Pub spam
Fermé
titipsg83
Messages postés
36
Date d'inscription
lundi 3 juin 2013
Statut
Membre
Dernière intervention
2 avril 2018
-
3 juin 2013 à 18:23
billmaxime Messages postés 49928 Date d'inscription dimanche 20 novembre 2011 Statut Contributeur Dernière intervention 22 avril 2024 - 5 juin 2013 à 06:07
billmaxime Messages postés 49928 Date d'inscription dimanche 20 novembre 2011 Statut Contributeur Dernière intervention 22 avril 2024 - 5 juin 2013 à 06:07
A voir également:
- Pub spam
- Bloqueur de pub youtube - Guide
- Netflix standard avec pub - Guide
- Youtube sans pub - Guide
- YT Siphon : une extension pour contourner la pub sur YouTube - Guide
- Stop pub gratuit - Télécharger - Divers Utilitaires
10 réponses
billmaxime
Messages postés
49928
Date d'inscription
dimanche 20 novembre 2011
Statut
Contributeur
Dernière intervention
22 avril 2024
5 944
3 juin 2013 à 18:25
3 juin 2013 à 18:25
salut
tu as téléchargé sur des sites qui refilent des publiciels/adwares
pour ton problème, fais ceci
télécharge adwcleaner sur ton bureau (clique sur la flèche verte)
le lien https://toolslib.net
utlisateurs vista-w7-w8 exécuter en tant qu'administrateur (clic droit)
choisis le mode suppression
le rapport s'affichera sur ton bureau et dans C:\adw[S1].txt
poste le rapport via 1 copier/coller
@+
tu as téléchargé sur des sites qui refilent des publiciels/adwares
pour ton problème, fais ceci
télécharge adwcleaner sur ton bureau (clique sur la flèche verte)
le lien https://toolslib.net
utlisateurs vista-w7-w8 exécuter en tant qu'administrateur (clic droit)
choisis le mode suppression
le rapport s'affichera sur ton bureau et dans C:\adw[S1].txt
poste le rapport via 1 copier/coller
@+
titipsg83
Messages postés
36
Date d'inscription
lundi 3 juin 2013
Statut
Membre
Dernière intervention
2 avril 2018
19
3 juin 2013 à 19:07
3 juin 2013 à 19:07
# AdwCleaner v2.301 - Rapport créé le 03/06/2013 à 18:58:07
# Mis à jour le 16/05/2013 par Xplode
# Système d'exploitation : Windows 8 (64 bits)
# Nom d'utilisateur : titi - TITIETCARLA
# Mode de démarrage : Normal
# Exécuté depuis : C:\Users\titi\Downloads\adwcleaner.exe
# Option [Suppression]
***** [Services] *****
Arrêté & Supprimé : BrowserProtect
Arrêté & Supprimé : CltMngSvc
Arrêté & Supprimé : IBUpdaterService
Arrêté & Supprimé : SProtection
Arrêté & Supprimé : supt4pc_fr_36
***** [Fichiers / Dossiers] *****
Dossier Supprimé : C:\Program Files (x86)\01NET.com
Dossier Supprimé : C:\Program Files (x86)\Boxore
Dossier Supprimé : C:\Program Files (x86)\Common Files\Umbrella
Dossier Supprimé : C:\Program Files (x86)\Conduit
Dossier Supprimé : C:\Program Files (x86)\Delta
Dossier Supprimé : C:\Program Files (x86)\HappyLyrics
Dossier Supprimé : C:\Program Files (x86)\Iminent
Dossier Supprimé : C:\Program Files (x86)\onlinetracks
Dossier Supprimé : C:\Program Files (x86)\PricePeep
Dossier Supprimé : C:\Program Files (x86)\SearchProtect
Dossier Supprimé : C:\Program Files (x86)\Services x86
Dossier Supprimé : C:\Program Files (x86)\Software
Dossier Supprimé : C:\Program Files (x86)\SweetIM
Dossier Supprimé : C:\Program Files (x86)\tuto4pc_fr_33
Dossier Supprimé : C:\Program Files (x86)\tuto4pc_fr_36
Dossier Supprimé : C:\ProgramData\Babylon
Dossier Supprimé : C:\ProgramData\boost_interprocess
Dossier Supprimé : C:\ProgramData\BrowserProtect
Dossier Supprimé : C:\ProgramData\Iminent
Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent
Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tuto4pc
Dossier Supprimé : C:\ProgramData\SweetIM
Dossier Supprimé : C:\ProgramData\Tarma Installer
Dossier Supprimé : C:\Users\titi\AppData\Local\Conduit
Dossier Supprimé : C:\Users\titi\AppData\Local\EoRezo
Dossier Supprimé : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Dossier Supprimé : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Extensions\igdhbblpcellaljokkpfhcjlagemhgjl
Dossier Supprimé : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbpohikckhbcljgombipcdoinkaedlfa
Dossier Supprimé : C:\Users\titi\AppData\Local\lollipop
Dossier Supprimé : C:\Users\titi\AppData\Local\Temp\Iminent
Dossier Supprimé : C:\Users\titi\AppData\Local\tuto4pc_fr_33
Dossier Supprimé : C:\Users\titi\AppData\Local\tuto4pc_fr_36
Dossier Supprimé : C:\Users\titi\AppData\LocalLow\01NET.com
Dossier Supprimé : C:\Users\titi\AppData\LocalLow\Conduit
Dossier Supprimé : C:\Users\titi\AppData\LocalLow\onlinetracks
Dossier Supprimé : C:\Users\titi\AppData\LocalLow\PriceGong
Dossier Supprimé : C:\Users\titi\AppData\Roaming\BabSolution
Dossier Supprimé : C:\Users\titi\AppData\Roaming\Babylon
Dossier Supprimé : C:\Users\titi\AppData\Roaming\Delta
Dossier Supprimé : C:\Users\titi\AppData\Roaming\Iminent
Dossier Supprimé : C:\Users\titi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserProtect
Dossier Supprimé : C:\Users\titi\AppData\Roaming\SearchProtect
Dossier Supprimé : C:\Users\titi\AppData\Roaming\WebPlayerBdd
Dossier Supprimé : C:\Windows\Installer\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Dossier Supprimé : C:\Windows\Installer\{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D}
Dossier Supprimé : C:\Windows\Installer\{EA69DAE1-1BC2-48ED-AB9A-24A5C8AC8071}
Dossier Supprimé : C:\Windows\SysWOW64\WNLT
Fichier Supprimé : C:\END
Fichier Supprimé : C:\Program Files (x86)\Common Files\plugin.crx
Fichier Supprimé : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\bProtector Web Data
Fichier Supprimé : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences
Fichier Supprimé : C:\Users\titi\Documents\Search The Web.url
Fichier Supprimé : C:\Users\titi\Documents\sweetpcfix.url
Fichier Supprimé : C:\Windows\Tasks\SoftwareUpdateTaskMachineCore.job
Fichier Supprimé : C:\Windows\Tasks\SoftwareUpdateTaskMachineUA.job
Supprimé au redémarrage : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Supprimé au redémarrage : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehdmaehkiiampolokajdcelladmnopgp
***** [Registre] *****
Clé Supprimée : HKCU\Software\AppDataLow\Software\01NET.com
Clé Supprimée : HKCU\Software\AppDataLow\Software\Conduit
Clé Supprimée : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Clé Supprimée : HKCU\Software\AppDataLow\Software\Crossrider
Clé Supprimée : HKCU\Software\AppDataLow\Software\onlinetracks
Clé Supprimée : HKCU\Software\AppDataLow\Software\PriceGong
Clé Supprimée : HKCU\Software\AppDataLow\Software\Services x86
Clé Supprimée : HKCU\Software\AppDataLow\Software\SmartBar
Clé Supprimée : HKCU\Software\AppDataLow\Toolbar
Clé Supprimée : HKCU\Software\Conduit
Clé Supprimée : HKCU\Software\Cr_Installer
Clé Supprimée : HKCU\Software\DataMngr
Clé Supprimée : HKCU\Software\DataMngr_Toolbar
Clé Supprimée : HKCU\Software\Delta
Clé Supprimée : HKCU\Software\Google\Chrome\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Clé Supprimée : HKCU\Software\IM
Clé Supprimée : HKCU\Software\Iminent
Clé Supprimée : HKCU\Software\ImInstaller
Clé Supprimée : HKCU\Software\InstallCore
Clé Supprimée : HKCU\Software\InstalledBrowserExtensions
Clé Supprimée : HKCU\Software\lollipop
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110211701196}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{789733C8-7A68-4A43-ACE3-BEB2292C914B}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8E5025C2-8EA3-430D-80B8-A14151068A6D}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110211701196}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1F358CCA-D49F-485D-9D8F-516628188A4C}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{789733C8-7A68-4A43-ACE3-BEB2292C914B}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8E5025C2-8EA3-430D-80B8-A14151068A6D}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\lollipop
Clé Supprimée : HKCU\Software\onlinetracks
Clé Supprimée : HKCU\Software\SearchProtect
Clé Supprimée : HKCU\Software\Tutorials
Clé Supprimée : HKCU\Software\TutoTag
Clé Supprimée : HKCU\Software\WNLT
Clé Supprimée : HKCU\Software\5d6df8bb235be41
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\Software\01NET.com
Clé Supprimée : HKLM\Software\Babylon
Clé Supprimée : HKLM\Software\Boxore
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{01994268-3C10-4044-A1EA-7A9C1B739A11}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{38A066B0-DD5F-4226-AC4F-6A27C1BFB892}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{39CB8175-E224-4446-8746-00566302DF8D}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\Iminent.WebBooster.InternetExplorer.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\PricePeep.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0027096.BHO
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0027096.BHO.1
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0027096.Sandbox
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0027096.Sandbox.1
Clé Supprimée : HKLM\SOFTWARE\Classes\delta.deltaappCore
Clé Supprimée : HKLM\SOFTWARE\Classes\delta.deltaappCore.1
Clé Supprimée : HKLM\SOFTWARE\Classes\delta.deltadskBnd
Clé Supprimée : HKLM\SOFTWARE\Classes\delta.deltadskBnd.1
Clé Supprimée : HKLM\SOFTWARE\Classes\delta.deltaHlpr
Clé Supprimée : HKLM\SOFTWARE\Classes\delta.deltaHlpr.1
Clé Supprimée : HKLM\SOFTWARE\Classes\escort.escortIEPane
Clé Supprimée : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Clé Supprimée : HKLM\SOFTWARE\Classes\esrv.deltaESrvc
Clé Supprimée : HKLM\SOFTWARE\Classes\esrv.deltaESrvc.1
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.DownloadArgs
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.LinkToPromoteArgs
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.RawDataArgs
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.TinyUrlArgs
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.ViralLinkArgs
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ClientCallback
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ContractBase
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GameOverCallback
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetCreditCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableResult
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.InstallationContextResult
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LogoutCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MyAccountCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PlayContentCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PostContentCallback
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.SetVariableCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.TestContentCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WarmUpCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WelcomeCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerResult
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightContent
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightUri
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.MediatorServiceProxy
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.ActiveContentHandle.1
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.ActiveContentHandler
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject.1
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender.1
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler.1
Clé Supprimée : HKLM\Software\Classes\Installer\Features\1EAD96AE2CB1DE84BAA9425A8CCA0817
Clé Supprimée : HKLM\Software\Classes\Installer\Features\9EE58E3C298524145B73CBBED3CAC4D3
Clé Supprimée : HKLM\Software\Classes\Installer\Features\B2FD9C0A5B9838449838816A28001F4B
Clé Supprimée : HKLM\Software\Classes\Installer\Features\EB6AF8AEEB922FA4392548F13812E50B
Clé Supprimée : HKLM\Software\Classes\Installer\Products\1EAD96AE2CB1DE84BAA9425A8CCA0817
Clé Supprimée : HKLM\Software\Classes\Installer\Products\9EE58E3C298524145B73CBBED3CAC4D3
Clé Supprimée : HKLM\Software\Classes\Installer\Products\B2FD9C0A5B9838449838816A28001F4B
Clé Supprimée : HKLM\Software\Classes\Installer\Products\EB6AF8AEEB922FA4392548F13812E50B
Clé Supprimée : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils
Clé Supprimée : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils.1
Clé Supprimée : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator
Clé Supprimée : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator.1
Clé Supprimée : HKLM\SOFTWARE\Classes\PricePeep.PricePeepBho
Clé Supprimée : HKLM\SOFTWARE\Classes\PricePeep.PricePeepBho.1
Clé Supprimée : HKLM\SOFTWARE\Classes\Prod.cap
Clé Supprimée : HKLM\SOFTWARE\Classes\sim-packages
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreClass
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreClass.1
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachine
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachine.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar
Clé Supprimée : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar.1
Clé Supprimée : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook
Clé Supprimée : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook.1
Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar.CT3128284
Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar.CT3241324
Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar3.sweetie
Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar3.sweetie.1
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{39CB8175-E224-4446-8746-00566302DF8D}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{3BF3DED5-0FC8-4207-AC09-AA7B5AF4E408}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440244704496}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{4599D05A-D545-4069-BB42-5895B4EAE05B}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{4D3B167E-5FD8-4276-8FD7-9DF19C1E4D19}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{A9CAF365-EA35-45DA-BD8B-2EFA09D374AC}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\Software\Conduit
Clé Supprimée : HKLM\Software\DataMngr
Clé Supprimée : HKLM\Software\Delta
Clé Supprimée : HKLM\Software\Iminent
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\SweetIM.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{151867D5-7359-40AF-8764-66E58D06283C}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1F358CCA-D49F-485D-9D8F-516628188A4C}
Clé Supprimée : HKLM\Software\onlinetracks
Clé Supprimée : HKLM\Software\SearchProtect
Clé Supprimée : HKLM\Software\Services x86
Clé Supprimée : HKLM\Software\Tuto4PC
Clé Supprimée : HKLM\Software\Umbrella
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\5d6df8bb235be41
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{01A602A0-D0B9-445B-8081-719E4177C4A7}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02C9C7B0-C7C8-4AAC-A9E4-55295BF60F8F}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{0398B101-6DA7-473F-A290-17D2FBC88CC0}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{0CC36196-8589-4B80-A771-D659411D7F90}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{11111111-1111-1111-1111-110211701196}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{143D96F9-EB64-48B3-B192-91C2C41A1F43}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{14F7D91F-F669-45C9-9F42-BACBFDB86EAD}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{151867D5-7359-40AF-8764-66E58D06283C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{187A6488-6E71-4A2A-B118-7BEFBFE58257}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{1F358CCA-D49F-485D-9D8F-516628188A4C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{22222222-2222-2222-2222-220222702296}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{261DD098-8A3E-43D4-87AA-63324FA897D8}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{26C9BBE4-6D45-4AB6-A5B4-E068C9F5EF6D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{2D065204-A024-4C39-8A38-EE7078EC7ACF}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{30F5476C-677B-4DB0-B397-51F5BFD86840}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3223F2FB-D9B9-45FC-9D66-CD717FFA4EE5}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{351798B1-C1D2-45AB-92B4-4D6C2D6AB5AF}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3AEA1BEF-6195-46F4-ACA2-0ED14F7EFA1B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3D7F9AC3-BAC3-4E51-81D7-D121D79E550A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4498C5E9-93C6-4142-B6BE-F0C6DC48B77A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{479BF2D6-E362-4A99-B1AB-BC764D7B97AE}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{492A108F-51D0-4BD8-899D-AD4AB2893064}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4B6D6E60-FBD2-4E79-BF4B-886BC98F1797}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4FCB4630-2A1C-4AA1-B422-345E8DC8A6DE}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{60893E02-2E5B-43F9-A93A-BAD60C2DF6EF}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{6D39931F-451E-4BDD-BAF4-37FB96DBBA5D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{76C684D2-C35D-4284-976A-D862F53ADB81}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{789733C8-7A68-4A43-ACE3-BEB2292C914B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{796D822A-C3F9-4A97-BAAB-42FE7628EA63}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{79EF3691-EC1A-4705-A01A-D2E36EC11758}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{82AC53B4-164C-4B07-A016-437A8388B81A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{82F41418-8E64-47EB-A7F1-4702A974D289}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{85D920CE-63A7-46DC-8992-41D1D2E07FAD}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{86838207-681D-469D-9511-D0DCC6F19F9B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{895ED5E8-ABB4-40C3-A0CA-2571964268E2}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{8AAC123A-1959-4A45-BFC5-E2D50783098A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{8E5025C2-8EA3-430D-80B8-A14151068A6D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A07956CD-81F8-4A03-B524-5D87E690DC83}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A4A0CB15-8465-4F58-A7E5-73084EA2A064}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B5E3B26B-6E5C-4865-A63D-58D04B10E245}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B84D2DC5-42B2-4E5E-BF61-7B48152FF8EF}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B89D5309-0367-4494-A92F-3D4C94F88307}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C014EBF8-8854-448B-B5A4-557C4090EDCE}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C31191DB-2F64-464C-B97C-6AC81ACB7AAC}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C342C7A7-F622-4EF3-8B7F-ABB9FBE73F14}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C4765B07-BC2F-477B-925C-B2BF24887823}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C875C0A1-09E3-48D5-9F8E-BD337796FD14}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CD126DA6-FF5B-4181-AC13-54A62240D2FA}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D8F01233-2DE6-4EE7-8988-37263F00651B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DD438708-AAB4-422D-A322-B619589F5680}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E812AE43-7799-4E67-8CF8-4104297A2D16}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E97A663B-81A6-49C5-A6D3-BCB05BA1DE26}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F0BAAEC7-9AE0-49FF-9C4B-86E774FF397F}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F92193FD-2243-4401-9ACC-49FF30885898}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FD21B8A2-910B-45AC-9C10-45E6A8B84984}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{55555555-5555-5555-5555-550255705596}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66666666-6666-6666-6666-660266706696}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{75BF416E-4326-45B5-8A2D-AE32D05B930B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A439801C-961D-452C-AB42-7848E9CBD289}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F4EBB1E2-21F3-4786-8CF4-16EC5925867F}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\igdhbblpcellaljokkpfhcjlagemhgjl
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\licjnkifamhpbaefhdpacpmihicfbomb
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0AF350D9-3916-454B-AC53-0B0B65F41301}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0CA970BC-DF6B-44F0-94CA-AD8B1AF05FCC}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0E2FBC3B-0540-4BB9-884A-44E3C7850A1C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{20113120-F047-4EEA-AABE-B270B4CBE553}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{348C2DF3-1191-4C3E-92A6-B3A89A9D9C85}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CB0D10FB-55D1-4029-A89B-8A6221F70238}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110211701196}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{789733C8-7A68-4A43-ACE3-BEB2292C914B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5025C2-8EA3-430D-80B8-A14151068A6D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0C43FE6B-E881-4AFC-B384-4AEBC90047E8}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EA69DAE1-1BC2-48ED-AB9A-24A5C8AC8071}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EA8FA6BE-29BE-4AF2-9352-841F83215EB0}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\01NET.com Toolbar
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta Chrome Toolbar
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\onlinetracks Toolbar
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\PricePeep
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Services x86
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\tuto4pc_fr_33_is1
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\tuto4pc_fr_36_is1
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WNLT
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550255705596}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660266706696}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{75BF416E-4326-45B5-8A2D-AE32D05B930B}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\1C875DDE39636004CA8CDAEC335B4160
Clé Supprimée : HKLM\SOFTWARE\Tarma Installer
Clé Supprimée : HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Donnée Supprimée : HKLM\..\Windows [AppInit_DLLs] = c:\progra~3\browse~1\261249~1.132\{c16c1~1\browse~1.dll
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{789733C8-7A68-4A43-ACE3-BEB2292C914B}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{8E5025C2-8EA3-430D-80B8-A14151068A6D}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{789733C8-7A68-4A43-ACE3-BEB2292C914B}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{8E5025C2-8EA3-430D-80B8-A14151068A6D}]
Valeur Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [searchprotect]
Valeur Supprimée : HKCU\Software\Mozilla\Firefox\Extensions [happylyrics@hpyproductions.net]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{789733C8-7A68-4A43-ACE3-BEB2292C914B}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{8E5025C2-8EA3-430D-80B8-A14151068A6D}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Boxore Client]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Iminent]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [IminentMessenger]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SearchProtectAll]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SweetIM]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Sweetpacks Communicator]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [tuto4pc_fr_33]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [tuto4pc_fr_36]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll]
Valeur Supprimée : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [webbooster@iminent.com]
Valeur Supprimée : HKLM\SOFTWARE\Policies\Google\Chrome\ExtensionInstallForcelist [1]
Valeur Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{789733C8-7A68-4A43-ACE3-BEB2292C914B}]
Valeur Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{82E1477C-B154-48D3-9891-33D83C26BCD3}]
Valeur Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{8E5025C2-8EA3-430D-80B8-A14151068A6D}]
Valeur Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{EEE6C35B-6118-11DC-9C72-001320C79847}]
***** [Navigateurs] *****
-\\ Internet Explorer v10.0.9200.16537
Remplacé : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.babylon.com/home?affID=119549&tt=gc_ --> hxxp://www.google.com
Remplacé : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?crg=3.1010000.10025&barid={F5F584C9-5C26-11E2-BE75-4C72B993EA23} --> hxxp://www.google.com
# Mis à jour le 16/05/2013 par Xplode
# Système d'exploitation : Windows 8 (64 bits)
# Nom d'utilisateur : titi - TITIETCARLA
# Mode de démarrage : Normal
# Exécuté depuis : C:\Users\titi\Downloads\adwcleaner.exe
# Option [Suppression]
***** [Services] *****
Arrêté & Supprimé : BrowserProtect
Arrêté & Supprimé : CltMngSvc
Arrêté & Supprimé : IBUpdaterService
Arrêté & Supprimé : SProtection
Arrêté & Supprimé : supt4pc_fr_36
***** [Fichiers / Dossiers] *****
Dossier Supprimé : C:\Program Files (x86)\01NET.com
Dossier Supprimé : C:\Program Files (x86)\Boxore
Dossier Supprimé : C:\Program Files (x86)\Common Files\Umbrella
Dossier Supprimé : C:\Program Files (x86)\Conduit
Dossier Supprimé : C:\Program Files (x86)\Delta
Dossier Supprimé : C:\Program Files (x86)\HappyLyrics
Dossier Supprimé : C:\Program Files (x86)\Iminent
Dossier Supprimé : C:\Program Files (x86)\onlinetracks
Dossier Supprimé : C:\Program Files (x86)\PricePeep
Dossier Supprimé : C:\Program Files (x86)\SearchProtect
Dossier Supprimé : C:\Program Files (x86)\Services x86
Dossier Supprimé : C:\Program Files (x86)\Software
Dossier Supprimé : C:\Program Files (x86)\SweetIM
Dossier Supprimé : C:\Program Files (x86)\tuto4pc_fr_33
Dossier Supprimé : C:\Program Files (x86)\tuto4pc_fr_36
Dossier Supprimé : C:\ProgramData\Babylon
Dossier Supprimé : C:\ProgramData\boost_interprocess
Dossier Supprimé : C:\ProgramData\BrowserProtect
Dossier Supprimé : C:\ProgramData\Iminent
Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent
Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tuto4pc
Dossier Supprimé : C:\ProgramData\SweetIM
Dossier Supprimé : C:\ProgramData\Tarma Installer
Dossier Supprimé : C:\Users\titi\AppData\Local\Conduit
Dossier Supprimé : C:\Users\titi\AppData\Local\EoRezo
Dossier Supprimé : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Dossier Supprimé : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Extensions\igdhbblpcellaljokkpfhcjlagemhgjl
Dossier Supprimé : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbpohikckhbcljgombipcdoinkaedlfa
Dossier Supprimé : C:\Users\titi\AppData\Local\lollipop
Dossier Supprimé : C:\Users\titi\AppData\Local\Temp\Iminent
Dossier Supprimé : C:\Users\titi\AppData\Local\tuto4pc_fr_33
Dossier Supprimé : C:\Users\titi\AppData\Local\tuto4pc_fr_36
Dossier Supprimé : C:\Users\titi\AppData\LocalLow\01NET.com
Dossier Supprimé : C:\Users\titi\AppData\LocalLow\Conduit
Dossier Supprimé : C:\Users\titi\AppData\LocalLow\onlinetracks
Dossier Supprimé : C:\Users\titi\AppData\LocalLow\PriceGong
Dossier Supprimé : C:\Users\titi\AppData\Roaming\BabSolution
Dossier Supprimé : C:\Users\titi\AppData\Roaming\Babylon
Dossier Supprimé : C:\Users\titi\AppData\Roaming\Delta
Dossier Supprimé : C:\Users\titi\AppData\Roaming\Iminent
Dossier Supprimé : C:\Users\titi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserProtect
Dossier Supprimé : C:\Users\titi\AppData\Roaming\SearchProtect
Dossier Supprimé : C:\Users\titi\AppData\Roaming\WebPlayerBdd
Dossier Supprimé : C:\Windows\Installer\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Dossier Supprimé : C:\Windows\Installer\{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D}
Dossier Supprimé : C:\Windows\Installer\{EA69DAE1-1BC2-48ED-AB9A-24A5C8AC8071}
Dossier Supprimé : C:\Windows\SysWOW64\WNLT
Fichier Supprimé : C:\END
Fichier Supprimé : C:\Program Files (x86)\Common Files\plugin.crx
Fichier Supprimé : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\bProtector Web Data
Fichier Supprimé : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences
Fichier Supprimé : C:\Users\titi\Documents\Search The Web.url
Fichier Supprimé : C:\Users\titi\Documents\sweetpcfix.url
Fichier Supprimé : C:\Windows\Tasks\SoftwareUpdateTaskMachineCore.job
Fichier Supprimé : C:\Windows\Tasks\SoftwareUpdateTaskMachineUA.job
Supprimé au redémarrage : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Supprimé au redémarrage : C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehdmaehkiiampolokajdcelladmnopgp
***** [Registre] *****
Clé Supprimée : HKCU\Software\AppDataLow\Software\01NET.com
Clé Supprimée : HKCU\Software\AppDataLow\Software\Conduit
Clé Supprimée : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Clé Supprimée : HKCU\Software\AppDataLow\Software\Crossrider
Clé Supprimée : HKCU\Software\AppDataLow\Software\onlinetracks
Clé Supprimée : HKCU\Software\AppDataLow\Software\PriceGong
Clé Supprimée : HKCU\Software\AppDataLow\Software\Services x86
Clé Supprimée : HKCU\Software\AppDataLow\Software\SmartBar
Clé Supprimée : HKCU\Software\AppDataLow\Toolbar
Clé Supprimée : HKCU\Software\Conduit
Clé Supprimée : HKCU\Software\Cr_Installer
Clé Supprimée : HKCU\Software\DataMngr
Clé Supprimée : HKCU\Software\DataMngr_Toolbar
Clé Supprimée : HKCU\Software\Delta
Clé Supprimée : HKCU\Software\Google\Chrome\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Clé Supprimée : HKCU\Software\IM
Clé Supprimée : HKCU\Software\Iminent
Clé Supprimée : HKCU\Software\ImInstaller
Clé Supprimée : HKCU\Software\InstallCore
Clé Supprimée : HKCU\Software\InstalledBrowserExtensions
Clé Supprimée : HKCU\Software\lollipop
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110211701196}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{789733C8-7A68-4A43-ACE3-BEB2292C914B}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8E5025C2-8EA3-430D-80B8-A14151068A6D}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110211701196}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1F358CCA-D49F-485D-9D8F-516628188A4C}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{789733C8-7A68-4A43-ACE3-BEB2292C914B}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8E5025C2-8EA3-430D-80B8-A14151068A6D}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\lollipop
Clé Supprimée : HKCU\Software\onlinetracks
Clé Supprimée : HKCU\Software\SearchProtect
Clé Supprimée : HKCU\Software\Tutorials
Clé Supprimée : HKCU\Software\TutoTag
Clé Supprimée : HKCU\Software\WNLT
Clé Supprimée : HKCU\Software\5d6df8bb235be41
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\Software\01NET.com
Clé Supprimée : HKLM\Software\Babylon
Clé Supprimée : HKLM\Software\Boxore
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{01994268-3C10-4044-A1EA-7A9C1B739A11}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{38A066B0-DD5F-4226-AC4F-6A27C1BFB892}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{39CB8175-E224-4446-8746-00566302DF8D}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\Iminent.WebBooster.InternetExplorer.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\PricePeep.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0027096.BHO
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0027096.BHO.1
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0027096.Sandbox
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0027096.Sandbox.1
Clé Supprimée : HKLM\SOFTWARE\Classes\delta.deltaappCore
Clé Supprimée : HKLM\SOFTWARE\Classes\delta.deltaappCore.1
Clé Supprimée : HKLM\SOFTWARE\Classes\delta.deltadskBnd
Clé Supprimée : HKLM\SOFTWARE\Classes\delta.deltadskBnd.1
Clé Supprimée : HKLM\SOFTWARE\Classes\delta.deltaHlpr
Clé Supprimée : HKLM\SOFTWARE\Classes\delta.deltaHlpr.1
Clé Supprimée : HKLM\SOFTWARE\Classes\escort.escortIEPane
Clé Supprimée : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Clé Supprimée : HKLM\SOFTWARE\Classes\esrv.deltaESrvc
Clé Supprimée : HKLM\SOFTWARE\Classes\esrv.deltaESrvc.1
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.DownloadArgs
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.LinkToPromoteArgs
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.RawDataArgs
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.TinyUrlArgs
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.ViralLinkArgs
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ClientCallback
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ContractBase
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GameOverCallback
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetCreditCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableResult
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.InstallationContextResult
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LogoutCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MyAccountCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PlayContentCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PostContentCallback
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.SetVariableCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.TestContentCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WarmUpCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WelcomeCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerCommand
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerResult
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightContent
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightUri
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent.Mediator.MediatorServiceProxy
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.ActiveContentHandle.1
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.ActiveContentHandler
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject.1
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender.1
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler
Clé Supprimée : HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler.1
Clé Supprimée : HKLM\Software\Classes\Installer\Features\1EAD96AE2CB1DE84BAA9425A8CCA0817
Clé Supprimée : HKLM\Software\Classes\Installer\Features\9EE58E3C298524145B73CBBED3CAC4D3
Clé Supprimée : HKLM\Software\Classes\Installer\Features\B2FD9C0A5B9838449838816A28001F4B
Clé Supprimée : HKLM\Software\Classes\Installer\Features\EB6AF8AEEB922FA4392548F13812E50B
Clé Supprimée : HKLM\Software\Classes\Installer\Products\1EAD96AE2CB1DE84BAA9425A8CCA0817
Clé Supprimée : HKLM\Software\Classes\Installer\Products\9EE58E3C298524145B73CBBED3CAC4D3
Clé Supprimée : HKLM\Software\Classes\Installer\Products\B2FD9C0A5B9838449838816A28001F4B
Clé Supprimée : HKLM\Software\Classes\Installer\Products\EB6AF8AEEB922FA4392548F13812E50B
Clé Supprimée : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils
Clé Supprimée : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils.1
Clé Supprimée : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator
Clé Supprimée : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator.1
Clé Supprimée : HKLM\SOFTWARE\Classes\PricePeep.PricePeepBho
Clé Supprimée : HKLM\SOFTWARE\Classes\PricePeep.PricePeepBho.1
Clé Supprimée : HKLM\SOFTWARE\Classes\Prod.cap
Clé Supprimée : HKLM\SOFTWARE\Classes\sim-packages
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreClass
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreClass.1
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachine
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachine.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar
Clé Supprimée : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar.1
Clé Supprimée : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook
Clé Supprimée : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook.1
Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar.CT3128284
Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar.CT3241324
Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar3.sweetie
Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar3.sweetie.1
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{39CB8175-E224-4446-8746-00566302DF8D}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{3BF3DED5-0FC8-4207-AC09-AA7B5AF4E408}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440244704496}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{4599D05A-D545-4069-BB42-5895B4EAE05B}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{4D3B167E-5FD8-4276-8FD7-9DF19C1E4D19}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{A9CAF365-EA35-45DA-BD8B-2EFA09D374AC}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\Software\Conduit
Clé Supprimée : HKLM\Software\DataMngr
Clé Supprimée : HKLM\Software\Delta
Clé Supprimée : HKLM\Software\Iminent
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\SweetIM.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{151867D5-7359-40AF-8764-66E58D06283C}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1F358CCA-D49F-485D-9D8F-516628188A4C}
Clé Supprimée : HKLM\Software\onlinetracks
Clé Supprimée : HKLM\Software\SearchProtect
Clé Supprimée : HKLM\Software\Services x86
Clé Supprimée : HKLM\Software\Tuto4PC
Clé Supprimée : HKLM\Software\Umbrella
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\5d6df8bb235be41
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{01A602A0-D0B9-445B-8081-719E4177C4A7}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02C9C7B0-C7C8-4AAC-A9E4-55295BF60F8F}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{0398B101-6DA7-473F-A290-17D2FBC88CC0}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{0CC36196-8589-4B80-A771-D659411D7F90}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{11111111-1111-1111-1111-110211701196}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{143D96F9-EB64-48B3-B192-91C2C41A1F43}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{14F7D91F-F669-45C9-9F42-BACBFDB86EAD}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{151867D5-7359-40AF-8764-66E58D06283C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{187A6488-6E71-4A2A-B118-7BEFBFE58257}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{1F358CCA-D49F-485D-9D8F-516628188A4C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{22222222-2222-2222-2222-220222702296}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{261DD098-8A3E-43D4-87AA-63324FA897D8}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{26C9BBE4-6D45-4AB6-A5B4-E068C9F5EF6D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{2D065204-A024-4C39-8A38-EE7078EC7ACF}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{30F5476C-677B-4DB0-B397-51F5BFD86840}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3223F2FB-D9B9-45FC-9D66-CD717FFA4EE5}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{351798B1-C1D2-45AB-92B4-4D6C2D6AB5AF}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3AEA1BEF-6195-46F4-ACA2-0ED14F7EFA1B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3D7F9AC3-BAC3-4E51-81D7-D121D79E550A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4498C5E9-93C6-4142-B6BE-F0C6DC48B77A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{479BF2D6-E362-4A99-B1AB-BC764D7B97AE}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{492A108F-51D0-4BD8-899D-AD4AB2893064}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4B6D6E60-FBD2-4E79-BF4B-886BC98F1797}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4FCB4630-2A1C-4AA1-B422-345E8DC8A6DE}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{60893E02-2E5B-43F9-A93A-BAD60C2DF6EF}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{6D39931F-451E-4BDD-BAF4-37FB96DBBA5D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{76C684D2-C35D-4284-976A-D862F53ADB81}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{789733C8-7A68-4A43-ACE3-BEB2292C914B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{796D822A-C3F9-4A97-BAAB-42FE7628EA63}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{79EF3691-EC1A-4705-A01A-D2E36EC11758}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{82AC53B4-164C-4B07-A016-437A8388B81A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{82F41418-8E64-47EB-A7F1-4702A974D289}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{85D920CE-63A7-46DC-8992-41D1D2E07FAD}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{86838207-681D-469D-9511-D0DCC6F19F9B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{895ED5E8-ABB4-40C3-A0CA-2571964268E2}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{8AAC123A-1959-4A45-BFC5-E2D50783098A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{8E5025C2-8EA3-430D-80B8-A14151068A6D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A07956CD-81F8-4A03-B524-5D87E690DC83}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A4A0CB15-8465-4F58-A7E5-73084EA2A064}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B5E3B26B-6E5C-4865-A63D-58D04B10E245}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B84D2DC5-42B2-4E5E-BF61-7B48152FF8EF}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B89D5309-0367-4494-A92F-3D4C94F88307}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C014EBF8-8854-448B-B5A4-557C4090EDCE}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C31191DB-2F64-464C-B97C-6AC81ACB7AAC}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C342C7A7-F622-4EF3-8B7F-ABB9FBE73F14}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C4765B07-BC2F-477B-925C-B2BF24887823}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C875C0A1-09E3-48D5-9F8E-BD337796FD14}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CD126DA6-FF5B-4181-AC13-54A62240D2FA}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D8F01233-2DE6-4EE7-8988-37263F00651B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DD438708-AAB4-422D-A322-B619589F5680}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E812AE43-7799-4E67-8CF8-4104297A2D16}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E97A663B-81A6-49C5-A6D3-BCB05BA1DE26}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F0BAAEC7-9AE0-49FF-9C4B-86E774FF397F}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F92193FD-2243-4401-9ACC-49FF30885898}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FD21B8A2-910B-45AC-9C10-45E6A8B84984}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{55555555-5555-5555-5555-550255705596}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66666666-6666-6666-6666-660266706696}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{75BF416E-4326-45B5-8A2D-AE32D05B930B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A439801C-961D-452C-AB42-7848E9CBD289}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F4EBB1E2-21F3-4786-8CF4-16EC5925867F}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\igdhbblpcellaljokkpfhcjlagemhgjl
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\licjnkifamhpbaefhdpacpmihicfbomb
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0AF350D9-3916-454B-AC53-0B0B65F41301}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0CA970BC-DF6B-44F0-94CA-AD8B1AF05FCC}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0E2FBC3B-0540-4BB9-884A-44E3C7850A1C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{20113120-F047-4EEA-AABE-B270B4CBE553}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{348C2DF3-1191-4C3E-92A6-B3A89A9D9C85}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CB0D10FB-55D1-4029-A89B-8A6221F70238}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110211701196}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{789733C8-7A68-4A43-ACE3-BEB2292C914B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5025C2-8EA3-430D-80B8-A14151068A6D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0C43FE6B-E881-4AFC-B384-4AEBC90047E8}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EA69DAE1-1BC2-48ED-AB9A-24A5C8AC8071}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EA8FA6BE-29BE-4AF2-9352-841F83215EB0}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\01NET.com Toolbar
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta Chrome Toolbar
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\onlinetracks Toolbar
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\PricePeep
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Services x86
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\tuto4pc_fr_33_is1
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\tuto4pc_fr_36_is1
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WNLT
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550255705596}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660266706696}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{75BF416E-4326-45B5-8A2D-AE32D05B930B}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\1C875DDE39636004CA8CDAEC335B4160
Clé Supprimée : HKLM\SOFTWARE\Tarma Installer
Clé Supprimée : HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Donnée Supprimée : HKLM\..\Windows [AppInit_DLLs] = c:\progra~3\browse~1\261249~1.132\{c16c1~1\browse~1.dll
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{789733C8-7A68-4A43-ACE3-BEB2292C914B}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{8E5025C2-8EA3-430D-80B8-A14151068A6D}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{789733C8-7A68-4A43-ACE3-BEB2292C914B}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{8E5025C2-8EA3-430D-80B8-A14151068A6D}]
Valeur Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [searchprotect]
Valeur Supprimée : HKCU\Software\Mozilla\Firefox\Extensions [happylyrics@hpyproductions.net]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{789733C8-7A68-4A43-ACE3-BEB2292C914B}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{8E5025C2-8EA3-430D-80B8-A14151068A6D}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Boxore Client]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Iminent]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [IminentMessenger]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SearchProtectAll]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SweetIM]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Sweetpacks Communicator]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [tuto4pc_fr_33]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [tuto4pc_fr_36]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll]
Valeur Supprimée : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [webbooster@iminent.com]
Valeur Supprimée : HKLM\SOFTWARE\Policies\Google\Chrome\ExtensionInstallForcelist [1]
Valeur Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{789733C8-7A68-4A43-ACE3-BEB2292C914B}]
Valeur Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{82E1477C-B154-48D3-9891-33D83C26BCD3}]
Valeur Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{8E5025C2-8EA3-430D-80B8-A14151068A6D}]
Valeur Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{EEE6C35B-6118-11DC-9C72-001320C79847}]
***** [Navigateurs] *****
-\\ Internet Explorer v10.0.9200.16537
Remplacé : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.babylon.com/home?affID=119549&tt=gc_ --> hxxp://www.google.com
Remplacé : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?crg=3.1010000.10025&barid={F5F584C9-5C26-11E2-BE75-4C72B993EA23} --> hxxp://www.google.com
billmaxime
Messages postés
49928
Date d'inscription
dimanche 20 novembre 2011
Statut
Contributeur
Dernière intervention
22 avril 2024
5 944
3 juin 2013 à 19:19
3 juin 2013 à 19:19
re
relance adwcleaner et choisis désinstaller
ensuite fais ceci s'il te plaît
télécharge MBAM sur ton bureau
le lien https://www.malwarebytes.com/ (prend le free)
le tuto https://www.donnemoilinfo.com/tuto/Malwarebytes-Anti-Malware/
exécute le en tant qu'administrateur (clic droit)
met le a jour (3ème bouton)
fais 1 scan complet (tous les disques)
le scan peut durer +-2H (laisse le bosser)
si MBAM trouve quelque chose supprime la sélection (voir tuto 2ème page)
poste le rapport via 1 copier/coller
le rapport s'affichera sur ton bureau et dans rapport/log de MBAM
@+
relance adwcleaner et choisis désinstaller
ensuite fais ceci s'il te plaît
télécharge MBAM sur ton bureau
le lien https://www.malwarebytes.com/ (prend le free)
le tuto https://www.donnemoilinfo.com/tuto/Malwarebytes-Anti-Malware/
exécute le en tant qu'administrateur (clic droit)
met le a jour (3ème bouton)
fais 1 scan complet (tous les disques)
le scan peut durer +-2H (laisse le bosser)
si MBAM trouve quelque chose supprime la sélection (voir tuto 2ème page)
poste le rapport via 1 copier/coller
le rapport s'affichera sur ton bureau et dans rapport/log de MBAM
@+
titipsg83
Messages postés
36
Date d'inscription
lundi 3 juin 2013
Statut
Membre
Dernière intervention
2 avril 2018
19
3 juin 2013 à 21:44
3 juin 2013 à 21:44
Malwarebytes Anti-Malware (Essai) 1.75.0.1300
www.malwarebytes.org
Version de la base de données: v2013.06.03.07
Windows 8 x64 NTFS
Internet Explorer 10.0.9200.16580
titi :: TITIETCARLA [administrateur]
Protection: Activé
03/06/2013 19:49:58
mbam-log-2013-06-03 (19-49-58).txt
Type d'examen: Examen complet (C:\|D:\|)
Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM
Options d'examen désactivées: P2P
Elément(s) analysé(s): 411096
Temps écoulé: 1 heure(s), 51 minute(s), 24 seconde(s)
Processus mémoire détecté(s): 0
(Aucun élément nuisible détecté)
Module(s) mémoire détecté(s): 0
(Aucun élément nuisible détecté)
Clé(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)
Valeur(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)
Elément(s) de données du Registre détecté(s): 0
(Aucun élément nuisible détecté)
Dossier(s) détecté(s): 0
(Aucun élément nuisible détecté)
Fichier(s) détecté(s): 4
C:\Users\titi\AppData\Local\Temp\is1052428094\Tuto4PC_Setup_FR.exe (Adware.Tuto4PC) -> Mis en quarantaine et supprimé avec succès.
C:\Users\titi\AppData\Local\Temp\is1635578793\PricePeepInstaller.exe (Adware.Agent) -> Mis en quarantaine et supprimé avec succès.
C:\Users\titi\Downloads\FlashPlayer_V.5bjbrDOzc.exe (PUP.FakeFlash.Domaiq) -> Mis en quarantaine et supprimé avec succès.
C:\Windows\Installer\9fe60.msi (Adware.Boxore) -> Mis en quarantaine et supprimé avec succès.
(fin)
www.malwarebytes.org
Version de la base de données: v2013.06.03.07
Windows 8 x64 NTFS
Internet Explorer 10.0.9200.16580
titi :: TITIETCARLA [administrateur]
Protection: Activé
03/06/2013 19:49:58
mbam-log-2013-06-03 (19-49-58).txt
Type d'examen: Examen complet (C:\|D:\|)
Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM
Options d'examen désactivées: P2P
Elément(s) analysé(s): 411096
Temps écoulé: 1 heure(s), 51 minute(s), 24 seconde(s)
Processus mémoire détecté(s): 0
(Aucun élément nuisible détecté)
Module(s) mémoire détecté(s): 0
(Aucun élément nuisible détecté)
Clé(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)
Valeur(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)
Elément(s) de données du Registre détecté(s): 0
(Aucun élément nuisible détecté)
Dossier(s) détecté(s): 0
(Aucun élément nuisible détecté)
Fichier(s) détecté(s): 4
C:\Users\titi\AppData\Local\Temp\is1052428094\Tuto4PC_Setup_FR.exe (Adware.Tuto4PC) -> Mis en quarantaine et supprimé avec succès.
C:\Users\titi\AppData\Local\Temp\is1635578793\PricePeepInstaller.exe (Adware.Agent) -> Mis en quarantaine et supprimé avec succès.
C:\Users\titi\Downloads\FlashPlayer_V.5bjbrDOzc.exe (PUP.FakeFlash.Domaiq) -> Mis en quarantaine et supprimé avec succès.
C:\Windows\Installer\9fe60.msi (Adware.Boxore) -> Mis en quarantaine et supprimé avec succès.
(fin)
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
billmaxime
Messages postés
49928
Date d'inscription
dimanche 20 novembre 2011
Statut
Contributeur
Dernière intervention
22 avril 2024
5 944
3 juin 2013 à 21:55
3 juin 2013 à 21:55
re
ok, c'est bien
je vois que tu vas sur 01NET.com et tuto4pc (c'est pas bon) je te joins 1 peu de lecture
https://www.malekal.com/tag/tuto4pc/
===================================================
fais encore ceci pour que je contrôle si tout est ok
télécharge zhpdiag sur ton bureau (outil de diagnostic)
le lien https://www.commentcamarche.net/telecharger/utilitaires/24803-zhpdiag/
le tuto http://www.security-helpzone.com/forum/Thread-ZHPDiag-Generer-un-rapport
utilisateurs vista-w7-w8 exécuter en tant qu'administrateur (clic droit)
pour lancer le scan clique sur la loupe avec le + (2ème bouton en haut a gauche)
le rapport s'affichera sur ton bureau et dans C:\zhpdiag.txt
poste le rapport via ce lien https://www.cjoint.com/
@+
ok, c'est bien
je vois que tu vas sur 01NET.com et tuto4pc (c'est pas bon) je te joins 1 peu de lecture
https://www.malekal.com/tag/tuto4pc/
===================================================
fais encore ceci pour que je contrôle si tout est ok
télécharge zhpdiag sur ton bureau (outil de diagnostic)
le lien https://www.commentcamarche.net/telecharger/utilitaires/24803-zhpdiag/
le tuto http://www.security-helpzone.com/forum/Thread-ZHPDiag-Generer-un-rapport
utilisateurs vista-w7-w8 exécuter en tant qu'administrateur (clic droit)
pour lancer le scan clique sur la loupe avec le + (2ème bouton en haut a gauche)
le rapport s'affichera sur ton bureau et dans C:\zhpdiag.txt
poste le rapport via ce lien https://www.cjoint.com/
@+
titipsg83
Messages postés
36
Date d'inscription
lundi 3 juin 2013
Statut
Membre
Dernière intervention
2 avril 2018
19
4 juin 2013 à 06:10
4 juin 2013 à 06:10
Rapport de ZHPDiag v2013.6.3.5 par Nicolas Coolman, Update du 03/06/2013
Run by titi at 04/06/2013 05:50:35
WebSite: https://nicolascoolman.webs.com/
State : Version à jour.
WhiteList : Enable
High Elevated Privileges : OK
UAC : Activate by user
---\\ Web Browser
MSIE: Internet Explorer v10.0.9200.16580
GCIE: Google Chrome v27.0.1453.94 (Defaut)
---\\ Windows Product Information
~ Langage: Français
Windows 8 Home Premium Edition, 64-bit (Build 9200)
Windows Server License Manager Script : OK
~ ion : Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : YDTBG
Windows License : OK
~ Windows Remaining Initializations Number : 999
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
---\\ System Protection
Bitdefender Antivirus Plus 2013 v16.16.0.1349
Malwarebytes Anti-Malware version 1.75.0.1300
Windows Defender W8
---\\ System Optimizer
---\\ Peer To Peer (P2P)
eMule
---\\ Software Update
---\\ System Information
~ Processor: AMD64 Family 20 Model 2 Stepping 0, AuthenticAMD
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3658 MB (63% free)
System Restore: Activé (Enable)
System drive C: has 382 GB (85%) free of 448 GB
---\\ Logged in mode
~ Computer Name: TITIETCARLA
~ User Name: titi
~ All Users Names: titi, HomeGroupUser$, Administrateur,
~ Unselected Option: None
Logged in as Administrator
---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\titi\AppData\Roaming\
~ %Desktop% : C:\Users\titi\Desktop\
~ %Favorites% : C:\Users\titi\Favorites\
~ %LocalAppData% : C:\Users\titi\AppData\Local\
~ %StartMenu% : C:\Users\titi\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 382 Go of 448 Go)
D:\ CD-ROM drive (Free 0 Go of 4 Go)
---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
~ Security Center: 29 Legitimates Filtered in 00mn 00s
---\\ Recherche particulière de fichiers génériques
[MD5.E13A31D5254C25406A7946BDD9B06364] - (.Microsoft Corporation - Explorateur Windows.) (.11/10/2012 - 08:35:16.) -- C:\Windows\Explorer.exe [2380944]
[MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - (.Microsoft Corporation - Application de démarrage de Windows.) (.26/07/2012 - 04:08:50.) -- C:\Windows\System32\Wininit.exe [132608]
[MD5.9B9107F1486476D86B6910EDF07F4358] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.10/04/2013 - 00:17:44.) -- C:\Windows\System32\wininet.dll [2242048]
[MD5.BCF2036A0DD579E47C008C133550283E] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/10/2012 - 06:46:58.) -- C:\Windows\System32\Winlogon.exe [517120]
[MD5.9448F5740A037EC0C18F0E9177232DD0] - (.Microsoft Corporation - Bibliothèque de licences.) (.26/07/2012 - 04:07:20.) -- C:\Windows\System32\sppcomapi.dll [273408]
[MD5.36D6A3201721558A8AFBCC09C2DA4C2C] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.06/11/2012 - 04:53:44.) -- C:\Windows\system32\Drivers\AFD.sys [560640]
[MD5.A721FF570C2387E383BDDEA9632863C9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.26/07/2012 - 06:00:48.) -- C:\Windows\system32\Drivers\atapi.sys [25840]
[MD5.990B1BABE6E81FB18E65A87EBEFB1772] - (.Microsoft Corporation - CD-ROM File System Driver.) (.26/07/2012 - 03:30:10.) -- C:\Windows\system32\Drivers\Cdfs.sys [108544]
[MD5.339BFF85D788268752DA8C9644B188EE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.26/07/2012 - 03:26:36.) -- C:\Windows\system32\Drivers\Cdrom.sys [174080]
[MD5.09D9EB9E7898F8E6561473A20CC808B9] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.26/07/2012 - 03:26:53.) -- C:\Windows\system32\Drivers\DfsC.sys [118784]
[MD5.7D87B5B6C7188D553E11B59DC7F0B111] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/09/2012 - 07:08:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [71168]
[MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - (.Microsoft Corporation - Pilote de port i8042.) (.26/07/2012 - 03:28:51.) -- C:\Windows\system32\Drivers\i8042prt.sys [112640]
[MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - (.Microsoft Corporation - IP Network Address Translator.) (.26/07/2012 - 03:23:01.) -- C:\Windows\system32\Drivers\IpNat.sys [145920]
[MD5.93179D48066918323628CB016D8C94DC] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.05/02/2013 - 23:29:09.) -- C:\Windows\system32\Drivers\MRxSmb.sys [370688]
[MD5.7CEC25C682D319D484630B3952C31A11] - (.Microsoft Corporation - MBT Transport driver.) (.26/07/2012 - 03:24:28.) -- C:\Windows\system32\Drivers\netBT.sys [331776]
[MD5.76929F4A69E425911A63B407E26C2589] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.02/02/2013 - 11:54:54.) -- C:\Windows\system32\Drivers\ntfs.sys [1933544]
[MD5.4563DAF8C6A740AD7F501E219BD10766] - (.Microsoft Corporation - Pilote de port parallèle.) (.26/07/2012 - 03:29:53.) -- C:\Windows\system32\Drivers\Parport.sys [105984]
[MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.26/07/2012 - 03:23:17.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [124928]
[MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.26/07/2012 - 03:25:18.) -- C:\Windows\system32\Drivers\rdpdr.sys [179712]
[MD5.73DC722CE5DF26D7638CE2446F2655C7] - (.Microsoft Corporation - TDI Translation Driver.) (.26/07/2012 - 06:26:47.) -- C:\Windows\system32\Drivers\tdx.sys [117248]
[MD5.2FB3CDFD5EAF4CD9D4AFAF96877D13AE] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.26/07/2012 - 05:57:09.) -- C:\Windows\system32\Drivers\volsnap.sys [332016]
~ Generic Processes: Scanned in 00mn 01s
---\\ Etat des fichiers cachés (Caché/Total)
~ Mes Videos (My Videos) : 1/2
~ Mes Favoris (My Favorites) : 1/12
~ Mes Documents (My Documents) : 1/3847
~ Mon Bureau (My Desktop) : 2/211
~ Menu demarrer (Programs) : 1/28
~ Hidden Files: Scanned in 00mn 23s
---\\ Processus lancés
[MD5.D1D5DAB39DCB4BE0359943738D87409B] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [532040] [PID.3404]
[MD5.1B38F4C2BCDB133B757E22BEB61FB3FC] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe [1176176] [PID.3204]
[MD5.51C392EC9DA1119EC86D562FF3E7344F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [825808] [PID.3772]
[MD5.A3285102E7656627A53625A9138FD9AA] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7447552] [PID.1360]
~ Processes Running: Scanned in 00mn 01s
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Preferences
G2 - GCE: Preference [User Data\Default] [nfeonecgpoepapkmdgdmjolonaakdknd] Lyrics Fan v.1.112 (Désactivé) =>Adware.AddLyrics
~ Google Browser: 7 Legitimates Filtered in 00mn 16s
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s
---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s
---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Happy Lyrics [64Bits] - {59C0C5BD-2579-433A-BBB8-AFFD59642BAF} . (...) -- C:\Program Files (x86)\HappyLyrics\hppylrc.dll (.not file.)
O2 - BHO: Lyrics Fan [64Bits] - {A8720491-9558-4C0D-9E35-30EED15DFB2B} . (.FAN Software - Lyrics Fan.) -- C:\Program Files (x86)\LyricsFan\lrcfan.dll =>Adware.AddLyrics
~ BHO: 2 Legitimates Filtered in 00mn 00s
---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [Bdagent] . (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2013\bdagent.exe
O4 - HKCU\..\Run: [EADM] . (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe
O4 - HKLM\..\Wow6432Node\Run: [LManager] Clé orpheline
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKUS\S-1-5-18\..\Run: [SearchProtect] \SearchProtect\bin\cltmng.exe =>Toolbar.Conduit
O4 - HKUS\S-1-5-21-377929125-826591287-2286979282-1001\..\Run: [EADM] . (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe
~ Application: Scanned in 00mn 00s
---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop: EditPlus 3.lnk . (.ES-Computing - EditPlus.) -- C:\Program Files (x86)\EditPlus 3\editplus.exe
O4 - GS\Desktop: MiPony.lnk . (.www.mipony.net - Mipony.) -- C:\Program Files (x86)\MiPony\MiPony.exe
O4 - GS\Desktop: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) -- C:\Program Files (x86)\PhotoFiltre Studio X\pfstudiox.exe
~ Global Startup: Scanned in 00mn 00s
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpDomain = lan
O17 - HKLM\System\CCS\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpDomain = lan
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
~ Domain: Scanned in 00mn 00s
---\\ Protocole additionnel (O18)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
~ Protocole Additionnel: Scanned in 00mn 00s
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Service Software Update (Software_update (Software_update) . (...) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe (.not file.)
O23 - Service: Bitdefender Virus Shield (VSSERV) . (.Bitdefender - Bitdefender Security Service.) - C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe
~ Services: 12 Legitimates Filtered in 00mn 26s
---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Happy Lyrics Update.job [410]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Lyrics Fan Update.job [416] =>Adware.AddLyrics
[MD5.00000000000000000000000000000000] [APT] [EPUpdater] (...) -- C:\Users\titi\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe (.not file.) [0]
[MD5.65F00E976FCF8C01D5C2B5295AEC41A6] [APT] [GoforFilesUpdate] (.http://www.goforfiles.com/ -- C:\Program Files (x86)\GoforFiles\GFFUpdater.exe [364112] =>P2P.GoforFiles
[MD5.763643CE7E9C5C65405196C0AD279DFB] [APT] [Lyrics Fan Update] (.FAN Software.) -- C:\Program Files (x86)\LyricsFan\LyricsFanUpdater.exe [118272] =>Adware.AddLyrics
~ Scheduled Task: 18 Legitimates Filtered in 00mn 13s
---\\ Logiciels installés (O42)
O42 - Logiciel: GoforFiles - (.http://www.goforfiles.com/ [HKCU][64Bits] -- GoforFiles =>P2P.GoforFiles
O42 - Logiciel: Iminent - (.Iminent.) [HKLM][64Bits] -- {29C7E8BE-FBD9-4D91-BC4F-B470C718D554} =>Adware.IMBooster
O42 - Logiciel: Lyrics Fan - (.FAN Software.) [HKLM][64Bits] -- lrcfan@fansoft.br =>Adware.AddLyrics
~ Logic: 80 Legitimates Filtered in 00mn 01s
---\\ HKCU & HKLM Software Keys
[HKCU\Software\AppDataLow\Software\LyricsFan]
[HKCU\Software\BabSolution] =>Hijacker.BabSolution
[HKCU\Software\IncrediMail]
[HKLM\Software\DomaIQ] =>Toolbar.DomaIQ
[HKLM\Software\WNLT] =>Adware.IncrediBar
[HKLM\Software\Wow6432Node\GoforFiles] =>P2P.GoforFiles
~ Key Software: 153 Legitimates Filtered in 00mn 01s
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 24/05/2013 - 15:07:55 - [0] ----D C:\Program Files (x86)\FindLyrics =>Adware.AddLyrics
O43 - CFD: 04/05/2013 - 20:50:54 - [9,958] ----D C:\Program Files (x86)\GoforFiles =>P2P.GoforFiles
O43 - CFD: 24/05/2013 - 15:07:56 - [0,380] ----D C:\Program Files (x86)\LyricsFan
O43 - CFD: 04/05/2013 - 20:51:16 - [0,001] ----D C:\Users\titi\AppData\Roaming\GoforFiles =>P2P.GoforFiles
O43 - CFD: 10/01/2013 - 15:15:13 - [0,510] ----D C:\Users\titi\AppData\Roaming\lm
O43 - CFD: 01/06/2013 - 17:31:01 - [0,000] ----D C:\Users\titi\AppData\Local\supt4pc_fr_36
O43 - CFD: 24/05/2013 - 15:10:18 - [0,002] ----D C:\Users\titi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\QTRAX
~ Program Folder: 139 Legitimates Filtered in 00mn 28s
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.4B3C216E536A698F7E753D9197D2C79E] - 03/06/2013 - 20:50:31 ---A- . (...) -- C:\bdlog.txt [186426]
O44 - LFC:[MD5.A9B29973AF1FBE6DD78756FBAD9C1168] - 03/06/2013 - 18:00:22 ---A- . (...) -- C:\Windows\DeleteOnReboot.bat [290]
O44 - LFC:[MD5.C58305AC412A2DE95D461072E0AF5AAF] - 21/05/2013 - 14:31:12 ---A- . (...) -- C:\Windows\SysNative\dmwu.exe [1447728]
O44 - LFC:[MD5.C58305AC412A2DE95D461072E0AF5AAF] - 21/05/2013 - 14:31:12 RSHAD . (...) -- C:\Windows\System32\dmwu.exe [1447728]
O44 - LFC:[MD5.49BAC9565B10570CAAB89B759D2F3DEA] - 21/05/2013 - 14:30:18 ---A- . (.IncrediMail, Ltd. - IMHttpCo Dynamic Link Library.) -- C:\Windows\SysNative\ImHttpComm.dll [33792]
O44 - LFC:[MD5.49BAC9565B10570CAAB89B759D2F3DEA] - 21/05/2013 - 14:30:18 RSHAD . (.IncrediMail, Ltd. - IMHttpCo Dynamic Link Library.) -- C:\Windows\System32\ImHttpComm.dll [33792]
~ Files: 25 Legitimates Filtered in 00mn 24s
---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.544FFA254C631579C8C155032E1FE5BA] - 01/06/2013 - 12:28:16 ---A- - C:\Windows\Prefetch\NEWDEV.EXE-81B9876F.pf
O45 - LFCP:[MD5.FE389DB1CD53B93ED83BC8BB93BD2919] - 01/06/2013 - 14:15:02 ---A- - C:\Windows\Prefetch\DEVICEFASTLANEEVENT.EXE-0D33B9ED.pf
O45 - LFCP:[MD5.5002D47589FDA636C7DF1D7CF22C4208] - 01/06/2013 - 14:15:02 ---A- - C:\Windows\Prefetch\DEVICEFASTLANESVC.EXE-E86CADBF.pf
O45 - LFCP:[MD5.ED14D68AEDD5DDE67284DE778BC11F4B] - 01/06/2013 - 14:15:02 ---A- - C:\Windows\Prefetch\DEVICEFASTLANEUI.EXE-CF5A78A9.pf
O45 - LFCP:[MD5.5C5A8B9AC5792160C77D00A12EDC2AC8] - 01/06/2013 - 16:31:03 ---A- - C:\Windows\Prefetch\MAJTUTO4PC_FR_36.EXE-0A63F850.pf =>PUP.Eorezo
O45 - LFCP:[MD5.C0543A64FB5E38805B3FB0E8EE3644BB] - 01/06/2013 - 16:31:03 ---A- - C:\Windows\Prefetch\MAJTUTO4PC_FR_36.TMP-20F35518.pf =>PUP.Eorezo
O45 - LFCP:[MD5.C67EE4F5BC05288C4405711F6D68AF4E] - 01/06/2013 - 16:31:12 ---A- - C:\Windows\Prefetch\SUPT4PC_FR_36.EXE-3AD69583.pf
O45 - LFCP:[MD5.2AF88FB357DDB24D6B09B03DAC70CDCC] - 02/06/2013 - 10:11:33 ---A- - C:\Windows\Prefetch\SERVICES X86-CODEDOWNLOADER.E-5CB7B0A2.pf =>PUP.CrossRider
O45 - LFCP:[MD5.5BF412C1614B3E1F4003CF5824B82613] - 02/06/2013 - 10:11:38 ---A- - C:\Windows\Prefetch\SERVICES X86-BG.EXE-A1ADF25D.pf =>PUP.CrossRider
O45 - LFCP:[MD5.1BC7C51E828BBB923F20DFB1FB3773F3] - 02/06/2013 - 10:12:28 ---A- - C:\Windows\Prefetch\ONLINETRACKSAUTOUPDATEHELPER.-067E39E0.pf
O45 - LFCP:[MD5.C0B031D0E1182C6B95A94E547E26345D] - 02/06/2013 - 11:07:51 ---A- - C:\Windows\Prefetch\CLTMNG.EXE-E14AC8B0.pf
O45 - LFCP:[MD5.9615408B72795C767CB4C66D17D5E92F] - 02/06/2013 - 11:08:34 ---A- - C:\Windows\Prefetch\THCH.EXE-95900F79.pf
O45 - LFCP:[MD5.69E7F4D518FFB3A005C93EBE01076558] - 02/06/2013 - 11:09:07 ---A- - C:\Windows\Prefetch\DMWU.EXE-AA7A778B.pf
O45 - LFCP:[MD5.33D53CF71C5E472D71FC1EC302268DAD] - 02/06/2013 - 12:28:04 ---A- - C:\Windows\Prefetch\XTREMSPLIT.EXE-29D81664.pf
O45 - LFCP:[MD5.B46115C88F6AC2DC85A9EA2BF8FDC47E] - 02/06/2013 - 17:33:21 ---A- - C:\Windows\Prefetch\LIVECOMM.EXE-F1928578.pf
O45 - LFCP:[MD5.12E43C5EF1461C3FFADFE277AE6971F3] - 02/06/2013 - 17:52:15 ---A- - C:\Windows\Prefetch\PFSX-SETUP-01NET-10.7.3.EXE-1E09C780.pf
O45 - LFCP:[MD5.E16201FAA4053C36CDE4DAA05242D4A0] - 02/06/2013 - 17:53:19 ---A- - C:\Windows\Prefetch\PFSX-SETUP-01NET-10.7.3 [1].E-92A621F5.pf
O45 - LFCP:[MD5.C3CC7254BCB98089A795CE84BB1FC1F3] - 03/06/2013 - 14:29:02 ---A- - C:\Windows\Prefetch\SWEETIM.EXE-8F50D9C0.pf =>PUP.SweetIM
O45 - LFCP:[MD5.F282AA9F60B2BACD815B827478591388] - 03/06/2013 - 15:44:38 ---A- - C:\Windows\Prefetch\BROWSERPROTECT.EXE-6CD41A66.pf =>Hijacker.Eazel
O45 - LFCP:[MD5.20DAFA055706062BD783B35607F497EF] - 03/06/2013 - 16:45:00 ---A- - C:\Windows\Prefetch\SOFTWARECRASHHANDLER.EXE-5F240164.pf
O45 - LFCP:[MD5.20ACCDF0D9F06C4FD346017DD5C8379A] - 03/06/2013 - 16:45:34 ---A- - C:\Windows\Prefetch\CLTMNG.EXE-76C32FCE.pf
O45 - LFCP:[MD5.E5C39EF2F9F11B8BFEAB2760438E0704] - 03/06/2013 - 16:45:39 ---A- - C:\Windows\Prefetch\SWEETPACKSUPDATEMANAGER.EXE-4BA95FDA.pf =>PUP.SweetIM
O45 - LFCP:[MD5.F922D0C49732C267E04CE2F78418FA9C] - 03/06/2013 - 16:45:56 ---A- - C:\Windows\Prefetch\BOXORE.EXE-666CD123.pf =>Adware.Boxore
O45 - LFCP:[MD5.CFFA0B2E61C414B42C16F0B9E8196773] - 03/06/2013 - 16:45:56 ---A- - C:\Windows\Prefetch\TUTO4PC_FR_33.EXE-23A169E9.pf =>PUP.Eorezo
O45 - LFCP:[MD5.C05DD4A5F54EF0BC886674DF429E188A] - 03/06/2013 - 16:46:06 ---A- - C:\Windows\Prefetch\IMINENT.EXE-DDB5429B.pf =>Adware.IMBooster
O45 - LFCP:[MD5.755869F11E17145FD207960C32710621] - 03/06/2013 - 16:46:06 ---A- - C:\Windows\Prefetch\IMINENT.MESSENGERS.EXE-71459735.pf =>Adware.IMBooster
O45 - LFCP:[MD5.1FE71EF73460486F331E599426563A96] - 03/06/2013 - 16:46:06 ---A- - C:\Windows\Prefetch\TUTO4PC_FR_36.EXE-39BEC677.pf =>PUP.Eorezo
O45 - LFCP:[MD5.B10850F06ACC68E8A908626F7A958FEF] - 03/06/2013 - 16:48:17 ---A- - C:\Windows\Prefetch\UPT4PC_FR_33.EXE-4CCFACC6.pf
O45 - LFCP:[MD5.E929AF80F6E8F7FBE9F6FF7892A63642] - 03/06/2013 - 17:12:24 ---A- - C:\Windows\Prefetch\OBK.EXE-78D4C9CC.pf
O45 - LFCP:[MD5.3D0061D0BD8EC1A143E6FB1347C816BA] - 03/06/2013 - 17:12:24 ---A- - C:\Windows\Prefetch\OBKCH.EXE-631D1C6B.pf
O45 - LFCP:[MD5.C419AD0058D882ABF053D7EAD55591B9] - 03/06/2013 - 19:08:48 ---A- - C:\Windows\Prefetch\INSTALLER.EXE-2DA55FD2.pf
O45 - LFCP:[MD5.760F3E7ABA9E004034EFE40F2DA9C25C] - 04/06/2013 - 04:35:03 ---A- - C:\Windows\Prefetch\DKRUN32.EXE-8583E6AC.pf
O45 - LFCP:[MD5.161474F1A47CA2424365969DE5427BEF] - 04/06/2013 - 04:35:12 ---A- - C:\Windows\Prefetch\LMUTILPS32.EXE-9827F12C.pf
O45 - LFCP:[MD5.C69E7F36E05AEE1E18F9ED3899EDF3BC] - 04/06/2013 - 04:48:11 ---A- - C:\Windows\Prefetch\BDADDMTASK.EXE-C9B44295.pf
O45 - LFCP:[MD5.49FB49D76C207AEA0C447AEABFED2912] - 05/05/2013 - 20:52:21 ---A- - C:\Windows\Prefetch\EF16.TMP-140FD8DA.pf
O45 - LFCP:[MD5.07430DC28243B4F0194BF2412650BFBB] - 06/05/2013 - 21:08:05 ---A- - C:\Windows\Prefetch\408F.TMP-B8A4520A.pf
O45 - LFCP:[MD5.9AA3B0D7721CF49F60CD951128C0F55E] - 07/05/2013 - 22:08:05 ---A- - C:\Windows\Prefetch\89EB.TMP-75AC7AA0.pf
O45 - LFCP:[MD5.38B0717FF46465A7481CCA8657A3FC7C] - 08/05/2013 - 10:04:14 ---A- - C:\Windows\Prefetch\EBAY2.EXE-E3201D7D.pf
O45 - LFCP:[MD5.E49D0ACE7F3ACE46B13F024D97FE8AD7] - 08/05/2013 - 11:41:27 ---A- - C:\Windows\Prefetch\GOOGLEEARTH-WIN-BUNDLE-7.1.1.-C5A3FDA1.pf
O45 - LFCP:[MD5.D7DD0C333E2ED2A8DE66A97EF859869F] - 08/05/2013 - 17:43:13 ---A- - C:\Windows\Prefetch\EXTCONVERTER.EXE-B7C2FB1C.pf
O45 - LFCP:[MD5.E05B6175E537CA84E832713600F8EC24] - 08/05/2013 - 23:08:06 ---A- - C:\Windows\Prefetch\D5A9.TMP-3D9AC747.pf
O45 - LFCP:[MD5.0C301C19BE15EE20C5089E2DDD859933] - 10/05/2013 - 07:24:10 ---A- - C:\Windows\Prefetch\D153.TMP-043CDC79.pf
O45 - LFCP:[MD5.2C3FA4F582EA4B6077C8F94434A6E4BA] - 11/05/2013 - 15:53:12 ---A- - C:\Windows\Prefetch\E205.TMP-87507CF4.pf
O45 - LFCP:[MD5.D1035FA61B3C7766B70F922F2BFF69F8] - 12/05/2013 - 16:53:17 ---A- - C:\Windows\Prefetch\2F49.TMP-902CBE09.pf
O45 - LFCP:[MD5.C87C8B381A692026B2B076264390C29C] - 13/05/2013 - 16:56:48 ---A- - C:\Windows\Prefetch\SECONDSTEPINSTALLER.EXE-108A081B.pf
O45 - LFCP:[MD5.B1956B5A941C4334B5BCBF80AC2E34DC] - 13/05/2013 - 16:57:09 ---A- - C:\Windows\Prefetch\CLTMNGSVC.EXE-28758A2C.pf
O45 - LFCP:[MD5.E8CF76B56B1FB8D4543F7645255FF724] - 13/05/2013 - 16:57:09 ---A- - C:\Windows\Prefetch\SPRUNNER.EXE-9EF706D7.pf
O45 - LFCP:[MD5.226F089D334D886A1D0088053DF88E02] - 17/05/2013 - 11:49:17 ---A- - C:\Windows\Prefetch\LAUNCHTM.EXE-B444BC8E.pf
O45 - LFCP:[MD5.DE5DBE07F8B766BCB7BD67753DDD1DCA] - 18/05/2013 - 08:54:54 ---A- - C:\Windows\Prefetch\EMULE.EXE-6F3A59E3.pf
O45 - LFCP:[MD5.6D9D3012C0721273C9E5FC11B429EFFD] - 20/05/2013 - 11:49:02 ---A- - C:\Windows\Prefetch\AUTORUN.EXE-D28490C2.pf
O45 - LFCP:[MD5.A88B6321E7D33EB241CA8E972013DBE9] - 23/05/2013 - 17:47:29 ---A- - C:\Windows\Prefetch\27.0.1453.94_26.0.1410.64_CHR-A30B2727.pf
O45 - LFCP:[MD5.CD369C1CB1CD71CA264039528C64E7A1] - 23/05/2013 - 17:54:57 ---A- - C:\Windows\Prefetch\GENPTCH.EXE-022E2611.pf
O45 - LFCP:[MD5.72EF240BA6A178B2F1E856A8D0B515BD] - 24/05/2013 - 14:06:44 ---A- - C:\Windows\Prefetch\MIPONY-INSTALLER.EXE-BCB9BF1E.pf
O45 - LFCP:[MD5.C5882B7530EE60B0A312147F056D625B] - 24/05/2013 - 14:06:45 ---A- - C:\Windows\Prefetch\MIPONY-INSTALLER-1.EXE-8FD2B1B6.pf
O45 - LFCP:[MD5.00586B566249BBFF8A491B99D8ACE5F0] - 24/05/2013 - 14:07:29 ---A- - C:\Windows\Prefetch\DELTATB.EXE-ECF6B948.pf =>Toolbar.DeltaSearch
O45 - LFCP:[MD5.271631FCA25926079C88CFCF43503DBF] - 24/05/2013 - 14:07:29 ---A- - C:\Windows\Prefetch\FINDLYRICS.EXE-CD7FD79B.pf =>Adware.AddLyrics
O45 - LFCP:[MD5.7B3A808A0EDEA285FED5C1D6AF1F05C5] - 24/05/2013 - 14:07:29 ---A- - C:\Windows\Prefetch\QTRAXINSTALLER.EXE-A1B755C6.pf
O45 - LFCP:[MD5.BD979DC3F85F5CCCEECF86B0213F0BC4] - 24/05/2013 - 14:07:39 ---A- - C:\Windows\Prefetch\TUTO4PC_SETUP_FR.EXE-6483E602.pf =>PUP.Eorezo
O45 - LFCP:[MD5.86C73447615416C5D0DCA48F8AF11291] - 24/05/2013 - 14:07:40 ---A- - C:\Windows\Prefetch\TUTO4PC_SETUP_FR.TMP-872FC7DB.pf =>PUP.Eorezo
O45 - LFCP:[MD5.A112D95494BA1CC3B2EDF2FC79523B28] - 24/05/2013 - 14:08:36 ---A- - C:\Windows\Prefetch\FLCSUP.EXE-7EA4384E.pf
O45 - LFCP:[MD5.669E3E356AB5699C1BA116C19254D091] - 24/05/2013 - 14:08:36 ---A- - C:\Windows\Prefetch\FLCSUR.EXE-1E2A4401.pf
O45 - LFCP:[MD5.78136E57CA1F007F9C300CDDE7ECDC1C] - 24/05/2013 - 19:28:05 ---A- - C:\Windows\Prefetch\BOXORE.EXE-A2201CC7.pf =>Adware.Boxore
O45 - LFCP:[MD5.CD03C75BBE6EB84A9681626F789F6CFE] - 24/05/2013 - 19:28:05 ---A- - C:\Windows\Prefetch\BOXOREINSTALLER.EXE-B14E3636.pf =>Adware.Boxore
O45 - LFCP:[MD5.EA8BAF0AE6A3117F187D29205C749F75] - 24/05/2013 - 19:28:05 ---A- - C:\Windows\Prefetch\DELTA BABYLON.EXE-93D592F1.pf =>Toolbar.Babylon
O45 - LFCP:[MD5.8378CCE1B6D21B8612AB0278805E413E] - 24/05/2013 - 19:28:27 ---A- - C:\Windows\Prefetch\SCS.EXE-B1CF88FC.pf
O45 - LFCP:[MD5.A952095CE2D603180F8F425E4774BD78] - 24/05/2013 - 19:31:26 ---A- - C:\Windows\Prefetch\DELTATB.EXE-F5CC058A.pf =>Toolbar.DeltaSearch
O45 - LFCP:[MD5.ABDA98E6409604677740913D7F1E2D9D] - 24/05/2013 - 19:31:52 ---A- - C:\Windows\Prefetch\DELTA4FFX.EXE-8CE04256.pf
O45 - LFCP:[MD5.1B284122D956F2DDEB20350F542B5B69] - 24/05/2013 - 19:31:54 ---A- - C:\Windows\Prefetch\DELTA4IE.EXE-0E3E6180.pf
O45 - LFCP:[MD5.4EA4D77A6A9EB1EC2D1DF2601AF70646] - 24/05/2013 - 19:31:54 ---A- - C:\Windows\Prefetch\DELTASRV.EXE-D503A767.pf
O45 - LFCP:[MD5.934DC397ACDA08B2252AD7CF9010180E] - 24/05/2013 - 19:31:54 ---A- - C:\Windows\Prefetch\MYBABYLONTB.EXE-93E7D2B5.pf =>Toolbar.Babylon
O45 - LFCP:[MD5.1CAF5817F94429D20E0CA535CF3195B1] - 24/05/2013 - 19:31:55 ---A- - C:\Windows\Prefetch\BPROTECT.EXE-87C554E2.pf
O45 - LFCP:[MD5.78BCEC0D52B71656B0EAB24A66442FAB] - 24/05/2013 - 19:32:15 ---A- - C:\Windows\Prefetch\PUSH.EXE-3E49F76A.pf
O45 - LFCP:[MD5.ADF83C3F239CC0433D2AF18FC2BD8214] - 24/05/2013 - 19:32:15 ---A- - C:\Windows\Prefetch\WEBPLAYER.EXE-78EFCF68.pf
O45 - LFCP:[MD5.653B7267DB936DA0CA834E55E6FBFB6C] - 24/05/2013 - 19:49:03 ---A- - C:\Windows\Prefetch\IMINENT.EXE-577869DE.pf =>Adware.IMBooster
O45 - LFCP:[MD5.042873233A0167E6654B42A24894BF32] - 24/05/2013 - 19:49:03 ---A- - C:\Windows\Prefetch\UMBRELLA.EXE-0B44C393.pf
O45 - LFCP:[MD5.467A9234D40DC21EB1510AA8066792F9] - 25/05/2013 - 09:08:40 ---A- - C:\Windows\Prefetch\RESTORE.EXE-FF5AC776.pf
O45 - LFCP:[MD5.22FAFA9906A8732B817F9985EBBBF9BE] - 25/05/2013 - 09:08:53 ---A- - C:\Windows\Prefetch\GAMECONSOLE-4.0.23.8-TO-4.0.2-F4C8D955.pf
O45 - LFCP:[MD5.281093E0BC83905C3199185AEA04D5AD] - 25/05/2013 - 09:08:56 ---A- - C:\Windows\Prefetch\PATCH_5272.EXE-E7CE1F9C.pf
O45 - LFCP:[MD5.4197FDC913E529768D74DD0F4C2AF39C] - 25/05/2013 - 09:08:59 ---A- - C:\Windows\Prefetch\BSDIFF_PATCH.EXE-5CB3380C.pf
O45 - LFCP:[MD5.E259C5F6AF4DC238E9B54B64A4FEC215] - 25/05/2013 - 09:09:24 ---A- - C:\Windows\Prefetch\PARK-{A115BE37-90C1-4DED-AE63-889CBF58.pf
O45 - LFCP:[MD5.6A5AEF1A158F2B9011A6E05BCE11F836] - 25/05/2013 - 09:09:58 ---A- - C:\Windows\Prefetch\INSTALLTOUCHPOINTS-PACKARDBEL-7C530842.pf
O45 - LFCP:[MD5.F8619C677BA8092F03AEC95338673667] - 25/05/2013 - 09:10:00 ---A- - C:\Windows\Prefetch\INSTALLTOUCHPOINTS-PACKARDBEL-AFC6D3BC.pf
O45 - LFCP:[MD5.B7A88DF1918D5484D6599ACD77E7F272] - 25/05/2013 - 09:11:15 ---A- - C:\Windows\Prefetch\GAME.DAT-81362BDD.pf
O45 - LFCP:[MD5.38C0A1A3FE4E5C3D2FB089EC161A2066] - 25/05/2013 - 09:11:17 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-FB09BA72.pf
O45 - LFCP:[MD5.655BD6B0252A5046DD1DCC4349BA22E8] - 25/05/2013 - 09:11:18 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-2939A083.pf
O45 - LFCP:[MD5.9E3A5A16088A82064D01ED157633AF43] - 25/05/2013 - 09:11:19 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-2C4BEB3D.pf
O45 - LFCP:[MD5.5C38B831EBE84492703E1DA179F75970] - 25/05/2013 - 09:11:23 ---A- - C:\Windows\Prefetch\GAME.DAT-99D9B6CB.pf
O45 - LFCP:[MD5.2243FA7E08ED2DF592F2CFFF04B3BA28] - 25/05/2013 - 09:11:24 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-7984D480.pf
O45 - LFCP:[MD5.5A3992588D55F07CBF5124BB4F8C85F2] - 25/05/2013 - 09:11:25 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-4FFBD3A1.pf
O45 - LFCP:[MD5.3F369D37E710347753C83E46AB30C900] - 25/05/2013 - 09:11:27 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-A0B5A03B.pf
O45 - LFCP:[MD5.FF952168DF22C9CAF7271FF3A7BEB366] - 25/05/2013 - 09:11:30 ---A- - C:\Windows\Prefetch\GAME.DAT-5B81F525.pf
O45 - LFCP:[MD5.25A36AB10FEE5380553F19313FDC9474] - 25/05/2013 - 09:11:31 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-7FC4F73A.pf
O45 - LFCP:[MD5.A05D18A25E190E1BB3B77A924182039D] - 25/05/2013 - 09:11:33 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-016D910B.pf
O45 - LFCP:[MD5.FBC09CE13D831BC31E58178242C45522] - 25/05/2013 - 09:11:33 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-3DA5A445.pf
O45 - LFCP:[MD5.647EAFC4F4C8D61B1237720386F87985] - 25/05/2013 - 09:11:37 ---A- - C:\Windows\Prefetch\GAME.DAT-BD04FDA4.pf
O45 - LFCP:[MD5.3F6174AB8D21426F7A25112700D48774] - 25/05/2013 - 09:11:38 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-070F5EC9.pf
O45 - LFCP:[MD5.2E9481D50F0B885CD2B67C5CEC05A8A1] - 25/05/2013 - 09:11:40 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-C7677AE2.pf
O45 - LFCP:[MD5.E1D21EF0881588702E8E3B50D46CD1B0] - 25/05/2013 - 09:11:41 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-5911138C.pf
O45 - LFCP:[MD5.C848726EE56AD12F23DCC315DC045B4B] - 25/05/2013 - 09:11:45 ---A- - C:\Windows\Prefetch\GAME.DAT-A4F42E3B.pf
O45 - LFCP:[MD5.65362D89DA95E5646BDA073FB7D8DE95] - 25/05/2013 - 09:11:46 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-B499C4F0.pf
O45 - LFCP:[MD5.8AF448DF827DB977DD76AA32A92BBE74] - 25/05/2013 - 09:11:48 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-4D108C91.pf
O45 - LFCP:[MD5.EFF96CEA5AE361A5CE7892D880112561] - 25/05/2013 - 09:11:50 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-6E38682B.pf
O45 - LFCP:[MD5.4675E17B6A5A91BA069D962E86EA0146] - 25/05/2013 - 09:11:52 ---A- - C:\Windows\Prefetch\GAME.DAT-6E3D9CE4.pf
O45 - LFCP:[MD5.5BD941009595EE29DBAA17A05AD601B9] - 25/05/2013 - 09:11:54 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-E6EB4A09.pf
O45 - LFCP:[MD5.D9A3B25D0FB1768FAFC6C4EC16A1E883] - 25/05/2013 - 09:11:55 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-D1431C22.pf
O45 - LFCP:[MD5.C34A039BD4A24AA18E7B5EFCD1E143FD] - 25/05/2013 - 09:11:56 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-54D4C8CC.pf
O45 - LFCP:[MD5.3B0208E90580898F3ECDBA1DCFA90EFC] - 25/05/2013 - 09:11:59 ---A- - C:\Windows\Prefetch\GAME.DAT-6D4FF778.pf
O45 - LFCP:[MD5.18E0E4A07C199B51636111B29F62E509] - 25/05/2013 - 09:12:01 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-D52A6F5D.pf
O45 - LFCP:[MD5.A663D9F71607AE083DFE4167C3EF2B69] - 25/05/2013 - 09:12:03 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-5787CFD6.pf
O45 - LFCP:[MD5.9B719770CDAA4A906B7C137F99A1242B] - 25/05/2013 - 09:12:03 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-13D697C0.pf
O45 - LFCP:[MD5.2B8D612199A2F41EFB8BA34708135C49] - 25/05/2013 - 09:12:08 ---A- - C:\Windows\Prefetch\GAME.DAT-7DB2A8FE.pf
O45 - LFCP:[MD5.34980EDFC2E0951FBBB43B653744EDA5] - 25/05/2013 - 09:12:09 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-46231E83.pf
O45 - LFCP:[MD5.189D766FCF94721222E0589453390165] - 25/05/2013 - 09:12:11 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-5C382D4C.pf
O45 - LFCP:[MD5.4CE2E76AADEF1F9BCF4EE12C2518AA58] - 25/05/2013 - 09:12:13 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-16875C96.pf
O45 - LFCP:[MD5.770058F9DAFCE24931F450EE7835E825] - 25/05/2013 - 09:12:16 ---A- - C:\Windows\Prefetch\GAME.DAT-CD5E4B56.pf
O45 - LFCP:[MD5.B292AFD47E4E19F38A0B0B842C086BC3] - 25/05/2013 - 09:12:18 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-F0BB335B.pf
O45 - LFCP:[MD5.714D74D97F64DCF144223F07918BED6D] - 25/05/2013 - 09:12:18 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-3B8F8964.pf
O45 - LFCP:[MD5.04E33948513CFA3C6C7563B6E06C8E8D] - 25/05/2013 - 09:12:20 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-A624BA2E.pf
O45 - LFCP:[MD5.71FD8F43587116742CDC4F52728B8431] - 25/05/2013 - 09:12:23 ---A- - C:\Windows\Prefetch\GAME.DAT-2F027DE4.pf
O45 - LFCP:[MD5.6D18D7B179D654FC5ABA1BCC579EAFCE] - 25/05/2013 - 09:12:24 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-E1DB1B09.pf
O45 - LFCP:[MD5.1AD8313B24A41C6E43B3E409F31619B6] - 25/05/2013 - 09:12:25 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-06ADA522.pf
O45 - LFCP:[MD5.E1EFF9D9489FA65BE1FB9F2375177E9B] - 25/05/2013 - 09:12:26 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-AEFFE1CC.pf
O45 - LFCP:[MD5.3AF3C52B408EADCD5F4C39BDD5A3979D] - 25/05/2013 - 09:12:33 ---A- - C:\Windows\Prefetch\GAME.DAT-1AE68EC5.pf
O45 - LFCP:[MD5.C71798E442E03BD98BEEF4688B8EE29B] - 25/05/2013 - 09:12:34 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-363096DA.pf
O45 - LFCP:[MD5.5F1258ACDD816E56374C8A25247734F1] - 25/05/2013 - 09:12:35 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-3A083BAB.pf
O45 - LFCP:[MD5.886B35B34BD32EEAA760C4509BA942DC] - 25/05/2013 - 09:12:36 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-6AF1F8E5.pf
O45 - LFCP:[MD5.C7F7CB2FC92B8550474BBE0259C85D8D] - 25/05/2013 - 09:12:39 ---A- - C:\Windows\Prefetch\GAME.DAT-115D29C5.pf
O45 - LFCP:[MD5.DFDDE0B1E21FA6B39EB835C6A7E72650] - 25/05/2013 - 09:12:40 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-9BE081DA.pf
O45 - LFCP:[MD5.12E920F466BED6A77EC496B713123EE9] - 25/05/2013 - 09:12:41 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-1B1A8EAB.pf
O45 - LFCP:[MD5.6A774803E5A4CF5A140BAAD0A6605581] - 25/05/2013 - 09:12:42 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-BEB17BE5.pf
O45 - LFCP:[MD5.787AF77FD2D52A7BB44F86DDBD20E483] - 25/05/2013 - 09:12:45 ---A- - C:\Windows\Prefetch\GAME.DAT-DF91F6B8.pf
O45 - LFCP:[MD5.1706A871C02C91A2B7064652CBFB891C] - 25/05/2013 - 09:12:47 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-7FD9BA9D.pf
O45 - LFCP:[MD5.0A37B3F8840238F98BD0888E8D3A09C6] - 25/05/2013 - 09:12:47 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-F553D116.pf
O45 - LFCP:[MD5.F568B559B77AD16945B4199534C52882] - 25/05/2013 - 09:12:49 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-2390AD00.pf
O45 - LFCP:[MD5.2D0EF50A32A380257434BF348D2CCE46] - 25/05/2013 - 09:12:53 ---A- - C:\Windows\Prefetch\GAME.DAT-BF3AB286.pf
O45 - LFCP:[MD5.D6207E9E0D60749A017EC831A99F2690] - 25/05/2013 - 09:12:55 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-C7BCD78B.pf
O45 - LFCP:[MD5.40DDEF76DE0AE20D246AFE095A48C38C] - 25/05/2013 - 09:12:56 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-3B9F0814.pf
O45 - LFCP:[MD5.6E1DB98C118C859C6AFD9BD54716C7F4] - 25/05/2013 - 09:12:56 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-6688A3DE.pf
O45 - LFCP:[MD5.8DF1C5151721A402AB641CFF5313141D] - 25/05/2013 - 09:13:00 ---A- - C:\Windows\Prefetch\GAME.DAT-E61BDEC7.pf
O45 - LFCP:[MD5.AD47ED4E3579D7625FEB90C23DF7E1F9] - 25/05/2013 - 09:13:02 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-EB1A18BC.pf
O45 - LFCP:[MD5.97F8AB8B527C0E49886E2CBB1E5DFDF5] - 25/05/2013 - 09:13:04 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-6BB970FD.pf
O45 - LFCP:[MD5.9C639C707402AFC7601DB14959A9D706] - 25/05/2013 - 09:13:05 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-3628B357.pf
O45 - LFCP:[MD5.E7331A75D3864F29A94420A422497BC7] - 25/05/2013 - 09:19:28 ---A- - C:\Windows\Prefetch\UNINST.EXE-8144BB14.pf
O45 - LFCP:[MD5.4DDC8713629FE50230F5656A12481F68] - 25/05/2013 - 09:20:46 ---A- - C:\Windows\Prefetch\{311739EB-5C94-4EE1-B911-2D1F-A7944CFD.pf
O45 - LFCP:[MD5.32926298C53D6103587131F0DB5B6B72] - 25/05/2013 - 09:23:01 ---A- - C:\Windows\Prefetch\DIFXINST64.EXE-C8C2E3F2.pf
O45 - LFCP:[MD5.064A007098D4AA2298E1D5A849234381] - 25/05/2013 - 09:25:54 ---A- - C:\Windows\Prefetch\PCSPEEDMAXIMIZER.EXE-60BA47FF.pf
O45 - LFCP:[MD5.29F6694245486FD4E071183DF08243CC] - 25/05/2013 - 09:27:15 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-A6D3D8CE.pf
O45 - LFCP:[MD5.7BA48C64314144B122826BFDE062CA8B] - 25/05/2013 - 13:06:28 ---A- - C:\Windows\Prefetch\EPP351.EXE-1771E43E.pf
O45 - LFCP:[MD5.F539CD1FAE2945C438B3C089A95344B7] - 25/05/2013 - 13:06:44 ---A- - C:\Windows\Prefetch\SETUP_EP.EXE-3A40447D.pf
O45 - LFCP:[MD5.07BD500E0DB89ADACB263338C1F229BF] - 25/05/2013 - 13:07:06 ---A- - C:\Windows\Prefetch\EPPSHELLREG.EXE-E4E0A343.pf
O45 - LFCP:[MD5.607980492A9A866FF6789B08FCCC3E3E] - 26/05/2013 - 19:49:43 ---A- - C:\Windows\Prefetch\STARTME.EXE-DB3CA801.pf
O45 - LFCP:[MD5.8F87A7969FDFC64149DE6458F185E984] - 26/05/2013 - 19:49:50 ---A- - C:\Windows\Prefetch\STARTME.EXE-24BFBA28.pf
O45 - LFCP:[MD5.9F6AD1A21DA3704AB1A9D654F64D0E3A] - 27/05/2013 - 15:57:35 ---A- - C:\Windows\Prefetch\MAJT4PCFR.EXE-92413E55.pf
O45 - LFCP:[MD5.19C9205DFF638E923081E1740246802A] - 27/05/2013 - 15:57:36 ---A- - C:\Windows\Prefetch\MAJT4PCFR.TMP-F0B20247.pf
O45 - LFCP:[MD5.E0013755A07E5FF592204BF4BF724C06] - 27/05/2013 - 17:07:45 ---A- - C:\Windows\Prefetch\50D1D9D5-CF90-407C-820A-35E05-FA169CE8.pf
O45 - LFCP:[MD5.5E27B70F72A43C009D048F4E7A776D4D] - 27/05/2013 - 17:07:45 ---A- - C:\Windows\Prefetch\INST.EXE-9EEFFBF4.pf
O45 - LFCP:[MD5.088D7CC877E665802332C041604B88C2] - 27/05/2013 - 17:08:36 ---A- - C:\Windows\Prefetch\HAPPYLYRICS_2204-E2F0CCE3.EXE-C98C41D1.pf
~ Prefetcher: 467 Legitimates Filtered in 00mn 07s
---\\ MountPoints2 Shell Key (O51)
O51 - MPSK:{8577740d-fb99-11e1-be6a-806e6f6e6963}\AutoRun\command. (.Electronic Arts - Autorun Application.) -- D:\Autorun.exe
O51 - MPSK:{aa6b18d3-c5f0-11e2-bf7e-4c72b993ea23}\AutoRun\command. (...) -- E:\Startme.exe (.not file.)
~ Keys: Scanned in 00mn 04s
---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLinkedConnections"=1
~ MWPS: 18 Legitimates Filtered in 00mn 00s
---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
~ MWPE Keys: 3 Legitimates Filtered in 00mn 00s
---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.4F18D4C7EA14F11A7211F60D553C03DB] - 26/07/2012 - 06:00:49 ---A- . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\Drivers\3ware.sys [106736]
~ Drivers: Scanned in 00mn 00s
---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 01/06/2013 - 14:26:04 ---A- C:\Users\titi\Links\Desktop.lnk [485]
O61 - LFC: 01/06/2013 - 14:26:04 ---A- C:\Users\titi\Links\Downloads.lnk [936]
O61 - LFC: 01/06/2013 - 14:26:04 ---A- C:\Users\titi\Links\RecentPlaces.lnk [383]
O61 - LFC: 01/06/2013 - 16:31:01 ---A- C:\Users\titi\AppData\Local\supt4pc_fr_36\supt4pc_fr_36\update.cyl [59]
O61 - LFC: 02/06/2013 - 12:27:03 ---A- C:\Users\titi\Downloads\Xtremsplit.exe [305664]
O61 - LFC: 02/06/2013 - 17:50:39 ---A- C:\Users\titi\Downloads\pfsx-setup-01net-10.7.3.exe [667016]
O61 - LFC: 02/06/2013 - 17:52:06 ---A- C:\Users\titi\Downloads\pfsx-setup-01net-10.7.3 [1].exe [11103194]
O61 - LFC: 02/06/2013 - 17:53:47 --H-- C:\Users\titi\AppData\Roaming\Identities\{46504E63-3636-3932-3430-313231346154}\1pac4612.1c16 [45]
O61 - LFC: 03/06/2013 - 18:44:42 ---A- C:\Users\titi\Downloads\mbam-setup-1.75.0.1300.exe [10285040]
O61 - LFC: 04/06/2013 - 04:42:28 ---A- C:\Users\titi\AppData\Local\Google\Chrome\User Data\Certificate Revocation Lists [267278]
O61 - LFC: 04/06/2013 - 04:52:39 ---A- C:\Users\titi\AppData\Local\Google\Chrome\User Data\Local State [33964]
~ 4 Fichiers temporaires (Temporary files)
~ Files: 221 Legitimates Filtered in 00mn 38s
---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ ADS: Scanned in 00mn 00s
---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Not Key.)
~ FASS Keys: 19 Legitimates Filtered in 00mn 00s
---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s
---\\ Search Browser Infection (O69)
O69 - SBI: SearchScopes [HKCU] {210B6304-3A0E-4461-A148-41B64243E380} - (onlinetracks Customized Web Search) - http://search.conduit.com
~ Keys: Scanned in 00mn 00s
---\\ Recherche particuliere à la racine de certains dossiers (O84)
[MD5.A48B88F84CB703FF667295A2E5B363E4] [SPRF][11/03/2013] (...) -- C:\ProgramData\1362990986.bdinstall.bin [1872498]
[MD5.32DCED18FFFEA0035E4FA975CA0AE8BE] [SPRF][22/04/2013] (.The Software Group - Software Update Setup.) -- C:\Users\titi\AppData\Local\Temp\BoxoreInstaller.exe [620656] =>Adware.Boxore
[MD5.602AE45EEB85FCE002C2BD541F5E3F89] [SPRF][11/01/2013] (.Conduit - Pas de description.) -- C:\Users\titi\AppData\Local\Temp\conduitinstaller.exe [86080] =>Toolbar.Conduit
[MD5.735C5AB0106E929C5616B49954FFF0EE] [SPRF][24/05/2013] (.Pas de propriétaire - Lyrics Fan.) -- C:\Users\titi\AppData\Local\Temp\flcsup.exe [280921] =>Adware.AddLyrics
[MD5.F6278B5A16F830885B184D5F72E1B935] [SPRF][04/05/2013] (.Terra Informatica Software, Inc., British C - HTMLayout - embeddable HTML rendering and layout component.) -- C:\Users\titi\AppData\Local\Temp\htmlayout.dll [947200]
[MD5.8A4AF3B0695F29186AD02E2FD766FA3B] [SPRF][11/01/2013] (.SweetIM Technologies Ltd. - SQLite DLL.) -- C:\Users\titi\AppData\Local\Temp\mgsqlite3.dll [393016] =>PUP.SweetIM
[MD5.F4E3DE7B4898E37652F39A06BC9591E3] [SPRF][08/05/2013] (.Conduit - Search Protect by Conduit.) -- C:\Users\titi\AppData\Local\Temp\SecondStepInstaller.exe [2824352] =>Toolbar.Conduit
[MD5.D9DA3FDE1AEE64CEE57D4C57A538A53B] [SPRF][22/10/2012] (.SweetIM Technologies Ltd. - SweetIM Installer by SweetPacks.) -- C:\Users\titi\AppData\Local\Temp\Shortcut_bundlesweetimsetup.exe [7739736] =>PUP.SweetIM
[MD5.C6D792E4583FC46DB0953FBF6E46348A] [SPRF][11/01/2013] (.SweetIM Technologies Lt - This installer.) -- C:\Users\titi\AppData\Local\Temp\SIMEEI2Installer.exe [2962432] =>PUP.SweetIM
[MD5.7704B843006444B69486FD27D4660845] [SPRF][11/01/2013] (.SweetIM Technologies Lt - This installer.) -- C:\Users\titi\AppData\Local\Temp\SIMEEIInstaller.exe [3380216] =>PUP.SweetIM
[MD5.E8EFB9EF24C1E0CED84CFA3C2AE9DC2F] [SPRF][04/05/2013] (...) -- C:\Users\titi\AppData\Local\Temp\toolbar180976635.exe [782832]
[MD5.225CCDCFE5625795647043679CB77112] [SPRF][11/01/2013] (...) -- C:\Users\titi\AppData\Local\Temp\wajam_install.exe [417256] =>Toolbar.Wajam
[MD5.683FDD3D773C58B262DC07CD0C6CE938] [SPRF][03/06/2013] (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Users\titi\Desktop\mbam-setup-1.75.0.1300.exe [10285040]
[MD5.546026247543D6B9499A1503798E3B10] [SPRF][04/06/2013] (.Nicolas Coolman - ZHPDiag.) -- C:\Users\titi\Desktop\ZHPDiag2.exe [5672605]
~ Files: Scanned in 00mn 01s
---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "{0A0FFD05-6AF3-4408-96C5-741D6FAE5EE1}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) =>PUP.SweetIM
O87 - FAEL: "{FCDCAC89-8B60-4E91-AC1F-17F664C8F3FF}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) =>PUP.SweetIM
O87 - FAEL: "{7E3E9501-0214-4E7B-9440-B21B778A0805}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Iminent\Iminent.exe (.not file.) =>Adware.IMBooster
O87 - FAEL: "{84E40B51-363D-4D69-A20A-0E8176DE748E}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Iminent\Iminent.Messengers.exe (.not file.) =>Adware.IMBooster
O87 - FAEL: "{AB37A174-7AC8-4627-A749-98E904A6BCA1}" | In - Private - P6 - TRUE | .(...) -- C:\Windows\System32\dmwu.exe
O87 - FAEL: "{35773580-F21F-4899-8F0E-61356120666D}" | In - Private - P17 - TRUE | .(...) -- C:\Windows\System32\dmwu.exe
~ Firewall: 251 Legitimates Filtered in 00mn 03s
---\\ Scan Additionnel (O88)
Database Version : v2.12387 - (03/06/2013)
Clés trouvées (Keys found) : 92
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 2
Fichiers trouvés (Files found) : 14
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D15DAF33C220F91468A1D7D57C31ACD7] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D6D0EB9FDBD90C04D92A7E729058F10D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A189D17A469616C4688D23E192996267] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98CC8BF5A4A6E6C4ABF7051DDAB8B058] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7FFA128C2B0FF414D805FC5627883401] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D3BA76A44C779424889063D5098ED2D6] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\397C771A7BCAC904697C3EC629ED33ED] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\351716A953E21214898904032EAE2E81] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E6768B6932D112438F047C54D180635] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EB6AF8AEEB922FA4392548F13812E50B] =>PUP.SweetIM
[HKLM\Software\WNLT] =>Adware.IncrediBar
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EE58E3C298524145B73CBBED3CAC4D3] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B2FD9C0A5B9838449838816A28001F4B] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02F47BF73B948514FAACADD8CBBDF37D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\080D9F5E1E95FEE4794CE438E635239E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4318DF19719275242801CBE292063A4C] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75D5168E5E176C24981B4E5DBD991078] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8724E58E6C7D00C48A0D4F3345EB2C26] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB676B0E1B9EFA049B9F7DDDA9645734] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B31BBB0B825EDEF45AB0FE7099C68C81] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B471D8D7319336B4CA89374ED0D7B806] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC30043663AA2CA4DA1DAA9CA5FDCC75] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E1C820A74ED67374BA048B52CB3C3804] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FDC83385E6C239F4C876A77A37DF581D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\427EA997C413D1D47907CBFC7B2DB432] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1E264E0A5959A1C46BA9175A878B12EA] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E4748F9A4181FCE46A23C13B517B9420] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1EAD96AE2CB1DE84BAA9425A8CCA0817] =>Adware.Boxore
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A] =>Adware.IMBooster
[HKCU\Software\AppDataLow\Software\LyricsFan] =>Adware.AddLyrics
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\lrcfan@fansoft.br] =>Adware.AddLyrics
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A8720491-9558-4C0D-9E35-30EED15DFB2B}] =>Adware.AddLyrics
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A8720491-9558-4C0D-9E35-30EED15DFB2B}] =>Adware.AddLyrics
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A8720491-9558-4C0D-9E35-30EED15DFB2B}] =>Adware.AddLyrics
[HKLM\Software\Wow6432Node\Google\Chrome\Extensions\nfeonecgpoepapkmdgdmjolonaakdknd] =>Adware.AddLyrics
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BA71D41F6CC0B6247B05D473850A8AEA] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\12BF94BD06C95F343A77631402B9556A] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2124D8A8CF720FD44866190AF560228E] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27A325ACED8CA4743A30127638591ADB] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\350D17402BD84234EAF7D32F08172D7C] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3EE8C5F419057E1478A654868CEE60B5] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4735D908D66E1BA46B6C2D7185A12B2B] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D6A6B2ED56AF24EA6335EAD6E91CA4] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\76D8378E2DDAED3428720A631F6E3BF0] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EDC790504E1834DBC20C9A04328FD2] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\97C3D0F82E712E241A2F969F45E3351C] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A001B259DB7D694E818BE29B973992C] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E7F556BF224D804D96A96F0F6344789] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAE2EC163C6A68A48921573E0E7E199D] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF4F885EDEE45644EB1E0C99E0162399] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C06C6662FA5B04646829E4A460857770] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE21F3FD57B244142880EF15A165A156] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CEEB3E14ABE8270419B0FD762E18F7C6] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1B5E9A3BDB51349BF96E842C062D98] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FECBC2BC14DA6CD459BD59A041709836] =>PUP.SweetIM^
C:\Program Files (x86)\FindLyrics =>Adware.AddLyrics
C:\Users\titi\AppData\Local\Software =>Adware.Boxore
C:\Users\titi\AppData\Local\Temp\Shortcut_bundlesweetimsetup.exe =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\SIMEEI2Installer.exe =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\SIMEEIInstaller.exe =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\wajam_install.exe =>Toolbar.Wajam
C:\Users\titi\AppData\Local\Temp\BoxoreInstaller.exe =>Adware.Boxore
C:\Users\titi\AppData\Local\Temp\conduitinstaller.exe =>Toolbar.Conduit
C:\Users\titi\AppData\Local\Temp\mgsqlite3.dll =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\SecondStepInstaller.exe =>Toolbar.Conduit
~ Additionnel Scan: 154484 Items scanned in 00mn 51s
---\\ Product Upgrade Codes (O90)
O90 - PUC: "EB8E7C929DBF19D4CBF44B077C815D45" . (.Iminent.) -- C:\Windows\Installer\{29C7E8BE-FBD9-4D91-BC4F-B470C718D554}\imbooster.ico =>Adware.IMBooster
~ Update Products: 70 Legitimates Filtered in 00mn 00s
---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SR - | Auto 07/02/2013 239616 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe
SR - | Auto 21/12/2012 57008 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SS - | Demand 31/07/2012 466064 | (DeviceFastLaneService) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Device Fast-lane\DeviceFastLaneSvc.exe
SR - | Auto 21/08/2012 348784 | (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
SR - | Demand 31/07/2012 659600 | (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
SS - | Auto 11/03/2013 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 11/03/2013 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SR - | Auto 13/07/2012 2451456 | (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
SR - | Auto 04/04/2013 418376 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
SR - | Auto 04/04/2013 701512 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
SR - | Auto 26/11/2011 687400 | (NAUpdate) . (.Nero AG.) - C:\Program Files (x86)\Nero\Update\NASvc.exe
SR - | Auto 11/09/2012 93296 | (RfButtonDriverService) . (.Dritek System INC..) - C:\Windows\RfBtnSvc64.exe
SS - | Auto 0 | (Software_update) . (...) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe
SS - | Demand 0 | (Software_update_m) . (...) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe
SR - | Auto 08/04/2013 68856 | (UPDATESRV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2013\updatesrv.exe
SR - | Auto 08/05/2013 1646792 | (VSSERV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe
SR - | Auto 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe
SS - | Demand 20/09/2012 29696 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Services: Scanned in 00mn 02s
---\\ Recherche Master Boot Record Infection (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
~ MBR: 1 Legitimates Filtered in 00mn 02s
---\\ Recherche Master Boot Record Infection (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by titi at 04/06/2013 06:02:55
********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin
~ MBR: Scanned in 00mn 04s
~ 1559 Legitimates filtered by white list
End of the scan (682 lines in 12mn 19s)(0)
Run by titi at 04/06/2013 05:50:35
WebSite: https://nicolascoolman.webs.com/
State : Version à jour.
WhiteList : Enable
High Elevated Privileges : OK
UAC : Activate by user
---\\ Web Browser
MSIE: Internet Explorer v10.0.9200.16580
GCIE: Google Chrome v27.0.1453.94 (Defaut)
---\\ Windows Product Information
~ Langage: Français
Windows 8 Home Premium Edition, 64-bit (Build 9200)
Windows Server License Manager Script : OK
~ ion : Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : YDTBG
Windows License : OK
~ Windows Remaining Initializations Number : 999
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
---\\ System Protection
Bitdefender Antivirus Plus 2013 v16.16.0.1349
Malwarebytes Anti-Malware version 1.75.0.1300
Windows Defender W8
---\\ System Optimizer
---\\ Peer To Peer (P2P)
eMule
---\\ Software Update
---\\ System Information
~ Processor: AMD64 Family 20 Model 2 Stepping 0, AuthenticAMD
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3658 MB (63% free)
System Restore: Activé (Enable)
System drive C: has 382 GB (85%) free of 448 GB
---\\ Logged in mode
~ Computer Name: TITIETCARLA
~ User Name: titi
~ All Users Names: titi, HomeGroupUser$, Administrateur,
~ Unselected Option: None
Logged in as Administrator
---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\titi\AppData\Roaming\
~ %Desktop% : C:\Users\titi\Desktop\
~ %Favorites% : C:\Users\titi\Favorites\
~ %LocalAppData% : C:\Users\titi\AppData\Local\
~ %StartMenu% : C:\Users\titi\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 382 Go of 448 Go)
D:\ CD-ROM drive (Free 0 Go of 4 Go)
---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
~ Security Center: 29 Legitimates Filtered in 00mn 00s
---\\ Recherche particulière de fichiers génériques
[MD5.E13A31D5254C25406A7946BDD9B06364] - (.Microsoft Corporation - Explorateur Windows.) (.11/10/2012 - 08:35:16.) -- C:\Windows\Explorer.exe [2380944]
[MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - (.Microsoft Corporation - Application de démarrage de Windows.) (.26/07/2012 - 04:08:50.) -- C:\Windows\System32\Wininit.exe [132608]
[MD5.9B9107F1486476D86B6910EDF07F4358] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.10/04/2013 - 00:17:44.) -- C:\Windows\System32\wininet.dll [2242048]
[MD5.BCF2036A0DD579E47C008C133550283E] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/10/2012 - 06:46:58.) -- C:\Windows\System32\Winlogon.exe [517120]
[MD5.9448F5740A037EC0C18F0E9177232DD0] - (.Microsoft Corporation - Bibliothèque de licences.) (.26/07/2012 - 04:07:20.) -- C:\Windows\System32\sppcomapi.dll [273408]
[MD5.36D6A3201721558A8AFBCC09C2DA4C2C] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.06/11/2012 - 04:53:44.) -- C:\Windows\system32\Drivers\AFD.sys [560640]
[MD5.A721FF570C2387E383BDDEA9632863C9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.26/07/2012 - 06:00:48.) -- C:\Windows\system32\Drivers\atapi.sys [25840]
[MD5.990B1BABE6E81FB18E65A87EBEFB1772] - (.Microsoft Corporation - CD-ROM File System Driver.) (.26/07/2012 - 03:30:10.) -- C:\Windows\system32\Drivers\Cdfs.sys [108544]
[MD5.339BFF85D788268752DA8C9644B188EE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.26/07/2012 - 03:26:36.) -- C:\Windows\system32\Drivers\Cdrom.sys [174080]
[MD5.09D9EB9E7898F8E6561473A20CC808B9] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.26/07/2012 - 03:26:53.) -- C:\Windows\system32\Drivers\DfsC.sys [118784]
[MD5.7D87B5B6C7188D553E11B59DC7F0B111] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/09/2012 - 07:08:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [71168]
[MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - (.Microsoft Corporation - Pilote de port i8042.) (.26/07/2012 - 03:28:51.) -- C:\Windows\system32\Drivers\i8042prt.sys [112640]
[MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - (.Microsoft Corporation - IP Network Address Translator.) (.26/07/2012 - 03:23:01.) -- C:\Windows\system32\Drivers\IpNat.sys [145920]
[MD5.93179D48066918323628CB016D8C94DC] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.05/02/2013 - 23:29:09.) -- C:\Windows\system32\Drivers\MRxSmb.sys [370688]
[MD5.7CEC25C682D319D484630B3952C31A11] - (.Microsoft Corporation - MBT Transport driver.) (.26/07/2012 - 03:24:28.) -- C:\Windows\system32\Drivers\netBT.sys [331776]
[MD5.76929F4A69E425911A63B407E26C2589] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.02/02/2013 - 11:54:54.) -- C:\Windows\system32\Drivers\ntfs.sys [1933544]
[MD5.4563DAF8C6A740AD7F501E219BD10766] - (.Microsoft Corporation - Pilote de port parallèle.) (.26/07/2012 - 03:29:53.) -- C:\Windows\system32\Drivers\Parport.sys [105984]
[MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.26/07/2012 - 03:23:17.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [124928]
[MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.26/07/2012 - 03:25:18.) -- C:\Windows\system32\Drivers\rdpdr.sys [179712]
[MD5.73DC722CE5DF26D7638CE2446F2655C7] - (.Microsoft Corporation - TDI Translation Driver.) (.26/07/2012 - 06:26:47.) -- C:\Windows\system32\Drivers\tdx.sys [117248]
[MD5.2FB3CDFD5EAF4CD9D4AFAF96877D13AE] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.26/07/2012 - 05:57:09.) -- C:\Windows\system32\Drivers\volsnap.sys [332016]
~ Generic Processes: Scanned in 00mn 01s
---\\ Etat des fichiers cachés (Caché/Total)
~ Mes Videos (My Videos) : 1/2
~ Mes Favoris (My Favorites) : 1/12
~ Mes Documents (My Documents) : 1/3847
~ Mon Bureau (My Desktop) : 2/211
~ Menu demarrer (Programs) : 1/28
~ Hidden Files: Scanned in 00mn 23s
---\\ Processus lancés
[MD5.D1D5DAB39DCB4BE0359943738D87409B] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [532040] [PID.3404]
[MD5.1B38F4C2BCDB133B757E22BEB61FB3FC] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe [1176176] [PID.3204]
[MD5.51C392EC9DA1119EC86D562FF3E7344F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [825808] [PID.3772]
[MD5.A3285102E7656627A53625A9138FD9AA] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7447552] [PID.1360]
~ Processes Running: Scanned in 00mn 01s
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Preferences
G2 - GCE: Preference [User Data\Default] [nfeonecgpoepapkmdgdmjolonaakdknd] Lyrics Fan v.1.112 (Désactivé) =>Adware.AddLyrics
~ Google Browser: 7 Legitimates Filtered in 00mn 16s
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s
---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s
---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Happy Lyrics [64Bits] - {59C0C5BD-2579-433A-BBB8-AFFD59642BAF} . (...) -- C:\Program Files (x86)\HappyLyrics\hppylrc.dll (.not file.)
O2 - BHO: Lyrics Fan [64Bits] - {A8720491-9558-4C0D-9E35-30EED15DFB2B} . (.FAN Software - Lyrics Fan.) -- C:\Program Files (x86)\LyricsFan\lrcfan.dll =>Adware.AddLyrics
~ BHO: 2 Legitimates Filtered in 00mn 00s
---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [Bdagent] . (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2013\bdagent.exe
O4 - HKCU\..\Run: [EADM] . (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe
O4 - HKLM\..\Wow6432Node\Run: [LManager] Clé orpheline
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKUS\S-1-5-18\..\Run: [SearchProtect] \SearchProtect\bin\cltmng.exe =>Toolbar.Conduit
O4 - HKUS\S-1-5-21-377929125-826591287-2286979282-1001\..\Run: [EADM] . (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe
~ Application: Scanned in 00mn 00s
---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop: EditPlus 3.lnk . (.ES-Computing - EditPlus.) -- C:\Program Files (x86)\EditPlus 3\editplus.exe
O4 - GS\Desktop: MiPony.lnk . (.www.mipony.net - Mipony.) -- C:\Program Files (x86)\MiPony\MiPony.exe
O4 - GS\Desktop: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) -- C:\Program Files (x86)\PhotoFiltre Studio X\pfstudiox.exe
~ Global Startup: Scanned in 00mn 00s
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpDomain = lan
O17 - HKLM\System\CCS\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpDomain = lan
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
~ Domain: Scanned in 00mn 00s
---\\ Protocole additionnel (O18)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
~ Protocole Additionnel: Scanned in 00mn 00s
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Service Software Update (Software_update (Software_update) . (...) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe (.not file.)
O23 - Service: Bitdefender Virus Shield (VSSERV) . (.Bitdefender - Bitdefender Security Service.) - C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe
~ Services: 12 Legitimates Filtered in 00mn 26s
---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Happy Lyrics Update.job [410]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Lyrics Fan Update.job [416] =>Adware.AddLyrics
[MD5.00000000000000000000000000000000] [APT] [EPUpdater] (...) -- C:\Users\titi\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe (.not file.) [0]
[MD5.65F00E976FCF8C01D5C2B5295AEC41A6] [APT] [GoforFilesUpdate] (.http://www.goforfiles.com/ -- C:\Program Files (x86)\GoforFiles\GFFUpdater.exe [364112] =>P2P.GoforFiles
[MD5.763643CE7E9C5C65405196C0AD279DFB] [APT] [Lyrics Fan Update] (.FAN Software.) -- C:\Program Files (x86)\LyricsFan\LyricsFanUpdater.exe [118272] =>Adware.AddLyrics
~ Scheduled Task: 18 Legitimates Filtered in 00mn 13s
---\\ Logiciels installés (O42)
O42 - Logiciel: GoforFiles - (.http://www.goforfiles.com/ [HKCU][64Bits] -- GoforFiles =>P2P.GoforFiles
O42 - Logiciel: Iminent - (.Iminent.) [HKLM][64Bits] -- {29C7E8BE-FBD9-4D91-BC4F-B470C718D554} =>Adware.IMBooster
O42 - Logiciel: Lyrics Fan - (.FAN Software.) [HKLM][64Bits] -- lrcfan@fansoft.br =>Adware.AddLyrics
~ Logic: 80 Legitimates Filtered in 00mn 01s
---\\ HKCU & HKLM Software Keys
[HKCU\Software\AppDataLow\Software\LyricsFan]
[HKCU\Software\BabSolution] =>Hijacker.BabSolution
[HKCU\Software\IncrediMail]
[HKLM\Software\DomaIQ] =>Toolbar.DomaIQ
[HKLM\Software\WNLT] =>Adware.IncrediBar
[HKLM\Software\Wow6432Node\GoforFiles] =>P2P.GoforFiles
~ Key Software: 153 Legitimates Filtered in 00mn 01s
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 24/05/2013 - 15:07:55 - [0] ----D C:\Program Files (x86)\FindLyrics =>Adware.AddLyrics
O43 - CFD: 04/05/2013 - 20:50:54 - [9,958] ----D C:\Program Files (x86)\GoforFiles =>P2P.GoforFiles
O43 - CFD: 24/05/2013 - 15:07:56 - [0,380] ----D C:\Program Files (x86)\LyricsFan
O43 - CFD: 04/05/2013 - 20:51:16 - [0,001] ----D C:\Users\titi\AppData\Roaming\GoforFiles =>P2P.GoforFiles
O43 - CFD: 10/01/2013 - 15:15:13 - [0,510] ----D C:\Users\titi\AppData\Roaming\lm
O43 - CFD: 01/06/2013 - 17:31:01 - [0,000] ----D C:\Users\titi\AppData\Local\supt4pc_fr_36
O43 - CFD: 24/05/2013 - 15:10:18 - [0,002] ----D C:\Users\titi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\QTRAX
~ Program Folder: 139 Legitimates Filtered in 00mn 28s
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.4B3C216E536A698F7E753D9197D2C79E] - 03/06/2013 - 20:50:31 ---A- . (...) -- C:\bdlog.txt [186426]
O44 - LFC:[MD5.A9B29973AF1FBE6DD78756FBAD9C1168] - 03/06/2013 - 18:00:22 ---A- . (...) -- C:\Windows\DeleteOnReboot.bat [290]
O44 - LFC:[MD5.C58305AC412A2DE95D461072E0AF5AAF] - 21/05/2013 - 14:31:12 ---A- . (...) -- C:\Windows\SysNative\dmwu.exe [1447728]
O44 - LFC:[MD5.C58305AC412A2DE95D461072E0AF5AAF] - 21/05/2013 - 14:31:12 RSHAD . (...) -- C:\Windows\System32\dmwu.exe [1447728]
O44 - LFC:[MD5.49BAC9565B10570CAAB89B759D2F3DEA] - 21/05/2013 - 14:30:18 ---A- . (.IncrediMail, Ltd. - IMHttpCo Dynamic Link Library.) -- C:\Windows\SysNative\ImHttpComm.dll [33792]
O44 - LFC:[MD5.49BAC9565B10570CAAB89B759D2F3DEA] - 21/05/2013 - 14:30:18 RSHAD . (.IncrediMail, Ltd. - IMHttpCo Dynamic Link Library.) -- C:\Windows\System32\ImHttpComm.dll [33792]
~ Files: 25 Legitimates Filtered in 00mn 24s
---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.544FFA254C631579C8C155032E1FE5BA] - 01/06/2013 - 12:28:16 ---A- - C:\Windows\Prefetch\NEWDEV.EXE-81B9876F.pf
O45 - LFCP:[MD5.FE389DB1CD53B93ED83BC8BB93BD2919] - 01/06/2013 - 14:15:02 ---A- - C:\Windows\Prefetch\DEVICEFASTLANEEVENT.EXE-0D33B9ED.pf
O45 - LFCP:[MD5.5002D47589FDA636C7DF1D7CF22C4208] - 01/06/2013 - 14:15:02 ---A- - C:\Windows\Prefetch\DEVICEFASTLANESVC.EXE-E86CADBF.pf
O45 - LFCP:[MD5.ED14D68AEDD5DDE67284DE778BC11F4B] - 01/06/2013 - 14:15:02 ---A- - C:\Windows\Prefetch\DEVICEFASTLANEUI.EXE-CF5A78A9.pf
O45 - LFCP:[MD5.5C5A8B9AC5792160C77D00A12EDC2AC8] - 01/06/2013 - 16:31:03 ---A- - C:\Windows\Prefetch\MAJTUTO4PC_FR_36.EXE-0A63F850.pf =>PUP.Eorezo
O45 - LFCP:[MD5.C0543A64FB5E38805B3FB0E8EE3644BB] - 01/06/2013 - 16:31:03 ---A- - C:\Windows\Prefetch\MAJTUTO4PC_FR_36.TMP-20F35518.pf =>PUP.Eorezo
O45 - LFCP:[MD5.C67EE4F5BC05288C4405711F6D68AF4E] - 01/06/2013 - 16:31:12 ---A- - C:\Windows\Prefetch\SUPT4PC_FR_36.EXE-3AD69583.pf
O45 - LFCP:[MD5.2AF88FB357DDB24D6B09B03DAC70CDCC] - 02/06/2013 - 10:11:33 ---A- - C:\Windows\Prefetch\SERVICES X86-CODEDOWNLOADER.E-5CB7B0A2.pf =>PUP.CrossRider
O45 - LFCP:[MD5.5BF412C1614B3E1F4003CF5824B82613] - 02/06/2013 - 10:11:38 ---A- - C:\Windows\Prefetch\SERVICES X86-BG.EXE-A1ADF25D.pf =>PUP.CrossRider
O45 - LFCP:[MD5.1BC7C51E828BBB923F20DFB1FB3773F3] - 02/06/2013 - 10:12:28 ---A- - C:\Windows\Prefetch\ONLINETRACKSAUTOUPDATEHELPER.-067E39E0.pf
O45 - LFCP:[MD5.C0B031D0E1182C6B95A94E547E26345D] - 02/06/2013 - 11:07:51 ---A- - C:\Windows\Prefetch\CLTMNG.EXE-E14AC8B0.pf
O45 - LFCP:[MD5.9615408B72795C767CB4C66D17D5E92F] - 02/06/2013 - 11:08:34 ---A- - C:\Windows\Prefetch\THCH.EXE-95900F79.pf
O45 - LFCP:[MD5.69E7F4D518FFB3A005C93EBE01076558] - 02/06/2013 - 11:09:07 ---A- - C:\Windows\Prefetch\DMWU.EXE-AA7A778B.pf
O45 - LFCP:[MD5.33D53CF71C5E472D71FC1EC302268DAD] - 02/06/2013 - 12:28:04 ---A- - C:\Windows\Prefetch\XTREMSPLIT.EXE-29D81664.pf
O45 - LFCP:[MD5.B46115C88F6AC2DC85A9EA2BF8FDC47E] - 02/06/2013 - 17:33:21 ---A- - C:\Windows\Prefetch\LIVECOMM.EXE-F1928578.pf
O45 - LFCP:[MD5.12E43C5EF1461C3FFADFE277AE6971F3] - 02/06/2013 - 17:52:15 ---A- - C:\Windows\Prefetch\PFSX-SETUP-01NET-10.7.3.EXE-1E09C780.pf
O45 - LFCP:[MD5.E16201FAA4053C36CDE4DAA05242D4A0] - 02/06/2013 - 17:53:19 ---A- - C:\Windows\Prefetch\PFSX-SETUP-01NET-10.7.3 [1].E-92A621F5.pf
O45 - LFCP:[MD5.C3CC7254BCB98089A795CE84BB1FC1F3] - 03/06/2013 - 14:29:02 ---A- - C:\Windows\Prefetch\SWEETIM.EXE-8F50D9C0.pf =>PUP.SweetIM
O45 - LFCP:[MD5.F282AA9F60B2BACD815B827478591388] - 03/06/2013 - 15:44:38 ---A- - C:\Windows\Prefetch\BROWSERPROTECT.EXE-6CD41A66.pf =>Hijacker.Eazel
O45 - LFCP:[MD5.20DAFA055706062BD783B35607F497EF] - 03/06/2013 - 16:45:00 ---A- - C:\Windows\Prefetch\SOFTWARECRASHHANDLER.EXE-5F240164.pf
O45 - LFCP:[MD5.20ACCDF0D9F06C4FD346017DD5C8379A] - 03/06/2013 - 16:45:34 ---A- - C:\Windows\Prefetch\CLTMNG.EXE-76C32FCE.pf
O45 - LFCP:[MD5.E5C39EF2F9F11B8BFEAB2760438E0704] - 03/06/2013 - 16:45:39 ---A- - C:\Windows\Prefetch\SWEETPACKSUPDATEMANAGER.EXE-4BA95FDA.pf =>PUP.SweetIM
O45 - LFCP:[MD5.F922D0C49732C267E04CE2F78418FA9C] - 03/06/2013 - 16:45:56 ---A- - C:\Windows\Prefetch\BOXORE.EXE-666CD123.pf =>Adware.Boxore
O45 - LFCP:[MD5.CFFA0B2E61C414B42C16F0B9E8196773] - 03/06/2013 - 16:45:56 ---A- - C:\Windows\Prefetch\TUTO4PC_FR_33.EXE-23A169E9.pf =>PUP.Eorezo
O45 - LFCP:[MD5.C05DD4A5F54EF0BC886674DF429E188A] - 03/06/2013 - 16:46:06 ---A- - C:\Windows\Prefetch\IMINENT.EXE-DDB5429B.pf =>Adware.IMBooster
O45 - LFCP:[MD5.755869F11E17145FD207960C32710621] - 03/06/2013 - 16:46:06 ---A- - C:\Windows\Prefetch\IMINENT.MESSENGERS.EXE-71459735.pf =>Adware.IMBooster
O45 - LFCP:[MD5.1FE71EF73460486F331E599426563A96] - 03/06/2013 - 16:46:06 ---A- - C:\Windows\Prefetch\TUTO4PC_FR_36.EXE-39BEC677.pf =>PUP.Eorezo
O45 - LFCP:[MD5.B10850F06ACC68E8A908626F7A958FEF] - 03/06/2013 - 16:48:17 ---A- - C:\Windows\Prefetch\UPT4PC_FR_33.EXE-4CCFACC6.pf
O45 - LFCP:[MD5.E929AF80F6E8F7FBE9F6FF7892A63642] - 03/06/2013 - 17:12:24 ---A- - C:\Windows\Prefetch\OBK.EXE-78D4C9CC.pf
O45 - LFCP:[MD5.3D0061D0BD8EC1A143E6FB1347C816BA] - 03/06/2013 - 17:12:24 ---A- - C:\Windows\Prefetch\OBKCH.EXE-631D1C6B.pf
O45 - LFCP:[MD5.C419AD0058D882ABF053D7EAD55591B9] - 03/06/2013 - 19:08:48 ---A- - C:\Windows\Prefetch\INSTALLER.EXE-2DA55FD2.pf
O45 - LFCP:[MD5.760F3E7ABA9E004034EFE40F2DA9C25C] - 04/06/2013 - 04:35:03 ---A- - C:\Windows\Prefetch\DKRUN32.EXE-8583E6AC.pf
O45 - LFCP:[MD5.161474F1A47CA2424365969DE5427BEF] - 04/06/2013 - 04:35:12 ---A- - C:\Windows\Prefetch\LMUTILPS32.EXE-9827F12C.pf
O45 - LFCP:[MD5.C69E7F36E05AEE1E18F9ED3899EDF3BC] - 04/06/2013 - 04:48:11 ---A- - C:\Windows\Prefetch\BDADDMTASK.EXE-C9B44295.pf
O45 - LFCP:[MD5.49FB49D76C207AEA0C447AEABFED2912] - 05/05/2013 - 20:52:21 ---A- - C:\Windows\Prefetch\EF16.TMP-140FD8DA.pf
O45 - LFCP:[MD5.07430DC28243B4F0194BF2412650BFBB] - 06/05/2013 - 21:08:05 ---A- - C:\Windows\Prefetch\408F.TMP-B8A4520A.pf
O45 - LFCP:[MD5.9AA3B0D7721CF49F60CD951128C0F55E] - 07/05/2013 - 22:08:05 ---A- - C:\Windows\Prefetch\89EB.TMP-75AC7AA0.pf
O45 - LFCP:[MD5.38B0717FF46465A7481CCA8657A3FC7C] - 08/05/2013 - 10:04:14 ---A- - C:\Windows\Prefetch\EBAY2.EXE-E3201D7D.pf
O45 - LFCP:[MD5.E49D0ACE7F3ACE46B13F024D97FE8AD7] - 08/05/2013 - 11:41:27 ---A- - C:\Windows\Prefetch\GOOGLEEARTH-WIN-BUNDLE-7.1.1.-C5A3FDA1.pf
O45 - LFCP:[MD5.D7DD0C333E2ED2A8DE66A97EF859869F] - 08/05/2013 - 17:43:13 ---A- - C:\Windows\Prefetch\EXTCONVERTER.EXE-B7C2FB1C.pf
O45 - LFCP:[MD5.E05B6175E537CA84E832713600F8EC24] - 08/05/2013 - 23:08:06 ---A- - C:\Windows\Prefetch\D5A9.TMP-3D9AC747.pf
O45 - LFCP:[MD5.0C301C19BE15EE20C5089E2DDD859933] - 10/05/2013 - 07:24:10 ---A- - C:\Windows\Prefetch\D153.TMP-043CDC79.pf
O45 - LFCP:[MD5.2C3FA4F582EA4B6077C8F94434A6E4BA] - 11/05/2013 - 15:53:12 ---A- - C:\Windows\Prefetch\E205.TMP-87507CF4.pf
O45 - LFCP:[MD5.D1035FA61B3C7766B70F922F2BFF69F8] - 12/05/2013 - 16:53:17 ---A- - C:\Windows\Prefetch\2F49.TMP-902CBE09.pf
O45 - LFCP:[MD5.C87C8B381A692026B2B076264390C29C] - 13/05/2013 - 16:56:48 ---A- - C:\Windows\Prefetch\SECONDSTEPINSTALLER.EXE-108A081B.pf
O45 - LFCP:[MD5.B1956B5A941C4334B5BCBF80AC2E34DC] - 13/05/2013 - 16:57:09 ---A- - C:\Windows\Prefetch\CLTMNGSVC.EXE-28758A2C.pf
O45 - LFCP:[MD5.E8CF76B56B1FB8D4543F7645255FF724] - 13/05/2013 - 16:57:09 ---A- - C:\Windows\Prefetch\SPRUNNER.EXE-9EF706D7.pf
O45 - LFCP:[MD5.226F089D334D886A1D0088053DF88E02] - 17/05/2013 - 11:49:17 ---A- - C:\Windows\Prefetch\LAUNCHTM.EXE-B444BC8E.pf
O45 - LFCP:[MD5.DE5DBE07F8B766BCB7BD67753DDD1DCA] - 18/05/2013 - 08:54:54 ---A- - C:\Windows\Prefetch\EMULE.EXE-6F3A59E3.pf
O45 - LFCP:[MD5.6D9D3012C0721273C9E5FC11B429EFFD] - 20/05/2013 - 11:49:02 ---A- - C:\Windows\Prefetch\AUTORUN.EXE-D28490C2.pf
O45 - LFCP:[MD5.A88B6321E7D33EB241CA8E972013DBE9] - 23/05/2013 - 17:47:29 ---A- - C:\Windows\Prefetch\27.0.1453.94_26.0.1410.64_CHR-A30B2727.pf
O45 - LFCP:[MD5.CD369C1CB1CD71CA264039528C64E7A1] - 23/05/2013 - 17:54:57 ---A- - C:\Windows\Prefetch\GENPTCH.EXE-022E2611.pf
O45 - LFCP:[MD5.72EF240BA6A178B2F1E856A8D0B515BD] - 24/05/2013 - 14:06:44 ---A- - C:\Windows\Prefetch\MIPONY-INSTALLER.EXE-BCB9BF1E.pf
O45 - LFCP:[MD5.C5882B7530EE60B0A312147F056D625B] - 24/05/2013 - 14:06:45 ---A- - C:\Windows\Prefetch\MIPONY-INSTALLER-1.EXE-8FD2B1B6.pf
O45 - LFCP:[MD5.00586B566249BBFF8A491B99D8ACE5F0] - 24/05/2013 - 14:07:29 ---A- - C:\Windows\Prefetch\DELTATB.EXE-ECF6B948.pf =>Toolbar.DeltaSearch
O45 - LFCP:[MD5.271631FCA25926079C88CFCF43503DBF] - 24/05/2013 - 14:07:29 ---A- - C:\Windows\Prefetch\FINDLYRICS.EXE-CD7FD79B.pf =>Adware.AddLyrics
O45 - LFCP:[MD5.7B3A808A0EDEA285FED5C1D6AF1F05C5] - 24/05/2013 - 14:07:29 ---A- - C:\Windows\Prefetch\QTRAXINSTALLER.EXE-A1B755C6.pf
O45 - LFCP:[MD5.BD979DC3F85F5CCCEECF86B0213F0BC4] - 24/05/2013 - 14:07:39 ---A- - C:\Windows\Prefetch\TUTO4PC_SETUP_FR.EXE-6483E602.pf =>PUP.Eorezo
O45 - LFCP:[MD5.86C73447615416C5D0DCA48F8AF11291] - 24/05/2013 - 14:07:40 ---A- - C:\Windows\Prefetch\TUTO4PC_SETUP_FR.TMP-872FC7DB.pf =>PUP.Eorezo
O45 - LFCP:[MD5.A112D95494BA1CC3B2EDF2FC79523B28] - 24/05/2013 - 14:08:36 ---A- - C:\Windows\Prefetch\FLCSUP.EXE-7EA4384E.pf
O45 - LFCP:[MD5.669E3E356AB5699C1BA116C19254D091] - 24/05/2013 - 14:08:36 ---A- - C:\Windows\Prefetch\FLCSUR.EXE-1E2A4401.pf
O45 - LFCP:[MD5.78136E57CA1F007F9C300CDDE7ECDC1C] - 24/05/2013 - 19:28:05 ---A- - C:\Windows\Prefetch\BOXORE.EXE-A2201CC7.pf =>Adware.Boxore
O45 - LFCP:[MD5.CD03C75BBE6EB84A9681626F789F6CFE] - 24/05/2013 - 19:28:05 ---A- - C:\Windows\Prefetch\BOXOREINSTALLER.EXE-B14E3636.pf =>Adware.Boxore
O45 - LFCP:[MD5.EA8BAF0AE6A3117F187D29205C749F75] - 24/05/2013 - 19:28:05 ---A- - C:\Windows\Prefetch\DELTA BABYLON.EXE-93D592F1.pf =>Toolbar.Babylon
O45 - LFCP:[MD5.8378CCE1B6D21B8612AB0278805E413E] - 24/05/2013 - 19:28:27 ---A- - C:\Windows\Prefetch\SCS.EXE-B1CF88FC.pf
O45 - LFCP:[MD5.A952095CE2D603180F8F425E4774BD78] - 24/05/2013 - 19:31:26 ---A- - C:\Windows\Prefetch\DELTATB.EXE-F5CC058A.pf =>Toolbar.DeltaSearch
O45 - LFCP:[MD5.ABDA98E6409604677740913D7F1E2D9D] - 24/05/2013 - 19:31:52 ---A- - C:\Windows\Prefetch\DELTA4FFX.EXE-8CE04256.pf
O45 - LFCP:[MD5.1B284122D956F2DDEB20350F542B5B69] - 24/05/2013 - 19:31:54 ---A- - C:\Windows\Prefetch\DELTA4IE.EXE-0E3E6180.pf
O45 - LFCP:[MD5.4EA4D77A6A9EB1EC2D1DF2601AF70646] - 24/05/2013 - 19:31:54 ---A- - C:\Windows\Prefetch\DELTASRV.EXE-D503A767.pf
O45 - LFCP:[MD5.934DC397ACDA08B2252AD7CF9010180E] - 24/05/2013 - 19:31:54 ---A- - C:\Windows\Prefetch\MYBABYLONTB.EXE-93E7D2B5.pf =>Toolbar.Babylon
O45 - LFCP:[MD5.1CAF5817F94429D20E0CA535CF3195B1] - 24/05/2013 - 19:31:55 ---A- - C:\Windows\Prefetch\BPROTECT.EXE-87C554E2.pf
O45 - LFCP:[MD5.78BCEC0D52B71656B0EAB24A66442FAB] - 24/05/2013 - 19:32:15 ---A- - C:\Windows\Prefetch\PUSH.EXE-3E49F76A.pf
O45 - LFCP:[MD5.ADF83C3F239CC0433D2AF18FC2BD8214] - 24/05/2013 - 19:32:15 ---A- - C:\Windows\Prefetch\WEBPLAYER.EXE-78EFCF68.pf
O45 - LFCP:[MD5.653B7267DB936DA0CA834E55E6FBFB6C] - 24/05/2013 - 19:49:03 ---A- - C:\Windows\Prefetch\IMINENT.EXE-577869DE.pf =>Adware.IMBooster
O45 - LFCP:[MD5.042873233A0167E6654B42A24894BF32] - 24/05/2013 - 19:49:03 ---A- - C:\Windows\Prefetch\UMBRELLA.EXE-0B44C393.pf
O45 - LFCP:[MD5.467A9234D40DC21EB1510AA8066792F9] - 25/05/2013 - 09:08:40 ---A- - C:\Windows\Prefetch\RESTORE.EXE-FF5AC776.pf
O45 - LFCP:[MD5.22FAFA9906A8732B817F9985EBBBF9BE] - 25/05/2013 - 09:08:53 ---A- - C:\Windows\Prefetch\GAMECONSOLE-4.0.23.8-TO-4.0.2-F4C8D955.pf
O45 - LFCP:[MD5.281093E0BC83905C3199185AEA04D5AD] - 25/05/2013 - 09:08:56 ---A- - C:\Windows\Prefetch\PATCH_5272.EXE-E7CE1F9C.pf
O45 - LFCP:[MD5.4197FDC913E529768D74DD0F4C2AF39C] - 25/05/2013 - 09:08:59 ---A- - C:\Windows\Prefetch\BSDIFF_PATCH.EXE-5CB3380C.pf
O45 - LFCP:[MD5.E259C5F6AF4DC238E9B54B64A4FEC215] - 25/05/2013 - 09:09:24 ---A- - C:\Windows\Prefetch\PARK-{A115BE37-90C1-4DED-AE63-889CBF58.pf
O45 - LFCP:[MD5.6A5AEF1A158F2B9011A6E05BCE11F836] - 25/05/2013 - 09:09:58 ---A- - C:\Windows\Prefetch\INSTALLTOUCHPOINTS-PACKARDBEL-7C530842.pf
O45 - LFCP:[MD5.F8619C677BA8092F03AEC95338673667] - 25/05/2013 - 09:10:00 ---A- - C:\Windows\Prefetch\INSTALLTOUCHPOINTS-PACKARDBEL-AFC6D3BC.pf
O45 - LFCP:[MD5.B7A88DF1918D5484D6599ACD77E7F272] - 25/05/2013 - 09:11:15 ---A- - C:\Windows\Prefetch\GAME.DAT-81362BDD.pf
O45 - LFCP:[MD5.38C0A1A3FE4E5C3D2FB089EC161A2066] - 25/05/2013 - 09:11:17 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-FB09BA72.pf
O45 - LFCP:[MD5.655BD6B0252A5046DD1DCC4349BA22E8] - 25/05/2013 - 09:11:18 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-2939A083.pf
O45 - LFCP:[MD5.9E3A5A16088A82064D01ED157633AF43] - 25/05/2013 - 09:11:19 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-2C4BEB3D.pf
O45 - LFCP:[MD5.5C38B831EBE84492703E1DA179F75970] - 25/05/2013 - 09:11:23 ---A- - C:\Windows\Prefetch\GAME.DAT-99D9B6CB.pf
O45 - LFCP:[MD5.2243FA7E08ED2DF592F2CFFF04B3BA28] - 25/05/2013 - 09:11:24 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-7984D480.pf
O45 - LFCP:[MD5.5A3992588D55F07CBF5124BB4F8C85F2] - 25/05/2013 - 09:11:25 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-4FFBD3A1.pf
O45 - LFCP:[MD5.3F369D37E710347753C83E46AB30C900] - 25/05/2013 - 09:11:27 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-A0B5A03B.pf
O45 - LFCP:[MD5.FF952168DF22C9CAF7271FF3A7BEB366] - 25/05/2013 - 09:11:30 ---A- - C:\Windows\Prefetch\GAME.DAT-5B81F525.pf
O45 - LFCP:[MD5.25A36AB10FEE5380553F19313FDC9474] - 25/05/2013 - 09:11:31 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-7FC4F73A.pf
O45 - LFCP:[MD5.A05D18A25E190E1BB3B77A924182039D] - 25/05/2013 - 09:11:33 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-016D910B.pf
O45 - LFCP:[MD5.FBC09CE13D831BC31E58178242C45522] - 25/05/2013 - 09:11:33 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-3DA5A445.pf
O45 - LFCP:[MD5.647EAFC4F4C8D61B1237720386F87985] - 25/05/2013 - 09:11:37 ---A- - C:\Windows\Prefetch\GAME.DAT-BD04FDA4.pf
O45 - LFCP:[MD5.3F6174AB8D21426F7A25112700D48774] - 25/05/2013 - 09:11:38 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-070F5EC9.pf
O45 - LFCP:[MD5.2E9481D50F0B885CD2B67C5CEC05A8A1] - 25/05/2013 - 09:11:40 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-C7677AE2.pf
O45 - LFCP:[MD5.E1D21EF0881588702E8E3B50D46CD1B0] - 25/05/2013 - 09:11:41 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-5911138C.pf
O45 - LFCP:[MD5.C848726EE56AD12F23DCC315DC045B4B] - 25/05/2013 - 09:11:45 ---A- - C:\Windows\Prefetch\GAME.DAT-A4F42E3B.pf
O45 - LFCP:[MD5.65362D89DA95E5646BDA073FB7D8DE95] - 25/05/2013 - 09:11:46 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-B499C4F0.pf
O45 - LFCP:[MD5.8AF448DF827DB977DD76AA32A92BBE74] - 25/05/2013 - 09:11:48 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-4D108C91.pf
O45 - LFCP:[MD5.EFF96CEA5AE361A5CE7892D880112561] - 25/05/2013 - 09:11:50 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-6E38682B.pf
O45 - LFCP:[MD5.4675E17B6A5A91BA069D962E86EA0146] - 25/05/2013 - 09:11:52 ---A- - C:\Windows\Prefetch\GAME.DAT-6E3D9CE4.pf
O45 - LFCP:[MD5.5BD941009595EE29DBAA17A05AD601B9] - 25/05/2013 - 09:11:54 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-E6EB4A09.pf
O45 - LFCP:[MD5.D9A3B25D0FB1768FAFC6C4EC16A1E883] - 25/05/2013 - 09:11:55 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-D1431C22.pf
O45 - LFCP:[MD5.C34A039BD4A24AA18E7B5EFCD1E143FD] - 25/05/2013 - 09:11:56 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-54D4C8CC.pf
O45 - LFCP:[MD5.3B0208E90580898F3ECDBA1DCFA90EFC] - 25/05/2013 - 09:11:59 ---A- - C:\Windows\Prefetch\GAME.DAT-6D4FF778.pf
O45 - LFCP:[MD5.18E0E4A07C199B51636111B29F62E509] - 25/05/2013 - 09:12:01 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-D52A6F5D.pf
O45 - LFCP:[MD5.A663D9F71607AE083DFE4167C3EF2B69] - 25/05/2013 - 09:12:03 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-5787CFD6.pf
O45 - LFCP:[MD5.9B719770CDAA4A906B7C137F99A1242B] - 25/05/2013 - 09:12:03 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-13D697C0.pf
O45 - LFCP:[MD5.2B8D612199A2F41EFB8BA34708135C49] - 25/05/2013 - 09:12:08 ---A- - C:\Windows\Prefetch\GAME.DAT-7DB2A8FE.pf
O45 - LFCP:[MD5.34980EDFC2E0951FBBB43B653744EDA5] - 25/05/2013 - 09:12:09 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-46231E83.pf
O45 - LFCP:[MD5.189D766FCF94721222E0589453390165] - 25/05/2013 - 09:12:11 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-5C382D4C.pf
O45 - LFCP:[MD5.4CE2E76AADEF1F9BCF4EE12C2518AA58] - 25/05/2013 - 09:12:13 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-16875C96.pf
O45 - LFCP:[MD5.770058F9DAFCE24931F450EE7835E825] - 25/05/2013 - 09:12:16 ---A- - C:\Windows\Prefetch\GAME.DAT-CD5E4B56.pf
O45 - LFCP:[MD5.B292AFD47E4E19F38A0B0B842C086BC3] - 25/05/2013 - 09:12:18 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-F0BB335B.pf
O45 - LFCP:[MD5.714D74D97F64DCF144223F07918BED6D] - 25/05/2013 - 09:12:18 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-3B8F8964.pf
O45 - LFCP:[MD5.04E33948513CFA3C6C7563B6E06C8E8D] - 25/05/2013 - 09:12:20 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-A624BA2E.pf
O45 - LFCP:[MD5.71FD8F43587116742CDC4F52728B8431] - 25/05/2013 - 09:12:23 ---A- - C:\Windows\Prefetch\GAME.DAT-2F027DE4.pf
O45 - LFCP:[MD5.6D18D7B179D654FC5ABA1BCC579EAFCE] - 25/05/2013 - 09:12:24 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-E1DB1B09.pf
O45 - LFCP:[MD5.1AD8313B24A41C6E43B3E409F31619B6] - 25/05/2013 - 09:12:25 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-06ADA522.pf
O45 - LFCP:[MD5.E1EFF9D9489FA65BE1FB9F2375177E9B] - 25/05/2013 - 09:12:26 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-AEFFE1CC.pf
O45 - LFCP:[MD5.3AF3C52B408EADCD5F4C39BDD5A3979D] - 25/05/2013 - 09:12:33 ---A- - C:\Windows\Prefetch\GAME.DAT-1AE68EC5.pf
O45 - LFCP:[MD5.C71798E442E03BD98BEEF4688B8EE29B] - 25/05/2013 - 09:12:34 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-363096DA.pf
O45 - LFCP:[MD5.5F1258ACDD816E56374C8A25247734F1] - 25/05/2013 - 09:12:35 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-3A083BAB.pf
O45 - LFCP:[MD5.886B35B34BD32EEAA760C4509BA942DC] - 25/05/2013 - 09:12:36 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-6AF1F8E5.pf
O45 - LFCP:[MD5.C7F7CB2FC92B8550474BBE0259C85D8D] - 25/05/2013 - 09:12:39 ---A- - C:\Windows\Prefetch\GAME.DAT-115D29C5.pf
O45 - LFCP:[MD5.DFDDE0B1E21FA6B39EB835C6A7E72650] - 25/05/2013 - 09:12:40 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-9BE081DA.pf
O45 - LFCP:[MD5.12E920F466BED6A77EC496B713123EE9] - 25/05/2013 - 09:12:41 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-1B1A8EAB.pf
O45 - LFCP:[MD5.6A774803E5A4CF5A140BAAD0A6605581] - 25/05/2013 - 09:12:42 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-BEB17BE5.pf
O45 - LFCP:[MD5.787AF77FD2D52A7BB44F86DDBD20E483] - 25/05/2013 - 09:12:45 ---A- - C:\Windows\Prefetch\GAME.DAT-DF91F6B8.pf
O45 - LFCP:[MD5.1706A871C02C91A2B7064652CBFB891C] - 25/05/2013 - 09:12:47 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-7FD9BA9D.pf
O45 - LFCP:[MD5.0A37B3F8840238F98BD0888E8D3A09C6] - 25/05/2013 - 09:12:47 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-F553D116.pf
O45 - LFCP:[MD5.F568B559B77AD16945B4199534C52882] - 25/05/2013 - 09:12:49 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-2390AD00.pf
O45 - LFCP:[MD5.2D0EF50A32A380257434BF348D2CCE46] - 25/05/2013 - 09:12:53 ---A- - C:\Windows\Prefetch\GAME.DAT-BF3AB286.pf
O45 - LFCP:[MD5.D6207E9E0D60749A017EC831A99F2690] - 25/05/2013 - 09:12:55 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-C7BCD78B.pf
O45 - LFCP:[MD5.40DDEF76DE0AE20D246AFE095A48C38C] - 25/05/2013 - 09:12:56 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-3B9F0814.pf
O45 - LFCP:[MD5.6E1DB98C118C859C6AFD9BD54716C7F4] - 25/05/2013 - 09:12:56 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-6688A3DE.pf
O45 - LFCP:[MD5.8DF1C5151721A402AB641CFF5313141D] - 25/05/2013 - 09:13:00 ---A- - C:\Windows\Prefetch\GAME.DAT-E61BDEC7.pf
O45 - LFCP:[MD5.AD47ED4E3579D7625FEB90C23DF7E1F9] - 25/05/2013 - 09:13:02 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-EB1A18BC.pf
O45 - LFCP:[MD5.97F8AB8B527C0E49886E2CBB1E5DFDF5] - 25/05/2013 - 09:13:04 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-6BB970FD.pf
O45 - LFCP:[MD5.9C639C707402AFC7601DB14959A9D706] - 25/05/2013 - 09:13:05 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-3628B357.pf
O45 - LFCP:[MD5.E7331A75D3864F29A94420A422497BC7] - 25/05/2013 - 09:19:28 ---A- - C:\Windows\Prefetch\UNINST.EXE-8144BB14.pf
O45 - LFCP:[MD5.4DDC8713629FE50230F5656A12481F68] - 25/05/2013 - 09:20:46 ---A- - C:\Windows\Prefetch\{311739EB-5C94-4EE1-B911-2D1F-A7944CFD.pf
O45 - LFCP:[MD5.32926298C53D6103587131F0DB5B6B72] - 25/05/2013 - 09:23:01 ---A- - C:\Windows\Prefetch\DIFXINST64.EXE-C8C2E3F2.pf
O45 - LFCP:[MD5.064A007098D4AA2298E1D5A849234381] - 25/05/2013 - 09:25:54 ---A- - C:\Windows\Prefetch\PCSPEEDMAXIMIZER.EXE-60BA47FF.pf
O45 - LFCP:[MD5.29F6694245486FD4E071183DF08243CC] - 25/05/2013 - 09:27:15 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-A6D3D8CE.pf
O45 - LFCP:[MD5.7BA48C64314144B122826BFDE062CA8B] - 25/05/2013 - 13:06:28 ---A- - C:\Windows\Prefetch\EPP351.EXE-1771E43E.pf
O45 - LFCP:[MD5.F539CD1FAE2945C438B3C089A95344B7] - 25/05/2013 - 13:06:44 ---A- - C:\Windows\Prefetch\SETUP_EP.EXE-3A40447D.pf
O45 - LFCP:[MD5.07BD500E0DB89ADACB263338C1F229BF] - 25/05/2013 - 13:07:06 ---A- - C:\Windows\Prefetch\EPPSHELLREG.EXE-E4E0A343.pf
O45 - LFCP:[MD5.607980492A9A866FF6789B08FCCC3E3E] - 26/05/2013 - 19:49:43 ---A- - C:\Windows\Prefetch\STARTME.EXE-DB3CA801.pf
O45 - LFCP:[MD5.8F87A7969FDFC64149DE6458F185E984] - 26/05/2013 - 19:49:50 ---A- - C:\Windows\Prefetch\STARTME.EXE-24BFBA28.pf
O45 - LFCP:[MD5.9F6AD1A21DA3704AB1A9D654F64D0E3A] - 27/05/2013 - 15:57:35 ---A- - C:\Windows\Prefetch\MAJT4PCFR.EXE-92413E55.pf
O45 - LFCP:[MD5.19C9205DFF638E923081E1740246802A] - 27/05/2013 - 15:57:36 ---A- - C:\Windows\Prefetch\MAJT4PCFR.TMP-F0B20247.pf
O45 - LFCP:[MD5.E0013755A07E5FF592204BF4BF724C06] - 27/05/2013 - 17:07:45 ---A- - C:\Windows\Prefetch\50D1D9D5-CF90-407C-820A-35E05-FA169CE8.pf
O45 - LFCP:[MD5.5E27B70F72A43C009D048F4E7A776D4D] - 27/05/2013 - 17:07:45 ---A- - C:\Windows\Prefetch\INST.EXE-9EEFFBF4.pf
O45 - LFCP:[MD5.088D7CC877E665802332C041604B88C2] - 27/05/2013 - 17:08:36 ---A- - C:\Windows\Prefetch\HAPPYLYRICS_2204-E2F0CCE3.EXE-C98C41D1.pf
~ Prefetcher: 467 Legitimates Filtered in 00mn 07s
---\\ MountPoints2 Shell Key (O51)
O51 - MPSK:{8577740d-fb99-11e1-be6a-806e6f6e6963}\AutoRun\command. (.Electronic Arts - Autorun Application.) -- D:\Autorun.exe
O51 - MPSK:{aa6b18d3-c5f0-11e2-bf7e-4c72b993ea23}\AutoRun\command. (...) -- E:\Startme.exe (.not file.)
~ Keys: Scanned in 00mn 04s
---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLinkedConnections"=1
~ MWPS: 18 Legitimates Filtered in 00mn 00s
---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
~ MWPE Keys: 3 Legitimates Filtered in 00mn 00s
---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.4F18D4C7EA14F11A7211F60D553C03DB] - 26/07/2012 - 06:00:49 ---A- . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\Drivers\3ware.sys [106736]
~ Drivers: Scanned in 00mn 00s
---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 01/06/2013 - 14:26:04 ---A- C:\Users\titi\Links\Desktop.lnk [485]
O61 - LFC: 01/06/2013 - 14:26:04 ---A- C:\Users\titi\Links\Downloads.lnk [936]
O61 - LFC: 01/06/2013 - 14:26:04 ---A- C:\Users\titi\Links\RecentPlaces.lnk [383]
O61 - LFC: 01/06/2013 - 16:31:01 ---A- C:\Users\titi\AppData\Local\supt4pc_fr_36\supt4pc_fr_36\update.cyl [59]
O61 - LFC: 02/06/2013 - 12:27:03 ---A- C:\Users\titi\Downloads\Xtremsplit.exe [305664]
O61 - LFC: 02/06/2013 - 17:50:39 ---A- C:\Users\titi\Downloads\pfsx-setup-01net-10.7.3.exe [667016]
O61 - LFC: 02/06/2013 - 17:52:06 ---A- C:\Users\titi\Downloads\pfsx-setup-01net-10.7.3 [1].exe [11103194]
O61 - LFC: 02/06/2013 - 17:53:47 --H-- C:\Users\titi\AppData\Roaming\Identities\{46504E63-3636-3932-3430-313231346154}\1pac4612.1c16 [45]
O61 - LFC: 03/06/2013 - 18:44:42 ---A- C:\Users\titi\Downloads\mbam-setup-1.75.0.1300.exe [10285040]
O61 - LFC: 04/06/2013 - 04:42:28 ---A- C:\Users\titi\AppData\Local\Google\Chrome\User Data\Certificate Revocation Lists [267278]
O61 - LFC: 04/06/2013 - 04:52:39 ---A- C:\Users\titi\AppData\Local\Google\Chrome\User Data\Local State [33964]
~ 4 Fichiers temporaires (Temporary files)
~ Files: 221 Legitimates Filtered in 00mn 38s
---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ ADS: Scanned in 00mn 00s
---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Not Key.)
~ FASS Keys: 19 Legitimates Filtered in 00mn 00s
---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s
---\\ Search Browser Infection (O69)
O69 - SBI: SearchScopes [HKCU] {210B6304-3A0E-4461-A148-41B64243E380} - (onlinetracks Customized Web Search) - http://search.conduit.com
~ Keys: Scanned in 00mn 00s
---\\ Recherche particuliere à la racine de certains dossiers (O84)
[MD5.A48B88F84CB703FF667295A2E5B363E4] [SPRF][11/03/2013] (...) -- C:\ProgramData\1362990986.bdinstall.bin [1872498]
[MD5.32DCED18FFFEA0035E4FA975CA0AE8BE] [SPRF][22/04/2013] (.The Software Group - Software Update Setup.) -- C:\Users\titi\AppData\Local\Temp\BoxoreInstaller.exe [620656] =>Adware.Boxore
[MD5.602AE45EEB85FCE002C2BD541F5E3F89] [SPRF][11/01/2013] (.Conduit - Pas de description.) -- C:\Users\titi\AppData\Local\Temp\conduitinstaller.exe [86080] =>Toolbar.Conduit
[MD5.735C5AB0106E929C5616B49954FFF0EE] [SPRF][24/05/2013] (.Pas de propriétaire - Lyrics Fan.) -- C:\Users\titi\AppData\Local\Temp\flcsup.exe [280921] =>Adware.AddLyrics
[MD5.F6278B5A16F830885B184D5F72E1B935] [SPRF][04/05/2013] (.Terra Informatica Software, Inc., British C - HTMLayout - embeddable HTML rendering and layout component.) -- C:\Users\titi\AppData\Local\Temp\htmlayout.dll [947200]
[MD5.8A4AF3B0695F29186AD02E2FD766FA3B] [SPRF][11/01/2013] (.SweetIM Technologies Ltd. - SQLite DLL.) -- C:\Users\titi\AppData\Local\Temp\mgsqlite3.dll [393016] =>PUP.SweetIM
[MD5.F4E3DE7B4898E37652F39A06BC9591E3] [SPRF][08/05/2013] (.Conduit - Search Protect by Conduit.) -- C:\Users\titi\AppData\Local\Temp\SecondStepInstaller.exe [2824352] =>Toolbar.Conduit
[MD5.D9DA3FDE1AEE64CEE57D4C57A538A53B] [SPRF][22/10/2012] (.SweetIM Technologies Ltd. - SweetIM Installer by SweetPacks.) -- C:\Users\titi\AppData\Local\Temp\Shortcut_bundlesweetimsetup.exe [7739736] =>PUP.SweetIM
[MD5.C6D792E4583FC46DB0953FBF6E46348A] [SPRF][11/01/2013] (.SweetIM Technologies Lt - This installer.) -- C:\Users\titi\AppData\Local\Temp\SIMEEI2Installer.exe [2962432] =>PUP.SweetIM
[MD5.7704B843006444B69486FD27D4660845] [SPRF][11/01/2013] (.SweetIM Technologies Lt - This installer.) -- C:\Users\titi\AppData\Local\Temp\SIMEEIInstaller.exe [3380216] =>PUP.SweetIM
[MD5.E8EFB9EF24C1E0CED84CFA3C2AE9DC2F] [SPRF][04/05/2013] (...) -- C:\Users\titi\AppData\Local\Temp\toolbar180976635.exe [782832]
[MD5.225CCDCFE5625795647043679CB77112] [SPRF][11/01/2013] (...) -- C:\Users\titi\AppData\Local\Temp\wajam_install.exe [417256] =>Toolbar.Wajam
[MD5.683FDD3D773C58B262DC07CD0C6CE938] [SPRF][03/06/2013] (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Users\titi\Desktop\mbam-setup-1.75.0.1300.exe [10285040]
[MD5.546026247543D6B9499A1503798E3B10] [SPRF][04/06/2013] (.Nicolas Coolman - ZHPDiag.) -- C:\Users\titi\Desktop\ZHPDiag2.exe [5672605]
~ Files: Scanned in 00mn 01s
---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "{0A0FFD05-6AF3-4408-96C5-741D6FAE5EE1}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) =>PUP.SweetIM
O87 - FAEL: "{FCDCAC89-8B60-4E91-AC1F-17F664C8F3FF}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) =>PUP.SweetIM
O87 - FAEL: "{7E3E9501-0214-4E7B-9440-B21B778A0805}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Iminent\Iminent.exe (.not file.) =>Adware.IMBooster
O87 - FAEL: "{84E40B51-363D-4D69-A20A-0E8176DE748E}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Iminent\Iminent.Messengers.exe (.not file.) =>Adware.IMBooster
O87 - FAEL: "{AB37A174-7AC8-4627-A749-98E904A6BCA1}" | In - Private - P6 - TRUE | .(...) -- C:\Windows\System32\dmwu.exe
O87 - FAEL: "{35773580-F21F-4899-8F0E-61356120666D}" | In - Private - P17 - TRUE | .(...) -- C:\Windows\System32\dmwu.exe
~ Firewall: 251 Legitimates Filtered in 00mn 03s
---\\ Scan Additionnel (O88)
Database Version : v2.12387 - (03/06/2013)
Clés trouvées (Keys found) : 92
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 2
Fichiers trouvés (Files found) : 14
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D15DAF33C220F91468A1D7D57C31ACD7] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D6D0EB9FDBD90C04D92A7E729058F10D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A189D17A469616C4688D23E192996267] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98CC8BF5A4A6E6C4ABF7051DDAB8B058] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7FFA128C2B0FF414D805FC5627883401] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D3BA76A44C779424889063D5098ED2D6] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\397C771A7BCAC904697C3EC629ED33ED] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\351716A953E21214898904032EAE2E81] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E6768B6932D112438F047C54D180635] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EB6AF8AEEB922FA4392548F13812E50B] =>PUP.SweetIM
[HKLM\Software\WNLT] =>Adware.IncrediBar
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EE58E3C298524145B73CBBED3CAC4D3] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B2FD9C0A5B9838449838816A28001F4B] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02F47BF73B948514FAACADD8CBBDF37D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\080D9F5E1E95FEE4794CE438E635239E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4318DF19719275242801CBE292063A4C] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75D5168E5E176C24981B4E5DBD991078] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8724E58E6C7D00C48A0D4F3345EB2C26] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB676B0E1B9EFA049B9F7DDDA9645734] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B31BBB0B825EDEF45AB0FE7099C68C81] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B471D8D7319336B4CA89374ED0D7B806] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC30043663AA2CA4DA1DAA9CA5FDCC75] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E1C820A74ED67374BA048B52CB3C3804] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FDC83385E6C239F4C876A77A37DF581D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\427EA997C413D1D47907CBFC7B2DB432] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1E264E0A5959A1C46BA9175A878B12EA] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E4748F9A4181FCE46A23C13B517B9420] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1EAD96AE2CB1DE84BAA9425A8CCA0817] =>Adware.Boxore
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A] =>Adware.IMBooster
[HKCU\Software\AppDataLow\Software\LyricsFan] =>Adware.AddLyrics
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\lrcfan@fansoft.br] =>Adware.AddLyrics
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A8720491-9558-4C0D-9E35-30EED15DFB2B}] =>Adware.AddLyrics
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A8720491-9558-4C0D-9E35-30EED15DFB2B}] =>Adware.AddLyrics
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A8720491-9558-4C0D-9E35-30EED15DFB2B}] =>Adware.AddLyrics
[HKLM\Software\Wow6432Node\Google\Chrome\Extensions\nfeonecgpoepapkmdgdmjolonaakdknd] =>Adware.AddLyrics
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BA71D41F6CC0B6247B05D473850A8AEA] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\12BF94BD06C95F343A77631402B9556A] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2124D8A8CF720FD44866190AF560228E] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27A325ACED8CA4743A30127638591ADB] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\350D17402BD84234EAF7D32F08172D7C] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3EE8C5F419057E1478A654868CEE60B5] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4735D908D66E1BA46B6C2D7185A12B2B] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D6A6B2ED56AF24EA6335EAD6E91CA4] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\76D8378E2DDAED3428720A631F6E3BF0] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EDC790504E1834DBC20C9A04328FD2] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\97C3D0F82E712E241A2F969F45E3351C] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A001B259DB7D694E818BE29B973992C] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E7F556BF224D804D96A96F0F6344789] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAE2EC163C6A68A48921573E0E7E199D] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF4F885EDEE45644EB1E0C99E0162399] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C06C6662FA5B04646829E4A460857770] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE21F3FD57B244142880EF15A165A156] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CEEB3E14ABE8270419B0FD762E18F7C6] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1B5E9A3BDB51349BF96E842C062D98] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FECBC2BC14DA6CD459BD59A041709836] =>PUP.SweetIM^
C:\Program Files (x86)\FindLyrics =>Adware.AddLyrics
C:\Users\titi\AppData\Local\Software =>Adware.Boxore
C:\Users\titi\AppData\Local\Temp\Shortcut_bundlesweetimsetup.exe =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\SIMEEI2Installer.exe =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\SIMEEIInstaller.exe =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\wajam_install.exe =>Toolbar.Wajam
C:\Users\titi\AppData\Local\Temp\BoxoreInstaller.exe =>Adware.Boxore
C:\Users\titi\AppData\Local\Temp\conduitinstaller.exe =>Toolbar.Conduit
C:\Users\titi\AppData\Local\Temp\mgsqlite3.dll =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\SecondStepInstaller.exe =>Toolbar.Conduit
~ Additionnel Scan: 154484 Items scanned in 00mn 51s
---\\ Product Upgrade Codes (O90)
O90 - PUC: "EB8E7C929DBF19D4CBF44B077C815D45" . (.Iminent.) -- C:\Windows\Installer\{29C7E8BE-FBD9-4D91-BC4F-B470C718D554}\imbooster.ico =>Adware.IMBooster
~ Update Products: 70 Legitimates Filtered in 00mn 00s
---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SR - | Auto 07/02/2013 239616 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe
SR - | Auto 21/12/2012 57008 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SS - | Demand 31/07/2012 466064 | (DeviceFastLaneService) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Device Fast-lane\DeviceFastLaneSvc.exe
SR - | Auto 21/08/2012 348784 | (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
SR - | Demand 31/07/2012 659600 | (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
SS - | Auto 11/03/2013 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 11/03/2013 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SR - | Auto 13/07/2012 2451456 | (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
SR - | Auto 04/04/2013 418376 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
SR - | Auto 04/04/2013 701512 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
SR - | Auto 26/11/2011 687400 | (NAUpdate) . (.Nero AG.) - C:\Program Files (x86)\Nero\Update\NASvc.exe
SR - | Auto 11/09/2012 93296 | (RfButtonDriverService) . (.Dritek System INC..) - C:\Windows\RfBtnSvc64.exe
SS - | Auto 0 | (Software_update) . (...) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe
SS - | Demand 0 | (Software_update_m) . (...) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe
SR - | Auto 08/04/2013 68856 | (UPDATESRV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2013\updatesrv.exe
SR - | Auto 08/05/2013 1646792 | (VSSERV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe
SR - | Auto 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe
SS - | Demand 20/09/2012 29696 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Services: Scanned in 00mn 02s
---\\ Recherche Master Boot Record Infection (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
~ MBR: 1 Legitimates Filtered in 00mn 02s
---\\ Recherche Master Boot Record Infection (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by titi at 04/06/2013 06:02:55
********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin
~ MBR: Scanned in 00mn 04s
~ 1559 Legitimates filtered by white list
End of the scan (682 lines in 12mn 19s)(0)
titipsg83
Messages postés
36
Date d'inscription
lundi 3 juin 2013
Statut
Membre
Dernière intervention
2 avril 2018
19
4 juin 2013 à 06:11
4 juin 2013 à 06:11
j ai mis le rapport sur le lien que tu ma donné je c est pas si sa a marché donc je te l ai mis sur comment sa marche aussi
billmaxime
Messages postés
49928
Date d'inscription
dimanche 20 novembre 2011
Statut
Contributeur
Dernière intervention
22 avril 2024
5 944
4 juin 2013 à 06:37
4 juin 2013 à 06:37
salut
je ne vois pas ton rapport, ni le lien de cjoint
le tuto cjoint http://rue-du-montceau.pagesperso-orange.fr/tuto_cjoint.html
ps: tu peux mettre le rapport en "public" avec cjoint
@+
je ne vois pas ton rapport, ni le lien de cjoint
le tuto cjoint http://rue-du-montceau.pagesperso-orange.fr/tuto_cjoint.html
ps: tu peux mettre le rapport en "public" avec cjoint
@+
titipsg83
Messages postés
36
Date d'inscription
lundi 3 juin 2013
Statut
Membre
Dernière intervention
2 avril 2018
19
4 juin 2013 à 18:51
4 juin 2013 à 18:51
Rapport de ZHPDiag v2013.6.3.5 par Nicolas Coolman, Update du 03/06/2013
Run by titi at 04/06/2013 05:50:35
WebSite: https://nicolascoolman.webs.com/
State : Version à jour.
WhiteList : Enable
High Elevated Privileges : OK
UAC : Activate by user
---\\ Web Browser
MSIE: Internet Explorer v10.0.9200.16580
GCIE: Google Chrome v27.0.1453.94 (Defaut)
---\\ Windows Product Information
~ Langage: Français
Windows 8 Home Premium Edition, 64-bit (Build 9200)
Windows Server License Manager Script : OK
~ ion : Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : YDTBG
Windows License : OK
~ Windows Remaining Initializations Number : 999
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
---\\ System Protection
Bitdefender Antivirus Plus 2013 v16.16.0.1349
Malwarebytes Anti-Malware version 1.75.0.1300
Windows Defender W8
---\\ System Optimizer
---\\ Peer To Peer (P2P)
eMule
---\\ Software Update
---\\ System Information
~ Processor: AMD64 Family 20 Model 2 Stepping 0, AuthenticAMD
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3658 MB (63% free)
System Restore: Activé (Enable)
System drive C: has 382 GB (85%) free of 448 GB
---\\ Logged in mode
~ Computer Name: TITIETCARLA
~ User Name: titi
~ All Users Names: titi, HomeGroupUser$, Administrateur,
~ Unselected Option: None
Logged in as Administrator
---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\titi\AppData\Roaming\
~ %Desktop% : C:\Users\titi\Desktop\
~ %Favorites% : C:\Users\titi\Favorites\
~ %LocalAppData% : C:\Users\titi\AppData\Local\
~ %StartMenu% : C:\Users\titi\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 382 Go of 448 Go)
D:\ CD-ROM drive (Free 0 Go of 4 Go)
---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
~ Security Center: 29 Legitimates Filtered in 00mn 00s
---\\ Recherche particulière de fichiers génériques
[MD5.E13A31D5254C25406A7946BDD9B06364] - (.Microsoft Corporation - Explorateur Windows.) (.11/10/2012 - 08:35:16.) -- C:\Windows\Explorer.exe [2380944]
[MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - (.Microsoft Corporation - Application de démarrage de Windows.) (.26/07/2012 - 04:08:50.) -- C:\Windows\System32\Wininit.exe [132608]
[MD5.9B9107F1486476D86B6910EDF07F4358] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.10/04/2013 - 00:17:44.) -- C:\Windows\System32\wininet.dll [2242048]
[MD5.BCF2036A0DD579E47C008C133550283E] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/10/2012 - 06:46:58.) -- C:\Windows\System32\Winlogon.exe [517120]
[MD5.9448F5740A037EC0C18F0E9177232DD0] - (.Microsoft Corporation - Bibliothèque de licences.) (.26/07/2012 - 04:07:20.) -- C:\Windows\System32\sppcomapi.dll [273408]
[MD5.36D6A3201721558A8AFBCC09C2DA4C2C] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.06/11/2012 - 04:53:44.) -- C:\Windows\system32\Drivers\AFD.sys [560640]
[MD5.A721FF570C2387E383BDDEA9632863C9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.26/07/2012 - 06:00:48.) -- C:\Windows\system32\Drivers\atapi.sys [25840]
[MD5.990B1BABE6E81FB18E65A87EBEFB1772] - (.Microsoft Corporation - CD-ROM File System Driver.) (.26/07/2012 - 03:30:10.) -- C:\Windows\system32\Drivers\Cdfs.sys [108544]
[MD5.339BFF85D788268752DA8C9644B188EE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.26/07/2012 - 03:26:36.) -- C:\Windows\system32\Drivers\Cdrom.sys [174080]
[MD5.09D9EB9E7898F8E6561473A20CC808B9] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.26/07/2012 - 03:26:53.) -- C:\Windows\system32\Drivers\DfsC.sys [118784]
[MD5.7D87B5B6C7188D553E11B59DC7F0B111] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/09/2012 - 07:08:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [71168]
[MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - (.Microsoft Corporation - Pilote de port i8042.) (.26/07/2012 - 03:28:51.) -- C:\Windows\system32\Drivers\i8042prt.sys [112640]
[MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - (.Microsoft Corporation - IP Network Address Translator.) (.26/07/2012 - 03:23:01.) -- C:\Windows\system32\Drivers\IpNat.sys [145920]
[MD5.93179D48066918323628CB016D8C94DC] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.05/02/2013 - 23:29:09.) -- C:\Windows\system32\Drivers\MRxSmb.sys [370688]
[MD5.7CEC25C682D319D484630B3952C31A11] - (.Microsoft Corporation - MBT Transport driver.) (.26/07/2012 - 03:24:28.) -- C:\Windows\system32\Drivers\netBT.sys [331776]
[MD5.76929F4A69E425911A63B407E26C2589] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.02/02/2013 - 11:54:54.) -- C:\Windows\system32\Drivers\ntfs.sys [1933544]
[MD5.4563DAF8C6A740AD7F501E219BD10766] - (.Microsoft Corporation - Pilote de port parallèle.) (.26/07/2012 - 03:29:53.) -- C:\Windows\system32\Drivers\Parport.sys [105984]
[MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.26/07/2012 - 03:23:17.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [124928]
[MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.26/07/2012 - 03:25:18.) -- C:\Windows\system32\Drivers\rdpdr.sys [179712]
[MD5.73DC722CE5DF26D7638CE2446F2655C7] - (.Microsoft Corporation - TDI Translation Driver.) (.26/07/2012 - 06:26:47.) -- C:\Windows\system32\Drivers\tdx.sys [117248]
[MD5.2FB3CDFD5EAF4CD9D4AFAF96877D13AE] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.26/07/2012 - 05:57:09.) -- C:\Windows\system32\Drivers\volsnap.sys [332016]
~ Generic Processes: Scanned in 00mn 01s
---\\ Etat des fichiers cachés (Caché/Total)
~ Mes Videos (My Videos) : 1/2
~ Mes Favoris (My Favorites) : 1/12
~ Mes Documents (My Documents) : 1/3847
~ Mon Bureau (My Desktop) : 2/211
~ Menu demarrer (Programs) : 1/28
~ Hidden Files: Scanned in 00mn 23s
---\\ Processus lancés
[MD5.D1D5DAB39DCB4BE0359943738D87409B] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [532040] [PID.3404]
[MD5.1B38F4C2BCDB133B757E22BEB61FB3FC] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe [1176176] [PID.3204]
[MD5.51C392EC9DA1119EC86D562FF3E7344F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [825808] [PID.3772]
[MD5.A3285102E7656627A53625A9138FD9AA] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7447552] [PID.1360]
~ Processes Running: Scanned in 00mn 01s
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Preferences
G2 - GCE: Preference [User Data\Default] [nfeonecgpoepapkmdgdmjolonaakdknd] Lyrics Fan v.1.112 (Désactivé) =>Adware.AddLyrics
~ Google Browser: 7 Legitimates Filtered in 00mn 16s
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s
---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s
---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Happy Lyrics [64Bits] - {59C0C5BD-2579-433A-BBB8-AFFD59642BAF} . (...) -- C:\Program Files (x86)\HappyLyrics\hppylrc.dll (.not file.)
O2 - BHO: Lyrics Fan [64Bits] - {A8720491-9558-4C0D-9E35-30EED15DFB2B} . (.FAN Software - Lyrics Fan.) -- C:\Program Files (x86)\LyricsFan\lrcfan.dll =>Adware.AddLyrics
~ BHO: 2 Legitimates Filtered in 00mn 00s
---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [Bdagent] . (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2013\bdagent.exe
O4 - HKCU\..\Run: [EADM] . (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe
O4 - HKLM\..\Wow6432Node\Run: [LManager] Clé orpheline
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKUS\S-1-5-18\..\Run: [SearchProtect] \SearchProtect\bin\cltmng.exe =>Toolbar.Conduit
O4 - HKUS\S-1-5-21-377929125-826591287-2286979282-1001\..\Run: [EADM] . (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe
~ Application: Scanned in 00mn 00s
---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop: EditPlus 3.lnk . (.ES-Computing - EditPlus.) -- C:\Program Files (x86)\EditPlus 3\editplus.exe
O4 - GS\Desktop: MiPony.lnk . (.www.mipony.net - Mipony.) -- C:\Program Files (x86)\MiPony\MiPony.exe
O4 - GS\Desktop: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) -- C:\Program Files (x86)\PhotoFiltre Studio X\pfstudiox.exe
~ Global Startup: Scanned in 00mn 00s
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpDomain = lan
O17 - HKLM\System\CCS\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpDomain = lan
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
~ Domain: Scanned in 00mn 00s
---\\ Protocole additionnel (O18)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
~ Protocole Additionnel: Scanned in 00mn 00s
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Service Software Update (Software_update (Software_update) . (...) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe (.not file.)
O23 - Service: Bitdefender Virus Shield (VSSERV) . (.Bitdefender - Bitdefender Security Service.) - C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe
~ Services: 12 Legitimates Filtered in 00mn 26s
---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Happy Lyrics Update.job [410]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Lyrics Fan Update.job [416] =>Adware.AddLyrics
[MD5.00000000000000000000000000000000] [APT] [EPUpdater] (...) -- C:\Users\titi\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe (.not file.) [0]
[MD5.65F00E976FCF8C01D5C2B5295AEC41A6] [APT] [GoforFilesUpdate] (.http://www.goforfiles.com/ -- C:\Program Files (x86)\GoforFiles\GFFUpdater.exe [364112] =>P2P.GoforFiles
[MD5.763643CE7E9C5C65405196C0AD279DFB] [APT] [Lyrics Fan Update] (.FAN Software.) -- C:\Program Files (x86)\LyricsFan\LyricsFanUpdater.exe [118272] =>Adware.AddLyrics
~ Scheduled Task: 18 Legitimates Filtered in 00mn 13s
---\\ Logiciels installés (O42)
O42 - Logiciel: GoforFiles - (.http://www.goforfiles.com/ [HKCU][64Bits] -- GoforFiles =>P2P.GoforFiles
O42 - Logiciel: Iminent - (.Iminent.) [HKLM][64Bits] -- {29C7E8BE-FBD9-4D91-BC4F-B470C718D554} =>Adware.IMBooster
O42 - Logiciel: Lyrics Fan - (.FAN Software.) [HKLM][64Bits] -- lrcfan@fansoft.br =>Adware.AddLyrics
~ Logic: 80 Legitimates Filtered in 00mn 01s
---\\ HKCU & HKLM Software Keys
[HKCU\Software\AppDataLow\Software\LyricsFan]
[HKCU\Software\BabSolution] =>Hijacker.BabSolution
[HKCU\Software\IncrediMail]
[HKLM\Software\DomaIQ] =>Toolbar.DomaIQ
[HKLM\Software\WNLT] =>Adware.IncrediBar
[HKLM\Software\Wow6432Node\GoforFiles] =>P2P.GoforFiles
~ Key Software: 153 Legitimates Filtered in 00mn 01s
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 24/05/2013 - 15:07:55 - [0] ----D C:\Program Files (x86)\FindLyrics =>Adware.AddLyrics
O43 - CFD: 04/05/2013 - 20:50:54 - [9,958] ----D C:\Program Files (x86)\GoforFiles =>P2P.GoforFiles
O43 - CFD: 24/05/2013 - 15:07:56 - [0,380] ----D C:\Program Files (x86)\LyricsFan
O43 - CFD: 04/05/2013 - 20:51:16 - [0,001] ----D C:\Users\titi\AppData\Roaming\GoforFiles =>P2P.GoforFiles
O43 - CFD: 10/01/2013 - 15:15:13 - [0,510] ----D C:\Users\titi\AppData\Roaming\lm
O43 - CFD: 01/06/2013 - 17:31:01 - [0,000] ----D C:\Users\titi\AppData\Local\supt4pc_fr_36
O43 - CFD: 24/05/2013 - 15:10:18 - [0,002] ----D C:\Users\titi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\QTRAX
~ Program Folder: 139 Legitimates Filtered in 00mn 28s
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.4B3C216E536A698F7E753D9197D2C79E] - 03/06/2013 - 20:50:31 ---A- . (...) -- C:\bdlog.txt [186426]
O44 - LFC:[MD5.A9B29973AF1FBE6DD78756FBAD9C1168] - 03/06/2013 - 18:00:22 ---A- . (...) -- C:\Windows\DeleteOnReboot.bat [290]
O44 - LFC:[MD5.C58305AC412A2DE95D461072E0AF5AAF] - 21/05/2013 - 14:31:12 ---A- . (...) -- C:\Windows\SysNative\dmwu.exe [1447728]
O44 - LFC:[MD5.C58305AC412A2DE95D461072E0AF5AAF] - 21/05/2013 - 14:31:12 RSHAD . (...) -- C:\Windows\System32\dmwu.exe [1447728]
O44 - LFC:[MD5.49BAC9565B10570CAAB89B759D2F3DEA] - 21/05/2013 - 14:30:18 ---A- . (.IncrediMail, Ltd. - IMHttpCo Dynamic Link Library.) -- C:\Windows\SysNative\ImHttpComm.dll [33792]
O44 - LFC:[MD5.49BAC9565B10570CAAB89B759D2F3DEA] - 21/05/2013 - 14:30:18 RSHAD . (.IncrediMail, Ltd. - IMHttpCo Dynamic Link Library.) -- C:\Windows\System32\ImHttpComm.dll [33792]
~ Files: 25 Legitimates Filtered in 00mn 24s
---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.544FFA254C631579C8C155032E1FE5BA] - 01/06/2013 - 12:28:16 ---A- - C:\Windows\Prefetch\NEWDEV.EXE-81B9876F.pf
O45 - LFCP:[MD5.FE389DB1CD53B93ED83BC8BB93BD2919] - 01/06/2013 - 14:15:02 ---A- - C:\Windows\Prefetch\DEVICEFASTLANEEVENT.EXE-0D33B9ED.pf
O45 - LFCP:[MD5.5002D47589FDA636C7DF1D7CF22C4208] - 01/06/2013 - 14:15:02 ---A- - C:\Windows\Prefetch\DEVICEFASTLANESVC.EXE-E86CADBF.pf
O45 - LFCP:[MD5.ED14D68AEDD5DDE67284DE778BC11F4B] - 01/06/2013 - 14:15:02 ---A- - C:\Windows\Prefetch\DEVICEFASTLANEUI.EXE-CF5A78A9.pf
O45 - LFCP:[MD5.5C5A8B9AC5792160C77D00A12EDC2AC8] - 01/06/2013 - 16:31:03 ---A- - C:\Windows\Prefetch\MAJTUTO4PC_FR_36.EXE-0A63F850.pf =>PUP.Eorezo
O45 - LFCP:[MD5.C0543A64FB5E38805B3FB0E8EE3644BB] - 01/06/2013 - 16:31:03 ---A- - C:\Windows\Prefetch\MAJTUTO4PC_FR_36.TMP-20F35518.pf =>PUP.Eorezo
O45 - LFCP:[MD5.C67EE4F5BC05288C4405711F6D68AF4E] - 01/06/2013 - 16:31:12 ---A- - C:\Windows\Prefetch\SUPT4PC_FR_36.EXE-3AD69583.pf
O45 - LFCP:[MD5.2AF88FB357DDB24D6B09B03DAC70CDCC] - 02/06/2013 - 10:11:33 ---A- - C:\Windows\Prefetch\SERVICES X86-CODEDOWNLOADER.E-5CB7B0A2.pf =>PUP.CrossRider
O45 - LFCP:[MD5.5BF412C1614B3E1F4003CF5824B82613] - 02/06/2013 - 10:11:38 ---A- - C:\Windows\Prefetch\SERVICES X86-BG.EXE-A1ADF25D.pf =>PUP.CrossRider
O45 - LFCP:[MD5.1BC7C51E828BBB923F20DFB1FB3773F3] - 02/06/2013 - 10:12:28 ---A- - C:\Windows\Prefetch\ONLINETRACKSAUTOUPDATEHELPER.-067E39E0.pf
O45 - LFCP:[MD5.C0B031D0E1182C6B95A94E547E26345D] - 02/06/2013 - 11:07:51 ---A- - C:\Windows\Prefetch\CLTMNG.EXE-E14AC8B0.pf
O45 - LFCP:[MD5.9615408B72795C767CB4C66D17D5E92F] - 02/06/2013 - 11:08:34 ---A- - C:\Windows\Prefetch\THCH.EXE-95900F79.pf
O45 - LFCP:[MD5.69E7F4D518FFB3A005C93EBE01076558] - 02/06/2013 - 11:09:07 ---A- - C:\Windows\Prefetch\DMWU.EXE-AA7A778B.pf
O45 - LFCP:[MD5.33D53CF71C5E472D71FC1EC302268DAD] - 02/06/2013 - 12:28:04 ---A- - C:\Windows\Prefetch\XTREMSPLIT.EXE-29D81664.pf
O45 - LFCP:[MD5.B46115C88F6AC2DC85A9EA2BF8FDC47E] - 02/06/2013 - 17:33:21 ---A- - C:\Windows\Prefetch\LIVECOMM.EXE-F1928578.pf
O45 - LFCP:[MD5.12E43C5EF1461C3FFADFE277AE6971F3] - 02/06/2013 - 17:52:15 ---A- - C:\Windows\Prefetch\PFSX-SETUP-01NET-10.7.3.EXE-1E09C780.pf
O45 - LFCP:[MD5.E16201FAA4053C36CDE4DAA05242D4A0] - 02/06/2013 - 17:53:19 ---A- - C:\Windows\Prefetch\PFSX-SETUP-01NET-10.7.3 [1].E-92A621F5.pf
O45 - LFCP:[MD5.C3CC7254BCB98089A795CE84BB1FC1F3] - 03/06/2013 - 14:29:02 ---A- - C:\Windows\Prefetch\SWEETIM.EXE-8F50D9C0.pf =>PUP.SweetIM
O45 - LFCP:[MD5.F282AA9F60B2BACD815B827478591388] - 03/06/2013 - 15:44:38 ---A- - C:\Windows\Prefetch\BROWSERPROTECT.EXE-6CD41A66.pf =>Hijacker.Eazel
O45 - LFCP:[MD5.20DAFA055706062BD783B35607F497EF] - 03/06/2013 - 16:45:00 ---A- - C:\Windows\Prefetch\SOFTWARECRASHHANDLER.EXE-5F240164.pf
O45 - LFCP:[MD5.20ACCDF0D9F06C4FD346017DD5C8379A] - 03/06/2013 - 16:45:34 ---A- - C:\Windows\Prefetch\CLTMNG.EXE-76C32FCE.pf
O45 - LFCP:[MD5.E5C39EF2F9F11B8BFEAB2760438E0704] - 03/06/2013 - 16:45:39 ---A- - C:\Windows\Prefetch\SWEETPACKSUPDATEMANAGER.EXE-4BA95FDA.pf =>PUP.SweetIM
O45 - LFCP:[MD5.F922D0C49732C267E04CE2F78418FA9C] - 03/06/2013 - 16:45:56 ---A- - C:\Windows\Prefetch\BOXORE.EXE-666CD123.pf =>Adware.Boxore
O45 - LFCP:[MD5.CFFA0B2E61C414B42C16F0B9E8196773] - 03/06/2013 - 16:45:56 ---A- - C:\Windows\Prefetch\TUTO4PC_FR_33.EXE-23A169E9.pf =>PUP.Eorezo
O45 - LFCP:[MD5.C05DD4A5F54EF0BC886674DF429E188A] - 03/06/2013 - 16:46:06 ---A- - C:\Windows\Prefetch\IMINENT.EXE-DDB5429B.pf =>Adware.IMBooster
O45 - LFCP:[MD5.755869F11E17145FD207960C32710621] - 03/06/2013 - 16:46:06 ---A- - C:\Windows\Prefetch\IMINENT.MESSENGERS.EXE-71459735.pf =>Adware.IMBooster
O45 - LFCP:[MD5.1FE71EF73460486F331E599426563A96] - 03/06/2013 - 16:46:06 ---A- - C:\Windows\Prefetch\TUTO4PC_FR_36.EXE-39BEC677.pf =>PUP.Eorezo
O45 - LFCP:[MD5.B10850F06ACC68E8A908626F7A958FEF] - 03/06/2013 - 16:48:17 ---A- - C:\Windows\Prefetch\UPT4PC_FR_33.EXE-4CCFACC6.pf
O45 - LFCP:[MD5.E929AF80F6E8F7FBE9F6FF7892A63642] - 03/06/2013 - 17:12:24 ---A- - C:\Windows\Prefetch\OBK.EXE-78D4C9CC.pf
O45 - LFCP:[MD5.3D0061D0BD8EC1A143E6FB1347C816BA] - 03/06/2013 - 17:12:24 ---A- - C:\Windows\Prefetch\OBKCH.EXE-631D1C6B.pf
O45 - LFCP:[MD5.C419AD0058D882ABF053D7EAD55591B9] - 03/06/2013 - 19:08:48 ---A- - C:\Windows\Prefetch\INSTALLER.EXE-2DA55FD2.pf
O45 - LFCP:[MD5.760F3E7ABA9E004034EFE40F2DA9C25C] - 04/06/2013 - 04:35:03 ---A- - C:\Windows\Prefetch\DKRUN32.EXE-8583E6AC.pf
O45 - LFCP:[MD5.161474F1A47CA2424365969DE5427BEF] - 04/06/2013 - 04:35:12 ---A- - C:\Windows\Prefetch\LMUTILPS32.EXE-9827F12C.pf
O45 - LFCP:[MD5.C69E7F36E05AEE1E18F9ED3899EDF3BC] - 04/06/2013 - 04:48:11 ---A- - C:\Windows\Prefetch\BDADDMTASK.EXE-C9B44295.pf
O45 - LFCP:[MD5.49FB49D76C207AEA0C447AEABFED2912] - 05/05/2013 - 20:52:21 ---A- - C:\Windows\Prefetch\EF16.TMP-140FD8DA.pf
O45 - LFCP:[MD5.07430DC28243B4F0194BF2412650BFBB] - 06/05/2013 - 21:08:05 ---A- - C:\Windows\Prefetch\408F.TMP-B8A4520A.pf
O45 - LFCP:[MD5.9AA3B0D7721CF49F60CD951128C0F55E] - 07/05/2013 - 22:08:05 ---A- - C:\Windows\Prefetch\89EB.TMP-75AC7AA0.pf
O45 - LFCP:[MD5.38B0717FF46465A7481CCA8657A3FC7C] - 08/05/2013 - 10:04:14 ---A- - C:\Windows\Prefetch\EBAY2.EXE-E3201D7D.pf
O45 - LFCP:[MD5.E49D0ACE7F3ACE46B13F024D97FE8AD7] - 08/05/2013 - 11:41:27 ---A- - C:\Windows\Prefetch\GOOGLEEARTH-WIN-BUNDLE-7.1.1.-C5A3FDA1.pf
O45 - LFCP:[MD5.D7DD0C333E2ED2A8DE66A97EF859869F] - 08/05/2013 - 17:43:13 ---A- - C:\Windows\Prefetch\EXTCONVERTER.EXE-B7C2FB1C.pf
O45 - LFCP:[MD5.E05B6175E537CA84E832713600F8EC24] - 08/05/2013 - 23:08:06 ---A- - C:\Windows\Prefetch\D5A9.TMP-3D9AC747.pf
O45 - LFCP:[MD5.0C301C19BE15EE20C5089E2DDD859933] - 10/05/2013 - 07:24:10 ---A- - C:\Windows\Prefetch\D153.TMP-043CDC79.pf
O45 - LFCP:[MD5.2C3FA4F582EA4B6077C8F94434A6E4BA] - 11/05/2013 - 15:53:12 ---A- - C:\Windows\Prefetch\E205.TMP-87507CF4.pf
O45 - LFCP:[MD5.D1035FA61B3C7766B70F922F2BFF69F8] - 12/05/2013 - 16:53:17 ---A- - C:\Windows\Prefetch\2F49.TMP-902CBE09.pf
O45 - LFCP:[MD5.C87C8B381A692026B2B076264390C29C] - 13/05/2013 - 16:56:48 ---A- - C:\Windows\Prefetch\SECONDSTEPINSTALLER.EXE-108A081B.pf
O45 - LFCP:[MD5.B1956B5A941C4334B5BCBF80AC2E34DC] - 13/05/2013 - 16:57:09 ---A- - C:\Windows\Prefetch\CLTMNGSVC.EXE-28758A2C.pf
O45 - LFCP:[MD5.E8CF76B56B1FB8D4543F7645255FF724] - 13/05/2013 - 16:57:09 ---A- - C:\Windows\Prefetch\SPRUNNER.EXE-9EF706D7.pf
O45 - LFCP:[MD5.226F089D334D886A1D0088053DF88E02] - 17/05/2013 - 11:49:17 ---A- - C:\Windows\Prefetch\LAUNCHTM.EXE-B444BC8E.pf
O45 - LFCP:[MD5.DE5DBE07F8B766BCB7BD67753DDD1DCA] - 18/05/2013 - 08:54:54 ---A- - C:\Windows\Prefetch\EMULE.EXE-6F3A59E3.pf
O45 - LFCP:[MD5.6D9D3012C0721273C9E5FC11B429EFFD] - 20/05/2013 - 11:49:02 ---A- - C:\Windows\Prefetch\AUTORUN.EXE-D28490C2.pf
O45 - LFCP:[MD5.A88B6321E7D33EB241CA8E972013DBE9] - 23/05/2013 - 17:47:29 ---A- - C:\Windows\Prefetch\27.0.1453.94_26.0.1410.64_CHR-A30B2727.pf
O45 - LFCP:[MD5.CD369C1CB1CD71CA264039528C64E7A1] - 23/05/2013 - 17:54:57 ---A- - C:\Windows\Prefetch\GENPTCH.EXE-022E2611.pf
O45 - LFCP:[MD5.72EF240BA6A178B2F1E856A8D0B515BD] - 24/05/2013 - 14:06:44 ---A- - C:\Windows\Prefetch\MIPONY-INSTALLER.EXE-BCB9BF1E.pf
O45 - LFCP:[MD5.C5882B7530EE60B0A312147F056D625B] - 24/05/2013 - 14:06:45 ---A- - C:\Windows\Prefetch\MIPONY-INSTALLER-1.EXE-8FD2B1B6.pf
O45 - LFCP:[MD5.00586B566249BBFF8A491B99D8ACE5F0] - 24/05/2013 - 14:07:29 ---A- - C:\Windows\Prefetch\DELTATB.EXE-ECF6B948.pf =>Toolbar.DeltaSearch
O45 - LFCP:[MD5.271631FCA25926079C88CFCF43503DBF] - 24/05/2013 - 14:07:29 ---A- - C:\Windows\Prefetch\FINDLYRICS.EXE-CD7FD79B.pf =>Adware.AddLyrics
O45 - LFCP:[MD5.7B3A808A0EDEA285FED5C1D6AF1F05C5] - 24/05/2013 - 14:07:29 ---A- - C:\Windows\Prefetch\QTRAXINSTALLER.EXE-A1B755C6.pf
O45 - LFCP:[MD5.BD979DC3F85F5CCCEECF86B0213F0BC4] - 24/05/2013 - 14:07:39 ---A- - C:\Windows\Prefetch\TUTO4PC_SETUP_FR.EXE-6483E602.pf =>PUP.Eorezo
O45 - LFCP:[MD5.86C73447615416C5D0DCA48F8AF11291] - 24/05/2013 - 14:07:40 ---A- - C:\Windows\Prefetch\TUTO4PC_SETUP_FR.TMP-872FC7DB.pf =>PUP.Eorezo
O45 - LFCP:[MD5.A112D95494BA1CC3B2EDF2FC79523B28] - 24/05/2013 - 14:08:36 ---A- - C:\Windows\Prefetch\FLCSUP.EXE-7EA4384E.pf
O45 - LFCP:[MD5.669E3E356AB5699C1BA116C19254D091] - 24/05/2013 - 14:08:36 ---A- - C:\Windows\Prefetch\FLCSUR.EXE-1E2A4401.pf
O45 - LFCP:[MD5.78136E57CA1F007F9C300CDDE7ECDC1C] - 24/05/2013 - 19:28:05 ---A- - C:\Windows\Prefetch\BOXORE.EXE-A2201CC7.pf =>Adware.Boxore
O45 - LFCP:[MD5.CD03C75BBE6EB84A9681626F789F6CFE] - 24/05/2013 - 19:28:05 ---A- - C:\Windows\Prefetch\BOXOREINSTALLER.EXE-B14E3636.pf =>Adware.Boxore
O45 - LFCP:[MD5.EA8BAF0AE6A3117F187D29205C749F75] - 24/05/2013 - 19:28:05 ---A- - C:\Windows\Prefetch\DELTA BABYLON.EXE-93D592F1.pf =>Toolbar.Babylon
O45 - LFCP:[MD5.8378CCE1B6D21B8612AB0278805E413E] - 24/05/2013 - 19:28:27 ---A- - C:\Windows\Prefetch\SCS.EXE-B1CF88FC.pf
O45 - LFCP:[MD5.A952095CE2D603180F8F425E4774BD78] - 24/05/2013 - 19:31:26 ---A- - C:\Windows\Prefetch\DELTATB.EXE-F5CC058A.pf =>Toolbar.DeltaSearch
O45 - LFCP:[MD5.ABDA98E6409604677740913D7F1E2D9D] - 24/05/2013 - 19:31:52 ---A- - C:\Windows\Prefetch\DELTA4FFX.EXE-8CE04256.pf
O45 - LFCP:[MD5.1B284122D956F2DDEB20350F542B5B69] - 24/05/2013 - 19:31:54 ---A- - C:\Windows\Prefetch\DELTA4IE.EXE-0E3E6180.pf
O45 - LFCP:[MD5.4EA4D77A6A9EB1EC2D1DF2601AF70646] - 24/05/2013 - 19:31:54 ---A- - C:\Windows\Prefetch\DELTASRV.EXE-D503A767.pf
O45 - LFCP:[MD5.934DC397ACDA08B2252AD7CF9010180E] - 24/05/2013 - 19:31:54 ---A- - C:\Windows\Prefetch\MYBABYLONTB.EXE-93E7D2B5.pf =>Toolbar.Babylon
O45 - LFCP:[MD5.1CAF5817F94429D20E0CA535CF3195B1] - 24/05/2013 - 19:31:55 ---A- - C:\Windows\Prefetch\BPROTECT.EXE-87C554E2.pf
O45 - LFCP:[MD5.78BCEC0D52B71656B0EAB24A66442FAB] - 24/05/2013 - 19:32:15 ---A- - C:\Windows\Prefetch\PUSH.EXE-3E49F76A.pf
O45 - LFCP:[MD5.ADF83C3F239CC0433D2AF18FC2BD8214] - 24/05/2013 - 19:32:15 ---A- - C:\Windows\Prefetch\WEBPLAYER.EXE-78EFCF68.pf
O45 - LFCP:[MD5.653B7267DB936DA0CA834E55E6FBFB6C] - 24/05/2013 - 19:49:03 ---A- - C:\Windows\Prefetch\IMINENT.EXE-577869DE.pf =>Adware.IMBooster
O45 - LFCP:[MD5.042873233A0167E6654B42A24894BF32] - 24/05/2013 - 19:49:03 ---A- - C:\Windows\Prefetch\UMBRELLA.EXE-0B44C393.pf
O45 - LFCP:[MD5.467A9234D40DC21EB1510AA8066792F9] - 25/05/2013 - 09:08:40 ---A- - C:\Windows\Prefetch\RESTORE.EXE-FF5AC776.pf
O45 - LFCP:[MD5.22FAFA9906A8732B817F9985EBBBF9BE] - 25/05/2013 - 09:08:53 ---A- - C:\Windows\Prefetch\GAMECONSOLE-4.0.23.8-TO-4.0.2-F4C8D955.pf
O45 - LFCP:[MD5.281093E0BC83905C3199185AEA04D5AD] - 25/05/2013 - 09:08:56 ---A- - C:\Windows\Prefetch\PATCH_5272.EXE-E7CE1F9C.pf
O45 - LFCP:[MD5.4197FDC913E529768D74DD0F4C2AF39C] - 25/05/2013 - 09:08:59 ---A- - C:\Windows\Prefetch\BSDIFF_PATCH.EXE-5CB3380C.pf
O45 - LFCP:[MD5.E259C5F6AF4DC238E9B54B64A4FEC215] - 25/05/2013 - 09:09:24 ---A- - C:\Windows\Prefetch\PARK-{A115BE37-90C1-4DED-AE63-889CBF58.pf
O45 - LFCP:[MD5.6A5AEF1A158F2B9011A6E05BCE11F836] - 25/05/2013 - 09:09:58 ---A- - C:\Windows\Prefetch\INSTALLTOUCHPOINTS-PACKARDBEL-7C530842.pf
O45 - LFCP:[MD5.F8619C677BA8092F03AEC95338673667] - 25/05/2013 - 09:10:00 ---A- - C:\Windows\Prefetch\INSTALLTOUCHPOINTS-PACKARDBEL-AFC6D3BC.pf
O45 - LFCP:[MD5.B7A88DF1918D5484D6599ACD77E7F272] - 25/05/2013 - 09:11:15 ---A- - C:\Windows\Prefetch\GAME.DAT-81362BDD.pf
O45 - LFCP:[MD5.38C0A1A3FE4E5C3D2FB089EC161A2066] - 25/05/2013 - 09:11:17 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-FB09BA72.pf
O45 - LFCP:[MD5.655BD6B0252A5046DD1DCC4349BA22E8] - 25/05/2013 - 09:11:18 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-2939A083.pf
O45 - LFCP:[MD5.9E3A5A16088A82064D01ED157633AF43] - 25/05/2013 - 09:11:19 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-2C4BEB3D.pf
O45 - LFCP:[MD5.5C38B831EBE84492703E1DA179F75970] - 25/05/2013 - 09:11:23 ---A- - C:\Windows\Prefetch\GAME.DAT-99D9B6CB.pf
O45 - LFCP:[MD5.2243FA7E08ED2DF592F2CFFF04B3BA28] - 25/05/2013 - 09:11:24 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-7984D480.pf
O45 - LFCP:[MD5.5A3992588D55F07CBF5124BB4F8C85F2] - 25/05/2013 - 09:11:25 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-4FFBD3A1.pf
O45 - LFCP:[MD5.3F369D37E710347753C83E46AB30C900] - 25/05/2013 - 09:11:27 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-A0B5A03B.pf
O45 - LFCP:[MD5.FF952168DF22C9CAF7271FF3A7BEB366] - 25/05/2013 - 09:11:30 ---A- - C:\Windows\Prefetch\GAME.DAT-5B81F525.pf
O45 - LFCP:[MD5.25A36AB10FEE5380553F19313FDC9474] - 25/05/2013 - 09:11:31 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-7FC4F73A.pf
O45 - LFCP:[MD5.A05D18A25E190E1BB3B77A924182039D] - 25/05/2013 - 09:11:33 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-016D910B.pf
O45 - LFCP:[MD5.FBC09CE13D831BC31E58178242C45522] - 25/05/2013 - 09:11:33 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-3DA5A445.pf
O45 - LFCP:[MD5.647EAFC4F4C8D61B1237720386F87985] - 25/05/2013 - 09:11:37 ---A- - C:\Windows\Prefetch\GAME.DAT-BD04FDA4.pf
O45 - LFCP:[MD5.3F6174AB8D21426F7A25112700D48774] - 25/05/2013 - 09:11:38 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-070F5EC9.pf
O45 - LFCP:[MD5.2E9481D50F0B885CD2B67C5CEC05A8A1] - 25/05/2013 - 09:11:40 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-C7677AE2.pf
O45 - LFCP:[MD5.E1D21EF0881588702E8E3B50D46CD1B0] - 25/05/2013 - 09:11:41 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-5911138C.pf
O45 - LFCP:[MD5.C848726EE56AD12F23DCC315DC045B4B] - 25/05/2013 - 09:11:45 ---A- - C:\Windows\Prefetch\GAME.DAT-A4F42E3B.pf
O45 - LFCP:[MD5.65362D89DA95E5646BDA073FB7D8DE95] - 25/05/2013 - 09:11:46 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-B499C4F0.pf
O45 - LFCP:[MD5.8AF448DF827DB977DD76AA32A92BBE74] - 25/05/2013 - 09:11:48 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-4D108C91.pf
O45 - LFCP:[MD5.EFF96CEA5AE361A5CE7892D880112561] - 25/05/2013 - 09:11:50 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-6E38682B.pf
O45 - LFCP:[MD5.4675E17B6A5A91BA069D962E86EA0146] - 25/05/2013 - 09:11:52 ---A- - C:\Windows\Prefetch\GAME.DAT-6E3D9CE4.pf
O45 - LFCP:[MD5.5BD941009595EE29DBAA17A05AD601B9] - 25/05/2013 - 09:11:54 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-E6EB4A09.pf
O45 - LFCP:[MD5.D9A3B25D0FB1768FAFC6C4EC16A1E883] - 25/05/2013 - 09:11:55 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-D1431C22.pf
O45 - LFCP:[MD5.C34A039BD4A24AA18E7B5EFCD1E143FD] - 25/05/2013 - 09:11:56 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-54D4C8CC.pf
O45 - LFCP:[MD5.3B0208E90580898F3ECDBA1DCFA90EFC] - 25/05/2013 - 09:11:59 ---A- - C:\Windows\Prefetch\GAME.DAT-6D4FF778.pf
O45 - LFCP:[MD5.18E0E4A07C199B51636111B29F62E509] - 25/05/2013 - 09:12:01 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-D52A6F5D.pf
O45 - LFCP:[MD5.A663D9F71607AE083DFE4167C3EF2B69] - 25/05/2013 - 09:12:03 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-5787CFD6.pf
O45 - LFCP:[MD5.9B719770CDAA4A906B7C137F99A1242B] - 25/05/2013 - 09:12:03 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-13D697C0.pf
O45 - LFCP:[MD5.2B8D612199A2F41EFB8BA34708135C49] - 25/05/2013 - 09:12:08 ---A- - C:\Windows\Prefetch\GAME.DAT-7DB2A8FE.pf
O45 - LFCP:[MD5.34980EDFC2E0951FBBB43B653744EDA5] - 25/05/2013 - 09:12:09 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-46231E83.pf
O45 - LFCP:[MD5.189D766FCF94721222E0589453390165] - 25/05/2013 - 09:12:11 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-5C382D4C.pf
O45 - LFCP:[MD5.4CE2E76AADEF1F9BCF4EE12C2518AA58] - 25/05/2013 - 09:12:13 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-16875C96.pf
O45 - LFCP:[MD5.770058F9DAFCE24931F450EE7835E825] - 25/05/2013 - 09:12:16 ---A- - C:\Windows\Prefetch\GAME.DAT-CD5E4B56.pf
O45 - LFCP:[MD5.B292AFD47E4E19F38A0B0B842C086BC3] - 25/05/2013 - 09:12:18 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-F0BB335B.pf
O45 - LFCP:[MD5.714D74D97F64DCF144223F07918BED6D] - 25/05/2013 - 09:12:18 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-3B8F8964.pf
O45 - LFCP:[MD5.04E33948513CFA3C6C7563B6E06C8E8D] - 25/05/2013 - 09:12:20 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-A624BA2E.pf
O45 - LFCP:[MD5.71FD8F43587116742CDC4F52728B8431] - 25/05/2013 - 09:12:23 ---A- - C:\Windows\Prefetch\GAME.DAT-2F027DE4.pf
O45 - LFCP:[MD5.6D18D7B179D654FC5ABA1BCC579EAFCE] - 25/05/2013 - 09:12:24 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-E1DB1B09.pf
O45 - LFCP:[MD5.1AD8313B24A41C6E43B3E409F31619B6] - 25/05/2013 - 09:12:25 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-06ADA522.pf
O45 - LFCP:[MD5.E1EFF9D9489FA65BE1FB9F2375177E9B] - 25/05/2013 - 09:12:26 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-AEFFE1CC.pf
O45 - LFCP:[MD5.3AF3C52B408EADCD5F4C39BDD5A3979D] - 25/05/2013 - 09:12:33 ---A- - C:\Windows\Prefetch\GAME.DAT-1AE68EC5.pf
O45 - LFCP:[MD5.C71798E442E03BD98BEEF4688B8EE29B] - 25/05/2013 - 09:12:34 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-363096DA.pf
O45 - LFCP:[MD5.5F1258ACDD816E56374C8A25247734F1] - 25/05/2013 - 09:12:35 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-3A083BAB.pf
O45 - LFCP:[MD5.886B35B34BD32EEAA760C4509BA942DC] - 25/05/2013 - 09:12:36 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-6AF1F8E5.pf
O45 - LFCP:[MD5.C7F7CB2FC92B8550474BBE0259C85D8D] - 25/05/2013 - 09:12:39 ---A- - C:\Windows\Prefetch\GAME.DAT-115D29C5.pf
O45 - LFCP:[MD5.DFDDE0B1E21FA6B39EB835C6A7E72650] - 25/05/2013 - 09:12:40 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-9BE081DA.pf
O45 - LFCP:[MD5.12E920F466BED6A77EC496B713123EE9] - 25/05/2013 - 09:12:41 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-1B1A8EAB.pf
O45 - LFCP:[MD5.6A774803E5A4CF5A140BAAD0A6605581] - 25/05/2013 - 09:12:42 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-BEB17BE5.pf
O45 - LFCP:[MD5.787AF77FD2D52A7BB44F86DDBD20E483] - 25/05/2013 - 09:12:45 ---A- - C:\Windows\Prefetch\GAME.DAT-DF91F6B8.pf
O45 - LFCP:[MD5.1706A871C02C91A2B7064652CBFB891C] - 25/05/2013 - 09:12:47 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-7FD9BA9D.pf
O45 - LFCP:[MD5.0A37B3F8840238F98BD0888E8D3A09C6] - 25/05/2013 - 09:12:47 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-F553D116.pf
O45 - LFCP:[MD5.F568B559B77AD16945B4199534C52882] - 25/05/2013 - 09:12:49 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-2390AD00.pf
O45 - LFCP:[MD5.2D0EF50A32A380257434BF348D2CCE46] - 25/05/2013 - 09:12:53 ---A- - C:\Windows\Prefetch\GAME.DAT-BF3AB286.pf
O45 - LFCP:[MD5.D6207E9E0D60749A017EC831A99F2690] - 25/05/2013 - 09:12:55 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-C7BCD78B.pf
O45 - LFCP:[MD5.40DDEF76DE0AE20D246AFE095A48C38C] - 25/05/2013 - 09:12:56 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-3B9F0814.pf
O45 - LFCP:[MD5.6E1DB98C118C859C6AFD9BD54716C7F4] - 25/05/2013 - 09:12:56 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-6688A3DE.pf
O45 - LFCP:[MD5.8DF1C5151721A402AB641CFF5313141D] - 25/05/2013 - 09:13:00 ---A- - C:\Windows\Prefetch\GAME.DAT-E61BDEC7.pf
O45 - LFCP:[MD5.AD47ED4E3579D7625FEB90C23DF7E1F9] - 25/05/2013 - 09:13:02 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-EB1A18BC.pf
O45 - LFCP:[MD5.97F8AB8B527C0E49886E2CBB1E5DFDF5] - 25/05/2013 - 09:13:04 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-6BB970FD.pf
O45 - LFCP:[MD5.9C639C707402AFC7601DB14959A9D706] - 25/05/2013 - 09:13:05 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-3628B357.pf
O45 - LFCP:[MD5.E7331A75D3864F29A94420A422497BC7] - 25/05/2013 - 09:19:28 ---A- - C:\Windows\Prefetch\UNINST.EXE-8144BB14.pf
O45 - LFCP:[MD5.4DDC8713629FE50230F5656A12481F68] - 25/05/2013 - 09:20:46 ---A- - C:\Windows\Prefetch\{311739EB-5C94-4EE1-B911-2D1F-A7944CFD.pf
O45 - LFCP:[MD5.32926298C53D6103587131F0DB5B6B72] - 25/05/2013 - 09:23:01 ---A- - C:\Windows\Prefetch\DIFXINST64.EXE-C8C2E3F2.pf
O45 - LFCP:[MD5.064A007098D4AA2298E1D5A849234381] - 25/05/2013 - 09:25:54 ---A- - C:\Windows\Prefetch\PCSPEEDMAXIMIZER.EXE-60BA47FF.pf
O45 - LFCP:[MD5.29F6694245486FD4E071183DF08243CC] - 25/05/2013 - 09:27:15 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-A6D3D8CE.pf
O45 - LFCP:[MD5.7BA48C64314144B122826BFDE062CA8B] - 25/05/2013 - 13:06:28 ---A- - C:\Windows\Prefetch\EPP351.EXE-1771E43E.pf
O45 - LFCP:[MD5.F539CD1FAE2945C438B3C089A95344B7] - 25/05/2013 - 13:06:44 ---A- - C:\Windows\Prefetch\SETUP_EP.EXE-3A40447D.pf
O45 - LFCP:[MD5.07BD500E0DB89ADACB263338C1F229BF] - 25/05/2013 - 13:07:06 ---A- - C:\Windows\Prefetch\EPPSHELLREG.EXE-E4E0A343.pf
O45 - LFCP:[MD5.607980492A9A866FF6789B08FCCC3E3E] - 26/05/2013 - 19:49:43 ---A- - C:\Windows\Prefetch\STARTME.EXE-DB3CA801.pf
O45 - LFCP:[MD5.8F87A7969FDFC64149DE6458F185E984] - 26/05/2013 - 19:49:50 ---A- - C:\Windows\Prefetch\STARTME.EXE-24BFBA28.pf
O45 - LFCP:[MD5.9F6AD1A21DA3704AB1A9D654F64D0E3A] - 27/05/2013 - 15:57:35 ---A- - C:\Windows\Prefetch\MAJT4PCFR.EXE-92413E55.pf
O45 - LFCP:[MD5.19C9205DFF638E923081E1740246802A] - 27/05/2013 - 15:57:36 ---A- - C:\Windows\Prefetch\MAJT4PCFR.TMP-F0B20247.pf
O45 - LFCP:[MD5.E0013755A07E5FF592204BF4BF724C06] - 27/05/2013 - 17:07:45 ---A- - C:\Windows\Prefetch\50D1D9D5-CF90-407C-820A-35E05-FA169CE8.pf
O45 - LFCP:[MD5.5E27B70F72A43C009D048F4E7A776D4D] - 27/05/2013 - 17:07:45 ---A- - C:\Windows\Prefetch\INST.EXE-9EEFFBF4.pf
O45 - LFCP:[MD5.088D7CC877E665802332C041604B88C2] - 27/05/2013 - 17:08:36 ---A- - C:\Windows\Prefetch\HAPPYLYRICS_2204-E2F0CCE3.EXE-C98C41D1.pf
~ Prefetcher: 467 Legitimates Filtered in 00mn 07s
---\\ MountPoints2 Shell Key (O51)
O51 - MPSK:{8577740d-fb99-11e1-be6a-806e6f6e6963}\AutoRun\command. (.Electronic Arts - Autorun Application.) -- D:\Autorun.exe
O51 - MPSK:{aa6b18d3-c5f0-11e2-bf7e-4c72b993ea23}\AutoRun\command. (...) -- E:\Startme.exe (.not file.)
~ Keys: Scanned in 00mn 04s
---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLinkedConnections"=1
~ MWPS: 18 Legitimates Filtered in 00mn 00s
---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
~ MWPE Keys: 3 Legitimates Filtered in 00mn 00s
---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.4F18D4C7EA14F11A7211F60D553C03DB] - 26/07/2012 - 06:00:49 ---A- . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\Drivers\3ware.sys [106736]
~ Drivers: Scanned in 00mn 00s
---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 01/06/2013 - 14:26:04 ---A- C:\Users\titi\Links\Desktop.lnk [485]
O61 - LFC: 01/06/2013 - 14:26:04 ---A- C:\Users\titi\Links\Downloads.lnk [936]
O61 - LFC: 01/06/2013 - 14:26:04 ---A- C:\Users\titi\Links\RecentPlaces.lnk [383]
O61 - LFC: 01/06/2013 - 16:31:01 ---A- C:\Users\titi\AppData\Local\supt4pc_fr_36\supt4pc_fr_36\update.cyl [59]
O61 - LFC: 02/06/2013 - 12:27:03 ---A- C:\Users\titi\Downloads\Xtremsplit.exe [305664]
O61 - LFC: 02/06/2013 - 17:50:39 ---A- C:\Users\titi\Downloads\pfsx-setup-01net-10.7.3.exe [667016]
O61 - LFC: 02/06/2013 - 17:52:06 ---A- C:\Users\titi\Downloads\pfsx-setup-01net-10.7.3 [1].exe [11103194]
O61 - LFC: 02/06/2013 - 17:53:47 --H-- C:\Users\titi\AppData\Roaming\Identities\{46504E63-3636-3932-3430-313231346154}\1pac4612.1c16 [45]
O61 - LFC: 03/06/2013 - 18:44:42 ---A- C:\Users\titi\Downloads\mbam-setup-1.75.0.1300.exe [10285040]
O61 - LFC: 04/06/2013 - 04:42:28 ---A- C:\Users\titi\AppData\Local\Google\Chrome\User Data\Certificate Revocation Lists [267278]
O61 - LFC: 04/06/2013 - 04:52:39 ---A- C:\Users\titi\AppData\Local\Google\Chrome\User Data\Local State [33964]
~ 4 Fichiers temporaires (Temporary files)
~ Files: 221 Legitimates Filtered in 00mn 38s
---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ ADS: Scanned in 00mn 00s
---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Not Key.)
~ FASS Keys: 19 Legitimates Filtered in 00mn 00s
---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s
---\\ Search Browser Infection (O69)
O69 - SBI: SearchScopes [HKCU] {210B6304-3A0E-4461-A148-41B64243E380} - (onlinetracks Customized Web Search) - http://search.conduit.com
~ Keys: Scanned in 00mn 00s
---\\ Recherche particuliere à la racine de certains dossiers (O84)
[MD5.A48B88F84CB703FF667295A2E5B363E4] [SPRF][11/03/2013] (...) -- C:\ProgramData\1362990986.bdinstall.bin [1872498]
[MD5.32DCED18FFFEA0035E4FA975CA0AE8BE] [SPRF][22/04/2013] (.The Software Group - Software Update Setup.) -- C:\Users\titi\AppData\Local\Temp\BoxoreInstaller.exe [620656] =>Adware.Boxore
[MD5.602AE45EEB85FCE002C2BD541F5E3F89] [SPRF][11/01/2013] (.Conduit - Pas de description.) -- C:\Users\titi\AppData\Local\Temp\conduitinstaller.exe [86080] =>Toolbar.Conduit
[MD5.735C5AB0106E929C5616B49954FFF0EE] [SPRF][24/05/2013] (.Pas de propriétaire - Lyrics Fan.) -- C:\Users\titi\AppData\Local\Temp\flcsup.exe [280921] =>Adware.AddLyrics
[MD5.F6278B5A16F830885B184D5F72E1B935] [SPRF][04/05/2013] (.Terra Informatica Software, Inc., British C - HTMLayout - embeddable HTML rendering and layout component.) -- C:\Users\titi\AppData\Local\Temp\htmlayout.dll [947200]
[MD5.8A4AF3B0695F29186AD02E2FD766FA3B] [SPRF][11/01/2013] (.SweetIM Technologies Ltd. - SQLite DLL.) -- C:\Users\titi\AppData\Local\Temp\mgsqlite3.dll [393016] =>PUP.SweetIM
[MD5.F4E3DE7B4898E37652F39A06BC9591E3] [SPRF][08/05/2013] (.Conduit - Search Protect by Conduit.) -- C:\Users\titi\AppData\Local\Temp\SecondStepInstaller.exe [2824352] =>Toolbar.Conduit
[MD5.D9DA3FDE1AEE64CEE57D4C57A538A53B] [SPRF][22/10/2012] (.SweetIM Technologies Ltd. - SweetIM Installer by SweetPacks.) -- C:\Users\titi\AppData\Local\Temp\Shortcut_bundlesweetimsetup.exe [7739736] =>PUP.SweetIM
[MD5.C6D792E4583FC46DB0953FBF6E46348A] [SPRF][11/01/2013] (.SweetIM Technologies Lt - This installer.) -- C:\Users\titi\AppData\Local\Temp\SIMEEI2Installer.exe [2962432] =>PUP.SweetIM
[MD5.7704B843006444B69486FD27D4660845] [SPRF][11/01/2013] (.SweetIM Technologies Lt - This installer.) -- C:\Users\titi\AppData\Local\Temp\SIMEEIInstaller.exe [3380216] =>PUP.SweetIM
[MD5.E8EFB9EF24C1E0CED84CFA3C2AE9DC2F] [SPRF][04/05/2013] (...) -- C:\Users\titi\AppData\Local\Temp\toolbar180976635.exe [782832]
[MD5.225CCDCFE5625795647043679CB77112] [SPRF][11/01/2013] (...) -- C:\Users\titi\AppData\Local\Temp\wajam_install.exe [417256] =>Toolbar.Wajam
[MD5.683FDD3D773C58B262DC07CD0C6CE938] [SPRF][03/06/2013] (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Users\titi\Desktop\mbam-setup-1.75.0.1300.exe [10285040]
[MD5.546026247543D6B9499A1503798E3B10] [SPRF][04/06/2013] (.Nicolas Coolman - ZHPDiag.) -- C:\Users\titi\Desktop\ZHPDiag2.exe [5672605]
~ Files: Scanned in 00mn 01s
---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "{0A0FFD05-6AF3-4408-96C5-741D6FAE5EE1}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) =>PUP.SweetIM
O87 - FAEL: "{FCDCAC89-8B60-4E91-AC1F-17F664C8F3FF}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) =>PUP.SweetIM
O87 - FAEL: "{7E3E9501-0214-4E7B-9440-B21B778A0805}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Iminent\Iminent.exe (.not file.) =>Adware.IMBooster
O87 - FAEL: "{84E40B51-363D-4D69-A20A-0E8176DE748E}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Iminent\Iminent.Messengers.exe (.not file.) =>Adware.IMBooster
O87 - FAEL: "{AB37A174-7AC8-4627-A749-98E904A6BCA1}" | In - Private - P6 - TRUE | .(...) -- C:\Windows\System32\dmwu.exe
O87 - FAEL: "{35773580-F21F-4899-8F0E-61356120666D}" | In - Private - P17 - TRUE | .(...) -- C:\Windows\System32\dmwu.exe
~ Firewall: 251 Legitimates Filtered in 00mn 03s
---\\ Scan Additionnel (O88)
Database Version : v2.12387 - (03/06/2013)
Clés trouvées (Keys found) : 92
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 2
Fichiers trouvés (Files found) : 14
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D15DAF33C220F91468A1D7D57C31ACD7] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D6D0EB9FDBD90C04D92A7E729058F10D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A189D17A469616C4688D23E192996267] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98CC8BF5A4A6E6C4ABF7051DDAB8B058] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7FFA128C2B0FF414D805FC5627883401] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D3BA76A44C779424889063D5098ED2D6] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\397C771A7BCAC904697C3EC629ED33ED] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\351716A953E21214898904032EAE2E81] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E6768B6932D112438F047C54D180635] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EB6AF8AEEB922FA4392548F13812E50B] =>PUP.SweetIM
[HKLM\Software\WNLT] =>Adware.IncrediBar
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EE58E3C298524145B73CBBED3CAC4D3] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B2FD9C0A5B9838449838816A28001F4B] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02F47BF73B948514FAACADD8CBBDF37D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\080D9F5E1E95FEE4794CE438E635239E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4318DF19719275242801CBE292063A4C] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75D5168E5E176C24981B4E5DBD991078] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8724E58E6C7D00C48A0D4F3345EB2C26] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB676B0E1B9EFA049B9F7DDDA9645734] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B31BBB0B825EDEF45AB0FE7099C68C81] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B471D8D7319336B4CA89374ED0D7B806] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC30043663AA2CA4DA1DAA9CA5FDCC75] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E1C820A74ED67374BA048B52CB3C3804] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FDC83385E6C239F4C876A77A37DF581D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\427EA997C413D1D47907CBFC7B2DB432] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1E264E0A5959A1C46BA9175A878B12EA] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E4748F9A4181FCE46A23C13B517B9420] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1EAD96AE2CB1DE84BAA9425A8CCA0817] =>Adware.Boxore
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A] =>Adware.IMBooster
[HKCU\Software\AppDataLow\Software\LyricsFan] =>Adware.AddLyrics
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\lrcfan@fansoft.br] =>Adware.AddLyrics
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A8720491-9558-4C0D-9E35-30EED15DFB2B}] =>Adware.AddLyrics
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A8720491-9558-4C0D-9E35-30EED15DFB2B}] =>Adware.AddLyrics
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A8720491-9558-4C0D-9E35-30EED15DFB2B}] =>Adware.AddLyrics
[HKLM\Software\Wow6432Node\Google\Chrome\Extensions\nfeonecgpoepapkmdgdmjolonaakdknd] =>Adware.AddLyrics
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BA71D41F6CC0B6247B05D473850A8AEA] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\12BF94BD06C95F343A77631402B9556A] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2124D8A8CF720FD44866190AF560228E] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27A325ACED8CA4743A30127638591ADB] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\350D17402BD84234EAF7D32F08172D7C] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3EE8C5F419057E1478A654868CEE60B5] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4735D908D66E1BA46B6C2D7185A12B2B] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D6A6B2ED56AF24EA6335EAD6E91CA4] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\76D8378E2DDAED3428720A631F6E3BF0] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EDC790504E1834DBC20C9A04328FD2] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\97C3D0F82E712E241A2F969F45E3351C] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A001B259DB7D694E818BE29B973992C] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E7F556BF224D804D96A96F0F6344789] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAE2EC163C6A68A48921573E0E7E199D] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF4F885EDEE45644EB1E0C99E0162399] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C06C6662FA5B04646829E4A460857770] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE21F3FD57B244142880EF15A165A156] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CEEB3E14ABE8270419B0FD762E18F7C6] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1B5E9A3BDB51349BF96E842C062D98] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FECBC2BC14DA6CD459BD59A041709836] =>PUP.SweetIM^
C:\Program Files (x86)\FindLyrics =>Adware.AddLyrics
C:\Users\titi\AppData\Local\Software =>Adware.Boxore
C:\Users\titi\AppData\Local\Temp\Shortcut_bundlesweetimsetup.exe =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\SIMEEI2Installer.exe =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\SIMEEIInstaller.exe =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\wajam_install.exe =>Toolbar.Wajam
C:\Users\titi\AppData\Local\Temp\BoxoreInstaller.exe =>Adware.Boxore
C:\Users\titi\AppData\Local\Temp\conduitinstaller.exe =>Toolbar.Conduit
C:\Users\titi\AppData\Local\Temp\mgsqlite3.dll =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\SecondStepInstaller.exe =>Toolbar.Conduit
~ Additionnel Scan: 154484 Items scanned in 00mn 51s
---\\ Product Upgrade Codes (O90)
O90 - PUC: "EB8E7C929DBF19D4CBF44B077C815D45" . (.Iminent.) -- C:\Windows\Installer\{29C7E8BE-FBD9-4D91-BC4F-B470C718D554}\imbooster.ico =>Adware.IMBooster
~ Update Products: 70 Legitimates Filtered in 00mn 00s
---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SR - | Auto 07/02/2013 239616 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe
SR - | Auto 21/12/2012 57008 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SS - | Demand 31/07/2012 466064 | (DeviceFastLaneService) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Device Fast-lane\DeviceFastLaneSvc.exe
SR - | Auto 21/08/2012 348784 | (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
SR - | Demand 31/07/2012 659600 | (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
SS - | Auto 11/03/2013 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 11/03/2013 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SR - | Auto 13/07/2012 2451456 | (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
SR - | Auto 04/04/2013 418376 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
SR - | Auto 04/04/2013 701512 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
SR - | Auto 26/11/2011 687400 | (NAUpdate) . (.Nero AG.) - C:\Program Files (x86)\Nero\Update\NASvc.exe
SR - | Auto 11/09/2012 93296 | (RfButtonDriverService) . (.Dritek System INC..) - C:\Windows\RfBtnSvc64.exe
SS - | Auto 0 | (Software_update) . (...) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe
SS - | Demand 0 | (Software_update_m) . (...) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe
SR - | Auto 08/04/2013 68856 | (UPDATESRV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2013\updatesrv.exe
SR - | Auto 08/05/2013 1646792 | (VSSERV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe
SR - | Auto 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe
SS - | Demand 20/09/2012 29696 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Services: Scanned in 00mn 02s
---\\ Recherche Master Boot Record Infection (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
~ MBR: 1 Legitimates Filtered in 00mn 02s
---\\ Recherche Master Boot Record Infection (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by titi at 04/06/2013 06:02:55
********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin
~ MBR: Scanned in 00mn 04s
~ 1559 Legitimates filtered by white list
End of the scan (682 lines in 12mn 19s)(0)
Run by titi at 04/06/2013 05:50:35
WebSite: https://nicolascoolman.webs.com/
State : Version à jour.
WhiteList : Enable
High Elevated Privileges : OK
UAC : Activate by user
---\\ Web Browser
MSIE: Internet Explorer v10.0.9200.16580
GCIE: Google Chrome v27.0.1453.94 (Defaut)
---\\ Windows Product Information
~ Langage: Français
Windows 8 Home Premium Edition, 64-bit (Build 9200)
Windows Server License Manager Script : OK
~ ion : Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : YDTBG
Windows License : OK
~ Windows Remaining Initializations Number : 999
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
---\\ System Protection
Bitdefender Antivirus Plus 2013 v16.16.0.1349
Malwarebytes Anti-Malware version 1.75.0.1300
Windows Defender W8
---\\ System Optimizer
---\\ Peer To Peer (P2P)
eMule
---\\ Software Update
---\\ System Information
~ Processor: AMD64 Family 20 Model 2 Stepping 0, AuthenticAMD
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3658 MB (63% free)
System Restore: Activé (Enable)
System drive C: has 382 GB (85%) free of 448 GB
---\\ Logged in mode
~ Computer Name: TITIETCARLA
~ User Name: titi
~ All Users Names: titi, HomeGroupUser$, Administrateur,
~ Unselected Option: None
Logged in as Administrator
---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\titi\AppData\Roaming\
~ %Desktop% : C:\Users\titi\Desktop\
~ %Favorites% : C:\Users\titi\Favorites\
~ %LocalAppData% : C:\Users\titi\AppData\Local\
~ %StartMenu% : C:\Users\titi\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 382 Go of 448 Go)
D:\ CD-ROM drive (Free 0 Go of 4 Go)
---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
~ Security Center: 29 Legitimates Filtered in 00mn 00s
---\\ Recherche particulière de fichiers génériques
[MD5.E13A31D5254C25406A7946BDD9B06364] - (.Microsoft Corporation - Explorateur Windows.) (.11/10/2012 - 08:35:16.) -- C:\Windows\Explorer.exe [2380944]
[MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - (.Microsoft Corporation - Application de démarrage de Windows.) (.26/07/2012 - 04:08:50.) -- C:\Windows\System32\Wininit.exe [132608]
[MD5.9B9107F1486476D86B6910EDF07F4358] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.10/04/2013 - 00:17:44.) -- C:\Windows\System32\wininet.dll [2242048]
[MD5.BCF2036A0DD579E47C008C133550283E] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/10/2012 - 06:46:58.) -- C:\Windows\System32\Winlogon.exe [517120]
[MD5.9448F5740A037EC0C18F0E9177232DD0] - (.Microsoft Corporation - Bibliothèque de licences.) (.26/07/2012 - 04:07:20.) -- C:\Windows\System32\sppcomapi.dll [273408]
[MD5.36D6A3201721558A8AFBCC09C2DA4C2C] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.06/11/2012 - 04:53:44.) -- C:\Windows\system32\Drivers\AFD.sys [560640]
[MD5.A721FF570C2387E383BDDEA9632863C9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.26/07/2012 - 06:00:48.) -- C:\Windows\system32\Drivers\atapi.sys [25840]
[MD5.990B1BABE6E81FB18E65A87EBEFB1772] - (.Microsoft Corporation - CD-ROM File System Driver.) (.26/07/2012 - 03:30:10.) -- C:\Windows\system32\Drivers\Cdfs.sys [108544]
[MD5.339BFF85D788268752DA8C9644B188EE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.26/07/2012 - 03:26:36.) -- C:\Windows\system32\Drivers\Cdrom.sys [174080]
[MD5.09D9EB9E7898F8E6561473A20CC808B9] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.26/07/2012 - 03:26:53.) -- C:\Windows\system32\Drivers\DfsC.sys [118784]
[MD5.7D87B5B6C7188D553E11B59DC7F0B111] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/09/2012 - 07:08:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [71168]
[MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - (.Microsoft Corporation - Pilote de port i8042.) (.26/07/2012 - 03:28:51.) -- C:\Windows\system32\Drivers\i8042prt.sys [112640]
[MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - (.Microsoft Corporation - IP Network Address Translator.) (.26/07/2012 - 03:23:01.) -- C:\Windows\system32\Drivers\IpNat.sys [145920]
[MD5.93179D48066918323628CB016D8C94DC] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.05/02/2013 - 23:29:09.) -- C:\Windows\system32\Drivers\MRxSmb.sys [370688]
[MD5.7CEC25C682D319D484630B3952C31A11] - (.Microsoft Corporation - MBT Transport driver.) (.26/07/2012 - 03:24:28.) -- C:\Windows\system32\Drivers\netBT.sys [331776]
[MD5.76929F4A69E425911A63B407E26C2589] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.02/02/2013 - 11:54:54.) -- C:\Windows\system32\Drivers\ntfs.sys [1933544]
[MD5.4563DAF8C6A740AD7F501E219BD10766] - (.Microsoft Corporation - Pilote de port parallèle.) (.26/07/2012 - 03:29:53.) -- C:\Windows\system32\Drivers\Parport.sys [105984]
[MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.26/07/2012 - 03:23:17.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [124928]
[MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.26/07/2012 - 03:25:18.) -- C:\Windows\system32\Drivers\rdpdr.sys [179712]
[MD5.73DC722CE5DF26D7638CE2446F2655C7] - (.Microsoft Corporation - TDI Translation Driver.) (.26/07/2012 - 06:26:47.) -- C:\Windows\system32\Drivers\tdx.sys [117248]
[MD5.2FB3CDFD5EAF4CD9D4AFAF96877D13AE] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.26/07/2012 - 05:57:09.) -- C:\Windows\system32\Drivers\volsnap.sys [332016]
~ Generic Processes: Scanned in 00mn 01s
---\\ Etat des fichiers cachés (Caché/Total)
~ Mes Videos (My Videos) : 1/2
~ Mes Favoris (My Favorites) : 1/12
~ Mes Documents (My Documents) : 1/3847
~ Mon Bureau (My Desktop) : 2/211
~ Menu demarrer (Programs) : 1/28
~ Hidden Files: Scanned in 00mn 23s
---\\ Processus lancés
[MD5.D1D5DAB39DCB4BE0359943738D87409B] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [532040] [PID.3404]
[MD5.1B38F4C2BCDB133B757E22BEB61FB3FC] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe [1176176] [PID.3204]
[MD5.51C392EC9DA1119EC86D562FF3E7344F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [825808] [PID.3772]
[MD5.A3285102E7656627A53625A9138FD9AA] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7447552] [PID.1360]
~ Processes Running: Scanned in 00mn 01s
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\titi\AppData\Local\Google\Chrome\User Data\Default\Preferences
G2 - GCE: Preference [User Data\Default] [nfeonecgpoepapkmdgdmjolonaakdknd] Lyrics Fan v.1.112 (Désactivé) =>Adware.AddLyrics
~ Google Browser: 7 Legitimates Filtered in 00mn 16s
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s
---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s
---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Happy Lyrics [64Bits] - {59C0C5BD-2579-433A-BBB8-AFFD59642BAF} . (...) -- C:\Program Files (x86)\HappyLyrics\hppylrc.dll (.not file.)
O2 - BHO: Lyrics Fan [64Bits] - {A8720491-9558-4C0D-9E35-30EED15DFB2B} . (.FAN Software - Lyrics Fan.) -- C:\Program Files (x86)\LyricsFan\lrcfan.dll =>Adware.AddLyrics
~ BHO: 2 Legitimates Filtered in 00mn 00s
---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [Bdagent] . (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2013\bdagent.exe
O4 - HKCU\..\Run: [EADM] . (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe
O4 - HKLM\..\Wow6432Node\Run: [LManager] Clé orpheline
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKUS\S-1-5-18\..\Run: [SearchProtect] \SearchProtect\bin\cltmng.exe =>Toolbar.Conduit
O4 - HKUS\S-1-5-21-377929125-826591287-2286979282-1001\..\Run: [EADM] . (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe
~ Application: Scanned in 00mn 00s
---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop: EditPlus 3.lnk . (.ES-Computing - EditPlus.) -- C:\Program Files (x86)\EditPlus 3\editplus.exe
O4 - GS\Desktop: MiPony.lnk . (.www.mipony.net - Mipony.) -- C:\Program Files (x86)\MiPony\MiPony.exe
O4 - GS\Desktop: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) -- C:\Program Files (x86)\PhotoFiltre Studio X\pfstudiox.exe
~ Global Startup: Scanned in 00mn 00s
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpDomain = lan
O17 - HKLM\System\CCS\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{DB8FABFC-CC9D-464E-A57E-74C44170BBF5}: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpDomain = lan
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
~ Domain: Scanned in 00mn 00s
---\\ Protocole additionnel (O18)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
~ Protocole Additionnel: Scanned in 00mn 00s
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Service Software Update (Software_update (Software_update) . (...) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe (.not file.)
O23 - Service: Bitdefender Virus Shield (VSSERV) . (.Bitdefender - Bitdefender Security Service.) - C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe
~ Services: 12 Legitimates Filtered in 00mn 26s
---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Happy Lyrics Update.job [410]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Lyrics Fan Update.job [416] =>Adware.AddLyrics
[MD5.00000000000000000000000000000000] [APT] [EPUpdater] (...) -- C:\Users\titi\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe (.not file.) [0]
[MD5.65F00E976FCF8C01D5C2B5295AEC41A6] [APT] [GoforFilesUpdate] (.http://www.goforfiles.com/ -- C:\Program Files (x86)\GoforFiles\GFFUpdater.exe [364112] =>P2P.GoforFiles
[MD5.763643CE7E9C5C65405196C0AD279DFB] [APT] [Lyrics Fan Update] (.FAN Software.) -- C:\Program Files (x86)\LyricsFan\LyricsFanUpdater.exe [118272] =>Adware.AddLyrics
~ Scheduled Task: 18 Legitimates Filtered in 00mn 13s
---\\ Logiciels installés (O42)
O42 - Logiciel: GoforFiles - (.http://www.goforfiles.com/ [HKCU][64Bits] -- GoforFiles =>P2P.GoforFiles
O42 - Logiciel: Iminent - (.Iminent.) [HKLM][64Bits] -- {29C7E8BE-FBD9-4D91-BC4F-B470C718D554} =>Adware.IMBooster
O42 - Logiciel: Lyrics Fan - (.FAN Software.) [HKLM][64Bits] -- lrcfan@fansoft.br =>Adware.AddLyrics
~ Logic: 80 Legitimates Filtered in 00mn 01s
---\\ HKCU & HKLM Software Keys
[HKCU\Software\AppDataLow\Software\LyricsFan]
[HKCU\Software\BabSolution] =>Hijacker.BabSolution
[HKCU\Software\IncrediMail]
[HKLM\Software\DomaIQ] =>Toolbar.DomaIQ
[HKLM\Software\WNLT] =>Adware.IncrediBar
[HKLM\Software\Wow6432Node\GoforFiles] =>P2P.GoforFiles
~ Key Software: 153 Legitimates Filtered in 00mn 01s
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 24/05/2013 - 15:07:55 - [0] ----D C:\Program Files (x86)\FindLyrics =>Adware.AddLyrics
O43 - CFD: 04/05/2013 - 20:50:54 - [9,958] ----D C:\Program Files (x86)\GoforFiles =>P2P.GoforFiles
O43 - CFD: 24/05/2013 - 15:07:56 - [0,380] ----D C:\Program Files (x86)\LyricsFan
O43 - CFD: 04/05/2013 - 20:51:16 - [0,001] ----D C:\Users\titi\AppData\Roaming\GoforFiles =>P2P.GoforFiles
O43 - CFD: 10/01/2013 - 15:15:13 - [0,510] ----D C:\Users\titi\AppData\Roaming\lm
O43 - CFD: 01/06/2013 - 17:31:01 - [0,000] ----D C:\Users\titi\AppData\Local\supt4pc_fr_36
O43 - CFD: 24/05/2013 - 15:10:18 - [0,002] ----D C:\Users\titi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\QTRAX
~ Program Folder: 139 Legitimates Filtered in 00mn 28s
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.4B3C216E536A698F7E753D9197D2C79E] - 03/06/2013 - 20:50:31 ---A- . (...) -- C:\bdlog.txt [186426]
O44 - LFC:[MD5.A9B29973AF1FBE6DD78756FBAD9C1168] - 03/06/2013 - 18:00:22 ---A- . (...) -- C:\Windows\DeleteOnReboot.bat [290]
O44 - LFC:[MD5.C58305AC412A2DE95D461072E0AF5AAF] - 21/05/2013 - 14:31:12 ---A- . (...) -- C:\Windows\SysNative\dmwu.exe [1447728]
O44 - LFC:[MD5.C58305AC412A2DE95D461072E0AF5AAF] - 21/05/2013 - 14:31:12 RSHAD . (...) -- C:\Windows\System32\dmwu.exe [1447728]
O44 - LFC:[MD5.49BAC9565B10570CAAB89B759D2F3DEA] - 21/05/2013 - 14:30:18 ---A- . (.IncrediMail, Ltd. - IMHttpCo Dynamic Link Library.) -- C:\Windows\SysNative\ImHttpComm.dll [33792]
O44 - LFC:[MD5.49BAC9565B10570CAAB89B759D2F3DEA] - 21/05/2013 - 14:30:18 RSHAD . (.IncrediMail, Ltd. - IMHttpCo Dynamic Link Library.) -- C:\Windows\System32\ImHttpComm.dll [33792]
~ Files: 25 Legitimates Filtered in 00mn 24s
---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.544FFA254C631579C8C155032E1FE5BA] - 01/06/2013 - 12:28:16 ---A- - C:\Windows\Prefetch\NEWDEV.EXE-81B9876F.pf
O45 - LFCP:[MD5.FE389DB1CD53B93ED83BC8BB93BD2919] - 01/06/2013 - 14:15:02 ---A- - C:\Windows\Prefetch\DEVICEFASTLANEEVENT.EXE-0D33B9ED.pf
O45 - LFCP:[MD5.5002D47589FDA636C7DF1D7CF22C4208] - 01/06/2013 - 14:15:02 ---A- - C:\Windows\Prefetch\DEVICEFASTLANESVC.EXE-E86CADBF.pf
O45 - LFCP:[MD5.ED14D68AEDD5DDE67284DE778BC11F4B] - 01/06/2013 - 14:15:02 ---A- - C:\Windows\Prefetch\DEVICEFASTLANEUI.EXE-CF5A78A9.pf
O45 - LFCP:[MD5.5C5A8B9AC5792160C77D00A12EDC2AC8] - 01/06/2013 - 16:31:03 ---A- - C:\Windows\Prefetch\MAJTUTO4PC_FR_36.EXE-0A63F850.pf =>PUP.Eorezo
O45 - LFCP:[MD5.C0543A64FB5E38805B3FB0E8EE3644BB] - 01/06/2013 - 16:31:03 ---A- - C:\Windows\Prefetch\MAJTUTO4PC_FR_36.TMP-20F35518.pf =>PUP.Eorezo
O45 - LFCP:[MD5.C67EE4F5BC05288C4405711F6D68AF4E] - 01/06/2013 - 16:31:12 ---A- - C:\Windows\Prefetch\SUPT4PC_FR_36.EXE-3AD69583.pf
O45 - LFCP:[MD5.2AF88FB357DDB24D6B09B03DAC70CDCC] - 02/06/2013 - 10:11:33 ---A- - C:\Windows\Prefetch\SERVICES X86-CODEDOWNLOADER.E-5CB7B0A2.pf =>PUP.CrossRider
O45 - LFCP:[MD5.5BF412C1614B3E1F4003CF5824B82613] - 02/06/2013 - 10:11:38 ---A- - C:\Windows\Prefetch\SERVICES X86-BG.EXE-A1ADF25D.pf =>PUP.CrossRider
O45 - LFCP:[MD5.1BC7C51E828BBB923F20DFB1FB3773F3] - 02/06/2013 - 10:12:28 ---A- - C:\Windows\Prefetch\ONLINETRACKSAUTOUPDATEHELPER.-067E39E0.pf
O45 - LFCP:[MD5.C0B031D0E1182C6B95A94E547E26345D] - 02/06/2013 - 11:07:51 ---A- - C:\Windows\Prefetch\CLTMNG.EXE-E14AC8B0.pf
O45 - LFCP:[MD5.9615408B72795C767CB4C66D17D5E92F] - 02/06/2013 - 11:08:34 ---A- - C:\Windows\Prefetch\THCH.EXE-95900F79.pf
O45 - LFCP:[MD5.69E7F4D518FFB3A005C93EBE01076558] - 02/06/2013 - 11:09:07 ---A- - C:\Windows\Prefetch\DMWU.EXE-AA7A778B.pf
O45 - LFCP:[MD5.33D53CF71C5E472D71FC1EC302268DAD] - 02/06/2013 - 12:28:04 ---A- - C:\Windows\Prefetch\XTREMSPLIT.EXE-29D81664.pf
O45 - LFCP:[MD5.B46115C88F6AC2DC85A9EA2BF8FDC47E] - 02/06/2013 - 17:33:21 ---A- - C:\Windows\Prefetch\LIVECOMM.EXE-F1928578.pf
O45 - LFCP:[MD5.12E43C5EF1461C3FFADFE277AE6971F3] - 02/06/2013 - 17:52:15 ---A- - C:\Windows\Prefetch\PFSX-SETUP-01NET-10.7.3.EXE-1E09C780.pf
O45 - LFCP:[MD5.E16201FAA4053C36CDE4DAA05242D4A0] - 02/06/2013 - 17:53:19 ---A- - C:\Windows\Prefetch\PFSX-SETUP-01NET-10.7.3 [1].E-92A621F5.pf
O45 - LFCP:[MD5.C3CC7254BCB98089A795CE84BB1FC1F3] - 03/06/2013 - 14:29:02 ---A- - C:\Windows\Prefetch\SWEETIM.EXE-8F50D9C0.pf =>PUP.SweetIM
O45 - LFCP:[MD5.F282AA9F60B2BACD815B827478591388] - 03/06/2013 - 15:44:38 ---A- - C:\Windows\Prefetch\BROWSERPROTECT.EXE-6CD41A66.pf =>Hijacker.Eazel
O45 - LFCP:[MD5.20DAFA055706062BD783B35607F497EF] - 03/06/2013 - 16:45:00 ---A- - C:\Windows\Prefetch\SOFTWARECRASHHANDLER.EXE-5F240164.pf
O45 - LFCP:[MD5.20ACCDF0D9F06C4FD346017DD5C8379A] - 03/06/2013 - 16:45:34 ---A- - C:\Windows\Prefetch\CLTMNG.EXE-76C32FCE.pf
O45 - LFCP:[MD5.E5C39EF2F9F11B8BFEAB2760438E0704] - 03/06/2013 - 16:45:39 ---A- - C:\Windows\Prefetch\SWEETPACKSUPDATEMANAGER.EXE-4BA95FDA.pf =>PUP.SweetIM
O45 - LFCP:[MD5.F922D0C49732C267E04CE2F78418FA9C] - 03/06/2013 - 16:45:56 ---A- - C:\Windows\Prefetch\BOXORE.EXE-666CD123.pf =>Adware.Boxore
O45 - LFCP:[MD5.CFFA0B2E61C414B42C16F0B9E8196773] - 03/06/2013 - 16:45:56 ---A- - C:\Windows\Prefetch\TUTO4PC_FR_33.EXE-23A169E9.pf =>PUP.Eorezo
O45 - LFCP:[MD5.C05DD4A5F54EF0BC886674DF429E188A] - 03/06/2013 - 16:46:06 ---A- - C:\Windows\Prefetch\IMINENT.EXE-DDB5429B.pf =>Adware.IMBooster
O45 - LFCP:[MD5.755869F11E17145FD207960C32710621] - 03/06/2013 - 16:46:06 ---A- - C:\Windows\Prefetch\IMINENT.MESSENGERS.EXE-71459735.pf =>Adware.IMBooster
O45 - LFCP:[MD5.1FE71EF73460486F331E599426563A96] - 03/06/2013 - 16:46:06 ---A- - C:\Windows\Prefetch\TUTO4PC_FR_36.EXE-39BEC677.pf =>PUP.Eorezo
O45 - LFCP:[MD5.B10850F06ACC68E8A908626F7A958FEF] - 03/06/2013 - 16:48:17 ---A- - C:\Windows\Prefetch\UPT4PC_FR_33.EXE-4CCFACC6.pf
O45 - LFCP:[MD5.E929AF80F6E8F7FBE9F6FF7892A63642] - 03/06/2013 - 17:12:24 ---A- - C:\Windows\Prefetch\OBK.EXE-78D4C9CC.pf
O45 - LFCP:[MD5.3D0061D0BD8EC1A143E6FB1347C816BA] - 03/06/2013 - 17:12:24 ---A- - C:\Windows\Prefetch\OBKCH.EXE-631D1C6B.pf
O45 - LFCP:[MD5.C419AD0058D882ABF053D7EAD55591B9] - 03/06/2013 - 19:08:48 ---A- - C:\Windows\Prefetch\INSTALLER.EXE-2DA55FD2.pf
O45 - LFCP:[MD5.760F3E7ABA9E004034EFE40F2DA9C25C] - 04/06/2013 - 04:35:03 ---A- - C:\Windows\Prefetch\DKRUN32.EXE-8583E6AC.pf
O45 - LFCP:[MD5.161474F1A47CA2424365969DE5427BEF] - 04/06/2013 - 04:35:12 ---A- - C:\Windows\Prefetch\LMUTILPS32.EXE-9827F12C.pf
O45 - LFCP:[MD5.C69E7F36E05AEE1E18F9ED3899EDF3BC] - 04/06/2013 - 04:48:11 ---A- - C:\Windows\Prefetch\BDADDMTASK.EXE-C9B44295.pf
O45 - LFCP:[MD5.49FB49D76C207AEA0C447AEABFED2912] - 05/05/2013 - 20:52:21 ---A- - C:\Windows\Prefetch\EF16.TMP-140FD8DA.pf
O45 - LFCP:[MD5.07430DC28243B4F0194BF2412650BFBB] - 06/05/2013 - 21:08:05 ---A- - C:\Windows\Prefetch\408F.TMP-B8A4520A.pf
O45 - LFCP:[MD5.9AA3B0D7721CF49F60CD951128C0F55E] - 07/05/2013 - 22:08:05 ---A- - C:\Windows\Prefetch\89EB.TMP-75AC7AA0.pf
O45 - LFCP:[MD5.38B0717FF46465A7481CCA8657A3FC7C] - 08/05/2013 - 10:04:14 ---A- - C:\Windows\Prefetch\EBAY2.EXE-E3201D7D.pf
O45 - LFCP:[MD5.E49D0ACE7F3ACE46B13F024D97FE8AD7] - 08/05/2013 - 11:41:27 ---A- - C:\Windows\Prefetch\GOOGLEEARTH-WIN-BUNDLE-7.1.1.-C5A3FDA1.pf
O45 - LFCP:[MD5.D7DD0C333E2ED2A8DE66A97EF859869F] - 08/05/2013 - 17:43:13 ---A- - C:\Windows\Prefetch\EXTCONVERTER.EXE-B7C2FB1C.pf
O45 - LFCP:[MD5.E05B6175E537CA84E832713600F8EC24] - 08/05/2013 - 23:08:06 ---A- - C:\Windows\Prefetch\D5A9.TMP-3D9AC747.pf
O45 - LFCP:[MD5.0C301C19BE15EE20C5089E2DDD859933] - 10/05/2013 - 07:24:10 ---A- - C:\Windows\Prefetch\D153.TMP-043CDC79.pf
O45 - LFCP:[MD5.2C3FA4F582EA4B6077C8F94434A6E4BA] - 11/05/2013 - 15:53:12 ---A- - C:\Windows\Prefetch\E205.TMP-87507CF4.pf
O45 - LFCP:[MD5.D1035FA61B3C7766B70F922F2BFF69F8] - 12/05/2013 - 16:53:17 ---A- - C:\Windows\Prefetch\2F49.TMP-902CBE09.pf
O45 - LFCP:[MD5.C87C8B381A692026B2B076264390C29C] - 13/05/2013 - 16:56:48 ---A- - C:\Windows\Prefetch\SECONDSTEPINSTALLER.EXE-108A081B.pf
O45 - LFCP:[MD5.B1956B5A941C4334B5BCBF80AC2E34DC] - 13/05/2013 - 16:57:09 ---A- - C:\Windows\Prefetch\CLTMNGSVC.EXE-28758A2C.pf
O45 - LFCP:[MD5.E8CF76B56B1FB8D4543F7645255FF724] - 13/05/2013 - 16:57:09 ---A- - C:\Windows\Prefetch\SPRUNNER.EXE-9EF706D7.pf
O45 - LFCP:[MD5.226F089D334D886A1D0088053DF88E02] - 17/05/2013 - 11:49:17 ---A- - C:\Windows\Prefetch\LAUNCHTM.EXE-B444BC8E.pf
O45 - LFCP:[MD5.DE5DBE07F8B766BCB7BD67753DDD1DCA] - 18/05/2013 - 08:54:54 ---A- - C:\Windows\Prefetch\EMULE.EXE-6F3A59E3.pf
O45 - LFCP:[MD5.6D9D3012C0721273C9E5FC11B429EFFD] - 20/05/2013 - 11:49:02 ---A- - C:\Windows\Prefetch\AUTORUN.EXE-D28490C2.pf
O45 - LFCP:[MD5.A88B6321E7D33EB241CA8E972013DBE9] - 23/05/2013 - 17:47:29 ---A- - C:\Windows\Prefetch\27.0.1453.94_26.0.1410.64_CHR-A30B2727.pf
O45 - LFCP:[MD5.CD369C1CB1CD71CA264039528C64E7A1] - 23/05/2013 - 17:54:57 ---A- - C:\Windows\Prefetch\GENPTCH.EXE-022E2611.pf
O45 - LFCP:[MD5.72EF240BA6A178B2F1E856A8D0B515BD] - 24/05/2013 - 14:06:44 ---A- - C:\Windows\Prefetch\MIPONY-INSTALLER.EXE-BCB9BF1E.pf
O45 - LFCP:[MD5.C5882B7530EE60B0A312147F056D625B] - 24/05/2013 - 14:06:45 ---A- - C:\Windows\Prefetch\MIPONY-INSTALLER-1.EXE-8FD2B1B6.pf
O45 - LFCP:[MD5.00586B566249BBFF8A491B99D8ACE5F0] - 24/05/2013 - 14:07:29 ---A- - C:\Windows\Prefetch\DELTATB.EXE-ECF6B948.pf =>Toolbar.DeltaSearch
O45 - LFCP:[MD5.271631FCA25926079C88CFCF43503DBF] - 24/05/2013 - 14:07:29 ---A- - C:\Windows\Prefetch\FINDLYRICS.EXE-CD7FD79B.pf =>Adware.AddLyrics
O45 - LFCP:[MD5.7B3A808A0EDEA285FED5C1D6AF1F05C5] - 24/05/2013 - 14:07:29 ---A- - C:\Windows\Prefetch\QTRAXINSTALLER.EXE-A1B755C6.pf
O45 - LFCP:[MD5.BD979DC3F85F5CCCEECF86B0213F0BC4] - 24/05/2013 - 14:07:39 ---A- - C:\Windows\Prefetch\TUTO4PC_SETUP_FR.EXE-6483E602.pf =>PUP.Eorezo
O45 - LFCP:[MD5.86C73447615416C5D0DCA48F8AF11291] - 24/05/2013 - 14:07:40 ---A- - C:\Windows\Prefetch\TUTO4PC_SETUP_FR.TMP-872FC7DB.pf =>PUP.Eorezo
O45 - LFCP:[MD5.A112D95494BA1CC3B2EDF2FC79523B28] - 24/05/2013 - 14:08:36 ---A- - C:\Windows\Prefetch\FLCSUP.EXE-7EA4384E.pf
O45 - LFCP:[MD5.669E3E356AB5699C1BA116C19254D091] - 24/05/2013 - 14:08:36 ---A- - C:\Windows\Prefetch\FLCSUR.EXE-1E2A4401.pf
O45 - LFCP:[MD5.78136E57CA1F007F9C300CDDE7ECDC1C] - 24/05/2013 - 19:28:05 ---A- - C:\Windows\Prefetch\BOXORE.EXE-A2201CC7.pf =>Adware.Boxore
O45 - LFCP:[MD5.CD03C75BBE6EB84A9681626F789F6CFE] - 24/05/2013 - 19:28:05 ---A- - C:\Windows\Prefetch\BOXOREINSTALLER.EXE-B14E3636.pf =>Adware.Boxore
O45 - LFCP:[MD5.EA8BAF0AE6A3117F187D29205C749F75] - 24/05/2013 - 19:28:05 ---A- - C:\Windows\Prefetch\DELTA BABYLON.EXE-93D592F1.pf =>Toolbar.Babylon
O45 - LFCP:[MD5.8378CCE1B6D21B8612AB0278805E413E] - 24/05/2013 - 19:28:27 ---A- - C:\Windows\Prefetch\SCS.EXE-B1CF88FC.pf
O45 - LFCP:[MD5.A952095CE2D603180F8F425E4774BD78] - 24/05/2013 - 19:31:26 ---A- - C:\Windows\Prefetch\DELTATB.EXE-F5CC058A.pf =>Toolbar.DeltaSearch
O45 - LFCP:[MD5.ABDA98E6409604677740913D7F1E2D9D] - 24/05/2013 - 19:31:52 ---A- - C:\Windows\Prefetch\DELTA4FFX.EXE-8CE04256.pf
O45 - LFCP:[MD5.1B284122D956F2DDEB20350F542B5B69] - 24/05/2013 - 19:31:54 ---A- - C:\Windows\Prefetch\DELTA4IE.EXE-0E3E6180.pf
O45 - LFCP:[MD5.4EA4D77A6A9EB1EC2D1DF2601AF70646] - 24/05/2013 - 19:31:54 ---A- - C:\Windows\Prefetch\DELTASRV.EXE-D503A767.pf
O45 - LFCP:[MD5.934DC397ACDA08B2252AD7CF9010180E] - 24/05/2013 - 19:31:54 ---A- - C:\Windows\Prefetch\MYBABYLONTB.EXE-93E7D2B5.pf =>Toolbar.Babylon
O45 - LFCP:[MD5.1CAF5817F94429D20E0CA535CF3195B1] - 24/05/2013 - 19:31:55 ---A- - C:\Windows\Prefetch\BPROTECT.EXE-87C554E2.pf
O45 - LFCP:[MD5.78BCEC0D52B71656B0EAB24A66442FAB] - 24/05/2013 - 19:32:15 ---A- - C:\Windows\Prefetch\PUSH.EXE-3E49F76A.pf
O45 - LFCP:[MD5.ADF83C3F239CC0433D2AF18FC2BD8214] - 24/05/2013 - 19:32:15 ---A- - C:\Windows\Prefetch\WEBPLAYER.EXE-78EFCF68.pf
O45 - LFCP:[MD5.653B7267DB936DA0CA834E55E6FBFB6C] - 24/05/2013 - 19:49:03 ---A- - C:\Windows\Prefetch\IMINENT.EXE-577869DE.pf =>Adware.IMBooster
O45 - LFCP:[MD5.042873233A0167E6654B42A24894BF32] - 24/05/2013 - 19:49:03 ---A- - C:\Windows\Prefetch\UMBRELLA.EXE-0B44C393.pf
O45 - LFCP:[MD5.467A9234D40DC21EB1510AA8066792F9] - 25/05/2013 - 09:08:40 ---A- - C:\Windows\Prefetch\RESTORE.EXE-FF5AC776.pf
O45 - LFCP:[MD5.22FAFA9906A8732B817F9985EBBBF9BE] - 25/05/2013 - 09:08:53 ---A- - C:\Windows\Prefetch\GAMECONSOLE-4.0.23.8-TO-4.0.2-F4C8D955.pf
O45 - LFCP:[MD5.281093E0BC83905C3199185AEA04D5AD] - 25/05/2013 - 09:08:56 ---A- - C:\Windows\Prefetch\PATCH_5272.EXE-E7CE1F9C.pf
O45 - LFCP:[MD5.4197FDC913E529768D74DD0F4C2AF39C] - 25/05/2013 - 09:08:59 ---A- - C:\Windows\Prefetch\BSDIFF_PATCH.EXE-5CB3380C.pf
O45 - LFCP:[MD5.E259C5F6AF4DC238E9B54B64A4FEC215] - 25/05/2013 - 09:09:24 ---A- - C:\Windows\Prefetch\PARK-{A115BE37-90C1-4DED-AE63-889CBF58.pf
O45 - LFCP:[MD5.6A5AEF1A158F2B9011A6E05BCE11F836] - 25/05/2013 - 09:09:58 ---A- - C:\Windows\Prefetch\INSTALLTOUCHPOINTS-PACKARDBEL-7C530842.pf
O45 - LFCP:[MD5.F8619C677BA8092F03AEC95338673667] - 25/05/2013 - 09:10:00 ---A- - C:\Windows\Prefetch\INSTALLTOUCHPOINTS-PACKARDBEL-AFC6D3BC.pf
O45 - LFCP:[MD5.B7A88DF1918D5484D6599ACD77E7F272] - 25/05/2013 - 09:11:15 ---A- - C:\Windows\Prefetch\GAME.DAT-81362BDD.pf
O45 - LFCP:[MD5.38C0A1A3FE4E5C3D2FB089EC161A2066] - 25/05/2013 - 09:11:17 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-FB09BA72.pf
O45 - LFCP:[MD5.655BD6B0252A5046DD1DCC4349BA22E8] - 25/05/2013 - 09:11:18 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-2939A083.pf
O45 - LFCP:[MD5.9E3A5A16088A82064D01ED157633AF43] - 25/05/2013 - 09:11:19 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-2C4BEB3D.pf
O45 - LFCP:[MD5.5C38B831EBE84492703E1DA179F75970] - 25/05/2013 - 09:11:23 ---A- - C:\Windows\Prefetch\GAME.DAT-99D9B6CB.pf
O45 - LFCP:[MD5.2243FA7E08ED2DF592F2CFFF04B3BA28] - 25/05/2013 - 09:11:24 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-7984D480.pf
O45 - LFCP:[MD5.5A3992588D55F07CBF5124BB4F8C85F2] - 25/05/2013 - 09:11:25 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-4FFBD3A1.pf
O45 - LFCP:[MD5.3F369D37E710347753C83E46AB30C900] - 25/05/2013 - 09:11:27 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-A0B5A03B.pf
O45 - LFCP:[MD5.FF952168DF22C9CAF7271FF3A7BEB366] - 25/05/2013 - 09:11:30 ---A- - C:\Windows\Prefetch\GAME.DAT-5B81F525.pf
O45 - LFCP:[MD5.25A36AB10FEE5380553F19313FDC9474] - 25/05/2013 - 09:11:31 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-7FC4F73A.pf
O45 - LFCP:[MD5.A05D18A25E190E1BB3B77A924182039D] - 25/05/2013 - 09:11:33 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-016D910B.pf
O45 - LFCP:[MD5.FBC09CE13D831BC31E58178242C45522] - 25/05/2013 - 09:11:33 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-3DA5A445.pf
O45 - LFCP:[MD5.647EAFC4F4C8D61B1237720386F87985] - 25/05/2013 - 09:11:37 ---A- - C:\Windows\Prefetch\GAME.DAT-BD04FDA4.pf
O45 - LFCP:[MD5.3F6174AB8D21426F7A25112700D48774] - 25/05/2013 - 09:11:38 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-070F5EC9.pf
O45 - LFCP:[MD5.2E9481D50F0B885CD2B67C5CEC05A8A1] - 25/05/2013 - 09:11:40 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-C7677AE2.pf
O45 - LFCP:[MD5.E1D21EF0881588702E8E3B50D46CD1B0] - 25/05/2013 - 09:11:41 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-5911138C.pf
O45 - LFCP:[MD5.C848726EE56AD12F23DCC315DC045B4B] - 25/05/2013 - 09:11:45 ---A- - C:\Windows\Prefetch\GAME.DAT-A4F42E3B.pf
O45 - LFCP:[MD5.65362D89DA95E5646BDA073FB7D8DE95] - 25/05/2013 - 09:11:46 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-B499C4F0.pf
O45 - LFCP:[MD5.8AF448DF827DB977DD76AA32A92BBE74] - 25/05/2013 - 09:11:48 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-4D108C91.pf
O45 - LFCP:[MD5.EFF96CEA5AE361A5CE7892D880112561] - 25/05/2013 - 09:11:50 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-6E38682B.pf
O45 - LFCP:[MD5.4675E17B6A5A91BA069D962E86EA0146] - 25/05/2013 - 09:11:52 ---A- - C:\Windows\Prefetch\GAME.DAT-6E3D9CE4.pf
O45 - LFCP:[MD5.5BD941009595EE29DBAA17A05AD601B9] - 25/05/2013 - 09:11:54 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-E6EB4A09.pf
O45 - LFCP:[MD5.D9A3B25D0FB1768FAFC6C4EC16A1E883] - 25/05/2013 - 09:11:55 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-D1431C22.pf
O45 - LFCP:[MD5.C34A039BD4A24AA18E7B5EFCD1E143FD] - 25/05/2013 - 09:11:56 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-54D4C8CC.pf
O45 - LFCP:[MD5.3B0208E90580898F3ECDBA1DCFA90EFC] - 25/05/2013 - 09:11:59 ---A- - C:\Windows\Prefetch\GAME.DAT-6D4FF778.pf
O45 - LFCP:[MD5.18E0E4A07C199B51636111B29F62E509] - 25/05/2013 - 09:12:01 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-D52A6F5D.pf
O45 - LFCP:[MD5.A663D9F71607AE083DFE4167C3EF2B69] - 25/05/2013 - 09:12:03 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-5787CFD6.pf
O45 - LFCP:[MD5.9B719770CDAA4A906B7C137F99A1242B] - 25/05/2013 - 09:12:03 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-13D697C0.pf
O45 - LFCP:[MD5.2B8D612199A2F41EFB8BA34708135C49] - 25/05/2013 - 09:12:08 ---A- - C:\Windows\Prefetch\GAME.DAT-7DB2A8FE.pf
O45 - LFCP:[MD5.34980EDFC2E0951FBBB43B653744EDA5] - 25/05/2013 - 09:12:09 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-46231E83.pf
O45 - LFCP:[MD5.189D766FCF94721222E0589453390165] - 25/05/2013 - 09:12:11 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-5C382D4C.pf
O45 - LFCP:[MD5.4CE2E76AADEF1F9BCF4EE12C2518AA58] - 25/05/2013 - 09:12:13 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-16875C96.pf
O45 - LFCP:[MD5.770058F9DAFCE24931F450EE7835E825] - 25/05/2013 - 09:12:16 ---A- - C:\Windows\Prefetch\GAME.DAT-CD5E4B56.pf
O45 - LFCP:[MD5.B292AFD47E4E19F38A0B0B842C086BC3] - 25/05/2013 - 09:12:18 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-F0BB335B.pf
O45 - LFCP:[MD5.714D74D97F64DCF144223F07918BED6D] - 25/05/2013 - 09:12:18 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-3B8F8964.pf
O45 - LFCP:[MD5.04E33948513CFA3C6C7563B6E06C8E8D] - 25/05/2013 - 09:12:20 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-A624BA2E.pf
O45 - LFCP:[MD5.71FD8F43587116742CDC4F52728B8431] - 25/05/2013 - 09:12:23 ---A- - C:\Windows\Prefetch\GAME.DAT-2F027DE4.pf
O45 - LFCP:[MD5.6D18D7B179D654FC5ABA1BCC579EAFCE] - 25/05/2013 - 09:12:24 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-E1DB1B09.pf
O45 - LFCP:[MD5.1AD8313B24A41C6E43B3E409F31619B6] - 25/05/2013 - 09:12:25 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-06ADA522.pf
O45 - LFCP:[MD5.E1EFF9D9489FA65BE1FB9F2375177E9B] - 25/05/2013 - 09:12:26 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-AEFFE1CC.pf
O45 - LFCP:[MD5.3AF3C52B408EADCD5F4C39BDD5A3979D] - 25/05/2013 - 09:12:33 ---A- - C:\Windows\Prefetch\GAME.DAT-1AE68EC5.pf
O45 - LFCP:[MD5.C71798E442E03BD98BEEF4688B8EE29B] - 25/05/2013 - 09:12:34 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-363096DA.pf
O45 - LFCP:[MD5.5F1258ACDD816E56374C8A25247734F1] - 25/05/2013 - 09:12:35 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-3A083BAB.pf
O45 - LFCP:[MD5.886B35B34BD32EEAA760C4509BA942DC] - 25/05/2013 - 09:12:36 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-6AF1F8E5.pf
O45 - LFCP:[MD5.C7F7CB2FC92B8550474BBE0259C85D8D] - 25/05/2013 - 09:12:39 ---A- - C:\Windows\Prefetch\GAME.DAT-115D29C5.pf
O45 - LFCP:[MD5.DFDDE0B1E21FA6B39EB835C6A7E72650] - 25/05/2013 - 09:12:40 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-9BE081DA.pf
O45 - LFCP:[MD5.12E920F466BED6A77EC496B713123EE9] - 25/05/2013 - 09:12:41 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-1B1A8EAB.pf
O45 - LFCP:[MD5.6A774803E5A4CF5A140BAAD0A6605581] - 25/05/2013 - 09:12:42 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-BEB17BE5.pf
O45 - LFCP:[MD5.787AF77FD2D52A7BB44F86DDBD20E483] - 25/05/2013 - 09:12:45 ---A- - C:\Windows\Prefetch\GAME.DAT-DF91F6B8.pf
O45 - LFCP:[MD5.1706A871C02C91A2B7064652CBFB891C] - 25/05/2013 - 09:12:47 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-7FD9BA9D.pf
O45 - LFCP:[MD5.0A37B3F8840238F98BD0888E8D3A09C6] - 25/05/2013 - 09:12:47 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-F553D116.pf
O45 - LFCP:[MD5.F568B559B77AD16945B4199534C52882] - 25/05/2013 - 09:12:49 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-2390AD00.pf
O45 - LFCP:[MD5.2D0EF50A32A380257434BF348D2CCE46] - 25/05/2013 - 09:12:53 ---A- - C:\Windows\Prefetch\GAME.DAT-BF3AB286.pf
O45 - LFCP:[MD5.D6207E9E0D60749A017EC831A99F2690] - 25/05/2013 - 09:12:55 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-C7BCD78B.pf
O45 - LFCP:[MD5.40DDEF76DE0AE20D246AFE095A48C38C] - 25/05/2013 - 09:12:56 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-3B9F0814.pf
O45 - LFCP:[MD5.6E1DB98C118C859C6AFD9BD54716C7F4] - 25/05/2013 - 09:12:56 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-6688A3DE.pf
O45 - LFCP:[MD5.8DF1C5151721A402AB641CFF5313141D] - 25/05/2013 - 09:13:00 ---A- - C:\Windows\Prefetch\GAME.DAT-E61BDEC7.pf
O45 - LFCP:[MD5.AD47ED4E3579D7625FEB90C23DF7E1F9] - 25/05/2013 - 09:13:02 ---A- - C:\Windows\Prefetch\LAUNCH.DAT-EB1A18BC.pf
O45 - LFCP:[MD5.97F8AB8B527C0E49886E2CBB1E5DFDF5] - 25/05/2013 - 09:13:04 ---A- - C:\Windows\Prefetch\TOUCHPOINTS.DAT-6BB970FD.pf
O45 - LFCP:[MD5.9C639C707402AFC7601DB14959A9D706] - 25/05/2013 - 09:13:05 ---A- - C:\Windows\Prefetch\UNINSTALL.DAT-3628B357.pf
O45 - LFCP:[MD5.E7331A75D3864F29A94420A422497BC7] - 25/05/2013 - 09:19:28 ---A- - C:\Windows\Prefetch\UNINST.EXE-8144BB14.pf
O45 - LFCP:[MD5.4DDC8713629FE50230F5656A12481F68] - 25/05/2013 - 09:20:46 ---A- - C:\Windows\Prefetch\{311739EB-5C94-4EE1-B911-2D1F-A7944CFD.pf
O45 - LFCP:[MD5.32926298C53D6103587131F0DB5B6B72] - 25/05/2013 - 09:23:01 ---A- - C:\Windows\Prefetch\DIFXINST64.EXE-C8C2E3F2.pf
O45 - LFCP:[MD5.064A007098D4AA2298E1D5A849234381] - 25/05/2013 - 09:25:54 ---A- - C:\Windows\Prefetch\PCSPEEDMAXIMIZER.EXE-60BA47FF.pf
O45 - LFCP:[MD5.29F6694245486FD4E071183DF08243CC] - 25/05/2013 - 09:27:15 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-A6D3D8CE.pf
O45 - LFCP:[MD5.7BA48C64314144B122826BFDE062CA8B] - 25/05/2013 - 13:06:28 ---A- - C:\Windows\Prefetch\EPP351.EXE-1771E43E.pf
O45 - LFCP:[MD5.F539CD1FAE2945C438B3C089A95344B7] - 25/05/2013 - 13:06:44 ---A- - C:\Windows\Prefetch\SETUP_EP.EXE-3A40447D.pf
O45 - LFCP:[MD5.07BD500E0DB89ADACB263338C1F229BF] - 25/05/2013 - 13:07:06 ---A- - C:\Windows\Prefetch\EPPSHELLREG.EXE-E4E0A343.pf
O45 - LFCP:[MD5.607980492A9A866FF6789B08FCCC3E3E] - 26/05/2013 - 19:49:43 ---A- - C:\Windows\Prefetch\STARTME.EXE-DB3CA801.pf
O45 - LFCP:[MD5.8F87A7969FDFC64149DE6458F185E984] - 26/05/2013 - 19:49:50 ---A- - C:\Windows\Prefetch\STARTME.EXE-24BFBA28.pf
O45 - LFCP:[MD5.9F6AD1A21DA3704AB1A9D654F64D0E3A] - 27/05/2013 - 15:57:35 ---A- - C:\Windows\Prefetch\MAJT4PCFR.EXE-92413E55.pf
O45 - LFCP:[MD5.19C9205DFF638E923081E1740246802A] - 27/05/2013 - 15:57:36 ---A- - C:\Windows\Prefetch\MAJT4PCFR.TMP-F0B20247.pf
O45 - LFCP:[MD5.E0013755A07E5FF592204BF4BF724C06] - 27/05/2013 - 17:07:45 ---A- - C:\Windows\Prefetch\50D1D9D5-CF90-407C-820A-35E05-FA169CE8.pf
O45 - LFCP:[MD5.5E27B70F72A43C009D048F4E7A776D4D] - 27/05/2013 - 17:07:45 ---A- - C:\Windows\Prefetch\INST.EXE-9EEFFBF4.pf
O45 - LFCP:[MD5.088D7CC877E665802332C041604B88C2] - 27/05/2013 - 17:08:36 ---A- - C:\Windows\Prefetch\HAPPYLYRICS_2204-E2F0CCE3.EXE-C98C41D1.pf
~ Prefetcher: 467 Legitimates Filtered in 00mn 07s
---\\ MountPoints2 Shell Key (O51)
O51 - MPSK:{8577740d-fb99-11e1-be6a-806e6f6e6963}\AutoRun\command. (.Electronic Arts - Autorun Application.) -- D:\Autorun.exe
O51 - MPSK:{aa6b18d3-c5f0-11e2-bf7e-4c72b993ea23}\AutoRun\command. (...) -- E:\Startme.exe (.not file.)
~ Keys: Scanned in 00mn 04s
---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLinkedConnections"=1
~ MWPS: 18 Legitimates Filtered in 00mn 00s
---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
~ MWPE Keys: 3 Legitimates Filtered in 00mn 00s
---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.4F18D4C7EA14F11A7211F60D553C03DB] - 26/07/2012 - 06:00:49 ---A- . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\Drivers\3ware.sys [106736]
~ Drivers: Scanned in 00mn 00s
---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 01/06/2013 - 14:26:04 ---A- C:\Users\titi\Links\Desktop.lnk [485]
O61 - LFC: 01/06/2013 - 14:26:04 ---A- C:\Users\titi\Links\Downloads.lnk [936]
O61 - LFC: 01/06/2013 - 14:26:04 ---A- C:\Users\titi\Links\RecentPlaces.lnk [383]
O61 - LFC: 01/06/2013 - 16:31:01 ---A- C:\Users\titi\AppData\Local\supt4pc_fr_36\supt4pc_fr_36\update.cyl [59]
O61 - LFC: 02/06/2013 - 12:27:03 ---A- C:\Users\titi\Downloads\Xtremsplit.exe [305664]
O61 - LFC: 02/06/2013 - 17:50:39 ---A- C:\Users\titi\Downloads\pfsx-setup-01net-10.7.3.exe [667016]
O61 - LFC: 02/06/2013 - 17:52:06 ---A- C:\Users\titi\Downloads\pfsx-setup-01net-10.7.3 [1].exe [11103194]
O61 - LFC: 02/06/2013 - 17:53:47 --H-- C:\Users\titi\AppData\Roaming\Identities\{46504E63-3636-3932-3430-313231346154}\1pac4612.1c16 [45]
O61 - LFC: 03/06/2013 - 18:44:42 ---A- C:\Users\titi\Downloads\mbam-setup-1.75.0.1300.exe [10285040]
O61 - LFC: 04/06/2013 - 04:42:28 ---A- C:\Users\titi\AppData\Local\Google\Chrome\User Data\Certificate Revocation Lists [267278]
O61 - LFC: 04/06/2013 - 04:52:39 ---A- C:\Users\titi\AppData\Local\Google\Chrome\User Data\Local State [33964]
~ 4 Fichiers temporaires (Temporary files)
~ Files: 221 Legitimates Filtered in 00mn 38s
---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ ADS: Scanned in 00mn 00s
---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Not Key.)
~ FASS Keys: 19 Legitimates Filtered in 00mn 00s
---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s
---\\ Search Browser Infection (O69)
O69 - SBI: SearchScopes [HKCU] {210B6304-3A0E-4461-A148-41B64243E380} - (onlinetracks Customized Web Search) - http://search.conduit.com
~ Keys: Scanned in 00mn 00s
---\\ Recherche particuliere à la racine de certains dossiers (O84)
[MD5.A48B88F84CB703FF667295A2E5B363E4] [SPRF][11/03/2013] (...) -- C:\ProgramData\1362990986.bdinstall.bin [1872498]
[MD5.32DCED18FFFEA0035E4FA975CA0AE8BE] [SPRF][22/04/2013] (.The Software Group - Software Update Setup.) -- C:\Users\titi\AppData\Local\Temp\BoxoreInstaller.exe [620656] =>Adware.Boxore
[MD5.602AE45EEB85FCE002C2BD541F5E3F89] [SPRF][11/01/2013] (.Conduit - Pas de description.) -- C:\Users\titi\AppData\Local\Temp\conduitinstaller.exe [86080] =>Toolbar.Conduit
[MD5.735C5AB0106E929C5616B49954FFF0EE] [SPRF][24/05/2013] (.Pas de propriétaire - Lyrics Fan.) -- C:\Users\titi\AppData\Local\Temp\flcsup.exe [280921] =>Adware.AddLyrics
[MD5.F6278B5A16F830885B184D5F72E1B935] [SPRF][04/05/2013] (.Terra Informatica Software, Inc., British C - HTMLayout - embeddable HTML rendering and layout component.) -- C:\Users\titi\AppData\Local\Temp\htmlayout.dll [947200]
[MD5.8A4AF3B0695F29186AD02E2FD766FA3B] [SPRF][11/01/2013] (.SweetIM Technologies Ltd. - SQLite DLL.) -- C:\Users\titi\AppData\Local\Temp\mgsqlite3.dll [393016] =>PUP.SweetIM
[MD5.F4E3DE7B4898E37652F39A06BC9591E3] [SPRF][08/05/2013] (.Conduit - Search Protect by Conduit.) -- C:\Users\titi\AppData\Local\Temp\SecondStepInstaller.exe [2824352] =>Toolbar.Conduit
[MD5.D9DA3FDE1AEE64CEE57D4C57A538A53B] [SPRF][22/10/2012] (.SweetIM Technologies Ltd. - SweetIM Installer by SweetPacks.) -- C:\Users\titi\AppData\Local\Temp\Shortcut_bundlesweetimsetup.exe [7739736] =>PUP.SweetIM
[MD5.C6D792E4583FC46DB0953FBF6E46348A] [SPRF][11/01/2013] (.SweetIM Technologies Lt - This installer.) -- C:\Users\titi\AppData\Local\Temp\SIMEEI2Installer.exe [2962432] =>PUP.SweetIM
[MD5.7704B843006444B69486FD27D4660845] [SPRF][11/01/2013] (.SweetIM Technologies Lt - This installer.) -- C:\Users\titi\AppData\Local\Temp\SIMEEIInstaller.exe [3380216] =>PUP.SweetIM
[MD5.E8EFB9EF24C1E0CED84CFA3C2AE9DC2F] [SPRF][04/05/2013] (...) -- C:\Users\titi\AppData\Local\Temp\toolbar180976635.exe [782832]
[MD5.225CCDCFE5625795647043679CB77112] [SPRF][11/01/2013] (...) -- C:\Users\titi\AppData\Local\Temp\wajam_install.exe [417256] =>Toolbar.Wajam
[MD5.683FDD3D773C58B262DC07CD0C6CE938] [SPRF][03/06/2013] (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Users\titi\Desktop\mbam-setup-1.75.0.1300.exe [10285040]
[MD5.546026247543D6B9499A1503798E3B10] [SPRF][04/06/2013] (.Nicolas Coolman - ZHPDiag.) -- C:\Users\titi\Desktop\ZHPDiag2.exe [5672605]
~ Files: Scanned in 00mn 01s
---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "{0A0FFD05-6AF3-4408-96C5-741D6FAE5EE1}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) =>PUP.SweetIM
O87 - FAEL: "{FCDCAC89-8B60-4E91-AC1F-17F664C8F3FF}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) =>PUP.SweetIM
O87 - FAEL: "{7E3E9501-0214-4E7B-9440-B21B778A0805}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Iminent\Iminent.exe (.not file.) =>Adware.IMBooster
O87 - FAEL: "{84E40B51-363D-4D69-A20A-0E8176DE748E}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Iminent\Iminent.Messengers.exe (.not file.) =>Adware.IMBooster
O87 - FAEL: "{AB37A174-7AC8-4627-A749-98E904A6BCA1}" | In - Private - P6 - TRUE | .(...) -- C:\Windows\System32\dmwu.exe
O87 - FAEL: "{35773580-F21F-4899-8F0E-61356120666D}" | In - Private - P17 - TRUE | .(...) -- C:\Windows\System32\dmwu.exe
~ Firewall: 251 Legitimates Filtered in 00mn 03s
---\\ Scan Additionnel (O88)
Database Version : v2.12387 - (03/06/2013)
Clés trouvées (Keys found) : 92
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 2
Fichiers trouvés (Files found) : 14
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D15DAF33C220F91468A1D7D57C31ACD7] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D6D0EB9FDBD90C04D92A7E729058F10D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A189D17A469616C4688D23E192996267] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98CC8BF5A4A6E6C4ABF7051DDAB8B058] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7FFA128C2B0FF414D805FC5627883401] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D3BA76A44C779424889063D5098ED2D6] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\397C771A7BCAC904697C3EC629ED33ED] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\351716A953E21214898904032EAE2E81] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E6768B6932D112438F047C54D180635] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EB6AF8AEEB922FA4392548F13812E50B] =>PUP.SweetIM
[HKLM\Software\WNLT] =>Adware.IncrediBar
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EE58E3C298524145B73CBBED3CAC4D3] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B2FD9C0A5B9838449838816A28001F4B] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02F47BF73B948514FAACADD8CBBDF37D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\080D9F5E1E95FEE4794CE438E635239E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4318DF19719275242801CBE292063A4C] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75D5168E5E176C24981B4E5DBD991078] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8724E58E6C7D00C48A0D4F3345EB2C26] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB676B0E1B9EFA049B9F7DDDA9645734] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B31BBB0B825EDEF45AB0FE7099C68C81] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B471D8D7319336B4CA89374ED0D7B806] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC30043663AA2CA4DA1DAA9CA5FDCC75] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E1C820A74ED67374BA048B52CB3C3804] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FDC83385E6C239F4C876A77A37DF581D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\427EA997C413D1D47907CBFC7B2DB432] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1E264E0A5959A1C46BA9175A878B12EA] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E4748F9A4181FCE46A23C13B517B9420] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1EAD96AE2CB1DE84BAA9425A8CCA0817] =>Adware.Boxore
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A] =>Adware.IMBooster
[HKCU\Software\AppDataLow\Software\LyricsFan] =>Adware.AddLyrics
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\lrcfan@fansoft.br] =>Adware.AddLyrics
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A8720491-9558-4C0D-9E35-30EED15DFB2B}] =>Adware.AddLyrics
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A8720491-9558-4C0D-9E35-30EED15DFB2B}] =>Adware.AddLyrics
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A8720491-9558-4C0D-9E35-30EED15DFB2B}] =>Adware.AddLyrics
[HKLM\Software\Wow6432Node\Google\Chrome\Extensions\nfeonecgpoepapkmdgdmjolonaakdknd] =>Adware.AddLyrics
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BA71D41F6CC0B6247B05D473850A8AEA] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\12BF94BD06C95F343A77631402B9556A] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2124D8A8CF720FD44866190AF560228E] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27A325ACED8CA4743A30127638591ADB] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\350D17402BD84234EAF7D32F08172D7C] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3EE8C5F419057E1478A654868CEE60B5] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4735D908D66E1BA46B6C2D7185A12B2B] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D6A6B2ED56AF24EA6335EAD6E91CA4] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\76D8378E2DDAED3428720A631F6E3BF0] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EDC790504E1834DBC20C9A04328FD2] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\97C3D0F82E712E241A2F969F45E3351C] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A001B259DB7D694E818BE29B973992C] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E7F556BF224D804D96A96F0F6344789] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAE2EC163C6A68A48921573E0E7E199D] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF4F885EDEE45644EB1E0C99E0162399] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C06C6662FA5B04646829E4A460857770] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE21F3FD57B244142880EF15A165A156] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CEEB3E14ABE8270419B0FD762E18F7C6] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1B5E9A3BDB51349BF96E842C062D98] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FECBC2BC14DA6CD459BD59A041709836] =>PUP.SweetIM^
C:\Program Files (x86)\FindLyrics =>Adware.AddLyrics
C:\Users\titi\AppData\Local\Software =>Adware.Boxore
C:\Users\titi\AppData\Local\Temp\Shortcut_bundlesweetimsetup.exe =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\SIMEEI2Installer.exe =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\SIMEEIInstaller.exe =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\wajam_install.exe =>Toolbar.Wajam
C:\Users\titi\AppData\Local\Temp\BoxoreInstaller.exe =>Adware.Boxore
C:\Users\titi\AppData\Local\Temp\conduitinstaller.exe =>Toolbar.Conduit
C:\Users\titi\AppData\Local\Temp\mgsqlite3.dll =>PUP.SweetIM
C:\Users\titi\AppData\Local\Temp\SecondStepInstaller.exe =>Toolbar.Conduit
~ Additionnel Scan: 154484 Items scanned in 00mn 51s
---\\ Product Upgrade Codes (O90)
O90 - PUC: "EB8E7C929DBF19D4CBF44B077C815D45" . (.Iminent.) -- C:\Windows\Installer\{29C7E8BE-FBD9-4D91-BC4F-B470C718D554}\imbooster.ico =>Adware.IMBooster
~ Update Products: 70 Legitimates Filtered in 00mn 00s
---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SR - | Auto 07/02/2013 239616 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe
SR - | Auto 21/12/2012 57008 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SS - | Demand 31/07/2012 466064 | (DeviceFastLaneService) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Device Fast-lane\DeviceFastLaneSvc.exe
SR - | Auto 21/08/2012 348784 | (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
SR - | Demand 31/07/2012 659600 | (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
SS - | Auto 11/03/2013 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 11/03/2013 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SR - | Auto 13/07/2012 2451456 | (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
SR - | Auto 04/04/2013 418376 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
SR - | Auto 04/04/2013 701512 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
SR - | Auto 26/11/2011 687400 | (NAUpdate) . (.Nero AG.) - C:\Program Files (x86)\Nero\Update\NASvc.exe
SR - | Auto 11/09/2012 93296 | (RfButtonDriverService) . (.Dritek System INC..) - C:\Windows\RfBtnSvc64.exe
SS - | Auto 0 | (Software_update) . (...) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe
SS - | Demand 0 | (Software_update_m) . (...) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe
SR - | Auto 08/04/2013 68856 | (UPDATESRV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2013\updatesrv.exe
SR - | Auto 08/05/2013 1646792 | (VSSERV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe
SR - | Auto 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe
SS - | Demand 20/09/2012 29696 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Services: Scanned in 00mn 02s
---\\ Recherche Master Boot Record Infection (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
~ MBR: 1 Legitimates Filtered in 00mn 02s
---\\ Recherche Master Boot Record Infection (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by titi at 04/06/2013 06:02:55
********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin
~ MBR: Scanned in 00mn 04s
~ 1559 Legitimates filtered by white list
End of the scan (682 lines in 12mn 19s)(0)
billmaxime
Messages postés
49928
Date d'inscription
dimanche 20 novembre 2011
Statut
Contributeur
Dernière intervention
22 avril 2024
5 944
5 juin 2013 à 06:07
5 juin 2013 à 06:07
salut titi
fais ceci s'il te plaît
télécharge usbfix sur ton bureau (clique sur la flèche verte)
le lien http://general-changelog-team.fr/fr/downloads/viewdownload/15-outils-de-el-desaparecido/79-usbfix
si ton pc émet 1 alerte, ignore la (désactive le si besoin le temps du scan)
branche toutes tes sources de données externe a ton pc (clé USB, disque dur externe, etc...) sans les ouvrir
le tuto https://www.malekal.com/tutoriels-logiciels/
exécute le en tant qu'administrateur (clic droit)
choisis le mode "suppression"
le rapport s'affichera sur ton bureau et dans C:\UsbFix.txt
poste le rapport via 1 copier/coller
@+
fais ceci s'il te plaît
télécharge usbfix sur ton bureau (clique sur la flèche verte)
le lien http://general-changelog-team.fr/fr/downloads/viewdownload/15-outils-de-el-desaparecido/79-usbfix
si ton pc émet 1 alerte, ignore la (désactive le si besoin le temps du scan)
branche toutes tes sources de données externe a ton pc (clé USB, disque dur externe, etc...) sans les ouvrir
le tuto https://www.malekal.com/tutoriels-logiciels/
exécute le en tant qu'administrateur (clic droit)
choisis le mode "suppression"
le rapport s'affichera sur ton bureau et dans C:\UsbFix.txt
poste le rapport via 1 copier/coller
@+