Se connecter / S'enregistrer
Votre question

comment supprimer imesh (Résolu)

Tags :
  • Imesh
  • Internet Explorer
  • Sécurité
Dernière réponse : dans Sécurité et virus
2 Juin 2012 12:21:30

Bonjour, comme le titre l'indique, je souhaiterai supprimer imesh de internet explorer .. Quelqu'un pourrait il m'aider SVP?
Mon PC est assez lent, plante qd même assez souvent, j'utilise regulièrement Mozilla Firefox ms il plante souvent aussi (pas de réponse), je ne sais pas si tout ceci est dû à ce logiciel très pénible qu'est "imesh", etant donné qu'il est incrusté ds IE et non ds Mozilla firefox ..
Comme vous pouvez le constater, je ne suis pas un As de l'informatique, ms suis capable de suivre des instructions tt de même, alors si un Helper passe par là, c'est volontier que j'exécuterai ce qu'il me demande de faire pour érradiquer ce imesh, puis éventuellement me rendre le PC un peu plus rapide,..
Je remercie d'avance celui, ou ceux qui s'attarderont sur mon cas.

Autres pages sur : supprimer imesh resolu

a c 548 8 Sécurité
a b , Internet Explorer
2 Juin 2012 14:46:47

Bonjour,

C'est une barre d'outil sponsorisée que tu as installée volontairement en ne décochant pas certaines options d'installation de programmes "gratuit"

On va regarder :

Télécharge OTL (de Old Timer) sur ton bureau.
  • Ferme toutes tes fenêtres, puis double clique sur OTL.exe pour le lancer.
    (Utilisateur de Vista/Windows 7 faites un clic droit -> "Exécuter en tant qu'administrateur")
  • Coche en haut la case devant "Tous les utilisateurs"
  • Sous Personnalisation, copie-colle l'ensemble du texte ci-dessous, laisse les autres options par défaut.
    netsvcs
    msconfig
    drivers32
    activex
    /md5start
    explorer.exe
    wininit.exe
    winlogon.exe
    userinit.exe
    /md5stop
    %SYSTEMDRIVE%\*.exe
    %ALLUSERSPROFILE%\Application Data\*.
    %ALLUSERSPROFILE%\Application Data\*.exe /s
    %APPDATA%\*.
    %APPDATA%\*.exe /s
    %systemroot%\*. /mp /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\syswow64\*.dll /lockedfiles
    %systemroot%\Tasks\*.job /lockedfiles
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\syswow64\drivers\*.sys /lockedfiles
    hklm\software\clients\startmenuinternet|command /rs
    hklm\software\clients\startmenuinternet|command /64 /rs
    CREATERESTOREPOINT

  • Clique sur le bouton Analyse en haut à gauche puis patiente quelques instants.
  • A la fin du scan, deux rapports s'ouvriront OTL.Txt et Extras.Txt.

  • Pour les rapports, merci d'utiliser ce service de rapport en ligne : dépose le fichier via "parcourir" et poste simplement le lien obtenu dans ta réponse.
    Une aide à l'utilisation ici


    Note : Les rapports sont aussi enregistrés sur le bureau
    Contenus similaires
    a c 548 8 Sécurité
    a b , Internet Explorer
    3 Juin 2012 10:47:15

    Re,

    Ok, il faudra reposter le rapport OTL.txt car il est illisible là, essaye sur une autre plateforme :
    http://www.cjoint.com/

    On va commencer le ménage en attendant :

    1) Désinstalle les programmes suivants via "ajout/suppression des programmes" (si présents) :

    - J2SE Runtime Environment 5.0 Update 11 (version obsolète, tu possèdes une plus récente)
    - Ask Toolbar (barre d'outil, sauf réelle utilité)
    - Barre d'outils MSN (idem)
    - Spybot - Search & Destroy (peu ou pas utile, devenu trop obsolète, la preuve, tu es là)
    - UsbFix (outil spécifique mis à jour régulièrement, donc inutile de le garder ici)

    3 Juin 2012 11:31:01

    Voilà, j ai aussi supprimé les programmes ..
    a c 548 8 Sécurité
    a b , Internet Explorer
    3 Juin 2012 11:34:04

    Re,

    OK, donc désinstalle les programmes que je t'indiquais précédemment, puis fais ceci :

    Relance OTL.exe

  • Ferme toutes tes fenêtres, puis double clique sur OTL.exe pour le lancer.

    /!\ Attention, utilisateur d'Avast! ou d'autres antivirus, ne lancez pas OTL en mode sandbox /!\

  • Copie-colle l'ensemble du texte ci-dessous dans le cadre Personnalisation d'OTL en bas à gauche.



    :OTL
    IE - HKLM\..\SearchScopes,DefaultScope = {9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
    IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}: "URL" = http://dts.search-results.com/sr?src=ieb&appid=1083&systemid=1&sr=0&q={searchTerms}
    IE - HKU\S-1-5-21-1744602087-2476966446-3796077983-1007\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.imesh.com
    IE - HKU\S-1-5-21-1744602087-2476966446-3796077983-1007\..\SearchScopes,DefaultScope = {9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
    IE - HKU\S-1-5-21-1744602087-2476966446-3796077983-1007\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}: "URL" = http://dts.search-results.com/sr?src=ieb&appid=1083&systemid=1&sr=0&q={searchTerms}
    IE - HKU\S-1-5-21-1744602087-2476966446-3796077983-1007\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 127.0.0.1:9666
    FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
    FF - prefs.js..extensions.enabledItems: plugin@yontoo.com:1.03.01
    FF - prefs.js..network.proxy.type: 4
    [2011/12/21 20:54:02 | 000,002,519 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\Search_Results.xml
    O2 - BHO: (no name) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - No CLSID value found.
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - No CLSID value found.
    O3 - HKLM\..\Toolbar: (no name) - {28387537-e3f9-4ed7-860c-11e69af4a8a0} - No CLSID value found.
    O3 - HKLM\..\Toolbar: (no name) - {99079a25-328f-4bd4-be04-00955acaa0a7} - No CLSID value found.
    O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
    O4 - HKLM..\Run: [ROC_roc_dec12] "C:\Program Files\AVG Secure Search\ROC_roc_dec12.exe" /PROMPT /CMPID=roc_dec12 File not found
    O16 - DPF: {CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_11-windows-i586.cab (Java Plug-in 1.5.0_11)
    O33 - MountPoints2\{411d29d0-965f-11db-bc94-0016ecba2051}\Shell\Auto\command - "" = AdobeR.exe e
    O33 - MountPoints2\{411d29d0-965f-11db-bc94-0016ecba2051}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL AdobeR.exe e
    O33 - MountPoints2\{411d29d1-965f-11db-bc94-0016ecba2051}\Shell\Auto\command - "" = AdobeR.exe e
    O33 - MountPoints2\{411d29d1-965f-11db-bc94-0016ecba2051}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL AdobeR.exe e
    O33 - MountPoints2\{5d88dffa-067c-11de-96f8-0016ecba2051}\Shell\Auto\command - "" = AdobeR.exe e
    O33 - MountPoints2\{5d88dffa-067c-11de-96f8-0016ecba2051}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL AdobeR.exe e
    O33 - MountPoints2\{8a5347fd-662d-11de-9752-0016ecba2051}\Shell\Auto\command - "" = F:\AdobeR.exe e
    O33 - MountPoints2\{8a5347fd-662d-11de-9752-0016ecba2051}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL AdobeR.exe e
    [6 C:\WINDOWS\Fonts\*.tmp files -> C:\WINDOWS\Fonts\*.tmp -> ]
    [282 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
    [12 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
    [2007/01/02 20:35:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\BOONTY
    [2011/12/22 15:45:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\HP_Administrateur\Application Data\searchquband

    :Commands
    [emptytemp]


  • Puis clique sur le bouton Correction en haut à gauche
  • Le pc va redémarrer. (si ce n'est pas le cas, fais-le manuellement)
  • Poste le rapport de suppression s'il apparait.

    Note : le rapport est enregistré sous format ".log", il convient de changer cette extension en ".txt" si tu veux le déposer sur des sites en ligne. S'il n'apparait pas, il se trouve ici : C:\_OTL, sous la forme xxxxxxxx_xxxx.log où x sont la date et l'heure

    /!\ Ce script est exclusivement réservé à l'utilisateur actuel du sujet, vous ne devez en aucun cas l'utiliser de votre propre chef sur un autre pc, sous risque d'endommager le système /!\
    3 Juin 2012 13:10:18

    Re,

    est ce que la correction est longue?
    Le pc plante quand je lance la correction, (ne répond pas) ..
    3 Juin 2012 21:46:10

    bonsoir voici le rapport de suppression

    All processes killed
    ========== OTL ==========
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}\ not found.
    HKU\S-1-5-21-1744602087-2476966446-3796077983-1007\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
    HKEY_USERS\S-1-5-21-1744602087-2476966446-3796077983-1007\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
    Registry key HKEY_USERS\S-1-5-21-1744602087-2476966446-3796077983-1007\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}\ not found.
    HKU\S-1-5-21-1744602087-2476966446-3796077983-1007\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
    Prefs.js: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 removed from extensions.enabledItems
    Prefs.js: plugin@yontoo.com:1.03.01 removed from extensions.enabledItems
    Prefs.js: 4 removed from network.proxy.type
    C:\Program Files\Mozilla Firefox\searchplugins\Search_Results.xml moved successfully.
    Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}\ not found.
    Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7E853D72-626A-48EC-A868-BA8D5E23E045}\ not found.
    Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{28387537-e3f9-4ed7-860c-11e69af4a8a0} deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28387537-e3f9-4ed7-860c-11e69af4a8a0}\ not found.
    Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{99079a25-328f-4bd4-be04-00955acaa0a7} deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99079a25-328f-4bd4-be04-00955acaa0a7}\ not found.
    Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\10 deleted successfully.
    Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ROC_roc_dec12 deleted successfully.
    Starting removal of ActiveX control {CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}\ not found.
    Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{411d29d0-965f-11db-bc94-0016ecba2051}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{411d29d0-965f-11db-bc94-0016ecba2051}\ not found.
    File AdobeR.exe e not found.
    Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{411d29d0-965f-11db-bc94-0016ecba2051}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{411d29d0-965f-11db-bc94-0016ecba2051}\ not found.
    File C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL AdobeR.exe e not found.
    Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{411d29d1-965f-11db-bc94-0016ecba2051}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{411d29d1-965f-11db-bc94-0016ecba2051}\ not found.
    File AdobeR.exe e not found.
    Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{411d29d1-965f-11db-bc94-0016ecba2051}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{411d29d1-965f-11db-bc94-0016ecba2051}\ not found.
    File C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL AdobeR.exe e not found.
    Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5d88dffa-067c-11de-96f8-0016ecba2051}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5d88dffa-067c-11de-96f8-0016ecba2051}\ not found.
    File AdobeR.exe e not found.
    Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5d88dffa-067c-11de-96f8-0016ecba2051}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5d88dffa-067c-11de-96f8-0016ecba2051}\ not found.
    File C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL AdobeR.exe e not found.
    Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8a5347fd-662d-11de-9752-0016ecba2051}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8a5347fd-662d-11de-9752-0016ecba2051}\ not found.
    File F:\AdobeR.exe e not found.
    Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8a5347fd-662d-11de-9752-0016ecba2051}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8a5347fd-662d-11de-9752-0016ecba2051}\ not found.
    File C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL AdobeR.exe e not found.
    C:\WINDOWS\Fonts\SET4EA.tmp deleted successfully.
    C:\WINDOWS\Fonts\SET4EB.tmp deleted successfully.
    C:\WINDOWS\Fonts\SET4EC.tmp deleted successfully.
    C:\WINDOWS\Fonts\SET4ED.tmp deleted successfully.
    C:\WINDOWS\Fonts\SET4EE.tmp deleted successfully.
    C:\WINDOWS\Fonts\SET4EF.tmp deleted successfully.
    C:\WINDOWS\System32\CONFIG.TMP deleted successfully.
    C:\WINDOWS\System32\SET117.tmp deleted successfully.
    C:\WINDOWS\System32\SET118.tmp deleted successfully.
    C:\WINDOWS\System32\SET11F0.tmp deleted successfully.
    C:\WINDOWS\System32\SET11F1.tmp deleted successfully.
    C:\WINDOWS\System32\SET11F4.tmp deleted successfully.
    C:\WINDOWS\System32\SET11F9.tmp deleted successfully.
    C:\WINDOWS\System32\SET11FD.tmp deleted successfully.
    C:\WINDOWS\System32\SET11FE.tmp deleted successfully.
    C:\WINDOWS\System32\SET1204.tmp deleted successfully.
    C:\WINDOWS\System32\SET1207.tmp deleted successfully.
    C:\WINDOWS\System32\SET1212.tmp deleted successfully.
    C:\WINDOWS\System32\SET1223.tmp deleted successfully.
    C:\WINDOWS\System32\SET122C.tmp deleted successfully.
    C:\WINDOWS\System32\SET122E.tmp deleted successfully.
    C:\WINDOWS\System32\SET1251.tmp deleted successfully.
    C:\WINDOWS\System32\SET1258.tmp deleted successfully.
    C:\WINDOWS\System32\SET1BD.tmp deleted successfully.
    C:\WINDOWS\System32\SET1BE.tmp deleted successfully.
    C:\WINDOWS\System32\SET1C0.tmp deleted successfully.
    C:\WINDOWS\System32\SET1C2.tmp deleted successfully.
    C:\WINDOWS\System32\SET1C3.tmp deleted successfully.
    C:\WINDOWS\System32\SET1C4.tmp deleted successfully.
    C:\WINDOWS\System32\SET1CB.tmp deleted successfully.
    C:\WINDOWS\System32\SET1CC.tmp deleted successfully.
    C:\WINDOWS\System32\SET1CF.tmp deleted successfully.
    C:\WINDOWS\System32\SET1D8.tmp deleted successfully.
    C:\WINDOWS\System32\SET1D9.tmp deleted successfully.
    C:\WINDOWS\System32\SET1DA.tmp deleted successfully.
    C:\WINDOWS\System32\SET1DD.tmp deleted successfully.
    C:\WINDOWS\System32\SET1DE.tmp deleted successfully.
    C:\WINDOWS\System32\SET1DF.tmp deleted successfully.
    C:\WINDOWS\System32\SET1E1.tmp deleted successfully.
    C:\WINDOWS\System32\SET1E2.tmp deleted successfully.
    C:\WINDOWS\System32\SET1E5.tmp deleted successfully.
    C:\WINDOWS\System32\SET1E6.tmp deleted successfully.
    C:\WINDOWS\System32\SET1E7.tmp deleted successfully.
    C:\WINDOWS\System32\SET1EC.tmp deleted successfully.
    C:\WINDOWS\System32\SET1F3.tmp deleted successfully.
    C:\WINDOWS\System32\SET1F4.tmp deleted successfully.
    C:\WINDOWS\System32\SET1F5.tmp deleted successfully.
    C:\WINDOWS\System32\SET1F8.tmp deleted successfully.
    C:\WINDOWS\System32\SET1FA.tmp deleted successfully.
    C:\WINDOWS\System32\SET1FC.tmp deleted successfully.
    C:\WINDOWS\System32\SET203.tmp deleted successfully.
    C:\WINDOWS\System32\SET205.tmp deleted successfully.
    C:\WINDOWS\System32\SET206.tmp deleted successfully.
    C:\WINDOWS\System32\SET207.tmp deleted successfully.
    C:\WINDOWS\System32\SET209.tmp deleted successfully.
    C:\WINDOWS\System32\SET20C.tmp deleted successfully.
    C:\WINDOWS\System32\SET20E.tmp deleted successfully.
    C:\WINDOWS\System32\SET20F.tmp deleted successfully.
    C:\WINDOWS\System32\SET210.tmp deleted successfully.
    C:\WINDOWS\System32\SET211.tmp deleted successfully.
    C:\WINDOWS\System32\SET214.tmp deleted successfully.
    C:\WINDOWS\System32\SET217.tmp deleted successfully.
    C:\WINDOWS\System32\SET21A.tmp deleted successfully.
    C:\WINDOWS\System32\SET220.tmp deleted successfully.
    C:\WINDOWS\System32\SET221.tmp deleted successfully.
    C:\WINDOWS\System32\SET224.tmp deleted successfully.
    C:\WINDOWS\System32\SET227.tmp deleted successfully.
    C:\WINDOWS\System32\SET229.tmp deleted successfully.
    C:\WINDOWS\System32\SET230.tmp deleted successfully.
    C:\WINDOWS\System32\SET231.tmp deleted successfully.
    C:\WINDOWS\System32\SET234.tmp deleted successfully.
    C:\WINDOWS\System32\SET237.tmp deleted successfully.
    C:\WINDOWS\System32\SET238.tmp deleted successfully.
    C:\WINDOWS\System32\SET241.tmp deleted successfully.
    C:\WINDOWS\System32\SET242.tmp deleted successfully.
    C:\WINDOWS\System32\SET245.tmp deleted successfully.
    C:\WINDOWS\System32\SET247.tmp deleted successfully.
    C:\WINDOWS\System32\SET248.tmp deleted successfully.
    C:\WINDOWS\System32\SET249.tmp deleted successfully.
    C:\WINDOWS\System32\SET24A.tmp deleted successfully.
    C:\WINDOWS\System32\SET24B.tmp deleted successfully.
    C:\WINDOWS\System32\SET24F.tmp deleted successfully.
    C:\WINDOWS\System32\SET25B.tmp deleted successfully.
    C:\WINDOWS\System32\SET260.tmp deleted successfully.
    C:\WINDOWS\System32\SET262.tmp deleted successfully.
    C:\WINDOWS\System32\SET264.tmp deleted successfully.
    C:\WINDOWS\System32\SET265.tmp deleted successfully.
    C:\WINDOWS\System32\SET266.tmp deleted successfully.
    C:\WINDOWS\System32\SET269.tmp deleted successfully.
    C:\WINDOWS\System32\SET26A.tmp deleted successfully.
    C:\WINDOWS\System32\SET26E.tmp deleted successfully.
    C:\WINDOWS\System32\SET26F.tmp deleted successfully.
    C:\WINDOWS\System32\SET272.tmp deleted successfully.
    C:\WINDOWS\System32\SET273.tmp deleted successfully.
    C:\WINDOWS\System32\SET274.tmp deleted successfully.
    C:\WINDOWS\System32\SET27A.tmp deleted successfully.
    C:\WINDOWS\System32\SET27B.tmp deleted successfully.
    C:\WINDOWS\System32\SET27C.tmp deleted successfully.
    C:\WINDOWS\System32\SET283.tmp deleted successfully.
    C:\WINDOWS\System32\SET284.tmp deleted successfully.
    C:\WINDOWS\System32\SET28B.tmp deleted successfully.
    C:\WINDOWS\System32\SET28C.tmp deleted successfully.
    C:\WINDOWS\System32\SET28D.tmp deleted successfully.
    C:\WINDOWS\System32\SET28F.tmp deleted successfully.
    C:\WINDOWS\System32\SET291.tmp deleted successfully.
    C:\WINDOWS\System32\SET296.tmp deleted successfully.
    C:\WINDOWS\System32\SET297.tmp deleted successfully.
    C:\WINDOWS\System32\SET2A3.tmp deleted successfully.
    C:\WINDOWS\System32\SET2A5.tmp deleted successfully.
    C:\WINDOWS\System32\SET2A7.tmp deleted successfully.
    C:\WINDOWS\System32\SET2A8.tmp deleted successfully.
    C:\WINDOWS\System32\SET2A9.tmp deleted successfully.
    C:\WINDOWS\System32\SET2AC.tmp deleted successfully.
    C:\WINDOWS\System32\SET2AD.tmp deleted successfully.
    C:\WINDOWS\System32\SET2B5.tmp deleted successfully.
    C:\WINDOWS\System32\SET2B6.tmp deleted successfully.
    C:\WINDOWS\System32\SET2B7.tmp deleted successfully.
    C:\WINDOWS\System32\SET2B8.tmp deleted successfully.
    C:\WINDOWS\System32\SET2BB.tmp deleted successfully.
    C:\WINDOWS\System32\SET2BD.tmp deleted successfully.
    C:\WINDOWS\System32\SET2C0.tmp deleted successfully.
    C:\WINDOWS\System32\SET2C6.tmp deleted successfully.
    C:\WINDOWS\System32\SET2D3.tmp deleted successfully.
    C:\WINDOWS\System32\SET2D4.tmp deleted successfully.
    C:\WINDOWS\System32\SET2D5.tmp deleted successfully.
    C:\WINDOWS\System32\SET2DC.tmp deleted successfully.
    C:\WINDOWS\System32\SET2DD.tmp deleted successfully.
    C:\WINDOWS\System32\SET2E0.tmp deleted successfully.
    C:\WINDOWS\System32\SET2E1.tmp deleted successfully.
    C:\WINDOWS\System32\SET2E2.tmp deleted successfully.
    C:\WINDOWS\System32\SET2E3.tmp deleted successfully.
    C:\WINDOWS\System32\SET2E4.tmp deleted successfully.
    C:\WINDOWS\System32\SET2E6.tmp deleted successfully.
    C:\WINDOWS\System32\SET2E7.tmp deleted successfully.
    C:\WINDOWS\System32\SET2E8.tmp deleted successfully.
    C:\WINDOWS\System32\SET2EA.tmp deleted successfully.
    C:\WINDOWS\System32\SET2EB.tmp deleted successfully.
    C:\WINDOWS\System32\SET2EC.tmp deleted successfully.
    C:\WINDOWS\System32\SET2EE.tmp deleted successfully.
    C:\WINDOWS\System32\SET2F1.tmp deleted successfully.
    C:\WINDOWS\System32\SET2F6.tmp deleted successfully.
    C:\WINDOWS\System32\SET2F7.tmp deleted successfully.
    C:\WINDOWS\System32\SET2F8.tmp deleted successfully.
    C:\WINDOWS\System32\SET2FD.tmp deleted successfully.
    C:\WINDOWS\System32\SET2FE.tmp deleted successfully.
    C:\WINDOWS\System32\SET2FF.tmp deleted successfully.
    C:\WINDOWS\System32\SET301.tmp deleted successfully.
    C:\WINDOWS\System32\SET304.tmp deleted successfully.
    C:\WINDOWS\System32\SET306.tmp deleted successfully.
    C:\WINDOWS\System32\SET307.tmp deleted successfully.
    C:\WINDOWS\System32\SET30A.tmp deleted successfully.
    C:\WINDOWS\System32\SET30B.tmp deleted successfully.
    C:\WINDOWS\System32\SET30E.tmp deleted successfully.
    C:\WINDOWS\System32\SET311.tmp deleted successfully.
    C:\WINDOWS\System32\SET312.tmp deleted successfully.
    C:\WINDOWS\System32\SET314.tmp deleted successfully.
    C:\WINDOWS\System32\SET319.tmp deleted successfully.
    C:\WINDOWS\System32\SET31B.tmp deleted successfully.
    C:\WINDOWS\System32\SET31E.tmp deleted successfully.
    C:\WINDOWS\System32\SET321.tmp deleted successfully.
    C:\WINDOWS\System32\SET323.tmp deleted successfully.
    C:\WINDOWS\System32\SET324.tmp deleted successfully.
    C:\WINDOWS\System32\SET325.tmp deleted successfully.
    C:\WINDOWS\System32\SET327.tmp deleted successfully.
    C:\WINDOWS\System32\SET328.tmp deleted successfully.
    C:\WINDOWS\System32\SET32A.tmp deleted successfully.
    C:\WINDOWS\System32\SET32E.tmp deleted successfully.
    C:\WINDOWS\System32\SET32F.tmp deleted successfully.
    C:\WINDOWS\System32\SET331.tmp deleted successfully.
    C:\WINDOWS\System32\SET332.tmp deleted successfully.
    C:\WINDOWS\System32\SET333.tmp deleted successfully.
    C:\WINDOWS\System32\SET334.tmp deleted successfully.
    C:\WINDOWS\System32\SET337.tmp deleted successfully.
    C:\WINDOWS\System32\SET338.tmp deleted successfully.
    C:\WINDOWS\System32\SET339.tmp deleted successfully.
    C:\WINDOWS\System32\SET33A.tmp deleted successfully.
    C:\WINDOWS\System32\SET33B.tmp deleted successfully.
    C:\WINDOWS\System32\SET33C.tmp deleted successfully.
    C:\WINDOWS\System32\SET33E.tmp deleted successfully.
    C:\WINDOWS\System32\SET33F.tmp deleted successfully.
    C:\WINDOWS\System32\SET340.tmp deleted successfully.
    C:\WINDOWS\System32\SET343.tmp deleted successfully.
    C:\WINDOWS\System32\SET34B.tmp deleted successfully.
    C:\WINDOWS\System32\SET34D.tmp deleted successfully.
    C:\WINDOWS\System32\SET34F.tmp deleted successfully.
    C:\WINDOWS\System32\SET350.tmp deleted successfully.
    C:\WINDOWS\System32\SET351.tmp deleted successfully.
    C:\WINDOWS\System32\SET353.tmp deleted successfully.
    C:\WINDOWS\System32\SET355.tmp deleted successfully.
    C:\WINDOWS\System32\SET35A.tmp deleted successfully.
    C:\WINDOWS\System32\SET35C.tmp deleted successfully.
    C:\WINDOWS\System32\SET35D.tmp deleted successfully.
    C:\WINDOWS\System32\SET362.tmp deleted successfully.
    C:\WINDOWS\System32\SET36D.tmp deleted successfully.
    C:\WINDOWS\System32\SET371.tmp deleted successfully.
    C:\WINDOWS\System32\SET372.tmp deleted successfully.
    C:\WINDOWS\System32\SET373.tmp deleted successfully.
    C:\WINDOWS\System32\SET375.tmp deleted successfully.
    C:\WINDOWS\System32\SET376.tmp deleted successfully.
    C:\WINDOWS\System32\SET378.tmp deleted successfully.
    C:\WINDOWS\System32\SET380.tmp deleted successfully.
    C:\WINDOWS\System32\SET387.tmp deleted successfully.
    C:\WINDOWS\System32\SET38A.tmp deleted successfully.
    C:\WINDOWS\System32\SET38E.tmp deleted successfully.
    C:\WINDOWS\System32\SET38F.tmp deleted successfully.
    C:\WINDOWS\System32\SET390.tmp deleted successfully.
    C:\WINDOWS\System32\SET391.tmp deleted successfully.
    C:\WINDOWS\System32\SET392.tmp deleted successfully.
    C:\WINDOWS\System32\SET393.tmp deleted successfully.
    C:\WINDOWS\System32\SET395.tmp deleted successfully.
    C:\WINDOWS\System32\SET399.tmp deleted successfully.
    C:\WINDOWS\System32\SET3A9.tmp deleted successfully.
    C:\WINDOWS\System32\SET3AD.tmp deleted successfully.
    C:\WINDOWS\System32\SET3AF.tmp deleted successfully.
    C:\WINDOWS\System32\SET3B1.tmp deleted successfully.
    C:\WINDOWS\System32\SET3B5.tmp deleted successfully.
    C:\WINDOWS\System32\SET3B7.tmp deleted successfully.
    C:\WINDOWS\System32\SET3B9.tmp deleted successfully.
    C:\WINDOWS\System32\SET3BB.tmp deleted successfully.
    C:\WINDOWS\System32\SET3CC.tmp deleted successfully.
    C:\WINDOWS\System32\SET3D2.tmp deleted successfully.
    C:\WINDOWS\System32\SET3D4.tmp deleted successfully.
    C:\WINDOWS\System32\SET3D5.tmp deleted successfully.
    C:\WINDOWS\System32\SET3D7.tmp deleted successfully.
    C:\WINDOWS\System32\SET3DB.tmp deleted successfully.
    C:\WINDOWS\System32\SET3DF.tmp deleted successfully.
    C:\WINDOWS\System32\SET3E6.tmp deleted successfully.
    C:\WINDOWS\System32\SET3E9.tmp deleted successfully.
    C:\WINDOWS\System32\SET3EB.tmp deleted successfully.
    C:\WINDOWS\System32\SET3F1.tmp deleted successfully.
    C:\WINDOWS\System32\SET3FB.tmp deleted successfully.
    C:\WINDOWS\System32\SET3FF.tmp deleted successfully.
    C:\WINDOWS\System32\SET401.tmp deleted successfully.
    C:\WINDOWS\System32\SET402.tmp deleted successfully.
    C:\WINDOWS\System32\SET403.tmp deleted successfully.
    C:\WINDOWS\System32\SET40F.tmp deleted successfully.
    C:\WINDOWS\System32\SET414.tmp deleted successfully.
    C:\WINDOWS\System32\SET41A.tmp deleted successfully.
    C:\WINDOWS\System32\SET422.tmp deleted successfully.
    C:\WINDOWS\System32\SET42A.tmp deleted successfully.
    C:\WINDOWS\System32\SET42B.tmp deleted successfully.
    C:\WINDOWS\System32\SET430.tmp deleted successfully.
    C:\WINDOWS\System32\SET43A.tmp deleted successfully.
    C:\WINDOWS\System32\SET44A.tmp deleted successfully.
    C:\WINDOWS\System32\SET44C.tmp deleted successfully.
    C:\WINDOWS\System32\SET44D.tmp deleted successfully.
    C:\WINDOWS\System32\SET450.tmp deleted successfully.
    C:\WINDOWS\System32\SET455.tmp deleted successfully.
    C:\WINDOWS\System32\SET458.tmp deleted successfully.
    C:\WINDOWS\System32\SET45C.tmp deleted successfully.
    C:\WINDOWS\System32\SET45F.tmp deleted successfully.
    C:\WINDOWS\System32\SET460.tmp deleted successfully.
    C:\WINDOWS\System32\SET461.tmp deleted successfully.
    C:\WINDOWS\System32\SET463.tmp deleted successfully.
    C:\WINDOWS\System32\SET464.tmp deleted successfully.
    C:\WINDOWS\System32\SET465.tmp deleted successfully.
    C:\WINDOWS\System32\SET466.tmp deleted successfully.
    C:\WINDOWS\System32\SET468.tmp deleted successfully.
    C:\WINDOWS\System32\SET46A.tmp deleted successfully.
    C:\WINDOWS\System32\SET46B.tmp deleted successfully.
    C:\WINDOWS\System32\SET46D.tmp deleted successfully.
    C:\WINDOWS\System32\SET470.tmp deleted successfully.
    C:\WINDOWS\System32\SET472.tmp deleted successfully.
    C:\WINDOWS\System32\SET477.tmp deleted successfully.
    C:\WINDOWS\System32\SET478.tmp deleted successfully.
    C:\WINDOWS\System32\SET480.tmp deleted successfully.
    C:\WINDOWS\System32\SET486.tmp deleted successfully.
    C:\WINDOWS\System32\SET48D.tmp deleted successfully.
    C:\WINDOWS\System32\SET490.tmp deleted successfully.
    C:\WINDOWS\System32\SET493.tmp deleted successfully.
    C:\WINDOWS\System32\SET495.tmp deleted successfully.
    C:\WINDOWS\System32\SET499.tmp deleted successfully.
    C:\WINDOWS\System32\SET49B.tmp deleted successfully.
    C:\WINDOWS\System32\SET49C.tmp deleted successfully.
    C:\WINDOWS\System32\SET49F.tmp deleted successfully.
    C:\WINDOWS\System32\SET4A1.tmp deleted successfully.
    C:\WINDOWS\System32\SET4A2.tmp deleted successfully.
    C:\WINDOWS\System32\SET4A6.tmp deleted successfully.
    C:\WINDOWS\System32\SET4A7.tmp deleted successfully.
    C:\WINDOWS\System32\SET4AA.tmp deleted successfully.
    C:\WINDOWS\System32\SET4AC.tmp deleted successfully.
    C:\WINDOWS\System32\SET4B1.tmp deleted successfully.
    C:\WINDOWS\System32\SET4B4.tmp deleted successfully.
    C:\WINDOWS\System32\SET4B8.tmp deleted successfully.
    C:\WINDOWS\System32\SET4BA.tmp deleted successfully.
    C:\WINDOWS\System32\SET4BC.tmp deleted successfully.
    C:\WINDOWS\System32\SET651.tmp deleted successfully.
    C:\WINDOWS\System32\SET657.tmp deleted successfully.
    C:\WINDOWS\003101_.tmp deleted successfully.
    C:\WINDOWS\003110_.tmp deleted successfully.
    C:\WINDOWS\msdownld.tmp folder deleted successfully.
    C:\WINDOWS\SET4E2.tmp deleted successfully.
    C:\WINDOWS\~DF41D.tmp deleted successfully.
    C:\WINDOWS\~DF62AC.tmp deleted successfully.
    C:\WINDOWS\~DF62E7.tmp deleted successfully.
    C:\WINDOWS\~DF7671.tmp deleted successfully.
    C:\WINDOWS\~DF769E.tmp deleted successfully.
    C:\WINDOWS\~DF7C51.tmp deleted successfully.
    C:\WINDOWS\~DF8697.tmp deleted successfully.
    C:\WINDOWS\~DFCC9F.tmp deleted successfully.
    C:\Documents and Settings\All Users\Application Data\BOONTY\Licenses folder moved successfully.
    C:\Documents and Settings\All Users\Application Data\BOONTY folder moved successfully.
    C:\Documents and Settings\HP_Administrateur\Application Data\searchquband folder moved successfully.
    ========== COMMANDS ==========

    [EMPTYTEMP]

    User: Administrateur
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 67 bytes

    User: All Users

    User: Default User
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 33170 bytes
    ->Flash cache emptied: 56507 bytes

    User: HP_Administrateur
    ->Temp folder emptied: 27026778 bytes
    ->Temporary Internet Files folder emptied: 360980 bytes
    ->Java cache emptied: 0 bytes
    ->FireFox cache emptied: 88860901 bytes
    ->Apple Safari cache emptied: 0 bytes
    ->Flash cache emptied: 59817 bytes

    User: LocalService
    ->Temp folder emptied: 115616 bytes
    ->Temporary Internet Files folder emptied: 319597 bytes

    User: NetworkService
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 167402468 bytes

    %systemdrive% .tmp files removed: 0 bytes
    %systemroot% .tmp files removed: 0 bytes
    %systemroot%\System32 .tmp files removed: 0 bytes
    %systemroot%\System32\dllcache .tmp files removed: 0 bytes
    %systemroot%\System32\drivers .tmp files removed: 0 bytes
    Windows Temp folder emptied: 2623421 bytes
    %systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 103745417 bytes
    %systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
    RecycleBin emptied: 0 bytes

    Total Files Cleaned = 373,00 mb


    OTL by OldTimer - Version 3.2.45.0 log created on 06032012_213039

    Files\Folders moved on Reboot...

    Registry entries deleted on Reboot...
    a c 548 8 Sécurité
    a b , Internet Explorer
    3 Juin 2012 22:12:23

    Re,

    Ok, as-tu encore le souci de la présence d'imesh en barre d'outil dans IE ?

    As-tu encore des souci avec Firefox ?
    3 Juin 2012 23:04:43

    Re,
    et bien non, plus aucune trace d'imesh dans IE .. Merci :) 
    Pour Firefox, j'ai bien l'impression de pouvoir naviguer plus rapidement :)  ..quant au fait qu'il plantait souvent, j'ai peu navigué depuis ..
    Je n'ai pas d'infection particulière sur mon pc? Ca venait d'ou sinon la lenteur et plantages ?

    Merci beaucoup de l'aide apportée et du temps sacrifié ;) 
    a c 548 8 Sécurité
    a b , Internet Explorer
    4 Juin 2012 10:54:32

    Re,

    Tu n'avais que des restes d'infection par adwares (logiciels publicitaires) et d'infections par support amovible, rien de très séreux.

    On va nettoyer les outils et conclure :

    1) Relance OTL.exe

  • Clique sur "Purge d'outils"
  • Valide l'avertissement par "ok" et laisse le pc redémarrer.


    Télécharge SX Check&Update (de Igor51 ) sur ton bureau.

  • Lance SXCU.exe en double-cliquant dessus.

  • Clique sur Update Java à droite. Le chargement et l'exécution de la mise à jour vont se faire, suis les instructions. Si rien ne se passe, fais manuellement la mise à jour ici : http://www.java.com/fr/download/
    Pense à supprimer ensuite si encore présent dans ta liste des programmes : Java(TM) 6 Update 31

  • Clique sur Update Adobe Reader à droite. Le chargement et l'exécution de la mise à jour vont se faire, suis les instructions. Si rien ne se passe, fais manuellement la mise à jour ici : http://get.adobe.com/reader/

  • Clique sur Update Flash à droite. Selon le cas, soit Internet Explorer, soit ton ou tes autres navigateurs vont s'ouvrir, suis pour chacun d'eux les instructions à l'écran pour la mise à jour.


    Ferme le programme via "Quit"
    Tu peux supprimer SXCU.exe.


    Pour aller plus loin dans ta protection et éviter de te faire réinfecter voici quelques conseils supplémentaires :

  • Installer un parefeu en remplacement de celui de Windows XP :
    Le parefeu intégré de Windows XP n'est pas assez performant, il est intéressant de le remplacer par un parefeu plus complet, tel Zone Alarm ou Kerio par exemple ... /!\ comme les antivirus, un seul parefeu sur ton pc, pense donc à désactiver celui de Windows si tu en installes un autre !!!

  • Attention lors de l'installation de logiciel :
    Veiller à toujours lire les conditions d'utilisation (CLUF), afin de déceler la gestion des données personnelles, l'installation de sponsors publicitaires ou tout autre atteintes à la vie privée. Refuser les toolbars et autres addons proposés.
    A lire !

  • Firefox et/ou Chrome offrent une meilleure sécurité par rapport à Internet Explorer, surtout si on les complète de quelques plugins très intéressant : Noscript et WOT par exemple. (pour Chrome : NoScript ; WOT )

  • Surfer sans les droits d'administration : En session limitée ou avec DropMyRight
    Cela diminue considérablement les risques d'infections, car certaines infection ne peuvent alors plus s'installer.

  • Maintenir ses logiciels et son système à jour :
    De nombreuses infections sont dû à des failles de windows, mais aussi de logiciel tiers, comme Sun Java, Adobe Acrobat Reader, etc
    Tu peux faire un scan de vulnérabilité pour connaitre tes logiciels présentant des failles non corrigées ou à mettre à jour.

    Enfin, le plus important reste ton comportement sur ton PC, tu restes la plus importante protection : Évites les comportement à risque : P2P, cracks, téléchargements et installations douteux via des pubs, les messageries instantanées, ou des sites inconnu, sites pornographiques.
    A lire !


    Tu peux indiquer ton sujet "réglé" en cliquant sur le bouton "modifier" (en bas, en forme de crayon) dans ton tout premier message.
    -> Ajoute ensuite "résolu" à coté de ton titre et valide.

    Tu peux aussi,si tu le souhaites et si l'option est disponible (dépend de quel type de sujet ouvert), valider une "meilleure réponse", ton sujet sera alors automatiquement marqué comme "résolu"

    /!\ Seul les membres inscrit et connecté à la création initiale du sujet peuvent effectuer ces manipulations.

    A bientôt sur les forums Tom's Guide
    :jap: 
    4 Juin 2012 14:39:33

    Re,

    J'ai bien effectué toutes les dernières manips,

    Je vais éditer "résolu" ..

    je te remercie pour tout. :) 



    Tom's guide dans le monde
    • Allemagne
    • Italie
    • Irlande
    • Royaume Uni
    • Etats Unis
    Suivre Tom's Guide
    Inscrivez-vous à la Newsletter
    • ajouter à twitter
    • ajouter à facebook
    • ajouter un flux RSS