Pub spam

Fermé
titipsg83 Messages postés 36 Date d'inscription lundi 3 juin 2013 Statut Membre Dernière intervention 2 avril 2018 - 3 juin 2013 à 18:23
billmaxime Messages postés 49928 Date d'inscription dimanche 20 novembre 2011 Statut Contributeur Dernière intervention 22 avril 2024 - 5 juin 2013 à 06:07
bonjours depuis quelque jours mon ordi windows 8 rame et m ouvre des onglets internet de pub je c est pas comment faire pour les enlever définitivement et pour que mon ordi rame plus. Merci d avance de m aider.
A voir également:

10 réponses

billmaxime Messages postés 49928 Date d'inscription dimanche 20 novembre 2011 Statut Contributeur Dernière intervention 22 avril 2024 5 944
3 juin 2013 à 18:25
salut

tu as téléchargé sur des sites qui refilent des publiciels/adwares

pour ton problème, fais ceci

télécharge adwcleaner sur ton bureau (clique sur la flèche verte)

le lien https://toolslib.net

utlisateurs vista-w7-w8 exécuter en tant qu'administrateur (clic droit)

choisis le mode suppression

le rapport s'affichera sur ton bureau et dans C:\adw[S1].txt

poste le rapport via 1 copier/coller

@+

0
titipsg83 Messages postés 36 Date d'inscription lundi 3 juin 2013 Statut Membre Dernière intervention 2 avril 2018 19
3 juin 2013 à 19:07
# AdwCleaner v2.301 - Rapport créé le 03/06/2013 à 18:58:07
# Mis à jour le 16/05/2013 par Xplode
# Système d'exploitation : Windows 8 (64 bits)
# Nom d'utilisateur : titi - TITIETCARLA
# Mode de démarrage : Normal
# Exécuté depuis : C:\Users\titi\Downloads\adwcleaner.exe
# Option [Suppression]


***** [Services] *****

Arrêté & Supprimé : BrowserProtect
Arrêté & Supprimé : CltMngSvc
Arrêté & Supprimé : IBUpdaterService
Arrêté & Supprimé : SProtection
Arrêté & Supprimé : supt4pc_fr_36

***** [Fichiers / Dossiers] *****

Dossier Supprimé : C:\Program Files (x86)\01NET.com
Dossier Supprimé : C:\Program Files (x86)\Boxore
Dossier Supprimé : C:\Program Files (x86)\Common Files\Umbrella
Dossier Supprimé : C:\Program Files (x86)\Conduit
Dossier Supprimé : C:\Program Files (x86)\Delta
Dossier Supprimé : C:\Program Files (x86)\HappyLyrics
Dossier Supprimé : C:\Program Files (x86)\Iminent
Dossier Supprimé : C:\Program Files (x86)\onlinetracks
Dossier Supprimé : C:\Program Files (x86)\PricePeep
Dossier Supprimé : C:\Program Files (x86)\SearchProtect
Dossier Supprimé : C:\Program Files (x86)\Services x86
Dossier Supprimé : C:\Program Files (x86)\Software
Dossier Supprimé : C:\Program Files (x86)\SweetIM
Dossier Supprimé : C:\Program Files (x86)\tuto4pc_fr_33
Dossier Supprimé : C:\Program Files (x86)\tuto4pc_fr_36
Dossier Supprimé : C:\ProgramData\Babylon
Dossier Supprimé : C:\ProgramData\boost_interprocess
Dossier Supprimé : C:\ProgramData\BrowserProtect
Dossier Supprimé : C:\ProgramData\Iminent
Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent
Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tuto4pc
Dossier Supprimé : C:\ProgramData\SweetIM
Dossier Supprimé : C:\ProgramData\Tarma Installer
Dossier Supprimé : C:\Users\titi\AppData\Local\Conduit
Dossier Supprimé : C:\Users\titi\AppData\Local\EoRezo
Dossier Supprimé : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Dossier Supprimé : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Extensions\igdhbblpcellaljokkpfhcjlagemhgjl
Dossier Supprimé : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbpohikckhbcljgombipcdoinkaedlfa
Dossier Supprimé : C:\Users\titi\AppData\Local\lollipop
Dossier Supprimé : C:\Users\titi\AppData\Local\Temp\Iminent
Dossier Supprimé : C:\Users\titi\AppData\Local\tuto4pc_fr_33
Dossier Supprimé : C:\Users\titi\AppData\Local\tuto4pc_fr_36
Dossier Supprimé : C:\Users\titi\AppData\LocalLow\01NET.com
Dossier Supprimé : C:\Users\titi\AppData\LocalLow\Conduit
Dossier Supprimé : C:\Users\titi\AppData\LocalLow\onlinetracks
Dossier Supprimé : C:\Users\titi\AppData\LocalLow\PriceGong
Dossier Supprimé : C:\Users\titi\AppData\Roaming\BabSolution
Dossier Supprimé : C:\Users\titi\AppData\Roaming\Babylon
Dossier Supprimé : C:\Users\titi\AppData\Roaming\Delta
Dossier Supprimé : C:\Users\titi\AppData\Roaming\Iminent
Dossier Supprimé : C:\Users\titi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserProtect
Dossier Supprimé : C:\Users\titi\AppData\Roaming\SearchProtect
Dossier Supprimé : C:\Users\titi\AppData\Roaming\WebPlayerBdd
Dossier Supprimé : C:\Windows\Installer\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Dossier Supprimé : C:\Windows\Installer\{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D}
Dossier Supprimé : C:\Windows\Installer\{EA69DAE1-1BC2-48ED-AB9A-24A5C8AC8071}
Dossier Supprimé : C:\Windows\SysWOW64\WNLT
Fichier Supprimé : C:\END
Fichier Supprimé : C:\Program Files (x86)\Common Files\plugin.crx
Fichier Supprimé : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\bProtector Web Data
Fichier Supprimé : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences
Fichier Supprimé : C:\Users\titi\Documents\Search The Web.url
Fichier Supprimé : C:\Users\titi\Documents\sweetpcfix.url
Fichier Supprimé : C:\Windows\Tasks\SoftwareUpdateTaskMachineCore.job
Fichier Supprimé : C:\Windows\Tasks\SoftwareUpdateTaskMachineUA.job
Supprimé au redémarrage : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Supprimé au redémarrage : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehdmaehkiiampolokajdcelladmnopgp

***** [Registre] *****

Clé Supprimée : HKCU\Software\AppDataLow\Software\01NET.com
Clé Supprimée : HKCU\Software\AppDataLow\Software\Conduit
Clé Supprimée : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Clé Supprimée : HKCU\Software\AppDataLow\Software\Crossrider
Clé Supprimée : HKCU\Software\AppDataLow\Software\onlinetracks
Clé Supprimée : HKCU\Software\AppDataLow\Software\PriceGong
Clé Supprimée : HKCU\Software\AppDataLow\Software\Services x86
Clé Supprimée : HKCU\Software\AppDataLow\Software\SmartBar
Clé Supprimée : HKCU\Software\AppDataLow\Toolbar
Clé Supprimée : HKCU\Software\Conduit
Clé Supprimée : HKCU\Software\Cr_Installer
Clé Supprimée : HKCU\Software\DataMngr
Clé Supprimée : HKCU\Software\DataMngr_Toolbar
Clé Supprimée : HKCU\Software\Delta
Clé Supprimée : HKCU\Software\Google\Chrome\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Clé Supprimée : HKCU\Software\IM
Clé Supprimée : HKCU\Software\Iminent
Clé Supprimée : HKCU\Software\ImInstaller
Clé Supprimée : HKCU\Software\InstallCore
Clé Supprimée : HKCU\Software\InstalledBrowserExtensions
Clé Supprimée : HKCU\Software\lollipop
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110211701196}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{789733C8-7A68-4A43-ACE3-BEB2292C914B}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8E5025C2-8EA3-430D-80B8-A14151068A6D}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110211701196}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1F358CCA-D49F-485D-9D8F-516628188A4C}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{789733C8-7A68-4A43-ACE3-BEB2292C914B}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8E5025C2-8EA3-430D-80B8-A14151068A6D}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\lollipop
Clé Supprimée : HKCU\Software\onlinetracks
Clé Supprimée : HKCU\Software\SearchProtect
Clé Supprimée : HKCU\Software\Tutorials
Clé Supprimée : HKCU\Software\TutoTag
Clé Supprimée : HKCU\Software\WNLT
Clé Supprimée : HKCU\Software\5d6df8bb235be41
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\Software\01NET.com
Clé Supprimée : HKLM\Software\Babylon
Clé Supprimée : HKLM\Software\Boxore
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{01994268-3C10-4044-A1EA-7A9C1B739A11}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{38A066B0-DD5F-4226-AC4F-6A27C1BFB892}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{39CB8175-E224-4446-8746-00566302DF8D}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\Iminent.WebBooster.InternetExplorer.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\PricePeep.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0027096.BHO
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0027096.BHO.1
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0027096.Sandbox
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0027096.Sandbox.1
Clé Supprimée : HKLM\SOFTWARE\Classes\delta.deltaappCore
Clé Supprimée : HKLM\SOFTWARE\Classes\delta.deltaappCore.1
Clé Supprimée : HKLM\SOFTWARE\Classes\delta.deltadskBnd
Clé Supprimée : HKLM\SOFTWARE\Classes\delta.deltadskBnd.1
Clé Supprimée : HKLM\SOFTWARE\Classes\delta.deltaHlpr
Clé Supprimée : HKLM\SOFTWARE\Classes\delta.deltaHlpr.1
Clé Supprimée : HKLM\SOFTWARE\Classes\escort.escortIEPane
Clé Supprimée : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Clé Supprimée : HKLM\SOFTWARE\Classes\esrv.deltaESrvc
Clé Supprimée : HKLM\SOFTWARE\Classes\esrv.deltaESrvc.1
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.DownloadArgs
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.LinkToPromoteArgs
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.RawDataArgs
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.TinyUrlArgs
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.ViralLinkArgs
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ClientCallback
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ContractBase
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GameOverCallback
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetCreditCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableResult
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.InstallationContextResult
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LogoutCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MyAccountCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PlayContentCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PostContentCallback
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.SetVariableCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.TestContentCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WarmUpCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WelcomeCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerResult
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightContent
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightUri
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.MediatorServiceProxy
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.ActiveContentHandle.1
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.ActiveContentHandler
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject.1
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender.1
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler.1
Clé Supprimée : HKLM\Software\Classes\Installer\Features\1EAD96AE2CB1DE84BAA9425A8CCA0817
Clé Supprimée : HKLM\Software\Classes\Installer\Features\9EE58E3C298524145B73CBBED3CAC4D3
Clé Supprimée : HKLM\Software\Classes\Installer\Features\B2FD9C0A5B9838449838816A28001F4B
Clé Supprimée : HKLM\Software\Classes\Installer\Features\EB6AF8AEEB922FA4392548F13812E50B
Clé Supprimée : HKLM\Software\Classes\Installer\Products\1EAD96AE2CB1DE84BAA9425A8CCA0817
Clé Supprimée : HKLM\Software\Classes\Installer\Products\9EE58E3C298524145B73CBBED3CAC4D3
Clé Supprimée : HKLM\Software\Classes\Installer\Products\B2FD9C0A5B9838449838816A28001F4B
Clé Supprimée : HKLM\Software\Classes\Installer\Products\EB6AF8AEEB922FA4392548F13812E50B
Clé Supprimée : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils
Clé Supprimée : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils.1
Clé Supprimée : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator
Clé Supprimée : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator.1
Clé Supprimée : HKLM\SOFTWARE\Classes\PricePeep.PricePeepBho
Clé Supprimée : HKLM\SOFTWARE\Classes\PricePeep.PricePeepBho.1
Clé Supprimée : HKLM\SOFTWARE\Classes\Prod.cap
Clé Supprimée : HKLM\SOFTWARE\Classes\sim-packages
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreClass
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreClass.1
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachine
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachine.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar
Clé Supprimée : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar.1
Clé Supprimée : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook
Clé Supprimée : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook.1
Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar.CT3128284
Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar.CT3241324
Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar3.sweetie
Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar3.sweetie.1
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{39CB8175-E224-4446-8746-00566302DF8D}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{3BF3DED5-0FC8-4207-AC09-AA7B5AF4E408}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440244704496}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{4599D05A-D545-4069-BB42-5895B4EAE05B}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{4D3B167E-5FD8-4276-8FD7-9DF19C1E4D19}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{A9CAF365-EA35-45DA-BD8B-2EFA09D374AC}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\Software\Conduit
Clé Supprimée : HKLM\Software\DataMngr
Clé Supprimée : HKLM\Software\Delta
Clé Supprimée : HKLM\Software\Iminent
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\SweetIM.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{151867D5-7359-40AF-8764-66E58D06283C}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1F358CCA-D49F-485D-9D8F-516628188A4C}
Clé Supprimée : HKLM\Software\onlinetracks
Clé Supprimée : HKLM\Software\SearchProtect
Clé Supprimée : HKLM\Software\Services x86
Clé Supprimée : HKLM\Software\Tuto4PC
Clé Supprimée : HKLM\Software\Umbrella
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\5d6df8bb235be41
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{01A602A0-D0B9-445B-8081-719E4177C4A7}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02C9C7B0-C7C8-4AAC-A9E4-55295BF60F8F}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{0398B101-6DA7-473F-A290-17D2FBC88CC0}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{0CC36196-8589-4B80-A771-D659411D7F90}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{11111111-1111-1111-1111-110211701196}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{143D96F9-EB64-48B3-B192-91C2C41A1F43}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{14F7D91F-F669-45C9-9F42-BACBFDB86EAD}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{151867D5-7359-40AF-8764-66E58D06283C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{187A6488-6E71-4A2A-B118-7BEFBFE58257}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{1F358CCA-D49F-485D-9D8F-516628188A4C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{22222222-2222-2222-2222-220222702296}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{261DD098-8A3E-43D4-87AA-63324FA897D8}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{26C9BBE4-6D45-4AB6-A5B4-E068C9F5EF6D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{2D065204-A024-4C39-8A38-EE7078EC7ACF}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{30F5476C-677B-4DB0-B397-51F5BFD86840}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3223F2FB-D9B9-45FC-9D66-CD717FFA4EE5}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{351798B1-C1D2-45AB-92B4-4D6C2D6AB5AF}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3AEA1BEF-6195-46F4-ACA2-0ED14F7EFA1B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3D7F9AC3-BAC3-4E51-81D7-D121D79E550A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4498C5E9-93C6-4142-B6BE-F0C6DC48B77A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{479BF2D6-E362-4A99-B1AB-BC764D7B97AE}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{492A108F-51D0-4BD8-899D-AD4AB2893064}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4B6D6E60-FBD2-4E79-BF4B-886BC98F1797}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4FCB4630-2A1C-4AA1-B422-345E8DC8A6DE}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{60893E02-2E5B-43F9-A93A-BAD60C2DF6EF}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{6D39931F-451E-4BDD-BAF4-37FB96DBBA5D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{76C684D2-C35D-4284-976A-D862F53ADB81}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{789733C8-7A68-4A43-ACE3-BEB2292C914B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{796D822A-C3F9-4A97-BAAB-42FE7628EA63}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{79EF3691-EC1A-4705-A01A-D2E36EC11758}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{82AC53B4-164C-4B07-A016-437A8388B81A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{82F41418-8E64-47EB-A7F1-4702A974D289}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{85D920CE-63A7-46DC-8992-41D1D2E07FAD}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{86838207-681D-469D-9511-D0DCC6F19F9B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{895ED5E8-ABB4-40C3-A0CA-2571964268E2}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{8AAC123A-1959-4A45-BFC5-E2D50783098A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{8E5025C2-8EA3-430D-80B8-A14151068A6D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A07956CD-81F8-4A03-B524-5D87E690DC83}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A4A0CB15-8465-4F58-A7E5-73084EA2A064}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B5E3B26B-6E5C-4865-A63D-58D04B10E245}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B84D2DC5-42B2-4E5E-BF61-7B48152FF8EF}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B89D5309-0367-4494-A92F-3D4C94F88307}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C014EBF8-8854-448B-B5A4-557C4090EDCE}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C31191DB-2F64-464C-B97C-6AC81ACB7AAC}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C342C7A7-F622-4EF3-8B7F-ABB9FBE73F14}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C4765B07-BC2F-477B-925C-B2BF24887823}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C875C0A1-09E3-48D5-9F8E-BD337796FD14}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CD126DA6-FF5B-4181-AC13-54A62240D2FA}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D8F01233-2DE6-4EE7-8988-37263F00651B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DD438708-AAB4-422D-A322-B619589F5680}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E812AE43-7799-4E67-8CF8-4104297A2D16}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E97A663B-81A6-49C5-A6D3-BCB05BA1DE26}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F0BAAEC7-9AE0-49FF-9C4B-86E774FF397F}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F92193FD-2243-4401-9ACC-49FF30885898}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FD21B8A2-910B-45AC-9C10-45E6A8B84984}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{55555555-5555-5555-5555-550255705596}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66666666-6666-6666-6666-660266706696}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{75BF416E-4326-45B5-8A2D-AE32D05B930B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A439801C-961D-452C-AB42-7848E9CBD289}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F4EBB1E2-21F3-4786-8CF4-16EC5925867F}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\igdhbblpcellaljokkpfhcjlagemhgjl
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\licjnkifamhpbaefhdpacpmihicfbomb
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0AF350D9-3916-454B-AC53-0B0B65F41301}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0CA970BC-DF6B-44F0-94CA-AD8B1AF05FCC}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0E2FBC3B-0540-4BB9-884A-44E3C7850A1C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{20113120-F047-4EEA-AABE-B270B4CBE553}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{348C2DF3-1191-4C3E-92A6-B3A89A9D9C85}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CB0D10FB-55D1-4029-A89B-8A6221F70238}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110211701196}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{789733C8-7A68-4A43-ACE3-BEB2292C914B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5025C2-8EA3-430D-80B8-A14151068A6D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0C43FE6B-E881-4AFC-B384-4AEBC90047E8}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EA69DAE1-1BC2-48ED-AB9A-24A5C8AC8071}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EA8FA6BE-29BE-4AF2-9352-841F83215EB0}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\01NET.com Toolbar
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta Chrome Toolbar
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\onlinetracks Toolbar
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\PricePeep
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Services x86
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\tuto4pc_fr_33_is1
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\tuto4pc_fr_36_is1
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WNLT
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550255705596}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660266706696}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{75BF416E-4326-45B5-8A2D-AE32D05B930B}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\1C875DDE39636004CA8CDAEC335B4160
Clé Supprimée : HKLM\SOFTWARE\Tarma Installer
Clé Supprimée : HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Donnée Supprimée : HKLM\..\Windows [AppInit_DLLs] = c:\progra~3\browse~1\261249~1.132\{c16c1~1\browse~1.dll
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{789733C8-7A68-4A43-ACE3-BEB2292C914B}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{8E5025C2-8EA3-430D-80B8-A14151068A6D}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{789733C8-7A68-4A43-ACE3-BEB2292C914B}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{8E5025C2-8EA3-430D-80B8-A14151068A6D}]
Valeur Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [searchprotect]
Valeur Supprimée : HKCU\Software\Mozilla\Firefox\Extensions [happylyrics@hpyproductions.net]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{789733C8-7A68-4A43-ACE3-BEB2292C914B}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{8E5025C2-8EA3-430D-80B8-A14151068A6D}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Boxore Client]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Iminent]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [IminentMessenger]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SearchProtectAll]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SweetIM]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Sweetpacks Communicator]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [tuto4pc_fr_33]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [tuto4pc_fr_36]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll]
Valeur Supprimée : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [webbooster@iminent.com]
Valeur Supprimée : HKLM\SOFTWARE\Policies\Google\Chrome\ExtensionInstallForcelist [1]
Valeur Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{789733C8-7A68-4A43-ACE3-BEB2292C914B}]
Valeur Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{82E1477C-B154-48D3-9891-33D83C26BCD3}]
Valeur Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{8E5025C2-8EA3-430D-80B8-A14151068A6D}]
Valeur Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{EEE6C35B-6118-11DC-9C72-001320C79847}]

***** [Navigateurs] *****

-\\ Internet Explorer v10.0.9200.16537

Remplacé : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.babylon.com/home?affID=119549&tt=gc_ --> hxxp://www.google.com
Remplacé : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?crg=3.1010000.10025&barid={F5F584C9-5C26-11E2-BE75-4C72B993EA23} --> hxxp://www.google.com
0
billmaxime Messages postés 49928 Date d'inscription dimanche 20 novembre 2011 Statut Contributeur Dernière intervention 22 avril 2024 5 944
3 juin 2013 à 19:19
re

relance adwcleaner et choisis désinstaller

ensuite fais ceci s'il te plaît

télécharge MBAM sur ton bureau

le lien https://www.malwarebytes.com/ (prend le free)

le tuto https://www.donnemoilinfo.com/tuto/Malwarebytes-Anti-Malware/

exécute le en tant qu'administrateur (clic droit)
met le a jour (3ème bouton)

fais 1 scan complet (tous les disques)

le scan peut durer +-2H (laisse le bosser)

si MBAM trouve quelque chose supprime la sélection (voir tuto 2ème page)

poste le rapport via 1 copier/coller

le rapport s'affichera sur ton bureau et dans rapport/log de MBAM

@+

0
titipsg83 Messages postés 36 Date d'inscription lundi 3 juin 2013 Statut Membre Dernière intervention 2 avril 2018 19
3 juin 2013 à 21:44
Malwarebytes Anti-Malware (Essai) 1.75.0.1300
www.malwarebytes.org

Version de la base de données: v2013.06.03.07

Windows 8 x64 NTFS
Internet Explorer 10.0.9200.16580
titi :: TITIETCARLA [administrateur]

Protection: Activé

03/06/2013 19:49:58
mbam-log-2013-06-03 (19-49-58).txt

Type d'examen: Examen complet (C:\|D:\|)
Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM
Options d'examen désactivées: P2P
Elément(s) analysé(s): 411096
Temps écoulé: 1 heure(s), 51 minute(s), 24 seconde(s)

Processus mémoire détecté(s): 0
(Aucun élément nuisible détecté)

Module(s) mémoire détecté(s): 0
(Aucun élément nuisible détecté)

Clé(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)

Valeur(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)

Elément(s) de données du Registre détecté(s): 0
(Aucun élément nuisible détecté)

Dossier(s) détecté(s): 0
(Aucun élément nuisible détecté)

Fichier(s) détecté(s): 4
C:\Users\titi\AppData\Local\Temp\is1052428094\Tuto4PC_Setup_FR.exe (Adware.Tuto4PC) -> Mis en quarantaine et supprimé avec succès.
C:\Users\titi\AppData\Local\Temp\is1635578793\PricePeepInstaller.exe (Adware.Agent) -> Mis en quarantaine et supprimé avec succès.
C:\Users\titi\Downloads\FlashPlayer_V.5bjbrDOzc.exe (PUP.FakeFlash.Domaiq) -> Mis en quarantaine et supprimé avec succès.
C:\Windows\Installer\9fe60.msi (Adware.Boxore) -> Mis en quarantaine et supprimé avec succès.

(fin)
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
billmaxime Messages postés 49928 Date d'inscription dimanche 20 novembre 2011 Statut Contributeur Dernière intervention 22 avril 2024 5 944
3 juin 2013 à 21:55
re

ok, c'est bien

je vois que tu vas sur 01NET.com et tuto4pc (c'est pas bon) je te joins 1 peu de lecture

https://www.malekal.com/tag/tuto4pc/
===================================================
fais encore ceci pour que je contrôle si tout est ok

télécharge zhpdiag sur ton bureau (outil de diagnostic)

le lien https://www.commentcamarche.net/telecharger/utilitaires/24803-zhpdiag/

le tuto http://www.security-helpzone.com/forum/Thread-ZHPDiag-Generer-un-rapport

utilisateurs vista-w7-w8 exécuter en tant qu'administrateur (clic droit)

pour lancer le scan clique sur la loupe avec le + (2ème bouton en haut a gauche)

le rapport s'affichera sur ton bureau et dans C:\zhpdiag.txt

poste le rapport via ce lien https://www.cjoint.com/

@+

0
titipsg83 Messages postés 36 Date d'inscription lundi 3 juin 2013 Statut Membre Dernière intervention 2 avril 2018 19
4 juin 2013 à 06:10
Rapport de ZHPDiag v2013.6.3.5 par Nicolas Coolman, Update du 03/06/2013
Run by titi at 04/06/2013 05:50:35
WebSite: https://nicolascoolman.webs.com/
State : Version à jour.
WhiteList : Enable
High Elevated Privileges : OK
UAC : Activate by user


---\\ Web Browser
MSIE: Internet Explorer v10.0.9200.16580
GCIE: Google Chrome v27.0.1453.94 (Defaut)

---\\ Windows Product Information
~ Langage: Français
Windows 8 Home Premium Edition, 64-bit (Build 9200)
Windows Server License Manager Script : OK
~ ion : Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : YDTBG
Windows License : OK
~ Windows Remaining Initializations Number : 999
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ System Protection
Bitdefender Antivirus Plus 2013 v16.16.0.1349
Malwarebytes Anti-Malware version 1.75.0.1300
Windows Defender W8

---\\ System Optimizer

---\\ Peer To Peer (P2P)
eMule

---\\ Software Update

---\\ System Information
~ Processor: AMD64 Family 20 Model 2 Stepping 0, AuthenticAMD
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3658 MB (63% free)
System Restore: Activé (Enable)
System drive C: has 382 GB (85%) free of 448 GB

---\\ Logged in mode
~ Computer Name: TITIETCARLA
~ User Name: titi
~ All Users Names: titi, HomeGroupUser$, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\titi\AppData\Roaming\
~ %Desktop% : C:\Users\titi\Desktop\
~ %Favorites% : C:\Users\titi\Favorites\
~ %LocalAppData% : C:\Users\titi\AppData\Local\
~ %StartMenu% : C:\Users\titi\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 382 Go of 448 Go)
D:\ CD-ROM drive (Free 0 Go of 4 Go)



---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
~ Security Center: 29 Legitimates Filtered in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.E13A31D5254C25406A7946BDD9B06364] - (.Microsoft Corporation - Explorateur Windows.) (.11/10/2012 - 08:35:16.) -- C:\Windows\Explorer.exe [2380944]
[MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - (.Microsoft Corporation - Application de démarrage de Windows.) (.26/07/2012 - 04:08:50.) -- C:\Windows\System32\Wininit.exe [132608]
[MD5.9B9107F1486476D86B6910EDF07F4358] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.10/04/2013 - 00:17:44.) -- C:\Windows\System32\wininet.dll [2242048]
[MD5.BCF2036A0DD579E47C008C133550283E] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/10/2012 - 06:46:58.) -- C:\Windows\System32\Winlogon.exe [517120]
[MD5.9448F5740A037EC0C18F0E9177232DD0] - (.Microsoft Corporation - Bibliothèque de licences.) (.26/07/2012 - 04:07:20.) -- C:\Windows\System32\sppcomapi.dll [273408]
[MD5.36D6A3201721558A8AFBCC09C2DA4C2C] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.06/11/2012 - 04:53:44.) -- C:\Windows\system32\Drivers\AFD.sys [560640]
[MD5.A721FF570C2387E383BDDEA9632863C9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.26/07/2012 - 06:00:48.) -- C:\Windows\system32\Drivers\atapi.sys [25840]
[MD5.990B1BABE6E81FB18E65A87EBEFB1772] - (.Microsoft Corporation - CD-ROM File System Driver.) (.26/07/2012 - 03:30:10.) -- C:\Windows\system32\Drivers\Cdfs.sys [108544]
[MD5.339BFF85D788268752DA8C9644B188EE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.26/07/2012 - 03:26:36.) -- C:\Windows\system32\Drivers\Cdrom.sys [174080]
[MD5.09D9EB9E7898F8E6561473A20CC808B9] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.26/07/2012 - 03:26:53.) -- C:\Windows\system32\Drivers\DfsC.sys [118784]
[MD5.7D87B5B6C7188D553E11B59DC7F0B111] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/09/2012 - 07:08:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [71168]
[MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - (.Microsoft Corporation - Pilote de port i8042.) (.26/07/2012 - 03:28:51.) -- C:\Windows\system32\Drivers\i8042prt.sys [112640]
[MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - (.Microsoft Corporation - IP Network Address Translator.) (.26/07/2012 - 03:23:01.) -- C:\Windows\system32\Drivers\IpNat.sys [145920]
[MD5.93179D48066918323628CB016D8C94DC] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.05/02/2013 - 23:29:09.) -- C:\Windows\system32\Drivers\MRxSmb.sys [370688]
[MD5.7CEC25C682D319D484630B3952C31A11] - (.Microsoft Corporation - MBT Transport driver.) (.26/07/2012 - 03:24:28.) -- C:\Windows\system32\Drivers\netBT.sys [331776]
[MD5.76929F4A69E425911A63B407E26C2589] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.02/02/2013 - 11:54:54.) -- C:\Windows\system32\Drivers\ntfs.sys [1933544]
[MD5.4563DAF8C6A740AD7F501E219BD10766] - (.Microsoft Corporation - Pilote de port parallèle.) (.26/07/2012 - 03:29:53.) -- C:\Windows\system32\Drivers\Parport.sys [105984]
[MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.26/07/2012 - 03:23:17.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [124928]
[MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.26/07/2012 - 03:25:18.) -- C:\Windows\system32\Drivers\rdpdr.sys [179712]
[MD5.73DC722CE5DF26D7638CE2446F2655C7] - (.Microsoft Corporation - TDI Translation Driver.) (.26/07/2012 - 06:26:47.) -- C:\Windows\system32\Drivers\tdx.sys [117248]
[MD5.2FB3CDFD5EAF4CD9D4AFAF96877D13AE] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.26/07/2012 - 05:57:09.) -- C:\Windows\system32\Drivers\volsnap.sys [332016]
~ Generic Processes: Scanned in 00mn 01s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes Videos (My Videos) : 1/2
~ Mes Favoris (My Favorites) : 1/12
~ Mes Documents (My Documents) : 1/3847
~ Mon Bureau (My Desktop) : 2/211
~ Menu demarrer (Programs) : 1/28
~ Hidden Files: Scanned in 00mn 23s



---\\ Processus lancés
[MD5.D1D5DAB39DCB4BE0359943738D87409B] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [532040] [PID.3404]
[MD5.1B38F4C2BCDB133B757E22BEB61FB3FC] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe [1176176] [PID.3204]
[MD5.51C392EC9DA1119EC86D562FF3E7344F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [825808] [PID.3772]
[MD5.A3285102E7656627A53625A9138FD9AA] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7447552] [PID.1360]
~ Processes Running: Scanned in 00mn 01s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Preferences
G2 - GCE: Preference [User Data\Default] [nfeonecgpoepapkmdgdmjolonaakdknd] Lyrics Fan v.1.112 (Désactivé) =>Adware.AddLyrics
~ Google Browser: 7 Legitimates Filtered in 00mn 16s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Happy Lyrics [64Bits] - {59C0C5BD-2579-433A-BBB8-AFFD59642BAF} . (...) -- C:\Program Files (x86)\HappyLyrics\hppylrc.dll (.not file.)
O2 - BHO: Lyrics Fan [64Bits] - {A8720491-9558-4C0D-9E35-30EED15DFB2B} . (.FAN Software - Lyrics Fan.) -- C:\Program Files (x86)\LyricsFan\lrcfan.dll =>Adware.AddLyrics
~ BHO: 2 Legitimates Filtered in 00mn 00s



---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [Bdagent] . (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2013\bdagent.exe
O4 - HKCU\..\Run: [EADM] . (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe
O4 - HKLM\..\Wow6432Node\Run: [LManager] Clé orpheline
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKUS\S-1-5-18\..\Run: [SearchProtect] \SearchProtect\bin\cltmng.exe =>Toolbar.Conduit
O4 - HKUS\S-1-5-21-377929125-826591287-2286979282-1001\..\Run: [EADM] . (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe
~ Application: Scanned in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop: EditPlus 3.lnk . (.ES-Computing - EditPlus.) -- C:\Program Files (x86)\EditPlus 3\editplus.exe
O4 - GS\Desktop: MiPony.lnk . (.www.mipony.net - Mipony.) -- C:\Program Files (x86)\MiPony\MiPony.exe
O4 - GS\Desktop: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) -- C:\Program Files (x86)\PhotoFiltre Studio X\pfstudiox.exe
~ Global Startup: Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpDomain = lan
O17 - HKLM\System\CCS\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpDomain = lan
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Service Software Update (Software_update (Software_update) . (...) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe (.not file.)
O23 - Service: Bitdefender Virus Shield (VSSERV) . (.Bitdefender - Bitdefender Security Service.) - C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe
~ Services: 12 Legitimates Filtered in 00mn 26s



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Happy Lyrics Update.job [410]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Lyrics Fan Update.job [416] =>Adware.AddLyrics
[MD5.00000000000000000000000000000000] [APT] [EPUpdater] (...) -- C:\Users\titi\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe (.not file.) [0]
[MD5.65F00E976FCF8C01D5C2B5295AEC41A6] [APT] [GoforFilesUpdate] (.http://www.goforfiles.com/ -- C:\Program Files (x86)\GoforFiles\GFFUpdater.exe [364112] =>P2P.GoforFiles
[MD5.763643CE7E9C5C65405196C0AD279DFB] [APT] [Lyrics Fan Update] (.FAN Software.) -- C:\Program Files (x86)\LyricsFan\LyricsFanUpdater.exe [118272] =>Adware.AddLyrics
~ Scheduled Task: 18 Legitimates Filtered in 00mn 13s



---\\ Logiciels installés (O42)
O42 - Logiciel: GoforFiles - (.http://www.goforfiles.com/ [HKCU][64Bits] -- GoforFiles =>P2P.GoforFiles
O42 - Logiciel: Iminent - (.Iminent.) [HKLM][64Bits] -- {29C7E8BE-FBD9-4D91-BC4F-B470C718D554} =>Adware.IMBooster
O42 - Logiciel: Lyrics Fan - (.FAN Software.) [HKLM][64Bits] -- lrcfan@fansoft.br =>Adware.AddLyrics
~ Logic: 80 Legitimates Filtered in 00mn 01s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\AppDataLow\Software\LyricsFan]
[HKCU\Software\BabSolution] =>Hijacker.BabSolution
[HKCU\Software\IncrediMail]
[HKLM\Software\DomaIQ] =>Toolbar.DomaIQ
[HKLM\Software\WNLT] =>Adware.IncrediBar
[HKLM\Software\Wow6432Node\GoforFiles] =>P2P.GoforFiles
~ Key Software: 153 Legitimates Filtered in 00mn 01s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 24/05/2013 - 15:07:55 - [0] ----D C:\Program Files (x86)\FindLyrics =>Adware.AddLyrics
O43 - CFD: 04/05/2013 - 20:50:54 - [9,958] ----D C:\Program Files (x86)\GoforFiles =>P2P.GoforFiles
O43 - CFD: 24/05/2013 - 15:07:56 - [0,380] ----D C:\Program Files (x86)\LyricsFan
O43 - CFD: 04/05/2013 - 20:51:16 - [0,001] ----D C:\Users\titi\AppData\Roaming\GoforFiles =>P2P.GoforFiles
O43 - CFD: 10/01/2013 - 15:15:13 - [0,510] ----D C:\Users\titi\AppData\Roaming\lm
O43 - CFD: 01/06/2013 - 17:31:01 - [0,000] ----D C:\Users\titi\AppData\Local\supt4pc_fr_36
O43 - CFD: 24/05/2013 - 15:10:18 - [0,002] ----D C:\Users\titi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\QTRAX
~ Program Folder: 139 Legitimates Filtered in 00mn 28s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.4B3C216E536A698F7E753D9197D2C79E] - 03/06/2013 - 20:50:31 ---A- . (...) -- C:\bdlog.txt [186426]
O44 - LFC:[MD5.A9B29973AF1FBE6DD78756FBAD9C1168] - 03/06/2013 - 18:00:22 ---A- . (...) -- C:\Windows\DeleteOnReboot.bat [290]
O44 - LFC:[MD5.C58305AC412A2DE95D461072E0AF5AAF] - 21/05/2013 - 14:31:12 ---A- . (...) -- C:\Windows\SysNative\dmwu.exe [1447728]
O44 - LFC:[MD5.C58305AC412A2DE95D461072E0AF5AAF] - 21/05/2013 - 14:31:12 RSHAD . (...) -- C:\Windows\System32\dmwu.exe [1447728]
O44 - LFC:[MD5.49BAC9565B10570CAAB89B759D2F3DEA] - 21/05/2013 - 14:30:18 ---A- . (.IncrediMail, Ltd. - IMHttpCo Dynamic Link Library.) -- C:\Windows\SysNative\ImHttpComm.dll [33792]
O44 - LFC:[MD5.49BAC9565B10570CAAB89B759D2F3DEA] - 21/05/2013 - 14:30:18 RSHAD . (.IncrediMail, Ltd. - IMHttpCo Dynamic Link Library.) -- C:\Windows\System32\ImHttpComm.dll [33792]
~ Files: 25 Legitimates Filtered in 00mn 24s



---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.544FFA254C631579C8C155032E1FE5BA] - 01/06/2013 - 12:28:16 ---A- - C:\Windows\Prefetch\NEWDEV.EXE-81B9876F.pf
O45 - LFCP:[MD5.FE389DB1CD53B93ED83BC8BB93BD2919] - 01/06/2013 - 14:15:02 ---A- - C:\Windows\Prefetch\DEVICEFASTLANEEVENT.EXE-0D33B9ED.pf
O45 - LFCP:[MD5.5002D47589FDA636C7DF1D7CF22C4208] - 01/06/2013 - 14:15:02 ---A- - C:\Windows\Prefetch\DEVICEFASTLANESVC.EXE-E86CADBF.pf
O45 - LFCP:[MD5.ED14D68AEDD5DDE67284DE778BC11F4B] - 01/06/2013 - 14:15:02 ---A- - C:\Windows\Prefetch\DEVICEFASTLANEUI.EXE-CF5A78A9.pf
O45 - LFCP:[MD5.5C5A8B9AC5792160C77D00A12EDC2AC8] - 01/06/2013 - 16:31:03 ---A- - C:\Windows\Prefetch\MAJTUTO4PC_FR_36.EXE-0A63F850.pf =>PUP.Eorezo
O45 - LFCP:[MD5.C0543A64FB5E38805B3FB0E8EE3644BB] - 01/06/2013 - 16:31:03 ---A- - C:\Windows\Prefetch\MAJTUTO4PC_FR_36.TMP-20F35518.pf =>PUP.Eorezo
O45 - LFCP:[MD5.C67EE4F5BC05288C4405711F6D68AF4E] - 01/06/2013 - 16:31:12 ---A- - C:\Windows\Prefetch\SUPT4PC_FR_36.EXE-3AD69583.pf
O45 - LFCP:[MD5.2AF88FB357DDB24D6B09B03DAC70CDCC] - 02/06/2013 - 10:11:33 ---A- - C:\Windows\Prefetch\SERVICES X86-CODEDOWNLOADER.E-5CB7B0A2.pf =>PUP.CrossRider
O45 - LFCP:[MD5.5BF412C1614B3E1F4003CF5824B82613] - 02/06/2013 - 10:11:38 ---A- - C:\Windows\Prefetch\SERVICES X86-BG.EXE-A1ADF25D.pf =>PUP.CrossRider
O45 - LFCP:[MD5.1BC7C51E828BBB923F20DFB1FB3773F3] - 02/06/2013 - 10:12:28 ---A- - C:\Windows\Prefetch\ONLINETRACKSAUTOUPDATEHELPER.-067E39E0.pf
O45 - LFCP:[MD5.C0B031D0E1182C6B95A94E547E26345D] - 02/06/2013 - 11:07:51 ---A- - C:\Windows\Prefetch\CLTMNG.EXE-E14AC8B0.pf
O45 - LFCP:[MD5.9615408B72795C767CB4C66D17D5E92F] - 02/06/2013 - 11:08:34 ---A- - C:\Windows\Prefetch\THCH.EXE-95900F79.pf
O45 - LFCP:[MD5.69E7F4D518FFB3A005C93EBE01076558] - 02/06/2013 - 11:09:07 ---A- - C:\Windows\Prefetch\DMWU.EXE-AA7A778B.pf
O45 - LFCP:[MD5.33D53CF71C5E472D71FC1EC302268DAD] - 02/06/2013 - 12:28:04 ---A- - C:\Windows\Prefetch\XTREMSPLIT.EXE-29D81664.pf
O45 - LFCP:[MD5.B46115C88F6AC2DC85A9EA2BF8FDC47E] - 02/06/2013 - 17:33:21 ---A- - C:\Windows\Prefetch\LIVECOMM.EXE-F1928578.pf
O45 - LFCP:[MD5.12E43C5EF1461C3FFADFE277AE6971F3] - 02/06/2013 - 17:52:15 ---A- - C:\Windows\Prefetch\PFSX-SETUP-01NET-10.7.3.EXE-1E09C780.pf
O45 - LFCP:[MD5.E16201FAA4053C36CDE4DAA05242D4A0] - 02/06/2013 - 17:53:19 ---A- - C:\Windows\Prefetch\PFSX-SETUP-01NET-10.7.3 [1].E-92A621F5.pf
O45 - LFCP:[MD5.C3CC7254BCB98089A795CE84BB1FC1F3] - 03/06/2013 - 14:29:02 ---A- - C:\Windows\Prefetch\SWEETIM.EXE-8F50D9C0.pf =>PUP.SweetIM
O45 - LFCP:[MD5.F282AA9F60B2BACD815B827478591388] - 03/06/2013 - 15:44:38 ---A- - C:\Windows\Prefetch\BROWSERPROTECT.EXE-6CD41A66.pf =>Hijacker.Eazel
O45 - LFCP:[MD5.20DAFA055706062BD783B35607F497EF] - 03/06/2013 - 16:45:00 ---A- - C:\Windows\Prefetch\SOFTWARECRASHHANDLER.EXE-5F240164.pf
O45 - LFCP:[MD5.20ACCDF0D9F06C4FD346017DD5C8379A] - 03/06/2013 - 16:45:34 ---A- - C:\Windows\Prefetch\CLTMNG.EXE-76C32FCE.pf
O45 - LFCP:[MD5.E5C39EF2F9F11B8BFEAB2760438E0704] - 03/06/2013 - 16:45:39 ---A- - C:\Windows\Prefetch\SWEETPACKSUPDATEMANAGER.EXE-4BA95FDA.pf =>PUP.SweetIM
O45 - LFCP:[MD5.F922D0C49732C267E04CE2F78418FA9C] - 03/06/2013 - 16:45:56 ---A- - C:\Windows\Prefetch\BOXORE.EXE-666CD123.pf =>Adware.Boxore
O45 - LFCP:[MD5.CFFA0B2E61C414B42C16F0B9E8196773] - 03/06/2013 - 16:45:56 ---A- - C:\Windows\Prefetch\TUTO4PC_FR_33.EXE-23A169E9.pf =>PUP.Eorezo
O45 - LFCP:[MD5.C05DD4A5F54EF0BC886674DF429E188A] - 03/06/2013 - 16:46:06 ---A- - C:\Windows\Prefetch\IMINENT.EXE-DDB5429B.pf =>Adware.IMBooster
O45 - LFCP:[MD5.755869F11E17145FD207960C32710621] - 03/06/2013 - 16:46:06 ---A- - C:\Windows\Prefetch\IMINENT.MESSENGERS.EXE-71459735.pf =>Adware.IMBooster
O45 - LFCP:[MD5.1FE71EF73460486F331E599426563A96] - 03/06/2013 - 16:46:06 ---A- - C:\Windows\Prefetch\TUTO4PC_FR_36.EXE-39BEC677.pf =>PUP.Eorezo
O45 - LFCP:[MD5.B10850F06ACC68E8A908626F7A958FEF] - 03/06/2013 - 16:48:17 ---A- - C:\Windows\Prefetch\UPT4PC_FR_33.EXE-4CCFACC6.pf
O45 - LFCP:[MD5.E929AF80F6E8F7FBE9F6FF7892A63642] - 03/06/2013 - 17:12:24 ---A- - C:\Windows\Prefetch\OBK.EXE-78D4C9CC.pf
O45 - LFCP:[MD5.3D0061D0BD8EC1A143E6FB1347C816BA] - 03/06/2013 - 17:12:24 ---A- - C:\Windows\Prefetch\OBKCH.EXE-631D1C6B.pf
O45 - LFCP:[MD5.C419AD0058D882ABF053D7EAD55591B9] - 03/06/2013 - 19:08:48 ---A- - C:\Windows\Prefetch\INSTALLER.EXE-2DA55FD2.pf
O45 - LFCP:[MD5.760F3E7ABA9E004034EFE40F2DA9C25C] - 04/06/2013 - 04:35:03 ---A- - C:\Windows\Prefetch\DKRUN32.EXE-8583E6AC.pf
O45 - LFCP:[MD5.161474F1A47CA2424365969DE5427BEF] - 04/06/2013 - 04:35:12 ---A- - C:\Windows\Prefetch\LMUTILPS32.EXE-9827F12C.pf
O45 - LFCP:[MD5.C69E7F36E05AEE1E18F9ED3899EDF3BC] - 04/06/2013 - 04:48:11 ---A- - C:\Windows\Prefetch\BDADDMTASK.EXE-C9B44295.pf
O45 - LFCP:[MD5.49FB49D76C207AEA0C447AEABFED2912] - 05/05/2013 - 20:52:21 ---A- - C:\Windows\Prefetch\EF16.TMP-140FD8DA.pf
O45 - LFCP:[MD5.07430DC28243B4F0194BF2412650BFBB] - 06/05/2013 - 21:08:05 ---A- - C:\Windows\Prefetch\408F.TMP-B8A4520A.pf
O45 - LFCP:[MD5.9AA3B0D7721CF49F60CD951128C0F55E] - 07/05/2013 - 22:08:05 ---A- - C:\Windows\Prefetch\89EB.TMP-75AC7AA0.pf
O45 - LFCP:[MD5.38B0717FF46465A7481CCA8657A3FC7C] - 08/05/2013 - 10:04:14 ---A- - C:\Windows\Prefetch\EBAY2.EXE-E3201D7D.pf
O45 - LFCP:[MD5.E49D0ACE7F3ACE46B13F024D97FE8AD7] - 08/05/2013 - 11:41:27 ---A- - C:\Windows\Prefetch\GOOGLEEARTH-WIN-BUNDLE-7.1.1.-C5A3FDA1.pf
O45 - LFCP:[MD5.D7DD0C333E2ED2A8DE66A97EF859869F] - 08/05/2013 - 17:43:13 ---A- - C:\Windows\Prefetch\EXTCONVERTER.EXE-B7C2FB1C.pf
O45 - LFCP:[MD5.E05B6175E537CA84E832713600F8EC24] - 08/05/2013 - 23:08:06 ---A- - C:\Windows\Prefetch\D5A9.TMP-3D9AC747.pf
O45 - LFCP:[MD5.0C301C19BE15EE20C5089E2DDD859933] - 10/05/2013 - 07:24:10 ---A- - C:\Windows\Prefetch\D153.TMP-043CDC79.pf
O45 - LFCP:[MD5.2C3FA4F582EA4B6077C8F94434A6E4BA] - 11/05/2013 - 15:53:12 ---A- - C:\Windows\Prefetch\E205.TMP-87507CF4.pf
O45 - LFCP:[MD5.D1035FA61B3C7766B70F922F2BFF69F8] - 12/05/2013 - 16:53:17 ---A- - C:\Windows\Prefetch\2F49.TMP-902CBE09.pf
O45 - LFCP:[MD5.C87C8B381A692026B2B076264390C29C] - 13/05/2013 - 16:56:48 ---A- - C:\Windows\Prefetch\SECONDSTEPINSTALLER.EXE-108A081B.pf
O45 - LFCP:[MD5.B1956B5A941C4334B5BCBF80AC2E34DC] - 13/05/2013 - 16:57:09 ---A- - C:\Windows\Prefetch\CLTMNGSVC.EXE-28758A2C.pf
O45 - LFCP:[MD5.E8CF76B56B1FB8D4543F7645255FF724] - 13/05/2013 - 16:57:09 ---A- - C:\Windows\Prefetch\SPRUNNER.EXE-9EF706D7.pf
O45 - LFCP:[MD5.226F089D334D886A1D0088053DF88E02] - 17/05/2013 - 11:49:17 ---A- - C:\Windows\Prefetch\LAUNCHTM.EXE-B444BC8E.pf
O45 - LFCP:[MD5.DE5DBE07F8B766BCB7BD67753DDD1DCA] - 18/05/2013 - 08:54:54 ---A- - C:\Windows\Prefetch\EMULE.EXE-6F3A59E3.pf
O45 - LFCP:[MD5.6D9D3012C0721273C9E5FC11B429EFFD] - 20/05/2013 - 11:49:02 ---A- - C:\Windows\Prefetch\AUTORUN.EXE-D28490C2.pf
O45 - LFCP:[MD5.A88B6321E7D33EB241CA8E972013DBE9] - 23/05/2013 - 17:47:29 ---A- - C:\Windows\Prefetch\27.0.1453.94_26.0.1410.64_CHR-A30B2727.pf
O45 - LFCP:[MD5.CD369C1CB1CD71CA264039528C64E7A1] - 23/05/2013 - 17:54:57 ---A- - C:\Windows\Prefetch\GENPTCH.EXE-022E2611.pf
O45 - LFCP:[MD5.72EF240BA6A178B2F1E856A8D0B515BD] - 24/05/2013 - 14:06:44 ---A- - C:\Windows\Prefetch\MIPONY-INSTALLER.EXE-BCB9BF1E.pf
O45 - LFCP:[MD5.C5882B7530EE60B0A312147F056D625B] - 24/05/2013 - 14:06:45 ---A- - C:\Windows\Prefetch\MIPONY-INSTALLER-1.EXE-8FD2B1B6.pf
O45 - LFCP:[MD5.00586B566249BBFF8A491B99D8ACE5F0] - 24/05/2013 - 14:07:29 ---A- - C:\Windows\Prefetch\DELTATB.EXE-ECF6B948.pf =>Toolbar.DeltaSearch
O45 - LFCP:[MD5.271631FCA25926079C88CFCF43503DBF] - 24/05/2013 - 14:07:29 ---A- - C:\Windows\Prefetch\FINDLYRICS.EXE-CD7FD79B.pf =>Adware.AddLyrics
O45 - LFCP:[MD5.7B3A808A0EDEA285FED5C1D6AF1F05C5] - 24/05/2013 - 14:07:29 ---A- - C:\Windows\Prefetch\QTRAXINSTALLER.EXE-A1B755C6.pf
O45 - LFCP:[MD5.BD979DC3F85F5CCCEECF86B0213F0BC4] - 24/05/2013 - 14:07:39 ---A- - C:\Windows\Prefetch\TUTO4PC_SETUP_FR.EXE-6483E602.pf =>PUP.Eorezo
O45 - LFCP:[MD5.86C73447615416C5D0DCA48F8AF11291] - 24/05/2013 - 14:07:40 ---A- - C:\Windows\Prefetch\TUTO4PC_SETUP_FR.TMP-872FC7DB.pf =>PUP.Eorezo
O45 - LFCP:[MD5.A112D95494BA1CC3B2EDF2FC79523B28] - 24/05/2013 - 14:08:36 ---A- - C:\Windows\Prefetch\FLCSUP.EXE-7EA4384E.pf
O45 - LFCP:[MD5.669E3E356AB5699C1BA116C19254D091] - 24/05/2013 - 14:08:36 ---A- - C:\Windows\Prefetch\FLCSUR.EXE-1E2A4401.pf
O45 - LFCP:[MD5.78136E57CA1F007F9C300CDDE7ECDC1C] - 24/05/2013 - 19:28:05 ---A- - C:\Windows\Prefetch\BOXORE.EXE-A2201CC7.pf =>Adware.Boxore
O45 - LFCP:[MD5.CD03C75BBE6EB84A9681626F789F6CFE] - 24/05/2013 - 19:28:05 ---A- - C:\Windows\Prefetch\BOXOREINSTALLER.EXE-B14E3636.pf =>Adware.Boxore
O45 - LFCP:[MD5.EA8BAF0AE6A3117F187D29205C749F75] - 24/05/2013 - 19:28:05 ---A- - C:\Windows\Prefetch\DELTA BABYLON.EXE-93D592F1.pf =>Toolbar.Babylon
O45 - LFCP:[MD5.8378CCE1B6D21B8612AB0278805E413E] - 24/05/2013 - 19:28:27 ---A- - C:\Windows\Prefetch\SCS.EXE-B1CF88FC.pf
O45 - LFCP:[MD5.A952095CE2D603180F8F425E4774BD78] - 24/05/2013 - 19:31:26 ---A- - C:\Windows\Prefetch\DELTATB.EXE-F5CC058A.pf =>Toolbar.DeltaSearch
O45 - LFCP:[MD5.ABDA98E6409604677740913D7F1E2D9D] - 24/05/2013 - 19:31:52 ---A- - C:\Windows\Prefetch\DELTA4FFX.EXE-8CE04256.pf
O45 - LFCP:[MD5.1B284122D956F2DDEB20350F542B5B69] - 24/05/2013 - 19:31:54 ---A- - C:\Windows\Prefetch\DELTA4IE.EXE-0E3E6180.pf
O45 - LFCP:[MD5.4EA4D77A6A9EB1EC2D1DF2601AF70646] - 24/05/2013 - 19:31:54 ---A- - C:\Windows\Prefetch\DELTASRV.EXE-D503A767.pf
O45 - LFCP:[MD5.934DC397ACDA08B2252AD7CF9010180E] - 24/05/2013 - 19:31:54 ---A- - C:\Windows\Prefetch\MYBABYLONTB.EXE-93E7D2B5.pf =>Toolbar.Babylon
O45 - LFCP:[MD5.1CAF5817F94429D20E0CA535CF3195B1] - 24/05/2013 - 19:31:55 ---A- - C:\Windows\Prefetch\BPROTECT.EXE-87C554E2.pf
O45 - LFCP:[MD5.78BCEC0D52B71656B0EAB24A66442FAB] - 24/05/2013 - 19:32:15 ---A- - C:\Windows\Prefetch\PUSH.EXE-3E49F76A.pf
O45 - LFCP:[MD5.ADF83C3F239CC0433D2AF18FC2BD8214] - 24/05/2013 - 19:32:15 ---A- - C:\Windows\Prefetch\WEBPLAYER.EXE-78EFCF68.pf
O45 - LFCP:[MD5.653B7267DB936DA0CA834E55E6FBFB6C] - 24/05/2013 - 19:49:03 ---A- - C:\Windows\Prefetch\IMINENT.EXE-577869DE.pf =>Adware.IMBooster
O45 - LFCP:[MD5.042873233A0167E6654B42A24894BF32] - 24/05/2013 - 19:49:03 ---A- - C:\Windows\Prefetch\UMBRELLA.EXE-0B44C393.pf
O45 - LFCP:[MD5.467A9234D40DC21EB1510AA8066792F9] - 25/05/2013 - 09:08:40 ---A- - C:\Windows\Prefetch\RESTORE.EXE-FF5AC776.pf
O45 - LFCP:[MD5.22FAFA9906A8732B817F9985EBBBF9BE] - 25/05/2013 - 09:08:53 ---A- - C:\Windows\Prefetch\GAMECONSOLE-4.0.23.8-TO-4.0.2-F4C8D955.pf
O45 - LFCP:[MD5.281093E0BC83905C3199185AEA04D5AD] - 25/05/2013 - 09:08:56 ---A- - C:\Windows\Prefetch\PATCH_5272.EXE-E7CE1F9C.pf
O45 - LFCP:[MD5.4197FDC913E529768D74DD0F4C2AF39C] - 25/05/2013 - 09:08:59 ---A- - C:\Windows\Prefetch\BSDIFF_PATCH.EXE-5CB3380C.pf
O45 - LFCP:[MD5.E259C5F6AF4DC238E9B54B64A4FEC215] - 25/05/2013 - 09:09:24 ---A- - C:\Windows\Prefetch\PARK-{A115BE37-90C1-4DED-AE63-889CBF58.pf
O45 - LFCP:[MD5.6A5AEF1A158F2B9011A6E05BCE11F836] - 25/05/2013 - 09:09:58 ---A- - C:\Windows\Prefetch\INSTALLTOUCHPOINTS-PACKARDBEL-7C530842.pf
O45 - LFCP:[MD5.F8619C677BA8092F03AEC95338673667] - 25/05/2013 - 09:10:00 ---A- - C:\Windows\Prefetch\INSTALLTOUCHPOINTS-PACKARDBEL-AFC6D3BC.pf
O45 - LFCP:[MD5.B7A88DF1918D5484D6599ACD77E7F272] - 25/05/2013 - 09:11:15 ---A- - C:\Windows\Prefetch\GAME.DAT-81362BDD.pf
O45 - LFCP:[MD5.38C0A1A3FE4E5C3D2FB089EC161A2066] - 25/05/2013 - 09:11:17 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-FB09BA72.pf
O45 - LFCP:[MD5.655BD6B0252A5046DD1DCC4349BA22E8] - 25/05/2013 - 09:11:18 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-2939A083.pf
O45 - LFCP:[MD5.9E3A5A16088A82064D01ED157633AF43] - 25/05/2013 - 09:11:19 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-2C4BEB3D.pf
O45 - LFCP:[MD5.5C38B831EBE84492703E1DA179F75970] - 25/05/2013 - 09:11:23 ---A- - C:\Windows\Prefetch\GAME.DAT-99D9B6CB.pf
O45 - LFCP:[MD5.2243FA7E08ED2DF592F2CFFF04B3BA28] - 25/05/2013 - 09:11:24 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-7984D480.pf
O45 - LFCP:[MD5.5A3992588D55F07CBF5124BB4F8C85F2] - 25/05/2013 - 09:11:25 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-4FFBD3A1.pf
O45 - LFCP:[MD5.3F369D37E710347753C83E46AB30C900] - 25/05/2013 - 09:11:27 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-A0B5A03B.pf
O45 - LFCP:[MD5.FF952168DF22C9CAF7271FF3A7BEB366] - 25/05/2013 - 09:11:30 ---A- - C:\Windows\Prefetch\GAME.DAT-5B81F525.pf
O45 - LFCP:[MD5.25A36AB10FEE5380553F19313FDC9474] - 25/05/2013 - 09:11:31 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-7FC4F73A.pf
O45 - LFCP:[MD5.A05D18A25E190E1BB3B77A924182039D] - 25/05/2013 - 09:11:33 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-016D910B.pf
O45 - LFCP:[MD5.FBC09CE13D831BC31E58178242C45522] - 25/05/2013 - 09:11:33 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-3DA5A445.pf
O45 - LFCP:[MD5.647EAFC4F4C8D61B1237720386F87985] - 25/05/2013 - 09:11:37 ---A- - C:\Windows\Prefetch\GAME.DAT-BD04FDA4.pf
O45 - LFCP:[MD5.3F6174AB8D21426F7A25112700D48774] - 25/05/2013 - 09:11:38 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-070F5EC9.pf
O45 - LFCP:[MD5.2E9481D50F0B885CD2B67C5CEC05A8A1] - 25/05/2013 - 09:11:40 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-C7677AE2.pf
O45 - LFCP:[MD5.E1D21EF0881588702E8E3B50D46CD1B0] - 25/05/2013 - 09:11:41 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-5911138C.pf
O45 - LFCP:[MD5.C848726EE56AD12F23DCC315DC045B4B] - 25/05/2013 - 09:11:45 ---A- - C:\Windows\Prefetch\GAME.DAT-A4F42E3B.pf
O45 - LFCP:[MD5.65362D89DA95E5646BDA073FB7D8DE95] - 25/05/2013 - 09:11:46 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-B499C4F0.pf
O45 - LFCP:[MD5.8AF448DF827DB977DD76AA32A92BBE74] - 25/05/2013 - 09:11:48 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-4D108C91.pf
O45 - LFCP:[MD5.EFF96CEA5AE361A5CE7892D880112561] - 25/05/2013 - 09:11:50 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-6E38682B.pf
O45 - LFCP:[MD5.4675E17B6A5A91BA069D962E86EA0146] - 25/05/2013 - 09:11:52 ---A- - C:\Windows\Prefetch\GAME.DAT-6E3D9CE4.pf
O45 - LFCP:[MD5.5BD941009595EE29DBAA17A05AD601B9] - 25/05/2013 - 09:11:54 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-E6EB4A09.pf
O45 - LFCP:[MD5.D9A3B25D0FB1768FAFC6C4EC16A1E883] - 25/05/2013 - 09:11:55 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-D1431C22.pf
O45 - LFCP:[MD5.C34A039BD4A24AA18E7B5EFCD1E143FD] - 25/05/2013 - 09:11:56 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-54D4C8CC.pf
O45 - LFCP:[MD5.3B0208E90580898F3ECDBA1DCFA90EFC] - 25/05/2013 - 09:11:59 ---A- - C:\Windows\Prefetch\GAME.DAT-6D4FF778.pf
O45 - LFCP:[MD5.18E0E4A07C199B51636111B29F62E509] - 25/05/2013 - 09:12:01 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-D52A6F5D.pf
O45 - LFCP:[MD5.A663D9F71607AE083DFE4167C3EF2B69] - 25/05/2013 - 09:12:03 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-5787CFD6.pf
O45 - LFCP:[MD5.9B719770CDAA4A906B7C137F99A1242B] - 25/05/2013 - 09:12:03 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-13D697C0.pf
O45 - LFCP:[MD5.2B8D612199A2F41EFB8BA34708135C49] - 25/05/2013 - 09:12:08 ---A- - C:\Windows\Prefetch\GAME.DAT-7DB2A8FE.pf
O45 - LFCP:[MD5.34980EDFC2E0951FBBB43B653744EDA5] - 25/05/2013 - 09:12:09 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-46231E83.pf
O45 - LFCP:[MD5.189D766FCF94721222E0589453390165] - 25/05/2013 - 09:12:11 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-5C382D4C.pf
O45 - LFCP:[MD5.4CE2E76AADEF1F9BCF4EE12C2518AA58] - 25/05/2013 - 09:12:13 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-16875C96.pf
O45 - LFCP:[MD5.770058F9DAFCE24931F450EE7835E825] - 25/05/2013 - 09:12:16 ---A- - C:\Windows\Prefetch\GAME.DAT-CD5E4B56.pf
O45 - LFCP:[MD5.B292AFD47E4E19F38A0B0B842C086BC3] - 25/05/2013 - 09:12:18 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-F0BB335B.pf
O45 - LFCP:[MD5.714D74D97F64DCF144223F07918BED6D] - 25/05/2013 - 09:12:18 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-3B8F8964.pf
O45 - LFCP:[MD5.04E33948513CFA3C6C7563B6E06C8E8D] - 25/05/2013 - 09:12:20 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-A624BA2E.pf
O45 - LFCP:[MD5.71FD8F43587116742CDC4F52728B8431] - 25/05/2013 - 09:12:23 ---A- - C:\Windows\Prefetch\GAME.DAT-2F027DE4.pf
O45 - LFCP:[MD5.6D18D7B179D654FC5ABA1BCC579EAFCE] - 25/05/2013 - 09:12:24 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-E1DB1B09.pf
O45 - LFCP:[MD5.1AD8313B24A41C6E43B3E409F31619B6] - 25/05/2013 - 09:12:25 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-06ADA522.pf
O45 - LFCP:[MD5.E1EFF9D9489FA65BE1FB9F2375177E9B] - 25/05/2013 - 09:12:26 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-AEFFE1CC.pf
O45 - LFCP:[MD5.3AF3C52B408EADCD5F4C39BDD5A3979D] - 25/05/2013 - 09:12:33 ---A- - C:\Windows\Prefetch\GAME.DAT-1AE68EC5.pf
O45 - LFCP:[MD5.C71798E442E03BD98BEEF4688B8EE29B] - 25/05/2013 - 09:12:34 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-363096DA.pf
O45 - LFCP:[MD5.5F1258ACDD816E56374C8A25247734F1] - 25/05/2013 - 09:12:35 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-3A083BAB.pf
O45 - LFCP:[MD5.886B35B34BD32EEAA760C4509BA942DC] - 25/05/2013 - 09:12:36 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-6AF1F8E5.pf
O45 - LFCP:[MD5.C7F7CB2FC92B8550474BBE0259C85D8D] - 25/05/2013 - 09:12:39 ---A- - C:\Windows\Prefetch\GAME.DAT-115D29C5.pf
O45 - LFCP:[MD5.DFDDE0B1E21FA6B39EB835C6A7E72650] - 25/05/2013 - 09:12:40 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-9BE081DA.pf
O45 - LFCP:[MD5.12E920F466BED6A77EC496B713123EE9] - 25/05/2013 - 09:12:41 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-1B1A8EAB.pf
O45 - LFCP:[MD5.6A774803E5A4CF5A140BAAD0A6605581] - 25/05/2013 - 09:12:42 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-BEB17BE5.pf
O45 - LFCP:[MD5.787AF77FD2D52A7BB44F86DDBD20E483] - 25/05/2013 - 09:12:45 ---A- - C:\Windows\Prefetch\GAME.DAT-DF91F6B8.pf
O45 - LFCP:[MD5.1706A871C02C91A2B7064652CBFB891C] - 25/05/2013 - 09:12:47 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-7FD9BA9D.pf
O45 - LFCP:[MD5.0A37B3F8840238F98BD0888E8D3A09C6] - 25/05/2013 - 09:12:47 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-F553D116.pf
O45 - LFCP:[MD5.F568B559B77AD16945B4199534C52882] - 25/05/2013 - 09:12:49 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-2390AD00.pf
O45 - LFCP:[MD5.2D0EF50A32A380257434BF348D2CCE46] - 25/05/2013 - 09:12:53 ---A- - C:\Windows\Prefetch\GAME.DAT-BF3AB286.pf
O45 - LFCP:[MD5.D6207E9E0D60749A017EC831A99F2690] - 25/05/2013 - 09:12:55 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-C7BCD78B.pf
O45 - LFCP:[MD5.40DDEF76DE0AE20D246AFE095A48C38C] - 25/05/2013 - 09:12:56 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-3B9F0814.pf
O45 - LFCP:[MD5.6E1DB98C118C859C6AFD9BD54716C7F4] - 25/05/2013 - 09:12:56 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-6688A3DE.pf
O45 - LFCP:[MD5.8DF1C5151721A402AB641CFF5313141D] - 25/05/2013 - 09:13:00 ---A- - C:\Windows\Prefetch\GAME.DAT-E61BDEC7.pf
O45 - LFCP:[MD5.AD47ED4E3579D7625FEB90C23DF7E1F9] - 25/05/2013 - 09:13:02 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-EB1A18BC.pf
O45 - LFCP:[MD5.97F8AB8B527C0E49886E2CBB1E5DFDF5] - 25/05/2013 - 09:13:04 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-6BB970FD.pf
O45 - LFCP:[MD5.9C639C707402AFC7601DB14959A9D706] - 25/05/2013 - 09:13:05 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-3628B357.pf
O45 - LFCP:[MD5.E7331A75D3864F29A94420A422497BC7] - 25/05/2013 - 09:19:28 ---A- - C:\Windows\Prefetch\UNINST.EXE-8144BB14.pf
O45 - LFCP:[MD5.4DDC8713629FE50230F5656A12481F68] - 25/05/2013 - 09:20:46 ---A- - C:\Windows\Prefetch\{311739EB-5C94-4EE1-B911-2D1F-A7944CFD.pf
O45 - LFCP:[MD5.32926298C53D6103587131F0DB5B6B72] - 25/05/2013 - 09:23:01 ---A- - C:\Windows\Prefetch\DIFXINST64.EXE-C8C2E3F2.pf
O45 - LFCP:[MD5.064A007098D4AA2298E1D5A849234381] - 25/05/2013 - 09:25:54 ---A- - C:\Windows\Prefetch\PCSPEEDMAXIMIZER.EXE-60BA47FF.pf
O45 - LFCP:[MD5.29F6694245486FD4E071183DF08243CC] - 25/05/2013 - 09:27:15 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-A6D3D8CE.pf
O45 - LFCP:[MD5.7BA48C64314144B122826BFDE062CA8B] - 25/05/2013 - 13:06:28 ---A- - C:\Windows\Prefetch\EPP351.EXE-1771E43E.pf
O45 - LFCP:[MD5.F539CD1FAE2945C438B3C089A95344B7] - 25/05/2013 - 13:06:44 ---A- - C:\Windows\Prefetch\SETUP_EP.EXE-3A40447D.pf
O45 - LFCP:[MD5.07BD500E0DB89ADACB263338C1F229BF] - 25/05/2013 - 13:07:06 ---A- - C:\Windows\Prefetch\EPPSHELLREG.EXE-E4E0A343.pf
O45 - LFCP:[MD5.607980492A9A866FF6789B08FCCC3E3E] - 26/05/2013 - 19:49:43 ---A- - C:\Windows\Prefetch\STARTME.EXE-DB3CA801.pf
O45 - LFCP:[MD5.8F87A7969FDFC64149DE6458F185E984] - 26/05/2013 - 19:49:50 ---A- - C:\Windows\Prefetch\STARTME.EXE-24BFBA28.pf
O45 - LFCP:[MD5.9F6AD1A21DA3704AB1A9D654F64D0E3A] - 27/05/2013 - 15:57:35 ---A- - C:\Windows\Prefetch\MAJT4PCFR.EXE-92413E55.pf
O45 - LFCP:[MD5.19C9205DFF638E923081E1740246802A] - 27/05/2013 - 15:57:36 ---A- - C:\Windows\Prefetch\MAJT4PCFR.TMP-F0B20247.pf
O45 - LFCP:[MD5.E0013755A07E5FF592204BF4BF724C06] - 27/05/2013 - 17:07:45 ---A- - C:\Windows\Prefetch\50D1D9D5-CF90-407C-820A-35E05-FA169CE8.pf
O45 - LFCP:[MD5.5E27B70F72A43C009D048F4E7A776D4D] - 27/05/2013 - 17:07:45 ---A- - C:\Windows\Prefetch\INST.EXE-9EEFFBF4.pf
O45 - LFCP:[MD5.088D7CC877E665802332C041604B88C2] - 27/05/2013 - 17:08:36 ---A- - C:\Windows\Prefetch\HAPPYLYRICS_2204-E2F0CCE3.EXE-C98C41D1.pf
~ Prefetcher: 467 Legitimates Filtered in 00mn 07s



---\\ MountPoints2 Shell Key (O51)
O51 - MPSK:{8577740d-fb99-11e1-be6a-806e6f6e6963}\AutoRun\command. (.Electronic Arts - Autorun Application.) -- D:\Autorun.exe
O51 - MPSK:{aa6b18d3-c5f0-11e2-bf7e-4c72b993ea23}\AutoRun\command. (...) -- E:\Startme.exe (.not file.)
~ Keys: Scanned in 00mn 04s



---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLinkedConnections"=1
~ MWPS: 18 Legitimates Filtered in 00mn 00s



---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
~ MWPE Keys: 3 Legitimates Filtered in 00mn 00s



---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.4F18D4C7EA14F11A7211F60D553C03DB] - 26/07/2012 - 06:00:49 ---A- . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\Drivers\3ware.sys [106736]
~ Drivers: Scanned in 00mn 00s



---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 01/06/2013 - 14:26:04 ---A- C:\Users\titi\Links\Desktop.lnk [485]
O61 - LFC: 01/06/2013 - 14:26:04 ---A- C:\Users\titi\Links\Downloads.lnk [936]
O61 - LFC: 01/06/2013 - 14:26:04 ---A- C:\Users\titi\Links\RecentPlaces.lnk [383]
O61 - LFC: 01/06/2013 - 16:31:01 ---A- C:\Users\titi\AppData\Local\supt4pc_fr_36\supt4pc_fr_36\update.cyl [59]
O61 - LFC: 02/06/2013 - 12:27:03 ---A- C:\Users\titi\Downloads\Xtremsplit.exe [305664]
O61 - LFC: 02/06/2013 - 17:50:39 ---A- C:\Users\titi\Downloads\pfsx-setup-01net-10.7.3.exe [667016]
O61 - LFC: 02/06/2013 - 17:52:06 ---A- C:\Users\titi\Downloads\pfsx-setup-01net-10.7.3 [1].exe [11103194]
O61 - LFC: 02/06/2013 - 17:53:47 --H-- C:\Users\titi\AppData\Roaming\Identities\{46504E63-3636-3932-3430-313231346154}\1pac4612.1c16 [45]
O61 - LFC: 03/06/2013 - 18:44:42 ---A- C:\Users\titi\Downloads\mbam-setup-1.75.0.1300.exe [10285040]
O61 - LFC: 04/06/2013 - 04:42:28 ---A- C:\Users\titi\AppData\Local\Google\Chrome\User Data\Certificate Revocation Lists [267278]
O61 - LFC: 04/06/2013 - 04:52:39 ---A- C:\Users\titi\AppData\Local\Google\Chrome\User Data\Local State [33964]
~ 4 Fichiers temporaires (Temporary files)
~ Files: 221 Legitimates Filtered in 00mn 38s



---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ ADS: Scanned in 00mn 00s



---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Not Key.)
~ FASS Keys: 19 Legitimates Filtered in 00mn 00s



---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s



---\\ Search Browser Infection (O69)
O69 - SBI: SearchScopes [HKCU] {210B6304-3A0E-4461-A148-41B64243E380} - (onlinetracks Customized Web Search) - http://search.conduit.com
~ Keys: Scanned in 00mn 00s



---\\ Recherche particuliere à la racine de certains dossiers (O84)
[MD5.A48B88F84CB703FF667295A2E5B363E4] [SPRF][11/03/2013] (...) -- C:\ProgramData\1362990986.bdinstall.bin [1872498]
[MD5.32DCED18FFFEA0035E4FA975CA0AE8BE] [SPRF][22/04/2013] (.The Software Group - Software Update Setup.) -- C:\Users\titi\AppData\Local\Temp\BoxoreInstaller.exe [620656] =>Adware.Boxore
[MD5.602AE45EEB85FCE002C2BD541F5E3F89] [SPRF][11/01/2013] (.Conduit - Pas de description.) -- C:\Users\titi\AppData\Local\Temp\conduitinstaller.exe [86080] =>Toolbar.Conduit
[MD5.735C5AB0106E929C5616B49954FFF0EE] [SPRF][24/05/2013] (.Pas de propriétaire - Lyrics Fan.) -- C:\Users\titi\AppData\Local\Temp\flcsup.exe [280921] =>Adware.AddLyrics
[MD5.F6278B5A16F830885B184D5F72E1B935] [SPRF][04/05/2013] (.Terra Informatica Software, Inc., British C - HTMLayout - embeddable HTML rendering and layout component.) -- C:\Users\titi\AppData\Local\Temp\htmlayout.dll [947200]
[MD5.8A4AF3B0695F29186AD02E2FD766FA3B] [SPRF][11/01/2013] (.SweetIM Technologies Ltd. - SQLite DLL.) -- C:\Users\titi\AppData\Local\Temp\mgsqlite3.dll [393016] =>PUP.SweetIM
[MD5.F4E3DE7B4898E37652F39A06BC9591E3] [SPRF][08/05/2013] (.Conduit - Search Protect by Conduit.) -- C:\Users\titi\AppData\Local\Temp\SecondStepInstaller.exe [2824352] =>Toolbar.Conduit
[MD5.D9DA3FDE1AEE64CEE57D4C57A538A53B] [SPRF][22/10/2012] (.SweetIM Technologies Ltd. - SweetIM Installer by SweetPacks.) -- C:\Users\titi\AppData\Local\Temp\Shortcut_bundlesweetimsetup.exe [7739736] =>PUP.SweetIM
[MD5.C6D792E4583FC46DB0953FBF6E46348A] [SPRF][11/01/2013] (.SweetIM Technologies Lt - This installer.) -- C:\Users\titi\AppData\Local\Temp\SIMEEI2Installer.exe [2962432] =>PUP.SweetIM
[MD5.7704B843006444B69486FD27D4660845] [SPRF][11/01/2013] (.SweetIM Technologies Lt - This installer.) -- C:\Users\titi\AppData\Local\Temp\SIMEEIInstaller.exe [3380216] =>PUP.SweetIM
[MD5.E8EFB9EF24C1E0CED84CFA3C2AE9DC2F] [SPRF][04/05/2013] (...) -- C:\Users\titi\AppData\Local\Temp\toolbar180976635.exe [782832]
[MD5.225CCDCFE5625795647043679CB77112] [SPRF][11/01/2013] (...) -- C:\Users\titi\AppData\Local\Temp\wajam_install.exe [417256] =>Toolbar.Wajam
[MD5.683FDD3D773C58B262DC07CD0C6CE938] [SPRF][03/06/2013] (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Users\titi\Desktop\mbam-setup-1.75.0.1300.exe [10285040]
[MD5.546026247543D6B9499A1503798E3B10] [SPRF][04/06/2013] (.Nicolas Coolman - ZHPDiag.) -- C:\Users\titi\Desktop\ZHPDiag2.exe [5672605]
~ Files: Scanned in 00mn 01s



---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "{0A0FFD05-6AF3-4408-96C5-741D6FAE5EE1}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) =>PUP.SweetIM
O87 - FAEL: "{FCDCAC89-8B60-4E91-AC1F-17F664C8F3FF}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) =>PUP.SweetIM
O87 - FAEL: "{7E3E9501-0214-4E7B-9440-B21B778A0805}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Iminent\Iminent.exe (.not file.) =>Adware.IMBooster
O87 - FAEL: "{84E40B51-363D-4D69-A20A-0E8176DE748E}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Iminent\Iminent.Messengers.exe (.not file.) =>Adware.IMBooster
O87 - FAEL: "{AB37A174-7AC8-4627-A749-98E904A6BCA1}" | In - Private - P6 - TRUE | .(...) -- C:\Windows\System32\dmwu.exe
O87 - FAEL: "{35773580-F21F-4899-8F0E-61356120666D}" | In - Private - P17 - TRUE | .(...) -- C:\Windows\System32\dmwu.exe
~ Firewall: 251 Legitimates Filtered in 00mn 03s



---\\ Scan Additionnel (O88)
Database Version : v2.12387 - (03/06/2013)
Clés trouvées (Keys found) : 92
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 2
Fichiers trouvés (Files found) : 14

[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D15DAF33C220F91468A1D7D57C31ACD7] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D6D0EB9FDBD90C04D92A7E729058F10D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A189D17A469616C4688D23E192996267] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98CC8BF5A4A6E6C4ABF7051DDAB8B058] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7FFA128C2B0FF414D805FC5627883401] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D3BA76A44C779424889063D5098ED2D6] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\397C771A7BCAC904697C3EC629ED33ED] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\351716A953E21214898904032EAE2E81] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E6768B6932D112438F047C54D180635] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EB6AF8AEEB922FA4392548F13812E50B] =>PUP.SweetIM
[HKLM\Software\WNLT] =>Adware.IncrediBar
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EE58E3C298524145B73CBBED3CAC4D3] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B2FD9C0A5B9838449838816A28001F4B] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02F47BF73B948514FAACADD8CBBDF37D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\080D9F5E1E95FEE4794CE438E635239E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4318DF19719275242801CBE292063A4C] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75D5168E5E176C24981B4E5DBD991078] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8724E58E6C7D00C48A0D4F3345EB2C26] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB676B0E1B9EFA049B9F7DDDA9645734] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B31BBB0B825EDEF45AB0FE7099C68C81] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B471D8D7319336B4CA89374ED0D7B806] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC30043663AA2CA4DA1DAA9CA5FDCC75] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E1C820A74ED67374BA048B52CB3C3804] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FDC83385E6C239F4C876A77A37DF581D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\427EA997C413D1D47907CBFC7B2DB432] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1E264E0A5959A1C46BA9175A878B12EA] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E4748F9A4181FCE46A23C13B517B9420] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1EAD96AE2CB1DE84BAA9425A8CCA0817] =>Adware.Boxore
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A] =>Adware.IMBooster
[HKCU\Software\AppDataLow\Software\LyricsFan] =>Adware.AddLyrics
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\lrcfan@fansoft.br] =>Adware.AddLyrics
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A8720491-9558-4C0D-9E35-30EED15DFB2B}] =>Adware.AddLyrics
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A8720491-9558-4C0D-9E35-30EED15DFB2B}] =>Adware.AddLyrics
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A8720491-9558-4C0D-9E35-30EED15DFB2B}] =>Adware.AddLyrics
[HKLM\Software\Wow6432Node\Google\Chrome\Extensions\nfeonecgpoepapkmdgdmjolonaakdknd] =>Adware.AddLyrics
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BA71D41F6CC0B6247B05D473850A8AEA] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\12BF94BD06C95F343A77631402B9556A] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2124D8A8CF720FD44866190AF560228E] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27A325ACED8CA4743A30127638591ADB] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\350D17402BD84234EAF7D32F08172D7C] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3EE8C5F419057E1478A654868CEE60B5] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4735D908D66E1BA46B6C2D7185A12B2B] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D6A6B2ED56AF24EA6335EAD6E91CA4] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\76D8378E2DDAED3428720A631F6E3BF0] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EDC790504E1834DBC20C9A04328FD2] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\97C3D0F82E712E241A2F969F45E3351C] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A001B259DB7D694E818BE29B973992C] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E7F556BF224D804D96A96F0F6344789] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAE2EC163C6A68A48921573E0E7E199D] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF4F885EDEE45644EB1E0C99E0162399] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C06C6662FA5B04646829E4A460857770] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE21F3FD57B244142880EF15A165A156] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CEEB3E14ABE8270419B0FD762E18F7C6] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1B5E9A3BDB51349BF96E842C062D98] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FECBC2BC14DA6CD459BD59A041709836] =>PUP.SweetIM^
C:\Program Files (x86)\FindLyrics =>Adware.AddLyrics
C:\Users\titi\AppData\Local\Software =>Adware.Boxore
C:\Users\titi\AppData\Local\Temp\Shortcut_bundlesweetimsetup.exe =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\SIMEEI2Installer.exe =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\SIMEEIInstaller.exe =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\wajam_install.exe =>Toolbar.Wajam
C:\Users\titi\AppData\Local\Temp\BoxoreInstaller.exe =>Adware.Boxore
C:\Users\titi\AppData\Local\Temp\conduitinstaller.exe =>Toolbar.Conduit
C:\Users\titi\AppData\Local\Temp\mgsqlite3.dll =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\SecondStepInstaller.exe =>Toolbar.Conduit
~ Additionnel Scan: 154484 Items scanned in 00mn 51s



---\\ Product Upgrade Codes (O90)
O90 - PUC: "EB8E7C929DBF19D4CBF44B077C815D45" . (.Iminent.) -- C:\Windows\Installer\{29C7E8BE-FBD9-4D91-BC4F-B470C718D554}\imbooster.ico =>Adware.IMBooster
~ Update Products: 70 Legitimates Filtered in 00mn 00s



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SR - | Auto 07/02/2013 239616 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe
SR - | Auto 21/12/2012 57008 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SS - | Demand 31/07/2012 466064 | (DeviceFastLaneService) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Device Fast-lane\DeviceFastLaneSvc.exe
SR - | Auto 21/08/2012 348784 | (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
SR - | Demand 31/07/2012 659600 | (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
SS - | Auto 11/03/2013 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 11/03/2013 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SR - | Auto 13/07/2012 2451456 | (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
SR - | Auto 04/04/2013 418376 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
SR - | Auto 04/04/2013 701512 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
SR - | Auto 26/11/2011 687400 | (NAUpdate) . (.Nero AG.) - C:\Program Files (x86)\Nero\Update\NASvc.exe
SR - | Auto 11/09/2012 93296 | (RfButtonDriverService) . (.Dritek System INC..) - C:\Windows\RfBtnSvc64.exe
SS - | Auto 0 | (Software_update) . (...) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe
SS - | Demand 0 | (Software_update_m) . (...) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe
SR - | Auto 08/04/2013 68856 | (UPDATESRV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2013\updatesrv.exe
SR - | Auto 08/05/2013 1646792 | (VSSERV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe
SR - | Auto 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe
SS - | Demand 20/09/2012 29696 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Services: Scanned in 00mn 02s



---\\ Recherche Master Boot Record Infection (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
~ MBR: 1 Legitimates Filtered in 00mn 02s



---\\ Recherche Master Boot Record Infection (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by titi at 04/06/2013 06:02:55

********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin
~ MBR: Scanned in 00mn 04s



~ 1559 Legitimates filtered by white list
End of the scan (682 lines in 12mn 19s)(0)
0
titipsg83 Messages postés 36 Date d'inscription lundi 3 juin 2013 Statut Membre Dernière intervention 2 avril 2018 19
4 juin 2013 à 06:11
j ai mis le rapport sur le lien que tu ma donné je c est pas si sa a marché donc je te l ai mis sur comment sa marche aussi
0
billmaxime Messages postés 49928 Date d'inscription dimanche 20 novembre 2011 Statut Contributeur Dernière intervention 22 avril 2024 5 944
4 juin 2013 à 06:37
salut

je ne vois pas ton rapport, ni le lien de cjoint

le tuto cjoint http://rue-du-montceau.pagesperso-orange.fr/tuto_cjoint.html

ps: tu peux mettre le rapport en "public" avec cjoint

@+
0
titipsg83 Messages postés 36 Date d'inscription lundi 3 juin 2013 Statut Membre Dernière intervention 2 avril 2018 19
4 juin 2013 à 18:51
Rapport de ZHPDiag v2013.6.3.5 par Nicolas Coolman, Update du 03/06/2013
Run by titi at 04/06/2013 05:50:35
WebSite: https://nicolascoolman.webs.com/
State : Version à jour.
WhiteList : Enable
High Elevated Privileges : OK
UAC : Activate by user


---\\ Web Browser
MSIE: Internet Explorer v10.0.9200.16580
GCIE: Google Chrome v27.0.1453.94 (Defaut)

---\\ Windows Product Information
~ Langage: Français
Windows 8 Home Premium Edition, 64-bit (Build 9200)
Windows Server License Manager Script : OK
~ ion : Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : YDTBG
Windows License : OK
~ Windows Remaining Initializations Number : 999
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ System Protection
Bitdefender Antivirus Plus 2013 v16.16.0.1349
Malwarebytes Anti-Malware version 1.75.0.1300
Windows Defender W8

---\\ System Optimizer

---\\ Peer To Peer (P2P)
eMule

---\\ Software Update

---\\ System Information
~ Processor: AMD64 Family 20 Model 2 Stepping 0, AuthenticAMD
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3658 MB (63% free)
System Restore: Activé (Enable)
System drive C: has 382 GB (85%) free of 448 GB

---\\ Logged in mode
~ Computer Name: TITIETCARLA
~ User Name: titi
~ All Users Names: titi, HomeGroupUser$, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\titi\AppData\Roaming\
~ %Desktop% : C:\Users\titi\Desktop\
~ %Favorites% : C:\Users\titi\Favorites\
~ %LocalAppData% : C:\Users\titi\AppData\Local\
~ %StartMenu% : C:\Users\titi\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 382 Go of 448 Go)
D:\ CD-ROM drive (Free 0 Go of 4 Go)



---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
~ Security Center: 29 Legitimates Filtered in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.E13A31D5254C25406A7946BDD9B06364] - (.Microsoft Corporation - Explorateur Windows.) (.11/10/2012 - 08:35:16.) -- C:\Windows\Explorer.exe [2380944]
[MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - (.Microsoft Corporation - Application de démarrage de Windows.) (.26/07/2012 - 04:08:50.) -- C:\Windows\System32\Wininit.exe [132608]
[MD5.9B9107F1486476D86B6910EDF07F4358] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.10/04/2013 - 00:17:44.) -- C:\Windows\System32\wininet.dll [2242048]
[MD5.BCF2036A0DD579E47C008C133550283E] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/10/2012 - 06:46:58.) -- C:\Windows\System32\Winlogon.exe [517120]
[MD5.9448F5740A037EC0C18F0E9177232DD0] - (.Microsoft Corporation - Bibliothèque de licences.) (.26/07/2012 - 04:07:20.) -- C:\Windows\System32\sppcomapi.dll [273408]
[MD5.36D6A3201721558A8AFBCC09C2DA4C2C] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.06/11/2012 - 04:53:44.) -- C:\Windows\system32\Drivers\AFD.sys [560640]
[MD5.A721FF570C2387E383BDDEA9632863C9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.26/07/2012 - 06:00:48.) -- C:\Windows\system32\Drivers\atapi.sys [25840]
[MD5.990B1BABE6E81FB18E65A87EBEFB1772] - (.Microsoft Corporation - CD-ROM File System Driver.) (.26/07/2012 - 03:30:10.) -- C:\Windows\system32\Drivers\Cdfs.sys [108544]
[MD5.339BFF85D788268752DA8C9644B188EE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.26/07/2012 - 03:26:36.) -- C:\Windows\system32\Drivers\Cdrom.sys [174080]
[MD5.09D9EB9E7898F8E6561473A20CC808B9] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.26/07/2012 - 03:26:53.) -- C:\Windows\system32\Drivers\DfsC.sys [118784]
[MD5.7D87B5B6C7188D553E11B59DC7F0B111] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/09/2012 - 07:08:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [71168]
[MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - (.Microsoft Corporation - Pilote de port i8042.) (.26/07/2012 - 03:28:51.) -- C:\Windows\system32\Drivers\i8042prt.sys [112640]
[MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - (.Microsoft Corporation - IP Network Address Translator.) (.26/07/2012 - 03:23:01.) -- C:\Windows\system32\Drivers\IpNat.sys [145920]
[MD5.93179D48066918323628CB016D8C94DC] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.05/02/2013 - 23:29:09.) -- C:\Windows\system32\Drivers\MRxSmb.sys [370688]
[MD5.7CEC25C682D319D484630B3952C31A11] - (.Microsoft Corporation - MBT Transport driver.) (.26/07/2012 - 03:24:28.) -- C:\Windows\system32\Drivers\netBT.sys [331776]
[MD5.76929F4A69E425911A63B407E26C2589] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.02/02/2013 - 11:54:54.) -- C:\Windows\system32\Drivers\ntfs.sys [1933544]
[MD5.4563DAF8C6A740AD7F501E219BD10766] - (.Microsoft Corporation - Pilote de port parallèle.) (.26/07/2012 - 03:29:53.) -- C:\Windows\system32\Drivers\Parport.sys [105984]
[MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.26/07/2012 - 03:23:17.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [124928]
[MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.26/07/2012 - 03:25:18.) -- C:\Windows\system32\Drivers\rdpdr.sys [179712]
[MD5.73DC722CE5DF26D7638CE2446F2655C7] - (.Microsoft Corporation - TDI Translation Driver.) (.26/07/2012 - 06:26:47.) -- C:\Windows\system32\Drivers\tdx.sys [117248]
[MD5.2FB3CDFD5EAF4CD9D4AFAF96877D13AE] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.26/07/2012 - 05:57:09.) -- C:\Windows\system32\Drivers\volsnap.sys [332016]
~ Generic Processes: Scanned in 00mn 01s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes Videos (My Videos) : 1/2
~ Mes Favoris (My Favorites) : 1/12
~ Mes Documents (My Documents) : 1/3847
~ Mon Bureau (My Desktop) : 2/211
~ Menu demarrer (Programs) : 1/28
~ Hidden Files: Scanned in 00mn 23s



---\\ Processus lancés
[MD5.D1D5DAB39DCB4BE0359943738D87409B] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [532040] [PID.3404]
[MD5.1B38F4C2BCDB133B757E22BEB61FB3FC] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe [1176176] [PID.3204]
[MD5.51C392EC9DA1119EC86D562FF3E7344F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [825808] [PID.3772]
[MD5.A3285102E7656627A53625A9138FD9AA] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7447552] [PID.1360]
~ Processes Running: Scanned in 00mn 01s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Preferences
G2 - GCE: Preference [User Data\Default] [nfeonecgpoepapkmdgdmjolonaakdknd] Lyrics Fan v.1.112 (Désactivé) =>Adware.AddLyrics
~ Google Browser: 7 Legitimates Filtered in 00mn 16s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Happy Lyrics [64Bits] - {59C0C5BD-2579-433A-BBB8-AFFD59642BAF} . (...) -- C:\Program Files (x86)\HappyLyrics\hppylrc.dll (.not file.)
O2 - BHO: Lyrics Fan [64Bits] - {A8720491-9558-4C0D-9E35-30EED15DFB2B} . (.FAN Software - Lyrics Fan.) -- C:\Program Files (x86)\LyricsFan\lrcfan.dll =>Adware.AddLyrics
~ BHO: 2 Legitimates Filtered in 00mn 00s



---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [Bdagent] . (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2013\bdagent.exe
O4 - HKCU\..\Run: [EADM] . (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe
O4 - HKLM\..\Wow6432Node\Run: [LManager] Clé orpheline
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKUS\S-1-5-18\..\Run: [SearchProtect] \SearchProtect\bin\cltmng.exe =>Toolbar.Conduit
O4 - HKUS\S-1-5-21-377929125-826591287-2286979282-1001\..\Run: [EADM] . (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe
~ Application: Scanned in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop: EditPlus 3.lnk . (.ES-Computing - EditPlus.) -- C:\Program Files (x86)\EditPlus 3\editplus.exe
O4 - GS\Desktop: MiPony.lnk . (.www.mipony.net - Mipony.) -- C:\Program Files (x86)\MiPony\MiPony.exe
O4 - GS\Desktop: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) -- C:\Program Files (x86)\PhotoFiltre Studio X\pfstudiox.exe
~ Global Startup: Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpDomain = lan
O17 - HKLM\System\CCS\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpDomain = lan
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Service Software Update (Software_update (Software_update) . (...) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe (.not file.)
O23 - Service: Bitdefender Virus Shield (VSSERV) . (.Bitdefender - Bitdefender Security Service.) - C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe
~ Services: 12 Legitimates Filtered in 00mn 26s



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Happy Lyrics Update.job [410]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Lyrics Fan Update.job [416] =>Adware.AddLyrics
[MD5.00000000000000000000000000000000] [APT] [EPUpdater] (...) -- C:\Users\titi\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe (.not file.) [0]
[MD5.65F00E976FCF8C01D5C2B5295AEC41A6] [APT] [GoforFilesUpdate] (.http://www.goforfiles.com/ -- C:\Program Files (x86)\GoforFiles\GFFUpdater.exe [364112] =>P2P.GoforFiles
[MD5.763643CE7E9C5C65405196C0AD279DFB] [APT] [Lyrics Fan Update] (.FAN Software.) -- C:\Program Files (x86)\LyricsFan\LyricsFanUpdater.exe [118272] =>Adware.AddLyrics
~ Scheduled Task: 18 Legitimates Filtered in 00mn 13s



---\\ Logiciels installés (O42)
O42 - Logiciel: GoforFiles - (.http://www.goforfiles.com/ [HKCU][64Bits] -- GoforFiles =>P2P.GoforFiles
O42 - Logiciel: Iminent - (.Iminent.) [HKLM][64Bits] -- {29C7E8BE-FBD9-4D91-BC4F-B470C718D554} =>Adware.IMBooster
O42 - Logiciel: Lyrics Fan - (.FAN Software.) [HKLM][64Bits] -- lrcfan@fansoft.br =>Adware.AddLyrics
~ Logic: 80 Legitimates Filtered in 00mn 01s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\AppDataLow\Software\LyricsFan]
[HKCU\Software\BabSolution] =>Hijacker.BabSolution
[HKCU\Software\IncrediMail]
[HKLM\Software\DomaIQ] =>Toolbar.DomaIQ
[HKLM\Software\WNLT] =>Adware.IncrediBar
[HKLM\Software\Wow6432Node\GoforFiles] =>P2P.GoforFiles
~ Key Software: 153 Legitimates Filtered in 00mn 01s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 24/05/2013 - 15:07:55 - [0] ----D C:\Program Files (x86)\FindLyrics =>Adware.AddLyrics
O43 - CFD: 04/05/2013 - 20:50:54 - [9,958] ----D C:\Program Files (x86)\GoforFiles =>P2P.GoforFiles
O43 - CFD: 24/05/2013 - 15:07:56 - [0,380] ----D C:\Program Files (x86)\LyricsFan
O43 - CFD: 04/05/2013 - 20:51:16 - [0,001] ----D C:\Users\titi\AppData\Roaming\GoforFiles =>P2P.GoforFiles
O43 - CFD: 10/01/2013 - 15:15:13 - [0,510] ----D C:\Users\titi\AppData\Roaming\lm
O43 - CFD: 01/06/2013 - 17:31:01 - [0,000] ----D C:\Users\titi\AppData\Local\supt4pc_fr_36
O43 - CFD: 24/05/2013 - 15:10:18 - [0,002] ----D C:\Users\titi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\QTRAX
~ Program Folder: 139 Legitimates Filtered in 00mn 28s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.4B3C216E536A698F7E753D9197D2C79E] - 03/06/2013 - 20:50:31 ---A- . (...) -- C:\bdlog.txt [186426]
O44 - LFC:[MD5.A9B29973AF1FBE6DD78756FBAD9C1168] - 03/06/2013 - 18:00:22 ---A- . (...) -- C:\Windows\DeleteOnReboot.bat [290]
O44 - LFC:[MD5.C58305AC412A2DE95D461072E0AF5AAF] - 21/05/2013 - 14:31:12 ---A- . (...) -- C:\Windows\SysNative\dmwu.exe [1447728]
O44 - LFC:[MD5.C58305AC412A2DE95D461072E0AF5AAF] - 21/05/2013 - 14:31:12 RSHAD . (...) -- C:\Windows\System32\dmwu.exe [1447728]
O44 - LFC:[MD5.49BAC9565B10570CAAB89B759D2F3DEA] - 21/05/2013 - 14:30:18 ---A- . (.IncrediMail, Ltd. - IMHttpCo Dynamic Link Library.) -- C:\Windows\SysNative\ImHttpComm.dll [33792]
O44 - LFC:[MD5.49BAC9565B10570CAAB89B759D2F3DEA] - 21/05/2013 - 14:30:18 RSHAD . (.IncrediMail, Ltd. - IMHttpCo Dynamic Link Library.) -- C:\Windows\System32\ImHttpComm.dll [33792]
~ Files: 25 Legitimates Filtered in 00mn 24s



---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.544FFA254C631579C8C155032E1FE5BA] - 01/06/2013 - 12:28:16 ---A- - C:\Windows\Prefetch\NEWDEV.EXE-81B9876F.pf
O45 - LFCP:[MD5.FE389DB1CD53B93ED83BC8BB93BD2919] - 01/06/2013 - 14:15:02 ---A- - C:\Windows\Prefetch\DEVICEFASTLANEEVENT.EXE-0D33B9ED.pf
O45 - LFCP:[MD5.5002D47589FDA636C7DF1D7CF22C4208] - 01/06/2013 - 14:15:02 ---A- - C:\Windows\Prefetch\DEVICEFASTLANESVC.EXE-E86CADBF.pf
O45 - LFCP:[MD5.ED14D68AEDD5DDE67284DE778BC11F4B] - 01/06/2013 - 14:15:02 ---A- - C:\Windows\Prefetch\DEVICEFASTLANEUI.EXE-CF5A78A9.pf
O45 - LFCP:[MD5.5C5A8B9AC5792160C77D00A12EDC2AC8] - 01/06/2013 - 16:31:03 ---A- - C:\Windows\Prefetch\MAJTUTO4PC_FR_36.EXE-0A63F850.pf =>PUP.Eorezo
O45 - LFCP:[MD5.C0543A64FB5E38805B3FB0E8EE3644BB] - 01/06/2013 - 16:31:03 ---A- - C:\Windows\Prefetch\MAJTUTO4PC_FR_36.TMP-20F35518.pf =>PUP.Eorezo
O45 - LFCP:[MD5.C67EE4F5BC05288C4405711F6D68AF4E] - 01/06/2013 - 16:31:12 ---A- - C:\Windows\Prefetch\SUPT4PC_FR_36.EXE-3AD69583.pf
O45 - LFCP:[MD5.2AF88FB357DDB24D6B09B03DAC70CDCC] - 02/06/2013 - 10:11:33 ---A- - C:\Windows\Prefetch\SERVICES X86-CODEDOWNLOADER.E-5CB7B0A2.pf =>PUP.CrossRider
O45 - LFCP:[MD5.5BF412C1614B3E1F4003CF5824B82613] - 02/06/2013 - 10:11:38 ---A- - C:\Windows\Prefetch\SERVICES X86-BG.EXE-A1ADF25D.pf =>PUP.CrossRider
O45 - LFCP:[MD5.1BC7C51E828BBB923F20DFB1FB3773F3] - 02/06/2013 - 10:12:28 ---A- - C:\Windows\Prefetch\ONLINETRACKSAUTOUPDATEHELPER.-067E39E0.pf
O45 - LFCP:[MD5.C0B031D0E1182C6B95A94E547E26345D] - 02/06/2013 - 11:07:51 ---A- - C:\Windows\Prefetch\CLTMNG.EXE-E14AC8B0.pf
O45 - LFCP:[MD5.9615408B72795C767CB4C66D17D5E92F] - 02/06/2013 - 11:08:34 ---A- - C:\Windows\Prefetch\THCH.EXE-95900F79.pf
O45 - LFCP:[MD5.69E7F4D518FFB3A005C93EBE01076558] - 02/06/2013 - 11:09:07 ---A- - C:\Windows\Prefetch\DMWU.EXE-AA7A778B.pf
O45 - LFCP:[MD5.33D53CF71C5E472D71FC1EC302268DAD] - 02/06/2013 - 12:28:04 ---A- - C:\Windows\Prefetch\XTREMSPLIT.EXE-29D81664.pf
O45 - LFCP:[MD5.B46115C88F6AC2DC85A9EA2BF8FDC47E] - 02/06/2013 - 17:33:21 ---A- - C:\Windows\Prefetch\LIVECOMM.EXE-F1928578.pf
O45 - LFCP:[MD5.12E43C5EF1461C3FFADFE277AE6971F3] - 02/06/2013 - 17:52:15 ---A- - C:\Windows\Prefetch\PFSX-SETUP-01NET-10.7.3.EXE-1E09C780.pf
O45 - LFCP:[MD5.E16201FAA4053C36CDE4DAA05242D4A0] - 02/06/2013 - 17:53:19 ---A- - C:\Windows\Prefetch\PFSX-SETUP-01NET-10.7.3 [1].E-92A621F5.pf
O45 - LFCP:[MD5.C3CC7254BCB98089A795CE84BB1FC1F3] - 03/06/2013 - 14:29:02 ---A- - C:\Windows\Prefetch\SWEETIM.EXE-8F50D9C0.pf =>PUP.SweetIM
O45 - LFCP:[MD5.F282AA9F60B2BACD815B827478591388] - 03/06/2013 - 15:44:38 ---A- - C:\Windows\Prefetch\BROWSERPROTECT.EXE-6CD41A66.pf =>Hijacker.Eazel
O45 - LFCP:[MD5.20DAFA055706062BD783B35607F497EF] - 03/06/2013 - 16:45:00 ---A- - C:\Windows\Prefetch\SOFTWARECRASHHANDLER.EXE-5F240164.pf
O45 - LFCP:[MD5.20ACCDF0D9F06C4FD346017DD5C8379A] - 03/06/2013 - 16:45:34 ---A- - C:\Windows\Prefetch\CLTMNG.EXE-76C32FCE.pf
O45 - LFCP:[MD5.E5C39EF2F9F11B8BFEAB2760438E0704] - 03/06/2013 - 16:45:39 ---A- - C:\Windows\Prefetch\SWEETPACKSUPDATEMANAGER.EXE-4BA95FDA.pf =>PUP.SweetIM
O45 - LFCP:[MD5.F922D0C49732C267E04CE2F78418FA9C] - 03/06/2013 - 16:45:56 ---A- - C:\Windows\Prefetch\BOXORE.EXE-666CD123.pf =>Adware.Boxore
O45 - LFCP:[MD5.CFFA0B2E61C414B42C16F0B9E8196773] - 03/06/2013 - 16:45:56 ---A- - C:\Windows\Prefetch\TUTO4PC_FR_33.EXE-23A169E9.pf =>PUP.Eorezo
O45 - LFCP:[MD5.C05DD4A5F54EF0BC886674DF429E188A] - 03/06/2013 - 16:46:06 ---A- - C:\Windows\Prefetch\IMINENT.EXE-DDB5429B.pf =>Adware.IMBooster
O45 - LFCP:[MD5.755869F11E17145FD207960C32710621] - 03/06/2013 - 16:46:06 ---A- - C:\Windows\Prefetch\IMINENT.MESSENGERS.EXE-71459735.pf =>Adware.IMBooster
O45 - LFCP:[MD5.1FE71EF73460486F331E599426563A96] - 03/06/2013 - 16:46:06 ---A- - C:\Windows\Prefetch\TUTO4PC_FR_36.EXE-39BEC677.pf =>PUP.Eorezo
O45 - LFCP:[MD5.B10850F06ACC68E8A908626F7A958FEF] - 03/06/2013 - 16:48:17 ---A- - C:\Windows\Prefetch\UPT4PC_FR_33.EXE-4CCFACC6.pf
O45 - LFCP:[MD5.E929AF80F6E8F7FBE9F6FF7892A63642] - 03/06/2013 - 17:12:24 ---A- - C:\Windows\Prefetch\OBK.EXE-78D4C9CC.pf
O45 - LFCP:[MD5.3D0061D0BD8EC1A143E6FB1347C816BA] - 03/06/2013 - 17:12:24 ---A- - C:\Windows\Prefetch\OBKCH.EXE-631D1C6B.pf
O45 - LFCP:[MD5.C419AD0058D882ABF053D7EAD55591B9] - 03/06/2013 - 19:08:48 ---A- - C:\Windows\Prefetch\INSTALLER.EXE-2DA55FD2.pf
O45 - LFCP:[MD5.760F3E7ABA9E004034EFE40F2DA9C25C] - 04/06/2013 - 04:35:03 ---A- - C:\Windows\Prefetch\DKRUN32.EXE-8583E6AC.pf
O45 - LFCP:[MD5.161474F1A47CA2424365969DE5427BEF] - 04/06/2013 - 04:35:12 ---A- - C:\Windows\Prefetch\LMUTILPS32.EXE-9827F12C.pf
O45 - LFCP:[MD5.C69E7F36E05AEE1E18F9ED3899EDF3BC] - 04/06/2013 - 04:48:11 ---A- - C:\Windows\Prefetch\BDADDMTASK.EXE-C9B44295.pf
O45 - LFCP:[MD5.49FB49D76C207AEA0C447AEABFED2912] - 05/05/2013 - 20:52:21 ---A- - C:\Windows\Prefetch\EF16.TMP-140FD8DA.pf
O45 - LFCP:[MD5.07430DC28243B4F0194BF2412650BFBB] - 06/05/2013 - 21:08:05 ---A- - C:\Windows\Prefetch\408F.TMP-B8A4520A.pf
O45 - LFCP:[MD5.9AA3B0D7721CF49F60CD951128C0F55E] - 07/05/2013 - 22:08:05 ---A- - C:\Windows\Prefetch\89EB.TMP-75AC7AA0.pf
O45 - LFCP:[MD5.38B0717FF46465A7481CCA8657A3FC7C] - 08/05/2013 - 10:04:14 ---A- - C:\Windows\Prefetch\EBAY2.EXE-E3201D7D.pf
O45 - LFCP:[MD5.E49D0ACE7F3ACE46B13F024D97FE8AD7] - 08/05/2013 - 11:41:27 ---A- - C:\Windows\Prefetch\GOOGLEEARTH-WIN-BUNDLE-7.1.1.-C5A3FDA1.pf
O45 - LFCP:[MD5.D7DD0C333E2ED2A8DE66A97EF859869F] - 08/05/2013 - 17:43:13 ---A- - C:\Windows\Prefetch\EXTCONVERTER.EXE-B7C2FB1C.pf
O45 - LFCP:[MD5.E05B6175E537CA84E832713600F8EC24] - 08/05/2013 - 23:08:06 ---A- - C:\Windows\Prefetch\D5A9.TMP-3D9AC747.pf
O45 - LFCP:[MD5.0C301C19BE15EE20C5089E2DDD859933] - 10/05/2013 - 07:24:10 ---A- - C:\Windows\Prefetch\D153.TMP-043CDC79.pf
O45 - LFCP:[MD5.2C3FA4F582EA4B6077C8F94434A6E4BA] - 11/05/2013 - 15:53:12 ---A- - C:\Windows\Prefetch\E205.TMP-87507CF4.pf
O45 - LFCP:[MD5.D1035FA61B3C7766B70F922F2BFF69F8] - 12/05/2013 - 16:53:17 ---A- - C:\Windows\Prefetch\2F49.TMP-902CBE09.pf
O45 - LFCP:[MD5.C87C8B381A692026B2B076264390C29C] - 13/05/2013 - 16:56:48 ---A- - C:\Windows\Prefetch\SECONDSTEPINSTALLER.EXE-108A081B.pf
O45 - LFCP:[MD5.B1956B5A941C4334B5BCBF80AC2E34DC] - 13/05/2013 - 16:57:09 ---A- - C:\Windows\Prefetch\CLTMNGSVC.EXE-28758A2C.pf
O45 - LFCP:[MD5.E8CF76B56B1FB8D4543F7645255FF724] - 13/05/2013 - 16:57:09 ---A- - C:\Windows\Prefetch\SPRUNNER.EXE-9EF706D7.pf
O45 - LFCP:[MD5.226F089D334D886A1D0088053DF88E02] - 17/05/2013 - 11:49:17 ---A- - C:\Windows\Prefetch\LAUNCHTM.EXE-B444BC8E.pf
O45 - LFCP:[MD5.DE5DBE07F8B766BCB7BD67753DDD1DCA] - 18/05/2013 - 08:54:54 ---A- - C:\Windows\Prefetch\EMULE.EXE-6F3A59E3.pf
O45 - LFCP:[MD5.6D9D3012C0721273C9E5FC11B429EFFD] - 20/05/2013 - 11:49:02 ---A- - C:\Windows\Prefetch\AUTORUN.EXE-D28490C2.pf
O45 - LFCP:[MD5.A88B6321E7D33EB241CA8E972013DBE9] - 23/05/2013 - 17:47:29 ---A- - C:\Windows\Prefetch\27.0.1453.94_26.0.1410.64_CHR-A30B2727.pf
O45 - LFCP:[MD5.CD369C1CB1CD71CA264039528C64E7A1] - 23/05/2013 - 17:54:57 ---A- - C:\Windows\Prefetch\GENPTCH.EXE-022E2611.pf
O45 - LFCP:[MD5.72EF240BA6A178B2F1E856A8D0B515BD] - 24/05/2013 - 14:06:44 ---A- - C:\Windows\Prefetch\MIPONY-INSTALLER.EXE-BCB9BF1E.pf
O45 - LFCP:[MD5.C5882B7530EE60B0A312147F056D625B] - 24/05/2013 - 14:06:45 ---A- - C:\Windows\Prefetch\MIPONY-INSTALLER-1.EXE-8FD2B1B6.pf
O45 - LFCP:[MD5.00586B566249BBFF8A491B99D8ACE5F0] - 24/05/2013 - 14:07:29 ---A- - C:\Windows\Prefetch\DELTATB.EXE-ECF6B948.pf =>Toolbar.DeltaSearch
O45 - LFCP:[MD5.271631FCA25926079C88CFCF43503DBF] - 24/05/2013 - 14:07:29 ---A- - C:\Windows\Prefetch\FINDLYRICS.EXE-CD7FD79B.pf =>Adware.AddLyrics
O45 - LFCP:[MD5.7B3A808A0EDEA285FED5C1D6AF1F05C5] - 24/05/2013 - 14:07:29 ---A- - C:\Windows\Prefetch\QTRAXINSTALLER.EXE-A1B755C6.pf
O45 - LFCP:[MD5.BD979DC3F85F5CCCEECF86B0213F0BC4] - 24/05/2013 - 14:07:39 ---A- - C:\Windows\Prefetch\TUTO4PC_SETUP_FR.EXE-6483E602.pf =>PUP.Eorezo
O45 - LFCP:[MD5.86C73447615416C5D0DCA48F8AF11291] - 24/05/2013 - 14:07:40 ---A- - C:\Windows\Prefetch\TUTO4PC_SETUP_FR.TMP-872FC7DB.pf =>PUP.Eorezo
O45 - LFCP:[MD5.A112D95494BA1CC3B2EDF2FC79523B28] - 24/05/2013 - 14:08:36 ---A- - C:\Windows\Prefetch\FLCSUP.EXE-7EA4384E.pf
O45 - LFCP:[MD5.669E3E356AB5699C1BA116C19254D091] - 24/05/2013 - 14:08:36 ---A- - C:\Windows\Prefetch\FLCSUR.EXE-1E2A4401.pf
O45 - LFCP:[MD5.78136E57CA1F007F9C300CDDE7ECDC1C] - 24/05/2013 - 19:28:05 ---A- - C:\Windows\Prefetch\BOXORE.EXE-A2201CC7.pf =>Adware.Boxore
O45 - LFCP:[MD5.CD03C75BBE6EB84A9681626F789F6CFE] - 24/05/2013 - 19:28:05 ---A- - C:\Windows\Prefetch\BOXOREINSTALLER.EXE-B14E3636.pf =>Adware.Boxore
O45 - LFCP:[MD5.EA8BAF0AE6A3117F187D29205C749F75] - 24/05/2013 - 19:28:05 ---A- - C:\Windows\Prefetch\DELTA BABYLON.EXE-93D592F1.pf =>Toolbar.Babylon
O45 - LFCP:[MD5.8378CCE1B6D21B8612AB0278805E413E] - 24/05/2013 - 19:28:27 ---A- - C:\Windows\Prefetch\SCS.EXE-B1CF88FC.pf
O45 - LFCP:[MD5.A952095CE2D603180F8F425E4774BD78] - 24/05/2013 - 19:31:26 ---A- - C:\Windows\Prefetch\DELTATB.EXE-F5CC058A.pf =>Toolbar.DeltaSearch
O45 - LFCP:[MD5.ABDA98E6409604677740913D7F1E2D9D] - 24/05/2013 - 19:31:52 ---A- - C:\Windows\Prefetch\DELTA4FFX.EXE-8CE04256.pf
O45 - LFCP:[MD5.1B284122D956F2DDEB20350F542B5B69] - 24/05/2013 - 19:31:54 ---A- - C:\Windows\Prefetch\DELTA4IE.EXE-0E3E6180.pf
O45 - LFCP:[MD5.4EA4D77A6A9EB1EC2D1DF2601AF70646] - 24/05/2013 - 19:31:54 ---A- - C:\Windows\Prefetch\DELTASRV.EXE-D503A767.pf
O45 - LFCP:[MD5.934DC397ACDA08B2252AD7CF9010180E] - 24/05/2013 - 19:31:54 ---A- - C:\Windows\Prefetch\MYBABYLONTB.EXE-93E7D2B5.pf =>Toolbar.Babylon
O45 - LFCP:[MD5.1CAF5817F94429D20E0CA535CF3195B1] - 24/05/2013 - 19:31:55 ---A- - C:\Windows\Prefetch\BPROTECT.EXE-87C554E2.pf
O45 - LFCP:[MD5.78BCEC0D52B71656B0EAB24A66442FAB] - 24/05/2013 - 19:32:15 ---A- - C:\Windows\Prefetch\PUSH.EXE-3E49F76A.pf
O45 - LFCP:[MD5.ADF83C3F239CC0433D2AF18FC2BD8214] - 24/05/2013 - 19:32:15 ---A- - C:\Windows\Prefetch\WEBPLAYER.EXE-78EFCF68.pf
O45 - LFCP:[MD5.653B7267DB936DA0CA834E55E6FBFB6C] - 24/05/2013 - 19:49:03 ---A- - C:\Windows\Prefetch\IMINENT.EXE-577869DE.pf =>Adware.IMBooster
O45 - LFCP:[MD5.042873233A0167E6654B42A24894BF32] - 24/05/2013 - 19:49:03 ---A- - C:\Windows\Prefetch\UMBRELLA.EXE-0B44C393.pf
O45 - LFCP:[MD5.467A9234D40DC21EB1510AA8066792F9] - 25/05/2013 - 09:08:40 ---A- - C:\Windows\Prefetch\RESTORE.EXE-FF5AC776.pf
O45 - LFCP:[MD5.22FAFA9906A8732B817F9985EBBBF9BE] - 25/05/2013 - 09:08:53 ---A- - C:\Windows\Prefetch\GAMECONSOLE-4.0.23.8-TO-4.0.2-F4C8D955.pf
O45 - LFCP:[MD5.281093E0BC83905C3199185AEA04D5AD] - 25/05/2013 - 09:08:56 ---A- - C:\Windows\Prefetch\PATCH_5272.EXE-E7CE1F9C.pf
O45 - LFCP:[MD5.4197FDC913E529768D74DD0F4C2AF39C] - 25/05/2013 - 09:08:59 ---A- - C:\Windows\Prefetch\BSDIFF_PATCH.EXE-5CB3380C.pf
O45 - LFCP:[MD5.E259C5F6AF4DC238E9B54B64A4FEC215] - 25/05/2013 - 09:09:24 ---A- - C:\Windows\Prefetch\PARK-{A115BE37-90C1-4DED-AE63-889CBF58.pf
O45 - LFCP:[MD5.6A5AEF1A158F2B9011A6E05BCE11F836] - 25/05/2013 - 09:09:58 ---A- - C:\Windows\Prefetch\INSTALLTOUCHPOINTS-PACKARDBEL-7C530842.pf
O45 - LFCP:[MD5.F8619C677BA8092F03AEC95338673667] - 25/05/2013 - 09:10:00 ---A- - C:\Windows\Prefetch\INSTALLTOUCHPOINTS-PACKARDBEL-AFC6D3BC.pf
O45 - LFCP:[MD5.B7A88DF1918D5484D6599ACD77E7F272] - 25/05/2013 - 09:11:15 ---A- - C:\Windows\Prefetch\GAME.DAT-81362BDD.pf
O45 - LFCP:[MD5.38C0A1A3FE4E5C3D2FB089EC161A2066] - 25/05/2013 - 09:11:17 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-FB09BA72.pf
O45 - LFCP:[MD5.655BD6B0252A5046DD1DCC4349BA22E8] - 25/05/2013 - 09:11:18 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-2939A083.pf
O45 - LFCP:[MD5.9E3A5A16088A82064D01ED157633AF43] - 25/05/2013 - 09:11:19 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-2C4BEB3D.pf
O45 - LFCP:[MD5.5C38B831EBE84492703E1DA179F75970] - 25/05/2013 - 09:11:23 ---A- - C:\Windows\Prefetch\GAME.DAT-99D9B6CB.pf
O45 - LFCP:[MD5.2243FA7E08ED2DF592F2CFFF04B3BA28] - 25/05/2013 - 09:11:24 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-7984D480.pf
O45 - LFCP:[MD5.5A3992588D55F07CBF5124BB4F8C85F2] - 25/05/2013 - 09:11:25 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-4FFBD3A1.pf
O45 - LFCP:[MD5.3F369D37E710347753C83E46AB30C900] - 25/05/2013 - 09:11:27 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-A0B5A03B.pf
O45 - LFCP:[MD5.FF952168DF22C9CAF7271FF3A7BEB366] - 25/05/2013 - 09:11:30 ---A- - C:\Windows\Prefetch\GAME.DAT-5B81F525.pf
O45 - LFCP:[MD5.25A36AB10FEE5380553F19313FDC9474] - 25/05/2013 - 09:11:31 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-7FC4F73A.pf
O45 - LFCP:[MD5.A05D18A25E190E1BB3B77A924182039D] - 25/05/2013 - 09:11:33 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-016D910B.pf
O45 - LFCP:[MD5.FBC09CE13D831BC31E58178242C45522] - 25/05/2013 - 09:11:33 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-3DA5A445.pf
O45 - LFCP:[MD5.647EAFC4F4C8D61B1237720386F87985] - 25/05/2013 - 09:11:37 ---A- - C:\Windows\Prefetch\GAME.DAT-BD04FDA4.pf
O45 - LFCP:[MD5.3F6174AB8D21426F7A25112700D48774] - 25/05/2013 - 09:11:38 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-070F5EC9.pf
O45 - LFCP:[MD5.2E9481D50F0B885CD2B67C5CEC05A8A1] - 25/05/2013 - 09:11:40 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-C7677AE2.pf
O45 - LFCP:[MD5.E1D21EF0881588702E8E3B50D46CD1B0] - 25/05/2013 - 09:11:41 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-5911138C.pf
O45 - LFCP:[MD5.C848726EE56AD12F23DCC315DC045B4B] - 25/05/2013 - 09:11:45 ---A- - C:\Windows\Prefetch\GAME.DAT-A4F42E3B.pf
O45 - LFCP:[MD5.65362D89DA95E5646BDA073FB7D8DE95] - 25/05/2013 - 09:11:46 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-B499C4F0.pf
O45 - LFCP:[MD5.8AF448DF827DB977DD76AA32A92BBE74] - 25/05/2013 - 09:11:48 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-4D108C91.pf
O45 - LFCP:[MD5.EFF96CEA5AE361A5CE7892D880112561] - 25/05/2013 - 09:11:50 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-6E38682B.pf
O45 - LFCP:[MD5.4675E17B6A5A91BA069D962E86EA0146] - 25/05/2013 - 09:11:52 ---A- - C:\Windows\Prefetch\GAME.DAT-6E3D9CE4.pf
O45 - LFCP:[MD5.5BD941009595EE29DBAA17A05AD601B9] - 25/05/2013 - 09:11:54 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-E6EB4A09.pf
O45 - LFCP:[MD5.D9A3B25D0FB1768FAFC6C4EC16A1E883] - 25/05/2013 - 09:11:55 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-D1431C22.pf
O45 - LFCP:[MD5.C34A039BD4A24AA18E7B5EFCD1E143FD] - 25/05/2013 - 09:11:56 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-54D4C8CC.pf
O45 - LFCP:[MD5.3B0208E90580898F3ECDBA1DCFA90EFC] - 25/05/2013 - 09:11:59 ---A- - C:\Windows\Prefetch\GAME.DAT-6D4FF778.pf
O45 - LFCP:[MD5.18E0E4A07C199B51636111B29F62E509] - 25/05/2013 - 09:12:01 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-D52A6F5D.pf
O45 - LFCP:[MD5.A663D9F71607AE083DFE4167C3EF2B69] - 25/05/2013 - 09:12:03 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-5787CFD6.pf
O45 - LFCP:[MD5.9B719770CDAA4A906B7C137F99A1242B] - 25/05/2013 - 09:12:03 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-13D697C0.pf
O45 - LFCP:[MD5.2B8D612199A2F41EFB8BA34708135C49] - 25/05/2013 - 09:12:08 ---A- - C:\Windows\Prefetch\GAME.DAT-7DB2A8FE.pf
O45 - LFCP:[MD5.34980EDFC2E0951FBBB43B653744EDA5] - 25/05/2013 - 09:12:09 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-46231E83.pf
O45 - LFCP:[MD5.189D766FCF94721222E0589453390165] - 25/05/2013 - 09:12:11 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-5C382D4C.pf
O45 - LFCP:[MD5.4CE2E76AADEF1F9BCF4EE12C2518AA58] - 25/05/2013 - 09:12:13 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-16875C96.pf
O45 - LFCP:[MD5.770058F9DAFCE24931F450EE7835E825] - 25/05/2013 - 09:12:16 ---A- - C:\Windows\Prefetch\GAME.DAT-CD5E4B56.pf
O45 - LFCP:[MD5.B292AFD47E4E19F38A0B0B842C086BC3] - 25/05/2013 - 09:12:18 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-F0BB335B.pf
O45 - LFCP:[MD5.714D74D97F64DCF144223F07918BED6D] - 25/05/2013 - 09:12:18 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-3B8F8964.pf
O45 - LFCP:[MD5.04E33948513CFA3C6C7563B6E06C8E8D] - 25/05/2013 - 09:12:20 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-A624BA2E.pf
O45 - LFCP:[MD5.71FD8F43587116742CDC4F52728B8431] - 25/05/2013 - 09:12:23 ---A- - C:\Windows\Prefetch\GAME.DAT-2F027DE4.pf
O45 - LFCP:[MD5.6D18D7B179D654FC5ABA1BCC579EAFCE] - 25/05/2013 - 09:12:24 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-E1DB1B09.pf
O45 - LFCP:[MD5.1AD8313B24A41C6E43B3E409F31619B6] - 25/05/2013 - 09:12:25 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-06ADA522.pf
O45 - LFCP:[MD5.E1EFF9D9489FA65BE1FB9F2375177E9B] - 25/05/2013 - 09:12:26 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-AEFFE1CC.pf
O45 - LFCP:[MD5.3AF3C52B408EADCD5F4C39BDD5A3979D] - 25/05/2013 - 09:12:33 ---A- - C:\Windows\Prefetch\GAME.DAT-1AE68EC5.pf
O45 - LFCP:[MD5.C71798E442E03BD98BEEF4688B8EE29B] - 25/05/2013 - 09:12:34 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-363096DA.pf
O45 - LFCP:[MD5.5F1258ACDD816E56374C8A25247734F1] - 25/05/2013 - 09:12:35 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-3A083BAB.pf
O45 - LFCP:[MD5.886B35B34BD32EEAA760C4509BA942DC] - 25/05/2013 - 09:12:36 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-6AF1F8E5.pf
O45 - LFCP:[MD5.C7F7CB2FC92B8550474BBE0259C85D8D] - 25/05/2013 - 09:12:39 ---A- - C:\Windows\Prefetch\GAME.DAT-115D29C5.pf
O45 - LFCP:[MD5.DFDDE0B1E21FA6B39EB835C6A7E72650] - 25/05/2013 - 09:12:40 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-9BE081DA.pf
O45 - LFCP:[MD5.12E920F466BED6A77EC496B713123EE9] - 25/05/2013 - 09:12:41 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-1B1A8EAB.pf
O45 - LFCP:[MD5.6A774803E5A4CF5A140BAAD0A6605581] - 25/05/2013 - 09:12:42 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-BEB17BE5.pf
O45 - LFCP:[MD5.787AF77FD2D52A7BB44F86DDBD20E483] - 25/05/2013 - 09:12:45 ---A- - C:\Windows\Prefetch\GAME.DAT-DF91F6B8.pf
O45 - LFCP:[MD5.1706A871C02C91A2B7064652CBFB891C] - 25/05/2013 - 09:12:47 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-7FD9BA9D.pf
O45 - LFCP:[MD5.0A37B3F8840238F98BD0888E8D3A09C6] - 25/05/2013 - 09:12:47 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-F553D116.pf
O45 - LFCP:[MD5.F568B559B77AD16945B4199534C52882] - 25/05/2013 - 09:12:49 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-2390AD00.pf
O45 - LFCP:[MD5.2D0EF50A32A380257434BF348D2CCE46] - 25/05/2013 - 09:12:53 ---A- - C:\Windows\Prefetch\GAME.DAT-BF3AB286.pf
O45 - LFCP:[MD5.D6207E9E0D60749A017EC831A99F2690] - 25/05/2013 - 09:12:55 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-C7BCD78B.pf
O45 - LFCP:[MD5.40DDEF76DE0AE20D246AFE095A48C38C] - 25/05/2013 - 09:12:56 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-3B9F0814.pf
O45 - LFCP:[MD5.6E1DB98C118C859C6AFD9BD54716C7F4] - 25/05/2013 - 09:12:56 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-6688A3DE.pf
O45 - LFCP:[MD5.8DF1C5151721A402AB641CFF5313141D] - 25/05/2013 - 09:13:00 ---A- - C:\Windows\Prefetch\GAME.DAT-E61BDEC7.pf
O45 - LFCP:[MD5.AD47ED4E3579D7625FEB90C23DF7E1F9] - 25/05/2013 - 09:13:02 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-EB1A18BC.pf
O45 - LFCP:[MD5.97F8AB8B527C0E49886E2CBB1E5DFDF5] - 25/05/2013 - 09:13:04 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-6BB970FD.pf
O45 - LFCP:[MD5.9C639C707402AFC7601DB14959A9D706] - 25/05/2013 - 09:13:05 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-3628B357.pf
O45 - LFCP:[MD5.E7331A75D3864F29A94420A422497BC7] - 25/05/2013 - 09:19:28 ---A- - C:\Windows\Prefetch\UNINST.EXE-8144BB14.pf
O45 - LFCP:[MD5.4DDC8713629FE50230F5656A12481F68] - 25/05/2013 - 09:20:46 ---A- - C:\Windows\Prefetch\{311739EB-5C94-4EE1-B911-2D1F-A7944CFD.pf
O45 - LFCP:[MD5.32926298C53D6103587131F0DB5B6B72] - 25/05/2013 - 09:23:01 ---A- - C:\Windows\Prefetch\DIFXINST64.EXE-C8C2E3F2.pf
O45 - LFCP:[MD5.064A007098D4AA2298E1D5A849234381] - 25/05/2013 - 09:25:54 ---A- - C:\Windows\Prefetch\PCSPEEDMAXIMIZER.EXE-60BA47FF.pf
O45 - LFCP:[MD5.29F6694245486FD4E071183DF08243CC] - 25/05/2013 - 09:27:15 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-A6D3D8CE.pf
O45 - LFCP:[MD5.7BA48C64314144B122826BFDE062CA8B] - 25/05/2013 - 13:06:28 ---A- - C:\Windows\Prefetch\EPP351.EXE-1771E43E.pf
O45 - LFCP:[MD5.F539CD1FAE2945C438B3C089A95344B7] - 25/05/2013 - 13:06:44 ---A- - C:\Windows\Prefetch\SETUP_EP.EXE-3A40447D.pf
O45 - LFCP:[MD5.07BD500E0DB89ADACB263338C1F229BF] - 25/05/2013 - 13:07:06 ---A- - C:\Windows\Prefetch\EPPSHELLREG.EXE-E4E0A343.pf
O45 - LFCP:[MD5.607980492A9A866FF6789B08FCCC3E3E] - 26/05/2013 - 19:49:43 ---A- - C:\Windows\Prefetch\STARTME.EXE-DB3CA801.pf
O45 - LFCP:[MD5.8F87A7969FDFC64149DE6458F185E984] - 26/05/2013 - 19:49:50 ---A- - C:\Windows\Prefetch\STARTME.EXE-24BFBA28.pf
O45 - LFCP:[MD5.9F6AD1A21DA3704AB1A9D654F64D0E3A] - 27/05/2013 - 15:57:35 ---A- - C:\Windows\Prefetch\MAJT4PCFR.EXE-92413E55.pf
O45 - LFCP:[MD5.19C9205DFF638E923081E1740246802A] - 27/05/2013 - 15:57:36 ---A- - C:\Windows\Prefetch\MAJT4PCFR.TMP-F0B20247.pf
O45 - LFCP:[MD5.E0013755A07E5FF592204BF4BF724C06] - 27/05/2013 - 17:07:45 ---A- - C:\Windows\Prefetch\50D1D9D5-CF90-407C-820A-35E05-FA169CE8.pf
O45 - LFCP:[MD5.5E27B70F72A43C009D048F4E7A776D4D] - 27/05/2013 - 17:07:45 ---A- - C:\Windows\Prefetch\INST.EXE-9EEFFBF4.pf
O45 - LFCP:[MD5.088D7CC877E665802332C041604B88C2] - 27/05/2013 - 17:08:36 ---A- - C:\Windows\Prefetch\HAPPYLYRICS_2204-E2F0CCE3.EXE-C98C41D1.pf
~ Prefetcher: 467 Legitimates Filtered in 00mn 07s



---\\ MountPoints2 Shell Key (O51)
O51 - MPSK:{8577740d-fb99-11e1-be6a-806e6f6e6963}\AutoRun\command. (.Electronic Arts - Autorun Application.) -- D:\Autorun.exe
O51 - MPSK:{aa6b18d3-c5f0-11e2-bf7e-4c72b993ea23}\AutoRun\command. (...) -- E:\Startme.exe (.not file.)
~ Keys: Scanned in 00mn 04s



---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLinkedConnections"=1
~ MWPS: 18 Legitimates Filtered in 00mn 00s



---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
~ MWPE Keys: 3 Legitimates Filtered in 00mn 00s



---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.4F18D4C7EA14F11A7211F60D553C03DB] - 26/07/2012 - 06:00:49 ---A- . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\Drivers\3ware.sys [106736]
~ Drivers: Scanned in 00mn 00s



---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 01/06/2013 - 14:26:04 ---A- C:\Users\titi\Links\Desktop.lnk [485]
O61 - LFC: 01/06/2013 - 14:26:04 ---A- C:\Users\titi\Links\Downloads.lnk [936]
O61 - LFC: 01/06/2013 - 14:26:04 ---A- C:\Users\titi\Links\RecentPlaces.lnk [383]
O61 - LFC: 01/06/2013 - 16:31:01 ---A- C:\Users\titi\AppData\Local\supt4pc_fr_36\supt4pc_fr_36\update.cyl [59]
O61 - LFC: 02/06/2013 - 12:27:03 ---A- C:\Users\titi\Downloads\Xtremsplit.exe [305664]
O61 - LFC: 02/06/2013 - 17:50:39 ---A- C:\Users\titi\Downloads\pfsx-setup-01net-10.7.3.exe [667016]
O61 - LFC: 02/06/2013 - 17:52:06 ---A- C:\Users\titi\Downloads\pfsx-setup-01net-10.7.3 [1].exe [11103194]
O61 - LFC: 02/06/2013 - 17:53:47 --H-- C:\Users\titi\AppData\Roaming\Identities\{46504E63-3636-3932-3430-313231346154}\1pac4612.1c16 [45]
O61 - LFC: 03/06/2013 - 18:44:42 ---A- C:\Users\titi\Downloads\mbam-setup-1.75.0.1300.exe [10285040]
O61 - LFC: 04/06/2013 - 04:42:28 ---A- C:\Users\titi\AppData\Local\Google\Chrome\User Data\Certificate Revocation Lists [267278]
O61 - LFC: 04/06/2013 - 04:52:39 ---A- C:\Users\titi\AppData\Local\Google\Chrome\User Data\Local State [33964]
~ 4 Fichiers temporaires (Temporary files)
~ Files: 221 Legitimates Filtered in 00mn 38s



---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ ADS: Scanned in 00mn 00s



---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Not Key.)
~ FASS Keys: 19 Legitimates Filtered in 00mn 00s



---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s



---\\ Search Browser Infection (O69)
O69 - SBI: SearchScopes [HKCU] {210B6304-3A0E-4461-A148-41B64243E380} - (onlinetracks Customized Web Search) - http://search.conduit.com
~ Keys: Scanned in 00mn 00s



---\\ Recherche particuliere à la racine de certains dossiers (O84)
[MD5.A48B88F84CB703FF667295A2E5B363E4] [SPRF][11/03/2013] (...) -- C:\ProgramData\1362990986.bdinstall.bin [1872498]
[MD5.32DCED18FFFEA0035E4FA975CA0AE8BE] [SPRF][22/04/2013] (.The Software Group - Software Update Setup.) -- C:\Users\titi\AppData\Local\Temp\BoxoreInstaller.exe [620656] =>Adware.Boxore
[MD5.602AE45EEB85FCE002C2BD541F5E3F89] [SPRF][11/01/2013] (.Conduit - Pas de description.) -- C:\Users\titi\AppData\Local\Temp\conduitinstaller.exe [86080] =>Toolbar.Conduit
[MD5.735C5AB0106E929C5616B49954FFF0EE] [SPRF][24/05/2013] (.Pas de propriétaire - Lyrics Fan.) -- C:\Users\titi\AppData\Local\Temp\flcsup.exe [280921] =>Adware.AddLyrics
[MD5.F6278B5A16F830885B184D5F72E1B935] [SPRF][04/05/2013] (.Terra Informatica Software, Inc., British C - HTMLayout - embeddable HTML rendering and layout component.) -- C:\Users\titi\AppData\Local\Temp\htmlayout.dll [947200]
[MD5.8A4AF3B0695F29186AD02E2FD766FA3B] [SPRF][11/01/2013] (.SweetIM Technologies Ltd. - SQLite DLL.) -- C:\Users\titi\AppData\Local\Temp\mgsqlite3.dll [393016] =>PUP.SweetIM
[MD5.F4E3DE7B4898E37652F39A06BC9591E3] [SPRF][08/05/2013] (.Conduit - Search Protect by Conduit.) -- C:\Users\titi\AppData\Local\Temp\SecondStepInstaller.exe [2824352] =>Toolbar.Conduit
[MD5.D9DA3FDE1AEE64CEE57D4C57A538A53B] [SPRF][22/10/2012] (.SweetIM Technologies Ltd. - SweetIM Installer by SweetPacks.) -- C:\Users\titi\AppData\Local\Temp\Shortcut_bundlesweetimsetup.exe [7739736] =>PUP.SweetIM
[MD5.C6D792E4583FC46DB0953FBF6E46348A] [SPRF][11/01/2013] (.SweetIM Technologies Lt - This installer.) -- C:\Users\titi\AppData\Local\Temp\SIMEEI2Installer.exe [2962432] =>PUP.SweetIM
[MD5.7704B843006444B69486FD27D4660845] [SPRF][11/01/2013] (.SweetIM Technologies Lt - This installer.) -- C:\Users\titi\AppData\Local\Temp\SIMEEIInstaller.exe [3380216] =>PUP.SweetIM
[MD5.E8EFB9EF24C1E0CED84CFA3C2AE9DC2F] [SPRF][04/05/2013] (...) -- C:\Users\titi\AppData\Local\Temp\toolbar180976635.exe [782832]
[MD5.225CCDCFE5625795647043679CB77112] [SPRF][11/01/2013] (...) -- C:\Users\titi\AppData\Local\Temp\wajam_install.exe [417256] =>Toolbar.Wajam
[MD5.683FDD3D773C58B262DC07CD0C6CE938] [SPRF][03/06/2013] (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Users\titi\Desktop\mbam-setup-1.75.0.1300.exe [10285040]
[MD5.546026247543D6B9499A1503798E3B10] [SPRF][04/06/2013] (.Nicolas Coolman - ZHPDiag.) -- C:\Users\titi\Desktop\ZHPDiag2.exe [5672605]
~ Files: Scanned in 00mn 01s



---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "{0A0FFD05-6AF3-4408-96C5-741D6FAE5EE1}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) =>PUP.SweetIM
O87 - FAEL: "{FCDCAC89-8B60-4E91-AC1F-17F664C8F3FF}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) =>PUP.SweetIM
O87 - FAEL: "{7E3E9501-0214-4E7B-9440-B21B778A0805}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Iminent\Iminent.exe (.not file.) =>Adware.IMBooster
O87 - FAEL: "{84E40B51-363D-4D69-A20A-0E8176DE748E}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Iminent\Iminent.Messengers.exe (.not file.) =>Adware.IMBooster
O87 - FAEL: "{AB37A174-7AC8-4627-A749-98E904A6BCA1}" | In - Private - P6 - TRUE | .(...) -- C:\Windows\System32\dmwu.exe
O87 - FAEL: "{35773580-F21F-4899-8F0E-61356120666D}" | In - Private - P17 - TRUE | .(...) -- C:\Windows\System32\dmwu.exe
~ Firewall: 251 Legitimates Filtered in 00mn 03s



---\\ Scan Additionnel (O88)
Database Version : v2.12387 - (03/06/2013)
Clés trouvées (Keys found) : 92
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 2
Fichiers trouvés (Files found) : 14

[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D15DAF33C220F91468A1D7D57C31ACD7] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D6D0EB9FDBD90C04D92A7E729058F10D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A189D17A469616C4688D23E192996267] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98CC8BF5A4A6E6C4ABF7051DDAB8B058] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7FFA128C2B0FF414D805FC5627883401] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D3BA76A44C779424889063D5098ED2D6] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\397C771A7BCAC904697C3EC629ED33ED] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\351716A953E21214898904032EAE2E81] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E6768B6932D112438F047C54D180635] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EB6AF8AEEB922FA4392548F13812E50B] =>PUP.SweetIM
[HKLM\Software\WNLT] =>Adware.IncrediBar
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EE58E3C298524145B73CBBED3CAC4D3] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B2FD9C0A5B9838449838816A28001F4B] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02F47BF73B948514FAACADD8CBBDF37D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\080D9F5E1E95FEE4794CE438E635239E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4318DF19719275242801CBE292063A4C] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75D5168E5E176C24981B4E5DBD991078] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8724E58E6C7D00C48A0D4F3345EB2C26] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB676B0E1B9EFA049B9F7DDDA9645734] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B31BBB0B825EDEF45AB0FE7099C68C81] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B471D8D7319336B4CA89374ED0D7B806] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC30043663AA2CA4DA1DAA9CA5FDCC75] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E1C820A74ED67374BA048B52CB3C3804] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FDC83385E6C239F4C876A77A37DF581D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\427EA997C413D1D47907CBFC7B2DB432] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1E264E0A5959A1C46BA9175A878B12EA] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E4748F9A4181FCE46A23C13B517B9420] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1EAD96AE2CB1DE84BAA9425A8CCA0817] =>Adware.Boxore
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A] =>Adware.IMBooster
[HKCU\Software\AppDataLow\Software\LyricsFan] =>Adware.AddLyrics
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\lrcfan@fansoft.br] =>Adware.AddLyrics
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A8720491-9558-4C0D-9E35-30EED15DFB2B}] =>Adware.AddLyrics
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A8720491-9558-4C0D-9E35-30EED15DFB2B}] =>Adware.AddLyrics
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A8720491-9558-4C0D-9E35-30EED15DFB2B}] =>Adware.AddLyrics
[HKLM\Software\Wow6432Node\Google\Chrome\Extensions\nfeonecgpoepapkmdgdmjolonaakdknd] =>Adware.AddLyrics
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BA71D41F6CC0B6247B05D473850A8AEA] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\12BF94BD06C95F343A77631402B9556A] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2124D8A8CF720FD44866190AF560228E] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27A325ACED8CA4743A30127638591ADB] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\350D17402BD84234EAF7D32F08172D7C] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3EE8C5F419057E1478A654868CEE60B5] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4735D908D66E1BA46B6C2D7185A12B2B] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D6A6B2ED56AF24EA6335EAD6E91CA4] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\76D8378E2DDAED3428720A631F6E3BF0] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EDC790504E1834DBC20C9A04328FD2] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\97C3D0F82E712E241A2F969F45E3351C] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A001B259DB7D694E818BE29B973992C] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E7F556BF224D804D96A96F0F6344789] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAE2EC163C6A68A48921573E0E7E199D] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF4F885EDEE45644EB1E0C99E0162399] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C06C6662FA5B04646829E4A460857770] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE21F3FD57B244142880EF15A165A156] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CEEB3E14ABE8270419B0FD762E18F7C6] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1B5E9A3BDB51349BF96E842C062D98] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FECBC2BC14DA6CD459BD59A041709836] =>PUP.SweetIM^
C:\Program Files (x86)\FindLyrics =>Adware.AddLyrics
C:\Users\titi\AppData\Local\Software =>Adware.Boxore
C:\Users\titi\AppData\Local\Temp\Shortcut_bundlesweetimsetup.exe =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\SIMEEI2Installer.exe =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\SIMEEIInstaller.exe =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\wajam_install.exe =>Toolbar.Wajam
C:\Users\titi\AppData\Local\Temp\BoxoreInstaller.exe =>Adware.Boxore
C:\Users\titi\AppData\Local\Temp\conduitinstaller.exe =>Toolbar.Conduit
C:\Users\titi\AppData\Local\Temp\mgsqlite3.dll =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\SecondStepInstaller.exe =>Toolbar.Conduit
~ Additionnel Scan: 154484 Items scanned in 00mn 51s



---\\ Product Upgrade Codes (O90)
O90 - PUC: "EB8E7C929DBF19D4CBF44B077C815D45" . (.Iminent.) -- C:\Windows\Installer\{29C7E8BE-FBD9-4D91-BC4F-B470C718D554}\imbooster.ico =>Adware.IMBooster
~ Update Products: 70 Legitimates Filtered in 00mn 00s



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SR - | Auto 07/02/2013 239616 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe
SR - | Auto 21/12/2012 57008 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SS - | Demand 31/07/2012 466064 | (DeviceFastLaneService) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Device Fast-lane\DeviceFastLaneSvc.exe
SR - | Auto 21/08/2012 348784 | (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
SR - | Demand 31/07/2012 659600 | (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
SS - | Auto 11/03/2013 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 11/03/2013 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SR - | Auto 13/07/2012 2451456 | (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
SR - | Auto 04/04/2013 418376 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
SR - | Auto 04/04/2013 701512 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
SR - | Auto 26/11/2011 687400 | (NAUpdate) . (.Nero AG.) - C:\Program Files (x86)\Nero\Update\NASvc.exe
SR - | Auto 11/09/2012 93296 | (RfButtonDriverService) . (.Dritek System INC..) - C:\Windows\RfBtnSvc64.exe
SS - | Auto 0 | (Software_update) . (...) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe
SS - | Demand 0 | (Software_update_m) . (...) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe
SR - | Auto 08/04/2013 68856 | (UPDATESRV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2013\updatesrv.exe
SR - | Auto 08/05/2013 1646792 | (VSSERV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe
SR - | Auto 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe
SS - | Demand 20/09/2012 29696 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Services: Scanned in 00mn 02s



---\\ Recherche Master Boot Record Infection (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
~ MBR: 1 Legitimates Filtered in 00mn 02s



---\\ Recherche Master Boot Record Infection (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by titi at 04/06/2013 06:02:55

********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin
~ MBR: Scanned in 00mn 04s



~ 1559 Legitimates filtered by white list
End of the scan (682 lines in 12mn 19s)(0)
0
billmaxime Messages postés 49928 Date d'inscription dimanche 20 novembre 2011 Statut Contributeur Dernière intervention 22 avril 2024 5 944
5 juin 2013 à 06:07
salut titi

fais ceci s'il te plaît

télécharge usbfix sur ton bureau (clique sur la flèche verte)

le lien http://general-changelog-team.fr/fr/downloads/viewdownload/15-outils-de-el-desaparecido/79-usbfix

si ton pc émet 1 alerte, ignore la (désactive le si besoin le temps du scan)

branche toutes tes sources de données externe a ton pc (clé USB, disque dur externe, etc...) sans les ouvrir

le tuto https://www.malekal.com/tutoriels-logiciels/

exécute le en tant qu'administrateur (clic droit)

choisis le mode "suppression"

le rapport s'affichera sur ton bureau et dans C:\UsbFix.txt

poste le rapport via 1 copier/coller

@+

0