Site redirigé avec son bizzare

bonjouur,

alors voilà, depuis une semaine environ, certains sites ou blogs sont systématiquement redirigés, accompagnés d'un signal sonore moyennement agréable à entendre. D'ailleurs il m'arrive d'entendre ce signal en ouvrant un site (qui marche!) sans aucune raison particulière..

j'espère que vous allez pouvoir m'aider!!
merci d'avance
Configuration: Windows XP
Internet Explorer 7.0

19 réponses

Résumé de la discussion

Question centrale : des redirections vers d'autres sites, accompagnées d'un signal sonore, surviennent depuis environ une semaine et se produisent même sur des pages qui fonctionnent sans problème. Des réponses préconisent d'analyser le poste avec un outil comme HijackThis, puis de générer un rapport pour identifier les composants indésirables et les supprimer. Plusieurs interventions évoquent des analyses antivirus en ligne ou locales, avec BitDefender Online Scanner et Avira, afin d'identifier des éléments infectieux comme des adwares et d'appliquer les correctifs. D'autres suggestions soulignent l'importance de mettre à jour les logiciels et d'éviter les téléchargements douteux, tandis que le nettoyage et la réinitialisation des paramètres peuvent être nécessaires si les redirections persistent.

Bobot (l’IA à votre service)
  1. Contributeur sécurité
    j'en demandais pas tant :)))

    on va éviter de charger le topique ....
    1
    1. *Télécharge http://www.commentcamarche.net/telecharger/telecharger 159 hijackthis sur ton Bureau.
      *Ferme toutes les autres fenêtres, tous les autres programmes. Pas de connexion Internet.
      *Double clique dessus pour lancer l installation . Accepte la licence qui va apparaître par " I agree" .
      *Puis clique sur "Do a system scan and save a logfile"
      *Ferme HijackThis et fais un copier-coller du rapport en entier et poste le ici en réponse.(Clique sur "Edition -> Sélectionner tout", puis sur "Edition -> Copier" pour copier tout le contenu du rapport
      Colle le rapport que tu viens de copier sur ce forum
      *Note : le rapport se trouve dans C:\Program Files\Trend Micro\HijackThis
      *Tuto : "générer un rapport" http://pageperso.aol.fr/balltrap34/demohijack.htm
      0
      1. hmm :) un peu la honte
        highjackthis ne veut pas se télécharger. quand je clique sur l'image du disque dur ave la fleche verte ça me fait qu'actualiser la page! avec une gentille petite indication en bas à gauche "Erreur sur la page" ..

        (merci d'avoir accepté de bien vouloir prendre soin de mon ordi!!)
        0
      2. Logfile of Trend Micro HijackThis v2.0.2
        Scan saved at 20:18:43, on 03/06/2008
        Platform: Windows XP SP2 (WinNT 5.01.2600)
        MSIE: Internet Explorer v7.00 (7.00.6000.16640)
        Boot mode: Normal

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\System32\svchost.exe
        C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        C:\Program Files\Alwil Software\Avast4\ashServ.exe
        C:\WINDOWS\system32\spoolsv.exe
        C:\Program Files\3Com\3Com Wireless Utility\WLService.exe
        C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
        C:\Program Files\3Com\3Com Wireless Utility\WLanCfgAG.exe
        C:\Program Files\Bonjour\mDNSResponder.exe
        C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
        C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
        C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
        C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
        C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
        C:\WINDOWS\system32\nvsvc32.exe
        C:\WINDOWS\system32\svchost.exe
        C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
        C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
        C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
        C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
        C:\WINDOWS\system32\wuauclt.exe
        C:\WINDOWS\Explorer.EXE
        C:\Program Files\3Com\3Com Wireless Utility\InvHelp.exe
        C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
        C:\WINDOWS\system32\RUNDLL32.EXE
        C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        C:\WINDOWS\RTHDCPL.EXE
        C:\Program Files\Utilitaires\iTunes\iTunesHelper.exe
        C:\WINDOWS\system32\LVCOMSX.EXE
        C:\Program Files\Logitech\Video\LogiTray.exe
        C:\WINDOWS\system32\ctfmon.exe
        C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
        C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
        C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
        C:\Program Files\Google\Google Updater\GoogleUpdater.exe
        C:\Program Files\Logitech\Video\FxSvr2.exe
        C:\WINDOWS\system32\IcoSauve.exe
        C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
        C:\Program Files\iPod\bin\iPodService.exe
        C:\Program Files\Windows Live\Messenger\usnsvc.exe
        C:\Program Files\Internet Explorer\iexplore.exe
        C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
        C:\Documents and Settings\Alissa\Local Settings\Temporary Internet Files\Content.IE5\JFVB8S51\HiJackThis[1].exe

        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/toolbar/ie8/sidebar.html
        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.fr/?gws_rd=ssl
        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
        R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
        R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.fr/toolbar/ie8/sidebar.html
        R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
        R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.fr/search?q=%s
        R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;localhost
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
        R3 - URLSearchHook: (no name) - {9CB65206-89C4-402c-BA80-02D8C59F9B1D} - C:\Program Files\AskTBar\SrchAstt\2.bin\A5SRCHAS.DLL
        O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
        O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
        O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
        O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
        O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
        O2 - BHO: Ask Search Assistant BHO - {9CB65201-89C4-402c-BA80-02D8C59F9B1D} - C:\Program Files\AskTBar\SrchAstt\2.bin\A5SRCHAS.DLL
        O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
        O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
        O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\2.bin\ASKTBAR.DLL
        O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
        O3 - Toolbar: Ask Toolbar - {FE063DB9-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\2.bin\ASKTBAR.DLL
        O4 - HKLM\..\Run: [InvHelp.exe] C:\Program Files\3Com\3Com Wireless Utility\InvHelp.exe
        O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
        O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
        O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
        O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
        O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
        O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
        O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
        O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\Utilitaires\iTunes\iTunesHelper.exe"
        O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
        O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
        O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
        O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
        O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
        O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
        O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
        O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
        O4 - HKUS\S-1-5-19\..\RunOnce: [nltide1] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'SERVICE LOCAL')
        O4 - HKUS\S-1-5-19\..\RunOnce: [nltide2] cmd.exe /C rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,L,,4,N (User 'SERVICE LOCAL')
        O4 - HKUS\S-1-5-20\..\RunOnce: [nltide1] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'SERVICE RÉSEAU')
        O4 - Startup: IcoSauve.lnk = C:\WINDOWS\system32\IcoSauve.exe
        O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
        O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
        O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
        O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
        O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
        O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
        O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
        O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
        O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
        O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
        O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
        O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
        O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/FacebookPhotoUploader5.cab
        O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/webplayer/stage6/windows/DivXBrowserPlugin.cab
        O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
        O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
        O20 - Winlogon Notify: 3CLogon - C:\WINDOWS\SYSTEM32\3CLogon.dll
        O23 - Service: 3CRDAG675B (3Com 3CRDAG675B Wireless LAN PCI Adapter WLService) - Unknown owner - C:\Program Files\3Com\3Com Wireless Utility\WLService.exe
        O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
        O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
        O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
        O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
        O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
        O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
        O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Apache Software Foundation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
        O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
        O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
        O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
        O23 - Service: ForceWare user log service (nSvcLog) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
        O23 - Service: nTune Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
        O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
        0
        1. Re alors désinstalle tous tes logiciel de sécurité sauf Spybot. Et installe AntiVir,Malwarebytes Anti-Malware,Ccleaner et active le pare-feu XP.

          AntiVir: https://www.01net.com/outils/telecharger/windows/Securite/antivirus-antitrojan/fiches/tele13198.html
          Tutoriel AntiVir: https://www.malekal.com/avira-free-security-antivirus-gratuit/

          Malwarebytes Anti-Malware: http://www.malwarebytes.org/mbam/program/mbam-setup.exe
          Tutoriel Malwarebytes Anti-Malware: https://forum.pcastuces.com/malwarebytes_antimalwares___tutoriel-f31s3.htm

          Ccleaner: https://www.01net.com/outils/telecharger/windows/Utilitaire/nettoyeurs_et_installeurs/fiches/tele32599.html
          Tutoriel Ccleaner: https://www.vulgarisation-informatique.com/nettoyer-windows-ccleaner.php (Tu l'installe sans la bare d'outil Yahoo)

          PS: TU LES INSTALLES SEULEMENT ET TU NE FAIS PAS D'ANALYSE. TU FAIS UNE MISE A JOUR A ANTIVIR ET MALWAREBYTES ANTI-MALWARE ET SPYBOT.
          0
      3. voilà c'est fait..

        j'ai supprimé avast et installé antivir et malwarebyte anti-malware. ccleaner étant déjà là..

        j'espère que c'est tout juste :s
        0
        1. Tu fais un scan en mode sans échec avec AntiVir. Tu lances le scan et si il détecte un virus (normalement oui) tu cliques sur "delete" et "apply sélection to all following détections. (pour qu'il le supprimes automatiquement). A la fin du scan tu cliques sur "report" tu redémarre en mode normal puis tu me postes le rapport.

          Mode sans Echec:

          Au redémarrage de l'ordinateur, une fois le chargement du BIOS terminé, il y a un écran noir qui apparaît rapidement, appuie sur la touche [F8] (ou [F5] sur certains pc) jusqu'à l'affichage du menu des options avancées de Windows.
          Sélectionner "Mode sans échec" et appuie sur [Entrée]
          Il faudra choisir ta session habituelle, pas le compte "Administrateur" ou une autre.
          Regarde ici si besoin : http://pageperso.aol.fr/loraline60/mode_sans_echec.htm

          PS: JE TE CONSEILLE D'ENREGISTRER CE MESSAGE DANS TON BUREAU OU CAS OU.
          0
      4. voilà le rapport!
        maintenant.. je redémarre en mode normal et je reposte le rapport (pke je ne suis pas sûre d'avoir bien comprid :)

        Avira AntiVir Personal
        Report file date: mercredi 4 juin 2008 20:01

        Scanning for 1165085 virus strains and unwanted programs.

        Licensed to: Avira AntiVir PersonalEdition Classic
        Serial number: 0000149996-ADJIE-0001
        Platform: Windows XP
        Windows version: (Service Pack 2) [5.1.2600]
        Boot mode: Normally booted
        Username: SYSTEM
        Computer name: ALI

        Version information:
        BUILD.DAT : 8.1.00.295 16479 Bytes 09/04/2008 16:24:00
        AVSCAN.EXE : 8.1.2.12 311553 Bytes 18/03/2008 09:02:56
        AVSCAN.DLL : 8.1.1.0 53505 Bytes 07/02/2008 08:43:37
        LUKE.DLL : 8.1.2.9 151809 Bytes 28/02/2008 08:41:23
        LUKERES.DLL : 8.1.2.1 12033 Bytes 21/02/2008 08:28:40
        ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 10:33:34
        ANTIVIR1.VDF : 7.0.3.2 5447168 Bytes 07/03/2008 13:08:58
        ANTIVIR2.VDF : 7.0.3.62 337408 Bytes 21/03/2008 19:12:34
        ANTIVIR3.VDF : 7.0.3.68 57856 Bytes 25/03/2008 08:27:50
        Engineversion : 8.1.0.28
        AEVDF.DLL : 8.1.0.5 102772 Bytes 25/02/2008 09:58:21
        AESCRIPT.DLL : 8.1.0.19 229754 Bytes 07/04/2008 15:34:44
        AESCN.DLL : 8.1.0.12 115060 Bytes 07/04/2008 15:34:44
        AERDL.DLL : 8.1.0.19 418164 Bytes 07/04/2008 15:34:44
        AEPACK.DLL : 8.1.1.0 364918 Bytes 18/03/2008 11:20:42
        AEOFFICE.DLL : 8.1.0.15 192889 Bytes 07/04/2008 15:34:44
        AEHEUR.DLL : 8.1.0.15 1147253 Bytes 07/04/2008 15:34:44
        AEHELP.DLL : 8.1.0.11 115061 Bytes 07/04/2008 15:34:43
        AEGEN.DLL : 8.1.0.15 299379 Bytes 07/04/2008 15:34:43
        AEEMU.DLL : 8.1.0.5 430450 Bytes 07/04/2008 15:34:43
        AECORE.DLL : 8.1.0.25 168309 Bytes 08/04/2008 09:58:32
        AVWINLL.DLL : 1.0.0.7 14593 Bytes 23/01/2008 17:07:53
        AVPREF.DLL : 8.0.0.1 25857 Bytes 18/02/2008 10:37:50
        AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 13:26:47
        AVREG.DLL : 8.0.0.0 30977 Bytes 23/01/2008 17:07:49
        AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23
        AVEVTLOG.DLL : 8.0.0.11 114945 Bytes 28/02/2008 08:31:31
        SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
        SMTPLIB.DLL : 1.2.0.19 28929 Bytes 23/01/2008 17:08:39
        NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10
        RCIMAGE.DLL : 8.0.0.35 2371841 Bytes 10/03/2008 14:37:25
        RCTEXT.DLL : 8.0.32.0 86273 Bytes 06/03/2008 12:02:11

        Configuration settings for the scan:
        Jobname..........................: Complete system scan
        Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
        Logging..........................: low
        Primary action...................: interactive
        Secondary action.................: ignore
        Scan master boot sector..........: on
        Scan boot sector.................: on
        Boot sectors.....................: C:,
        Scan memory......................: on
        Process scan.....................: on
        Scan registry....................: on
        Search for rootkits..............: off
        Scan all files...................: Intelligent file selection
        Scan archives....................: on
        Recursion depth..................: 20
        Smart extensions.................: on
        Macro heuristic..................: on
        File heuristic...................: medium

        Start of the scan: mercredi 4 juin 2008 20:01

        The scan of running processes will be started
        Scan process 'avscan.exe' - '1' Module(s) have been scanned
        Scan process 'avcenter.exe' - '1' Module(s) have been scanned
        Scan process 'WLLoginProxy.exe' - '1' Module(s) have been scanned
        Scan process 'iexplore.exe' - '1' Module(s) have been scanned
        Scan process 'avgnt.exe' - '1' Module(s) have been scanned
        Scan process 'avguard.exe' - '1' Module(s) have been scanned
        Scan process 'sched.exe' - '1' Module(s) have been scanned
        Scan process 'usnsvc.exe' - '1' Module(s) have been scanned
        Scan process 'iPodService.exe' - '1' Module(s) have been scanned
        Scan process 'FxSvr2.exe' - '1' Module(s) have been scanned
        Scan process 'ONENOTEM.EXE' - '1' Module(s) have been scanned
        Scan process 'IcoSauve.exe' - '1' Module(s) have been scanned
        Scan process 'GoogleUpdater.exe' - '1' Module(s) have been scanned
        Scan process 'backWeb-8876480.exe' - '1' Module(s) have been scanned
        Scan process 'TeaTimer.exe' - '1' Module(s) have been scanned
        Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
        Scan process 'LogiTray.exe' - '1' Module(s) have been scanned
        Scan process 'LVCOMSX.EXE' - '1' Module(s) have been scanned
        Scan process 'iTunesHelper.exe' - '1' Module(s) have been scanned
        Scan process 'RTHDCPL.exe' - '1' Module(s) have been scanned
        Scan process 'rundll32.exe' - '1' Module(s) have been scanned
        Scan process 'GrooveMonitor.exe' - '1' Module(s) have been scanned
        Scan process 'InvHelp.exe' - '1' Module(s) have been scanned
        Scan process 'explorer.exe' - '1' Module(s) have been scanned
        Scan process 'alg.exe' - '1' Module(s) have been scanned
        Scan process 'Apache.exe' - '1' Module(s) have been scanned
        Scan process 'nSvcAppFlt.exe' - '1' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'nvsvc32.exe' - '1' Module(s) have been scanned
        Scan process 'nTuneService.exe' - '1' Module(s) have been scanned
        Scan process 'nSvcLog.exe' - '1' Module(s) have been scanned
        Scan process 'nSvcIp.exe' - '1' Module(s) have been scanned
        Scan process 'GoogleUpdaterService.exe' - '1' Module(s) have been scanned
        Scan process 'Apache.exe' - '1' Module(s) have been scanned
        Scan process 'mDNSResponder.exe' - '1' Module(s) have been scanned
        Scan process 'WLanCfgAG.exe' - '1' Module(s) have been scanned
        Scan process 'AppleMobileDeviceService.exe' - '1' Module(s) have been scanned
        Scan process 'WLService.exe' - '1' Module(s) have been scanned
        Scan process 'scardsvr.exe' - '1' Module(s) have been scanned
        Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
        Scan process 'ashServ.exe' - '1' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'svchost.exe' - '1' Module(s) have been scanned
        Scan process 'lsass.exe' - '1' Module(s) have been scanned
        Scan process 'services.exe' - '1' Module(s) have been scanned
        Scan process 'winlogon.exe' - '1' Module(s) have been scanned
        Scan process 'csrss.exe' - '1' Module(s) have been scanned
        Scan process 'smss.exe' - '1' Module(s) have been scanned
        51 processes with 51 modules were scanned

        Starting master boot sector scan:
        Master boot sector HD0
        [INFO] No virus was found!

        Start scanning boot sectors:
        Boot sector 'C:\'
        [INFO] No virus was found!

        Starting to scan the registry.
        The registry was scanned ( '30' files ).

        Starting the file scan:

        Begin scan in 'C:\'
        C:\pagefile.sys
        [WARNING] The file could not be opened!
        C:\Documents and Settings\Alissa\Bureau\Externe\Transit\Azureus\DBZ Manga.rar
        [0] Archive type: RAR
        --> DBZ livre 20-42.rar
        [1] Archive type: RAR
        --> Manga 04 - Le tournoi.exe
        [DETECTION] Is the Trojan horse TR/Agent.9331537
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa\Bureau\Externe\Transit\Azureus\Transcribe! v5.80.zip
        [0] Archive type: ZIP
        --> Keygen.exe
        [DETECTION] Is the Trojan horse TR/Crypt.XDR.Gen
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\2020setup.exe
        [DETECTION] Is the Trojan horse TR/Dldr.Secon.h.1.B
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\NULL
        [DETECTION] Is the Trojan horse TR/Lowzones.1.A
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\Program Files\Fichiers communs\GMT\gtrawbm.fil
        [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/Agent.AY Backdoor server programs
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\Program Files\WebSiteViewer\125016.dlr
        [DETECTION] Contains detection pattern of the dial-up program DIAL/300797
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\Recycled\Q330995.exe
        [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/Padodor.69334 Backdoor server programs
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\adiras.exe
        [DETECTION] Contains detection pattern of the dial-up program DIAL/32768.B
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\ccGetMgr.exe
        [DETECTION] Contains detection pattern of the worm WORM/Stration.Gen
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\2PBUK9LK\JavaSiteRequest[6].asp
        [0] Archive type: GZ
        --> JavaSiteRequest[6]
        [DETECTION] Contains detection pattern of the HTML script virus HTML/Infected.WebPage.Gen
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\2PBUK9LK\JavaSiteRequest[7].asp
        [0] Archive type: GZ
        --> JavaSiteRequest[7]
        [DETECTION] Contains detection pattern of the HTML script virus HTML/Infected.WebPage.Gen
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4LQJC9UZ\adv65[1].php
        [DETECTION] Contains detection pattern of the exploits EXP/HTML.Mht.67
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4LQJC9UZ\JavaSiteRequest[2].asp
        [0] Archive type: GZ
        --> JavaSiteRequest[2]
        [DETECTION] Contains detection pattern of the HTML script virus HTML/Infected.WebPage.Gen
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4LQJC9UZ\toolbar[1].txt
        [DETECTION] Is the Trojan horse TR/Dldr.Agent.EW.2
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ\213.159.117[1]
        [DETECTION] Is the Trojan horse TR/Dldr.Small.WV.1
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ\adv65[1].php
        [DETECTION] Contains detection pattern of the exploits EXP/HTML.Mht.67
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ\index[3].php
        [DETECTION] Contains suspicious code HEUR/HTML.Malware
        [NOTE] The fund was classified as suspicious.
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ\index[4].php
        [DETECTION] Contains suspicious code HEUR/HTML.Malware
        [NOTE] The fund was classified as suspicious.
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ\index[5].php
        [DETECTION] Contains suspicious code HEUR/HTML.Malware
        [NOTE] The fund was classified as suspicious.
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ\index[6].php
        [DETECTION] Contains suspicious code HEUR/HTML.Malware
        [NOTE] The fund was classified as suspicious.
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ\index[7].php
        [DETECTION] Contains suspicious code HEUR/HTML.Malware
        [NOTE] The fund was classified as suspicious.
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ\protect[1].php
        [DETECTION] Contains detection pattern of the Java script virus JS/Clicker.Lnkr.J.2
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ\sl[1].cab
        [0] Archive type: CAB (Microsoft)
        --> sl.ocx
        [DETECTION] Is the Trojan horse TR/Dldr.Agent.ex
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\5SQKHHPE\loaderadv65[1].jar
        [0] Archive type: ZIP
        --> Counter.class
        [DETECTION] Contains detection pattern of the Java script virus JS/OpenConnect.J.1
        --> Dummy.class
        [DETECTION] Is the Trojan horse TR/Forten.Java.2
        --> Matrix.class
        [DETECTION] Contains detection pattern of the Java virus JAVA/Beyond.D3
        --> Parser.class
        [DETECTION] Contains detection pattern of the Java script virus JS/OpenConnect.J.3
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\5SQKHHPE\loaderms[1].jar
        [0] Archive type: ZIP
        --> Counter.class
        [DETECTION] Contains detection pattern of the Java script virus JS/OpenConnect.J.1
        --> Dummy.class
        [DETECTION] Is the Trojan horse TR/Forten.Java.2
        --> Matrix.class
        [DETECTION] Contains detection pattern of the Java virus JAVA/Beyond.D3
        --> Parser.class
        [DETECTION] Contains detection pattern of the Java script virus JS/OpenConnect.J.3
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\5SQKHHPE\protect[2].php
        [DETECTION] Contains detection pattern of the Java script virus JS/Clicker.Lnkr.J.2
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\5SQKHHPE\systime[1].txt
        [DETECTION] Is the Trojan horse TR/StartPage.PU
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\5SQKHHPE\x[1].chm
        [0] Archive type: CHM
        --> /x.htm
        [DETECTION] Is the Trojan horse TR/Dldr.Agent.EW.1
        --> /load.exe
        [DETECTION] Is the Trojan horse TR/Dldr.Harnig.AL.13
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\8CJ4VBRP\asmfiles[1].cab
        [0] Archive type: CAB (Microsoft)
        --> asm.exe
        [DETECTION] Contains suspicious code HEUR/Crypted
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\F29ACSI4\x[1].chm
        [DETECTION] Is the Trojan horse TR/Dldr.Small.WV.2
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\HAQ0SJJZ\213.159.117[1]
        [DETECTION] Is the Trojan horse TR/Dldr.Small.WV.1
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\HAQ0SJJZ\adv65[1].php
        [DETECTION] Contains detection pattern of the exploits EXP/HTML.Mht.67
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\NOF4KJ6R\JavaSiteRequest[2].asp
        [0] Archive type: GZ
        --> JavaSiteRequest[2]
        [DETECTION] Contains detection pattern of the HTML script virus HTML/Infected.WebPage.Gen
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\YRM7WL4D\classload[1].jar
        [0] Archive type: ZIP
        --> GetAccess.class
        [DETECTION] Contains detection pattern of the Java virus JAVA/ClassLoader.D
        --> InsecureClassLoader.class
        [DETECTION] Is the Trojan horse TR/Forten.Java.2.B
        --> Dummy.class
        [DETECTION] Is the Trojan horse TR/Forten.Java.2
        --> Installer.class
        [DETECTION] Is the Trojan horse TR/Dldr.OpenConn.F
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\YRM7WL4D\index[1]
        [DETECTION] Contains suspicious code HEUR/HTML.Malware
        [NOTE] The fund was classified as suspicious.
        [NOTE] The file was deleted!
        C:\Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\YRM7WL4D\ms[1].php
        [DETECTION] Contains detection pattern of the HTML script virus HTML/MHT.Gen
        [NOTE] The file was deleted!
        C:\Program Files\SmartVideoCodec\Uninstall.exe
        [DETECTION] Contains detection pattern of the dropper DR/Dldr.Zlob.AAGR
        [NOTE] The file was deleted!

        End of the scan: mercredi 4 juin 2008 23:27
        Used time: 3:26:06 min

        The scan has been done completely.

        13823 Scanning directories
        631659 Files were scanned
        40 viruses and/or unwanted programs were found
        7 Files were classified as suspicious:
        37 files were deleted
        0 files were repaired
        0 files were moved to quarantine
        0 files were renamed
        1 Files cannot be scanned
        631619 Files not concerned
        12549 Archives were scanned
        1 Warnings
        37 Notes
        0
        1. Ok il a détecté et supprimé 37 virus. Maintenant fais ceci:

          1) Redémarre en "Mode sans échec"

          Au redémarrage de l'ordinateur, une fois le chargement du BIOS terminé, il y a un écran noir qui apparaît rapidement, appuie sur la touche [F8] (ou [F5] sur certains pc) jusqu'à l'affichage du menu des options avancées de Windows.
          Sélectionner "Mode sans échec" et appuie sur [Entrée]
          Il faudra choisir ta session habituelle, pas le compte "Administrateur" ou une autre.
          Regarde ici si besoin : http://pageperso.aol.fr/loraline60/mode_sans_echec.htm

          Ouvre le fichier texte sauvegardé sur le Bureau afin de suivre les instructions comme il faut.

          2) Scan avec Malwarebyte's Anti-Malware

          *Lance Malwarebyte's Anti-Malware
          *Puis vs dans l'onglet "Recherche" puis coche "Exécuter un examen complet" puis "Rechercher sélectionne tes disques durs" puis clique sur "Lancer l’examen"
          *A la fin du scan >>> clique sur Afficher les résultats puis sur Enregistrer le rapport
          *Suppression des éléments détectés >>>> clique sur Supprimer la sélection
          *S'il t'es demandé de redémarrer >>> clique sur "Yes"

          *--> Un rapport de scan s'ouvre, enregistre sur ton Bureau et poste ce rapport en réponse.
          0
      5. voilà voilà i'm back

        06.06.2008 13:43:14 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
        06.06.2008 13:43:14 - Backup Directory: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\
        06.06.2008 13:43:14 - Temp Directory: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\
        06.06.2008 13:43:14 - Using System's global Proxy settings
        06.06.2008 13:43:14 - Start the Update GUI... Displaymode: 1
        06.06.2008 13:43:14 - selftest successful: C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlib.dll
        06.06.2008 13:43:14 - selftest successful: C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlibrc.dll
        06.06.2008 13:43:14 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
        06.06.2008 13:43:14 - Backup Directory: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\
        06.06.2008 13:43:14 - Temp Directory: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\
        06.06.2008 13:43:14 - Using System's global Proxy settings
        06.06.2008 13:43:14 - Start the Update GUI... Displaymode: 1
        06.06.2008 13:43:14 - selftest successful: C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlib.dll
        06.06.2008 13:43:14 - selftest successful: C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlibrc.dll
        06.06.2008 13:43:14 - Avira AntiVir Personal – Free Antivirus
        06.06.2008 13:43:15 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\idx/master.idx to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\IDX\master.idx
        06.06.2008 13:43:15 - Master IDX file has changed
        06.06.2008 13:43:18 - Keyfile: OK [FULL Mode]
        06.06.2008 13:43:19 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/vdf.info.gz
        06.06.2008 13:43:22 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/specvir-nt.info.gz
        06.06.2008 13:43:27 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/ave2.info.gz
        06.06.2008 13:43:27 - Downloading the product.info file from http://dl8.freeav.net/upd/idx/info-wks-classic-nt-en.info.gz
        06.06.2008 13:43:28 - Module: SELFUPDATE Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 15
        06.06.2008 13:43:28 - Module: MAIN Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 78
        06.06.2008 13:43:28 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.dll 8.0.0.4 < 8.0.1.3
        06.06.2008 13:43:28 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe 8.0.1.15 < 8.0.1.18
        06.06.2008 13:43:28 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avwsc.exe 8.0.0.9 < 8.0.0.12
        06.06.2008 13:43:29 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\setup.exe 8.0.0.11 < 8.0.0.17
        06.06.2008 13:43:29 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\wksstats.dll 8.0.0.4 < 8.0.0.5
        06.06.2008 13:43:29 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys 7.0.1.8 < 7.0.2.6
        06.06.2008 13:43:29 - build.dat 3440f5072f109b314342daf5ce6de635 != 7dc891d8430a7b4d921e5879a9182cea
        06.06.2008 13:43:29 - Module: TEXT Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 3
        06.06.2008 13:43:29 - Module: ANTISPAM_BETA02 Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
        06.06.2008 13:43:29 - Module: VDF Source: vdf\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 4
        06.06.2008 13:43:29 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir3.vdf 7.0.4.144 < 7.0.4.155
        06.06.2008 13:43:29 - Module: AVREP_NT Source: engine\nt\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
        06.06.2008 13:43:29 - Module: AVE2 Source: ave2\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 13
        06.06.2008 13:43:29 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aecore.dll 8.1.0.30 < 8.1.0.31
        06.06.2008 13:43:29 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aegen.dll 8.1.0.25 < 8.1.0.28
        06.06.2008 13:43:29 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeheur.dll 8.1.0.29 < 8.1.0.30
        06.06.2008 13:43:29 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescn.dll 8.1.0.20 < 8.1.0.21
        06.06.2008 13:43:29 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescript.dll 8.1.0.37 < 8.1.0.40
        06.06.2008 13:43:29 - aeset.dat be93edc240f6b51f65a680428e041bfe != 12cdda964969067669868dd11c7269d7
        06.06.2008 13:43:29 - Module: DRV Source: winwks\en\ Destination: C:\WINDOWS\SYSTEM32\drivers\ Files: 4
        06.06.2008 13:43:29 - Module: PRODINFO Source: winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\ Files: 1
        06.06.2008 13:43:29 - Minifilter is installed
        06.06.2008 13:43:29 - Minifilter is possible
        06.06.2008 13:43:29 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | FilterType
        06.06.2008 13:43:29 - Initialize avnotify.exe
        06.06.2008 13:43:29 - Starting avnotify.exe successful
        06.06.2008 13:43:29 - Preparing to download files
        06.06.2008 13:43:29 - 14 files need to be downloaded / copied from http://dl8.freeav.net/upd/
        06.06.2008 13:43:29 - #1: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/avgio.dll.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/avgio.dll
        06.06.2008 13:43:30 - #2: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/avguard.exe.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/avguard.exe
        06.06.2008 13:43:32 - #3: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/avwsc.exe.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/avwsc.exe
        06.06.2008 13:43:34 - #4: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/setup.exe.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/setup.exe
        06.06.2008 13:43:42 - #5: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/wksstats.dll.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/wksstats.dll
        06.06.2008 13:43:43 - #6: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/basic-nt/xp/avgntflt.sys.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/xp/avgntflt.sys
        06.06.2008 13:43:44 - #7: Downloading and extracting http://dl8.freeav.net/upd/winwks/en/classic-nt/build.dat.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\classic-nt/build.dat
        06.06.2008 13:43:45 - #8: Downloading and extracting http://dl8.freeav.net/upd/vdf/antivir3.vdf.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\vdf\antivir3.vdf
        06.06.2008 13:43:50 - #9: Downloading and extracting http://dl8.freeav.net/upd/ave2/aecore.dll.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aecore.dll
        06.06.2008 13:43:52 - #10: Downloading and extracting http://dl8.freeav.net/upd/ave2/aegen.dll.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aegen.dll
        06.06.2008 13:43:56 - #11: Downloading and extracting http://dl8.freeav.net/upd/ave2/aeheur.dll.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aeheur.dll
        06.06.2008 13:44:10 - #12: Downloading and extracting http://dl8.freeav.net/upd/ave2/aescn.dll.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aescn.dll
        06.06.2008 13:44:11 - #13: Downloading and extracting http://dl8.freeav.net/upd/ave2/aescript.dll.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aescript.dll
        06.06.2008 13:44:15 - #14: Downloading and extracting http://dl8.freeav.net/upd/ave2/aeset.dat.gz to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aeset.dat
        06.06.2008 13:44:20 - Status of service AntiVirService is running
        06.06.2008 13:44:20 - Minifilter is installed
        06.06.2008 13:44:20 - Minifilter is possible
        06.06.2008 13:44:20 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | FilterType
        06.06.2008 13:44:20 - Status of service AntiVirService is running
        06.06.2008 13:44:20 - Initialize avscan.exe
        06.06.2008 13:44:20 - Initialize avcenter.exe
        06.06.2008 13:44:20 - Initialize avgnt.exe
        06.06.2008 13:44:20 - Status of service AntiVirService is running
        06.06.2008 13:44:20 - Cannot stop the service AntiVirService
        06.06.2008 13:44:22 - Service AntiVirService successfully stopped
        06.06.2008 13:44:23 - Service avgio successfully stopped
        06.06.2008 13:44:23 - avscan.exe closed.
        06.06.2008 13:44:24 - avgnt.exe closed.
        06.06.2008 13:44:24 - Starting to install
        06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.dll to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\avgio.dll
        06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\avguard.exe
        06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\avwsc.exe to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\avwsc.exe
        06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\setup.exe to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\setup.exe
        06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\wksstats.dll to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\wksstats.dll
        06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\avgntflt.sys
        06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\build.dat to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\build.dat
        06.06.2008 13:44:24 - Processing module MAIN Source: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
        06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/avgio.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.dll
        06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/avguard.exe to C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
        06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/avwsc.exe to C:\Program Files\Avira\AntiVir PersonalEdition Classic\avwsc.exe
        06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/setup.exe to C:\Program Files\Avira\AntiVir PersonalEdition Classic\setup.exe
        06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/wksstats.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\wksstats.dll
        06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\basic-nt/xp/avgntflt.sys to C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys
        06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\winwks\en\classic-nt/build.dat to C:\Program Files\Avira\AntiVir PersonalEdition Classic\build.dat
        06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir3.vdf to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\antivir3.vdf
        06.06.2008 13:44:24 - Processing module VDF Source: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\vdf\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
        06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\vdf\antivir3.vdf to C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir3.vdf
        06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aecore.dll to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aecore.dll
        06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aegen.dll to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aegen.dll
        06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeheur.dll to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aeheur.dll
        06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescn.dll to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aescn.dll
        06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescript.dll to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aescript.dll
        06.06.2008 13:44:24 - Copy file C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeset.dat to C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\aeset.dat
        06.06.2008 13:44:24 - Processing module AVE2 Source: C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\ Destination: C:\Program Files\Avira\AntiVir PersonalEdition Classic\
        06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aecore.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aecore.dll
        06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aegen.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aegen.dll
        06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aeheur.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeheur.dll
        06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aescn.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescn.dll
        06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aescript.dll to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescript.dll
        06.06.2008 13:44:24 - Copy file C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_484922d1\ave2\aeset.dat to C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeset.dat
        06.06.2008 13:44:24 - A total of 14 files were updated
        06.06.2008 13:44:24 - Initialize AVWSC.EXE
        06.06.2008 13:44:24 - Registry entry created successfully: Software\Avira\AntiVir PersonalEdition Classic |UpdateInProgress
        06.06.2008 13:44:24 - Reading registry value successful: Software\Avira\AntiVir PersonalEdition Classic | FilterType
        06.06.2008 13:44:24 - Status of service AntiVirService is stopped
        06.06.2008 13:44:27 - Service AntiVirService successfully started
        06.06.2008 13:44:27 - Starting avgnt.exe successful
        06.06.2008 13:44:27 - Dialup: 0
        06.06.2008 13:44:27 - Downloaded bytes: 1583890
        06.06.2008 13:44:27 - Downloaded file(s): 14
        06.06.2008 13:44:27 - Downloaded file(s): avgio.dll; avguard.exe; avwsc.exe; setup.exe; wksstats.dll; avgntflt.sys; build.dat; antivir3.vdf; aecore.dll; aegen.dll; aeheur.dll; aescn.dll; aescript.dll; aeset.dat
        06.06.2008 13:44:27 - Required time: 01:13
        06.06.2008 13:44:27 - Registry entry created successfully: Software\Avira\AntiVir PersonalEdition Classic |LastUpdate
        06.06.2008 13:44:28 - Update finished successfully
        0
        1. Salut ceci c'est quoi ?
          0
      6. ben c'est quand j'ai allumé l'ordi, il a fait un espèce de petit scan tout seul, je me suis alors dit que c'est le rapport de ce scan là que tu voulais une fois l'ordi allumé?
        0
        1. 1) Redémarre en "Mode sans échec"

          Au redémarrage de l'ordinateur, une fois le chargement du BIOS terminé, il y a un écran noir qui apparaît rapidement, appuie sur la touche [F8] (ou [F5] sur certains pc) jusqu'à l'affichage du menu des options avancées de Windows.
          Sélectionner "Mode sans échec" et appuie sur [Entrée]
          Il faudra choisir ta session habituelle, pas le compte "Administrateur" ou une autre.
          Regarde ici si besoin : http://pageperso.aol.fr/loraline60/mode_sans_echec.htm

          Ouvre le fichier texte sauvegardé sur le Bureau afin de suivre les instructions comme il faut.

          2) Scan avec Malwarebyte's Anti-Malware

          *Lance Malwarebyte's Anti-Malware
          *Puis vs dans l'onglet "Recherche" puis coche "Exécuter un examen complet" puis "Rechercher sélectionne tes disques durs" puis clique sur "Lancer l’examen"
          *A la fin du scan >>> clique sur Afficher les résultats puis sur Enregistrer le rapport
          *Suppression des éléments détectés >>>> clique sur Supprimer la sélection
          *S'il t'es demandé de redémarrer >>> clique sur "Yes"

          *--> Un rapport de scan s'ouvre, enregistre sur ton Bureau et poste ce rapport en réponse.
          0
          1. Malwarebytes' Anti-Malware 1.14
            Version de la base de données: 821

            20:06:12 06/06/2008
            mbam-log-6-6-2008 (20-06-08).txt

            Type de recherche: Examen complet (C:\|D:\|E:\|)
            Eléments examinés: 381875
            Temps écoulé: 40 minute(s), 56 second(s)

            Processus mémoire infecté(s): 0
            Module(s) mémoire infecté(s): 0
            Clé(s) du Registre infectée(s): 1
            Valeur(s) du Registre infectée(s): 0
            Elément(s) de données du Registre infecté(s): 0
            Dossier(s) infecté(s): 1
            Fichier(s) infecté(s): 2

            Processus mémoire infecté(s):
            (Aucun élément nuisible détecté)

            Module(s) mémoire infecté(s):
            (Aucun élément nuisible détecté)

            Clé(s) du Registre infectée(s):
            HKEY_CLASSES_ROOT\CLSID\{9afb8248-617f-460d-9366-d71cdeda3179} (Adware.MyWebSearch) -> No action taken.

            Valeur(s) du Registre infectée(s):
            (Aucun élément nuisible détecté)

            Elément(s) de données du Registre infecté(s):
            (Aucun élément nuisible détecté)

            Dossier(s) infecté(s):
            C:\Program Files\SmartVideoCodec (Trojan.Fakealert) -> No action taken.

            Fichier(s) infecté(s):
            C:\Program Files\SmartVideoCodec\install.ico (Trojan.Fakealert) -> No action taken.
            C:\Program Files\SmartVideoCodec\SmartVideoCodec.ocx (Trojan.Fakealert) -> No action taken.

            voili voilou
            0
            1. Ok ouvre "Malwarebytes' Anti-Malware" va dans "Quarantaine" puis fais "Tout supprimé".
              0
          2. voilà c'est fait

            il n'y a toujours pas de changements
            :s
            0
            1. Ok merci maintenant fais un scan en ligne avec Internet Explorer stp:

              BitDefender en ligne: http://www.bitdefender.fr/scan_fr/scan8/ie.html
              Tutoriel BitDefender en ligne: http://cybersecurite.xooit.com/t201-Scan-en-ligne-BitDefender.htm

              Ps: N'oublies pas de me poster le rapport. Si tu as besoin d'aide aide toi tu tutoriel.
              0
          3. Contributeur sécurité
            bonsoir a vous deux ;

            pour suivre ....
            0
            1. Salut jfkpresident la bienvenue.

              http://www.slepsow.be/Images/tapis_rouge.jpg
              0
          4. bonsoir jfkpresident!

            voilà le court rapport

            BitDefender Online Scanner - Rapport virus en temps réel
            Généré à: Sat, Jun 07, 2008 - 01:11:01
            ________________________________________
            Info d'analyse
            Fichiers scannés 137623
            Infectés Fichiers 1

            Virus Détectés
            Application.Adware.Savenow.G 1

            ________________________________________
            Ce sommaire du processus d'analyse sera utilisé par les laboratoires Antivirus BitDefender pour créer des statistiques agréguées sur l'activité des virus dans le monde.
            0
            1. Ok fais ceci maintenant:

              Défragmenter le disque dur:

              *Pour l'exécuter, cliquez sur le bouton Démarrer, sur Tous les programmes, sur Accessoires, Outils systèmes puis sur Défragmenteur de disque.
              *Cliquez sur le bouton Analyser. Le logiciel examine alors votre disque dur.
              *Cliquez sur le bouton Afficher le rapport. (enregistre le et poste le moi stp) (que si tu as XP).
              *Cliquez sur le bouton Défragmenter.
              0
          5. Volume (C:)
            Taille du volume = 466 Go
            Taille de cluster = 4 Ko
            Espace utilisé = 365 Go
            Espace libre = 101 Go
            Pourcentage d'espace libre = 21 %

            Fragmentation du volume
            Fragmentation totale = 6 %
            Fragmentation de fichiers = 12 %
            Fragmentation de l'espace libre = 0 %

            Fragmentation de fichiers
            Total de fichiers = 334 067
            Taille moyenne de fichier = 2 Mo
            Total de fichiers fragmentés = 25 657
            Total de fragments en trop = 72 872
            Nombre moyen de fragments par fichier = 1,21

            Fragmentation du fichier paginé
            Taille du fichier paginé = 2,00 Go
            Total de fragments = 1

            Fragmentation de dossier
            Total de dossiers = 13 878
            Dossiers fragmentés = 1 159
            Fragments de dossiers en trop = 17 009

            Fragmentation de la table de fichiers principale (MFT)
            Taille totale de la MFT = 341 Mo
            Nombre d'enregistrements dans la MFT = 348 277
            Pourcentage d'utilisation de la MFT = 99 %
            Total de fragments dans la MFT = 2

            --------------------------------------------------------------------------------
            Fragments Taille du fichierFichiers les plus fragmentés
            1,203 6 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4T6J8XYZ
            1,194 5 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4LQJC9UZ
            1,188 427 Mo \Program Files\JEUX\Warcraft III\war3.mpq
            956 5 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\KT2N896R
            679 52 Mo \Documents and Settings\Alissa Gouton\Application Data\SecondLife\cache\texture.cache
            560 54 Mo \Documents and Settings\Alissa Gouton\Local Settings\Temporary Internet Files\Content.IE5\Y22SMTWY\9b0fc02ab793be785aed759254a46eed[1]
            545 47 Mo \Documents and Settings\Alissa\Local Settings\Temporary Internet Files\Content.IE5\VF9JZEUC\ccdf91c93157ef9badba011dc0f91aab[1]
            452 98 Mo \Program Files\GXTranscoder.net AWE\outDir\CDImage.MP3
            435 55 Mo \Documents and Settings\Alissa Gouton\Local Settings\Application Data\Gas Powered Games\SupremeCommander\savegames\Ali\aeons wesh.SupremeCommanderCampaignSave
            390 384 Mo \Program Files\JEUX\Warcraft III\War3x.mpq
            367 26 Mo \Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\QU7WXY4T\iTunes[1].msi
            323 1 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\NOF4KJ6R
            309 1 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\2PBUK9LK
            304 19 Mo \Documents and Settings\Alissa\Local Settings\Temporary Internet Files\Content.IE5\MIH9HVRC\scnAVavbase13500000[1].cab
            303 1 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\0DYXK5CF
            298 2 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\C58ZQXUR
            295 2 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\4LCQXYCZ
            294 1 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\GD2JW56F
            293 1 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\CN2NCJ0R
            290 181 Mo \Documents and Settings\Alissa Gouton\Mes documents\eMule Downloads\Incoming\Queens of the Stone Age - full Discografia (3 Cds)by alexman.rar
            254 19 Mo \Documents and Settings\Visiteurs\Local Settings\Temporary Internet Files\Content.IE5\27X1VPJQ\get_video[2]
            231 17 Mo \WINDOWS\Installer\20bc04.msi
            228 1 Mo \Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\SDHelper.log
            221 123 Mo \Documents and Settings\Alissa\Local Settings\Application Data\Google\GoogleEarth\dbCache.dat
            220 1 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\WNSPO5M3
            208 3 Mo \Program Files\InstallShield Installation Information\{13B792AA-C078-43A4-8A3A-8B12D629940D}\setup.ilg
            206 1 Mo \Documents and Settings\Alissa Gouton\Bureau\HP\(E) HP_PAVILION\WINDOWS\Temporary Internet Files\Content.IE5\C96NWDEN
            197 786 Ko \Documents and Settings\Alissa Gouton\Local Settings\Application Data\Microsoft\Windows Live Contacts\le_moa@hotmail.com\shadow\contactcoll.cache
            0
            1. Ok maintenant defragmente.
              0
          6. voilà c'est faiiit et voilà le rapport.
            .. mais toujours pas de différence au niveau de ce oestibnsrthut de problème :(

            Volume (C:)
            Taille du volume = 466 Go
            Taille de cluster = 4 Ko
            Espace utilisé = 365 Go
            Espace libre = 101 Go
            Pourcentage d'espace libre = 21 %

            Fragmentation du volume
            Fragmentation totale = 0 %
            Fragmentation de fichiers = 0 %
            Fragmentation de l'espace libre = 0 %

            Fragmentation de fichiers
            Total de fichiers = 334 069
            Taille moyenne de fichier = 2 Mo
            Total de fichiers fragmentés = 11
            Total de fragments en trop = 0
            Nombre moyen de fragments par fichier = 0,99

            Fragmentation du fichier paginé
            Taille du fichier paginé = 2,00 Go
            Total de fragments = 1

            Fragmentation de dossier
            Total de dossiers = 13 878
            Dossiers fragmentés = 5
            Fragments de dossiers en trop = 64

            Fragmentation de la table de fichiers principale (MFT)
            Taille totale de la MFT = 341 Mo
            Nombre d'enregistrements dans la MFT = 348 279
            Pourcentage d'utilisation de la MFT = 99 %
            Total de fragments dans la MFT = 2

            --------------------------------------------------------------------------------
            Fragments Taille du fichierFichiers qui ne peuvent pas être défragmentés
            Aucun
            0
            1. Ok ouvre "Ccleaner" vas dans l'onglet "Option" puis "Avancé" puis décoches "Effacer uniquement les fichiers, du dossier temp de Windows, plus vieux que 48 heures.". Puis vas dans l'onglet "Nettoyeur" fais "Analyse" puis "Lancer le nettoyage". Puis vas dans l'onglet "Registre" puis fait "Chercher des erreurs" puis "Réparer les erreurs sélectionnée". Tu refais tous ca 4-5 fois.
              0
          7. c'est fait !
            0
            1. Ok est ce que ca bloque toujours.
              0
          8. oui :s

            .. https://www.canalblog.com/cf/blogdisclaimer.cfm?redirect=http%3A%2F%2Flouvreblondeau%2Ecanalblog%2Ecom%2F&bid=332318 voilà le site en particulier..

            en parlant avec un ami, je m'étais demandé si ce n'est pas un truc de "contrôle parental" comme il a dit au hasard. mais ça m'étonnerai vu que c'est mon pc à moi toute seule :s
            puis aussi, ce site demande un affirmation d'être bel et bien majeur, me suis demandé si c'était ça
            mais les vrai site bien pornos m'ouvrent leur porte comme des fleurs donc.....

            bref ça coince toujours!!!
            0
            1. Ok:

              Télécharge Mozilla Firerox c'est le meilleur navigateur: http://www.mozilla-europe.org/fr/
              0
          9. là ça marche... :)

            je laisse ça comme c'est? je formate? ..

            en tout cas merci beaucoup pour toute cette attention, quand je pense que je prenais des fois plus d'un jour pour répondre!
            merci beaucou beaucoup!
            0
            1. Télécharge ToolsCleaner de A.Roshtein sur ton Bureau.(sur un des 2 liens)
              http://pagesperso-orange.fr/AceRothstein/ToolsCleaner2.exe
              http://a-rothstein.changelog.fr/TC/ToolsCleaner2.exe
              · Clique sur Recherche et laisse le scan se terminer.
              · Clique, sur Suppression pour finaliser.
              · Tu peux, si tu le souhaites, te servir des Options facultatives.(Je te le conseille de faire les 4).
              · Clique sur Quitter, pour que le rapport puisse se créer.
              · Poste moi le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur( C:\).
              0