Redirectioin de google

Résolu
Mélissa -  
Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   -
Bonjour,
Il y a quelques temps , mon ordinateur à attrapé un virus , j'ai réussi à l'éliminer grâce à Malwarebytes anti-Malware. Mais depuis , chaque fois que je fais une recherche sur google ,on me redirige vers des sites inutiles et malvaillants . Que dois -je faire ? J'ai utilisé alwarebytes anti-Malware , mais il ne détecte rien ...

Merci pour votre aide

11 réponses

  1. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    Salut,

    Passe un coup de TDSSKiller : https://forum.malekal.com/viewtopic.php?t=28637&start=
    Poste le rapport ici.

    puis :

    Tu peux suivre les indications de cette page pour t'aider : https://www.malekal.com/tutorial-otl/

    * Télécharge http://www.geekstogo.com/forum/files/file/398-otl-oldtimers-list-it/ sur ton bureau.
    (Sous Vista/Win7, il faut cliquer droit sur OTL et choisir Exécuter en tant qu'administrateur)

    * Lance OTL
    * Sous Peronnalisation, copie-colle ce qu'il y a dans le cadre ci-dessous :
    netsvcs
    msconfig
    safebootminimal
    safebootnetwork
    activex
    drivers32
    %ALLUSERSPROFILE\%Application Data\*.
    %ALLUSERSPROFILE%\Application Data\*.exe /s
    %APPDATA%\*.
    %APPDATA%\*.exe /s
    %temp%\.exe /s
    %SYSTEMDRIVE%\*.exe
    %systemroot%\*. /mp /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job /lockedfiles
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\System32\config\*.sav
    /md5start
    explorer.exe
    winlogon.exe
    wininit.exe
    /md5stop
    CREATERESTOREPOINT
    nslookup www.google.fr /c

    * Clique sur le bouton Analyse.
    * Quand le scan est fini, utilise le site http://pjjoint.malekal.com/ pour envoyer les rapports.
    Donnes le liens pjjoint ici ensuite pour pouvoir être consultés.
    0
  2. Mélissa
     
    J'ai fait la première étape , mais pour la deuxième , quand j'essayer d'ouvrir le fichier C:\Windows\System32\C_20871E.dll ,
    virus total me répond

    C_20871E.dll
    Vous n'avez pas l'autorisation d'ouvrir ce fichier
    Consulter le propriétaire du fichier ou un administrateur pour obtenir cette autorisation

    Pourtant , je suis dans la session administrateur .
    0
  3. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  4. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    hummm

    Télécharge GMER à partir de ce lien : http://www.gmer.net#files - clic sur « Download EXE » et télécharge le fichier sur ton bureau.
    Voir le tutorial GMER, ça peut peut-être t'aider : https://www.malekal.com/tutorial-gmer/

    Désactive tes logiciels de protection (antivirus, antispyware etc) et ferme tous les programmes ouverts.
    Double-clic sur le fichier GMER téléchargé.
    Clic sur l'onglet files
    navigue dans les dossiers pour trouver C:\Windows\System32\C_20871E.dll
    sélectionne le puis à droite Copy.
    Vas sur ton bureau, nomme le plouf.dll
    et envoie plouf.dll sur https://www.virustotal.com/gui/

    donne le lien de scan ici.
    0
  5. Mélissa
     
    Désolé , j'ai fait ce que vous m'avez dit mais on me répond pas la suite

    plouf.dll
    Fichier introuvable
    Vérifier le nom du fichier et réessayer .

    Même si Gmer m'avait dit '' it has been saved successufully ''

    Désolé
    0
  6. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    Sauvegarde tes documents importants.

    Désactive les logiciels de protection (Antivirus, Antispywares) puis :

    Télécharge Combofix sUBs : http://download.bleepingcomputer.com/sUBs/ComboFix.exe et sauvegarde le sur ton bureau et pas ailleurs!

    Double-clic sur combofix, accepte la licence d'utilisation et laisse toi guider.

    Eventuellement, installe la console de récupération comme cela est conseillé

    Attends que combofix ait terminé, un rapport sera créé. Poste le rapport.
    Si le rapport ne passe pas, envoie le sur ce site : http://pjjoint.malekal.com/
    et donne le lien ici :)

    Tu as le tutorial sur ce lien pour t'aider : https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix

    PS : si Combofix ne se lance pas, renomme le fichier Combofix et retente.

    Si pas mieux, tente en mode sans échec sans prise en charge du réseau : Redémarre en mode sans échec, pour cela, redémarre l'ordinateur, avant le logo Windows, tapote sur la touche F8, un menu va apparaître, choisis Mode sans échec et appuye sur la touche entrée du clavier.
    0
  7. Mélissa
     
    Autrefois , j'avais McAfee Anti-Virus , que j'ai désinstaller . Quand j'utilise ComboFix , on me dit

    Combofix has detected the following real time scanners to be active

    Antivirus: McAfee Anti-Virus et Anti Spyware
    Antispyware : McAfee Antivirus et Anti-spyware

    si vous continuer , cela pourrait cause des dommages a votre ordinateur

    Alors ,j'ai essayer MCPR.exe : https://service.mcafee.com/webcenter/portal/cp/home/articleview?articleId=TS100507
    Et malgré tout , le message de Combofix reste le même ...

    Est-ce que je continue les étapes suivante malgré cette avertissement ?
    0
    1. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
       
      oui continue :)
      0
  8. Mélissa
     
    D'accords , alors voila le rapport : ) :

    ComboFix 11-03-05.01 - Administrator 05/03/2011 15:24:15.1.2 - x86
    Microsoft Windows 7 Édition Intégrale 6.1.7600.0.1252.2.1033.18.2814.1958 [GMT -5:00]
    Running from: c:\users\Administrator.user-PC\Desktop\ComboFix.exe
    AV: McAfee AntiVirus et AntiSpyware *Enabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637}
    FW: McAfee Firewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C}
    SP: McAfee AntiVirus et AntiSpyware *Enabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}
    SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    .
    .
    ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    c:\users\Administrator.user-PC\AppData\Roaming\completescan_pal
    c:\users\Administrator.user-PC\AppData\Roaming\install_pal
    c:\users\Administrator.user-PC\AppData\Roaming\uid_pal
    c:\windows\3fb680fe-6b4e-43bc-aa56-f398c3caf31b.ocx
    c:\windows\system32\0810be8f-b2fd-4cfc-bbc2-e45e10a7568b.dll
    c:\windows\system32\1551694079
    .
    .
    ((((((((((((((((((((((((( Files Created from 2011-02-05 to 2011-03-05 )))))))))))))))))))))))))))))))
    .
    .
    2011-03-05 20:52 . 2011-03-05 20:52 -------- d-----w- c:\users\TEMP\AppData\Local\temp
    2011-03-05 20:52 . 2011-03-05 20:52 -------- d-----w- c:\users\TEMP.user-PC\AppData\Local\temp
    2011-03-05 20:52 . 2011-03-05 20:52 -------- d-----w- c:\users\TEMP.user-PC.003\AppData\Local\temp
    2011-03-05 20:52 . 2011-03-05 20:52 -------- d-----w- c:\users\TEMP.user-PC.002\AppData\Local\temp
    2011-03-05 20:52 . 2011-03-05 20:52 -------- d-----w- c:\users\TEMP.user-PC.001\AppData\Local\temp
    2011-03-05 20:52 . 2011-03-05 20:52 -------- d-----w- c:\users\TEMP.user-PC.000\AppData\Local\temp
    2011-03-05 20:52 . 2011-03-05 20:52 -------- d-----w- c:\users\Default\AppData\Local\temp
    2011-03-05 20:52 . 2011-03-05 20:52 -------- d-----w- c:\users\ADMINI~1~USE\AppData\Local\temp
    2011-03-05 20:52 . 2011-03-05 20:52 -------- d-----w- c:\users\User.user-PC\AppData\Local\temp
    2011-03-05 00:58 . 2011-03-05 00:58 0 ----a-w- c:\windows\system32\ConduitEngine.tmp
    2011-03-05 00:57 . 2011-03-05 18:28 -------- d-----w- c:\users\Administrator.user-PC\AppData\Local\Conduit
    2011-03-04 22:29 . 2011-03-04 22:29 -------- d-----w- c:\users\Administrator.user-PC\dwhelper
    2011-02-27 20:36 . 2011-03-05 00:57 -------- d-----w- c:\programdata\Yahoo! Companion
    2011-02-27 20:36 . 2011-02-27 20:53 -------- d-----w- c:\users\Administrator.user-PC\AppData\Roaming\Yahoo!
    2011-02-27 20:22 . 2011-02-27 20:53 -------- d-----w- c:\users\Administrator.user-PC\AppData\Local\Yahoo
    2011-02-27 20:15 . 2011-02-27 20:36 -------- d-----w- c:\programdata\Yahoo!
    2011-02-27 20:12 . 2011-02-27 20:36 -------- d-----w- c:\program files\Yahoo!
    2011-02-23 18:22 . 2011-02-23 18:31 -------- d-----w- c:\users\Administrator.user-PC\AppData\Roaming\SecondLife
    2011-02-23 18:22 . 2011-02-23 20:06 -------- d-----w- c:\users\Administrator.user-PC\AppData\Local\SecondLife
    2011-02-23 18:21 . 2011-02-23 18:32 -------- d-----w- c:\program files\SecondLifeViewer2
    2011-02-23 17:05 . 2011-02-23 17:05 -------- d-----w- c:\program files\Common Files\Skype
    2011-02-23 04:58 . 2010-09-14 06:07 276992 ----a-w- c:\windows\system32\wcncsvc.dll
    2011-02-22 23:12 . 2011-01-07 07:31 442880 ----a-w- c:\windows\system32\XpsPrint.dll
    2011-02-22 23:12 . 2011-01-07 07:31 288256 ----a-w- c:\windows\system32\XpsGdiConverter.dll
    2011-02-20 19:20 . 2011-02-20 19:20 -------- d-----w- c:\users\Administrator.user-PC\AppData\Roaming\Vivox
    2011-02-20 19:01 . 2011-03-05 06:49 -------- d-----w- c:\users\Administrator.user-PC\AppData\Roaming\IMVU
    2011-02-19 20:29 . 2011-02-19 20:29 -------- d-----w- c:\users\User.user-PC\AppData\Roaming\HP
    2011-02-19 17:01 . 2011-02-19 17:01 84621672 ----a-w- c:\program files\Common Files\Windows Live\.cache\wlc8F56.tmp
    2011-02-19 16:44 . 2011-02-19 16:44 -------- d-----w- c:\program files\Microsoft SQL Server Compact Edition
    2011-02-19 16:43 . 2011-02-19 16:43 -------- d-----w- c:\program files\Windows Live SkyDrive
    2011-02-19 16:43 . 2011-02-19 17:05 -------- d-----w- c:\program files\Windows Live
    2011-02-19 16:42 . 2011-02-19 16:42 -------- d-----w- c:\windows\PCHEALTH
    2011-02-19 16:42 . 2008-06-17 21:13 484632 ----a-w- c:\program files\Common Files\Windows Live\.cache\f99ea1091cbd053\DXSETUP.exe
    2011-02-19 16:42 . 2008-06-17 21:13 1670936 ----a-w- c:\program files\Common Files\Windows Live\.cache\f99ea1091cbd053\dsetup32.dll
    2011-02-19 16:42 . 2008-06-17 21:13 74520 ----a-w- c:\program files\Common Files\Windows Live\.cache\f99ea1091cbd053\DSETUP.dll
    2011-02-19 16:41 . 2011-02-19 16:41 144349512 ----a-w- c:\program files\Common Files\Windows Live\.cache\wlc714.tmp
    2011-02-14 02:00 . 2011-02-14 02:00 7168 ----a-w- c:\windows\system32\drivers\uti1odk2.sys
    2011-02-13 16:02 . 2011-03-05 18:52 -------- d-----w- c:\program files\Emsisoft Anti-Malware
    2011-02-12 22:15 . 2011-02-12 22:15 38856 ----a-w- c:\windows\system32\drivers\HookCentre.sys
    2011-02-09 23:46 . 2011-01-05 03:37 2329088 ----a-w- c:\windows\system32\win32k.sys
    2011-02-09 23:46 . 2010-12-18 05:29 541184 ----a-w- c:\windows\system32\kerberos.dll
    2011-02-09 23:44 . 2010-12-21 05:38 204288 ----a-w- c:\windows\system32\upnp.dll
    2011-02-09 23:44 . 2010-12-21 05:36 1389568 ----a-w- c:\windows\system32\msxml6.dll
    2011-02-09 23:44 . 2010-12-21 05:38 981504 ----a-w- c:\windows\system32\wininet.dll
    2011-02-09 23:44 . 2010-12-21 05:36 1236992 ----a-w- c:\windows\system32\msxml3.dll
    2011-02-09 23:44 . 2010-12-21 05:38 51200 ----a-w- c:\windows\system32\wscapi.dll
    2011-02-09 23:44 . 2010-12-21 05:38 350720 ----a-w- c:\windows\system32\winhttp.dll
    2011-02-09 23:44 . 2010-12-21 05:38 204800 ----a-w- c:\windows\system32\WebClnt.dll
    2011-02-09 23:44 . 2010-12-21 05:34 80384 ----a-w- c:\windows\system32\davclnt.dll
    2011-02-09 23:44 . 2010-12-21 05:38 73728 ----a-w- c:\windows\system32\wscsvc.dll
    2011-02-09 23:44 . 2010-12-21 05:38 14336 ----a-w- c:\windows\system32\slwga.dll
    2011-02-09 23:44 . 2011-02-03 05:45 219008 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
    2011-02-06 17:18 . 2011-02-06 17:32 -------- d-----w- c:\users\Administrator.user-PC\Calibre Library
    2011-02-06 17:18 . 2011-02-06 17:21 -------- d-----w- c:\users\Administrator.user-PC\AppData\Roaming\calibre
    2011-02-06 17:15 . 2011-02-06 17:18 -------- d-----w- c:\program files\Calibre2
    2011-02-06 17:09 . 2011-02-13 16:58 -------- d-----w- c:\program files\FanFictionDownloader
    2011-02-05 23:46 . 2011-02-05 23:46 -------- d-----w- c:\program files\Convar
    .
    .
    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2011-02-12 22:23 . 2010-04-02 04:08 29992 ----a-w- c:\windows\system32\drivers\GRD.sys
    2011-02-12 22:15 . 2010-04-02 03:20 61512 ----a-w- c:\windows\system32\drivers\MiniIcpt.sys
    2011-02-12 22:15 . 2010-04-02 03:19 33480 ----a-w- c:\windows\system32\drivers\GDBehave.sys
    2011-02-12 22:15 . 2010-04-02 03:19 40904 ----a-w- c:\windows\system32\drivers\gdwfpcd32.sys
    2011-01-02 06:25 . 2010-01-27 00:48 737072 ----a-w- c:\programdata\Microsoft\eHome\Packages\SportsV2\SportsTemplateCore\Microsoft.MediaCenter.Sports.UI.dll
    2011-01-02 06:25 . 2010-01-27 00:48 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll
    2011-01-02 06:25 . 2010-01-27 00:48 573760 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
    2010-12-31 05:34 . 2010-01-29 14:11 737072 ----a-w- c:\programdata\Microsoft\eHome\Packages\SportsV2\SportsTemplateCore-2\Microsoft.MediaCenter.Sports.UI.dll
    2010-12-31 05:34 . 2010-02-21 14:27 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll
    2010-12-31 05:33 . 2010-02-21 14:27 573760 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
    2010-12-26 03:18 . 2010-12-26 03:18 444952 ----a-w- c:\windows\system32\wrap_oal.dll
    2010-12-26 03:18 . 2010-12-26 03:18 109080 ----a-w- c:\windows\system32\OpenAL32.dll
    2010-12-20 23:09 . 2011-01-26 22:37 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
    2010-12-20 23:08 . 2011-01-26 22:37 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
    2010-12-12 18:32 . 2010-11-27 23:30 737072 ----a-w- c:\programdata\Microsoft\eHome\Packages\SportsV2\SportsTemplateCore-3\Microsoft.MediaCenter.Sports.UI.dll
    .
    .
    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* empty entries & legit default entries are not shown
    REGEDIT4
    .
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-01-26 39408]
    "msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2010-04-17 3872080]
    "Messenger (Yahoo!)"="c:\progra~1\Yahoo!\MESSEN~1\YahooMessenger.exe" [2010-06-01 5252408]
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "ArcSoft Connection Service"="c:\program files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe" [2010-10-28 207424]
    "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-01-11 246504]
    "HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2007-05-08 54840]
    "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-09-23 35760]
    "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-09-21 932288]
    "mylbx"="c:\program files\My Lockbox\mylbx.exe" [2010-11-23 1789152]
    "TkBellExe"="c:\program files\Real\RealPlayer\update\realsched.exe" [2010-11-06 274608]
    "AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-03-06 500208]
    "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-11-29 421888]
    "G Data AntiVirus Tray Application"="c:\program files\G Data\AntiVirus\AVKTray\AVKTray.exe" [2010-04-16 964680]
    .
    c:\users\User.user-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
    OpenOffice.org 3.2.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2010-5-20 1195008]
    .
    c:\users\Administrator.user-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
    OpenOffice.org 3.2.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2010-5-20 1195008]
    .
    c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
    HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2008-10-16 214360]
    Philips GoGear OPUS Device Manager.lnk - c:\program files\Philips\GoGear OPUS Device Manager\GoGear_OPUS_DeviceManager.exe [2010-1-31 1484160]
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
    "EnableUIADesktopToggle"= 0 (0x0)
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
    "aux3"=wdmaud.drv
    .
    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
    SetupExecute REG_MULTI_SZ \0
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
    @=""
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\security center]
    "AntiVirusDisableNotify"=""
    "AntiVirusOverride"=""
    "FirewallDisableNotify"=""
    "FirewallOverride"=""
    "UpdatesDisableNotify"=""
    .
    R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
    R2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-01-29 135664]
    R3 uti1odk2;AVZ Kernel Driver;c:\windows\system32\Drivers\uti1odk2.sys [2011-02-14 7168]
    R3 vtcdrv;GoGear Recovery Mode;c:\windows\system32\DRIVERS\vtcdrv_x86.sys [2009-03-19 18944]
    R3 WatAdminSvc;Service Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2010-02-25 1343400]
    S0 FSProFilter;FSPro File Filter;c:\windows\System32\Drivers\FSPFltd.sys [2010-07-22 41912]
    S0 GDBehave;GDBehave;c:\windows\system32\drivers\GDBehave.sys [2011-02-12 33480]
    S1 a2injectiondriver;a2injectiondriver;c:\program files\Emsisoft Anti-Malware\a2dix86.sys [2010-09-05 41928]
    S1 a2util;a-squared Malware-IDS utility driver;c:\program files\Emsisoft Anti-Malware\a2util32.sys [2010-05-05 11776]
    S1 GDMnIcpt;GDMnIcpt;c:\windows\system32\drivers\MiniIcpt.sys [2011-02-12 61512]
    S1 gdwfpcd;G DATA WFP CD;c:\windows\system32\drivers\gdwfpcd32.sys [2011-02-12 40904]
    S1 GRD;G Data Rootkit Detector Driver;c:\windows\system32\drivers\GRD.sys [2011-02-12 29992]
    S2 a2AntiMalware;Emsisoft Anti-Malware 5.0 - Service;c:\program files\Emsisoft Anti-Malware\a2service.exe [2011-02-24 2855440]
    S2 Akamai;Akamai NetSession Interface;c:\windows\System32\svchost.exe [2009-07-14 20992]
    S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-08-18 176128]
    S2 AVKProxy;G Data AntiVirus Proxy;c:\program files\Common Files\G DATA\AVKProxy\AVKProxy.exe [2010-04-16 1070664]
    S2 AVKService;Planificateur G Data;c:\program files\G Data\AntiVirus\AVK\AVKService.exe [2010-04-16 410696]
    S2 AVKWCtl;G Data Gardien;c:\program files\G Data\AntiVirus\AVK\AVKWCtl.exe [2010-03-15 1279816]
    S2 cfWiMAXService;ConfigFree WiMAX Service;c:\program files\TOSHIBA\ConfigFree\CFIWmxSvcs.exe [2009-08-10 185712]
    S2 ConfigFree Service;ConfigFree Service;c:\program files\TOSHIBA\ConfigFree\CFSvcs.exe [2009-03-10 46448]
    S2 fsproflt;FSPro Filter Service;c:\windows\system32\fsproflt.exe [2010-01-06 142648]
    S3 a2acc;a2acc;c:\program files\EMSISOFT ANTI-MALWARE\a2accx86.sys [2011-02-24 73728]
    S3 FwLnk;FwLnk Driver;c:\windows\system32\DRIVERS\FwLnk.sys [2006-11-20 7168]
    S3 GDScan;G Data Scanner;c:\program files\Common Files\G DATA\GDScan\GDScan.exe [2010-04-22 339016]
    S3 HookCentre;HookCentre;c:\windows\system32\drivers\HookCentre.sys [2011-02-12 38856]
    S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-07-13 139776]
    S3 RTL8187B;Realtek RTL8187B Wireless 802.11b/g 54Mbps USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\RTL8187B.sys [2009-07-13 347136]
    .
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
    HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
    hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
    Akamai REG_MULTI_SZ Akamai
    .
    Contents of the 'Scheduled Tasks' folder
    .
    2011-03-05 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
    - c:\program files\Google\Update\GoogleUpdate.exe [2010-01-29 06:10]
    .
    2011-03-05 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
    - c:\program files\Google\Update\GoogleUpdate.exe [2010-01-29 06:10]
    .
    .
    ------- Supplementary Scan -------
    .
    uStart Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2790392
    IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html
    IE: {{d9288080-1baa-4bc4-9cf8-a92d743db949} - c:\users\Administrator.user-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IMVU\Run IMVU.lnk
    DPF: {21BB8360-F943-447E-98F3-3C22345375A7} - hxxp://games.bigfishgames.com/en_chocolatier/online/ChocolatierWeb.1.0.0.13.cab
    DPF: {2D168880-539F-4967-BA11-F7C2862B9E1D} - hxxp://games.bigfishgames.com/en_diaper-dash/online/DiaperDashWeb.1.0.0.4.cab
    FF - ProfilePath - c:\users\Administrator.user-PC\AppData\Roaming\Mozilla\Firefox\Profiles\v1pps5vv.default\
    FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2790392&SearchSource=3&q={searchTerms}
    FF - prefs.js: browser.search.selectedEngine - Google
    FF - prefs.js: browser.startup.homepage - hxxp://fr.start3.mozilla.com/firefox?client=firefox-a&rls=org.mozilla:fr:official
    FF - prefs.js: keyword.URL - hxxp://ca.search.yahoo.com/search?fr=mcafee&p=
    FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
    FF - Ext: G Data Filtre Internet: {9AA46F4F-4DC7-4c06-97AF-5035170633FE} - c:\program files\Mozilla Firefox\extensions\{9AA46F4F-4DC7-4c06-97AF-5035170633FE}
    FF - Ext: Java Console: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}
    FF - Ext: RealPlayer Browser Record Plugin: {ABDE892B-13A8-4d1b-88E6-365A6E755758} - c:\programdata\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
    FF - Ext: Read It Later: isreaditlater@ideashower.com - %profile%\extensions\isreaditlater@ideashower.com
    FF - Ext: DownloadHelper: {b9db16a4-6edc-47ec-a1f4-b86292ed211d} - %profile%\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
    FF - Ext: FoxTab: {ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a} - %profile%\extensions\{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}
    FF - user.js: yahoo.ytff.general.dontshowhpoffer - true
    .
    - - - - ORPHANS REMOVED - - - -
    .
    URLSearchHooks-{88c7f2aa-f93f-432c-8f0e-b7d85967a527} - (no file)
    URLSearchHooks-{90b49673-5506-483e-b92b-ca0265bd9ca8} - (no file)
    WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
    WebBrowser-{90B49673-5506-483E-B92B-CA0265BD9CA8} - (no file)
    HKCU-Run-AdobeBridge - (no file)
    HKU-Default-RunOnce-FlashPlayerUpdate - c:\windows\system32\Macromed\Flash\FlashUtil10d.exe
    AddRemove-Diner Dash 2 - c:\progra~1\PLAYFI~1\DINERD~1\UNWISE.EXE
    AddRemove-Uninstall_is1 - c:\program files\Common Files\DVDVideoSoft\unins000.exe
    .
    .
    .
    --------------------- LOCKED REGISTRY KEYS ---------------------
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Internet Explorer\User Preferences]
    @Denied: (2) (Administrator)
    "88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
    d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,3b,1b,33,b4,7d,a5,29,4c,a6,4b,24,\
    "2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
    d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,3b,1b,33,b4,7d,a5,29,4c,a6,4b,24,\
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.3g2\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.3G2"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.3gp\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.3GP"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.3gp2\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.3G2"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.3gpp\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.3GP"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.AAC\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.ADTS"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ADT\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.ADTS"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ADTS\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.ADTS"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.aif\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.AIFF"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.aifc\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.AIFF"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.aiff\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.AIFF"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.asf\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.ASF"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.asx\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.ASX"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.au\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.AU"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.avi\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.AVI"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cda\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.CDA"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.com_19b5aff4dd61604ceaf396c8eac85474\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="Applications\\wmplayer.exe"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.flv\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="Applications\\RealPlay.exe"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="FirefoxHTML"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="FirefoxHTML"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpg\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="jpegfile"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m1v\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.MPEG"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m2t\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.M2TS"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m2ts\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.M2TS"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m2v\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.MPEG"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m3u\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.m3u"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m4a\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.M4A"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m4v\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.MP4"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mid\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.MIDI"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.midi\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.MIDI"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mod\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.MPEG"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mov\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.MOV"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mp2\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.MP3"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mp2v\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.MPEG"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mp3\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.MP3"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mp4\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.MP4"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mp4v\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.MP4"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpa\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.MPEG"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpe\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.MPEG"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpeg\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.MPEG"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpg\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.MPEG"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpv2\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.MPEG"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mts\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.M2TS"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rmi\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.MIDI"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shtml\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="FirefoxHTML"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.snd\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.AU"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ts\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.TTS"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tts\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.TTS"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wav\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.WAV"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wax\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.WAX"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wm\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.ASF"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wma\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.WMA"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmd\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.WMD"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wms\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.WMS"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmv\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.WMV"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmx\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.ASX"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmz\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.WMZ"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wpl\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.WPL"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wvx\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="WMP11.AssocFile.WVX"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xht\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="FirefoxHTML"
    .
    [HKEY_USERS\S-1-5-21-54470482-2648385325-2859485855-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xhtml\UserChoice]
    @Denied: (2) (Administrator)
    "Progid"="FirefoxHTML"
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
    @Denied: (A) (Users)
    @Denied: (A) (Everyone)
    @Allowed: (B 1 2 3 4 5) (S-1-5-20)
    "BlindDial"=dword:00000000
    "MSCurrentCountry"=dword:000000b5
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
    @Denied: (Full) (Everyone)
    .
    Completion time: 2011-03-05 16:00:32
    ComboFix-quarantined-files.txt 2011-03-05 21:00
    .
    Pre-Run: 113,698,668,544 octets libres
    Post-Run: 118,039,777,280 octets libres
    .
    - - End Of File - - 656175A58ADDF301F8C5512E32AB83A1
    0
    1. Mélissa
       
      Je n'est plus le problème de redirection quand je fais une recherche sur google , est-ce que c'est réglé pour de bon ?
      0
  9. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    Ben les rapports sont OK en tout cas.
    Télécharge ce fichier : https://www.sfr.fr/fermeture-des-pages-perso.html
    Clic en bas à droite sur "envoyer la quarantaine de Combofix".

    0
    1. Mélissa
       
      Je l'est fait .
      0
  10. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    Fais plus attention à l'avenir....

    Maintiens tes logiciel à jour c'est important, utilise ce programme : /faq/13362-mettre-a-jour-son-pc-contre-les-failles-de-securite
    Absolument à faire.

    Les antivirus ne font pas tout en ce qui concerne la sécurité de ta machine (mettre à jour ses logiciels etc etc)
    La meilleur protection reste de connaître les infections pour pouvoir les éviter et avoir de bonne habitude.
    Donc faut se documenter.

    Un peu de lecture pour éviter les infections :
    - connaitre et éviter les infections : https://www.malekal.com/fichiers/projetantimalwares/ProjetAntiMalware-courte.pdf
    - sécuriser son PC : http://forum.malekal.com/comment-securiser-son-ordinateur.html
    - lire : http://www.commentcamarche.net/faq/27128-malwares-quels-enjeux-version-synthese

    Ce qu'il ne faut pas faire :
    Je télécharge n'importe quoi - je m'infecte :
    https://forums.commentcamarche.net/forum/affich-19719198-onglets-pub-intempestifs#14
    https://forums.commentcamarche.net/forum/affich-18347759-le-nouveau-avast-sonne-trop-souvent#9
    Je télécharge depuis n'importe où - je m'infecte : https://forums.commentcamarche.net/forum/affich-19916973-clickpotato-vlc-virus#6
    Recommandations sur la sécurité : https://forums.commentcamarche.net/forum/affich-18680013-windows-7-et-antispyware#1

    Fonctionnement de quelques catégories de malwares :
    https://forums.commentcamarche.net/forum/affich-17725521-virus-programme-troyen
    https://forums.commentcamarche.net/forum/affich-17746390-concernant-la-propagation-des-virus

    Si tu as des questions sur le fonctionement des malwares.
    N'hésite pas.
    0
    1. Mélissa
       
      Merci beaucoup pour votre aide , c'est très apprécie .Et je vais tout de suite commencé a lire les liens c -dessus . :)
      0
    2. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
       
      bonne fin de WE :)
      0