\SPAMfighter\SFAgent.exe
          C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
          C:\Program Files\Google\GoogleToolbarNotifier\1.0.720.3640\GoogleToolbarNotifier.exe
          C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe
          C:\PROGRA~1\Wanadoo\ComComp.exe
          C:\PROGRA~1\Wanadoo\Watch.exe
          C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE

          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.orange.fr/portail
          R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
          R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
          R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customize/fuji/defaults/su/*https://fr.yahoo.com/?p=us
          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
          R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
          R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
          R3 - URLSearchHook: (no name) - - (no file)
          O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
          O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
          O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
          O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
          O2 - BHO: Reactivator - {AC2E8306-D24E-4082-8669-7781499F4E03} - C:\PROGRA~1\EVERYT~1.1\everycom.dll
          O3 - Toolbar: Every Toolbar - {A20A76AD-7A29-4756-87FE-70C334CB40C0} - C:\PROGRA~1\EVERYT~1.1\everycom.dll
          O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
          O4 - HKLM\..\Run: [SoundMAXPnP] "C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe"
          O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
          O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
          O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
          O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
          O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
          O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
          O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\Wanadoo\CnxMon.exe
          O4 - HKLM\..\Run: [Creative WebCam Tray] C:\Program Files\Creative\Shared Files\CamTray.exe
          O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
          O4 - HKLM\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME\TomTomHOME.exe" -s
          O4 - HKLM\..\Run: [kav] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
          O4 - HKLM\..\Run: [SPAMfighter Agent] "C:\Program Files\SPAMfighter\SFAgent.exe" update delay 60
          O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
          O4 - HKCU\..\Run: [fsc-reminder.exe] "C:\WINDOWS\reminder\fsc-reminder.exe" 2453716 14
          O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\1.0.720.3640\GoogleToolbarNotifier.exe"
          O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
          O8 - Extra context menu item: &Every Toolbar Search - res://C:\PROGRA~1\EVERYT~1.1\everycom.dll/GoRSDN.dll.htm
          O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
          O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
          O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
          O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
          O17 - HKLM\System\CCS\Services\Tcpip\..\{CA210A64-19FB-43E0-B020-81A9CF2A40D3}: NameServer = 80.10.246.130 80.10.246.3
          O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
          O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
          O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
          O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
          O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
          O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
          O23 - Service: Kaspersky Anti-Virus 6.0 (AVP) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" -r (file missing)
          O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
          0
      4. Contributeur
        bonjour bubu37 ,

        1°) démarres en mode sans échec (en tapotant f8 ou f5 après le démarrage de ton pc et chois la ligne avec les flèches du clavier puis presses "entrée")
        2°) vas dans "ajout & suppr des prog" et désinstalles "msn searche"
        et redémarre normalement.
        3°) passes "spybot" et "ccleaner" comme indiqué au post<6>

        a++
        0
        1. avant de faire quoi que soit que penses tu du rapport ?

          de plus pour winprovirus 2006 ?

          tu me dis mode sans echec et choisis la ligne mais quel ligne ?????

          et après que va etre le resultat ???

          Merci lance c est sympa
          0
        2. avant de faire quoi que soit que penses tu du rapport ?

          de plus pour winprovirus 2006 ?

          tu me dis mode sans echec et choisis la ligne mais quel ligne ?????

          et après que va etre le resultat ???

          Merci lance c est sympa
          0
        3. ne m'oublie stp

          merci lance
          0
        4. bonjour lance

          impatient peut etre mais j attends la marche à suivre

          merci de me repondre

          je te souhaite un bon dimanche

          lespagnol dit bubu37
          0
        5. salut lance

          peux toujurs me guider car je n ais rien fait encore et attends de tes nouvelles

          je te remercie d avance de repondre à mes questions
          0
      5. Contributeur
        bonjour bubu37,

        moi-mm, rien
        t'as bien fait de faire le rappel
        qq'1 d'autre qui a la solution te le fera savoir

        bonne chance!
        0
        1. MERCI DE TON AIDE

          J ATTENDS AVEC IMPATIENCE

          MERCI BEAUCOUP
          0
      6. Contributeur
        bonjour bubu37,

        bravo! content pour toi!
        ça serai bien, si tu le veux, d'expliquer comment es-tu arrivé à résoudre ton pb pour aider ceux qui auront le mm cas.
        0
        1. boujour lance

          j ai été guidé par boulplade qui ma donné des conseils regarde dans le forum à bub 37 tu auras certainement la réponse.

          j'espère que cala va marcher encore
          an tout cas je te remercie de fond du coeur
          a+
          0