Antimalware doctor - Page 2

  1. pardon javais pas vu
    2010/10/10 23:16:49.0655 TDSS rootkit removing tool 2.4.4.0 Oct 4 2010 09:06:59
    2010/10/10 23:16:49.0655 ================================================================================
    2010/10/10 23:16:49.0655 SystemInfo:
    2010/10/10 23:16:49.0655
    2010/10/10 23:16:49.0655 OS Version: 6.1.7600 ServicePack: 0.0
    2010/10/10 23:16:49.0655 Product type: Workstation
    2010/10/10 23:16:49.0655 ComputerName: BENPC
    2010/10/10 23:16:49.0657 UserName: ben
    2010/10/10 23:16:49.0657 Windows directory: C:\windows
    2010/10/10 23:16:49.0657 System windows directory: C:\windows
    2010/10/10 23:16:49.0657 Processor architecture: Intel x86
    2010/10/10 23:16:49.0657 Number of processors: 2
    2010/10/10 23:16:49.0657 Page size: 0x1000
    2010/10/10 23:16:49.0657 Boot type: Normal boot
    2010/10/10 23:16:49.0657 ================================================================================
    2010/10/10 23:16:50.0146 Initialize success
    2010/10/10 23:17:10.0945 ================================================================================
    2010/10/10 23:17:10.0945 Scan started
    2010/10/10 23:17:10.0946 Mode: Manual;
    2010/10/10 23:17:10.0946 ================================================================================
    2010/10/10 23:17:12.0576 1394ohci (6d2aca41739bfe8cb86ee8e85f29697d) C:\windows\system32\DRIVERS\1394ohci.sys
    2010/10/10 23:17:12.0730 ACPI (f0e07d144c8685b8774bc32fc8da4df0) C:\windows\system32\DRIVERS\ACPI.sys
    2010/10/10 23:17:12.0880 AcpiPmi (98d81ca942d19f7d9153b095162ac013) C:\windows\system32\DRIVERS\acpipmi.sys
    2010/10/10 23:17:13.0248 adp94xx (21e785ebd7dc90a06391141aac7892fb) C:\windows\system32\DRIVERS\adp94xx.sys
    2010/10/10 23:17:13.0429 adpahci (0c676bc278d5b59ff5abd57bbe9123f2) C:\windows\system32\DRIVERS\adpahci.sys
    2010/10/10 23:17:13.0589 adpu320 (7c7b5ee4b7b822ec85321fe23a27db33) C:\windows\system32\DRIVERS\adpu320.sys
    2010/10/10 23:17:13.0771 AFD (ddc040fdb01ef1712a6b13e52afb104c) C:\windows\system32\drivers\afd.sys
    2010/10/10 23:17:13.0948 agp440 (507812c3054c21cef746b6ee3d04dd6e) C:\windows\system32\DRIVERS\agp440.sys
    2010/10/10 23:17:14.0124 aic78xx (8b30250d573a8f6b4bd23195160d8707) C:\windows\system32\DRIVERS\djsvs.sys
    2010/10/10 23:17:14.0295 aliide (0d40bcf52ea90fc7df2aeab6503dea44) C:\windows\system32\DRIVERS\aliide.sys
    2010/10/10 23:17:14.0454 amdagp (3c6600a0696e90a463771c7422e23ab5) C:\windows\system32\DRIVERS\amdagp.sys
    2010/10/10 23:17:14.0632 amdide (cd5914170297126b6266860198d1d4f0) C:\windows\system32\DRIVERS\amdide.sys
    2010/10/10 23:17:14.0797 AmdK8 (00dda200d71bac534bf56a9db5dfd666) C:\windows\system32\DRIVERS\amdk8.sys
    2010/10/10 23:17:14.0974 AmdPPM (3cbf30f5370fda40dd3e87df38ea53b6) C:\windows\system32\DRIVERS\amdppm.sys
    2010/10/10 23:17:15.0142 amdsata (2101a86c25c154f8314b24ef49d7fbc2) C:\windows\system32\DRIVERS\amdsata.sys
    2010/10/10 23:17:15.0321 amdsbs (ea43af0c423ff267355f74e7a53bdaba) C:\windows\system32\DRIVERS\amdsbs.sys
    2010/10/10 23:17:15.0492 amdxata (b81c2b5616f6420a9941ea093a92b150) C:\windows\system32\DRIVERS\amdxata.sys
    2010/10/10 23:17:15.0679 AppID (feb834c02ce1e84b6a38f953ca067706) C:\windows\system32\drivers\appid.sys
    2010/10/10 23:17:15.0903 arc (2932004f49677bd84dbc72edb754ffb3) C:\windows\system32\DRIVERS\arc.sys
    2010/10/10 23:17:16.0074 arcsas (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\windows\system32\DRIVERS\arcsas.sys
    2010/10/10 23:17:16.0235 AsyncMac (add2ade1c2b285ab8378d2daaf991481) C:\windows\system32\DRIVERS\asyncmac.sys
    2010/10/10 23:17:16.0396 atapi (338c86357871c167a96ab976519bf59e) C:\windows\system32\DRIVERS\atapi.sys
    2010/10/10 23:17:16.0577 athr (0f4b6b99d6cdc1d93df1fa690796b2f7) C:\windows\system32\DRIVERS\athr.sys
    2010/10/10 23:17:16.0819 avgntflt (1eb7d72a82f94f7e9496d363fce00b68) C:\windows\system32\DRIVERS\avgntflt.sys
    2010/10/10 23:17:17.0008 avipbb (f8c56231ed5ecf7d1b46b0330880ccef) C:\windows\system32\DRIVERS\avipbb.sys
    2010/10/10 23:17:17.0237 b06bdrv (1a231abec60fd316ec54c66715543cec) C:\windows\system32\DRIVERS\bxvbdx.sys
    2010/10/10 23:17:17.0397 b57nd60x (bd8869eb9cde6bbe4508d869929869ee) C:\windows\system32\DRIVERS\b57nd60x.sys
    2010/10/10 23:17:17.0572 Beep (505506526a9d467307b3c393dedaf858) C:\windows\system32\drivers\Beep.sys
    2010/10/10 23:17:17.0753 blbdrive (2287078ed48fcfc477b05b20cf38f36f) C:\windows\system32\DRIVERS\blbdrive.sys
    2010/10/10 23:17:17.0926 bowser (fcafaef6798d7b51ff029f99a9898961) C:\windows\system32\DRIVERS\bowser.sys
    2010/10/10 23:17:17.0957 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\windows\system32\DRIVERS\BrFiltLo.sys
    2010/10/10 23:17:18.0015 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\windows\system32\DRIVERS\BrFiltUp.sys
    2010/10/10 23:17:18.0077 Brserid (845b8ce732e67f3b4133164868c666ea) C:\windows\System32\Drivers\Brserid.sys
    2010/10/10 23:17:18.0097 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\windows\System32\Drivers\BrSerWdm.sys
    2010/10/10 23:17:18.0154 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\windows\System32\Drivers\BrUsbMdm.sys
    2010/10/10 23:17:18.0186 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\windows\System32\Drivers\BrUsbSer.sys
    2010/10/10 23:17:18.0204 BTHMODEM (ed3df7c56ce0084eb2034432fc56565a) C:\windows\system32\DRIVERS\bthmodem.sys
    2010/10/10 23:17:18.0565 cdfs (77ea11b065e0a8ab902d78145ca51e10) C:\windows\system32\DRIVERS\cdfs.sys
    2010/10/10 23:17:18.0651 cdrom (ba6e70aa0e6091bc39de29477d866a77) C:\windows\system32\DRIVERS\cdrom.sys
    2010/10/10 23:17:18.0767 circlass (3fe3fe94a34df6fb06e6418d0f6a0060) C:\windows\system32\DRIVERS\circlass.sys
    2010/10/10 23:17:18.0829 CLFS (635181e0e9bbf16871bf5380d71db02d) C:\windows\system32\CLFS.sys
    2010/10/10 23:17:18.0902 CmBatt (dea805815e587dad1dd2c502220b5616) C:\windows\system32\DRIVERS\CmBatt.sys
    2010/10/10 23:17:18.0935 cmdide (c537b1db64d495b9b4717b4d6d9edbf2) C:\windows\system32\DRIVERS\cmdide.sys
    2010/10/10 23:17:19.0032 CNG (1b675691ed940766149c93e8f4488d68) C:\windows\system32\Drivers\cng.sys
    2010/10/10 23:17:19.0104 Compbatt (a6023d3823c37043986713f118a89bee) C:\windows\system32\DRIVERS\compbatt.sys
    2010/10/10 23:17:19.0230 CompositeBus (f1724ba27e97d627f808fb0ba77a28a6) C:\windows\system32\DRIVERS\CompositeBus.sys
    2010/10/10 23:17:19.0307 crcdisk (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\windows\system32\DRIVERS\crcdisk.sys
    2010/10/10 23:17:19.0407 DfsC (8e09e52ee2e3ceb199ef3dd99cf9e3fb) C:\windows\system32\Drivers\dfsc.sys
    2010/10/10 23:17:19.0452 discache (1a050b0274bfb3890703d490f330c0da) C:\windows\system32\drivers\discache.sys
    2010/10/10 23:17:19.0529 Disk (565003f326f99802e68ca78f2a68e9ff) C:\windows\system32\DRIVERS\disk.sys
    2010/10/10 23:17:19.0602 drmkaud (b918e7c5f9bf77202f89e1a9539f2eb4) C:\windows\system32\drivers\drmkaud.sys
    2010/10/10 23:17:19.0668 DXGKrnl (8b6c3464d7fac176500061dbfff42ad4) C:\windows\System32\drivers\dxgkrnl.sys
    2010/10/10 23:17:19.0794 ebdrv (024e1b5cac09731e4d868e64dbfb4ab0) C:\windows\system32\DRIVERS\evbdx.sys
    2010/10/10 23:17:20.0014 elxstor (0ed67910c8c326796faa00b2bf6d9d3c) C:\windows\system32\DRIVERS\elxstor.sys
    2010/10/10 23:17:20.0047 ErrDev (8fc3208352dd3912c94367a206ab3f11) C:\windows\system32\DRIVERS\errdev.sys
    2010/10/10 23:17:20.0133 exfat (2dc9108d74081149cc8b651d3a26207f) C:\windows\system32\drivers\exfat.sys
    2010/10/10 23:17:20.0157 fastfat (7e0ab74553476622fb6ae36f73d97d35) C:\windows\system32\drivers\fastfat.sys
    2010/10/10 23:17:20.0228 fdc (e817a017f82df2a1f8cfdbda29388b29) C:\windows\system32\DRIVERS\fdc.sys
    2010/10/10 23:17:20.0268 FileInfo (6cf00369c97f3cf563be99be983d13d8) C:\windows\system32\drivers\fileinfo.sys
    2010/10/10 23:17:20.0295 Filetrace (42c51dc94c91da21cb9196eb64c45db9) C:\windows\system32\drivers\filetrace.sys
    2010/10/10 23:17:20.0320 flpydisk (87907aa70cb3c56600f1c2fb8841579b) C:\windows\system32\DRIVERS\flpydisk.sys
    2010/10/10 23:17:20.0354 FltMgr (7520ec808e0c35e0ee6f841294316653) C:\windows\system32\drivers\fltmgr.sys
    2010/10/10 23:17:20.0392 FsDepends (1a16b57943853e598cff37fe2b8cbf1d) C:\windows\system32\drivers\FsDepends.sys
    2010/10/10 23:17:20.0438 fssfltr (8e307583e6b45f1accf762fe22a61c0d) C:\windows\system32\DRIVERS\fssfltr.sys
    2010/10/10 23:17:20.0477 Fs_Rec (a574b4360e438977038aae4bf60d79a2) C:\windows\system32\drivers\Fs_Rec.sys
    2010/10/10 23:17:20.0557 fvevol (dafbd9fe39197495aed6d51f3b85b5d2) C:\windows\system32\DRIVERS\fvevol.sys
    2010/10/10 23:17:20.0580 gagp30kx (65ee0c7a58b65e74ae05637418153938) C:\windows\system32\DRIVERS\gagp30kx.sys
    2010/10/10 23:17:20.0640 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\windows\system32\DRIVERS\GEARAspiWDM.sys
    2010/10/10 23:17:20.0680 hcw85cir (c44e3c2bab6837db337ddee7544736db) C:\windows\system32\drivers\hcw85cir.sys
    2010/10/10 23:17:20.0735 HdAudAddService (3530cad25deba7dc7de8bb51632cbc5f) C:\windows\system32\drivers\HdAudio.sys
    2010/10/10 23:17:20.0795 HDAudBus (717a2207fd6f13ad3e664c7d5a43c7bf) C:\windows\system32\DRIVERS\HDAudBus.sys
    2010/10/10 23:17:20.0821 HidBatt (1d58a7f3e11a9731d0eaaaa8405acc36) C:\windows\system32\DRIVERS\HidBatt.sys
    2010/10/10 23:17:20.0856 HidBth (89448f40e6df260c206a193a4683ba78) C:\windows\system32\DRIVERS\hidbth.sys
    2010/10/10 23:17:20.0927 HidIr (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\windows\system32\DRIVERS\hidir.sys
    2010/10/10 23:17:20.0972 HidUsb (25072fb35ac90b25f9e4e3bacf774102) C:\windows\system32\DRIVERS\hidusb.sys
    2010/10/10 23:17:21.0011 HpSAMD (295fdc419039090eb8b49ffdbb374549) C:\windows\system32\DRIVERS\HpSAMD.sys
    2010/10/10 23:17:21.0098 HTTP (c531c7fd9e8b62021112787c4e2c5a5a) C:\windows\system32\drivers\HTTP.sys
    2010/10/10 23:17:21.0141 hwpolicy (8305f33cde89ad6c7a0763ed0b5a8d42) C:\windows\system32\drivers\hwpolicy.sys
    2010/10/10 23:17:21.0219 i8042prt (f151f0bdc47f4a28b1b20a0818ea36d6) C:\windows\system32\DRIVERS\i8042prt.sys
    2010/10/10 23:17:21.0315 iaStor (0baa4115dfffd6a6d809a89d65e1281a) C:\windows\system32\DRIVERS\iaStor.sys
    2010/10/10 23:17:21.0370 iaStorV (934af4d7c5f457b9f0743f4299b77b67) C:\windows\system32\DRIVERS\iaStorV.sys
    2010/10/10 23:17:21.0560 igfx (36cc40b02ae593d6152ac8bd657720af) C:\windows\system32\DRIVERS\igdkmd32.sys
    2010/10/10 23:17:21.0862 iirsp (4173ff5708f3236cf25195fecd742915) C:\windows\system32\DRIVERS\iirsp.sys
    2010/10/10 23:17:21.0987 IntcAzAudAddService (3202e26501e5e18c35dc2cc74709a704) C:\windows\system32\drivers\RTKVHDA.sys
    2010/10/10 23:17:22.0166 IntcHdmiAddService (264632ade8127b7baa2190cf6fad435b) C:\windows\system32\drivers\IntcHdmi.sys
    2010/10/10 23:17:22.0210 intelide (a0f12f2c9ba6c72f3987ce780e77c130) C:\windows\system32\DRIVERS\intelide.sys
    2010/10/10 23:17:22.0254 intelppm (3b514d27bfc4accb4037bc6685f766e0) C:\windows\system32\DRIVERS\intelppm.sys
    2010/10/10 23:17:22.0314 IpFilterDriver (709d1761d3b19a932ff0238ea6d50200) C:\windows\system32\DRIVERS\ipfltdrv.sys
    2010/10/10 23:17:22.0358 IPMIDRV (e4454b6c37d7ffd5649611f6496308a7) C:\windows\system32\DRIVERS\IPMIDrv.sys
    2010/10/10 23:17:22.0398 IPNAT (a5fa468d67abcdaa36264e463a7bb0cd) C:\windows\system32\drivers\ipnat.sys
    2010/10/10 23:17:22.0468 IRENUM (42996cff20a3084a56017b7902307e9f) C:\windows\system32\drivers\irenum.sys
    2010/10/10 23:17:22.0519 isapnp (1f32bb6b38f62f7df1a7ab7292638a35) C:\windows\system32\DRIVERS\isapnp.sys
    2010/10/10 23:17:22.0602 iScsiPrt (ed46c223ae46c6866ab77cdc41c404b7) C:\windows\system32\DRIVERS\msiscsi.sys
    2010/10/10 23:17:22.0654 kbdclass (adef52ca1aeae82b50df86b56413107e) C:\windows\system32\DRIVERS\kbdclass.sys
    2010/10/10 23:17:22.0733 kbdhid (3d9f0ebf350edcfd6498057301455964) C:\windows\system32\DRIVERS\kbdhid.sys
    2010/10/10 23:17:22.0789 KSecDD (e36a061ec11b373826905b21be10948f) C:\windows\system32\Drivers\ksecdd.sys
    2010/10/10 23:17:22.0830 KSecPkg (365c6154bbbc5377173f1ca7bfb6cc59) C:\windows\system32\Drivers\ksecpkg.sys
    2010/10/10 23:17:22.0913 lltdio (f7611ec07349979da9b0ae1f18ccc7a6) C:\windows\system32\DRIVERS\lltdio.sys
    2010/10/10 23:17:22.0976 LSI_FC (eb119a53ccf2acc000ac71b065b78fef) C:\windows\system32\DRIVERS\lsi_fc.sys
    2010/10/10 23:17:22.0993 LSI_SAS (8ade1c877256a22e49b75d1cc9161f9c) C:\windows\system32\DRIVERS\lsi_sas.sys
    2010/10/10 23:17:23.0025 LSI_SAS2 (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\windows\system32\DRIVERS\lsi_sas2.sys
    2010/10/10 23:17:23.0056 LSI_SCSI (0a036c7d7cab643a7f07135ac47e0524) C:\windows\system32\DRIVERS\lsi_scsi.sys
    2010/10/10 23:17:23.0097 luafv (6703e366cc18d3b6e534f5cf7df39cee) C:\windows\system32\drivers\luafv.sys
    2010/10/10 23:17:23.0129 megasas (0fff5b045293002ab38eb1fd1fc2fb74) C:\windows\system32\DRIVERS\megasas.sys
    2010/10/10 23:17:23.0162 MegaSR (dcbab2920c75f390caf1d29f675d03d6) C:\windows\system32\DRIVERS\MegaSR.sys
    2010/10/10 23:17:23.0210 Modem (f001861e5700ee84e2d4e52c712f4964) C:\windows\system32\drivers\modem.sys
    2010/10/10 23:17:23.0242 monitor (79d10964de86b292320e9dfe02282a23) C:\windows\system32\DRIVERS\monitor.sys
    2010/10/10 23:17:23.0301 mouclass (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\windows\system32\DRIVERS\mouclass.sys
    2010/10/10 23:17:23.0439 mouhid (2c388d2cd01c9042596cf3c8f3c7b24d) C:\windows\system32\DRIVERS\mouhid.sys
    2010/10/10 23:17:23.0489 mountmgr (921c18727c5920d6c0300736646931c2) C:\windows\system32\drivers\mountmgr.sys
    2010/10/10 23:17:23.0527 mpio (2af5997438c55fb79d33d015c30e1974) C:\windows\system32\DRIVERS\mpio.sys
    2010/10/10 23:17:23.0578 mpsdrv (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\windows\system32\drivers\mpsdrv.sys
    2010/10/10 23:17:23.0601 MRxDAV (b1be47008d20e43da3adc37c24cdb89d) C:\windows\system32\drivers\mrxdav.sys
    2010/10/10 23:17:23.0651 mrxsmb (f1b6aa08497ea86ca6ef6f7a08b0bfb8) C:\windows\system32\DRIVERS\mrxsmb.sys
    2010/10/10 23:17:23.0681 mrxsmb10 (5613358b4050f46f5a9832da8050d6e4) C:\windows\system32\DRIVERS\mrxsmb10.sys
    2010/10/10 23:17:23.0705 mrxsmb20 (25c9792778d80feb4c8201e62281bfdf) C:\windows\system32\DRIVERS\mrxsmb20.sys
    2010/10/10 23:17:23.0736 msahci (4326d168944123f38dd3b2d9c37a0b12) C:\windows\system32\DRIVERS\msahci.sys
    2010/10/10 23:17:23.0766 msdsm (455029c7174a2dbb03dba8a0d8bddd9a) C:\windows\system32\DRIVERS\msdsm.sys
    2010/10/10 23:17:23.0812 Msfs (daefb28e3af5a76abcc2c3078c07327f) C:\windows\system32\drivers\Msfs.sys
    2010/10/10 23:17:23.0837 mshidkmdf (3e1e5767043c5af9367f0056295e9f84) C:\windows\System32\drivers\mshidkmdf.sys
    2010/10/10 23:17:23.0859 msisadrv (0a4e5757ae09fa9622e3158cc1aef114) C:\windows\system32\DRIVERS\msisadrv.sys
    2010/10/10 23:17:23.0921 MSKSSRV (8c0860d6366aaffb6c5bb9df9448e631) C:\windows\system32\drivers\MSKSSRV.sys
    2010/10/10 23:17:23.0949 MSPCLOCK (3ea8b949f963562cedbb549eac0c11ce) C:\windows\system32\drivers\MSPCLOCK.sys
    2010/10/10 23:17:23.0972 MSPQM (f456e973590d663b1073e9c463b40932) C:\windows\system32\drivers\MSPQM.sys
    2010/10/10 23:17:24.0034 MsRPC (0e008fc4819d238c51d7c93e7b41e560) C:\windows\system32\drivers\MsRPC.sys
    2010/10/10 23:17:24.0062 mssmbios (fc6b9ff600cc585ea38b12589bd4e246) C:\windows\system32\DRIVERS\mssmbios.sys
    2010/10/10 23:17:24.0092 MSTEE (b42c6b921f61a6e55159b8be6cd54a36) C:\windows\system32\drivers\MSTEE.sys
    2010/10/10 23:17:24.0124 MTConfig (33599130f44e1f34631cea241de8ac84) C:\windows\system32\DRIVERS\MTConfig.sys
    2010/10/10 23:17:24.0170 Mup (159fad02f64e6381758c990f753bcc80) C:\windows\system32\Drivers\mup.sys
    2010/10/10 23:17:24.0222 NativeWifiP (26384429fcd85d83746f63e798ab1480) C:\windows\system32\DRIVERS\nwifi.sys
    2010/10/10 23:17:24.0278 NDIS (23759d175a0a9baaf04d05047bc135a8) C:\windows\system32\drivers\ndis.sys
    2010/10/10 23:17:24.0319 NdisCap (0e1787aa6c9191d3d319e8bafe86f80c) C:\windows\system32\DRIVERS\ndiscap.sys
    2010/10/10 23:17:24.0361 NdisTapi (e4a8aec125a2e43a9e32afeea7c9c888) C:\windows\system32\DRIVERS\ndistapi.sys
    2010/10/10 23:17:24.0404 Ndisuio (b30ae7f2b6d7e343b0df32e6c08fce75) C:\windows\system32\DRIVERS\ndisuio.sys
    2010/10/10 23:17:24.0448 NdisWan (267c415eadcbe53c9ca873dee39cf3a4) C:\windows\system32\DRIVERS\ndiswan.sys
    2010/10/10 23:17:24.0470 NDProxy (af7e7c63dcef3f8772726f86039d6eb4) C:\windows\system32\drivers\NDProxy.sys
    2010/10/10 23:17:24.0492 NetBIOS (80b275b1ce3b0e79909db7b39af74d51) C:\windows\system32\DRIVERS\netbios.sys
    2010/10/10 23:17:24.0526 NetBT (dd52a733bf4ca5af84562a5e2f963b91) C:\windows\system32\DRIVERS\netbt.sys
    2010/10/10 23:17:24.0600 nfrd960 (1d85c4b390b0ee09c7a46b91efb2c097) C:\windows\system32\DRIVERS\nfrd960.sys
    2010/10/10 23:17:24.0634 Npfs (1db262a9f8c087e8153d89bef3d2235f) C:\windows\system32\drivers\Npfs.sys
    2010/10/10 23:17:24.0668 nsiproxy (e9a0a4d07e53d8fea2bb8387a3293c58) C:\windows\system32\drivers\nsiproxy.sys
    2010/10/10 23:17:24.0740 Ntfs (3795dcd21f740ee799fb7223234215af) C:\windows\system32\drivers\Ntfs.sys
    2010/10/10 23:17:24.0785 Null (f9756a98d69098dca8945d62858a812c) C:\windows\system32\drivers\Null.sys
    2010/10/10 23:17:24.0814 nvraid (3f3d04b1d08d43c16ea7963954ec768d) C:\windows\system32\DRIVERS\nvraid.sys
    2010/10/10 23:17:24.0844 nvstor (c99f251a5de63c6f129cf71933aced0f) C:\windows\system32\DRIVERS\nvstor.sys
    2010/10/10 23:17:24.0936 nv_agp (5a0983915f02bae73267cc2a041f717d) C:\windows\system32\DRIVERS\nv_agp.sys
    2010/10/10 23:17:24.0997 ohci1394 (08a70a1f2cdde9bb49b885cb817a66eb) C:\windows\system32\DRIVERS\ohci1394.sys
    2010/10/10 23:17:25.0041 Parport (2ea877ed5dd9713c5ac74e8ea7348d14) C:\windows\system32\DRIVERS\parport.sys
    2010/10/10 23:17:25.0076 partmgr (ff4218952b51de44fe910953a3e686b9) C:\windows\system32\drivers\partmgr.sys
    2010/10/10 23:17:25.0104 Parvdm (eb0a59f29c19b86479d36b35983daadc) C:\windows\system32\DRIVERS\parvdm.sys
    2010/10/10 23:17:25.0141 pci (c858cb77c577780ecc456a892e7e7d0f) C:\windows\system32\DRIVERS\pci.sys
    2010/10/10 23:17:25.0177 pciide (afe86f419014db4e5593f69ffe26ce0a) C:\windows\system32\DRIVERS\pciide.sys
    2010/10/10 23:17:25.0207 pcmcia (f396431b31693e71e8a80687ef523506) C:\windows\system32\DRIVERS\pcmcia.sys
    2010/10/10 23:17:25.0240 pcw (250f6b43d2b613172035c6747aeeb19f) C:\windows\system32\drivers\pcw.sys
    2010/10/10 23:17:25.0295 PEAUTH (9e0104ba49f4e6973749a02bf41344ed) C:\windows\system32\drivers\peauth.sys
    2010/10/10 23:17:25.0404 PptpMiniport (631e3e205ad6d86f2aed6a4a8e69f2db) C:\windows\system32\DRIVERS\raspptp.sys
    2010/10/10 23:17:25.0431 Processor (85b1e3a0c7585bc4aae6899ec6fcf011) C:\windows\system32\DRIVERS\processr.sys
    2010/10/10 23:17:25.0469 Psched (6270ccae2a86de6d146529fe55b3246a) C:\windows\system32\DRIVERS\pacer.sys
    2010/10/10 23:17:25.0519 ql2300 (ab95ecf1f6659a60ddc166d8315b0751) C:\windows\system32\DRIVERS\ql2300.sys
    2010/10/10 23:17:25.0571 ql40xx (b4dd51dd25182244b86737dc51af2270) C:\windows\system32\DRIVERS\ql40xx.sys
    2010/10/10 23:17:25.0604 QWAVEdrv (584078ca1b95ca72df2a27c336f9719d) C:\windows\system32\drivers\qwavedrv.sys
    2010/10/10 23:17:25.0630 RasAcd (30a81b53c766d0133bb86d234e5556ab) C:\windows\system32\DRIVERS\rasacd.sys
    2010/10/10 23:17:25.0707 RasAgileVpn (57ec4aef73660166074d8f7f31c0d4fd) C:\windows\system32\DRIVERS\AgileVpn.sys
    2010/10/10 23:17:25.0736 Rasl2tp (d9f91eafec2815365cbe6d167e4e332a) C:\windows\system32\DRIVERS\rasl2tp.sys
    2010/10/10 23:17:25.0788 RasPppoe (0fe8b15916307a6ac12bfb6a63e45507) C:\windows\system32\DRIVERS\raspppoe.sys
    2010/10/10 23:17:25.0839 RasSstp (44101f495a83ea6401d886e7fd70096b) C:\windows\system32\DRIVERS\rassstp.sys
    2010/10/10 23:17:25.0871 rdbss (835d7e81bf517a3b72384bdcc85e1ce6) C:\windows\system32\DRIVERS\rdbss.sys
    2010/10/10 23:17:25.0929 rdpbus (0d8f05481cb76e70e1da06ee9f0da9df) C:\windows\system32\DRIVERS\rdpbus.sys
    2010/10/10 23:17:25.0958 RDPCDD (1e016846895b15a99f9a176a05029075) C:\windows\system32\DRIVERS\RDPCDD.sys
    2010/10/10 23:17:25.0992 RDPENCDD (5a53ca1598dd4156d44196d200c94b8a) C:\windows\system32\drivers\rdpencdd.sys
    2010/10/10 23:17:26.0018 RDPREFMP (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\windows\system32\drivers\rdprefmp.sys
    2010/10/10 23:17:26.0052 RDPWD (801371ba9782282892d00aadb08ee367) C:\windows\system32\drivers\RDPWD.sys
    2010/10/10 23:17:26.0090 rdyboost (4ea225bf1cf05e158853f30a99ca29a7) C:\windows\system32\drivers\rdyboost.sys
    2010/10/10 23:17:26.0163 rspndr (032b0d36ad92b582d869879f5af5b928) C:\windows\system32\DRIVERS\rspndr.sys
    2010/10/10 23:17:26.0213 RTL8167 (7dfd48e24479b68b258d8770121155a0) C:\windows\system32\DRIVERS\Rt86win7.sys
    2010/10/10 23:17:26.0315 rtport (41ce6b172542a9a227e34a45881e1d2a) C:\windows\system32\drivers\rtport.sys
    2010/10/10 23:17:26.0389 SABI (6e5fbb7cbaec47038b945d5e9b144a64) C:\windows\system32\Drivers\SABI.sys
    2010/10/10 23:17:26.0431 sbp2port (34ee0c44b724e3e4ce2eff29126de5b5) C:\windows\system32\DRIVERS\sbp2port.sys
    2010/10/10 23:17:26.0465 scfilter (a95c54b2ac3cc9c73fcdf9e51a1d6b51) C:\windows\system32\DRIVERS\scfilter.sys
    2010/10/10 23:17:26.0545 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\windows\system32\drivers\secdrv.sys
    2010/10/10 23:17:26.0604 Serenum (9ad8b8b515e3df6acd4212ef465de2d1) C:\windows\system32\DRIVERS\serenum.sys
    2010/10/10 23:17:26.0639 Serial (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\windows\system32\DRIVERS\serial.sys
    2010/10/10 23:17:26.0669 sermouse (79bffb520327ff916a582dfea17aa813) C:\windows\system32\DRIVERS\sermouse.sys
    2010/10/10 23:17:26.0726 sffdisk (9f976e1eb233df46fce808d9dea3eb9c) C:\windows\system32\DRIVERS\sffdisk.sys
    2010/10/10 23:17:26.0746 sffp_mmc (932a68ee27833cfd57c1639d375f2731) C:\windows\system32\DRIVERS\sffp_mmc.sys
    2010/10/10 23:17:26.0770 sffp_sd (4f1e5b0fe7c8050668dbfade8999aefb) C:\windows\system32\DRIVERS\sffp_sd.sys
    2010/10/10 23:17:26.0797 sfloppy (db96666cc8312ebc45032f30b007a547) C:\windows\system32\DRIVERS\sfloppy.sys
    2010/10/10 23:17:26.0866 sisagp (2565cac0dc9fe0371bdce60832582b2e) C:\windows\system32\DRIVERS\sisagp.sys
    2010/10/10 23:17:26.0908 SiSRaid2 (a9f0486851becb6dda1d89d381e71055) C:\windows\system32\DRIVERS\SiSRaid2.sys
    2010/10/10 23:17:26.0938 SiSRaid4 (3727097b55738e2f554972c3be5bc1aa) C:\windows\system32\DRIVERS\sisraid4.sys
    2010/10/10 23:17:26.0989 Smb (3e21c083b8a01cb70ba1f09303010fce) C:\windows\system32\DRIVERS\smb.sys
    2010/10/10 23:17:27.0042 spldr (95cf1ae7527fb70f7816563cbc09d942) C:\windows\system32\drivers\spldr.sys
    2010/10/10 23:17:27.0105 srv (dd0dd124d95390fdffa7fb6283923ed4) C:\windows\system32\DRIVERS\srv.sys
    2010/10/10 23:17:27.0145 srv2 (59ef6d9c690e89d51b0692ccb13a06fc) C:\windows\system32\DRIVERS\srv2.sys
    2010/10/10 23:17:27.0175 srvnet (08f28676802b58138e48a2b40caf6204) C:\windows\system32\DRIVERS\srvnet.sys
    2010/10/10 23:17:27.0253 ssmdrv (a36ee93698802cd899f98bfd553d8185) C:\windows\system32\DRIVERS\ssmdrv.sys
    2010/10/10 23:17:27.0287 stexstor (db32d325c192b801df274bfd12a7e72b) C:\windows\system32\DRIVERS\stexstor.sys
    2010/10/10 23:17:27.0332 swenum (e58c78a848add9610a4db6d214af5224) C:\windows\system32\DRIVERS\swenum.sys
    2010/10/10 23:17:27.0403 SynTP (215a45246c6e2d0a9c263ce1786c8d8a) C:\windows\system32\DRIVERS\SynTP.sys
    2010/10/10 23:17:27.0489 Tcpip (bb7f39c31c4a4417fd318e7cd184e225) C:\windows\system32\drivers\tcpip.sys
    2010/10/10 23:17:27.0545 TCPIP6 (bb7f39c31c4a4417fd318e7cd184e225) C:\windows\system32\DRIVERS\tcpip.sys
    2010/10/10 23:17:27.0603 tcpipreg (e64444523add154f86567c469bc0b17f) C:\windows\system32\drivers\tcpipreg.sys
    2010/10/10 23:17:27.0636 TDPIPE (1875c1490d99e70e449e3afae9fcbadf) C:\windows\system32\drivers\tdpipe.sys
    2010/10/10 23:17:27.0651 TDTCP (7551e91ea999ee9a8e9c331d5a9c31f3) C:\windows\system32\drivers\tdtcp.sys
    2010/10/10 23:17:27.0680 tdx (cb39e896a2a83702d1737bfd402b3542) C:\windows\system32\DRIVERS\tdx.sys
    2010/10/10 23:17:27.0700 TermDD (c36f41ee20e6999dbf4b0425963268a5) C:\windows\system32\DRIVERS\termdd.sys
    2010/10/10 23:17:27.0766 tssecsrv (98ae6fa07d12cb4ec5cf4a9bfa5f4242) C:\windows\system32\DRIVERS\tssecsrv.sys
    2010/10/10 23:17:27.0806 tunnel (3e461d890a97f9d4c168f5fda36e1d00) C:\windows\system32\DRIVERS\tunnel.sys
    2010/10/10 23:17:27.0840 uagp35 (750fbcb269f4d7dd2e420c56b795db6d) C:\windows\system32\DRIVERS\uagp35.sys
    2010/10/10 23:17:27.0903 udfs (eb0a7bd4d471ac3ce55564a4c55b9d8e) C:\windows\system32\DRIVERS\udfs.sys
    2010/10/10 23:17:27.0960 uliagpkx (44e8048ace47befbfdc2e9be4cbc8880) C:\windows\system32\DRIVERS\uliagpkx.sys
    2010/10/10 23:17:28.0031 umbus (049b3a50b3d646baeeee9eec9b0668dc) C:\windows\system32\DRIVERS\umbus.sys
    2010/10/10 23:17:28.0071 UmPass (7550ad0c6998ba1cb4843e920ee0feac) C:\windows\system32\DRIVERS\umpass.sys
    2010/10/10 23:17:28.0164 USBAAPL (4b8a9c16b6d9258ed99c512aecb8c555) C:\windows\system32\Drivers\usbaapl.sys
    2010/10/10 23:17:28.0201 usbccgp (8455c4ed038efd09e99327f9d2d48ffa) C:\windows\system32\DRIVERS\usbccgp.sys
    2010/10/10 23:17:28.0230 usbcir (04ec7cec62ec3b6d9354eee93327fc82) C:\windows\system32\DRIVERS\usbcir.sys
    2010/10/10 23:17:28.0263 usbehci (1c333bfd60f2fed2c7ad5daf533cb742) C:\windows\system32\DRIVERS\usbehci.sys
    2010/10/10 23:17:28.0328 usbhub (ee6ef93ccfa94fae8c6ab298273d8ae2) C:\windows\system32\DRIVERS\usbhub.sys
    2010/10/10 23:17:28.0362 usbohci (a6fb7957ea7afb1165991e54ce934b74) C:\windows\system32\DRIVERS\usbohci.sys
    2010/10/10 23:17:28.0390 usbprint (797d862fe0875e75c7cc4c1ad7b30252) C:\windows\system32\DRIVERS\usbprint.sys
    2010/10/10 23:17:28.0431 USBSTOR (d8889d56e0d27e57ed4591837fe71d27) C:\windows\system32\DRIVERS\USBSTOR.SYS
    2010/10/10 23:17:28.0474 usbuhci (78780c3ebce17405b1ccd07a3a8a7d72) C:\windows\system32\DRIVERS\usbuhci.sys
    2010/10/10 23:17:28.0532 usbvideo (b5f6a992d996282b7fae7048e50af83a) C:\windows\System32\Drivers\usbvideo.sys
    2010/10/10 23:17:28.0617 vdrvroot (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\windows\system32\DRIVERS\vdrvroot.sys
    2010/10/10 23:17:28.0673 vga (17c408214ea61696cec9c66e388b14f3) C:\windows\system32\DRIVERS\vgapnp.sys
    2010/10/10 23:17:28.0711 VgaSave (8e38096ad5c8570a6f1570a61e251561) C:\windows\System32\drivers\vga.sys
    2010/10/10 23:17:28.0742 vhdmp (3be6e1f3a4f1afec8cee0d7883f93583) C:\windows\system32\DRIVERS\vhdmp.sys
    2010/10/10 23:17:28.0766 viaagp (c829317a37b4bea8f39735d4b076e923) C:\windows\system32\DRIVERS\viaagp.sys
    2010/10/10 23:17:28.0788 ViaC7 (e02f079a6aa107f06b16549c6e5c7b74) C:\windows\system32\DRIVERS\viac7.sys
    2010/10/10 23:17:28.0819 viaide (e43574f6a56a0ee11809b48c09e4fd3c) C:\windows\system32\DRIVERS\viaide.sys
    2010/10/10 23:17:28.0853 volmgr (384e5a2aa49934295171e499f86ba6f3) C:\windows\system32\DRIVERS\volmgr.sys
    2010/10/10 23:17:28.0882 volmgrx (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\windows\system32\drivers\volmgrx.sys
    2010/10/10 23:17:28.0917 volsnap (58df9d2481a56edde167e51b334d44fd) C:\windows\system32\DRIVERS\volsnap.sys
    2010/10/10 23:17:28.0962 vsmraid (9dfa0cc2f8855a04816729651175b631) C:\windows\system32\DRIVERS\vsmraid.sys
    2010/10/10 23:17:29.0000 vwifibus (90567b1e658001e79d7c8bbd3dde5aa6) C:\windows\system32\DRIVERS\vwifibus.sys
    2010/10/10 23:17:29.0038 vwififlt (7090d3436eeb4e7da3373090a23448f7) C:\windows\system32\DRIVERS\vwififlt.sys
    2010/10/10 23:17:29.0100 WacomPen (de3721e89c653aa281428c8a69745d90) C:\windows\system32\DRIVERS\wacompen.sys
    2010/10/10 23:17:29.0139 WANARP (692a712062146e96d28ba0b7d75de31b) C:\windows\system32\DRIVERS\wanarp.sys
    2010/10/10 23:17:29.0155 Wanarpv6 (692a712062146e96d28ba0b7d75de31b) C:\windows\system32\DRIVERS\wanarp.sys
    2010/10/10 23:17:29.0270 Wd (1112a9badacb47b7c0bb0392e3158dff) C:\windows\system32\DRIVERS\wd.sys
    2010/10/10 23:17:29.0306 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\windows\system32\drivers\Wdf01000.sys
    2010/10/10 23:17:29.0414 WfpLwf (8b9a943f3b53861f2bfaf6c186168f79) C:\windows\system32\DRIVERS\wfplwf.sys
    2010/10/10 23:17:29.0430 WIMMount (5cf95b35e59e2a38023836fff31be64c) C:\windows\system32\drivers\wimmount.sys
    2010/10/10 23:17:29.0575 WinUsb (30fc6e5448d0cbaaa95280eeef7fedae) C:\windows\system32\DRIVERS\WinUsb.sys
    2010/10/10 23:17:29.0643 WmiAcpi (0217679b8fca58714c3bf2726d2ca84e) C:\windows\system32\DRIVERS\wmiacpi.sys
    2010/10/10 23:17:29.0713 ws2ifsl (6db3276587b853bf886b69528fdb048c) C:\windows\system32\drivers\ws2ifsl.sys
    2010/10/10 23:17:29.0757 WudfPf (6f9b6c0c93232cff47d0f72d6db1d21e) C:\windows\system32\drivers\WudfPf.sys
    2010/10/10 23:17:29.0785 WUDFRd (f91ff1e51fca30b3c3981db7d5924252) C:\windows\system32\DRIVERS\WUDFRd.sys
    2010/10/10 23:17:29.0880 yukonw7 (30b73eb97218a16cbc6de535782a1b35) C:\windows\system32\DRIVERS\yk62x86.sys
    2010/10/10 23:17:30.0082 ================================================================================
    2010/10/10 23:17:30.0082 Scan finished
    2010/10/10 23:17:30.0082 ================================================================================
    0
    1. * Télécharge OTL sur ton bureau.

      * Fais un double-clic sur l'icône d'OTL pour le lancer
      /!\ pour Vista/Seven fais un clic-droit sur l'icône d'OTL et choisis "Exécuter en tant qu'administrateur"

      * Assure toi d'avoir fermé toutes les applications en court de fonctionnement.

      * Quand la fenêtre d'OTL apparaît, assure toi que dans la section "Rapport" (en haut à droite) la case "Rapport minimal" soit cochée.

      * Copies et colles le contenue de cette citation dans la partie inférieure d'OTL "Personnalisation"

      netsvcs
      msconfig
      safebootminimal
      safebootnetwork
      activex
      drivers32
      %ALLUSERSPROFILE%\Application Data\*.
      %ALLUSERSPROFILE%\Application Data\*.exe /s
      %APPDATA%\*.
      %APPDATA%\*.exe /s
      %SYSTEMDRIVE%\*.exe
      %systemroot%\*. /mp /s
      %systemroot%\system32\*.dll /lockedfiles
      %systemroot%\Tasks\*.job /lockedfiles
      %systemroot%\system32\drivers\*.sys /lockedfiles
      %systemroot%\System32\config\*.sav
      CREATERESTOREPOINT


      * Cliques sur l'icône "Analyse" (en haut à gauche) .
      * Laisse le scan aller à son terme sans te servir du PC
      * A la fin du scan un ou deux rapports vont s'ouvrir "OTL.Txt" et ( ou ) "Extras.Txt"( dans certains cas).
      * Héberge le ou les rapports sur le site cijoint.fr, puis copie/colle le ou les liens fournit dans ta prochaine réponse sur le forum

      PS:Tu peux retrouver les rapports dans le dossier C:\OTL ou sur ton bureau en fonction des cas rencontrés

      0
      1. http://www.cijoint.fr/cjlink.php?file=cj201010/cijnvr6IvH.txt
        0
        1. Ton rapport ne montre aucune autre infection.
          On va quand même supprimer les deux lignes.

          relançe OTL , clic droit executer en tant qu'administrateur , Copies et colles le contenue de cette citation (en commençant bien à :OTL , les : inclus devant OTL) dans la partie inférieure d'OTL sous "Personalisation" et cette fois ci clic CORRECTION:

          <gras>:OTL
          O4 - HKLM..\RunOnce: [*bootadslcfg.exe] C:\Users\ben\bootadslcfg.exe ()
          O4 - HKCU..\RunOnce: [*bootadslcfg.exe] C:\Users\ben\bootadslcfg.exe ()

          :commands
          [emptytemp]
          [Reboot]

          Le cerveau a des capacités tellement étonnantes qu'aujourd'hui pratiquement tout le monde en a un.
          0
          1. je comprend pas j'ai pourtant suivi les indications
            j'ai bien copier :
            <gras>:OTL
            O4 - HKLM..\RunOnce: [*bootadslcfg.exe] C:\Users\ben\bootadslcfg.exe ()
            O4 - HKCU..\RunOnce: [*bootadslcfg.exe] C:\Users\ben\bootadslcfg.exe ()

            :commands
            [emptytemp]
            [Reboot]
            puis correction et voici le rapport:
            0
            1. All processes killed
              Error: Unable to interpret <<gras>:OTL > in the current context!
              Error: Unable to interpret <O4 - HKLM..\RunOnce: [*bootadslcfg.exe] C:\Users\ben\bootadslcfg.exe () > in the current context!
              Error: Unable to interpret <O4 - HKCU..\RunOnce: [*bootadslcfg.exe] C:\Users\ben\bootadslcfg.exe () > in the current context!
              ========== COMMANDS ==========

              [EMPTYTEMP]

              User: All Users

              User: ben
              ->Temp folder emptied: 1709069 bytes
              ->Temporary Internet Files folder emptied: 39071156 bytes
              ->Java cache emptied: 0 bytes
              ->Google Chrome cache emptied: 5108849 bytes
              ->Flash cache emptied: 2830932 bytes

              User: Default
              ->Temp folder emptied: 0 bytes
              ->Temporary Internet Files folder emptied: 0 bytes

              User: Default User
              ->Temp folder emptied: 0 bytes
              ->Temporary Internet Files folder emptied: 0 bytes

              User: Public

              %systemdrive% .tmp files removed: 0 bytes
              %systemroot% .tmp files removed: 0 bytes
              %systemroot%\System32 .tmp files removed: 0 bytes
              %systemroot%\System32\drivers .tmp files removed: 0 bytes
              Windows Temp folder emptied: 72512 bytes
              RecycleBin emptied: 0 bytes

              Total Files Cleaned = 47.00 mb

              OTL by OldTimer - Version 3.2.15.0 log created on 10112010_181154

              Files\Folders moved on Reboot...
              File\Folder C:\Users\ben\AppData\Local\Temp\~DF656EAFE19D83A469.TMP not found!
              File\Folder C:\Users\ben\AppData\Local\Temp\~DF77CD8A0AD64963CA.TMP not found!
              File\Folder C:\Users\ben\AppData\Local\Temp\~DF7CCAE884978955C9.TMP not found!
              File\Folder C:\Users\ben\AppData\Local\Temp\~DF81543F89C5A57A0C.TMP not found!
              File\Folder C:\Users\ben\AppData\Local\Temp\~DF95BCD85648EE1173.TMP not found!
              File\Folder C:\Users\ben\AppData\Local\Temp\~DFFDBBCCD8F9FD8DB9.TMP not found!
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\UVNQ821E\ad1[2].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\UVNQ821E\ad1[3].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\UVNQ821E\ad2[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\UVNQ821E\ad2[2].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\UVNQ821E\add[1].htm moved successfully.
              File\Folder C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\UVNQ821E\ads[10].htm not found!
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\UVNQ821E\ads[4].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\UVNQ821E\ads[9].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\UVNQ821E\fan[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\UVNQ821E\gris[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\UVNQ821E\gris[2].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\UVNQ821E\searchTrack[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\UVNQ821E\showbanner[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\UVNQ821E\showbanner[2].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TW2IKYUU\ads[3].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TW2IKYUU\ads[4].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TW2IKYUU\ads[5].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TW2IKYUU\ads[6].htm moved successfully.
              File\Folder C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\IO1V9CAO\adsCA0IB538.htm not found!
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\IO1V9CAO\adsCAX763NU.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\IO1V9CAO\ads[7].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\IO1V9CAO\affich-19430559-antimalware-doctor[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\IO1V9CAO\affich-19430559-antimalware-doctor[2].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\IO1V9CAO\dvdrip[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\IO1V9CAO\login_status[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\IO1V9CAO\searchTrack[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\14V4DIIP\ad1[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\14V4DIIP\ad1[2].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\14V4DIIP\add[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\14V4DIIP\ads[6].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\14V4DIIP\ads[7].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\14V4DIIP\searchTrack[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\14V4DIIP\searchTrack[2].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\14V4DIIP\showbanner[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\MSIMGSIZ.DAT moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SQKAOQAT\Include[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F7JJKUPO\ADSAdClient31[1].txt moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F7JJKUPO\ADSAdClient31[9].txt moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F7JJKUPO\w4_default[1].aspx moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\65K1QI96\01[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\65K1QI96\Sync[1].htm moved successfully.

              Registry entries deleted on Reboot...
              0
              1. Ok.je viens de comprendre mon erreur.Refais le avec ce nouveau script.Post le rapport.

                :OTL
                O4 - HKLM..\RunOnce: [*bootadslcfg.exe] C:\Users\ben\bootadslcfg.exe ()
                O4 - HKCU..\RunOnce: [*bootadslcfg.exe] C:\Users\ben\bootadslcfg.exe ()

                :commands
                [emptytemp]
                [Reboot]
                0
            2. All processes killed
              ========== OTL ==========
              Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\*bootadslcfg.exe not found.
              Invalid CLSID key: *bootadslcfg.exe
              File C:\Users\ben\bootadslcfg.exe not found.
              Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce\\*bootadslcfg.exe not found.
              Invalid CLSID key: *bootadslcfg.exe
              File C:\Users\ben\bootadslcfg.exe not found.
              ========== COMMANDS ==========

              [EMPTYTEMP]

              User: All Users

              User: ben
              ->Temp folder emptied: 1922371 bytes
              ->Temporary Internet Files folder emptied: 26847939 bytes
              ->Java cache emptied: 0 bytes
              ->Google Chrome cache emptied: 0 bytes
              ->Flash cache emptied: 456 bytes

              User: Default
              ->Temp folder emptied: 0 bytes
              ->Temporary Internet Files folder emptied: 0 bytes

              User: Default User
              ->Temp folder emptied: 0 bytes
              ->Temporary Internet Files folder emptied: 0 bytes

              User: Public

              %systemdrive% .tmp files removed: 0 bytes
              %systemroot% .tmp files removed: 0 bytes
              %systemroot%\System32 .tmp files removed: 0 bytes
              %systemroot%\System32\drivers .tmp files removed: 0 bytes
              Windows Temp folder emptied: 69264 bytes
              RecycleBin emptied: 0 bytes

              Total Files Cleaned = 28.00 mb

              OTL by OldTimer - Version 3.2.15.0 log created on 10112010_203203

              Files\Folders moved on Reboot...
              File\Folder C:\Users\ben\AppData\Local\Temp\Low\hsperfdata_ben\4644 not found!
              File\Folder C:\Users\ben\AppData\Local\Temp\~DF527AE4420A0F0472.TMP not found!
              File\Folder C:\Users\ben\AppData\Local\Temp\~DF7B25F74EC529ADC7.TMP not found!
              File\Folder C:\Users\ben\AppData\Local\Temp\~DF7FCAFBCA0EF34507.TMP not found!
              File\Folder C:\Users\ben\AppData\Local\Temp\~DF8255B5D7129A447A.TMP not found!
              File\Folder C:\Users\ben\AppData\Local\Temp\~DF92368E3352362E9A.TMP not found!
              File\Folder C:\Users\ben\AppData\Local\Temp\~DFE199AEE0F2B21AC9.TMP not found!
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\ad1[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\ad1[2].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\ad1[3].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\ad1[4].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\ad1[5].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\ad1[6].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\ad2[2].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\adsCA1ZB5BH.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\adsCA3FJLYK.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\adsCA5YFWP8.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\adsCA91K3LI.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\adsCA9PUORS.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\adsCABBOS1X.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\adsCAC4T0DH.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\adsCAFX06TW.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\adsCAGJF8UY.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\adsCAK5L00E.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\adsCAN7KG3B.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\adsCAO1F0C3.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\affich-19430559-antimalware-doctor[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\searchTrack[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Z0T7PSCM\searchTrack[2].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OO3WC74M\4161-multi-dexter-saison-05-vostfr[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OO3WC74M\ad1[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OO3WC74M\ad1[2].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OO3WC74M\ad1[3].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OO3WC74M\ad1[4].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OO3WC74M\ad1[5].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OO3WC74M\adsCA7NN5JA.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OO3WC74M\adsCAF89TBP.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OO3WC74M\adsCAFINPR7.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OO3WC74M\adsCAJUCLKY.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OO3WC74M\adsCAOF5D7D.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OO3WC74M\adsCAPTLI1X.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OO3WC74M\adsCAVYBGGG.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OO3WC74M\adsCAZ76X1D.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\ad1[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\ad1[2].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\ad1[3].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\ad1[4].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\ad1[5].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\ad1[6].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\ad1[7].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\ad1[8].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\ad1[9].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\ad2[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\ad2[2].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\adsCA374M47.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\adsCABSG42C.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\adsCAG1IN88.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\adsCAK6C2HC.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\adsCAKMXGYQ.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\adsCAKZKM0T.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\adsCATERN2G.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\ad[2].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\color[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\fan[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\gris[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\gris[2].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\searchTrack[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\searchTrack[2].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\showbanner[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\showbanner[2].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3OS3SMG\st[1] moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\ad1[4].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\ad1[5].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\ad1[6].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\ad1[7].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\add[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\add[2].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\adsCA18N3X8.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\adsCAHR0E0S.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\adsCALH0ES0.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\adsCAQXSEIB.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\adsCATQ4451.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\adsCAYUZQJU.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\adsCAZ8BSB8.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\adsCAZV8AX1.htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\fulst[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\google_fr[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\gris[3].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\login_status[4].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\sh24[1].html moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\203QY6GX\showbanner[1].htm moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\MSIMGSIZ.DAT moved successfully.
              C:\Users\ben\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\060W32A8\ADSAdClient31[1].txt moved successfully.

              Registry entries deleted on Reboot...
              0
              1. bonjour ,que dois je faire ? Faut il desinstaller mbr check zhpfix zhpdiag otl ?
                et j'aurai aimé savoir si tout est ok ,merci nanard
                0
                1. Pour finaliser post un nouveau rapport zhpdiag.
                  Désolé pour le temps de réponse mais actuellement surcroit de travail.
                  0
                  1. non pas de souci, merci encore de ton aide nanard, voici le diag

                    http://www.cijoint.fr/cjlink.php?file=cj201010/cijMMtkvOL.txt
                    0
                    1. A faire dans l'ordre.

                      Cette manipulation ne supprime aucun programme mais optimise le démarrage de ton OS.

                      1/ Copie/colle les lignes suivantes et place les dans ZHPFix :
                      2/Lance ZHPFix (soit via le raccourci sur ton Bureau, soit via ZHPDiag)
                      3/Clique sur l'icone représentant la lettre H (« coller les lignes Helper »)

                      ----------------------------------------------------------
                      OPT:O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
                      OPT:O4 - HKLM\..\Run: [UpdateLBPShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe
                      OPT:O4 - HKLM\..\Run: [CLMLServer] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
                      OPT:O4 - HKLM\..\Run: [UpdateP2GoShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe
                      OPT:O4 - HKLM\..\Run: [UpdatePDRShortCut] . (.CyberLink Corp. - StartMen Application.) -- C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe
                      OPT:O4 - HKLM\..\Run: [RemoteControl8] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe
                      OPT:O4 - HKLM\..\Run: [PDVD8LanguageShortcut] . (.CyberLink Corp. - PowerDVD Language Application.) -- C:\Program Files\CyberLink\PowerDVD8\Language\Language.exe
                      OPT:O4 - HKLM\..\Run: [UpdatePPShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe
                      OPT:O4 - HKLM\..\Run: [UpdatePSTShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe
                      OPT:O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\windows\system32\igfxtray.exe
                      OPT:O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\windows\system32\hkcmd.exe
                      OPT:O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\windows\system32\igfxpers.exe
                      OPT:O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
                      OPT:O4 - HKLM\..\Run: [UCam_Menu] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe
                      OPT:O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
                      OPT:O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
                      OPT:O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
                      OPT:O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files\uTorrent\uTorrent.exe
                      OPT:O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
                      OPT:O4 - HKUS\S-1-5-21-1871111397-3539990770-1974983793-1000\..\Run: [uTorrent] . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files\uTorrent\uTorrent.exe
                      OPT:O4 - HKUS\S-1-5-21-1871111397-3539990770-1974983793-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
                      OPT:O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
                      OPT:O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe


                      ----------------------------------------------------------
                      * Clique sur"ok" (Tu dois avoir seulement les lignes copiées sur le forum)
                      * Clique sur « Tous », puis sur « Nettoyer »
                      * Copie/colle la totalité du rapport dans ta prochaine réponse

                      ====================================================
                      Ton pc est maintenant propre.
                      Voici quelques conseils.

                      * Pour naviguer sur internet plus en sécurité et à l'abri des publicités, je te conseille vivement d'installer et d'utiliser le navigateur firefox Une fois que c'est fait, lance le et installe l' extension de sécurité suivantes : adblock plus
                      pour bloquer les publicités ;

                      * WOT - Extension pour ton navigateur internet :
                      Voici une extension à télécharger qui te permettra, en faisant tes recherches sur google, de savoir si le site proposé lors de tes recherches est un site de confiance ou un site à éviter car il pourrait infecter ton PC :
                      Pour Firefox : https://addons.mozilla.org/fr/firefox/addon/wot-safe-browsing-tool/
                      Pour internet explorer : https://chrome.google.com/webstore/detail/wot-web-of-trust-website/bhmmomiinigofkjcapegjjndpbikblnp
                      =========================================================
                      Je conseille de mettre a jour internet explorer même si vous ne l'utilisé jamais. Les MAJ systéme se font par le biais de IE. Par conséquent on évite les failles de sécurité.
                      * Télécharger IE8 : ici
                      =========================================================
                      Java n'est pas à jour, c'est une faille de sécurité.
                      1. Tu dois en premier désinstaller l'ancienne version .
                      2. Ouvre le menu démarrer
                      3. Clic sur panneau de configuration
                      4. Rends toi a ajout/suppression de programmes
                      5. Sélectionne toutes les versions de java présentes et désinstalles les.
                      6. Ensuite, télécharges et installes la nouvelle version de java (n'installes pas la barre d'outil proposée lors de l'installation)
                      =======================================================
                      Adobe Reader n'est pas à jour , c'est une faille de sécurité.
                      Pour vérifier si Adobe Reader est a jour ouvrir le programme et cliquer sur aide===>rechercher les mises a jour
                      Si Adobe Reader trouve une mise a jour vous devez l'installer.
                      =======================================================

                      Pour diminuer les risques, il est conseillé de désactiver l'interprétation du Javascript dans Adobe Reader sur votre ordinateur .Pour cela :

                      * Lancez Adobe Reader
                      * Cliquez sur Edition --> Préférences --> JavaScript
                      * Décochez "Activer Acrobat JavaScript"
                      * Validez
                      ============================================================
                      Tu dois aussi mettre à jour tous tes autres programmes pour combler des failles de sécurité... Vérifie les mises disponibles à l'aide de ce petit programme (choisis la version sans installation) : Update Checker https://www.commentcamarche.net/faq/9908-filehippo-app-manager-vos-logiciels-sont-ils-a-jour
                      Installe le avec les paramètres par défaut en cliquant chaques fois sur Suivant.

                      Une fois installé, patiente quelques secondes et tu verras apparaître une icône verte dans ta barre des tâches te signalant qu'il y a des mises à jour disponibles.

                      Double-cliques sur l'icône pour être redirrigé sur le site de téléchargement des mises à jour.

                      * Un conseil : n'installe pas les BETA
                      ====================================================

                      Pour éliminer les programmes de desinfections.

                      * Télécharge ToolsCleaner de A.Roshtein sur ton Bureau.(sur un des 2 liens)
                      http://pc-system.fr/
                      * Clique sur Recherche et laisse le scan se terminer.
                      * Clique, sur Suppression pour finaliser.
                      * Tu peux, si tu le souhaites, te servir des Options facultatives.
                      * Clique sur Quitter, pour que le rapport puisse se créer.
                      * Poste moi le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur( C:\).
                      =======================================================.
                      Désactiver/Réactiver la restauration système de Vista ou7
                      * Après une désinfection, il est nécessaire de désactiver puis réactiver la restauration système pour la purger car les points de restauration peuvent être infectés.
                      * Cliquez sur le bouton Vista, faîtes un clic droit sur "Ordinateur" puis cliquez sur "Propriétés" .
                      * Cliquez ensuite sur "Protection du système" .
                      * Décochez la case du ou des disque(s) pour lesquels vous souhaitez désactiver la restauration du système .
                      * Une confirmation est nécessaire et vous informe que les points de restaurations existants vont être supprimés sans possibilité de retour en arrière .
                      * Pour réactiver la restauration système, il suffit de cocher à nouveau les cases.
                      * Pensé a vider la corbeille.
                      ============================================================
                      Tu peux mettre ton problème en résolu !!https://www.commentcamarche.net/infos/25917-forum-ccm-mode-d-emploi-marquer-mon-sujet-comme-resolu/
                      Le cerveau a des capacités tellement étonnantes qu'aujourd'hui pratiquement tout le monde en a un.
                      0
                      1. BONJOUR nanard , j'ai pas fini , il me faut une nouvelle version de java , je l'ai desinstallé mais je n'ai pas de lien..
                        voici le rapport :
                        Rapport de ZHPFix 1.12.3206 par Nicolas Coolman, Update du 04/10/2010
                        Fichier d'export Registre :
                        Run by ben at 10/13/2010 12:11:21 PM
                        Web site : http://www.premiumorange.com/zeb-help-process/zhpfix.html
                        Contact : nicolascoolman@yahoo.fr

                        ========== Valeur(s) du Registre ==========
                        O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe => Valeur supprimée avec succès
                        O4 - HKLM\..\Run: [UpdateLBPShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe => Valeur supprimée avec succès
                        O4 - HKLM\..\Run: [CLMLServer] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe => Valeur supprimée avec succès
                        O4 - HKLM\..\Run: [UpdateP2GoShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe => Valeur supprimée avec succès
                        O4 - HKLM\..\Run: [UpdatePDRShortCut] . (.CyberLink Corp. - StartMen Application.) -- C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe => Valeur supprimée avec succès
                        O4 - HKLM\..\Run: [RemoteControl8] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe => Valeur supprimée avec succès
                        O4 - HKLM\..\Run: [PDVD8LanguageShortcut] . (.CyberLink Corp. - PowerDVD Language Application.) -- C:\Program Files\CyberLink\PowerDVD8\Language\Language.exe => Valeur supprimée avec succès
                        O4 - HKLM\..\Run: [UpdatePPShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe => Valeur supprimée avec succès
                        O4 - HKLM\..\Run: [UpdatePSTShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe => Valeur supprimée avec succès
                        O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\windows\system32\igfxtray.exe => Valeur supprimée avec succès
                        O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\windows\system32\hkcmd.exe => Valeur supprimée avec succès
                        O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\windows\system32\igfxpers.exe => Valeur supprimée avec succès
                        O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe => Valeur supprimée avec succès
                        O4 - HKLM\..\Run: [UCam_Menu] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe => Valeur supprimée avec succès
                        O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe => Valeur supprimée avec succès
                        O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe => Valeur supprimée avec succès
                        O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe => Valeur supprimée avec succès
                        O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files\uTorrent\uTorrent.exe => Valeur supprimée avec succès
                        O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe => Valeur supprimée avec succès
                        O4 - HKUS\S-1-5-21-1871111397-3539990770-1974983793-1000\..\Run: [uTorrent] . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files\uTorrent\uTorrent.exe => Valeur absente
                        O4 - HKUS\S-1-5-21-1871111397-3539990770-1974983793-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe => Valeur absente
                        O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe => Valeur supprimée avec succès
                        O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe => Valeur supprimée avec succès

                        ========== Récapitulatif ==========
                        23 : Valeur(s) du Registre

                        End of the scan

                        en revanche lorsque j'ouvre ZHPFix ,on dirait qu'il reste un ancien rapport:
                        http://www.cijoint.fr/cjlink.php?file=cj201010/cijYFGahfs.txt avec pour choix "ok" en bas a gauche.....si je fais "ok", j'ai le choix entre tous,aucun ou nettoyer , que doi-je faire ?
                        0
                        1. Tu fais aucun et tu fermes zhpfix

                          Ensuite, télécharges et installes la nouvelle version de https://www.java.com/fr/download/ (n'installes pas la barre d'outil proposée lors de l'installation)
                          0
                      2. ok alors c'est bon pour adblock plus , wott , java , adobe je crois que c bon pour IE8 ,en revanche je n'ai pas de rapport toolscleaner a la racine de c, pourtant j'ai suivi tes indications ...
                        Je voulais aussi te dire que lorsque je telecharge un prg sur mozilla , la fenetre qui me demande si je veux l'executer oule telecharger est en anglais , comment faire pour l'avoir en francais ?
                        Ensuite pour desactiver la restauration , dans protection du systeme , je ne peux pas desactiver le disque local c systeme (pas de case a cocher), comment je fais ?
                        0
                        1. Pour la restau sous seven voici un petit tuto
                          http://www.forum-seven.com/forum/

                          Pour ton soucis sous mozilla je n'est hélas aucune réponses a te donner
                          0
                      3. c bon j'ai supprimé tous les points de restauration ,mais comment puis je en créer un nouveau ?
                        En revanche ,il y a deux semaines lors de l'achat , j'ai du partitionner le disc en deux de meme taille , sur quel disc dois je faire un point de restauration et comment ?

                        sans savoir comment, j'ai de nouveau un icone mcafee sur le bureau !

                        il est donc impossible de mettre mozilla en francais ! je comprend pas bien l'anglais ....
                        0
                        1. ok merci beaucoup nanard ,jai remis wot et adblock plus sur mozilla

                          doi je faire la sauvegarde complete que samsung me propose des que j'allume le pc ?
                          Quelle est la difference entre cette sauvegarde et un point de restauration stp ?
                          dans "c" j'ai 20 fichier ki porte ce nom ZHPRegY20.zhp , dois je les effacer ?
                          J'ai relancer un update checker et il me propose deja des nouvelles version :pour flash player , google chrome et mozilla ( mais j'ai peur que la mise a jour de mozilla soit en francais !!! )
                          lancer update une fois par mois serait ce suffisant ?
                          Sur le bureau j'ai toujours les raccourcis mbr check,otl,zhpfix,zhpdiag,macafee et quelques un de leur rapport ;et dans "programmes" j'ai zhpdiag et macafee ,,,, que dois je faire ?
                          0
                          1. Pour supprimer les restes des outils utilisé peut tu essayer ce programme.?
                            http://sd-1.archive-host.com/membres/up/17959594961240255/DelFix.exe
                            Lance DelFix et sélectionne l'option [Suppression]
                            Relance Ensuite DelFix et sélectionne l'option [Désinstallation]

                            Pour mozilla si tu as téléchargé la derniere version il n'est pas utile de le télécharger a nouveau .
                            Pour google chrome la derniere version est 6.0.472.63
                            Pour flash player chrome la derniere version est https://www.clubic.com/telecharger-fiche21292-flash-player-1.html

                            doi je faire la sauvegarde complete que samsung me propose des que j'allume le pc ?
                            Quelle est la difference entre cette sauvegarde et un point de restauration stp ?
                            Oui fais le .Si j'ai bien compris cette sauvegarde te serviras au cas ou un probléme serieux interviendrais sur ton pc et de ce faite tu pourras a l'aide de ces disques de restauration réinstaller windows a l'etat d'origine.(C'est a dire sans tes photos et documents si tu ne les a pas sauvegardé sur un second Disque dur).Conclusion .Je t'encourage a graver cette sauvegarde;) Pour certains pc il faut jusqu'à 4 cd donc soit prévoyant.Penses a mettre tes cd dans un emplacement facile a se souvenir. Ex tiroir de bureau.

                            La Restauration du système vous aide à restaurer les fichiers système de votre ordinateur à un point antérieur dans le temps. Cela permet d'annuler les modifications du système sans affecter vos fichiers personnels, tels que les messages électroniques, les documents ou les photos.

                            Parfois, l'installation d'un programme ou d'un pilote entraîne des modifications inattendues sur votre ordinateur ou un comportement imprévisible de Windows. Généralement, la désinstallation du programme ou du pilote corrige le problème. Si ce n'est pas le cas, vous pouvez essayer de restaurer le système à une date antérieure à laquelle tout fonctionnait correctement.
                            0
                        2. 2 questions pour finir :

                          delfix m'a supprimé zhpdiag dans "c" puis tout ce qui etait sur le bureau, et j'ai desinstallé macafee . IL reste toujours les 20 fichiers ZHPRegY20.zhp dans "c" , je peux les supprimer ?

                          il est donc pas necessaire d'acheter un antivirus, antivir me protegera autant, non ?

                          Serait je plus avisé ? En tout cas MERCI pour tes conseils, et surtout pour ton temps .
                          0
                          1. ah si ! j'oubliai .... comment importer les favoris que j'ai sur google chrome vers mozilla avant de desinstaller google chrome (j'ai pu le faire mais uniquement de ie8 vers mozilla)
                            0
                            1. comment importer les favoris que j'ai sur google chrome vers mozilla

                              http://www.sauvegarde-donnees.com/2010/02/sauvegarder-favoris-google-chrome.html

                              les 20 fichiers ZHPRegY20.zhp dans "c"
                              Tu peux virer les fichiers a la mano.clic droit et supprimer.

                              Antivir gratuit te protégera aussi bien qu'un antivirus payant.Les seules différences entre les deux sont les options plus au moins intéressantes.

                              https://www.avira.com/fr

                              Je t'inclus ce lien afin que tu puisses te faire une opinion personnel et voir l'intéret de payer un antivirus par rapport a ta navigation sur le net.
                              Perso j'ai antivir gratuit et jamais d'infection.(je touche du bois :))

                              Bonne journée.
                              0
                              Précédent
                              • 1
                              • 2
                              • 3