Analyse rapport hijack

Bonjour,

Je poste sur ce forum, espérant cette fois avoir des réponses, c'est un peu frustrant de demander de l'aide, de voir que tout le monde a des réponses, et que moi, on me supprime mon post sans raison ???!

Cela fait 2/3 fois que je viens sur ce forum, et j'y trouve l'accueil glacial, disons que ce n'est qu'un ressenti. Bref c'est dit.

Je réécris donc le détail des mes problèmes espérant être lue par quelqu'un de sympa !

J'ai un échec systématique lors de l'installation d'une mise jour de sécurité via windows update.
J'ai des diffucultés à faire des scans en ligne (ex onecare, redirection systématique sur la page d'installation, j'installe, cela paraît ok mais dès que je clique sur "lancer", je reviens "installer".
Avaast ne trouve rien, si ce n'est un message d'erreur comme quoi il ne peut scanner le secteur boot record, et l'anti virus en ligne de secuser n'arrive pas à aboutir lors du transfert de fichier.

J'ai vu aussi le processus csrss.exe
J'ai déjà reformaté le disque dur, rien à faire, toujours pareil.

Pouvez vous regarder le rapport hijack et me dire ce que vous en pensez ?
Merci d'avance
Samia

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:33:43, on 08/02/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16575)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Windows\System32\hphmon06.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Windows Live\Contrôle parental\fssui.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\HP\digital imaging\bin\hpqgalry.exe
C:\Program Files\Trend Micro\HiJackThis.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Windows Live\Mail\wlmail.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Windows Live OneCare Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Contrôle parental\fssbho.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb11.exe
O4 - HKLM\..\Run: [HPHmon06] C:\WINDOWS\system32\hphmon06.exe
O4 - HKLM\..\Run: [HPHUPD06] C:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Contrôle parental\fssui.exe" -autorun
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Global Startup: Démarrage rapide du logiciel HP Image Zone.lnk = C:\Program Files\HP\digital imaging\bin\hpqthb08.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\digital imaging\bin\hpqtra08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\Windows\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\Windows\Network Diagnostic\xpnetdiag.exe
O13 - Gopher Prefix:
O15 - Trusted Zone: http://*.secuser.com
O16 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} (Windows Live OneCare safety scanner control) - http://cdn.scan.onecare.live.com/resource/download/scanner/fr-fr/wlscctrl2.cab
O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - https://www.nvidia.com/content/DriverDownload/srl/2.0.0.1/sysreqlab2.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.5.0) - http://javadl-esd.sun.com/update/1.5.0/jinstall-1_5_0_03-windows-i586.cab
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://www.adobe.com/products/acrobat/nos/gp.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: TYCBPGNJNE - Sysinternals - www.sysinternals.com - C:\Users\Samia\AppData\Local\Temp\TYCBPGNJNE.exe

--
End of file - 7365 bytes
Configuration: Windows Vista
Internet Explorer 7.0

7 réponses

  1. Contributeur sécurité
    slt
    pas grand chose dans hijackhtis

    relance hijakchtis et fix ces lignes (fix cheked)

    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE

    _______________

    met a jour java: DEMARRER puis panneau de configuration puis JAVA

    puis mise a jour

    __________________

    AVG antispyware

    https://www.01net.com/

    Tuto :
    http://www.kachouri.com/tuto/tuto-161-avg-anti-spyware-75-pour-votre-securite.html

    ->Relance AVG AS -> "Analyse" ->"Paramètres"

    Sous la question "Comment réagir ?" :

    -> clique sur "Actions recommandées" et choisis "Quarantaines"
    -> Re-clique sur l'onglet "Analyse" puis réalise une "Analyse complète du système"

    Si un fichier est infecté en fin d'analyse

    ->Clique sur "Appliquer toutes les actions "

    ->Clique sur "Enregistrer le rapport" puis sur "Enregistrer le rapport sous".

    ->Enregistre ce fichier texte sur ton bureau ensuite colle le rapport ici

    ______________________

    colle le rapport d'un scan en ligne
    avec un des suivants:

    bitdefender en ligne :
    http://www.bitdefender.fr/scan_fr/scan8/ie.html

    Panda en ligne :
    http://pandasoftware.fr

    secuser en ligne :
    http://www.secuser.com/outils/antivirus.htm

    ou

    remplace avast par antivir et colle un rapport

    https://www.malekal.com/avira-free-security-antivirus-gratuit/ (merci Malekal)
    0
    1. Hello,

      Merci pour ton aide !! :-)

      Pour le moment c'est plutôt la galère.

      La mise à jour Java ne se fait pas, en erreur.

      J'ai fait une analyse AGV AS, tout juste le temps de voir 70 fichiers infectés (tracingcookies) et mon système a planté.

      J'ai enfin réussi à lancer le sacn de panda (après désinstal d'avaast)

      Ci dessous le rapport.
      ;***********************************************************************************************************************************************************************************
      ANALYSIS: 2008-02-08 17:41:32
      PROTECTIONS: 1
      MALWARE: 12
      SUSPECTS: 0
      ;***********************************************************************************************************************************************************************************
      PROTECTIONS
      Description Version Active Updated
      ;===================================================================================================================================================================================
      Windows Defender 1.1.3204.0 No Yes
      ;===================================================================================================================================================================================
      MALWARE
      Id Description Type Active Severity Disinfectable Disinfected Location
      ;===================================================================================================================================================================================
      00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@doubleclick[1].txt
      00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@atdmt[1].txt
      00145405 Cookie/RealMedia TrackingCookie No 0 Yes No C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@247realmedia[1].txt
      00167642 Cookie/Com.com TrackingCookie No 0 Yes No C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@com[1].txt
      00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@xiti[1].txt
      00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@weborama[2].txt
      00168109 Cookie/Adtech TrackingCookie No 0 Yes No C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@adtech[1].txt
      00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@advertising[1].txt
      00169287 Cookie/Adrevolver TrackingCookie No 0 Yes No C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@media.adrevolver[1].txt
      00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@statse.webtrendslive[2].txt
      00173520 Cookie/Bluestreak TrackingCookie No 0 Yes No C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@bluestreak[2].txt
      00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@smartadserver[2].txt
      ;===================================================================================================================================================================================
      SUSPECTS
      Location
      ;===================================================================================================================================================================================
      ;===================================================================================================================================================================================

      Ce qui est très bizarre c'est qu'il me dit que Defender est désactivé, or il réagit normalement ?
      Du coup je ne vois pas bien comment l'activer.

      L'installation d'antivi est en cours, je te colles le rapport dès que je l'ai

      Encore merci !!
      Samia :-)
      0
      1. Voici le rapport antivir, et AVG
        Non, aucun nouveau logiciel, ni matériel. j'ai même réinstallé windows en supprimant la partition et en reformant le disque dur, mais je me retoruve toujours avec le même problème avec windows update.

        Je vais faire CCLEANER.

        AntiVir PersonalEdition Classic
        Report file date: vendredi 8 février 2008 18:22

        Scanning for 1096761 virus strains and unwanted programs.

        Licensed to: Avira AntiVir PersonalEdition Classic
        Serial number: 0000149996-ADJIE-0001
        Platform: Windows Vista
        Windows version: (plain) [6.0.6000]
        Username: SYSTEM
        Computer name: TARGA

        Version information:
        BUILD.DAT : 270 15603 Bytes 19/09/2007 13:32:00
        AVSCAN.EXE : 7.0.6.1 290856 Bytes 23/08/2007 13:16:29
        AVSCAN.DLL : 7.0.6.0 49192 Bytes 16/08/2007 12:23:51
        LUKE.DLL : 7.0.5.3 147496 Bytes 14/08/2007 15:32:47
        LUKERES.DLL : 7.0.6.1 10280 Bytes 21/08/2007 12:35:20
        ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 14:27:15
        ANTIVIR1.VDF : 7.0.1.95 3367424 Bytes 14/12/2007 17:20:57
        ANTIVIR2.VDF : 7.0.2.113 1673728 Bytes 08/02/2008 17:20:57
        ANTIVIR3.VDF : 7.0.2.114 2048 Bytes 08/02/2008 17:20:57
        AVEWIN32.DLL : 7.6.0.62 3240448 Bytes 08/02/2008 17:20:57
        AVWINLL.DLL : 1.0.0.7 14376 Bytes 26/02/2007 10:36:26
        AVPREF.DLL : 7.0.2.2 25640 Bytes 18/07/2007 07:39:17
        AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 13:16:24
        AVPACK32.DLL : 7.6.0.3 360488 Bytes 08/02/2008 17:20:57
        AVREG.DLL : 7.0.1.6 30760 Bytes 18/07/2007 07:17:06
        AVARKT.DLL : 1.0.0.20 278568 Bytes 28/08/2007 12:26:33
        AVEVTLOG.DLL : 7.0.0.20 86056 Bytes 18/07/2007 07:10:18
        NETNT.DLL : 7.0.0.0 7720 Bytes 08/03/2007 11:09:42
        RCIMAGE.DLL : 7.0.1.30 2342952 Bytes 07/08/2007 12:38:13
        RCTEXT.DLL : 7.0.62.0 86056 Bytes 21/08/2007 12:50:37
        SQLITE3.DLL : 3.3.17.1 339968 Bytes 23/07/2007 09:37:21

        Configuration settings for the scan:
        Jobname..........................: Complete system scan
        Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
        Logging..........................: low
        Primary action...................: interactive
        Secondary action.................: ignore
        Scan master boot sector..........: off
        Scan boot sector.................: on
        Boot sectors.....................: C:,
        Scan memory......................: on
        Process scan.....................: on
        Scan registry....................: on
        Search for rootkits..............: off
        Scan all files...................: Intelligent file selection
        Scan archives....................: on
        Recursion depth..................: 20
        Smart extensions.................: on
        Macro heuristic..................: on
        File heuristic...................: medium

        Start of the scan: vendredi 8 février 2008 18:22

        The scan of running processes will be started
        Scan process 'avscan.exe' - '1' Module(s) have been scanned
        Scan process 'WmiPrvSE.exe' - '1' Module(s) have been scanned
        Scan process 'TrustedInstaller.exe' - '1' Module(s) have been scanned
        Scan process 'dllhost.exe' - '1' Module(s) have been scanned
        Scan process 'rundll32.exe' - '1' Module(s) have been scanned
        Scan process 'avcenter.exe' - '1' Module(s) have been scanned
        Scan process 'sched.exe' - '1' Module(s) have been scanned
        Scan process 'avgnt.exe' - '1' Module(s) have been scanned
        Scan process 'avguard.exe' - '1' Module(s) have been scanned
        Scan process 'FlashUtil9e.exe' - '1' Module(s) have been scanned
        Scan process 'iexplore.exe' - '1' Module(s) have been scanned
        Scan process 'WLLoginProxy.exe' - '1' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'VSSVC.exe' - '1' Module(s) have been scanned
        Scan process 'ieuser.exe' - '1' Module(s) have been scanned
        Scan process 'taskeng.exe' - '1' Module(s) have been scanned
        Scan process 'WUDFHost.exe' - '1' Module(s) have been scanned
        Scan process 'SearchIndexer.exe' - '1' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'mdm.exe' - '1' Module(s) have been scanned
        Scan process 'LSSrvc.exe' - '1' Module(s) have been scanned
        Scan process 'fsssvc.exe' - '1' Module(s) have been scanned
        Scan process 'guard.exe' - '1' Module(s) have been scanned
        Scan process 'hpqgalry.exe' - '1' Module(s) have been scanned
        Scan process 'rundll32.exe' - '1' Module(s) have been scanned
        Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
        Scan process 'sidebar.exe' - '1' Module(s) have been scanned
        Scan process 'avgas.exe' - '1' Module(s) have been scanned
        Scan process 'fssui.exe' - '1' Module(s) have been scanned
        Scan process 'rundll32.exe' - '1' Module(s) have been scanned
        Scan process 'smax4pnp.exe' - '1' Module(s) have been scanned
        Scan process 'hphmon06.exe' - '1' Module(s) have been scanned
        Scan process 'hpcmpmgr.exe' - '1' Module(s) have been scanned
        Scan process 'MSASCui.exe' - '1' Module(s) have been scanned
        Scan process 'explorer.exe' - '1' Module(s) have been scanned
        Scan process 'taskeng.exe' - '1' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'dwm.exe' - '1' Module(s) have been scanned
        Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'SLsvc.exe' - '1' Module(s) have been scanned
        Scan process 'audiodg.exe' - '0' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'winlogon.exe' - '1' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'lsm.exe' - '1' Module(s) have been scanned
        Scan process 'lsass.exe' - '1' Module(s) have been scanned
        Scan process 'services.exe' - '1' Module(s) have been scanned
        Scan process 'csrss.exe' - '1' Module(s) have been scanned
        Scan process 'wininit.exe' - '1' Module(s) have been scanned
        Scan process 'csrss.exe' - '1' Module(s) have been scanned
        Scan process 'smss.exe' - '1' Module(s) have been scanned
        58 processes with 58 modules were scanned

        Start scanning boot sectors:
        Boot sector 'C:\'
        [NOTE] No virus was found!

        Starting to scan the registry.
        The registry was scanned ( '16' files ).

        Starting the file scan:

        Begin scan in 'C:\'
        C:\hiberfil.sys
        [WARNING] The file could not be opened!
        C:\pagefile.sys
        [WARNING] The file could not be opened!

        End of the scan: vendredi 8 février 2008 19:10
        Used time: 47:26 min

        The scan has been done completely.

        11113 Scanning directories
        233796 Files were scanned
        0 viruses and/or unwanted programs were found
        0 Files were classified as suspicious:
        0 files were deleted
        0 files were repaired
        0 files were moved to quarantine
        0 files were renamed
        2 Files cannot be scanned
        233796 Files not concerned
        1612 Archives were scanned
        2 Warnings
        0 Notes

        RAPPORT AVG
        AVG Anti-Spyware - Rapport d'analyse
        ---------------------------------------------------------

        + Créé à: 19:22:41 08/02/2008

        + Résultat de l'analyse:

        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@247realmedia[1].txt -> TrackingCookie.247realmedia : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\Low\samia@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\Low\samia@pandasoftware.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@adtech[1].txt -> TrackingCookie.Adtech : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\Low\samia@advertising[1].txt -> TrackingCookie.Advertising : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@advertising[1].txt -> TrackingCookie.Advertising : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\Low\samia@atdmt[2].txt -> TrackingCookie.Atdmt : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@atdmt[1].txt -> TrackingCookie.Atdmt : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\Low\samia@bluestreak[1].txt -> TrackingCookie.Bluestreak : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@bluestreak[2].txt -> TrackingCookie.Bluestreak : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\Low\samia@doubleclick[2].txt -> TrackingCookie.Doubleclick : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@doubleclick[1].txt -> TrackingCookie.Doubleclick : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\Low\samia@ssl-hints.netflame[2].txt -> TrackingCookie.Netflame : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@ssl-hints.netflame[2].txt -> TrackingCookie.Netflame : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\Low\samia@smartadserver[1].txt -> TrackingCookie.Smartadserver : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@smartadserver[2].txt -> TrackingCookie.Smartadserver : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\Low\samia@weborama[1].txt -> TrackingCookie.Weborama : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@weborama[2].txt -> TrackingCookie.Weborama : Nettoyé.
        C:\Users\Samia\AppData\Roaming\Microsoft\Windows\Cookies\samia@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Nettoyé.

        Fin du rapport
        0
        1. Contributeur sécurité
          bizarre
          tu utilise bien internet explorer pour mettre a jour windows et non firefox?

          sinon clique toi meme manuellement ici pour mettre a jour

          http://v4.windowsupdate.microsoft.com/fr/default.asp
          0
      2. bonjour je suis en galere j'ai un message en bas a droite de mon ecran qui me dit que mon ordi est infecté par la derniere version de PSW.x-virtrojan
        j'ai fais plusieur analyse avast et il ne trouve plus rien
        voici mon rapport hijack
        merci d'avance

        Logfile of Trend Micro HijackThis v2.0.2
        Scan saved at 19:24:19, on 08/02/2008
        Platform: Windows XP SP2 (WinNT 5.01.2600)
        MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
        Boot mode: Normal

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\System32\svchost.exe
        C:\WINDOWS\system32\svchost.exe
        C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        C:\Program Files\Alwil Software\Avast4\ashServ.exe
        C:\WINDOWS\system32\spoolsv.exe
        C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
        C:\WINDOWS\system32\CTsvcCDA.EXE
        C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
        C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
        C:\Program Files\CA\SharedComponents\CA_LIC\LogWatNT.exe
        C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
        C:\WINDOWS\System32\nvsvc32.exe
        C:\Program Files\802.11 Wireless LAN\802.11g Pen Size Wireless USB 2.0 Adapter HW.32 V1.10\SiSWLSvc.exe
        C:\WINDOWS\system32\Tablet.exe
        C:\WINDOWS\Explorer.EXE
        C:\Program Files\Video Add-on\icthis.exe
        C:\Program Files\Video Add-on\isfmntr.exe
        C:\Program Files\QuickTime\qttask.exe
        C:\WINDOWS\system32\ctfmon.exe
        C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
        C:\Program Files\Video Add-on\isfmm.exe
        C:\Program Files\Video Add-on\icmntr.exe
        C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
        C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
        C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
        C:\WINDOWS\System32\svchost.exe
        C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
        C:\Program Files\Google\Google Updater\GoogleUpdater.exe
        C:\Program Files\PowerCheck\PowerCheck.exe
        C:\WINDOWS\system32\WTablet\TabUserW.exe
        C:\Program Files\U.S. Robotics\Wireless USB Manager\USR11G.exe
        C:\Program Files\802.11 Wireless LAN\802.11g Pen Size Wireless USB 2.0 Adapter HW.32 V1.10\WlanCU.exe
        C:\Program Files\Alwil Software\Avast4\ashSimpl.exe
        C:\WINDOWS\system32\wuauclt.exe
        C:\WINDOWS\system32\taskmgr.exe
        C:\Program Files\Internet Explorer\iexplore.exe
        C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?FORM=TOOLBR&cc=fr&toHttps=1&redig=4527FFF1C12746FC9EDB535C75E80ECC
        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?FORM=TOOLBR&cc=fr&toHttps=1&redig=4527FFF1C12746FC9EDB535C75E80ECC
        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.medion.fr/
        R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = https://www.bing.com/?FORM=TOOLBR&cc=fr&toHttps=1&redig=4527FFF1C12746FC9EDB535C75E80ECC
        R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = Supprimer cette entrée
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
        R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange HSS\SearchURLHook\SearchPageURL.dll
        O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
        O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - (no file)
        O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
        O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
        O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.5672\swg.dll
        O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
        O2 - BHO: (no name) - {C2A1C5CB-C0EF-4689-9436-F62CCA1C5383} - C:\Program Files\Video Add-on\isfmdl.dll
        O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
        O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
        O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
        O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
        O4 - HKCU\..\Run: [Creative Detector] C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe /R
        O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8 -reboot 1
        O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"
        O4 - HKLM\..\Policies\Explorer\Run: [some] C:\Program Files\Video Add-on\icthis.exe
        O4 - HKLM\..\Policies\Explorer\Run: [start] C:\Program Files\Video Add-on\isfmntr.exe
        O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
        O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
        O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
        O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
        O4 - Startup: PowerReg Scheduler.exe
        O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
        O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
        O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
        O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
        O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
        O4 - Global Startup: PowerCheck.lnk = C:\Program Files\PowerCheck\PowerCheck.exe
        O4 - Global Startup: TabUserW.exe.lnk = C:\WINDOWS\system32\WTablet\TabUserW.exe
        O4 - Global Startup: U.S. Robotics Wireless USB Adapter.lnk = C:\Program Files\U.S. Robotics\Wireless USB Manager\USR11G.exe
        O4 - Global Startup: Wireless Configuration Utility HW.32.lnk = ?
        O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
        O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
        O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
        O9 - Extra button: (no name) - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.freeietool.com/redirect.php (file missing)
        O9 - Extra 'Tools' menuitem: IE Anti-Spyware - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.freeietool.com/redirect.php (file missing)
        O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
        O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
        O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
        O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
        O14 - IERESET.INF: START_PAGE_URL=http://www.medion.fr/
        O16 - DPF: Interface Chat Wanadoo - http://chat7.x-echo.com/version6/Applet/wchatsign.cab
        O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab30149.cab
        O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
        O16 - DPF: {1F83CD9E-505E-4F87-BECE-0832A763E36F} (Image Uploader 3.0 Control) - http://www.mypixmania.com/fr/fr/importer/MypixUploader.cab
        O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
        O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) - https://www.cult3d.com/
        O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://kikiletueur.spaces.live.com//PhotoUpload/MsnPUpld.cab
        O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
        O16 - DPF: {7DA181BB-EF8D-4A7E-8C53-7BFC718EF71D} (Upload Class) - http://photos.wanadoo.fr/al/presentation/pc/resources/activex/Ephoto.cab
        O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://kikiletueur.spaces.live.com/PhotoUpload/MsnPUpld.cab
        O16 - DPF: {88764F69-3831-4EC1-B40B-FF21D8381345} (AdVerifierADPCtrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP-1.0.cab
        O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab30149.cab
        O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
        O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
        O16 - DPF: {C45B1500-7B63-47C2-AB25-C28CB46AFDEE} (MediaBar) - http://sib1.od2.com/common/musicmanager/installation/MusicManagerPlugin.CAB
        O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} - http://www.adobe.com/products/acrobat/nos/gp.cab
        O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
        O16 - DPF: {DEB21AD3-FDA4-42F6-B57D-EE696A675EE8} (IPSUploader Control) - http://asp05.photoprintit.de/microsite/2169/defaults/activex/IPSUploader.cab
        O16 - DPF: {E6A3C1E2-F792-483E-9133-596215172BE9} (AcceptLang Class) - http://runonce.msn.com/setacceptlang.cab
        O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su2/CTL_V02002/ocx/15033/CTPID.cab
        O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab30149.cab
        O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
        O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
        O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
        O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
        O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
        O23 - Service: Boonty Games - Unknown owner - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe (file missing)
        O23 - Service: Client de licence CA (CA_LIC_CLNT) - Computer Associates - C:\Program Files\CA\SharedComponents\CA_LIC\lic98rmt.exe
        O23 - Service: Serveur de licence CA (CA_LIC_SRVR) - Computer Associates - C:\Program Files\CA\SharedComponents\CA_LIC\lic98rmtd.exe
        O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
        O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
        O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
        O23 - Service: Event Log Watch (LogWatch) - Computer Associates - C:\Program Files\CA\SharedComponents\CA_LIC\LogWatNT.exe
        O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
        O23 - Service: SiS WirelessLan Service (SiSWLSvc) - Unknown owner - C:\Program Files\802.11 Wireless LAN\802.11g Pen Size Wireless USB 2.0 Adapter HW.32 V1.10\SiSWLSvc.exe
        O23 - Service: TabletService - Wacom Technology, Corp. - C:\WINDOWS\system32\Tablet.exe
        O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe
        0
        1. Bonjour Damien,

          Tu n'as aucune chance d'avoir une réponse si tu mets ta demande ici.
          Poste plutôt un nouveau sujet sur le forum, je ne suis pas une pro de la lecture d'un hijak sinon je t'aurais aider volontiers

          Bon courage
          Samia
          0
        2. Contributeur sécurité
          slt, damien
          effectivement tu es infécté mais cela aurait été mieux de faire ton propre post

          ______________

          smit fraud fix (colle le rapport)

          1/ telecharger :

          http://siri.urz.free.fr/Fix/SmitfraudFix.php

          2/ double clique sur smitfraudfix. puis sélectionne 1 et appuyer sur entrée afin de créer le rapport des infection présentes. une fois le rapport effectué redémarre en mode sans échec (en appuyant sur F8 ou suppr, ou F5 au démarrage en général)

          3/ puis refaire comme en 2/ mais sélectionne l'option 2 et appuyer sur entrée pour commencer la désinfection. lorsque le programme demande si tu veut nettoyer le registre mets oui en tapant 0 et entrée

          ________________

          combofix (colle le rapport)
          http://download.bleepingcomputer.com/sUBs/ComboFix.exe
          0
      3. Oui, c'est très bizarre. Même le support Micrsoft ne me trouve de solution pour le moment.

        Sinon, avec Vista, je ne peux plus passer par explorer, je vais dans le panneau de configuration. De toute faàçon, si je passe par le site update, je me retrouve là aussi.

        Je pense que le pc est sain, ce doit être un problème lié à windows, je continue mes recherches, merci beaucoup pour ton aide !!!
        Bonne soirée
        Samia
        0
        1. Contributeur sécurité
          de rien a plus
          0