Aide pour comprendre un rapport AdwCleaner

Fermé
metm32 Messages postés 1 Date d'inscription lundi 15 septembre 2014 Statut Membre Dernière intervention 15 septembre 2014 - 15 sept. 2014 à 05:38
kingk06 Messages postés 10277 Date d'inscription mercredi 12 juin 2013 Statut Membre Dernière intervention 17 mars 2015 - 17 sept. 2014 à 06:51
Bonjour à tous!

J'étais coinçé avec Pricepeep alors j'ai donc fait faire un nettoyage à l'aide de AdwCleaner.
Que dois-je faire par la suite? Je suis complètement novice en la matière...

Voici le rapport:

# AdwCleaner v3.310 - Rapport créé le 14/09/2014 à 23:00:22
# Mis à jour le 12/09/2014 par Xplode
# Système d'exploitation : Windows 8.1 (64 bits)
# Nom d'utilisateur : marie - COTETREMBLAY
# Exécuté depuis : C:\Users\marie\Downloads\adwcleaner_3.310 (2).exe
# Option : Nettoyer

***** [ Services ] *****

Service Supprimé : CltMngSvc
Service Supprimé : SPPD

***** [ Fichiers / Dossiers ] *****

Dossier Supprimé : C:\Program Files (x86)\Mobogenie
Dossier Supprimé : C:\Program Files (x86)\SearchProtect
Dossier Supprimé : C:\Program Files (x86)\The weDownload Manager
Dossier Supprimé : C:\Windows\SysWOW64\SearchProtect
Dossier Supprimé : C:\Users\marie\AppData\Local\genienext
Dossier Supprimé : C:\Users\marie\AppData\Local\Mobogenie
Dossier Supprimé : C:\Users\marie\AppData\Local\SearchProtect
Dossier Supprimé : C:\Users\marie\AppData\Local\WeatherAlerts
Dossier Supprimé : C:\Users\marie\AppData\LocalLow\The weDownload Manager
Dossier Supprimé : C:\Users\marie\AppData\Roaming\newnext.me
Dossier Supprimé : C:\Users\metmm_000\AppData\Local\SearchProtect
Fichier Supprimé : C:\Users\marie\daemonprocess.txt

***** [ Tâches planifiées ] *****

Tâche Supprimée : driverupdate startup

***** [ Raccourcis ] *****


***** [ Registre ] *****

Clé Supprimée : HKCU\Software\Classes\iLivid.torrent
Clé Supprimée : HKLM\SOFTWARE\Classes\iLivid.torrent
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\DesktopWeatherAlertsApp_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\DesktopWeatherAlertsApp_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0049074.BHO
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0049074.BHO.1
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0049074.Sandbox
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0049074.Sandbox.1
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110411901174}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220422902274}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550455905574}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660466906674}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440444904474}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411901174}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110411901174}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110411901174}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220422902274}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550455905574}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660466906674}
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411901174}
Clé Supprimée : HKCU\Software\ilivid
Clé Supprimée : HKCU\Software\InstalledBrowserExtensions
Clé Supprimée : HKCU\Software\UpdateStar
Clé Supprimée : HKCU\Software\WEDLMNGR
Clé Supprimée : HKCU\Software\AppDataLow\Software\Crossrider
Clé Supprimée : HKCU\Software\AppDataLow\Software\The weDownload Manager
Clé Supprimée : HKLM\SOFTWARE\SearchProtect
Clé Supprimée : HKLM\SOFTWARE\The weDownload Manager
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\The weDownload Manager
Donnée Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll
Donnée Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll

***** [ Navigateurs ] *****

-\\ Internet Explorer v11.0.9600.17278


-\\ Google Chrome v37.0.2062.120

[ Fichier : C:\Users\marie\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Supprimée [Homepage] : hxxp://search.conduit.com/?ctid=CT3314759&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SP3E1D3836-7F52-402E-8809-0E0498B42AE2&SSPV=
Supprimée [Extension] : booedmolknjekdopkepjjeckmjkdpfgl
Supprimée [Extension] : flpcjncodpafbgdpnkljologafpionhb

[ Fichier : C:\Users\metmm_000\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [5439 octets] - [14/09/2014 22:53:04]
AdwCleaner[R1].txt - [5499 octets] - [14/09/2014 22:57:13]
AdwCleaner[S0].txt - [4830 octets] - [14/09/2014 23:00:22]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4890 octets] ##########

</gras>

4 réponses

kingk06 Messages postés 10277 Date d'inscription mercredi 12 juin 2013 Statut Membre Dernière intervention 17 mars 2015 535
15 sept. 2014 à 06:33
Bonjour,

Avant de faire quoi que ce soit on va établir un diagnostic de ton pc pour voir quel est son degré d'infection et apporter la solution la plus appropriée pour le désinfecter.

Scan ZHPDiag :

Nous allons utiliser cet outil de diagnostic pour voir tous les problèmes


- Télécharge ZHPDiag (de Nicolas Coolman) sur ton bureau ==> regarde ici comme faire

- Laisse-toi guider lors de l'installation.

- Ouvre ZHPDiag (icône parchemin)

- Clique sur Complet.

Note: Pour les utilisateurs de Vista/Seven/8, cliquer droit sur l'icône et "Exécuter en tant qu'administrateur",

- Héberge le rapport ZHPDiag.txt présent sur ton bureau sur Cjoint puis copie/colle le lien fourni dans ta prochaine réponse.
==>NOTE: Il faut héberger ce rapport qui se trouve sur le bureau, celui-ci étant trop long pour être posté sur le forum Pour héberger le rapport Rendez vous sur le site Cjoint=> https://www.cjoint.com/ si le premier lien ne marche pas ici=>http://pjjoint.malekal.com/

==> Pour t'aider a héberger le rapport<==
https://www.commentcamarche.net/faq/29493-utiliser-cjoint-pour-heberger-des-fichiers
==> tutorial zhpdiag <==

Le rapport ZHPDiag.txt sera aussi sur votre bureau. En cas de nécessité, il est sauvegardé dans C:\ZHP\ZHPDiag.txt.
0
Merci!
Voici le rapport:


~ Rapport de ZHPDiag v2014.9.14.133 - Nicolas Coolman (2014-09-10)
~ Lancé par marie (2014-09-16 20:21:06)
~ Adresse du Site Web http://nicolascoolman.fr
~ Adresse du Forum http://forum.nicolascoolman.fr
~ Traduit par Nicolas Coolman
~ Etat de la version : Version à jour.
~ Liste blanche : Désactivée par l'utilisateur
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Activate by user


---\\ Navigateurs Internet
MSIE: Internet Explorer v11.0.9600.17278
GCIE: Google Chrome v37.0.2062.120 (Defaut)

---\\ Informations sur les produits Windows
~ Langage: Français
Windows 8.1, 64-bit (Build 9600)
Windows Server License Manager Script : OK
~ Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : CKBCD
Windows License : OK
~ Windows Remaining Initializations Number : 999
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection du système
Bitdefender Antivirus Plus v17.23.0.996
Windows Defender W8 (Deactivate)

---\\ Logiciels d'optimisation du système

---\\ Logiciels de partage PeerToPeer

---\\ Surveillance de Logiciels
Adobe Flash Player 15 Plugin
Adobe Reader XI

---\\ Informations sur le système
~ Processor: Intel64 Family 6 Model 60 Stepping 3, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 6068 MB (62% free)
System Restore: Activé (Enable)
System drive C: has 551 GB (80%) free of 688 GB

---\\ Mode de connexion au système
~ Computer Name: COTETREMBLAY
~ User Name: marie
~ All Users Names: metmm_000, marie, HomeGroupUser$, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\marie\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\marie\AppData\Roaming\
~ %Desktop% : C:\Users\marie\Desktop\
~ %Favorites% : C:\Users\marie\Favorites\
~ %LocalAppData% : C:\Users\marie\AppData\Local\
~ %StartMenu% : C:\Users\marie\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 551 Go of 688 Go)
D: CD-ROM drive (Free 0 Go of 7 Go)



---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Security Center: 41 Scanned in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.81394C91B7B5A7C799E249AE82491F13] - (.Microsoft Corporation - Explorateur Windows.) (.2014-03-04 - 07:25:49.) -- C:\Windows\Explorer.exe [2373784]
[MD5.48CFA7BE561A7BE144C29BB912055016] - (.Microsoft Corporation - Application de démarrage de Windows.) (.2013-08-22 - 04:58:29.) -- C:\Windows\System32\Wininit.exe [144384]
[MD5.30C355249224173151874A7B86A8BB66] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.2014-08-15 - 19:56:32.) -- C:\Windows\System32\wininet.dll [2310656]
[MD5.306EB21E5B480AE9065EA55AC8C35936] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.2014-02-22 - 04:45:48.) -- C:\Windows\System32\Winlogon.exe [562176]
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Bibliothèque de licences.) (.2013-12-21 - 03:54:07.) -- C:\Windows\System32\sppcomapi.dll [447488]
[MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.2014-05-29 - 22:03:03.) -- C:\Windows\system32\Drivers\AFD.sys [563200]
[MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.2013-08-22 - 07:43:41.) -- C:\Windows\system32\Drivers\atapi.sys [26464]
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) (.2013-08-22 - 06:40:15.) -- C:\Windows\system32\Drivers\Cdfs.sys [88576]
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.2013-08-22 - 03:46:35.) -- C:\Windows\system32\Drivers\Cdrom.sys [164352]
[MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.2014-03-06 - 04:22:50.) -- C:\Windows\system32\Drivers\DfsC.sys [134144]
[MD5.498288DD5CA42C2D36D125893E968C53] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.2014-03-18 - 03:19:14.) -- C:\Windows\system32\Drivers\HDAudBus.sys [77312]
[MD5.84CFC5EFA97D0C965EDE1D56F116A541] - (.Microsoft Corporation - Pilote de port i8042.) (.2013-08-22 - 06:39:15.) -- C:\Windows\system32\Drivers\i8042prt.sys [107520]
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) (.2013-11-27 - 07:02:29.) -- C:\Windows\system32\Drivers\IpNat.sys [142848]
[MD5.7A1A3F213CDB3363D179D5014272025D] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.2014-04-30 - 01:41:46.) -- C:\Windows\system32\Drivers\MRxSmb.sys [402432]
[MD5.0217532E19A748F0E5D569307363D5FD] - (.Microsoft Corporation - MBT Transport driver.) (.2013-08-22 - 06:37:02.) -- C:\Windows\system32\Drivers\netBT.sys [282624]
[MD5.1C80517BE6836A812F6A9B99B8321351] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.2014-03-19 - 22:41:24.) -- C:\Windows\system32\Drivers\ntfs.sys [2013016]
[MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Pilote de port parallèle.) (.2013-08-22 - 06:40:02.) -- C:\Windows\system32\Drivers\Parport.sys [94208]
[MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.2013-08-22 - 06:35:51.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [120832]
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.2013-08-22 - 14:11:06.) -- C:\Windows\system32\Drivers\rdpdr.sys [195584]
[MD5.FFF28F9F6823EB1756C60F1649560BBF] - (.Microsoft Corporation - TDI Translation Driver.) (.2013-08-22 - 08:25:35.) -- C:\Windows\system32\Drivers\tdx.sys [107520]
[MD5.4BB9BC49DEE1A319EC58274A7BBED663] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.2014-03-06 - 07:42:44.) -- C:\Windows\system32\Drivers\volsnap.sys [310616]
~ Generic Processes: Scanned in 00mn 00s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 2/1564
~ Mes musiques (My Musics) : 1/7949
~ Mes Favoris (My Favorites) : 1/17
~ Mes Documents (My Documents) : 1/23
~ Mon Bureau (My Desktop) : 2/281
~ Menu demarrer (Programs) : 1/27
~ Hidden Files: Scanned in 00mn 10s



---\\ Processus lancés
[MD5.37AD6B4A4BE717669E89A32209B5D72A] - (.Pas de propriétaire - ChangeIcon MFC Application.) -- C:\Windows\SysWOW64\UMonit64.exe [53248] [PID.4436]
[MD5.68A09A0C5AC17C2643BA2F392F647068] - (.TOSHIBA Corporation - TOSHIBA System Settings Service.) -- C:\Program Files (x86)\TOSHIBA\System Setting\TssSrv.exe [296520] [PID.4516]
[MD5.10273EAAC177B75F0ABFA995489F15DF] - (.Bitdefender - Bitdefender Application Password Manager Ag.) -- C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe [614232] [PID.4736]
[MD5.63A2D767B9261B4F33F97BF88F2FB197] - (.Hewlett-Packard Co. - HP Digital Imaging Monitor.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [276328] [PID.4764]
[MD5.A37148D4A3870E0F8320EABA86859AC6] - (.Dropbox, Inc. - Dropbox.) -- C:\Users\marie\AppData\Roaming\Dropbox\bin\Dropbox.exe [36414752] [PID.4772]
[MD5.49CD8D25D932C5BF867EBFF00D432B75] - (.Intel Corporation - Intel Services Manager.) -- C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [156000] [PID.4912]
[MD5.085BE68B52CE5A5FA4621507AD518CF3] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392] [PID.4932]
[MD5.D658AB1B55127D18DCFBCAC8CAAEA522] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [49208] [PID.4940]
[MD5.8DF7F2A9B72B7CA4294BB9E59FEAEFCD] - (.Microsoft Corporation - Hôte Microsoft WWA.) -- C:\Windows\syswow64\wwahost.exe [514560] [PID.4120]
[MD5.AC08A03D7E579E2903925736E7AB48F2] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [852808] [PID.4620]
[MD5.2FAD231346D7FFDCA169E4B88355FF4F] - (...) -- C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxcrnmh.exe [61640] [PID.7148]
[MD5.F8BFA29D0F02CB800F48CD90091B95B8] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8104448] [PID.6112]
~ Processes Running: Scanned in 00mn 01s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\marie\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] None
G0 - GCSP: Preference [User Data\Default][StartupURLs] https://www.google.ca/webhp?source=search_app&gws_rd=cr&ei=KQjwUvbAAunlyQGL84D4Dg
G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Google Store v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Docs v.0.7 (Activé)
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Drive v.6.3 (Activé)
G2 - GCE: Preference [User Data\Default] [bepbmhgboaologfdajaanbcjmnhjmhfn] Google Voice Search Hotword (Beta) v.0.1.1.5023, (Désactivé)
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube v.4.2.6 (Activé)
G2 - GCE: Preference [User Data\Default] [ccahoghmggldkcdjiebjkidpfongdfbl] Bitdefender Wallet v.17.28.1 (Activé)
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Recherche Google v.0.0.0.20 (Activé)
G2 - GCE: Preference [User Data\Default] [dnhpdliibojhegemfjheidglijccjfmc] hotword helper v.0.0.2.0 (Activé)
G2 - GCE: Preference [User Data\Default] [eemcgdkfndhakfknompkggombfjjjeno] Bookmark Manager v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [ennkphjdgehloodpbhlhldgbnhmacadg] Settings v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [gfdkimpbcpahaombhbimeihdjnejgicl] Feedback v.1.0 (Activé)
G2 - GCE: Preference [User Data\Default] [kmendfapggjehodndflmmgagdbamhnfd] CryptoTokenExtension v.0.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [mfehgcgbbipciphmccgaenjidiccnmng] Cloud Print v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [mfffpogegjflfpflabcdkioaeobkgjik] GaiaAuthExtension v.0.0.1, (Activé)
G2 - GCE: Preference [User Data\Default] [mgndgikekgjfcpckkfioiadnlibdjbkf] Chrome v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [neajdppkdcdipfabeoofebfddakdcjhd] Google Network Speech v.1.0 (Activé)
G2 - GCE: Preference [User Data\Default] [nkeimhogjdpnpccoofpliimaahmaaome] Hangout Services v.1.0 (Activé)
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Wallet v.0.0.6.1 (Activé)
G2 - GCE: Preference [User Data\Default] [pafkbggdmjlpgkdkcbjmhmfcdpncadgh] Google Now v.1.2.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Gmail v.7 (Activé)

---\\ Liste des dossiers d'extension Google Chrome
G2 - EXT: C:\Users\marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [Google Docs]
G2 - EXT: C:\Users\marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [Google Drive]
G2 - EXT: C:\Users\marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [Google Voice Search Hotword (Beta)]
G2 - EXT: C:\Users\marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [YouTube]
G2 - EXT: C:\Users\marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccahoghmggldkcdjiebjkidpfongdfbl [Bitdefender Wallet]
G2 - EXT: C:\Users\marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [Recherche Google]
G2 - EXT: C:\Users\marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [Google Wallet]
G2 - EXT: C:\Users\marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [Gmail]
~ Google Lines Browser: 30 Scanned in 00mn 01s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll
P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (.Unity Technologies ApS - Unity Player 4.3.5f1.) -- C:\Users\marie\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
~ Firefox Browser: 2 Scanned in 00mn 00s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.17278 (winblue_r2.140815-1500)) -- C:\Windows\SysWOW64\ieframe.dll
~ IE Browser: 11 Scanned in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
~ Le fichier hôte est sain (The hosts file is clean) (21)
~ Hosts File: Scanned in 00mn 00s



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Bitdefender Wallet [64Bits] - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} . (.Bitdefender - Bitdefender Password Manager Internet Explo.) -- C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxie.dll
O2 - BHO: Bing Bar Helper [64Bits] - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} . (.Microsoft Corporation. - Extensions du client Bing.) -- C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll =>Toolbar.Bing
O2 - BHO: Bitdefender Wallet [64Bits] - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} . (.Bitdefender - Bitdefender Password Manager Internet Explo.) -- C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxie.dll
O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} Clé orpheline
O2 - BHO: (no name) [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} Clé orpheline
~ BHO: 6 Scanned in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: Bing Bar - [HKLM]{8dcb7100-df86-4384-8842-8fa844297b3f} . (.Microsoft Corporation. - Bing Client Extensions.) -- C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll =>Toolbar.Bing
~ Toolbar: Scanned in 00mn 00s



---\\ Applications lancées au démarrage du système (O4)
O4 - HKLM\..\Run: [cAudioFilterAgent] . (.Conexant Systems, Inc. - Conexant High Definition Audio Filter Agent.) -- C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe
O4 - HKLM\..\Run: [ETDCtrl] C:\Program Files (x86)\Elantech\ETDCtrl.exe (.not file.)
O4 - HKLM\..\Run: [TecoResident] . (.TOSHIBA Corporation - Resident module of eco Utility.) -- C:\Program Files\TOSHIBA\Teco\TecoResident.exe
O4 - HKLM\..\Run: [TosWaitSrv] C:\Program Files (x86)\TOSHIBA\TPHM\TosWaitSrv.exe (.not file.)
O4 - HKLM\..\Run: [TCrdMain] . (.TOSHIBA Corporation - TOSHIBA Function Key Main Module.) -- C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe
O4 - HKLM\..\Run: [TSSSrv] . (.TOSHIBA Corporation - TOSHIBA System Settings Service.) -- C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe
O4 - HKLM\..\Run: [Bdagent] . (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender\Bitdefender\bdagent.exe
O4 - HKLM\..\Run: [SmartAudio] . (.Conexant Systems, Inc. - SmartAudio CPL (32bit).) -- C:\Program Files\CONEXANT\SAII\SACpl.exe
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe
O4 - HKCU\..\Run: [Bitdefender Wallet Agent] . (.Bitdefender - Bitdefender Password Manager Agent.) -- C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe
O4 - HKCU\..\Run: [Bitdefender Wallet] . (.Bitdefender - Bitdefender Password Manager.) -- C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe
O4 - HKCU\..\Run: [Bitdefender Agent de l'application Wallet] . (.Bitdefender - Bitdefender Application Password Manager Ag.) -- C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O4 - HKLM\..\Wow6432Node\Run: [TSVU] . (.TOSHIBA - TOSHIBA Display Setup Launcher.) -- c:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TosSmartViewLauncher.exe
O4 - HKLM\..\Wow6432Node\Run: [Intel AppUp(R) center] . (.Intel Corporation - Intel Services Manager.) -- C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe
O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe
O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe =>.Hewlett-Packard Co
O4 - HKUS\.DEFAULT\..\Run: [Bitdefender Wallet Agent] . (.Bitdefender - Bitdefender Password Manager Agent.) -- C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe
O4 - HKUS\.DEFAULT\..\Run: [Bitdefender Wallet] . (.Bitdefender - Bitdefender Password Manager.) -- C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe
O4 - HKUS\.DEFAULT\..\Run: [Bitdefender Agent de l'application Wallet] . (.Bitdefender - Bitdefender Application Password Manager Ag.) -- C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe
O4 - HKUS\S-1-5-18\..\Run: [Bitdefender Wallet Agent] . (.Bitdefender - Bitdefender Password Manager Agent.) -- C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe
O4 - HKUS\S-1-5-18\..\Run: [Bitdefender Wallet] . (.Bitdefender - Bitdefender Password Manager.) -- C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe
O4 - HKUS\S-1-5-18\..\Run: [Bitdefender Agent de l'application Wallet] . (.Bitdefender - Bitdefender Application Password Manager Ag.) -- C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe
O4 - HKUS\S-1-5-21-2041990420-1724662508-1419618007-1001\..\Run: [Bitdefender Wallet Agent] . (.Bitdefender - Bitdefender Password Manager Agent.) -- C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe
O4 - HKUS\S-1-5-21-2041990420-1724662508-1419618007-1001\..\Run: [Bitdefender Wallet] . (.Bitdefender - Bitdefender Password Manager.) -- C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe
O4 - HKUS\S-1-5-21-2041990420-1724662508-1419618007-1001\..\Run: [Bitdefender Agent de l'application Wallet] . (.Bitdefender - Bitdefender Application Password Manager Ag.) -- C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe
~ Application: Scanned in 00mn 00s



---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ IE Control Panel: 1 Scanned in 00mn 00s



---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: Se&nd to OneNote [64Bits] - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll =>.Microsoft Corporation
O9 - Extra button: Lync Click to Call [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -- C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\lync.exe (.not file.)
O9 - Extra button: OneNote Lin&ked Notes [64Bits] - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll =>.Microsoft Corporation
~ IE Extra Buttons: Scanned in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files (x86)\Bonjour\mdnsNSP.dll
~ Winsock: 7 Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{5198915B-3E83-42AC-87A8-5C8FC138B780}: DhcpNameServer = 96.22.246.145 24.200.228.113 24.200.210.241
O17 - HKLM\System\CCS\Services\Tcpip\..\{5CDB56B8-1949-4E6D-A9C1-1570962246D4}: DhcpNameServer = 40.41.1.201 40.41.1.202
O17 - HKLM\System\CCS\Services\Tcpip\..\{5CDB56B8-1949-4E6D-A9C1-1570962246D4}: DhcpDomain = L2-LINE.COM
O17 - HKLM\System\CS1\Services\Tcpip\..\{5198915B-3E83-42AC-87A8-5C8FC138B780}: DhcpNameServer = 96.22.246.145 24.200.228.113 24.200.210.241
O17 - HKLM\System\CS1\Services\Tcpip\..\{5CDB56B8-1949-4E6D-A9C1-1570962246D4}: DhcpNameServer = 40.41.1.201 40.41.1.202
O17 - HKLM\System\CS1\Services\Tcpip\..\{5CDB56B8-1949-4E6D-A9C1-1570962246D4}: DhcpDomain = L2-LINE.COM
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 96.22.246.145 24.200.228.113 24.200.210.241
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Winlogon: Scanned in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ SSODL: 1 Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - YSLoader.exe.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: C:\Windows\system32\CxAudMsg64.exe (CxAudMsg) . (.Conexant Systems Inc. - Conexant Audio Message Service.) - C:\Windows\system32\CxAudMsg64.exe
O23 - Service: DTS APO Service (dts_apo_service) . (.Pas de propriétaire - dts_apo_service.) - C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe
O23 - Service: Elan Service (ETDService) . (.ELAN Microelectronics Corp. - Elan Service.) - C:\Program Files\Elantech\ETDService.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) . (.TOSHIBA Corporation - TDCSrv Application.) - C:\Windows\system32\TODDSrv.exe
O23 - Service: TOSHIBA eco Utility Service (TOSHIBA eco Utility Service) . (.Toshiba Corporation - TOSHIBA eco Utility Service.) - C:\Program Files\Toshiba\Teco\TecoService.exe =>.Toshiba Corporation
O23 - Service: Bitdefender Desktop Update Service (UPDATESRV) . (.Bitdefender - Bitdefender Update Service.) - C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe
O23 - Service: Bitdefender Virus Shield (VSSERV) . (.Bitdefender - Bitdefender Security Service.) - C:\Program Files\Bitdefender\Bitdefender\vsserv.exe
~ Services: 15 Scanned in 00mn 06s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Desktop Component: 4 Scanned in 00mn 00s



---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ BEX: 1 Scanned in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
[MD5.FBB312C9DA3863673EC18F4AE4101778] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [267440]
[MD5.DB86A9A856E5FE747EA336ED333140FA] [APT] [Bitdefender Auto Scan] (.Bitdefender.) -- C:\Program Files\Bitdefender\Bitdefender\mtasklaunch.exe [25120]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.4ED088136C4BDE83B93AAEE4176D0666] [APT] [Resolution+ Setting Task] (.TODO: <Company name>.) -- C:\Program Files\Toshiba\TOSHIBA Smart View Utility\Plugins\ResolutionPlus\TosRegPermissionChg.exe [88576]
[MD5.00000000000000000000000000000000] [APT] [The weDownload Manager-codedownloader] (...) -- C:\Program Files (x86)\The weDownload Manager\The weDownload Manager-codedownloader.exe (.not file.) [0] =>PUP.weDownloadManager
[MD5.00000000000000000000000000000000] [APT] [The weDownload Manager-enabler] (...) -- C:\Program Files (x86)\The weDownload Manager\The weDownload Manager-enabler.exe (.not file.) [0] =>PUP.weDownloadManager
[MD5.00000000000000000000000000000000] [APT] [The weDownload Manager-updater] (...) -- C:\Program Files (x86)\The weDownload Manager\The weDownload Manager-updater.exe (.not file.) [0] =>PUP.weDownloadManager
[MD5.37AD6B4A4BE717669E89A32209B5D72A] [APT] [UMonitor Task] (...) -- C:\Windows\SysWOW64\UMonit64.exe [53248]
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984]
[MD5.2B2C2D74BC62E22248787530A7AFC87F] [APT] [Service Station] (.TOSHIBA Corporation.) -- C:\Program Files\TOSHIBA\Toshiba Service Station\ToshibaServiceStation.exe [655464]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [1002]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1088]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [1088]
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1092]
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [1092]
O39 - APT: The weDownload Manager-codedownloader - (...) -- C:\Windows\Tasks\The weDownload Manager-codedownloader.job [1574] =>PUP.CrossRider
O39 - APT: The weDownload Manager-codedownloader - (...) -- C:\Windows\System32\Tasks\The weDownload Manager-codedownloader [1574] =>PUP.CrossRider
O39 - APT: The weDownload Manager-enabler - (...) -- C:\Windows\Tasks\The weDownload Manager-enabler.job [1452] =>PUP.CrossRider
O39 - APT: The weDownload Manager-enabler - (...) -- C:\Windows\System32\Tasks\The weDownload Manager-enabler [1452] =>PUP.CrossRider
O39 - APT: The weDownload Manager-updater - (...) -- C:\Windows\Tasks\The weDownload Manager-updater.job [1624] =>PUP.CrossRider
O39 - APT: The weDownload Manager-updater - (...) -- C:\Windows\System32\Tasks\The weDownload Manager-updater [1624] =>PUP.CrossRider
~ Scheduled Task: 21 Scanned in 00mn 04s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll
~ Active Setup: 7 Scanned in 00mn 00s



---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: C:\Windows\System32\drivers\ahcache.sys (ahcache) . (.Microsoft Corporation - Application Compatibility Cache.) - C:\Windows\System32\DRIVERS\ahcache.sys
O41 - Driver: (BasicDisplay) . (.Microsoft Corporation - Microsoft Basic Display Driver.) - C:\Windows\system32\drivers\BasicDisplay.sys
O41 - Driver: (BasicRender) . (.Microsoft Corporation - Microsoft Basic Render Driver.) - C:\Windows\system32\drivers\BasicRender.sys
O41 - Driver: (bdfwfpf) . (.BitDefender LLC - BitDefender Firewall WFP Filter Driver.) - C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys
O41 - Driver: cdrom.inf (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dam.sys (dam) . (.Microsoft Corporation - DAM Kernel Driver.) - C:\Windows\System32\drivers\dam.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (Dfsc) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: mssmbios.inf (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: netnb.inf (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: npsvctrig.inf (npsvctrig) . (.Microsoft Corporation - Named pipe service triggers.) - C:\Windows\system32\drivers\npsvctrig.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\system32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\system32\DRIVERS\tdx.sys
O41 - Driver: C:\Windows\System32\drivers\vwififlt.sys (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\system32\DRIVERS\vwififlt.sys
~ Drivers: 34 Scanned in 00mn 00s



---\\ Logiciels installés (O42)
O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM][64Bits] -- {FF21C3E6-97FD-474F-9518-8DCBE94C2854}
O42 - Logiciel: Adobe Flash Player 15 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Reader XI (11.0.08) MUI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-FFFF-7B44-AB0000000001}
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {A922C4B7-50E0-4787-A94C-59DBF3C65DBE}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {FE86CB0C-FCB3-4358-B4B0-B0A41E33B3DD}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc
O42 - Logiciel: Bing Bar - (.Microsoft Corporation.) [HKLM][64Bits] -- {3365E735-48A6-4194-9988-CE59AC5AE503} =>Toolbar.Bing
O42 - Logiciel: Bitdefender Antivirus Plus - (.Bitdefender.) [HKLM][64Bits] -- Bitdefender
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
O42 - Logiciel: Centre Souris et Claviers Microsoft - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Mouse and Keyboard Center
O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9}
O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {AF312B06-5C5C-468E-89B3-BE6DE2645722}
O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}
O42 - Logiciel: Conexant HD Audio - (.Conexant.) [HKLM][64Bits] -- CNXT_AUDIO_HDA
O42 - Logiciel: DTS Sound - (.DTS, Inc..) [HKLM][64Bits] -- {2DFA9084-CEB3-4A48-B9F7-9038FEF1B8F4}
O42 - Logiciel: DriverUpdate - (.SlimWare Utilities, Inc..) [HKLM][64Bits] -- {2B353DA2-A8FD-4238-B207-62A1921158D7}
O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU][64Bits] -- Dropbox
O42 - Logiciel: ETDWare PS/2_SMBus-X64 11.8.11.4_WHQL - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech
O42 - Logiciel: Genesys USB Mass Storage Device - (.Genesys Logic.) [HKLM][64Bits] -- {959B7F35-2819-40C5-A0CD-3C53B5FCC935}
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: HP Customer Participation Program 14.0 - (.HP.) [HKLM][64Bits] -- HPExtendedCapabilities
O42 - Logiciel: HP Imaging Device Functions 14.0 - (.HP.) [HKLM][64Bits] -- HP Imaging Device Functions
O42 - Logiciel: HP Photosmart Officejet and Deskjet All-In-One Driver Software - (.HP.) [HKLM][64Bits] -- {6F5B70F0-EA6C-4A5B-BB16-8390BD66B251} =>.Hewlett-Packard Co
O42 - Logiciel: HP Solution Center 14.0 - (.HP.) [HKLM][64Bits] -- HP Solution Center & Imaging Support Tools
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}
O42 - Logiciel: Intel AppUp(R) center - (.Intel.) [HKLM][64Bits] -- Intel AppUp(R) center 45251
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140}
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {96714280-14E6-4DF7-BACD-F797C0F17C3D}
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {89AFB053-A343-46EF-97E4-D593AD7184E6}
O42 - Logiciel: Microsoft SkyDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- SkyDriveSetup.exe =>.Microsoft Corporation
O42 - Logiciel: Neverwinter - (.Cryptic Studios.) [HKLM][64Bits] -- Steam App 109600
O42 - Logiciel: OCR Software by I.R.I.S. 14.0 - (.HP.) [HKLM][64Bits] -- HPOCR
O42 - Logiciel: Office 15 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-0000-0000-0000000FF1CE}
O42 - Logiciel: Office 15 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008F-0000-1000-0000000FF1CE}
O42 - Logiciel: Office 15 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-040C-0000-0000000FF1CE}
O42 - Logiciel: OpenOffice 4.0.1 - (.Apache Software Foundation.) [HKLM][64Bits] -- {47F460DA-D1BE-4D85-8DF2-AA1F31D3445F}
O42 - Logiciel: Qualcomm Atheros Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Qualcomm Atheros Inc..) [HKLM][64Bits] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549}
O42 - Logiciel: REALTEK Wireless LAN Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- InstallShield_{95F38874-065A-40AB-AFC1-B764B192FFE7}
O42 - Logiciel: REALTEK Wireless LAN Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {95F38874-065A-40AB-AFC1-B764B192FFE7}
O42 - Logiciel: Shop for HP Supplies - (.HP.) [HKLM][64Bits] -- Shop for HP Supplies
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam
O42 - Logiciel: TOSHIBA Audio Enhancement - (.Toshiba Corporation.) [HKLM][64Bits] -- {1515F5E3-29EA-4CD1-A981-032D88880F09}
O42 - Logiciel: TOSHIBA Desktop Assist - (.Toshiba Corporation.) [HKLM][64Bits] -- {95CCACF0-010D-45F0-82BF-858643D8BC02}
O42 - Logiciel: TOSHIBA Display Utility - (.Toshiba Corporation.) [HKLM][64Bits] -- {84FA4D2D-4273-4C66-BD3D-ADD3FE48DFA2}
O42 - Logiciel: TOSHIBA Function Key - (.Toshiba Corporation.) [HKLM][64Bits] -- {16562A90-71BC-41A0-B890-D91B0C267120}
O42 - Logiciel: TOSHIBA HDD Accelerator - (.Toshiba Corporation.) [HKLM][64Bits] -- {DB4D9937-0B14-4EF1-BF9A-BB7E3B9DCB04}
O42 - Logiciel: TOSHIBA PC Health Monitor - (.Toshiba Corporation.) [HKLM][64Bits] -- {9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}
O42 - Logiciel: TOSHIBA Password Utility - (.Toshiba Corporation.) [HKLM][64Bits] -- InstallShield_{26BB68BB-CF93-4A12-BC6D-A3B6F53AC8D9}
O42 - Logiciel: TOSHIBA Recovery Media Creator - (.Toshiba Corporation.) [HKLM][64Bits] -- {B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}
O42 - Logiciel: TOSHIBA Service Station - (.Toshiba Corporation.) [HKLM][64Bits] -- {FBFCEEA5-96EA-4C8E-9262-43CBBEBAE413} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA System Driver - (.Toshiba Corporation.) [HKLM][64Bits] -- {1E6A96A1-2BAB-43EF-8087-30437593C66C}
O42 - Logiciel: TOSHIBA System Settings - (.Toshiba Corporation.) [HKLM][64Bits] -- {05A55927-DB9B-4E26-BA44-828EBFF829F0}
O42 - Logiciel: TOSHIBA VIDEO PLAYER - (.Toshiba Corporation.) [HKLM][64Bits] -- {FF07604E-C860-40E9-A230-E37FA41F103A}
O42 - Logiciel: TOSHIBA eco Utility - (.Toshiba Corporation.) [HKLM][64Bits] -- {5944B9D4-3C2A-48DE-931E-26B31714A2F7} =>.Toshiba Corporation
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {0D924CB2-2EA4-4044-BAF7-770202D6BD0D}
~ Logic: 48 Scanned in 00mn 00s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\Adobe]
[HKCU\Software\AppDataLow\Software\Unity]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\Bitdefender]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Conexant]
[HKCU\Software\Cryptic]
[HKCU\Software\Elantech]
[HKCU\Software\Google]
[HKCU\Software\HP]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\Intel]
[HKCU\Software\Macromedia]
[HKCU\Software\Mine]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Netscape]
[HKCU\Software\Norton]
[HKCU\Software\ODBC]
[HKCU\Software\OpenOffice]
[HKCU\Software\Policies]
[HKCU\Software\RegisteredApplications]
[HKCU\Software\SYNCJM]
[HKCU\Software\SlimWare Utilities Inc]
[HKCU\Software\Toshiba]
[HKCU\Software\Trolltech]
[HKCU\Software\Unity]
[HKCU\Software\Valve]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\Wow6432Node]
[HKCU\Software\ZebHelpProcess Helper]
[HKCU\Software\kde.org]
[HKLM\Software\AVC3]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\BitDefender]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Cnxt_Uiu_Parms]
[HKLM\Software\Conexant]
[HKLM\Software\GEAR Software]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\InstalledOptions]
[HKLM\Software\Insyde]
[HKLM\Software\IntelVolatile]
[HKLM\Software\Intel]
[HKLM\Software\Khronos]
[HKLM\Software\Macromedia]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Norton]
[HKLM\Software\ODBC]
[HKLM\Software\Policies]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SRS Labs]
[HKLM\Software\Toshiba]
[HKLM\Software\UIU]
[HKLM\Software\Wow6432Node\Adobe]
[HKLM\Software\Wow6432Node\AdwCleaner]
[HKLM\Software\Wow6432Node\Apple Computer, Inc.]
[HKLM\Software\Wow6432Node\Apple Inc.]
[HKLM\Software\Wow6432Node\Bitdefender]
[HKLM\Software\Wow6432Node\Classes]
[HKLM\Software\Wow6432Node\Clients]
[HKLM\Software\Wow6432Node\DTS, Inc.]
[HKLM\Software\Wow6432Node\DTS]
[HKLM\Software\Wow6432Node\Genesys Logic]
[HKLM\Software\Wow6432Node\Google]
[HKLM\Software\Wow6432Node\Hewlett-Packard]
[HKLM\Software\Wow6432Node\InstallShield]
[HKLM\Software\Wow6432Node\Intel]
[HKLM\Software\Wow6432Node\Khronos]
[HKLM\Software\Wow6432Node\Macromedia]
[HKLM\Software\Wow6432Node\MozillaPlugins]
[HKLM\Software\Wow6432Node\Mozilla]
[HKLM\Software\Wow6432Node\ODBC]
[HKLM\Software\Wow6432Node\OpenOffice]
[HKLM\Software\Wow6432Node\Policies]
[HKLM\Software\Wow6432Node\Qualcomm Atheros Inc.]
[HKLM\Software\Wow6432Node\RegisteredApplications]
[HKLM\Software\Wow6432Node\SPPDCOM] =>Rogue.PCSpeedUp
[HKLM\Software\Wow6432Node\SRS Labs]
[HKLM\Software\Wow6432Node\SlimWare Utilities Inc]
[HKLM\Software\Wow6432Node\Symantec]
[HKLM\Software\Wow6432Node\TOSHIBA]
[HKLM\Software\Wow6432Node\Toshiba Corporation]
[HKLM\Software\Wow6432Node\Valve]
[HKLM\Software\Wow6432Node\WildTangent]
[HKLM\Software\Wow6432Node\sMedio]
[HKLM\Software\Wow6432Node]
~ Key Software: 201 Scanned in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 2013-09-13 - 22:57:00 - [] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 2014-02-01 - 14:21:36 - [] ----D C:\Program Files (x86)\Apple Software Update =>.Apple Inc
O43 - CFD: 2014-02-01 - 14:21:27 - [] ----D C:\Program Files (x86)\Bonjour
O43 - CFD: 2013-10-10 - 20:07:26 - [] ----D C:\Program Files (x86)\Cisco
O43 - CFD: 2014-02-27 - 21:39:30 - [] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 2014-02-02 - 11:32:28 - [] ----D C:\Program Files (x86)\DriverUpdate
O43 - CFD: 2013-10-10 - 20:01:18 - [] ----D C:\Program Files (x86)\DTS, Inc
O43 - CFD: 2014-05-06 - 08:30:34 - [] ----D C:\Program Files (x86)\Google
O43 - CFD: 2014-02-17 - 01:49:08 - [0] ----D C:\Program Files (x86)\GUM732.tmp
O43 - CFD: 2014-02-27 - 21:41:16 - [] ----D C:\Program Files (x86)\HP
O43 - CFD: 2013-10-10 - 20:17:06 - [] --H-D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2013-10-10 - 20:25:02 - [] ----D C:\Program Files (x86)\Intel
O43 - CFD: 2014-09-11 - 08:00:28 - [] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2014-02-01 - 14:22:55 - [] ----D C:\Program Files (x86)\iTunes
O43 - CFD: 2014-02-27 - 21:41:39 - [] ----D C:\Program Files (x86)\Microsoft
O43 - CFD: 2013-10-10 - 20:35:37 - [] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2014-01-31 - 18:49:14 - [] ----D C:\Program Files (x86)\Microsoft SkyDrive =>.Microsoft Corporation
O43 - CFD: 2014-01-31 - 18:48:42 - [] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2013-08-28 - 21:20:40 - [] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 2014-01-29 - 22:52:09 - [] ----D C:\Program Files (x86)\OpenOffice 4
O43 - CFD: 2013-10-10 - 20:05:28 - [] ----D C:\Program Files (x86)\Realtek
O43 - CFD: 2013-08-28 - 21:20:40 - [] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2014-02-15 - 13:41:17 - [] ----D C:\Program Files (x86)\Steam
O43 - CFD: 2013-10-10 - 20:22:25 - [] ----D C:\Program Files (x86)\SymSilent
O43 - CFD: 2013-10-10 - 20:17:06 - [] ----D C:\Program Files (x86)\TOSHIBA
O43 - CFD: 2014-02-04 - 19:39:57 - [] ----D C:\Program Files (x86)\WildGames
O43 - CFD: 2014-02-04 - 19:39:42 - [] ----D C:\Program Files (x86)\WildTangent Games
O43 - CFD: 2014-05-15 - 07:41:37 - [] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 2013-08-28 - 21:28:32 - [] ----D C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 2014-05-02 - 11:28:00 - [] ----D C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 2014-05-02 - 11:28:01 - [] ----D C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 2013-08-22 - 11:36:30 - [] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 2013-08-28 - 21:28:32 - [] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2014-05-02 - 11:28:01 - [] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2013-08-22 - 11:36:30 - [] -SH-D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2013-08-22 - 11:36:30 - [] ----D C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 2014-09-16 - 20:17:23 - [] ----D C:\Program Files (x86)\ZHPDiag =>.Nicolas Coolman
O43 - CFD: 2013-09-13 - 22:57:04 - [] ----D C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2014-02-01 - 14:22:18 - [] ----D C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 2014-01-29 - 22:35:33 - [] ----D C:\Program Files (x86)\Common Files\Bitdefender
O43 - CFD: 2014-01-31 - 18:48:44 - [] ----D C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 2014-02-27 - 21:39:21 - [] ----D C:\Program Files (x86)\Common Files\Hewlett-Packard
O43 - CFD: 2014-02-27 - 21:39:30 - [] ----D C:\Program Files (x86)\Common Files\HP
O43 - CFD: 2013-10-10 - 20:08:24 - [] ----D C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2013-10-10 - 19:55:51 - [] ----D C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 2014-01-31 - 18:48:44 - [] ----D C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 2013-10-10 - 19:53:46 - [] ----D C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 2013-08-22 - 11:36:33 - [] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2014-02-09 - 21:31:55 - [] ----D C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 2013-08-28 - 21:28:32 - [] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 2013-10-10 - 20:17:04 - [] ----D C:\Program Files (x86)\Common Files\Toshiba Shared
O43 - CFD: 2014-02-01 - 14:22:57 - [] ----D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 2014-02-03 - 14:11:45 - [] ----D C:\ProgramData\Adobe
O43 - CFD: 2014-02-01 - 14:21:33 - [] ----D C:\ProgramData\Apple
O43 - CFD: 2014-02-01 - 14:22:18 - [] ----D C:\ProgramData\Apple Computer
O43 - CFD: 2013-08-22 - 10:45:52 - [] -SH-D C:\ProgramData\Application Data
O43 - CFD: 2014-01-29 - 22:41:16 - [] ----D C:\ProgramData\BDLogging
O43 - CFD: 2014-01-29 - 22:45:27 - [] ----D C:\ProgramData\Bitdefender
O43 - CFD: 2014-02-02 - 11:18:26 - [] ----D C:\ProgramData\Conexant
O43 - CFD: 2013-08-22 - 10:45:52 - [] -S--D C:\ProgramData\Desktop
O43 - CFD: 2013-08-22 - 10:45:52 - [] -SH-D C:\ProgramData\Documents
O43 - CFD: 2014-02-27 - 21:43:40 - [] ----D C:\ProgramData\HP
O43 - CFD: 2014-02-27 - 21:40:36 - [] ----D C:\ProgramData\HP Product Assistant
O43 - CFD: 2013-10-10 - 20:25:43 - [] ----D C:\ProgramData\Intel
O43 - CFD: 2014-09-14 - 23:18:01 - [] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 2014-02-27 - 21:47:48 - [] -S--D C:\ProgramData\Microsoft
O43 - CFD: 2014-01-31 - 18:49:06 - [] ----D C:\ProgramData\Microsoft SkyDrive =>.Microsoft Corporation
O43 - CFD: 2014-01-29 - 21:58:22 - [] ----D C:\ProgramData\Norton
O43 - CFD: 2013-10-10 - 20:21:18 - [] ----D C:\ProgramData\NortonInstaller
O43 - CFD: 2013-10-10 - 20:16:03 - [] ----D C:\ProgramData\Package Cache
O43 - CFD: 2014-08-24 - 11:22:26 - [] ----D C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 2013-10-10 - 20:01:18 - [] ----D C:\ProgramData\SRS Labs
O43 - CFD: 2013-08-22 - 10:45:52 - [] -SH-D C:\ProgramData\Start Menu
O43 - CFD: 2013-08-22 - 10:45:52 - [] -SH-D C:\ProgramData\Templates
O43 - CFD: 2014-01-29 - 19:46:01 - [] ---AD C:\ProgramData\Toshiba
O43 - CFD: 2014-02-27 - 21:44:05 - [] ----D C:\ProgramData\WEBREG
O43 - CFD: 2014-02-04 - 19:39:43 - [] ----D C:\ProgramData\WildTangent
O43 - CFD: 2014-02-03 - 14:10:30 - [] ----D C:\Users\marie\AppData\Roaming\Adobe
O43 - CFD: 2014-03-11 - 10:41:23 - [] ----D C:\Users\marie\AppData\Roaming\Apple Computer
O43 - CFD: 2014-01-29 - 22:38:23 - [] ----D C:\Users\marie\AppData\Roaming\Bitdefender
O43 - CFD: 2014-09-14 - 23:07:04 - [] ----D C:\Users\marie\AppData\Roaming\Dropbox
O43 - CFD: 2014-02-27 - 21:44:05 - [] ----D C:\Users\marie\AppData\Roaming\HP
O43 - CFD: 2014-03-06 - 23:22:30 - [] ----D C:\Users\marie\AppData\Roaming\HpUpdate
O43 - CFD: 2014-01-29 - 19:44:22 - [] ----D C:\Users\marie\AppData\Roaming\Macromedia
O43 - CFD: 2014-03-25 - 19:01:21 - [] -S--D C:\Users\marie\AppData\Roaming\Microsoft
O43 - CFD: 2014-01-29 - 22:52:50 - [] ----D C:\Users\marie\AppData\Roaming\OpenOffice
O43 - CFD: 2014-07-09 - 21:18:28 - [] ----D C:\Users\marie\AppData\Roaming\QuickScan
O43 - CFD: 2014-02-23 - 20:18:02 - [] ----D C:\Users\marie\AppData\Roaming\Remote Control Server
O43 - CFD: 2014-02-02 - 17:34:11 - [] ----D C:\Users\marie\AppData\Roaming\sMedio
O43 - CFD: 2014-03-20 - 19:01:39 - [] ----D C:\Users\marie\AppData\Roaming\Unity
O43 - CFD: 2014-02-04 - 19:51:06 - [] ----D C:\Users\marie\AppData\Roaming\UpdateStar Drivers
O43 - CFD: 2014-02-04 - 19:39:43 - [] ----D C:\Users\marie\AppData\Roaming\WildTangent
O43 - CFD: 2014-02-07 - 18:57:48 - [] ----D C:\Users\marie\AppData\Roaming\WinBatch
O43 - CFD: 2014-09-16 - 20:21:32 - [] ----D C:\Users\marie\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 2014-02-03 - 14:10:30 - [] ----D C:\Users\marie\AppData\Local\Adobe
O43 - CFD: 2014-02-01 - 14:21:38 - [] ----D C:\Users\marie\AppData\Local\Apple
O43 - CFD: 2014-02-01 - 14:23:15 - [] ----D C:\Users\marie\AppData\Local\Apple Computer
O43 - CFD: 2014-01-29 - 19:37:40 - [] -SH-D C:\Users\marie\AppData\Local\Application Data
O43 - CFD: 2014-01-29 - 21:37:45 - [] ----D C:\Users\marie\AppData\Local\Apps
O43 - CFD: 2014-01-29 - 22:51:43 - [0] ----D C:\Users\marie\AppData\Local\cache
O43 - CFD: 2014-02-02 - 11:18:25 - [] ----D C:\Users\marie\AppData\Local\Conexant
O43 - CFD: 2014-05-06 - 08:28:25 - [0] ----D C:\Users\marie\AppData\Local\Deployment
O43 - CFD: 2014-04-18 - 09:17:22 - [0] ----D C:\Users\marie\AppData\Local\Diagnostics
O43 - CFD: 2014-03-01 - 12:19:58 - [] ----D C:\Users\marie\AppData\Local\Downloaded Installations
O43 - CFD: 2014-08-03 - 03:15:04 - [0] ----D C:\Users\marie\AppData\Local\ElevatedDiagnostics
O43 - CFD: 2014-05-03 - 09:55:31 - [] -SH-D C:\Users\marie\AppData\Local\EmieSiteList
O43 - CFD: 2014-05-03 - 09:55:31 - [] -SH-D C:\Users\marie\AppData\Local\EmieUserList
O43 - CFD: 2014-01-29 - 21:39:11 - [] ----D C:\Users\marie\AppData\Local\Google
O43 - CFD: 2014-01-29 - 19:37:40 - [] -SH-D C:\Users\marie\AppData\Local\Historique
O43 - CFD: 2014-04-15 - 10:11:21 - [] ----D C:\Users\marie\AppData\Local\Microsoft
O43 - CFD: 2014-03-19 - 15:30:49 - [] ----D C:\Users\marie\AppData\Local\Packages
O43 - CFD: 2014-02-16 - 19:30:11 - [] ----D C:\Users\marie\AppData\Local\Programs
O43 - CFD: 2014-02-02 - 11:32:31 - [] ----D C:\Users\marie\AppData\Local\SlimWare Utilities Inc
O43 - CFD: 2014-09-16 - 20:20:36 - [] ----D C:\Users\marie\AppData\Local\Temp
O43 - CFD: 2014-01-29 - 19:37:40 - [] -SH-D C:\Users\marie\AppData\Local\Temporary Internet Files
O43 - CFD: 2014-01-29 - 19:40:58 - [] ----D C:\Users\marie\AppData\Local\TOSHIBA
O43 - CFD: 2014-03-20 - 19:00:31 - [] ----D C:\Users\marie\AppData\Local\Unity
O43 - CFD: 2014-02-02 - 11:05:08 - [] ----D C:\Users\marie\AppData\Local\VirtualStore
O43 - CFD: 2013-08-22 - 11:36:32 - [] R---D C:\Users\marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2013-08-22 - 11:36:32 - [] R---D C:\Users\marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2014-01-30 - 08:04:55 - [] R---D C:\Users\marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2014-08-16 - 06:58:08 - [] ----D C:\Users\marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
O43 - CFD: 2013-08-22 - 11:36:32 - [] ----D C:\Users\marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2014-08-16 - 06:58:31 - [] R---D C:\Users\marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2014-02-09 - 21:54:09 - [] ----D C:\Users\marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 2013-08-22 - 11:36:32 - [] R---D C:\Users\marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
~ Program Folder: 126 Scanned in 00mn 00s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.8BB7548307EE6147137993A410D64387] - 2014-09-09 - 15:14:32 ---A- . (.Microsoft Corporation - Microsoft® C Runtime Library.) -- C:\Windows\System32\msvcr120_clr0400.dll [869544]
O44 - LFC:[MD5.D3AE5DB16EAF913860EC28654CE00E6B] - 2014-09-09 - 15:15:35 ---A- . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1212928]
O44 - LFC:[MD5.66FC85C4728B6FBA8E7AAD59854F3730] - 2014-09-09 - 17:53:57 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\System32\MRT.exe [101694776]
O44 - LFC:[MD5.5107C9AEF01636FF8A04E8F28CF7C316] - 2014-09-09 - 18:10:54 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\System32\jscript9.dll [5833728]
O44 - LFC:[MD5.3EC77C4625862483BFCF4CEE1231EED7] - 2014-09-09 - 18:10:57 ---A- . (.Microsoft Corporation - Navigateur Internet.) -- C:\Windows\System32\ieframe.dll [13588480]
O44 - LFC:[MD5.4EBE88D6CC494B9BE3705B400562A587] - 2014-09-09 - 18:10:57 ---A- . (.Microsoft Corporation - Panneau de configuration Internet.) -- C:\Windows\System32\inetcpl.cpl [2104832]
O44 - LFC:[MD5.4C56EBB6A31E8323D3CBBC476C81B998] - 2014-09-09 - 18:10:58 ---A- . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [1447424]
O44 - LFC:[MD5.7F88F6790401199B2C9C932FD91965F9] - 2014-09-09 - 18:10:58 ---A- . (.Microsoft Corporation - Utilitaire à l'exécution pour Internet Expl.) -- C:\Windows\System32\iertutil.dll [2793984]
O44 - LFC:[MD5.30C355249224173151874A7B86A8BB66] - 2014-09-09 - 18:10:59 ---A- . (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2310656]
O44 - LFC:[MD5.47942CCF5A5CD57AE1BB44F17725A912] - 2014-09-09 - 18:11:00 ---A- . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [23591424]
O44 - LFC:[MD5.E86022F8AE3F9251459C744E175309F9] - 2014-09-09 - 18:11:01 ---A- . (.Microsoft Corporation - Microsoft SmartScreen Filter.) -- C:\Windows\System32\ieapfltr.dll [775168]
O44 - LFC:[MD5.F519886D6075BFF0286793B3891E0675] - 2014-09-09 - 18:11:03 ---A- . (.Microsoft Corporation - Microsoft Feeds Manager.) -- C:\Windows\System32\msfeeds.dll [727040]
O44 - LFC:[MD5.B2AA93A6FC3BB1EFBF25410DAA6BB1D2] - 2014-09-09 - 18:11:03 ---A- . (.Microsoft Corporation - Personnalisation d'IEAK.) -- C:\Windows\System32\iedkcs32.dll [359424]
O44 - LFC:[MD5.1FA34F04CB4529000AD818268F059D3E] - 2014-09-09 - 18:11:03 ---A- . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [707072]
O44 - LFC:[MD5.550531ED60E7AD5CA02EDB0FAFA6280B] - 2014-09-09 - 18:11:05 ---A- . (.Microsoft Corporation - JavaScript Performance Collection Agent.) -- C:\Windows\System32\JavaScriptC
0
Utilisateur anonyme
17 sept. 2014 à 03:40
Hello :)

Pour avancer kingk06 ....

@metm32 , il faut que tu héberges le rapport ( car il est trop long pour être mis dans une réponse sur CCM).
Regarde bien la fin du message de kingk06 : https://forums.commentcamarche.net/forum/affich-30794964-aide-pour-comprendre-un-rapport-adwcleaner#1

++
0
kingk06 Messages postés 10277 Date d'inscription mercredi 12 juin 2013 Statut Membre Dernière intervention 17 mars 2015 535
17 sept. 2014 à 06:51
salut daftcrack31 merci ;)


@metm32 =>

Yop,

Le rapport est trop volumineux pour tenir en entier sur le forum, il faut l'héberger.
Il me faut les lien en échange =>

Comment héberger un rapport sur ci-joint :

* Clique sur ce lien : https://www.cjoint.com/
* Clique sur Parcourir... et cherche le fichier du rapport que tu souhaites me transmettre.
* Clique sur Ouvrir.
* Clique sur "Créer le lien Cjoint" pour déposer le fichier.
* Un lien de cette forme :

https://www.cjoint.com/?CFnaaobHAob

est ajouté dans la nouvelle page.
* Copie-colle ce lien dans ta réponse.

Tuto pour t'aider
ou ici https://www.cjoint.com/ à lire => https://www.commentcamarche.net/faq/29493-utiliser-cjoint-pour-heberger-des-fichiers
0