Vieil ordinateur très très lent......

Résolu
cath9502 Messages postés 43 Statut Membre -  
 Utilisateur anonyme -
Bonjour,
J'ai récupéré un vieil ordi qui est d'une lenteur......... j'aurais voulu tenter de le "nettoyer" pour gagner de la fluidité, sinon je vais m'en débarrasse....(je comptais l'utiliser pour regarder les vidéos replay uniquement - poste PC installé dans mon sous sol donc très peu allumé)
comment m'y prendre ?

29 réponses

  • 1
  • 2
Résumé de la discussion

L'échange porte sur un vieil ordinateur sous Windows XP et Internet Explorer 7, lent et destiné au visionnage de vidéos en replay, et sur les méthodes pour gagner en fluidité. Plusieurs échanges portent sur des outils de nettoyage et de désinfection, comme OTL et DelFix, avec des rapports et des conseils sur la restauration. Pour autant, les résultats varient et certains participants constatent une amélioration, notamment la lecture de vidéos en replay plus rapide après suppression de traces et ajustements système. En cas de besoins complémentaires, l'échange souligne la prudence lors des manipulations et l'importance de tester après chaque étape.

Bobot (l'IA à votre service)
  1. Utilisateur anonyme
     
    Bonjour,

    Télécharge ici: AdwCleaner (de Xplode)

    ▶ Lance-le

    ▶ Clique sur Suppression et patiente le temps du nettoyage.

    ▶ Poste le contenu du rapport que tu trouveras dans ton disque dur c:\ADwcleaner[Sx].txt ou son contenu s'il s'ouvre.

    @+
    0
    1. jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 041
       
      slt je te laisse la main

      j'avais pas vu...

      bonne suite à tous les deux
      0
    2. Utilisateur anonyme
       
      hello

      merci !

      @+
      0
  2. jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 041
     
    slt

    combien de ram? quel processeur ?

    a plus
    0
  3. cath9502 Messages postés 43 Statut Membre
     
    Voilà ce que j'ai eu :

    # AdwCleaner v2.302 - Rapport créé le 08/06/2013 à 11:40:54
    # Mis à jour le 06/06/2013 par Xplode
    # Système d'exploitation : Microsoft Windows XP Service Pack 2 (32 bits)
    # Nom d'utilisateur : clement - LOULOU
    # Mode de démarrage : Normal
    # Exécuté depuis : C:\Documents and Settings\clement\Local Settings\Temporary Internet Files\Content.IE5\P7VHWCQO\adwcleaner[1].exe
    # Option [Suppression]

    ***** [Services] *****

    Arrêté & Supprimé : BrowserProtect

    ***** [Fichiers / Dossiers] *****

    Dossier Supprimé : C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WebMediaPlayer
    Dossier Supprimé : C:\Documents and Settings\LocalService\Application Data\PriceGong
    Dossier Supprimé : C:\Program Files\WebMediaPlayer
    Supprimé au redémarrage : C:\Documents and Settings\All Users\Application Data\BrowserProtect
    Supprimé au redémarrage : C:\Documents and Settings\clement\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pgafcinpmmpklohkojmllohdhomoefph

    ***** [Registre] *****

    Clé Supprimée : HKCU\Software\a2d7dee53eba45
    Clé Supprimée : HKCU\Software\DataMngr
    Clé Supprimée : HKCU\Software\InstallCore
    Clé Supprimée : HKCU\Software\LanConfig
    Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6C97A91E-4524-4019-86AF-2AA2D567BF5C}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\grusskartencenter.com
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\grusskartencenter.com
    Clé Supprimée : HKCU\Software\Softonic
    Clé Supprimée : HKCU\Software\YahooPartnerToolbar
    Clé Supprimée : HKLM\SOFTWARE\a2d7dee53eba45
    Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
    Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{35C1605E-438B-4D64-AAB1-8885F097A9B1}
    Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
    Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
    Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
    Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escort.DLL
    Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
    Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
    Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
    Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
    Clé Supprimée : HKLM\SOFTWARE\Classes\b
    Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
    Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
    Clé Supprimée : HKLM\SOFTWARE\Classes\escort.escortIEPane
    Clé Supprimée : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
    Clé Supprimée : HKLM\SOFTWARE\Classes\Prod.cap
    Clé Supprimée : HKLM\Software\DataMngr
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
    Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
    Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{4B3803EA-5230-4DC3-A7FC-33638F3D3542}]
    Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]

    ***** [Navigateurs] *****

    -\\ Internet Explorer v8.0.6001.18702

    [OK] Le registre ne contient aucune entrée illégitime.

    -\\ Google Chrome v27.0.1453.110

    Fichier : C:\Documents and Settings\clement\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences

    [OK] Le fichier ne contient aucune entrée illégitime.

    *************************

    AdwCleaner[R1].txt - [6663 octets] - [27/10/2012 17:22:38]
    AdwCleaner[S1].txt - [5598 octets] - [27/10/2012 17:23:25]
    AdwCleaner[S2].txt - [6005 octets] - [08/06/2013 11:40:54]

    ########## EOF - C:\AdwCleaner[S2].txt - [6065 octets] ##########
    0
  4. Utilisateur anonyme
     
    Re,

    OK, tu l'as passé 2 fois et il en vire encore. ;)

    Faire un scan OTL pour diagnostiquer les programmes qui tournent et déceler des infections :

    ▶ Télécharge ici :OTL

    ▶ Fais un double clic sur l'icône pour le lancer (clic droit executer en tant qu'administrateur sous Vista, Windows 7 ou Windows 8). Vérifier que toutes les autres fenêtres sont fermées afin qu'il s'exécute sans interruption.

    ▶ Quand la fenêtre apparaît, Coche la case Tous les utilisateurs
    ▶ Coche les cases à coté de Recherche Lop et Recherche Purity.
    Laisse tous les autres paramètres par défaut

    ▶ Copie et colle le contenu de ce qui suit en gras dans la partie inférieure d'OTL "Personnalisation"


    HKCU\Software
    HKLM\Software
    %Homedrive%\*
    %Homedrive%\*.
    %Userprofile%\*
    %Userprofile%\*.
    %Allusersprofile%\*
    %Allusersprofile%\*.
    %LocalAppData%\*
    %LocalAppData%\*.
    %programFiles%\*
    %programFiles%\*.
    %Systemroot%\Temp\*.exe /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\system32\*.exe /lockedfiles
    %systemroot%\system32\*.in*
    %systemroot%\Tasks\*
    %systemroot%\Tasks\*.
    %systemroot%\system32\Tasks\*
    %systemroot%\system32\Tasks\*.
    %systemroot%\system32\drivers\*.sy* /lockedfiles
    %systemroot%\system32\config\*.exe /s
    %Systemroot%\ServiceProfiles\*.exe /s
    %systemroot%\system32\*.sys
    %temp%\*.exe /s
    %ALLUSERSPROFILE%\Application Data\*.exe /s
    %ALLUSERSPROFILE%\Application Data\*.
    %APPDATA%\*.exe /s
    %LocalAppData%\*
    %LocalAppData%\*.
    %SYSTEMDRIVE%\*.*
    /md5start
    explorer.exe
    winlogon.exe
    userinit.exe
    svchost.exe
    services.exe
    winsock.*
    /md5stop
    msconfig
    netsvcs
    BASESERVICES
    safebootminimal
    safebootnetwork
    CREATERESTOREPOINT
    SAVEMBR:0


    ▶ Clic sur Analyse.

    A la fin du scan, 2 Bloc-Notes vont s'ouvrir avec les rapports (OTL.txt et extras.txt).

    NE PAS COPIER/COLLER LE RAPPORT ICI - LIRE JUSQU'AU BOUT

    Ces fichiers se trouvent à côté de l'exécutable OTL.exe

    héberge OTL.txt et extra.txt sur FEC Upload et donne les liens obtenus en échange

    NE PAS COPIER/COLLER LE LIEN DE SUPPRESSION, CONSERVE-LE SI TU DESIRE ENSUITE SUPPRIMER LES RAPPORTS DE LA BASE DE DONNEES FEC

    @+

    0
    1. juju666 Messages postés 35446 Date d'inscription   Statut Contributeur sécurité Dernière intervention   4 796
       
      Non il ne l'a pas passé 2 fois :

      AdwCleaner[S1].txt - [5598 octets] - [27/10/2012 17:23:25]
      AdwCleaner[S2].txt - [6005 octets] - [08/06/2013 11:40:54]

      Noob :p
      0
    2. Utilisateur anonyme
       
      ouais bah à toi il te manque pas ton cerveau alors chut ! ;)
      0
    3. juju666 Messages postés 35446 Date d'inscription   Statut Contributeur sécurité Dernière intervention   4 796
       
      pourquoi le tien était si petit qu'il est sorti par ton oreille droite ? ;o
      0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. cath9502 Messages postés 43 Statut Membre
     
    https://forums-fec.be/upload/www/?a=d&i=0340162147
    https://forums-fec.be/upload/www/?a=d&i=4036539839

    voici les liens obtenus - désolée c'est un peu long mais il rame et j'ai eu du mal à obtenir OTL...et pis je ne suis pas très douée aussi !!!
    0
  7. Utilisateur anonyme
     
    Re

    désinstalle la toolbar bing

    ---

    installe le SP3 de Windows XP : http://www.microsoft.com/fr-fr/download/details.aspx?id=25129

    ---

    ---> Désactivez vos protections (logiciel antivirus etc...)

    ---> Téléchargez USBFix (créé par El Desaparecido) sur votre bureau.

    http://services.service-webmaster.fr/cpt-clics/clics-30453-6505.html

    ---> Branchez toutes vos disques amovibles (clef USB, disque dur externe, etc...) sans les ouvrir !

    ---> Lancez UsbFix et cliquez sur [Suppression]

    ---> A la fin du scan, un rapport s'affichera, postez-le dans votre prochaine réponse sur le forum.

    ---> Le rapport est aussi sauvegardé ici : C:\UsbFix.txt

    0
  8. cath9502 Messages postés 43 Statut Membre
     
    Bon je coince pour désinstaller la tolbar Bing...je pensais aller sur panneau de config et désinstaller...mais je ne la trouve pas !!!
    0
  9. Utilisateur anonyme
     
    pas grave c'est que des restes

    la suite !

    Aider les autres, c'est bien... Mais quand on ne sait pas s'y prendre, on s'abstient!
    0
  10. cath9502 Messages postés 43 Statut Membre
     
    ############################## | UsbFix V 7.127 | [Suppression]

    Utilisateur: clement (Administrateur) # LOULOU
    Mis à jour le 05/06/2013 par El Desaparecido
    Lancé à 18:23:50 | 08/06/2013

    Site Web: https://www.sosvirus.net/
    Upload Malware: http://upload.sosvirus.org/
    Contact: contact@sosvirus.org

    PC: System manufacturer (System Product Name) (X86-based PC)
    CPU: AMD Sempron(tm) Processor 3000+ (1799)
    RAM -> [Total : 255 | Free : 42]
    BIOS: BIOS Date: 02/22/06 16:14:27 Ver: 08.00.10
    BOOT: Normal boot

    OS: Microsoft Windows XP Professionnel (5.1.2600 32-Bit) # Service Pack 2
    WB: Windows Internet Explorer 8.0.6001.18702

    SC: Security Center Service [Enabled]
    WU: Windows Update Service [Enabled]
    FW: Windows FireWall Service [Enabled]

    C:\ (%systemdrive%) -> Disque fixe # 24 Go (17 Go libre(s) - 69%) [] # NTFS
    D:\ -> Disque fixe # 52 Go (47 Go libre(s) - 91%) [] # NTFS
    E:\ -> CD-ROM

    ################## | El Desaparecido Section |

    HKLM\SOFTWARE | Run : [SunJavaUpdateSched] - "C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe"
    HKLM\SOFTWARE | Run : [avast] - "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
    HKLM\SOFTWARE | RunOnce : [] -
    HKU\S-1-5-19\SOFTWARE | Run : [CTFMON.EXE] - C:\WINDOWS\System32\CTFMON.EXE
    HKU\S-1-5-20\SOFTWARE | Run : [CTFMON.EXE] - C:\WINDOWS\System32\CTFMON.EXE
    HKU\S-1-5-21-1957994488-1606980848-839522115-1003\SOFTWARE | Run : [ctfmon.exe] - C:\WINDOWS\system32\ctfmon.exe
    HKU\S-1-5-18\SOFTWARE | Run : [CTFMON.EXE] - C:\WINDOWS\System32\CTFMON.EXE
    HKU\S-1-5-18\SOFTWARE | Run : [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

    ################## | Processus Stoppés |

    Stoppé! C:\WINDOWS\system32\Ati2evxx.exe (1088)
    Stoppé! C:\Program Files\AVAST Software\Avast\AvastSvc.exe (1620)
    Stoppé! C:\WINDOWS\system32\Ati2evxx.exe (1736)
    Stoppé! C:\WINDOWS\Explorer.EXE (1816)
    Stoppé! C:\WINDOWS\system32\spoolsv.exe (320)
    Stoppé! C:\WINDOWS\system32\drivers\CDAC11BA.EXE (456)
    Stoppé! C:\Program Files\Java\jre7\bin\jqs.exe (764)
    Stoppé! C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe (1276)
    Stoppé! C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe (2028)
    Stoppé! C:\Program Files\AVAST Software\Avast\avastUI.exe (2044)
    Stoppé! C:\WINDOWS\system32\ctfmon.exe (200)
    Stoppé! C:\Program Files\Internet Explorer\iexplore.exe (2796)
    Stoppé! C:\Program Files\Internet Explorer\iexplore.exe (3704)
    Stoppé! C:\WINDOWS\system32\wscntfy.exe (540)

    ################## | Éléments infectieux |

    Supprimé! D:\setupSNK.exe
    Supprimé! D:\AUTORUN.INF

    (!) Fichiers temporaires supprimés.

    ################## | Registre |

    ################## | Mountpoints2 |

    Supprimé! HKCU\.\.\.\.\Explorer\MountPoints2\{44d81d52-1ec8-11de-a4e9-0060b3f98fba}
    Supprimé! HKCU\.\.\.\.\Explorer\MountPoints2\{67868b17-1dfa-11de-a4e8-0060b3f98fba}
    Supprimé! HKCU\.\.\.\.\Explorer\MountPoints2\{b6c7f4d1-0acb-11dc-a1d9-806d6172696f}

    ################## | Listing |

    [27/10/2012 - 17:22:45 | C | 6663] C:\AdwCleaner[R1].txt
    [27/10/2012 - 17:23:36 | C | 5598] C:\AdwCleaner[S1].txt
    [08/06/2013 - 11:43:15 | C | 6134] C:\AdwCleaner[S2].txt
    [25/05/2007 - 14:37:44 | C | 0] C:\AUTOEXEC.BAT
    [25/05/2007 - 14:58:07 | C | 212] C:\boot.ini
    [28/08/2001 - 12:00:00 | C | 4952] C:\Bootfont.bin
    [25/05/2007 - 14:37:44 | C | 0] C:\CONFIG.SYS
    [28/04/2009 - 16:42:39 | DC ] C:\divx
    [25/05/2007 - 14:42:22 | DC ] C:\Documents and Settings
    [06/10/2012 - 12:56:29 | C | 12998] C:\error.log
    [25/05/2007 - 14:37:44 | C | 0] C:\IO.SYS
    [25/05/2007 - 14:37:44 | C | 0] C:\MSDOS.SYS
    [25/05/2007 - 14:54:38 | N | 47564] C:\NTDETECT.COM
    [25/05/2007 - 14:54:38 | N | 251712] C:\ntldr
    [08/06/2013 - 15:02:44 | ASH | 402653184] C:\pagefile.sys
    [08/06/2013 - 15:32:41 | C | 512] C:\PhysicalMBR.bin
    [17/12/2012 - 21:29:53 | C | 105] C:\prefs.js
    [08/06/2013 - 11:42:55 | D ] C:\Program Files
    [25/05/2007 - 15:01:44 | SHD ] C:\RECYCLER
    [19/12/2008 - 22:03:55 | C | 268] C:\sqmdata00.sqm
    [20/12/2008 - 18:06:42 | C | 268] C:\sqmdata01.sqm
    [20/12/2008 - 18:54:40 | C | 268] C:\sqmdata02.sqm
    [22/12/2008 - 14:15:57 | C | 268] C:\sqmdata03.sqm
    [20/02/2009 - 19:09:08 | C | 268] C:\sqmdata04.sqm
    [25/02/2009 - 23:03:38 | C | 268] C:\sqmdata05.sqm
    [26/02/2009 - 12:24:30 | C | 268] C:\sqmdata06.sqm
    [27/03/2009 - 11:58:59 | C | 268] C:\sqmdata07.sqm
    [27/03/2009 - 13:55:07 | C | 268] C:\sqmdata08.sqm
    [31/03/2009 - 15:45:05 | C | 268] C:\sqmdata09.sqm
    [31/03/2009 - 16:00:31 | C | 268] C:\sqmdata10.sqm
    [01/04/2009 - 17:23:56 | C | 268] C:\sqmdata11.sqm
    [04/04/2009 - 23:05:41 | C | 268] C:\sqmdata12.sqm
    [06/04/2009 - 18:06:57 | C | 268] C:\sqmdata13.sqm
    [07/04/2009 - 17:53:48 | C | 268] C:\sqmdata14.sqm
    [27/04/2009 - 21:40:02 | C | 268] C:\sqmdata15.sqm
    [01/03/2010 - 22:04:17 | C | 268] C:\sqmdata16.sqm
    [06/12/2008 - 18:51:54 | C | 268] C:\sqmdata17.sqm
    [19/12/2008 - 18:00:40 | C | 268] C:\sqmdata18.sqm
    [19/12/2008 - 18:11:59 | C | 268] C:\sqmdata19.sqm
    [19/12/2008 - 22:03:55 | C | 244] C:\sqmnoopt00.sqm
    [20/12/2008 - 18:06:37 | C | 244] C:\sqmnoopt01.sqm
    [20/12/2008 - 18:54:37 | C | 244] C:\sqmnoopt02.sqm
    [22/12/2008 - 14:15:54 | C | 244] C:\sqmnoopt03.sqm
    [20/02/2009 - 19:09:07 | C | 244] C:\sqmnoopt04.sqm
    [25/02/2009 - 23:03:38 | C | 244] C:\sqmnoopt05.sqm
    [26/02/2009 - 12:24:26 | C | 244] C:\sqmnoopt06.sqm
    [27/03/2009 - 11:58:59 | C | 244] C:\sqmnoopt07.sqm
    [27/03/2009 - 13:55:06 | C | 244] C:\sqmnoopt08.sqm
    [31/03/2009 - 15:45:04 | C | 244] C:\sqmnoopt09.sqm
    [31/03/2009 - 16:00:30 | C | 244] C:\sqmnoopt10.sqm
    [01/04/2009 - 17:23:56 | C | 244] C:\sqmnoopt11.sqm
    [04/04/2009 - 23:05:41 | C | 244] C:\sqmnoopt12.sqm
    [06/04/2009 - 18:06:57 | C | 244] C:\sqmnoopt13.sqm
    [07/04/2009 - 17:53:48 | C | 244] C:\sqmnoopt14.sqm
    [27/04/2009 - 21:40:02 | C | 244] C:\sqmnoopt15.sqm
    [01/03/2010 - 22:04:17 | C | 244] C:\sqmnoopt16.sqm
    [06/12/2008 - 18:51:54 | C | 244] C:\sqmnoopt17.sqm
    [19/12/2008 - 18:00:40 | C | 244] C:\sqmnoopt18.sqm
    [19/12/2008 - 18:11:58 | C | 244] C:\sqmnoopt19.sqm
    [25/05/2007 - 15:04:59 | SHD ] C:\System Volume Information
    [06/04/2009 - 18:06:08 | C | 0] C:\Tech_Vista.log
    [08/06/2013 - 18:28:16 | DC ] C:\UsbFix
    [08/06/2013 - 18:28:44 | AC | 6277] C:\UsbFix [Clean 1] LOULOU.txt
    [08/06/2013 - 11:58:37 | D ] C:\WINDOWS
    [22/08/2008 - 18:33:30 | D ] D:\a52f9cb7280de17401714b7e1056
    [04/10/2007 - 19:48:31 | D ] D:\a55a1774edc72c19a575ac269869
    [19/12/2008 - 17:58:39 | D ] D:\DS MICRO
    [13/10/2008 - 18:11:32 | D ] D:\FILMS ORNELLA(2)
    [31/10/2008 - 13:46:12 | D ] D:\FrostWire
    [31/10/2008 - 13:46:12 | D ] D:\Incomplete
    [16/10/2008 - 18:07:37 | D ] D:\jeu ds en cours
    [16/10/2008 - 18:03:48 | D ] D:\jeux
    [31/10/2008 - 13:46:12 | D ] D:\JEUX ORDI ORNELLA
    [13/10/2008 - 14:35:11 | D ] D:\M3DS simply
    [19/12/2008 - 17:31:50 | D ] D:\mes photos
    [01/11/2008 - 13:53:30 | D ] D:\mise a jour r4
    [25/05/2007 - 15:13:23 | SHD ] D:\RECYCLER
    [31/10/2008 - 13:46:11 | D ] D:\SMRTNTKY
    [31/10/2008 - 13:46:11 | D ] D:\SMRTNTKY(2)
    [12/01/2007 - 17:18:34 | SHD ] D:\System Volume Information

    ################## | Vaccin |

    C:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
    D:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)

    ################## | E.O.F | https://www.sosvirus.net/ |

    Voilà ce que j'ai eu....
    0
  11. Utilisateur anonyme
     
    Re,

    T'as pas assez de ram. 255 MO c'est pas suffisant.

    ---

    évite tout ce qui est glary, tuneup, ça sert à rien ! évite aussi le P2P.

    ---

    Donne moi le contenu de ces dossiers :

    C:\divx

    C:\Documents and Settings\All Users\Application Data\wmp


    pour ceci, fais apparaître les fichiers et dossiers cachés : https://1map.com/fr/astwindscom

    Puis :

    ATTENTION !!! : Script personnalisé pour cette machine uniquement , ne pas reproduire !!

    si tu as XP => double clique
    si tu as Vista ou windows 7 => clic droit "executer en tant que...."


    sur OTL.exe pour le lancer.

    ▶Copie la liste qui se trouve en gras ci-dessous,

    ▶ colle-la dans la zone sous "Personnalisation" :


    :OTL
    MsConfig - StartUpFolder: C:^Documents and Settings^clement^Menu Démarrer^Programmes^Démarrage^BoontyBox 01net.lnk - - File not found
    O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
    O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No CLSID value found.
    O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
    O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No CLSID value found.
    MsConfig - StartUpReg: [b]CTFMON.EXE/b - hkey= - key= - File not found
    MsConfig - StartUpReg: [b]KernelFaultCheck/b - hkey= - key= - File not found
    MsConfig - StartUpReg: [b]MsnMsgr/b - hkey= - key= - File not found
    MsConfig - StartUpReg: [b]SNOOPY/b - hkey= - key= - Reg Error: Value error. File not found
    MsConfig - StartUpReg: [b]swg/b - hkey= - key= - File not found
    [2013/06/08 15:08:18 | 000,001,058 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
    [2013/06/08 15:03:04 | 000,001,054 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
    [2013/06/08 15:03:02 | 000,001,090 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Antivirus Scheduled Scan.job
    [2008/11/12 13:45:05 | 000,000,284 | ---- | M] () -- C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
    [2008/10/23 18:24:00 | 000,000,048 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\.zreglib
    [2012/12/14 09:24:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ad-Aware Antivirus
    [2012/10/27 18:13:10 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Application Data\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
    [2012/12/17 21:12:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\clement\Application Data\Ad-Aware Antivirus
    [2012/10/27 17:56:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\clement\Application Data\TuneUp Software
    [2010/09/22 14:32:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\clement\Application Data\Uniblue
    [2012/11/10 13:53:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\TuneUp Software
    [2013/05/15 14:59:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\clement\Application Data\GlarySoft
    [2012/12/17 21:43:15 | 000,000,000 | ---D | M] -- C:\Program Files\Ad-Aware Antivirus
    [2012/12/17 21:34:31 | 000,000,000 | ---D | M] -- C:\Program Files\Spybot - Search & Destroy
    [2012/12/17 21:29:17 | 000,000,000 | ---D | M] -- C:\Program Files\Spyware Terminator
    [2007/05/25 14:44:25 | 000,000,000 | ---D | M] -- C:\Program Files\ULI5289
    @Alternate Data Stream - 99 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:61E5F0F7
    @Alternate Data Stream - 121 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:5D10517E
    @Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:7C891071
    @Alternate Data Stream - 119 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:E71141D2
    @Alternate Data Stream - 119 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:A757EE0B
    @Alternate Data Stream - 119 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:2C15EF07
    @Alternate Data Stream - 115 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DD874E14
    @Alternate Data Stream - 109 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:10B7A752
    @Alternate Data Stream - 108 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:F65733F1
    @Alternate Data Stream - 105 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:1D6686D8
    @Alternate Data Stream - 103 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:F79CBFC4
    @Alternate Data Stream - 101 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:96F344DB
    @Alternate Data Stream - 100 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:9B52F176

    :Reg
    HKEY_CURRENT_USER\Software\fcn]
    HKEY_CURRENT_USER\Software\WebMediaPlayer]
    [HKEY_CURRENT_USER\Software\TuneUp]
    [HKEY_LOCAL_MACHINE\Software\GlarySoft]
    [HKEY_LOCAL_MACHINE\Software\S3R521]
    [HKEY_LOCAL_MACHINE\Software\TuneUp]
    [HKEY_LOCAL_MACHINE\Software\WebMediaPlayer]
    [HKEY_LOCAL_MACHINE\Software\Uniblue]

    :Commands
    [emptytemp]
    [resethosts]


    ▶ Clique sur "Correction" pour lancer la suppression.

    ▶ Poste le rapport qui logiquement s'ouvrira tout seul en fin de travail apres le redemarrage.

    @+
    0
  12. cath9502 Messages postés 43 Statut Membre
     
    c divx contenu :
    - <statistics>
    - <distribution frametype="I">
    <encoded quantizer="1" count="191" />
    <encoded quantizer="2" count="2513" />
    <encoded quantizer="3" count="2141" />
    <encoded quantizer="4" count="262" />
    <encoded quantizer="5" count="7" />
    <encoded quantizer="6" count="0" />
    <encoded quantizer="7" count="0" />
    <encoded quantizer="8" count="0" />
    <encoded quantizer="9" count="0" />
    <encoded quantizer="10" count="0" />
    <encoded quantizer="11" count="0" />
    <encoded quantizer="12" count="0" />
    <encoded quantizer="13" count="0" />
    <encoded quantizer="14" count="0" />
    <encoded quantizer="15" count="0" />
    <encoded quantizer="16" count="0" />
    <encoded quantizer="17" count="0" />
    <encoded quantizer="18" count="0" />
    <encoded quantizer="19" count="0" />
    <encoded quantizer="20" count="0" />
    <encoded quantizer="21" count="0" />
    <encoded quantizer="22" count="0" />
    <encoded quantizer="23" count="0" />
    <encoded quantizer="24" count="0" />
    <encoded quantizer="25" count="0" />
    <encoded quantizer="26" count="0" />
    <encoded quantizer="27" count="0" />
    <encoded quantizer="28" count="0" />
    <encoded quantizer="29" count="0" />
    <encoded quantizer="30" count="0" />
    <encoded quantizer="31" count="0" />
    <dropped count="0" />
    </distribution>
    - <distribution frametype="P">
    <encoded quantizer="1" count="4539" />
    <encoded quantizer="2" count="96919" />
    <encoded quantizer="3" count="16914" />
    <encoded quantizer="4" count="31" />
    <encoded quantizer="5" count="0" />
    <encoded quantizer="6" count="0" />
    <encoded quantizer="7" count="0" />
    <encoded quantizer="8" count="0" />
    <encoded quantizer="9" count="0" />
    <encoded quantizer="10" count="0" />
    <encoded quantizer="11" count="0" />
    <encoded quantizer="12" count="0" />
    <encoded quantizer="13" count="0" />
    <encoded quantizer="14" count="0" />
    <encoded quantizer="15" count="0" />
    <encoded quantizer="16" count="0" />
    <encoded quantizer="17" count="0" />
    <encoded quantizer="18" count="0" />
    <encoded quantizer="19" count="0" />
    <encoded quantizer="20" count="0" />
    <encoded quantizer="21" count="0" />
    <encoded quantizer="22" count="0" />
    <encoded quantizer="23" count="0" />
    <encoded quantizer="24" count="0" />
    <encoded quantizer="25" count="0" />
    <encoded quantizer="26" count="0" />
    <encoded quantizer="27" count="0" />
    <encoded quantizer="28" count="0" />
    <encoded quantizer="29" count="0" />
    <encoded quantizer="30" count="0" />
    <encoded quantizer="31" count="0" />
    <dropped count="0" />
    </distribution>
    - <distribution frametype="B">
    <encoded quantizer="1" count="1541" />
    <encoded quantizer="2" count="55444" />
    <encoded quantizer="3" count="8730" />
    <encoded quantizer="4" count="0" />
    <encoded quantizer="5" count="0" />
    <encoded quantizer="6" count="0" />
    <encoded quantizer="7" count="0" />
    <encoded quantizer="8" count="0" />
    <encoded quantizer="9" count="0" />
    <encoded quantizer="10" count="0" />
    <encoded quantizer="11" count="0" />
    <encoded quantizer="12" count="0" />
    <encoded quantizer="13" count="0" />
    <encoded quantizer="14" count="0" />
    <encoded quantizer="15" count="0" />
    <encoded quantizer="16" count="0" />
    <encoded quantizer="17" count="0" />
    <encoded quantizer="18" count="0" />
    <encoded quantizer="19" count="0" />
    <encoded quantizer="20" count="0" />
    <encoded quantizer="21" count="0" />
    <encoded quantizer="22" count="0" />
    <encoded quantizer="23" count="0" />
    <encoded quantizer="24" count="0" />
    <encoded quantizer="25" count="0" />
    <encoded quantizer="26" count="0" />
    <encoded quantizer="27" count="0" />
    <encoded quantizer="28" count="0" />
    <encoded quantizer="29" count="0" />
    <encoded quantizer="30" count="0" />
    <encoded quantizer="31" count="0" />
    <dropped count="0" />
    </distribution>
    </statistics>
    0
  13. cath9502 Messages postés 43 Statut Membre
     
    deuxieme fichier c divx
    - <statistics>
    - <distribution frametype="I">
    <encoded quantizer="1" count="0" />
    <encoded quantizer="2" count="2948" />
    <encoded quantizer="3" count="1452" />
    <encoded quantizer="4" count="589" />
    <encoded quantizer="5" count="100" />
    <encoded quantizer="6" count="25" />
    <encoded quantizer="7" count="0" />
    <encoded quantizer="8" count="0" />
    <encoded quantizer="9" count="0" />
    <encoded quantizer="10" count="0" />
    <encoded quantizer="11" count="0" />
    <encoded quantizer="12" count="0" />
    <encoded quantizer="13" count="0" />
    <encoded quantizer="14" count="0" />
    <encoded quantizer="15" count="0" />
    <encoded quantizer="16" count="0" />
    <encoded quantizer="17" count="0" />
    <encoded quantizer="18" count="0" />
    <encoded quantizer="19" count="0" />
    <encoded quantizer="20" count="0" />
    <encoded quantizer="21" count="0" />
    <encoded quantizer="22" count="0" />
    <encoded quantizer="23" count="0" />
    <encoded quantizer="24" count="0" />
    <encoded quantizer="25" count="0" />
    <encoded quantizer="26" count="0" />
    <encoded quantizer="27" count="0" />
    <encoded quantizer="28" count="0" />
    <encoded quantizer="29" count="0" />
    <encoded quantizer="30" count="0" />
    <encoded quantizer="31" count="0" />
    <dropped count="0" />
    </distribution>
    - <distribution frametype="P">
    <encoded quantizer="1" count="0" />
    <encoded quantizer="2" count="61631" />
    <encoded quantizer="3" count="47136" />
    <encoded quantizer="4" count="7855" />
    <encoded quantizer="5" count="1743" />
    <encoded quantizer="6" count="27" />
    <encoded quantizer="7" count="8" />
    <encoded quantizer="8" count="3" />
    <encoded quantizer="9" count="0" />
    <encoded quantizer="10" count="0" />
    <encoded quantizer="11" count="0" />
    <encoded quantizer="12" count="0" />
    <encoded quantizer="13" count="0" />
    <encoded quantizer="14" count="0" />
    <encoded quantizer="15" count="0" />
    <encoded quantizer="16" count="0" />
    <encoded quantizer="17" count="0" />
    <encoded quantizer="18" count="0" />
    <encoded quantizer="19" count="0" />
    <encoded quantizer="20" count="0" />
    <encoded quantizer="21" count="0" />
    <encoded quantizer="22" count="0" />
    <encoded quantizer="23" count="0" />
    <encoded quantizer="24" count="0" />
    <encoded quantizer="25" count="0" />
    <encoded quantizer="26" count="0" />
    <encoded quantizer="27" count="0" />
    <encoded quantizer="28" count="0" />
    <encoded quantizer="29" count="0" />
    <encoded quantizer="30" count="0" />
    <encoded quantizer="31" count="0" />
    <dropped count="0" />
    </distribution>
    - <distribution frametype="B">
    <encoded quantizer="1" count="0" />
    <encoded quantizer="2" count="36475" />
    <encoded quantizer="3" count="25413" />
    <encoded quantizer="4" count="3379" />
    <encoded quantizer="5" count="447" />
    <encoded quantizer="6" count="1" />
    <encoded quantizer="7" count="0" />
    <encoded quantizer="8" count="0" />
    <encoded quantizer="9" count="0" />
    <encoded quantizer="10" count="0" />
    <encoded quantizer="11" count="0" />
    <encoded quantizer="12" count="0" />
    <encoded quantizer="13" count="0" />
    <encoded quantizer="14" count="0" />
    <encoded quantizer="15" count="0" />
    <encoded quantizer="16" count="0" />
    <encoded quantizer="17" count="0" />
    <encoded quantizer="18" count="0" />
    <encoded quantizer="19" count="0" />
    <encoded quantizer="20" count="0" />
    <encoded quantizer="21" count="0" />
    <encoded quantizer="22" count="0" />
    <encoded quantizer="23" count="0" />
    <encoded quantizer="24" count="0" />
    <encoded quantizer="25" count="0" />
    <encoded quantizer="26" count="0" />
    <encoded quantizer="27" count="0" />
    <encoded quantizer="28" count="0" />
    <encoded quantizer="29" count="0" />
    <encoded quantizer="30" count="0" />
    <encoded quantizer="31" count="0" />
    <dropped count="0" />
    </distribution>
    </statistics>:
    0
  14. cath9502 Messages postés 43 Statut Membre
     
    application data dossier wmp j'ai aucun fichier ....
    0
  15. Utilisateur anonyme
     
    Re

    donc le dossier wmp est vide ? Ok.

    Pour dvix, c'est ok.
    0
  16. cath9502 Messages postés 43 Statut Membre
     
    bon j'ai un souci avec le scan OTL, c'est bloqué , resté sur une page blanche de rapport et vu le temps que l'ordi met...pour ce soir j'abandonne . J'essaierai de le rallumer demain (en espérant que ce soit possible..) et je te tiens informé.
    Merci en attendant de ton aide. Bonne soirée.
    0
  17. Utilisateur anonyme
     
    pas de problème, bonne soirée
    0
  18. cath9502 Messages postés 43 Statut Membre
     
    Bonjour,
    bon j'ai fais un autre scann. OTL et pas de rapport à la fin, quand je suis redescendue voir l'ordi j'avais ma page Windows, j'ai cherché dans mes doc, sur le bureau : rien.
    Je tente un autre scan. mais là il est bloqué depuis 30 mm sur processing registry data HKEY_CURRENT_USER\software\fcn}...

    ????
    que faire ????
    Mais pour le moment vue l'heure bon appétit !!!
    0
  19. Utilisateur anonyme
     
    Bonjour !

    essayons sans cette ligne !

    :OTL
    MsConfig - StartUpFolder: C:^Documents and Settings^clement^Menu Démarrer^Programmes^Démarrage^BoontyBox 01net.lnk - - File not found
    O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
    O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No CLSID value found.
    O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
    O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No CLSID value found.
    MsConfig - StartUpReg: [b]CTFMON.EXE/b - hkey= - key= - File not found
    MsConfig - StartUpReg: [b]KernelFaultCheck/b - hkey= - key= - File not found
    MsConfig - StartUpReg: [b]MsnMsgr/b - hkey= - key= - File not found
    MsConfig - StartUpReg: [b]SNOOPY/b - hkey= - key= - Reg Error: Value error. File not found
    MsConfig - StartUpReg: [b]swg/b - hkey= - key= - File not found
    [2013/06/08 15:08:18 | 000,001,058 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
    [2013/06/08 15:03:04 | 000,001,054 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
    [2013/06/08 15:03:02 | 000,001,090 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Antivirus Scheduled Scan.job
    [2008/11/12 13:45:05 | 000,000,284 | ---- | M] () -- C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
    [2008/10/23 18:24:00 | 000,000,048 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\.zreglib
    [2012/12/14 09:24:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ad-Aware Antivirus
    [2012/10/27 18:13:10 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Application Data\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
    [2012/12/17 21:12:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\clement\Application Data\Ad-Aware Antivirus
    [2012/10/27 17:56:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\clement\Application Data\TuneUp Software
    [2010/09/22 14:32:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\clement\Application Data\Uniblue
    [2012/11/10 13:53:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\TuneUp Software
    [2013/05/15 14:59:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\clement\Application Data\GlarySoft
    [2012/12/17 21:43:15 | 000,000,000 | ---D | M] -- C:\Program Files\Ad-Aware Antivirus
    [2012/12/17 21:34:31 | 000,000,000 | ---D | M] -- C:\Program Files\Spybot - Search & Destroy
    [2012/12/17 21:29:17 | 000,000,000 | ---D | M] -- C:\Program Files\Spyware Terminator
    [2007/05/25 14:44:25 | 000,000,000 | ---D | M] -- C:\Program Files\ULI5289
    @Alternate Data Stream - 99 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:61E5F0F7
    @Alternate Data Stream - 121 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:5D10517E
    @Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:7C891071
    @Alternate Data Stream - 119 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:E71141D2
    @Alternate Data Stream - 119 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:A757EE0B
    @Alternate Data Stream - 119 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:2C15EF07
    @Alternate Data Stream - 115 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DD874E14
    @Alternate Data Stream - 109 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:10B7A752
    @Alternate Data Stream - 108 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:F65733F1
    @Alternate Data Stream - 105 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:1D6686D8
    @Alternate Data Stream - 103 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:F79CBFC4
    @Alternate Data Stream - 101 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:96F344DB
    @Alternate Data Stream - 100 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:9B52F176

    :Reg
    HKEY_CURRENT_USER\Software\WebMediaPlayer]
    [HKEY_CURRENT_USER\Software\TuneUp]
    [HKEY_LOCAL_MACHINE\Software\GlarySoft]
    [HKEY_LOCAL_MACHINE\Software\S3R521]
    [HKEY_LOCAL_MACHINE\Software\TuneUp]
    [HKEY_LOCAL_MACHINE\Software\WebMediaPlayer]
    [HKEY_LOCAL_MACHINE\Software\Uniblue]

    :Commands
    [emptytemp]
    [resethosts]

    0
  20. cath9502 Messages postés 43 Statut Membre
     
    il me joue la même avec media player ... il bloque....
    0
  21. cath9502 Messages postés 43 Statut Membre
     
    c'est la gué guerre avec juju666 ???

    pour ma part après avoir tenté le :Reg..... il ne veut rien faire, il bloque et ne se passe rien....
    0
  • 1
  • 2