PC lent et page de pub porno
g3n-h@ckm@n -
mon PC devient de plus en plus lent et des pages de pub porno apparaissent régulièrement !
j'ai l'impression que mon antivirus [Avira] fonctionne mal et que les scans ne servent pas à grand chose
J'ai également un pare-feux [Oneline Armor free] qui posent trop souvent, à mon gout, des questions auxquelles je ne sais que très rarement quoi répondre !
J'espère que quelqu'un aura pitié de ma situation et de mes ignorances dans ce domaine :)
Merci d'avance
34 réponses
- 1
- 2
Un PC lent et une propagation fréquente de publicités pornographiques, avec des doutes sur l’efficacité d’Avira et du pare-feu Oneline Armor Free, sous Windows 7 et Firefox 15.0.1, sont discutés. Des conseils privilégient la détection et la suppression des malwares : installer et lancer un examen complet avec Malwarebytes, puis exécuter ADWCleaner et analyser les rapports de suppression pour nettoyer les objets infectés. D'autres recommandations précisent de fermer toutes les applications pendant l’installation et l’analyse, maintenir les protections à jour et, si nécessaire, redémarrer le système pour finaliser le nettoyage. En parallèle, des échanges signalent des outils et liens douteux et soulignent l’importance de privilégier des sources fiables et à jour pour éviter les scripts malveillants et les infections répétées.
-
salut
▶ Téléchargez UsbFix (créé par El Desaparecido) sur votre Bureau.
▶ Si votre antivirus affiche une alerte, ignorez-la et désactivez l'antivirus temporairement.
▶ Branchez toutes vos sources de données externes à votre PC (clé USB, disque dur externe, etc...) sans les ouvrir.
▶ Double cliquez sur UsbFix.exe.
▶ Cliquez sur Suppression.
▶ Laissez travailler l'outil.
▶ À la fin du scan, un rapport va s'afficher, postez-le dans votre prochaine réponse sur le forum.
▶ Le rapport est aussi sauvegardé à la racine du disque système ( C:\UsbFix.txt ).
▶ Tutoriel vidéo
=============
Attention !!! : cet outil peut etre détecté à tort comme virus
Attention !!! : cet outil est puissant suivre scrupuleusement les instructions ci-dessous
tous les processus "non vitaux de windows" vont être coupés , enregistre ton travail.
Désactive toutes tes protections si possible , antivirus , sandbox , pare-feux , etc....
telecharge et enregistre Pre_Scan sur ton bureau :
https://forums-fec.be/gen-hackman/Pre_Scan.exe
si le lien ne fonctionne pas :
http://general-changelog-team.fr/fr/downloads/viewdownload/41-outils-de-gen-hackman/52-pre-scan
http://www.archive-host.com
Avertissement :Il y aura une extinction du bureau pendant le scan --> pas de panique.
une fois telechargé lance-le , laisse faire le scan jusqu'à l'apparition de "Pre_scan_la_date_et_l'heure.txt" sur le bureau.
si l'outil est relancé plusieurs fois , il te proposera un menu et qu'aucune option n'est demandée, lance l'option "Kill"
si l'outil est bloqué par l'infection utilise cette version avec extension .pif :
https://forums-fec.be/gen-hackman/Pre_Scan.pif
si l'outil detecte un proxy et que tu n'en as pas installé clique sur "supprimer le proxy"
Il se peut qu'une multitude de fenêtres noires clignotent , laisse-le travailler
Poste Pre_Scan_la_date_et_l'heure.txt qui apparaitra sur le bureau en fin de scan
Il est possible que l'outil fasse redemarrer ton pc , laisse-le faire
NE LE POSTE PAS SUR LE FORUM !!! (il est trop long)
Heberge le rapport sur http://pjjoint.malekal.com puis donne le lien obtenu en echange sur le forum où tu te fais aider
-
Tout d'abord merci !
Ensuite voilà le résultat suite à usbfix. Dois-je télécharger et faire le pre scan de suite ? merci d'avance
############################## | UsbFix V 7.097 | [Suppression]
Utilisateur: Bibi (Administrateur) # BIBI-PC
Mis à jour le 02/09/2012 par El Desaparecido
Lancé à 13:47:58 | 07/10/2012
Site Web: https://www.sosvirus.net/
Forum: http://forum.eldesaparecido.com
Fichier suspect ? : http://eldesaparecido.com/upload.php
Contact: contact@eldesaparecido.com
PC: Packard Bell (EasyNote LM94 ) (x64-based PC
CPU: AMD Athlon(tm) II P340 Dual-Core Processor (2200)
RAM -> [Total : 2814 | Free : 1613]
BIOS: Default System BIOS
BOOT: Normal boot
OS: Microsoft Windows 7 Édition Familiale Premium (6.1.7601 64-Bit) # Service Pack 1
WB: Windows Internet Explorer 8.0.7601.17514
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AV: Avira Desktop [(!) Disabled | Updated]
FW: Windows FireWall Service [Enabled]
C:\ (%systemdrive%) -> Disque fixe # 453 Go (365 Go libre(s) - 81%) [Packard Bell] # NTFS
D:\ -> CD-ROM
################## | Processus Actif |
C:\Windows\system32\csrss.exe (400)
C:\Windows\system32\wininit.exe (468)
C:\Windows\system32\csrss.exe (504)
C:\Windows\system32\services.exe (532)
C:\Windows\system32\lsass.exe (552)
C:\Windows\system32\lsm.exe (560)
C:\Windows\system32\winlogon.exe (596)
C:\Windows\system32\svchost.exe (712)
C:\Windows\system32\svchost.exe (800)
C:\Windows\system32\atiesrxx.exe (856)
C:\Windows\System32\svchost.exe (924)
C:\Windows\System32\svchost.exe (972)
C:\Windows\system32\svchost.exe (1012)
C:\Windows\system32\svchost.exe (660)
C:\Windows\system32\atieclxx.exe (1052)
C:\Windows\system32\svchost.exe (1120)
C:\Program Files (x86)\Online Armor\OAcat.exe (1216)
C:\Program Files (x86)\Online Armor\oasrv.exe (1372)
C:\Windows\system32\Dwm.exe (1464)
C:\Windows\Explorer.EXE (1496)
C:\Windows\System32\spoolsv.exe (1680)
C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (1712)
C:\Windows\system32\taskhost.exe (1720)
C:\Windows\system32\svchost.exe (1796)
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (1864)
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (1884)
C:\Windows\PLFSetI.exe (2024)
C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe (320)
C:\Program Files (x86)\Online Armor\oaui.exe (1248)
C:\Program Files\Microsoft IntelliPoint\ipoint.exe (1296)
c:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe (1232)
C:\Program Files (x86)\SFR\Kit\9props.exe (540)
C:\Program Files (x86)\Online Armor\OAhlp.exe (1528)
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (1776)
C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (1432)
C:\Program Files (x86)\Launch Manager\dsiwmis.exe (1648)
C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe (2064)
C:\Windows\system32\svchost.exe (2096)
C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe (2120)
c:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (2152)
C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe (2256)
C:\Program Files\Microsoft IntelliPoint\dpupdchk.exe (2428)
C:\Users\Bibi\AppData\Roaming\cacaoweb\cacaoweb.exe (2544)
C:\Windows\system32\svchost.exe (2596)
C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe (2924)
C:\Windows\System32\svchost.exe (2956)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (2980)
C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe (3000)
C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe (3024)
C:\Program Files (x86)\Google\Gmail Notifier\gnotify.exe (3036)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (2340)
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (2888)
C:\Program Files (x86)\Boxore\BoxoreClient\boxore.exe (2792)
C:\Windows\system32\wbem\unsecapp.exe (3636)
C:\Windows\system32\wbem\wmiprvse.exe (3720)
C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe (3832)
C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (3956)
C:\Windows\system32\conhost.exe (3980)
C:\Windows\System32\alg.exe (4056)
C:\Windows\system32\SearchIndexer.exe (2996)
C:\Windows\system32\svchost.exe (1364)
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (4248)
C:\Program Files\Windows Media Player\wmpnetwk.exe (4276)
C:\Windows\System32\svchost.exe (4568)
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (4888)
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (5088)
C:\Windows\system32\DllHost.exe (3968)
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (4688)
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (5112)
C:\Windows\System32\svchost.exe (4356)
C:\Program Files (x86)\Mozilla Firefox\firefox.exe (908)
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe (5552)
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_265.exe (5188)
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_265.exe (5484)
C:\UsbFix\Go.exe (5612)
C:\Windows\system32\wbem\wmiprvse.exe (3984)
################## | Processus Stoppés |
Stoppé! C:\Windows\system32\atiesrxx.exe (856)
Stoppé! C:\Windows\system32\atieclxx.exe (1052)
Stoppé! C:\Program Files (x86)\Online Armor\OAcat.exe (1216)
Stoppé! C:\Program Files (x86)\Online Armor\oasrv.exe (1372)
Stoppé! C:\Windows\System32\spoolsv.exe (1680)
Stoppé! C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (1712)
Stoppé! C:\Windows\system32\taskhost.exe (1720)
Stoppé! C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (1864)
Stoppé! C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (1884)
Stoppé! C:\Windows\PLFSetI.exe (2024)
Stoppé! C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe (320)
Stoppé! C:\Program Files (x86)\Online Armor\oaui.exe (1248)
Stoppé! C:\Program Files\Microsoft IntelliPoint\ipoint.exe (1296)
Stoppé! c:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe (1232)
Stoppé! C:\Program Files (x86)\SFR\Kit\9props.exe (540)
Stoppé! C:\Program Files (x86)\Online Armor\OAhlp.exe (1528)
Stoppé! C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (1776)
Stoppé! C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (1432)
Stoppé! C:\Program Files (x86)\Launch Manager\dsiwmis.exe (1648)
Stoppé! C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe (2064)
Stoppé! C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe (2120)
Stoppé! c:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (2152)
Stoppé! C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe (2256)
Stoppé! C:\Program Files\Microsoft IntelliPoint\dpupdchk.exe (2428)
Stoppé! C:\Users\Bibi\AppData\Roaming\cacaoweb\cacaoweb.exe (2544)
Stoppé! C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe (2924)
Stoppé! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (2980)
Stoppé! C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe (3000)
Stoppé! C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe (3024)
Stoppé! C:\Program Files (x86)\Google\Gmail Notifier\gnotify.exe (3036)
Stoppé! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (2340)
Stoppé! C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (2888)
Stoppé! C:\Program Files (x86)\Boxore\BoxoreClient\boxore.exe (2792)
Stoppé! C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe (3832)
Stoppé! C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (3956)
Stoppé! C:\Windows\system32\conhost.exe (3980)
Stoppé! C:\Windows\System32\alg.exe (4056)
Stoppé! C:\Windows\system32\SearchIndexer.exe (2996)
Stoppé! C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (4248)
Stoppé! C:\Program Files\Windows Media Player\wmpnetwk.exe (4276)
Stoppé! C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (4888)
Stoppé! C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (5088)
Stoppé! C:\Windows\system32\DllHost.exe (3968)
Stoppé! C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (4688)
Stoppé! C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (5112)
Stoppé! C:\Program Files (x86)\Mozilla Firefox\firefox.exe (908)
Stoppé! C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe (5552)
Stoppé! C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_265.exe (5188)
Stoppé! C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_265.exe (5484)
################## | Éléments infectieux |
Supprimé! C:\Users\Bibi\AppData\Local\Temp\ose00000.exe
Supprimé! C:\$RECYCLE.BIN\S-1-5-18
Supprimé! C:\$RECYCLE.BIN\S-1-5-20
Supprimé! C:\$RECYCLE.BIN\S-1-5-21-1476285222-4071249212-3345334627-1001
Supprimé! C:\$RECYCLE.BIN\S-1-5-21-1476285222-4071249212-3345334627-500
(!) Fichiers temporaires supprimés.
################## | Registre |
################## | Mountpoints2 |
################## | Listing |
[07/10/2012 - 13:58:54 | SHD ] C:\$Recycle.Bin
[14/07/2009 - 03:38:58 | RASH | 383562] C:\bootmgr
[27/07/2009 - 22:40:53 | N | 8192] C:\BOOTSECT.BAK
[05/05/2011 - 22:57:09 | N | 675] C:\DelFixSuppr.txt
[14/07/2009 - 07:08:56 | SHD ] C:\Documents and Settings
[14/11/2010 - 19:36:54 | DC ] C:\elements
[07/10/2012 - 13:04:54 | ASH | 2213154816] C:\hiberfil.sys
[09/03/2012 - 23:02:26 | RHD ] C:\MSOCache
[14/11/2010 - 19:36:10 | D ] C:\oem
[07/10/2012 - 13:04:57 | ASH | 2950873088] C:\pagefile.sys
[22/07/2010 - 08:43:04 | N | 1031] C:\Patch.rev
[14/07/2009 - 05:20:08 | D ] C:\PerfLogs
[14/11/2010 - 19:35:45 | N | 221] C:\Preload.rev
[12/09/2012 - 22:09:36 | D ] C:\Program Files
[14/09/2012 - 19:05:00 | D ] C:\Program Files (x86)
[14/09/2012 - 19:05:00 | HD ] C:\ProgramData
[05/05/2011 - 22:55:08 | N | 43070] C:\PureRa.txt
[14/11/2010 - 19:35:30 | SHD ] C:\Recovery
[05/10/2012 - 20:40:54 | SHD ] C:\System Volume Information
[07/10/2012 - 13:58:54 | D ] C:\UsbFix
[07/10/2012 - 13:48:17 | A | 10153] C:\UsbFix.txt
[14/11/2010 - 19:35:38 | D ] C:\Users
[31/08/2012 - 23:36:02 | D ] C:\Windows
################## | Vaccin |
C:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
################## | Upload |
Veuillez envoyer le fichier: C:\UsbFix_Upload_Me_BIBI-PC.zip
http://eldesaparecido.com/upload.php
Merci de votre contribution.
################## | E.O.F | -
-
C'est en cours. Est ce normal que cela soit si l'on ?
-
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question -
-
oki.
Ça y est il a fini et a redémarré !
Mais par contre je ne trouve pas de fichier "Pre_scan_la_date_et_l'heure.txt" sur mon bureau mon bureau ni dans recherche...
que dois-je faire ?
Merci d'avance -
-
bon j'ai actualisé plusieurs fois et j'ai même relancé le pre scan mais toujours pas de fichier...
Que dois -je faire ? -
-
j'espère que c'est le bon ...
-
-
oups... désolée...
-
mouais bon antivir pas desactivé.....bref..
relance l'outil , clique sur diag et heberge le rapport
-
je pensais l'avoir désactivé... en même temps j'ai prévenu que je n'étais pas douée...
voilà le lien :
https://pjjoint.malekal.com/files.php?id=20121007_u6b6i15q7b15
merci -
-
j'ai le droit d'aller faire un tour de vélo pendant 50 mn ?
je ne suis pas un robot
j'étudie ca
-
Télécharge et enregistre ADWcleaner sur ton bureau :
ADWCleaner (Merci à Xplode)
Lance le,
(Pour vista et seven => clic droit "executer en tant qu'administrateur")
clique sur suppression et poste son rapport.
-
# AdwCleaner v2.004 - Rapport créé le 07/10/2012 à 18:51:57
# Mis à jour le 06/10/2012 par Xplode
# Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits)
# Nom d'utilisateur : Bibi - BIBI-PC
# Mode de démarrage : Normal
# Exécuté depuis : C:\Users\Bibi\Desktop\AdwCleaner.exe
# Option [Suppression]
***** [Services] *****
Arrêté & Supprimé : supdate
***** [Fichiers / Dossiers] *****
Dossier Supprimé : C:\Program Files (x86)\Boxore
Dossier Supprimé : C:\Users\Bibi\AppData\Local\Software
Dossier Supprimé : C:\Users\Bibi\AppData\Roaming\cacaoweb
Dossier Supprimé : C:\Users\Bibi\AppData\Roaming\Mozilla\Firefox\Profiles\pgonqst9.default\extensions\cacaoweb@cacaoweb.org
Dossier Supprimé : C:\Users\Bibi\AppData\Roaming\pdfforge
Fichier Supprimé : C:\Windows\Tasks\SoftwareUpdateTaskMachineCore.job
Fichier Supprimé : C:\Windows\Tasks\SoftwareUpdateTaskMachineUA.job
***** [Registre] *****
Clé Supprimée : HKCU\Software\Ask.com.tmp
Clé Supprimée : HKCU\Software\cacaoweb
Clé Supprimée : HKCU\Software\Softonic
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\Software\Boxore
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{32451DFC-C23B-4E12-866C-FC7982238504}
Clé Supprimée : HKLM\SOFTWARE\Classes\Installer\Features\64A6E60055D801F4BB8AC269354B72B8
Clé Supprimée : HKLM\SOFTWARE\Classes\Installer\Products\64A6E60055D801F4BB8AC269354B72B8
Clé Supprimée : HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\1C875DDE39636004CA8CDAEC335B4160
Clé Supprimée : HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\BA086F2D38A8E1A47912955A68B3AD24
Clé Supprimée : HKLM\SOFTWARE\Classes\MIME\Database\Content Type\application/x-vnd.software.oneclickctrl.8
Clé Supprimée : HKLM\SOFTWARE\Classes\Software.OneClickCtrl.8
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreClass
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreClass.1
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachine
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachine.1.0
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Installer
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{42AEFAF9-09D6-4185-87AE-DEDF6E955CB4}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7555B87D-D711-48B2-B97D-04DF700652BA}
Clé Supprimée : HKLM\SOFTWARE\MozillaPlugins\@www.dlmanager.net/omaha/tools//Software Update;version=8
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{092A2C6B-43EE-4F9F-8F8E-14ED5E11C14B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{257A6158-1416-4B31-9BF8-29FF49F3814F}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{32451DFC-C23B-4E12-866C-FC7982238504}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{42AEFAF9-09D6-4185-87AE-DEDF6E955CB4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{7555B87D-D711-48B2-B97D-04DF700652BA}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AC5C4189-A8A0-4C9D-8910-C9CEF8360077}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{736EF78E-5A04-46F9-893E-EDEC6EA5DF45}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7A1BCE27-099C-4628-B63A-AEC00C6376B3}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{AF3AFF7C-B9E9-48DD-9002-212B6DEAAC02}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DBE82879-914A-422F-BAE9-2ECC80BE536F}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E12D7149-73EF-45E4-A1E9-99FD7DAE62D3}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F2B184F1-547C-4EE9-BFC4-AC489C7077D9}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fjglfdldpdljgfjkfgieaocdapejkdlh
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\jeaihkehdlhkocphopopahkfjcfcphef
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{42AEFAF9-09D6-4185-87AE-DEDF6E955CB4}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7555B87D-D711-48B2-B97D-04DF700652BA}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{006E6A46-8D55-4F10-BBA8-2C9653B4278B}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EF8FC2FA-BE02-444B-8355-08C75A6D7E3A}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Installer
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\1C875DDE39636004CA8CDAEC335B4160
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\BA086F2D38A8E1A47912955A68B3AD24
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Boxore Client]
***** [Navigateurs] *****
-\\ Internet Explorer v8.0.7601.17514
[OK] Le registre ne contient aucune entrée illégitime.
-\\ Mozilla Firefox v15.0.1 (fr)
Nom du profil : default
Fichier : C:\Users\Bibi\AppData\Roaming\Mozilla\Firefox\Profiles\pgonqst9.default\prefs.js
C:\Users\Bibi\AppData\Roaming\Mozilla\Firefox\Profiles\pgonqst9.default\user.js ... Supprimé !
[OK] Le fichier ne contient aucune entrée illégitime.
*************************
AdwCleaner[S1].txt - [5843 octets] - [07/10/2012 18:51:57]
########## EOF - C:\AdwCleaner[S1].txt - [5903 octets] ########## -
-
- 1
- 2