Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e)

Re,

 

Ok. Suis le reste de la procédure steplait.

[/q

 

 

 

re,

voila le rapport merci @+

 

KASPERSKY ONLINE SCANNER REPORT

Wednesday, January 02, 2008 9:36:46 PM

Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)

Kaspersky Online Scanner version: 5.0.98.0

Kaspersky Anti-Virus database last update: 2/01/2008

Kaspersky Anti-Virus database records: 501366

 

 

Scan Settings

Scan using the following antivirus database extended

Scan Archives true

Scan Mail Bases true

 

Scan Target My Computer

C:\

D:\

E:\

F:\

H:\

I:\

J:\

K:\

 

Scan Statistics

Total number of scanned objects 86071

Number of viruses found 5

Number of infected objects 20

Number of suspicious objects 0

Duration of the scan process 01:39:28

 

Infected Object Name Virus Name Last Action

C:\Documents and Settings\All Users\Application Data\Microsoft\Dr Watson\user.dmp Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\Microsoft\Windows Defender\Support\MPLog-11022007-223422.log Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture01.jpg.41b29524.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture02.jpg.41b29524.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture03.jpg.41b29524.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture04.jpg.41b29522.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture05.jpg.41b29524.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture06.jpg.41b29524.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture07.jpg.41b29524.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture08.jpg.41b29524.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture09.jpg.41b29524.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture10.jpg.41b29524.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3EA73186.par Infected: Trojan-Downloader.WMA.Wimad.d skipped

 

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\402F5FD7.par Infected: Trojan-Downloader.WMA.Wimad.d skipped

 

C:\Documents and Settings\HP_Propriétaire\Application Data\Microsoft\MSNLiveFav\LiveFavorites.xml Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Cookies\index.dat Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{9DE1EF86-572A-47F1-B63F-BBF1E8CC987B} Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Historique\History.IE5\MSHist012007122420071231\index.dat Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Historique\History.IE5\MSHist012008010220080103\index.dat Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\hpodvd09.log Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\_hphtra07.log Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\ntuser.dat Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\ntuser.dat.LOG Object is locked skipped

 

C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped

 

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

 

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

 

C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

 

C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

 

C:\Documents and Settings\LocalService\ntuser.dat Object is locked skipped

 

C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

 

C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped

 

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

 

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

 

C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

 

C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

 

C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped

 

C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped

 

C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLML_MAIN\CLML.db Object is locked skipped

 

C:\Program Files\Softwin\BitDefender10\aspdict.dat Object is locked skipped

 

C:\RECYCLER\S-1-5-21-4043045673-3118007569-3466283886-1008\Dc2\setup_fr[1].exe Infected: not-a-virus:Downloader.Win32.WinFixer.cc skipped

 

C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP1\A0000089.exe/WISE0044.BIN/stream/data0005 Infected: not-a-virus:AdWare.Win32.Mostofate.j skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP1\A0000089.exe/WISE0044.BIN/stream Infected: not-a-virus:AdWare.Win32.Mostofate.j skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP1\A0000089.exe/WISE0044.BIN Infected: not-a-virus:AdWare.Win32.Mostofate.j skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP1\A0000089.exe WiseSFX: infected - 3 skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP1\A0000089.exe WiseSFXDropper: infected - 3 skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP1\A0000095.exe Infected: Trojan-Downloader.Win32.Agent.dwe skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP1\A0000096.exe/WISE0044.BIN/stream/data0005 Infected: not-a-virus:AdWare.Win32.Mostofate.j skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP1\A0000096.exe/WISE0044.BIN/stream Infected: not-a-virus:AdWare.Win32.Mostofate.j skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP1\A0000096.exe/WISE0044.BIN Infected: not-a-virus:AdWare.Win32.Mostofate.j skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP1\A0000096.exe WiseSFX: infected - 3 skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP1\A0000096.exe WiseSFXDropper: infected - 3 skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP1\A0000103.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP1\A0000115.exe/data.rar/SmitfraudFix/Reboot.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP1\A0000115.exe/data.rar Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP1\A0000115.exe RarSFX: infected - 2 skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP1\A0000121.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP1\A0000138.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP4\change.log Object is locked skipped

 

C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped

 

C:\WINDOWS\SchedLgU.Txt Object is locked skipped

 

C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped

 

C:\WINDOWS\Sti_Trace.log Object is locked skipped

 

C:\WINDOWS\system32\bdss.log Object is locked skipped

 

C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped

 

C:\WINDOWS\system32\config\default Object is locked skipped

 

C:\WINDOWS\system32\config\default.LOG Object is locked skipped

 

C:\WINDOWS\system32\config\Internet.evt Object is locked skipped

 

C:\WINDOWS\system32\config\SAM Object is locked skipped

 

C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped

 

C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped

 

C:\WINDOWS\system32\config\SECURITY Object is locked skipped

 

C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped

 

C:\WINDOWS\system32\config\software Object is locked skipped

 

C:\WINDOWS\system32\config\software.LOG Object is locked skipped

 

C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped

 

C:\WINDOWS\system32\config\system Object is locked skipped

 

C:\WINDOWS\system32\config\system.LOG Object is locked skipped

 

C:\WINDOWS\system32\h323log.txt Object is locked skipped

 

C:\WINDOWS\system32\LogFiles\HTTPERR\httperr1.log Object is locked skipped

 

C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped

 

C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped

 

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped

 

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped

 

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped

 

C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped

 

C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped

 

C:\WINDOWS\Temp\CLML_AGENT_LOG1.txt Object is locked skipped

 

C:\WINDOWS\Temp\sqlite_gngjGmFAPFY7kNO Object is locked skipped

 

C:\WINDOWS\Temp\tmp000075d5\tmp00000000 Object is locked skipped

 

C:\WINDOWS\wiadebug.log Object is locked skipped

 

C:\WINDOWS\wiaservc.log Object is locked skipped

 

C:\WINDOWS\WindowsUpdate.log Object is locked skipped

 

Scan process completed.

Posté(e)
Re,

 

Suis scrupuleusement les instructions de ce lien (desactive et réactive la restauration de systeme)

 

http://cybersecurite.xooit.com/t120-Desact...-du-systeme.htm

 

Vide le contenu de ta corbeille.

 

refais ensuite un nouveau scan en ligne avec kaspersky puis poste le rapport

 

@+

re,

voici le rapport,

 

un petit probleme ,j'ai un program que je veux deinstaller winsos mais je n'y arrive pas a chaque fois il m'indique qu'il n'arrive pas atrouvé la source comment je peux proceder pour le supprime merci de ton aide

a bientot.

 

 

 

KASPERSKY ONLINE SCANNER REPORT

Sunday, January 06, 2008 7:20:23 PM

Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)

Kaspersky Online Scanner version: 5.0.98.0

Kaspersky Anti-Virus database last update: 6/01/2008

Kaspersky Anti-Virus database records: 503089

 

 

Scan Settings

Scan using the following antivirus database extended

Scan Archives true

Scan Mail Bases true

 

Scan Target My Computer

C:\

D:\

E:\

F:\

H:\

I:\

J:\

K:\

 

Scan Statistics

Total number of scanned objects 87702

Number of viruses found 1

Number of infected objects 2

Number of suspicious objects 0

Duration of the scan process 01:41:54

 

Infected Object Name Virus Name Last Action

C:\Documents and Settings\All Users\Application Data\Microsoft\Dr Watson\user.dmp Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\Microsoft\Windows Defender\Support\MPLog-11022007-223422.log Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture01.jpg.41b29524.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture02.jpg.41b29524.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture03.jpg.41b29524.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture04.jpg.41b29522.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture05.jpg.41b29524.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture06.jpg.41b29524.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture07.jpg.41b29524.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture08.jpg.41b29524.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture09.jpg.41b29524.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\muvee Technologies30625\dscrp\Sample_Picture10.jpg.41b29524.mpd Object is locked skipped

 

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3EA73186.par Infected: Trojan-Downloader.WMA.Wimad.d skipped

 

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\402F5FD7.par Infected: Trojan-Downloader.WMA.Wimad.d skipped

 

C:\Documents and Settings\HP_Propriétaire\Application Data\Microsoft\MSNLiveFav\LiveFavorites.xml Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Cookies\index.dat Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{F9C9E535-F170-4FE4-8E67-9DDEFDAB83F0} Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Historique\History.IE5\MSHist012008010620080107\index.dat Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\hpodvd09.log Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\_hphtra07.log Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\ntuser.dat Object is locked skipped

 

C:\Documents and Settings\HP_Propriétaire\ntuser.dat.LOG Object is locked skipped

 

C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped

 

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

 

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

 

C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

 

C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

 

C:\Documents and Settings\LocalService\ntuser.dat Object is locked skipped

 

C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

 

C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped

 

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

 

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

 

C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

 

C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

 

C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped

 

C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped

 

C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLML_MAIN\CLML.db Object is locked skipped

 

C:\Program Files\Softwin\BitDefender10\aspdict.dat Object is locked skipped

 

C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped

 

C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP7\change.log Object is locked skipped

 

C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped

 

C:\WINDOWS\SchedLgU.Txt Object is locked skipped

 

C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped

 

C:\WINDOWS\Sti_Trace.log Object is locked skipped

 

C:\WINDOWS\system32\bdss.log Object is locked skipped

 

C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped

 

C:\WINDOWS\system32\config\default Object is locked skipped

 

C:\WINDOWS\system32\config\default.LOG Object is locked skipped

 

C:\WINDOWS\system32\config\Internet.evt Object is locked skipped

 

C:\WINDOWS\system32\config\SAM Object is locked skipped

 

C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped

 

C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped

 

C:\WINDOWS\system32\config\SECURITY Object is locked skipped

 

C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped

 

C:\WINDOWS\system32\config\software Object is locked skipped

 

C:\WINDOWS\system32\config\software.LOG Object is locked skipped

 

C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped

 

C:\WINDOWS\system32\config\system Object is locked skipped

 

C:\WINDOWS\system32\config\system.LOG Object is locked skipped

 

C:\WINDOWS\system32\h323log.txt Object is locked skipped

 

C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped

 

C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped

 

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped

 

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped

 

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped

 

C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped

 

C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped

 

C:\WINDOWS\Temp\CLML_AGENT_LOG1.txt Object is locked skipped

 

C:\WINDOWS\Temp\sqlite_DdNrS2h7wAz6AR9 Object is locked skipped

 

C:\WINDOWS\Temp\tmp0000603b\tmp00000000 Object is locked skipped

 

C:\WINDOWS\wiadebug.log Object is locked skipped

 

C:\WINDOWS\wiaservc.log Object is locked skipped

 

C:\WINDOWS\WindowsUpdate.log Object is locked skipped

 

Scan process completed.

Posté(e)

Re,

 

Rend toi ici:

 

C:\Program Files

 

Ouvre le dossier Program Files puis double clic sur le dossier winsos. Une fois le dossier ouvert, regarde si il y a un fichier nommé uninstaller. Si présent, exécute le.

 

@+

Posté(e)
Re,

 

Rend toi ici:

 

C:\Program Files

 

Ouvre le dossier Program Files puis double clic sur le dossier winsos. Une fois le dossier ouvert, regarde si il y a un fichier nommé uninstaller. Si présent, exécute le.

 

@+

 

 

 

re,

voila ,

j'ai suivie les instructions mais il n'y a pas le fichier donc je n'ai pas sus le désinstaller comment je pourrais pro céder. pour le virus qui restecomment l'éradier.merci.

Posté(e)

Re,

 

télécharge RegSearch.exe (Registry Search de Bobbi Flekman) -> http://www.bleepingcomputer.com/files/misc/RegSearch.zip

- Dézippe dans un répertoire dédié tel que C:\Program Files

 

- Double clique sur RegSearch.exe

 

- Copie colle winsos dans la première ligne de la zone de recherche

 

- Clique sur OK

 

- Après recherche, le bloc-notes ouvre une fenêtre "RegSearch.txt" avec toutes les instances trouvées

 

- Le fichier est en outre sauvegardé dans le même répertoire que celui de RegSearch

 

- Copie-colle le contenu de la fenêtre dans un post, ici

 

- Ferme le bloc-notes

 

- Ferme RegSearch par Cancel

 

Poste le rapport.

 

Le virus qui reste est déjà en quarantaine.

 

@+

Posté(e) (modifié)

Re,

 

télécharge RegSearch.exe (Registry Search de Bobbi Flekman) -> http://www.bleepingcomputer.com/files/misc/RegSearch.zip

- Dézippe dans un répertoire dédié tel que C:\Program Files

 

- Double clique sur RegSearch.exe

 

- Copie colle winsos dans la première ligne de la zone de recherche

 

- Clique sur OK

 

- Après recherche, le bloc-notes ouvre une fenêtre "RegSearch.txt" avec toutes les instances trouvées

 

- Le fichier est en outre sauvegardé dans le même répertoire que celui de RegSearch

 

- Copie-colle le contenu de la fenêtre dans un post, ici

 

- Ferme le bloc-notes

 

- Ferme RegSearch par Cancel

 

Poste le rapport.

 

Le virus qui reste est déjà en quarantaine.

 

@+

[

 

 

 

 

 

 

 

 

REGEDIT4

 

; Registry Search by Bobbi Flekman © 2005

; Version: 1.0.2.4

 

; Results at 14/01/2008 16:19:56 for strings:

; 'winsos'

; Strings excluded from search:

; (None)

; Search in:

; Registry Keys Registry Values Registry Data

; HKEY_LOCAL_MACHINE HKEY_USERS

 

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Winsos software Ltd_is1]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Winsos software Ltd_is1]

"Inno Setup: App Path"="C:\\Program Files\\Winsos"

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Winsos software Ltd_is1]

"InstallLocation"="C:\\Program Files\\Winsos\\"

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Winsos software Ltd_is1]

"Inno Setup: Icon Group"="WINSOS"

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Winsos software Ltd_is1]

"DisplayName"="WINSOS"

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Winsos software Ltd_is1]

"DisplayIcon"="C:\\Program Files\\WINSOS\\WINSOS.EXE"

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Winsos software Ltd_is1]

"UninstallString"="\"C:\\Program Files\\Winsos\\unins000.exe\""

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Winsos software Ltd_is1]

"QuietUninstallString"="\"C:\\Program Files\\Winsos\\unins000.exe\" /SILENT"

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Winsos software Ltd_is1]

"DisplayVersion"="http://www.winsos.com"'>http://www.winsos.com"'>http://www.winsos.com"'>http://www.winsos.com"

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Winsos software Ltd_is1]

"Publisher"="Winsos software Ltd"

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Winsos software Ltd_is1]

"URLInfoAbout"="http://www.winsos.com"

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Winsos software Ltd_is1]

"HelpLink"="http://www.winsos.com"

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Winsos software Ltd_is1]

"URLUpdateInfo"="http://www.winsos.com"

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

"C:\\Program Files\\WINSOS\\winsos.exe"="C:\\Program Files\\Winsos\\winsos.exe:*:Enabled:Winsos"

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

"C:\\Program Files\\WINSOS\\anti-spy.exe"="C:\\Program Files\\Winsos\\anti-spy.exe:*:Enabled:anti-spy Winsos"

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

"C:\\Program Files\\WINSOS\\help.exe"="C:\\Program Files\\Winsos\\help.exe:*:Enabled:Winsos Help"

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

"C:\\Program Files\\WINSOS\\winsos.exe"="C:\\Program Files\\Winsos\\winsos.exe:*:Enabled:Winsos"

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

"C:\\Program Files\\WINSOS\\anti-spy.exe"="C:\\Program Files\\Winsos\\anti-spy.exe:*:Enabled:anti-spy Winsos"

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

"C:\\Program Files\\WINSOS\\help.exe"="C:\\Program Files\\Winsos\\help.exe:*:Enabled:Winsos Help"

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

"C:\\Program Files\\WINSOS\\winsos.exe"="C:\\Program Files\\Winsos\\winsos.exe:*:Enabled:Winsos"

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

"C:\\Program Files\\WINSOS\\anti-spy.exe"="C:\\Program Files\\Winsos\\anti-spy.exe:*:Enabled:anti-spy Winsos"

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

"C:\\Program Files\\WINSOS\\help.exe"="C:\\Program Files\\Winsos\\help.exe:*:Enabled:Winsos Help"

 

[HKEY_USERS\S-1-5-21-4043045673-3118007569-3466283886-1008\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\WINSOS]

 

[HKEY_USERS\S-1-5-21-4043045673-3118007569-3466283886-1008\Software\Microsoft\Windows\CurrentVersion\Run]

"WINSOS VERIFY"="\"C:\\Program Files\\Winsos\\WINSOS.EXE\" MINI"

 

[HKEY_USERS\S-1-5-21-4043045673-3118007569-3466283886-1008\Software\Microsoft\Windows\ShellNoRoam\MUICache]

"C:\\Program Files\\Winsos\\WINSOS.EXE"="WINSOS"

 

[HKEY_USERS\S-1-5-21-4043045673-3118007569-3466283886-1008\Software\Microsoft\Windows\ShellNoRoam\MUICache]

"C:\\Program Files\\Winsos\\update.exe"="update"

 

[HKEY_USERS\S-1-5-21-4043045673-3118007569-3466283886-1008\Software\Microsoft\Windows\ShellNoRoam\MUICache]

"C:\\Program Files\\Winsos\\unins000.exe"="Setup/Uninstall"

 

[HKEY_USERS\S-1-5-21-4043045673-3118007569-3466283886-1008\Software\NVIDIA Corporation\Global\nView\WindowManagement\winsos]

 

[HKEY_USERS\S-1-5-21-4043045673-3118007569-3466283886-1008\Software\WINSOS]

 

[HKEY_USERS\S-1-5-21-4043045673-3118007569-3466283886-1008\Software\WINSOS\WINSOS]

 

[HKEY_USERS\S-1-5-21-4043045673-3118007569-3466283886-1008\Software\WINSOS\WINSOS\ballon]

 

[HKEY_USERS\S-1-5-21-4043045673-3118007569-3466283886-1008\Software\WINSOS\WINSOS\choixlangues]

 

; End Of The Log...

 

 

@+.

 

 

 

je voudrais savoir si mon ordi est assez proteger sinon quoi faire ,merci bcp pour ton aide.

a bientot.

Modifié par djn
Posté(e)

bonjour,

 

Je passe en speed...

 

1/ Ouvre le Bloc-notes (Démarrer\Tous les programmes\Accessoires\Bloc-notes)

 

2/ Copie ce qui est en citation ci-dessous (sans le mot citation) par sélection puis Ctrl-C :

 

REGEDIT4

 

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Winsos software Ltd_is1]

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

"C:\\Program Files\\WINSOS\\winsos.exe"=-

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

"C:\\Program Files\\WINSOS\\winsos.exe"=-

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

"C:\\Program Files\\WINSOS\\anti-spy.exe"=-

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

"C:\\Program Files\\WINSOS\\help.exe"=-

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

"C:\\Program Files\\WINSOS\\winsos.exe"=-

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

"C:\\Program Files\\WINSOS\\anti-spy.exe"=-

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

"C:\\Program Files\\WINSOS\\help.exe"=-

 

[-HKEY_USERS\S-1-5-21-4043045673-3118007569-3466283886-1008\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\WINSOS]

 

[HKEY_USERS\S-1-5-21-4043045673-3118007569-3466283886-1008\Software\Microsoft\Windows\CurrentVersion\Run]

"WINSOS VERIFY"=-

 

[HKEY_USERS\S-1-5-21-4043045673-3118007569-3466283886-1008\Software\Microsoft\Windows\ShellNoRoam\MUICache]

"C:\\Program Files\\Winsos\\WINSOS.EXE"=-

 

[HKEY_USERS\S-1-5-21-4043045673-3118007569-3466283886-1008\Software\Microsoft\Windows\ShellNoRoam\MUICache]

"C:\\Program Files\\Winsos\\update.exe"=-

 

[HKEY_USERS\S-1-5-21-4043045673-3118007569-3466283886-1008\Software\Microsoft\Windows\ShellNoRoam\MUICache]

"C:\\Program Files\\Winsos\\unins000.exe"="-

 

[-HKEY_USERS\S-1-5-21-4043045673-3118007569-3466283886-1008\Software\NVIDIA Corporation\Global\nView\WindowManagement\winsos]

 

[-HKEY_USERS\S-1-5-21-4043045673-3118007569-3466283886-1008\Software\WINSOS]

 

-Enregistrez ce fichier reg dans : Bureau

-Nom du fichier : Fixme.reg

-Type du fichier : tous les fichiers

-Cliquez sur Enregistrer

-Quittez le Bloc Notes

 

 

3/Utilisation du fichier: Fixme.reg précedemment créé

- double cliquez sur le fichier (Bureau) / Acceptez l'avertissement concernant la fusion / ne pas s'étonner de ne rien voir / validez le message disant que la fusion est terminée.

 

4/ Rédemarre ton PC puis réutilise Regsearch et poste le rapport.

 

@+

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...