Site redirigé avec son bizzare

sush -  
 Utilisateur anonyme -
bonjouur,

alors voilà, depuis une semaine environ, certains sites ou blogs sont systématiquement redirigés, accompagnés d'un signal sonore moyennement agréable à entendre. D'ailleurs il m'arrive d'entendre ce signal en ouvrant un site (qui marche!) sans aucune raison particulière..

j'espère que vous allez pouvoir m'aider!!
merci d'avance
Configuration: Windows XP
Internet Explorer 7.0

19 réponses

  1. jfkpresident Messages postés 13877 Statut Contributeur sécurité 1 175
     
    j'en demandais pas tant :)))

    on va éviter de charger le topique ....
    1
  2. Utilisateur anonyme
     
    *Télécharge http://www.commentcamarche.net/telecharger/telecharger 159 hijackthis sur ton Bureau.
    *Ferme toutes les autres fenêtres, tous les autres programmes. Pas de connexion Internet.
    *Double clique dessus pour lancer l installation . Accepte la licence qui va apparaître par " I agree" .
    *Puis clique sur "Do a system scan and save a logfile"
    *Ferme HijackThis et fais un copier-coller du rapport en entier et poste le ici en réponse.(Clique sur "Edition -> Sélectionner tout", puis sur "Edition -> Copier" pour copier tout le contenu du rapport
    Colle le rapport que tu viens de copier sur ce forum
    *Note : le rapport se trouve dans C:\Program Files\Trend Micro\HijackThis
    *Tuto : "générer un rapport" http://pageperso.aol.fr/balltrap34/demohijack.htm
    0
  3. sush
     
    hmm :) un peu la honte
    highjackthis ne veut pas se télécharger. quand je clique sur l'image du disque dur ave la fleche verte ça me fait qu'actualiser la page! avec une gentille petite indication en bas à gauche "Erreur sur la page" ..

    (merci d'avoir accepté de bien vouloir prendre soin de mon ordi!!)
    0
  4. sush
     
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 20:18:43, on 03/06/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16640)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\3Com\3Com Wireless Utility\WLService.exe
    C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\3Com\3Com Wireless Utility\WLanCfgAG.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
    C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
    C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
    C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
    C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\3Com\3Com Wireless Utility\InvHelp.exe
    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
    C:\WINDOWS\system32\RUNDLL32.EXE
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\WINDOWS\RTHDCPL.EXE
    C:\Program Files\Utilitaires\iTunes\iTunesHelper.exe
    C:\WINDOWS\system32\LVCOMSX.EXE
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
    C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    C:\Program Files\Google\Google Updater\GoogleUpdater.exe
    C:\Program Files\Logitech\Video\FxSvr2.exe
    C:\WINDOWS\system32\IcoSauve.exe
    C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Windows Live\Messenger\usnsvc.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
    C:\Documents and Settings\Alissa\Local Settings\Temporary Internet Files\Content.IE5\JFVB8S51\HiJackThis[1].exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/toolbar/ie8/sidebar.html
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.fr/?gws_rd=ssl
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.fr/toolbar/ie8/sidebar.html
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.fr/search?q=%s
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;localhost
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    R3 - URLSearchHook: (no name) - {9CB65206-89C4-402c-BA80-02D8C59F9B1D} - C:\Program Files\AskTBar\SrchAstt\2.bin\A5SRCHAS.DLL
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Ask Search Assistant BHO - {9CB65201-89C4-402c-BA80-02D8C59F9B1D} - C:\Program Files\AskTBar\SrchAstt\2.bin\A5SRCHAS.DLL
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
    O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\2.bin\ASKTBAR.DLL
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
    O3 - Toolbar: Ask Toolbar - {FE063DB9-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\2.bin\ASKTBAR.DLL
    O4 - HKLM\..\Run: [InvHelp.exe] C:\Program Files\3Com\3Com Wireless Utility\InvHelp.exe
    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
    O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\Utilitaires\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    O4 - HKUS\S-1-5-19\..\RunOnce: [nltide1] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-19\..\RunOnce: [nltide2] cmd.exe /C rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,L,,4,N (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\RunOnce: [nltide1] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'SERVICE RÉSEAU')
    O4 - Startup: IcoSauve.lnk = C:\WINDOWS\system32\IcoSauve.exe
    O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
    O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/FacebookPhotoUploader5.cab
    O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/webplayer/stage6/windows/DivXBrowserPlugin.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
    O20 - Winlogon Notify: 3CLogon - C:\WINDOWS\SYSTEM32\3CLogon.dll
    O23 - Service: 3CRDAG675B (3Com 3CRDAG675B Wireless LAN PCI Adapter WLService) - Unknown owner - C:\Program Files\3Com\3Com Wireless Utility\WLService.exe
    O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
    O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Apache Software Foundation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
    O23 - Service: ForceWare user log service (nSvcLog) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
    O23 - Service: nTune Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    0
    1. Utilisateur anonyme
       
      Re alors désinstalle tous tes logiciel de sécurité sauf Spybot. Et installe AntiVir,Malwarebytes Anti-Malware,Ccleaner et active le pare-feu XP.

      AntiVir: https://www.01net.com/outils/telecharger/windows/Securite/antivirus-antitrojan/fiches/tele13198.html
      Tutoriel AntiVir: https://www.malekal.com/avira-free-security-antivirus-gratuit/

      Malwarebytes Anti-Malware: http://www.malwarebytes.org/mbam/program/mbam-setup.exe
      Tutoriel Malwarebytes Anti-Malware: https://forum.pcastuces.com/malwarebytes_antimalwares___tutoriel-f31s3.htm

      Ccleaner: https://www.01net.com/outils/telecharger/windows/Utilitaire/nettoyeurs_et_installeurs/fiches/tele32599.html
      Tutoriel Ccleaner: https://www.vulgarisation-informatique.com/nettoyer-windows-ccleaner.php (Tu l'installe sans la bare d'outil Yahoo)

      PS: TU LES INSTALLES SEULEMENT ET TU NE FAIS PAS D'ANALYSE. TU FAIS UNE MISE A JOUR A ANTIVIR ET MALWAREBYTES ANTI-MALWARE ET SPYBOT.
      0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. sush
     
    voilà c'est fait..

    j'ai supprimé avast et installé antivir et malwarebyte anti-malware. ccleaner étant déjà là..

    j'espère que c'est tout juste :s
    0
    1. Utilisateur anonyme
       
      Tu fais un scan en mode sans échec avec AntiVir. Tu lances le scan et si il détecte un virus (normalement oui) tu cliques sur "delete" et "apply sélection to all following détections. (pour qu'il le supprimes automatiquement). A la fin du scan tu cliques sur "report" tu redémarre en mode normal puis tu me postes le rapport.

      Mode sans Echec:

      Au redémarrage de l'ordinateur, une fois le chargement du BIOS terminé, il y a un écran noir qui apparaît rapidement, appuie sur la touche [F8] (ou [F5] sur certains pc) jusqu'à l'affichage du menu des options avancées de Windows.
      Sélectionner "Mode sans échec" et appuie sur [Entrée]
      Il faudra choisir ta session habituelle, pas le compte "Administrateur" ou une autre.
      Regarde ici si besoin : http://pageperso.aol.fr/loraline60/mode_sans_echec.htm

      PS: JE TE CONSEILLE D'ENREGISTRER CE MESSAGE DANS TON BUREAU OU CAS OU.
      0
  7. sush
     
    voilà le rapport!
    maintenant.. je redémarre en mode normal et je reposte le rapport (pke je ne suis pas sûre d'avoir bien comprid :)

    Avira AntiVir Personal
    Report file date: mercredi 4 juin 2008 20:01

    Scanning for 1165085 virus strains and unwanted programs.

    Licensed to: Avira AntiVir PersonalEdition Classic
    Serial number: 0000149996-ADJIE-0001
    Platform: Windows XP
    Windows version: (Service Pack 2) [5.1.2600]
    Boot mode: Normally booted
    Username: SYSTEM
    Computer name: ALI

    Version information:
    BUILD.DAT : 8.1.00.295 16479 Bytes 09/04/2008 16:24:00
    AVSCAN.EXE : 8.1.2.12 311553 Bytes 18/03/2008 09:02:56
    AVSCAN.DLL : 8.1.1.0 53505 Bytes 07/02/2008 08:43:37
    LUKE.DLL : 8.1.2.9 151809 Bytes 28/02/2008 08:41:23
    LUKERES.DLL : 8.1.2.1 12033 Bytes 21/02/2008 08:28:40
    ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 10:33:34
    ANTIVIR1.VDF : 7.0.3.2 5447168 Bytes 07/03/2008 13:08:58
    ANTIVIR2.VDF : 7.0.3.62 337408 Bytes 21/03/2008 19:12:34
    ANTIVIR3.VDF : 7.0.3.68 57856 Bytes 25/03/2008 08:27:50
    Engineversion : 8.1.0.28
    AEVDF.DLL : 8.1.0.5 102772 Bytes 25/02/2008 09:58:21
    AESCRIPT.DLL : 8.1.0.19 229754 Bytes 07/04/2008 15:34:44
    AESCN.DLL : 8.1.0.12 115060 Bytes 07/04/2008 15:34:44
    AERDL.DLL : 8.1.0.19 418164 Bytes 07/04/2008 15:34:44
    AEPACK.DLL : 8.1.1.0 364918 Bytes 18/03/2008 11:20:42
    AEOFFICE.DLL : 8.1.0.15 192889 Bytes 07/04/2008 15:34:44
    AEHEUR.DLL : 8.1.0.15 1147253 Bytes 07/04/2008 15:34:44
    AEHELP.DLL : 8.1.0.11 115061 Bytes 07/04/2008 15:34:43
    AEGEN.DLL : 8.1.0.15 299379 Bytes 07/04/2008 15:34:43
    AEEMU.DLL : 8.1.0.5 430450 Bytes 07/04/2008 15:34:43
    AECORE.DLL : 8.1.0.25 168309 Bytes 08/04/2008 09:58:32
    AVWINLL.DLL : 1.0.0.7 14593 Bytes 23/01/2008 17:07:53
    AVPREF.DLL : 8.0.0.1 25857 Bytes 18/02/2008 10:37:50
    AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 13:26:47
    AVREG.DLL : 8.0.0.0 30977 Bytes 23/01/2008 17:07:49
    AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23
    AVEVTLOG.DLL : 8.0.0.11 114945 Bytes 28/02/2008 08:31:31
    SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
    SMTPLIB.DLL : 1.2.0.19 28929 Bytes 23/01/2008 17:08:39
    NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10
    RCIMAGE.DLL : 8.0.0.35 2371841 Bytes 10/03/2008 14:37:25
    RCTEXT.DLL : 8.0.32.0 86273 Bytes 06/03/2008 12:02:11

    Configuration settings for the scan:
    Jobname..........................: Complete system scan
    Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
    Logging..........................: low
    Primary action...................: interactive
    Secondary action.................: ignore
    Scan master boot sector..........: on
    Scan boot sector.................: on
    Boot sectors.....................: C:,
    Scan memory......................: on
    Process scan.....................: on
    Scan registry....................: on
    Search for rootkits..............: off
    Scan all files...................: Intelligent file selection
    Scan archives....................: on
    Recursion depth..................: 20
    Smart extensions.................: on
    Macro heuristic..................: on
    File heuristic...................: medium

    Start of the scan: mercredi 4 juin 2008 20:01

    The scan of running processes will be started
    Scan process 'avscan.exe' - '1' Module(s) have been scanned
    Scan process 'avcenter.exe' - '1' Module(s) have been scanned
    Scan process 'WLLoginProxy.exe' - '1' Module(s) have been scanned
    Scan process 'iexplore.exe' - '1' Module(s) have been scanned
    Scan process 'avgnt.exe' - '1' Module(s) have been scanned
    Scan process 'avguard.exe' - '1' Module(s) have been scanned
    Scan process 'sched.exe' - '1' Module(s) have been scanned
    Scan process 'usnsvc.exe' - '1' Module(s) have been scanned
    Scan process 'iPodService.exe' - '1' Module(s) have been scanned
    Scan process 'FxSvr2.exe' - '1' Module(s) have been scanned
    Scan process 'ONENOTEM.EXE' - '1' Module(s) have been scanned
    Scan process 'IcoSauve.exe' - '1' Module(s) have been scanned
    Scan process 'GoogleUpdater.exe' - '1' Module(s) have been scanned
    Scan process 'backWeb-8876480.exe' - '1' Module(s) have been scanned
    Scan process 'TeaTimer.exe' - '1' Module(s) have been scanned
    Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
    Scan process 'LogiTray.exe' - '1' Module(s) have been scanned
    Scan process 'LVCOMSX.EXE' - '1' Module(s) have been scanned
    Scan process 'iTunesHelper.exe' - '1' Module(s) have been scanned
    Scan process 'RTHDCPL.exe' - '1' Module(s) have been scanned
    Scan process 'rundll32.exe' - '1' Module(s) have been scanned
    Scan process 'GrooveMonitor.exe' - '1' Module(s) have been scanned
    Scan process 'InvHelp.exe' - '1' Module(s) have been scanned
    Scan process 'explorer.exe' - '1' Module(s) have been scanned
    Scan process 'alg.exe' - '1' Module(s) have been scanned
    Scan process 'Apache.exe' - '1' Module(s) have been scanned
    Scan process 'nSvcAppFlt.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'nvsvc32.exe' - '1' Module(s) have been scanned
    Scan process 'nTuneService.exe' - '1' Module(s) have been scanned
    Scan process 'nSvcLog.exe' - '1' Module(s) have been scanned
    Scan process 'nSvcIp.exe' - '1' Module(s) have been scanned
    Scan process 'GoogleUpdaterService.exe' - '1' Module(s) have been scanned
    Scan process 'Apache.exe' - '1' Module(s) have been scanned
    Scan process 'mDNSResponder.exe' - '1' Module(s) have been scanned
    Scan process 'WLanCfgAG.exe' - '1' Module(s) have been scanned
    Scan process 'AppleMobileDeviceService.exe' - '1' Module(s) have been scanned
    Scan process 'WLService.exe' - '1' Module(s) have been scanned
    Scan process 'scardsvr.exe' - '1' Module(s) have been scanned
    Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
    Scan process 'ashServ.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'lsass.exe' - '1' Module(s) have been scanned
    Scan process 'services.exe' - '1' Module(s) have been scanned
    Scan process 'winlogon.exe' - '1' Module(s) have been scanned
    Scan process 'csrss.exe' - '1' Module(s) have been scanned
    Scan process 'smss.exe' - '1' Module(s) have been scanned
    51 processes with 51 modules were scanned

    Starting master boot sector scan:
    Master boot sector HD0
    [INFO] No virus was found!

    Start scanning boot sectors:
    Boot sector 'C:\'
    [INFO] No virus was found!

    Starting to scan the registry.
    The registry was scanned ( '30' files ).

    Starting the file scan:

    Begin scan in 'C:\'
    C:\pagefile.sys
    [WARNING] The file could not be opened!
    C:\Documents and Settings\Alissa\Bureau\Externe\Transit\Azureus\DBZ Manga.rar
    [0] Archive type: RAR
    --> DBZ livre 20-42.rar
    [1] Archive type: RAR
    --> Manga 04 - Le tournoi.exe
    [DETECTION] Is the Trojan horse TR/Agent.9331537
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa\Bureau\Externe\Transit\Azureus\Transcribe! v5.80.zip
    [0] Archive type: ZIP
    --> Keygen.exe
    [DETECTION] Is the Trojan horse TR/Crypt.XDR.Gen
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\2020setup.exe
    [DETECTION] Is the Trojan horse TR/Dldr.Secon.h.1.B
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\NULL
    [DETECTION] Is the Trojan horse TR/Lowzones.1.A
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\Program Files\Fichiers communs\GMT\gtrawbm.fil
    [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/Agent.AY Backdoor server programs
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\Program Files\WebSiteViewer\125016.dlr
    [DETECTION] Contains detection pattern of the dial-up program DIAL/300797
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\Recycled\Q330995.exe
    [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/Padodor.69334 Backdoor server programs
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\adiras.exe
    [DETECTION] Contains detection pattern of the dial-up program DIAL/32768.B
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\ccGetMgr.exe
    [DETECTION] Contains detection pattern of the worm WORM/Stration.Gen
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\2PBUK9LK\JavaSiteRequest[6].asp
    [0] Archive type: GZ
    --> JavaSiteRequest[6]
    [DETECTION] Contains detection pattern of the HTML script virus HTML/Infected.WebPage.Gen
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\2PBUK9LK\JavaSiteRequest[7].asp
    [0] Archive type: GZ
    --> JavaSiteRequest[7]
    [DETECTION] Contains detection pattern of the HTML script virus HTML/Infected.WebPage.Gen
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4LQJC9UZ\adv65[1].php
    [DETECTION] Contains detection pattern of the exploits EXP/HTML.Mht.67
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4LQJC9UZ\JavaSiteRequest[2].asp
    [0] Archive type: GZ
    --> JavaSiteRequest[2]
    [DETECTION] Contains detection pattern of the HTML script virus HTML/Infected.WebPage.Gen
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4LQJC9UZ\toolbar[1].txt
    [DETECTION] Is the Trojan horse TR/Dldr.Agent.EW.2
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ\213.159.117[1]
    [DETECTION] Is the Trojan horse TR/Dldr.Small.WV.1
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ\adv65[1].php
    [DETECTION] Contains detection pattern of the exploits EXP/HTML.Mht.67
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ\index[3].php
    [DETECTION] Contains suspicious code HEUR/HTML.Malware
    [NOTE] The fund was classified as suspicious.
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ\index[4].php
    [DETECTION] Contains suspicious code HEUR/HTML.Malware
    [NOTE] The fund was classified as suspicious.
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ\index[5].php
    [DETECTION] Contains suspicious code HEUR/HTML.Malware
    [NOTE] The fund was classified as suspicious.
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ\index[6].php
    [DETECTION] Contains suspicious code HEUR/HTML.Malware
    [NOTE] The fund was classified as suspicious.
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ\index[7].php
    [DETECTION] Contains suspicious code HEUR/HTML.Malware
    [NOTE] The fund was classified as suspicious.
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ\protect[1].php
    [DETECTION] Contains detection pattern of the Java script virus JS/Clicker.Lnkr.J.2
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ\sl[1].cab
    [0] Archive type: CAB (Microsoft)
    --> sl.ocx
    [DETECTION] Is the Trojan horse TR/Dldr.Agent.ex
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\5SQKHHPE\loaderadv65[1].jar
    [0] Archive type: ZIP
    --> Counter.class
    [DETECTION] Contains detection pattern of the Java script virus JS/OpenConnect.J.1
    --> Dummy.class
    [DETECTION] Is the Trojan horse TR/Forten.Java.2
    --> Matrix.class
    [DETECTION] Contains detection pattern of the Java virus JAVA/Beyond.D3
    --> Parser.class
    [DETECTION] Contains detection pattern of the Java script virus JS/OpenConnect.J.3
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\5SQKHHPE\loaderms[1].jar
    [0] Archive type: ZIP
    --> Counter.class
    [DETECTION] Contains detection pattern of the Java script virus JS/OpenConnect.J.1
    --> Dummy.class
    [DETECTION] Is the Trojan horse TR/Forten.Java.2
    --> Matrix.class
    [DETECTION] Contains detection pattern of the Java virus JAVA/Beyond.D3
    --> Parser.class
    [DETECTION] Contains detection pattern of the Java script virus JS/OpenConnect.J.3
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\5SQKHHPE\protect[2].php
    [DETECTION] Contains detection pattern of the Java script virus JS/Clicker.Lnkr.J.2
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\5SQKHHPE\systime[1].txt
    [DETECTION] Is the Trojan horse TR/StartPage.PU
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\5SQKHHPE\x[1].chm
    [0] Archive type: CHM
    --> /x.htm
    [DETECTION] Is the Trojan horse TR/Dldr.Agent.EW.1
    --> /load.exe
    [DETECTION] Is the Trojan horse TR/Dldr.Harnig.AL.13
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\8CJ4VBRP\asmfiles[1].cab
    [0] Archive type: CAB (Microsoft)
    --> asm.exe
    [DETECTION] Contains suspicious code HEUR/Crypted
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\F29ACSI4\x[1].chm
    [DETECTION] Is the Trojan horse TR/Dldr.Small.WV.2
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\HAQ0SJJZ\213.159.117[1]
    [DETECTION] Is the Trojan horse TR/Dldr.Small.WV.1
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\HAQ0SJJZ\adv65[1].php
    [DETECTION] Contains detection pattern of the exploits EXP/HTML.Mht.67
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\NOF4KJ6R\JavaSiteRequest[2].asp
    [0] Archive type: GZ
    --> JavaSiteRequest[2]
    [DETECTION] Contains detection pattern of the HTML script virus HTML/Infected.WebPage.Gen
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\YRM7WL4D\classload[1].jar
    [0] Archive type: ZIP
    --> GetAccess.class
    [DETECTION] Contains detection pattern of the Java virus JAVA/ClassLoader.D
    --> InsecureClassLoader.class
    [DETECTION] Is the Trojan horse TR/Forten.Java.2.B
    --> Dummy.class
    [DETECTION] Is the Trojan horse TR/Forten.Java.2
    --> Installer.class
    [DETECTION] Is the Trojan horse TR/Dldr.OpenConn.F
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\YRM7WL4D\index[1]
    [DETECTION] Contains suspicious code HEUR/HTML.Malware
    [NOTE] The fund was classified as suspicious.
    [NOTE] The file was deleted!
    C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\YRM7WL4D\ms[1].php
    [DETECTION] Contains detection pattern of the HTML script virus HTML/MHT.Gen
    [NOTE] The file was deleted!
    C:\Program Files\SmartVideoCodec\Uninstall.exe
    [DETECTION] Contains detection pattern of the dropper DR/Dldr.Zlob.AAGR
    [NOTE] The file was deleted!

    End of the scan: mercredi 4 juin 2008 23:27
    Used time: 3:26:06 min

    The scan has been done completely.

    13823 Scanning directories
    631659 Files were scanned
    40 viruses and/or unwanted programs were found
    7 Files were classified as suspicious:
    37 files were deleted
    0 files were repaired
    0 files were moved to quarantine
    0 files were renamed
    1 Files cannot be scanned
    631619 Files not concerned
    12549 Archives were scanned
    1 Warnings
    37 Notes
    0
    1. Utilisateur anonyme
       
      Ok il a détecté et supprimé 37 virus. Maintenant fais ceci:

      1) Redémarre en "Mode sans échec"

      Au redémarrage de l'ordinateur, une fois le chargement du BIOS terminé, il y a un écran noir qui apparaît rapidement, appuie sur la touche [F8] (ou [F5] sur certains pc) jusqu'à l'affichage du menu des options avancées de Windows.
      Sélectionner "Mode sans échec" et appuie sur [Entrée]
      Il faudra choisir ta session habituelle, pas le compte "Administrateur" ou une autre.
      Regarde ici si besoin : http://pageperso.aol.fr/loraline60/mode_sans_echec.htm

      Ouvre le fichier texte sauvegardé sur le Bureau afin de suivre les instructions comme il faut.

      2) Scan avec Malwarebyte's Anti-Malware

      *Lance Malwarebyte's Anti-Malware
      *Puis vs dans l'onglet "Recherche" puis coche "Exécuter un examen complet" puis "Rechercher sélectionne tes disques durs" puis clique sur "Lancer l’examen"
      *A la fin du scan >>> clique sur Afficher les résultats puis sur Enregistrer le rapport
      *Suppression des éléments détectés >>>> clique sur Supprimer la sélection
      *S'il t'es demandé de redémarrer >>> clique sur "Yes"

      *--> Un rapport de scan s'ouvre, enregistre sur ton Bureau et poste ce rapport en réponse.
      0
  8. sush
     
    voilà voilà i'm back

    06.06.2008 13:43:14 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
    06.06.2008 13:43:14 - Backup Directory: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\
    06.06.2008 13:43:14 - Temp Directory: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\
    06.06.2008 13:43:14 - Using System's global Proxy settings
    06.06.2008 13:43:14 - Start the Update GUI... Displaymode: 1
    06.06.2008 13:43:14 - selftest successful: C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlib.dll
    06.06.2008 13:43:14 - selftest successful: C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlibrc.dll
    06.06.2008 13:43:14 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
    06.06.2008 13:43:14 - Backup Directory: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\
    06.06.2008 13:43:14 - Temp Directory: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\
    06.06.2008 13:43:14 - Using System's global Proxy settings
    06.06.2008 13:43:14 - Start the Update GUI... Displaymode: 1
    06.06.2008 13:43:14 - selftest successful: C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlib.dll
    06.06.2008 13:43:14 - selftest successful: C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlibrc.dll
    06.06.2008 13:43:14 - Avira AntiVir Personal – Free Antivirus
    06.06.2008 13:43:15 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\idx/master.idx to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\IDX\master.idx
    06.06.2008 13:43:15 - Master IDX file has changed
    06.06.2008 13:43:18 - Keyfile: OK [FULL Mode]
    06.06.2008 13:43:19 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/vdf.info.gz
    06.06.2008 13:43:22 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/specvir-nt.info.gz
    06.06.2008 13:43:27 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/ave2.info.gz
    06.06.2008 13:43:27 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/info-wks-classic-nt-en.info.gz
    06.06.2008 13:43:28 - Module: SELFUPDATE Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 15
    06.06.2008 13:43:28 - Module: MAIN Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 78
    06.06.2008 13:43:28 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.dll 8.0.0.4 < 8.0.1.3
    06.06.2008 13:43:28 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe 8.0.1.15 < 8.0.1.18
    06.06.2008 13:43:28 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avwsc.exe 8.0.0.9 < 8.0.0.12
    06.06.2008 13:43:29 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\setup.exe 8.0.0.11 < 8.0.0.17
    06.06.2008 13:43:29 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\wksstats.dll 8.0.0.4 < 8.0.0.5
    06.06.2008 13:43:29 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys 7.0.1.8 < 7.0.2.6
    06.06.2008 13:43:29 - build.dat 3440f5072f109b314342daf5ce6de635 != 7dc891d8430a7b4d921e5879a9182cea
    06.06.2008 13:43:29 - Module: TEXT Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 3
    06.06.2008 13:43:29 - Module: ANTISPAM_BETA02 Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
    06.06.2008 13:43:29 - Module: VDF Source: vdf\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 4
    06.06.2008 13:43:29 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir3.vdf 7.0.4.144 < 7.0.4.155
    06.06.2008 13:43:29 - Module: AVREP_NT Source: engine\nt\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
    06.06.2008 13:43:29 - Module: AVE2 Source: ave2\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 13
    06.06.2008 13:43:29 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aecore.dll 8.1.0.30 < 8.1.0.31
    06.06.2008 13:43:29 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aegen.dll 8.1.0.25 < 8.1.0.28
    06.06.2008 13:43:29 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeheur.dll 8.1.0.29 < 8.1.0.30
    06.06.2008 13:43:29 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescn.dll 8.1.0.20 < 8.1.0.21
    06.06.2008 13:43:29 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescript.dll 8.1.0.37 < 8.1.0.40
    06.06.2008 13:43:29 - aeset.dat be93edc240f6b51f65a680428e041bfe != 12cdda964969067669868dd11c7269d7
    06.06.2008 13:43:29 - Module: DRV Source: winwks\en\ Destination: C:\WINDOWS\SYSTEM32\drivers\ Files: 4
    06.06.2008 13:43:29 - Module: PRODINFO Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
    06.06.2008 13:43:29 - Minifilter is installed
    06.06.2008 13:43:29 - Minifilter is possible
    06.06.2008 13:43:29 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | FilterType
    06.06.2008 13:43:29 - Initialize avnotify.exe
    06.06.2008 13:43:29 - Starting avnotify.exe successful
    06.06.2008 13:43:29 - Preparing to download files
    06.06.2008 13:43:29 - 14 files need to be downloaded / copied from http://dl8.freeav.net/upd/
    06.06.2008 13:43:29 - #1: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/avgio.dll.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/avgio.dll
    06.06.2008 13:43:30 - #2: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/avguard.exe.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/avguard.exe
    06.06.2008 13:43:32 - #3: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/avwsc.exe.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/avwsc.exe
    06.06.2008 13:43:34 - #4: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/setup.exe.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/setup.exe
    06.06.2008 13:43:42 - #5: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/wksstats.dll.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/wksstats.dll
    06.06.2008 13:43:43 - #6: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/xp/avgntflt.sys.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/xp/avgntflt.sys
    06.06.2008 13:43:44 - #7: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/classic-nt/build.dat.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\classic-nt/build.dat
    06.06.2008 13:43:45 - #8: Downloading and extracting http://dl8.freeav.net/upd/vdf/antivir3.vdf.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\vdf\antivir3.vdf
    06.06.2008 13:43:50 - #9: Downloading and extracting http://dl8.freeav.net/upd/ave2/aecore.dll.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aecore.dll
    06.06.2008 13:43:52 - #10: Downloading and extracting http://dl8.freeav.net/upd/ave2/aegen.dll.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aegen.dll
    06.06.2008 13:43:56 - #11: Downloading and extracting http://dl8.freeav.net/upd/ave2/aeheur.dll.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aeheur.dll
    06.06.2008 13:44:10 - #12: Downloading and extracting http://dl8.freeav.net/upd/ave2/aescn.dll.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aescn.dll
    06.06.2008 13:44:11 - #13: Downloading and extracting http://dl8.freeav.net/upd/ave2/aescript.dll.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aescript.dll
    06.06.2008 13:44:15 - #14: Downloading and extracting http://dl8.freeav.net/upd/ave2/aeset.dat.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aeset.dat
    06.06.2008 13:44:20 - Status of service AntiVirService is running
    06.06.2008 13:44:20 - Minifilter is installed
    06.06.2008 13:44:20 - Minifilter is possible
    06.06.2008 13:44:20 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | FilterType
    06.06.2008 13:44:20 - Status of service AntiVirService is running
    06.06.2008 13:44:20 - Initialize avscan.exe
    06.06.2008 13:44:20 - Initialize avcenter.exe
    06.06.2008 13:44:20 - Initialize avgnt.exe
    06.06.2008 13:44:20 - Status of service AntiVirService is running
    06.06.2008 13:44:20 - Cannot stop the service AntiVirService
    06.06.2008 13:44:22 - Service AntiVirService successfully stopped
    06.06.2008 13:44:23 - Service avgio successfully stopped
    06.06.2008 13:44:23 - avscan.exe closed.
    06.06.2008 13:44:24 - avgnt.exe closed.
    06.06.2008 13:44:24 - Starting to install
    06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.dll to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\avgio.dll
    06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\avguard.exe
    06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\avwsc.exe to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\avwsc.exe
    06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\setup.exe to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\setup.exe
    06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\wksstats.dll to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\wksstats.dll
    06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\avgntflt.sys
    06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\build.dat to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\build.dat
    06.06.2008 13:44:24 - Processing module MAIN Source: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
    06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/avgio.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.dll
    06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/avguard.exe to C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/avwsc.exe to C:\Program Files\Avira\AntiVir PersonalEdition Classic\avwsc.exe
    06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/setup.exe to C:\Program Files\Avira\AntiVir PersonalEdition Classic\setup.exe
    06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/wksstats.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\wksstats.dll
    06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/xp/avgntflt.sys to C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys
    06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\classic-nt/build.dat to C:\Program Files\Avira\AntiVir PersonalEdition Classic\build.dat
    06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir3.vdf to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\antivir3.vdf
    06.06.2008 13:44:24 - Processing module VDF Source: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\vdf\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
    06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\vdf\antivir3.vdf to C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir3.vdf
    06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aecore.dll to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aecore.dll
    06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aegen.dll to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aegen.dll
    06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeheur.dll to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aeheur.dll
    06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescn.dll to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aescn.dll
    06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescript.dll to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aescript.dll
    06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeset.dat to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aeset.dat
    06.06.2008 13:44:24 - Processing module AVE2 Source: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
    06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aecore.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aecore.dll
    06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aegen.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aegen.dll
    06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aeheur.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeheur.dll
    06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aescn.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescn.dll
    06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aescript.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescript.dll
    06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aeset.dat to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeset.dat
    06.06.2008 13:44:24 - A total of 14 files were updated
    06.06.2008 13:44:24 - Initialize AVWSC.EXE
    06.06.2008 13:44:24 - Registry entry created successfully: Software\Avira\AntiVir PersonalEdition Classic |UpdateInProgress
    06.06.2008 13:44:24 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | FilterType
    06.06.2008 13:44:24 - Status of service AntiVirService is stopped
    06.06.2008 13:44:27 - Service AntiVirService successfully started
    06.06.2008 13:44:27 - Starting avgnt.exe successful
    06.06.2008 13:44:27 - Dialup: 0
    06.06.2008 13:44:27 - Downloaded bytes: 1583890
    06.06.2008 13:44:27 - Downloaded file(s): 14
    06.06.2008 13:44:27 - Downloaded file(s): avgio.dll; avguard.exe; avwsc.exe; setup.exe; wksstats.dll; avgntflt.sys; build.dat; antivir3.vdf; aecore.dll; aegen.dll; aeheur.dll; aescn.dll; aescript.dll; aeset.dat
    06.06.2008 13:44:27 - Required time: 01:13
    06.06.2008 13:44:27 - Registry entry created successfully: Software\Avira\AntiVir PersonalEdition Classic |LastUpdate
    06.06.2008 13:44:28 - Update finished successfully
    0
    1. Utilisateur anonyme
       
      Salut ceci c'est quoi ?
      0
  9. sush
     
    ben c'est quand j'ai allumé l'ordi, il a fait un espèce de petit scan tout seul, je me suis alors dit que c'est le rapport de ce scan là que tu voulais une fois l'ordi allumé?
    0
  10. Utilisateur anonyme
     
    1) Redémarre en "Mode sans échec"

    Au redémarrage de l'ordinateur, une fois le chargement du BIOS terminé, il y a un écran noir qui apparaît rapidement, appuie sur la touche [F8] (ou [F5] sur certains pc) jusqu'à l'affichage du menu des options avancées de Windows.
    Sélectionner "Mode sans échec" et appuie sur [Entrée]
    Il faudra choisir ta session habituelle, pas le compte "Administrateur" ou une autre.
    Regarde ici si besoin : http://pageperso.aol.fr/loraline60/mode_sans_echec.htm

    Ouvre le fichier texte sauvegardé sur le Bureau afin de suivre les instructions comme il faut.

    2) Scan avec Malwarebyte's Anti-Malware

    *Lance Malwarebyte's Anti-Malware
    *Puis vs dans l'onglet "Recherche" puis coche "Exécuter un examen complet" puis "Rechercher sélectionne tes disques durs" puis clique sur "Lancer l’examen"
    *A la fin du scan >>> clique sur Afficher les résultats puis sur Enregistrer le rapport
    *Suppression des éléments détectés >>>> clique sur Supprimer la sélection
    *S'il t'es demandé de redémarrer >>> clique sur "Yes"

    *--> Un rapport de scan s'ouvre, enregistre sur ton Bureau et poste ce rapport en réponse.
    0
  11. sush
     
    Malwarebytes' Anti-Malware 1.14
    Version de la base de données: 821

    20:06:12 06/06/2008
    mbam-log-6-6-2008 (20-06-08).txt

    Type de recherche: Examen complet (C:\|D:\|E:\|)
    Eléments examinés: 381875
    Temps écoulé: 40 minute(s), 56 second(s)

    Processus mémoire infecté(s): 0
    Module(s) mémoire infecté(s): 0
    Clé(s) du Registre infectée(s): 1
    Valeur(s) du Registre infectée(s): 0
    Elément(s) de données du Registre infecté(s): 0
    Dossier(s) infecté(s): 1
    Fichier(s) infecté(s): 2

    Processus mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Module(s) mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Clé(s) du Registre infectée(s):
    HKEY_CLASSES_ROOT\CLSID\{9afb8248-617f-460d-9366-d71cdeda3179} (Adware.MyWebSearch) -> No action taken.

    Valeur(s) du Registre infectée(s):
    (Aucun élément nuisible détecté)

    Elément(s) de données du Registre infecté(s):
    (Aucun élément nuisible détecté)

    Dossier(s) infecté(s):
    C:\Program Files\SmartVideoCodec (Trojan.Fakealert) -> No action taken.

    Fichier(s) infecté(s):
    C:\Program Files\SmartVideoCodec\install.ico (Trojan.Fakealert) -> No action taken.
    C:\Program Files\SmartVideoCodec\SmartVideoCodec.ocx (Trojan.Fakealert) -> No action taken.

    voili voilou
    0
    1. Utilisateur anonyme
       
      Ok ouvre "Malwarebytes' Anti-Malware" va dans "Quarantaine" puis fais "Tout supprimé".
      0
  12. sush
     
    voilà c'est fait

    il n'y a toujours pas de changements
    :s
    0
    1. Utilisateur anonyme
       
      Ok merci maintenant fais un scan en ligne avec Internet Explorer stp:

      BitDefender en ligne: http://www.bitdefender.fr/scan_fr/scan8/ie.html
      Tutoriel BitDefender en ligne: http://cybersecurite.xooit.com/t201-Scan-en-ligne-BitDefender.htm

      Ps: N'oublies pas de me poster le rapport. Si tu as besoin d'aide aide toi tu tutoriel.
      0
  13. jfkpresident Messages postés 13877 Statut Contributeur sécurité 1 175
     
    bonsoir a vous deux ;

    pour suivre ....
    0
    1. Utilisateur anonyme
       
      Salut jfkpresident la bienvenue.

      http://www.slepsow.be/Images/tapis_rouge.jpg
      0
  14. sush
     
    bonsoir jfkpresident!

    voilà le court rapport

    BitDefender Online Scanner - Rapport virus en temps réel
    Généré à: Sat, Jun 07, 2008 - 01:11:01
    ________________________________________
    Info d'analyse
    Fichiers scannés 137623
    Infectés Fichiers 1

    Virus Détectés
    Application.Adware.Savenow.G 1

    ________________________________________
    Ce sommaire du processus d'analyse sera utilisé par les laboratoires Antivirus BitDefender pour créer des statistiques agréguées sur l'activité des virus dans le monde.
    0
    1. Utilisateur anonyme
       
      Ok fais ceci maintenant:

      Défragmenter le disque dur:

      *Pour l'exécuter, cliquez sur le bouton Démarrer, sur Tous les programmes, sur Accessoires, Outils systèmes puis sur Défragmenteur de disque.
      *Cliquez sur le bouton Analyser. Le logiciel examine alors votre disque dur.
      *Cliquez sur le bouton Afficher le rapport. (enregistre le et poste le moi stp) (que si tu as XP).
      *Cliquez sur le bouton Défragmenter.
      0
  15. sush
     
    Volume (C:)
    Taille du volume = 466 Go
    Taille de cluster = 4 Ko
    Espace utilisé = 365 Go
    Espace libre = 101 Go
    Pourcentage d'espace libre = 21 %

    Fragmentation du volume
    Fragmentation totale = 6 %
    Fragmentation de fichiers = 12 %
    Fragmentation de l'espace libre = 0 %

    Fragmentation de fichiers
    Total de fichiers = 334 067
    Taille moyenne de fichier = 2 Mo
    Total de fichiers fragmentés = 25 657
    Total de fragments en trop = 72 872
    Nombre moyen de fragments par fichier = 1,21

    Fragmentation du fichier paginé
    Taille du fichier paginé = 2,00 Go
    Total de fragments = 1

    Fragmentation de dossier
    Total de dossiers = 13 878
    Dossiers fragmentés = 1 159
    Fragments de dossiers en trop = 17 009

    Fragmentation de la table de fichiers principale (MFT)
    Taille totale de la MFT = 341 Mo
    Nombre d'enregistrements dans la MFT = 348 277
    Pourcentage d'utilisation de la MFT = 99 %
    Total de fragments dans la MFT = 2

    --------------------------------------------------------------------------------
    Fragments Taille du fichierFichiers les plus fragmentés
    1,203 6 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ
    1,194 5 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4LQJC9UZ
    1,188 427 Mo \Program Files\JEUX\Warcraft III\war3.mpq
    956 5 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\KT2N896R
    679 52 Mo \Documents and Settings\Alissa Gouton\Application Data\SecondLife\cache\texture.cache
    560 54 Mo \Documents and Settings\Alissa Gouton\Local Settings\Temporary Internet Files\Content.IE5\Y22SMTWY\9b0fc02ab793be785aed759254a46eed[1]
    545 47 Mo \Documents and Settings\Alissa\Local Settings\Temporary Internet Files\Content.IE5\VF9JZEUC\ccdf91c93157ef9badba011dc0f91aab[1]
    452 98 Mo \Program Files\GXTranscoder.net AWE\outDir\CDImage.MP3
    435 55 Mo \Documents and Settings\Alissa Gouton\Local Settings\Application Data\Gas Powered Games\SupremeCommander\savegames\Ali\aeons wesh.SupremeCommanderCampaignSave
    390 384 Mo \Program Files\JEUX\Warcraft III\War3x.mpq
    367 26 Mo \Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\QU7WXY4T\iTunes[1].msi
    323 1 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\NOF4KJ6R
    309 1 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\2PBUK9LK
    304 19 Mo \Documents and Settings\Alissa\Local Settings\Temporary Internet Files\Content.IE5\MIH9HVRC\scnAVavbase13500000[1].cab
    303 1 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\0DYXK5CF
    298 2 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\C58ZQXUR
    295 2 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4LCQXYCZ
    294 1 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\GD2JW56F
    293 1 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\CN2NCJ0R
    290 181 Mo \Documents and Settings\Alissa Gouton\Mes documents\eMule Downloads\Incoming\Queens of the Stone Age - full Discografia (3 Cds)by alexman.rar
    254 19 Mo \Documents and Settings\Visiteurs\Local Settings\Temporary Internet Files\Content.IE5\27X1VPJQ\get_video[2]
    231 17 Mo \WINDOWS\Installer\20bc04.msi
    228 1 Mo \Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\SDHelper.log
    221 123 Mo \Documents and Settings\Alissa\Local Settings\Application Data\Google\GoogleEarth\dbCache.dat
    220 1 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\WNSPO5M3
    208 3 Mo \Program Files\InstallShield Installation Information\{13B792AA-C078-43A4-8A3A-8B12D629940D}\setup.ilg
    206 1 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\C96NWDEN
    197 786 Ko \Documents and Settings\Alissa Gouton\Local Settings\Application Data\Microsoft\Windows Live Contacts\le_moa@hotmail.com\shadow\contactcoll.cache
    0
    1. Utilisateur anonyme
       
      Ok maintenant defragmente.
      0
  16. sush
     
    voilà c'est faiiit et voilà le rapport.
    .. mais toujours pas de différence au niveau de ce oestibnsrthut de problème :(

    Volume (C:)
    Taille du volume = 466 Go
    Taille de cluster = 4 Ko
    Espace utilisé = 365 Go
    Espace libre = 101 Go
    Pourcentage d'espace libre = 21 %

    Fragmentation du volume
    Fragmentation totale = 0 %
    Fragmentation de fichiers = 0 %
    Fragmentation de l'espace libre = 0 %

    Fragmentation de fichiers
    Total de fichiers = 334 069
    Taille moyenne de fichier = 2 Mo
    Total de fichiers fragmentés = 11
    Total de fragments en trop = 0
    Nombre moyen de fragments par fichier = 0,99

    Fragmentation du fichier paginé
    Taille du fichier paginé = 2,00 Go
    Total de fragments = 1

    Fragmentation de dossier
    Total de dossiers = 13 878
    Dossiers fragmentés = 5
    Fragments de dossiers en trop = 64

    Fragmentation de la table de fichiers principale (MFT)
    Taille totale de la MFT = 341 Mo
    Nombre d'enregistrements dans la MFT = 348 279
    Pourcentage d'utilisation de la MFT = 99 %
    Total de fragments dans la MFT = 2

    --------------------------------------------------------------------------------
    Fragments Taille du fichierFichiers qui ne peuvent pas être défragmentés
    Aucun
    0
    1. Utilisateur anonyme
       
      Ok ouvre "Ccleaner" vas dans l'onglet "Option" puis "Avancé" puis décoches "Effacer uniquement les fichiers, du dossier temp de Windows, plus vieux que 48 heures.". Puis vas dans l'onglet "Nettoyeur" fais "Analyse" puis "Lancer le nettoyage". Puis vas dans l'onglet "Registre" puis fait "Chercher des erreurs" puis "Réparer les erreurs sélectionnée". Tu refais tous ca 4-5 fois.
      0
  17. sush
     
    c'est fait !
    0
    1. Utilisateur anonyme
       
      Ok est ce que ca bloque toujours.
      0
  18. sush
     
    oui :s

    .. https://www.canalblog.com/cf/blogdisclaimer.cfm?redirect=http%3A%2F%2Flouvreblondeau%2Ecanalblog%2Ecom%2F&bid=332318 voilà le site en particulier..

    en parlant avec un ami, je m'étais demandé si ce n'est pas un truc de "contrôle parental" comme il a dit au hasard. mais ça m'étonnerai vu que c'est mon pc à moi toute seule :s
    puis aussi, ce site demande un affirmation d'être bel et bien majeur, me suis demandé si c'était ça
    mais les vrai site bien pornos m'ouvrent leur porte comme des fleurs donc.....

    bref ça coince toujours!!!
    0
    1. Utilisateur anonyme
       
      Ok:

      Télécharge Mozilla Firerox c'est le meilleur navigateur: http://www.mozilla-europe.org/fr/
      0
  19. sush
     
    là ça marche... :)

    je laisse ça comme c'est? je formate? ..

    en tout cas merci beaucoup pour toute cette attention, quand je pense que je prenais des fois plus d'un jour pour répondre!
    merci beaucou beaucoup!
    0
  20. Utilisateur anonyme
     
    Télécharge ToolsCleaner de A.Roshtein sur ton Bureau.(sur un des 2 liens)
    http://pagesperso-orange.fr/AceRothstein/ToolsCleaner2.exe
    http://a-rothstein.changelog.fr/TC/ToolsCleaner2.exe
    · Clique sur Recherche et laisse le scan se terminer.
    · Clique, sur Suppression pour finaliser.
    · Tu peux, si tu le souhaites, te servir des Options facultatives.(Je te le conseille de faire les 4).
    · Clique sur Quitter, pour que le rapport puisse se créer.
    · Poste moi le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur( C:\).
    0