Virus win 32

Bonjour, apres un scan avast le rapport me dit que j'ai des menaces win32 small et win32bredolad et win 32-troj-gen et impossible de faire quoi que ce soit les fichier son introuvables pouver vous m'aider merci

7 réponses

  1. Modérateur
    Salut,

    Bredolab, c'est mal.
    y a des chances que ton PC soit une poubelle numérique :)

    Désactive les logiciels de protection (Antivirus, Antispywares) puis :

    Télécharge Combofix sUBs : http://download.bleepingcomputer.com/sUBs/ComboFix.exe et sauvegarde le sur ton bureau et pas ailleurs!

    Double-clic sur combofix, accepte la licence d'utilisation et laisse toi guider.

    Eventuellement, installe la console de récupération comme cela est conseillé

    Attends que combofix ait terminé, un rapport sera créé. Poste le rapport.
    Si le rapport ne passe pas, envoie le sur ce site : http://www.cijoint.fr/
    et donne le lien ici :)

    Tu as le tutorial sur ce lien pour t'aider : https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix

    PS : si Combofix ne se lance pas, renomme le fichier Combofix et retente.

    Si pas mieux, tente en mode sans échec sans prise en charge du réseau : Redémarre en mode sans échec, pour cela, redémarre l'ordinateur, avant le logo Windows, tapote sur la touche F8, un menu va apparaître, choisis Mode sans échec et appuye sur la touche entrée du clavier.
    3
    1. Contributeur sécurité
      Up ;)
      0
      1. Modérateur
        heu ?? pourquoi up ?
        0
    2. Modérateur
      Maintiens tes logiciel à jour c'est important, utilise ce programme : /faq/13362-mettre-a-jour-son-pc-contre-les-failles-de-securite
      Absolument à faire.

      Pour désinstaller Combofix :
      - Menu Démarrer / exécuter et tape : Combofix /uninstall puis OK (attention il y a pas d'espace entre le / et le uninstall)

      Un peu de lecture pour éviter les infections :
      - connaitre et éviter les infections : https://www.malekal.com/fichiers/projetantimalwares/ProjetAntiMalware-courte.pdf
      - sécuriser son PC : http://forum.malekal.com/comment-securiser-son-ordinateur.html

      0
      1. Modérateur
        hummm y a une truc qui est pas clair et que je sens pas.
        Ton dernier scan Avast! remonte à quand ?

        Fais en un de scan et fais une capture du scan et envoie l'image là : http://www.cijoint.fr
        donne le lien.
        0
        1. comment on fait
          0
        2. je te remerci apres le dernier scan il ni avait plus rien je regardai pas les dates Des scan en ce moment j'ai pas trop le temp je verifi ce week et te tien au courant
          0
        3. Modérateur
          j'm'disais :)
          0
      2. Modérateur
        Rien de vraiment alarmant dans ton rapport.
        Pas d'infection active à priori.

        Les détections se font dans quel fichier ?
        0
        1. les fichier son introuvable et la j&ai eu du mal a rallumer le pc ecran noir et ventilo bloque
          0
        2. Modérateur
          écran noire à quel moment ?

          Le ventilo fait du bruit ?

          Si oui, vérifie la température du PC.
          0
        3. le pc refonctionne mais apres annalyse avast toujours le meme resultat 3alerte haute impossible a corriger ou effacer fichier introuvable c:\users\clement...\~TMB110.tmp et c:\users\leaappdata\L...\hnfgd.exe et c:\users\clement...\~MMBB7B
          0
        4. Modérateur
          Tu aurais moyen d'envoyer ces fichiers sur http://upload.malekal.com ?
          0
        5. ces fichier son introuvable s'est le resulta du scan avast dit moi ou je peut les reprendre si mes enfants les on suprimer ?
          0
      3. ComboFix 10-06-06.01 - Karen 06/06/2010 20:45:11.1.2 - x86
        Lancé depuis: c:\users\Karen\Desktop\ComboFix.exe
        SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
        .

        (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
        .

        c:\windows\system32\%appdata%

        .
        ((((((((((((((((((((((((((((( Fichiers créés du 2010-05-06 au 2010-06-06 ))))))))))))))))))))))))))))))))))))
        .

        2010-06-06 18:51 . 2010-06-06 18:51 -------- d-----w- c:\users\lea\AppData\Local\temp
        2010-06-06 18:51 . 2010-06-06 18:51 -------- d-----w- c:\users\Default\AppData\Local\temp
        2010-06-06 18:51 . 2010-06-06 18:51 -------- d-----w- c:\users\clement\AppData\Local\temp
        2010-05-26 10:03 . 2010-04-23 14:13 2048 ----a-w- c:\windows\system32\tzres.dll
        2010-05-12 16:17 . 2010-05-12 16:17 -------- d-----w- c:\users\clement\AppData\Roaming\Dofus-2.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
        2010-05-12 07:31 . 2010-01-29 15:40 738816 ----a-w- c:\windows\system32\inetcomm.dll

        .
        (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
        .
        2010-06-05 07:56 . 2008-12-21 09:43 -------- d-----w- c:\program files\Microsoft Silverlight
        2010-06-03 14:57 . 2008-01-21 08:40 669328 ----a-w- c:\windows\system32\perfh00C.dat
        2010-06-03 14:57 . 2008-01-21 08:40 123350 ----a-w- c:\windows\system32\perfc00C.dat
        2010-06-01 09:24 . 2008-12-10 18:47 978 ----a-w- c:\users\lea\AppData\Roaming\wklnhst.dat
        2010-06-01 09:18 . 2010-06-01 09:18 501872 ----a-w- c:\programdata\Google\Google Toolbar\Update\gtb5256.tmp.exe
        2010-05-31 20:23 . 2010-01-18 19:25 -------- d-----w- c:\users\Karen\AppData\Roaming\Apple Computer
        2010-05-31 10:34 . 2008-12-26 16:42 680 ----a-w- c:\users\clement\AppData\Local\d3d9caps.dat
        2010-05-30 18:12 . 2008-10-31 15:52 -------- d--h--w- c:\program files\InstallShield Installation Information
        2010-05-30 17:58 . 2006-11-02 12:37 -------- d-----w- c:\program files\Microsoft Games
        2010-05-30 17:54 . 2008-12-13 19:14 -------- d-----w- c:\program files\Dofus
        2010-05-23 16:38 . 2010-04-22 18:41 -------- d-----w- c:\users\clement\AppData\Roaming\Dofus 2
        2010-05-19 19:44 . 2009-02-16 18:34 680 ----a-w- c:\users\Karen\AppData\Roaming\wklnhst.dat
        2010-05-17 14:50 . 2008-12-24 10:59 -------- d-----w- c:\programdata\Spybot - Search & Destroy
        2010-05-13 10:00 . 2009-12-02 12:27 -------- d-----w- c:\users\Karen\AppData\Roaming\Dofus 2
        2010-05-12 09:21 . 2009-10-03 07:32 221568 ------w- c:\windows\system32\MpSigStub.exe
        2010-05-12 07:47 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
        2010-05-11 06:44 . 2009-01-27 16:54 -------- d-----w- c:\program files\AGI
        2010-05-11 06:44 . 2009-01-27 16:56 -------- d-----w- c:\program files\Kiwee Toolbar
        2010-05-07 08:37 . 2009-01-27 16:55 -------- d-----w- c:\programdata\agi
        2010-05-07 08:37 . 2010-05-07 08:37 -------- d-----w- c:\program files\UnifiedToolbar
        2010-05-06 20:59 . 2008-12-13 16:13 165032 ----a-w- c:\windows\system32\aswBoot.exe
        2010-05-06 20:39 . 2008-12-13 16:13 46672 ----a-w- c:\windows\system32\drivers\aswTdi.sys
        2010-05-06 20:39 . 2008-12-13 16:13 164048 ----a-w- c:\windows\system32\drivers\aswSP.sys
        2010-05-06 20:34 . 2008-12-13 16:13 23376 ----a-w- c:\windows\system32\drivers\aswRdr.sys
        2010-05-06 20:34 . 2008-12-13 16:13 51792 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
        2010-05-06 20:33 . 2008-12-13 16:13 19024 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
        2010-04-22 18:41 . 2010-04-22 18:41 -------- d-----w- c:\users\clement\AppData\Roaming\Dofus.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
        2010-04-20 08:35 . 2009-12-02 11:48 -------- d-----w- c:\program files\Common Files\Adobe AIR
        2010-04-20 08:35 . 2010-04-22 18:41 38784 ----a-w- c:\users\clement\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
        2010-04-20 08:35 . 2009-12-02 11:48 38784 ----a-w- c:\users\Default\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
        2010-04-20 08:25 . 2010-04-20 08:25 -------- d-----w- c:\users\Karen\AppData\Roaming\Dofus-3.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
        2010-04-20 08:16 . 2009-12-02 12:27 -------- d-----w- c:\users\Karen\AppData\Roaming\Dofus.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
        2010-04-20 08:14 . 2009-12-03 11:22 -------- d-----w- c:\users\Karen\AppData\Roaming\Dofus-2.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
        2010-04-16 19:12 . 2009-04-01 19:20 -------- d-----w- c:\program files\DofusBeta
        2010-04-16 19:04 . 2009-08-28 11:21 -------- d-----w- c:\program files\Wakfu
        2010-04-14 16:47 . 2008-12-13 16:13 38848 ----a-w- c:\windows\system32\avastSS.scr
        2010-04-14 14:22 . 2009-01-24 13:03 -------- d-----w- c:\users\lea\AppData\Roaming\Skype
        2010-04-14 14:21 . 2009-12-06 13:43 -------- d-----w- c:\users\lea\AppData\Roaming\skypePM
        2010-04-12 10:33 . 2010-04-12 10:33 -------- d-----w- c:\users\lea\AppData\Roaming\Apple Computer
        2008-10-31 23:25 . 2008-10-31 23:24 8192 --sha-w- c:\windows\Users\Default\NTUSER.DAT
        .

        ((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
        .
        .
        *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
        REGEDIT4

        [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
        "{0BC6E3FA-78EF-4886-842C-5A1258C4455A}"= "mscoree.dll" [2009-03-30 278848]

        [HKEY_CLASSES_ROOT\clsid\{0bc6e3fa-78ef-4886-842c-5a1258c4455a}]
        [HKEY_CLASSES_ROOT\agihelper.AGUtils]
        [HKEY_CLASSES_ROOT\TypeLib\{647B16D8-AD7B-4983-82D7-82A270FC9E6D}]
        [HKEY_CLASSES_ROOT\agcutils.AGSearchHook]

        [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{0bc6e3fa-78ef-4886-842c-5a1258c4455a}]
        2009-03-30 04:42 278848 ----a-w- c:\windows\System32\mscoree.dll

        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
        "{1c99b848-84cb-4ce4-8cd8-ed5719484d9f}"= "mscoree.dll" [2009-03-30 278848]

        [HKEY_CLASSES_ROOT\clsid\{1c99b848-84cb-4ce4-8cd8-ed5719484d9f}]
        [HKEY_CLASSES_ROOT\UnifiedToolbar.UnifiedToolbar]

        [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
        "MsnMsgr"="c:\program files\Windows Live\Messenger\MsnMsgr.Exe" [2009-07-26 3883856]
        "SpybotSD TeaTimer"="c:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 2260480]
        "swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-10-31 68856]
        "ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]

        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
        "Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]
        "RtHDVCpl"="RtHDVCpl.exe" [2007-05-11 4452352]
        "StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-01-21 61440]
        "Google Desktop Search"="c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" [2009-10-30 30192]
        "dellsupportcenter"="c:\program files\Dell Support Center\bin\sprtcmd.exe" [2009-06-03 206064]
        "LifeCam"="c:\program files\Microsoft LifeCam\LifeExp.exe" [2007-05-17 279912]
        "VX1000"="c:\windows\vVX1000.exe" [2007-04-10 709992]
        "KiweeHook"="c:\program files\Kiwee Toolbar\3.2\kwtbaim.exe" [2009-11-25 56544]
        "fssui"="c:\program files\Windows Live\Family Safety\fsui.exe" [2009-08-05 647520]
        "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696]
        "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-11-10 417792]
        "AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2009-08-13 177440]
        "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-01-22 141608]
        "avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-05-06 2815192]

        c:\users\clement\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
        Dell Dock.lnk - c:\program files\Dell\DellDock\DellDock.exe [2008-7-15 1226024]
        Notification de cadeaux MSN.lnk - c:\users\Karen\AppData\Roaming\Microsoft\Notification de cadeaux MSN\lsnfier.exe [2009-4-24 135680]

        c:\users\Invit'\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
        Dell Dock.lnk - c:\program files\Dell\DellDock\DellDock.exe [2008-7-15 1226024]

        c:\users\lea\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
        Dell Dock.lnk - c:\program files\Dell\DellDock\DellDock.exe [2008-7-15 1226024]
        Notification de cadeaux MSN.lnk - c:\users\Karen\AppData\Roaming\Microsoft\Notification de cadeaux MSN\lsnfier.exe [2009-4-24 135680]

        c:\users\Karen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
        Dell Dock.lnk - c:\program files\Dell\DellDock\DellDock.exe [2008-7-15 1226024]
        Notification de cadeaux MSN.lnk - c:\users\Karen\AppData\Roaming\Microsoft\Notification de cadeaux MSN\lsnfier.exe [2009-4-24 135680]

        c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
        NETGEAR WPN111 Smart Wizard.lnk - c:\program files\NETGEAR\WPN111\WPN111.exe [2008-12-12 995328]

        [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
        "EnableUIADesktopToggle"= 0 (0x0)

        [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\GoToAssist]
        2008-10-31 15:59 10536 ----a-w- c:\program files\Citrix\GoToAssist\514\g2awinlogon.dll

        [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
        "AppInit_DLLs"=c:\progra~1\Google\GOOGLE~2\GoogleDesktopNetwork3.dll

        [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
        @="Service"

        [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiSpyware]
        "DisableMonitoring"=dword:00000001

        [HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
        "VistaSp2"=hex(b):83,f8,24,26,77,40,ca,01

        R2 gupdate;Service Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-01-29 135664]
        R3 DNIMp50;DNIMp50 NDIS Protocol Driver;c:\windows\system32\Drivers\DNIMp50.sys [2006-11-16 21504]
        R3 GoogleDesktopManager-093009-130223;Google Desktop Manager 5.9.909.30391;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [2009-10-30 30192]
        R3 RTLWUSB;NETGEAR WG111v2 54Mbps Wireless USB 2.0 Adapter NT Driver;c:\windows\system32\DRIVERS\wg111v2.sys [2006-03-27 167808]
        S1 aswSP;aswSP; [x]
        S2 AGCoreService;AG Core Services;c:\program files\AGI\core\4.2.0.10753\AGCoreService.exe [2010-03-18 20480]
        S2 aswFsBlk;aswFsBlk; [x]
        S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2010-05-06 51792]
        S2 DockLoginService;Dock Login Service;c:\program files\Dell\DellDock\DockLogin.exe [2008-05-02 161048]
        S3 DNISp50;DNISp50 NDIS Protocol Driver;c:\windows\system32\Drivers\DNISp50.sys [2006-11-16 20480]
        S3 WPN111;Wireless USB 2.0 Adapter with RangeMax Service;c:\windows\system32\DRIVERS\WPN111v.sys [2007-06-01 870400]

        [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
        LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
        .
        Contenu du dossier 'Tâches planifiées'

        2010-06-06 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
        - c:\program files\Google\Update\GoogleUpdate.exe [2010-01-29 18:56]

        2010-06-06 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
        - c:\program files\Google\Update\GoogleUpdate.exe [2010-01-29 18:56]

        2010-06-06 c:\windows\Tasks\User_Feed_Synchronization-{4B063B6B-2FD5-49B5-A7A9-F1A51ABF3977}.job
        - c:\windows\system32\msfeedssync.exe [2010-03-31 04:54]

        2010-06-06 c:\windows\Tasks\User_Feed_Synchronization-{C2CEC8F9-AE96-4B1C-ADF7-087826B269EA}.job
        - c:\windows\system32\msfeedssync.exe [2010-03-31 04:54]
        .
        .
        ------- Examen supplémentaire -------
        .
        uInternet Settings,ProxyOverride = *.local
        IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_2EC7709873947E87.dll/cmsidewiki.html
        LSP: c:\windows\system32\wpclsp.dll
        DPF: CabBuilder - hxxp://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
        FF - ProfilePath - c:\users\Karen\AppData\Roaming\Mozilla\Firefox\Profiles\yc3x8cck.default\
        FF - prefs.js: browser.search.selectedEngine - Google
        FF - prefs.js: browser.startup.homepage - hxxp://search.imgag.com/?appid=kwtb&c=GNKWO50020&sbs=7&sc=2&f=homepage&vernum=3.2&uid=&did={54b2e221-ec93-11dd-9fc9-002170177ffc}&q=
        FF - prefs.js: keyword.URL - hxxp://search.imgag.com/?appid=kwtb&component=UnifiedToolbarFF&c=GNKWO50020&sbs=1&sc=&f=web&vernum=3.2&uid=&did={54b2e221-ec93-11dd-9fc9-002170177ffc}&q=
        FF - plugin: c:\program files\Google\Update\1.2.183.23\npGoogleOneClick8.dll
        FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll
        FF - plugin: c:\programdata\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll
        FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

        ---- PARAMETRES FIREFOX ----
        c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
        c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
        c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
        c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
        c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
        c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
        c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
        c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
        c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
        c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
        .
        - - - - ORPHELINS SUPPRIMES - - - -

        BHO-{6638A9DE-0745-4292-8A2E-AE530E7B9B3F} - (no file)
        WebBrowser-{6638A9DE-0745-4292-8A2E-AE530E7B9B3F} - (no file)
        HKLM-Run-funkyemoticons - c:\program files\FunkyEmoticons\FunkyEmoticons.exe
        AddRemove-Funky Emoticons - c:\program files\FunkyEmoticons\uninst.exe

        **************************************************************************
        Recherche de processus cachés ...

        Recherche d'éléments en démarrage automatique cachés ...

        Recherche de fichiers cachés ...

        Scan terminé avec succès
        Fichiers cachés:

        **************************************************************************
        .
        ------------------------ Autres processus actifs ------------------------
        .
        c:\windows\system32\Ati2evxx.exe
        c:\windows\system32\Ati2evxx.exe
        c:\program files\Alwil Software\Avast5\AvastSvc.exe
        c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
        c:\program files\Bonjour\mDNSResponder.exe
        c:\program files\Microsoft LifeCam\MSCamS32.exe
        c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
        c:\windows\system32\WUDFHost.exe
        c:\windows\system32\conime.exe
        c:\windows\RtHDVCpl.exe
        c:\program files\Alwil Software\Avast5\AvastUI.exe
        c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
        c:\windows\ehome\ehmsas.exe
        c:\program files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
        c:\program files\Dell Support Center\bin\sprtsvc.exe
        c:\program files\iPod\bin\iPodService.exe
        c:\windows\servicing\TrustedInstaller.exe
        c:\windows\System32\wscript.exe
        .
        **************************************************************************
        .
        Heure de fin: 2010-06-06 21:03:31 - La machine a redémarré
        ComboFix-quarantined-files.txt 2010-06-06 19:03

        Avant-CF: 135 433 879 552 octets libres
        Après-CF: 135 965 679 616 octets libres

        Current=1 Default=1 Failed=0 LastKnownGood=11 Sets=1,2,3,4,5,6,7,8,9,11
        - - End Of File - - 01C205618AD765FA1AE8D45BFD4C122E
        0
        1. voici le raport
          0
      4. Envoie nous un rappport stp.
        -2