Pc qui rame

Résolu
Bonjour,

mon pc rame je ne sait pas pourquoi
c'est un packard bell Easynote TK
il a eut 1 an fin juillet
qui peut m'aider?

36 réponses

Résumé de la discussion

Un ralentissement sur un Packard Bell Easynote TK âgé d'environ un an provoque des demandes d'aide et des discussions sur les causes possibles et les mesures à prendre. Plusieurs intervenants suggèrent des scans et des nettoyages, mais les propositions varient, allant d'instructions détaillées pour des outils douteux à des solutions plus conventionnelles comme des nettoyeurs anti-malware, certains précisant les risques. Des mentions évoquent des rapports à partager et des liens externes, ainsi que des avertissements concernant des outils potentiellement dangereux ou mal interprétés, conduisant à des conseils divergents et absence de consensus. En cas de suite, une recommandation générale viserait à diagnostiquer le système et à vérifier les composants matériels et logiciels installés sans outils non vérifiés.

Bobot (l’IA à votre service)
  1. salut

    Télécharge et enregistre ADWcleaner sur ton bureau :

    ADWCleaner (Merci à Xplode)

    Lance le,

    (Pour vista et seven => clic droit "executer en tant qu'administrateur")

    clique sur suppression et poste son rapport.

    0
    1. re
      voici le rapport :
      # AdwCleaner v2.005 - Rapport créé le 23/10/2012 à 12:46:35
      # Mis à jour le 14/10/2012 par Xplode
      # Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits)
      # Nom d'utilisateur : sandrine - SANDRINE-PC
      # Mode de démarrage : Normal
      # Exécuté depuis : C:\Users\sandrine\Downloads\adwcleaner.exe
      # Option [Suppression]

      ***** [Services] *****

      ***** [Fichiers / Dossiers] *****

      Dossier Supprimé : C:\Program Files (x86)\Conduit
      Dossier Supprimé : C:\Program Files (x86)\Mozilla Firefox\Extensions\ffxtlbr@babylon.com
      Dossier Supprimé : C:\Program Files (x86)\Object
      Dossier Supprimé : C:\Program Files (x86)\Software
      Dossier Supprimé : C:\ProgramData\boost_interprocess
      Dossier Supprimé : C:\ProgramData\InstallMate
      Dossier Supprimé : C:\ProgramData\Premium
      Dossier Supprimé : C:\ProgramData\Software
      Dossier Supprimé : C:\ProgramData\Tarma Installer
      Dossier Supprimé : C:\ProgramData\Trymedia
      Dossier Supprimé : C:\Users\sandrine\AppData\Local\Conduit
      Dossier Supprimé : C:\Users\sandrine\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp
      Dossier Supprimé : C:\Users\sandrine\AppData\Local\Software
      Dossier Supprimé : C:\Users\sandrine\AppData\Local\Wajam
      Dossier Supprimé : C:\Users\sandrine\AppData\LocalLow\BabylonToolbar
      Dossier Supprimé : C:\Users\sandrine\AppData\LocalLow\Conduit
      Dossier Supprimé : C:\Users\sandrine\AppData\LocalLow\PriceGong
      Dossier Supprimé : C:\Users\sandrine\AppData\LocalLow\searchquband
      Dossier Supprimé : C:\Users\sandrine\AppData\LocalLow\Toolbar4
      Dossier Supprimé : C:\Users\sandrine\AppData\Roaming\Babylon
      Dossier Supprimé : C:\Users\sandrine\AppData\Roaming\Media Finder
      Dossier Supprimé : C:\Users\sandrine\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\gencrawler@some.com
      Dossier Supprimé : C:\Users\sandrine\AppData\Roaming\OfferBox
      Fichier Supprimé : C:\Windows\SysWOW64\conduitEngine.tmp
      Fichier Supprimé : C:\Windows\Tasks\OfferBoxUpdate.job

      ***** [Registre] *****

      Clé Supprimée : HKCU\Software\AppDataLow\Software\Conduit
      Clé Supprimée : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
      Clé Supprimée : HKCU\Software\AppDataLow\Software\Crossrider
      Clé Supprimée : HKCU\Software\AppDataLow\Software\PriceGong
      Clé Supprimée : HKCU\Software\AppDataLow\Software\searchqutoolbar
      Clé Supprimée : HKCU\Software\Conduit
      Clé Supprimée : HKCU\Software\DataMngr
      Clé Supprimée : HKCU\Software\Iminent
      Clé Supprimée : HKCU\Software\MediaFinder
      Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\MenuExt\Download with &Media Finder
      Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
      Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}
      Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC}
      Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}
      Clé Supprimée : HKCU\Software\Offerbox
      Clé Supprimée : HKCU\Software\PCTuto
      Clé Supprimée : HKCU\Software\Softonic
      Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0D7562AE-8EF6-416D-A838-AB665251703A}
      Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
      Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
      Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33524C00-63FB-43DB-A6BF-0A4E14B24649}
      Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
      Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
      Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2426}
      Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
      Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
      Clé Supprimée : HKLM\Software\Babylon
      Clé Supprimée : HKLM\Software\Boxore
      Clé Supprimée : HKLM\Software\BrowserMngr
      Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{4CE516A7-F7AC-4628-B411-8F886DC5733E}
      Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46DF-B041-1E593282C7D0}
      Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
      Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
      Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
      Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}
      Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
      Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\TbCommonUtils.DLL
      Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\TbHelper.EXE
      Clé Supprimée : HKLM\SOFTWARE\Classes\Conduit.Engine
      Clé Supprimée : HKLM\SOFTWARE\Classes\MF
      Clé Supprimée : HKLM\SOFTWARE\Classes\sim-packages
      Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar.CT2504091
      Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar.CT2549680
      Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar.CT2851639
      Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
      Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{4509D3CC-B642-4745-B030-645B79522C6D}
      Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{4D3B167E-5FD8-4276-8FD7-9DF19C1E4D19}
      Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
      Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{B87F8B63-7274-43FD-87FA-09D3B7496148}
      Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{C4BAE205-5E02-4E32-876E-F34B4E2D000C}
      Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
      Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{EC4085F2-8DB3-45A6-AD0B-CA289F3C5D7E}
      Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}
      Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}
      Clé Supprimée : HKLM\Software\Conduit
      Clé Supprimée : HKLM\Software\DataMngr
      Clé Supprimée : HKLM\Software\Freeze.com
      Clé Supprimée : HKLM\Software\FREEzeFrog
      Clé Supprimée : HKLM\Software\Iminent
      Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASAPI32
      Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASMANCS
      Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32
      Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS
      Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASAPI32
      Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASMANCS
      Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32
      Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS
      Clé Supprimée : HKLM\Software\Offerbox
      Clé Supprimée : HKLM\Software\PCTuto
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3D8478AA-7B88-48A9-8BCB-B85D594411EC}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A439801C-961D-452C-AB42-7848E9CBD289}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E67D5BC7-7129-493E-9281-F47BDAFACE4F}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F4EBB1E2-21F3-4786-8CF4-16EC5925867F}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\jplinpmadfkdgipabgcdchbdikologlh
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\kincjchfokkeneeofpeefomkikfkiedl
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2426}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{2F603A45-D956-496B-81B5-50D782424976}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{B85C4CB2-B352-4BD8-818C-BCE353599107}
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
      Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{3D8478AA-7B88-48A9-8BCB-B85D594411EC}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E67D5BC7-7129-493E-9281-F47BDAFACE4F}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
      Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
      Clé Supprimée : HKLM\SOFTWARE\DataMngr
      Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
      Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2426}
      Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{2F603A45-D956-496B-81B5-50D782424976}
      Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4BD8E034-E0F4-4509-A753-467A8E854CD8}
      Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A76AA284-E52D-47E6-9E4F-B85DBF8E35C3}
      Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B85C4CB2-B352-4BD8-818C-BCE353599107}
      Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
      Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
      Clé Supprimée : HKLM\SOFTWARE\Tarma Installer
      Clé Supprimée : HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes\{33524C00-63FB-43DB-A6BF-0A4E14B24649}
      Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\New Windows\Allow [*.crossrider.com]
      Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{30F9B915-B755-4826-820B-08FBA6BD249D}]
      Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow [*.crossrider.com]
      Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [PcTuto]
      Valeur Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{99079A25-328F-4BD4-BE04-00955ACAA0A7}]
      Valeur Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{AF6AC4F2-9825-4FB6-A600-92BC5361F209}]
      Valeur Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{EEE6C35B-6118-11DC-9C72-001320C79847}]

      ***** [Navigateurs] *****

      -\\ Internet Explorer v9.0.8112.16421

      Remplacé : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?crg=3.1010000.10011&barid={09A68678-F201-11E1-BC14-1C7508EE0EA2} --> hxxp://www.google.com
      Remplacé : [HKCU\Software\Microsoft\Internet Explorer\Main - BrowserMngr Start Page] = hxxp://search.babylon.com/?affID=110823&tt=120912_pcp_3712_2&babsrc=HP_ss&mntrId=8ee324d5000000000000ec55f975cf42 --> hxxp://www.google.com
      Remplacé : [HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - Tabs] = hxxp://search.babylon.com/?affID=110823&tt=120912_pcp_3712_2&babsrc=NT_ss&mntrId=8ee324d5000000000000ec55f975cf42 --> hxxp://www.google.com
      Remplacé : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - SearchAssistant] = hxxp://start.facemoods.com/?a=bf2&s={searchTerms}&f=4 --> hxxp://www.google.com

      -\\ Google Chrome v22.0.1229.94

      Fichier : C:\Users\sandrine\AppData\Local\Google\Chrome\User Data\Default\Preferences

      Supprimée [l.16] : urls_to_restore_on_startup = [ "hxxp://www.google.com", "hxxp://search.babylon.com/?affID=111804&tt=010712_7&babsrc=HP_ss&mntrId=8ee324d5000000000000ec55f975cf42", "hxxps://isearch.avg.com/?cid={E5DCDA3F-3C48-41EA-8EB4-1B4DCAC5A2E3}&mid=962b2bddc52847d0a70ecd3c4e0ae751-adbe1e748362b608f33864709a84f66239882acb&lang=fr&ds=cv011&pr=sa&d=2012-07-21 11:49:32&v=12.1.0.20&sap=hp", "hxxp://search.gboxapp.com/" ]
      Supprimée [l.1818] : urls_to_restore_on_startup = [ "hxxp://www.google.com", "hxxp://search.babylon.com/?affID=111804&tt=010712_7&babsrc=HP_ss&mntrId=8ee324d5000000000000ec55f975cf42", "hxxps://isearch.avg.com/?cid={E5DCDA3F-3C48-41EA-8EB4-1B4DCAC5A2E3}&mid=962b2bddc52847d0a70ecd3c4e0ae751-adbe1e748362b608f33864709a84f66239882acb&lang=fr&ds=cv011&pr=sa&d=2012-07-21 11:49:32&v=12.1.0.20&sap=hp", "hxxp://search.gboxapp.com/" ]

      *************************

      AdwCleaner[S1].txt - [25567 octets] - [23/10/2012 12:46:36]

      ########## EOF - C:\AdwCleaner[S1].txt - [25628 octets] ##########
      0
      1. Attention !!! : Seuls ces liens sont officiels ne pas telecharger l'outil sur d'autres liens !!
        Attention !!! : cet outil peut etre détecté à tort comme virus
        Attention !!! : cet outil est puissant suivre scrupuleusement les instructions ci-dessous

        tous les processus "non vitaux de windows" vont être coupés , enregistre ton travail.

        Désactive toutes tes protections si possible , antivirus , sandbox , pare-feux , etc....

        telecharge et enregistre Pre_Scan sur ton bureau :

        https://forums-fec.be/gen-hackman/Pre_Scan.exe

        si le lien ne fonctionne pas :

        http://www.archive-host.com

        Avertissement :Il y aura une extinction du bureau pendant le scan --> pas de panique.

        une fois telechargé lance-le , laisse faire le scan jusqu'à l'apparition de "Pre_scan_la_date_et_l'heure.txt" sur le bureau.

        si l'outil est relancé plusieurs fois , il te proposera un menu et qu'aucune option n'est demandée, lance l'option "Kill"

        si l'outil est bloqué par l'infection utilise cette version avec extension .pif :

        https://forums-fec.be/gen-hackman/Pre_Scan.pif

        si l'outil detecte un proxy et que tu n'en as pas installé clique sur "supprimer le proxy"

        Il se peut qu'une multitude de fenêtres noires clignotent , laisse-le travailler

        Poste Pre_Scan_la_date_et_l'heure.txt qui apparaitra sur le bureau en fin de scan

        Il est possible que l'outil fasse redemarrer ton pc , laisse-le faire

        NE LE POSTE PAS SUR LE FORUM !!! (il est trop long)

        Heberge le rapport sur https://forums-fec.be/upload puis donne le lien obtenu en echange sur le forum où tu te fais aider
        0
        1. re

          comment faire exactement pour faire tout ca ?
          peut tu m'expliquer ou aller pour faire tout ca?

          -enregistrer le travail
          -couper l'anti virus ,sandbox,pare feu,etc....
          MERCI
          0
          1. pour enregistrer ton travail ? ben tu fermes toutes fenetres

            ensuite tu as quoi comme antivirus ? avast ?
            0
            1. je n'ai pas eut le temps de faire quoi que ce soit

              j'ai voulu télécharger le scan et il c'est lancer directement
              la je suis sur un autre pc le temps qu'il fasse le scan
              0
              1. bah faut faire "enregistrer pas executer" !...on execute JAMAIS un programme directement d'internet !!
                0
                1. ben non,moi il a démarrer tout seul le scan, ça ne m'a rien demander pour enregistrer avant et c'est long.
                  0
                  1. bah tu dois jamais faire le menage dans les trucs qui servent à rien ....
                    0
                    1. ben si ,je fait toujours avec CCleaner pour nettoyer tout
                      c'est normal que le scan soit si long?
                      0
                      1. il doit etre drôlement mal configuré ccleaner alors......

                        ca arrive....certains outils ont des scans qui durent 4h, 6h , 12h , 20 h etc....
                        j'en ai meme vus qui duraient 22 h

                        ¤¤¤¤¤¤¤¤¤¤ Pre_Scan_Concept ¤¤¤¤¤¤¤¤¤¤
                        0
                        1. et ben ,j'ai encore le temps alors
                          je mettrais le rapport dés qu'il sera fini
                          merci
                          0
                          1. re

                            voici le rapport:

                            ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Pre_Scan | 2.1022 | g3n-h@ckm@n & Saachaa | ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

                            ¤¤¤¤¤ XP | Vista | 7 | 8 - 32/64 bits ¤¤¤¤¤

                            ~ Update on 22/10/2012 | 23.15 by g3n-h@ckm@n
                            ~ Informations | Evolution : https://gen-hackman.kanak.fr/
                            ~ Informations for the switches Pre_Script : https://gen-hackman.kanak.fr/
                            ~ Feedback Pre_scan : https://gen-hackman.kanak.fr/#505
                            ~ Thx to C_XX , Slyk for their help for the evolution of the tool

                            ~ User : sandrine (Administrateurs) | SID = S-1-5-21-2235326386-795786822-2120572921-1001
                            ~ Computer : SANDRINE-PC

                            ~ System : Windows 7 Home Premium (64 bits) HomePremium Service Pack 1
                            ~ InstallationType : Client
                            ~ RegisteredOwner : sandrine
                            ~ RegisteredOrganization :
                            ~ ProcessorNameString : AMD C-50 Processor
                            ~ Identifier : AMD64 Family 20 Model 1 Stepping 0

                            ~ Mémory RAM = Total (KB) : 1813400 | Used (%) : 52 | Free (KB) : 870030
                            ~ Pagefile = Total (KB) : 3626810 | Free (KB) : 2648680
                            ~ Virtual = Total (KB) : 4194180 | Free (KB) : 3972830

                            ¤¤¤¤¤¤¤¤¤¤ | Boot's scripts

                            C:\Windows\Setup\Scripts\OOBE.CMD
                            C:\Windows\Setup\Scripts\OOBE_SR40.CMD
                            C:\Windows\Setup\Scripts\SetupComplete.cmd

                            ¤¤¤¤¤¤¤¤¤¤ | Drives

                            c:\ -> [Fixed] | [Packard Bell] | Total : 461480 Mo | Free : 356370 Mo -> NTFS
                            d:\ -> [CDROM] | [Audio CD]

                            Scan : 14:36:14 | 23/10/2012

                            ¤¤¤¤¤¤¤¤¤¤ | Windows Updates

                            ¤¤¤¤¤¤¤¤¤¤ | Sessions

                            ~ C:\Windows\system32\config\systemprofile
                            ~ C:\Windows\ServiceProfiles\LocalService
                            ~ C:\Windows\ServiceProfiles\NetworkService
                            ~ C:\Users\sandrine

                            New restorepoint created

                            ¤¤¤¤¤¤¤¤¤¤ | MD5 Control

                            [MD5.9959AA9CEE9F19C90A073D7627A52AA0] - [23/10/2012 14:36:15] - [0.5 Ko] - C:\Pre_Scan\MBR.bin
                            [MD5.332FEAB1435662FC6C672E25BEB37BE3] - [31/07/2011 10:08:39] - (.© Microsoft Corporation. - Explorateur Windows.) - [2804.5 Ko] - (6.1.7601.17567) - C:\Windows\explorer.exe
                            [MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - [31/07/2011 10:08:38] - (.© Microsoft Corporation. - Explorateur Windows.) - [2555 Ko] - (6.1.7601.17567) - C:\Windows\SysWOW64\explorer.exe
                            [MD5.AC4C51EB24AA95B77F705AB159189E24] - [01/08/2011 08:56:52] - (.© Microsoft Corporation. - Explorateur Windows.) - [2805 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
                            [MD5.332FEAB1435662FC6C672E25BEB37BE3] - [31/07/2011 10:08:39] - (.© Microsoft Corporation. - Explorateur Windows.) - [2804.5 Ko] - (6.1.7601.17567) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
                            [MD5.3B69712041F3D63605529BD66DC00C48] - [31/07/2011 10:08:39] - (.© Microsoft Corporation. - Explorateur Windows.) - [2804.5 Ko] - (6.1.7601.21669) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
                            [MD5.40D777B7A95E00593EB1568C68514493] - [01/08/2011 08:56:21] - (.© Microsoft Corporation. - Explorateur Windows.) - [2555 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
                            [MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - [31/07/2011 10:08:38] - (.© Microsoft Corporation. - Explorateur Windows.) - [2555 Ko] - (6.1.7601.17567) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
                            [MD5.0FB9C74046656D1579A64660AD67B746] - [31/07/2011 10:08:38] - (.© Microsoft Corporation. - Explorateur Windows.) - [2555 Ko] - (6.1.7601.21669) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
                            [MD5.60C2862B4BF0FD9F582EF344C2B1EC72] - [14/07/2009 01:19:49] - (.© Microsoft Corporation. - Processus d'exécution client-serveur.) - [7.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\csrss.exe
                            [MD5.60C2862B4BF0FD9F582EF344C2B1EC72] - [14/07/2009 01:19:49] - (.© Microsoft Corporation. - Processus d'exécution client-serveur.) - [7.5 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-csrss_31bf3856ad364e35_6.1.7600.16385_none_b4d8d57efdc6b4f3\csrss.exe
                            [MD5.24ACB7E5BE595468E3B9AA488B9B4FCB] - [14/07/2009 01:19:46] - (.© Microsoft Corporation. - Applications Services et Contrôleur.) - [321 Ko] - (6.1.7600.16385) - C:\Windows\System32\services.exe
                            [MD5.24ACB7E5BE595468E3B9AA488B9B4FCB] - [14/07/2009 01:19:46] - (.© Microsoft Corporation. - Applications Services et Contrôleur.) - [321 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
                            [MD5.1911A3356FA3F77CCC825CCBAC038C2A] - [14/07/2009 01:19:50] - (.© Microsoft Corporation. - Gestionnaire de sessions Windows.) - [110 Ko] - (6.1.7600.16385) - C:\Windows\System32\smss.exe
                            [MD5.1911A3356FA3F77CCC825CCBAC038C2A] - [14/07/2009 01:19:50] - (.© Microsoft Corporation. - Windows Session Manager.) - [110 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7600.16385_none_082f99a432e2a661\smss.exe
                            [MD5.BAFE84E637BF7388C96EF48D4D3FDD53] - [01/08/2011 08:54:11] - (.© Microsoft Corporation. - Application d'ouverture de session Userinit.) - [30 Ko] - (6.1.7601.17514) - C:\Windows\System32\userinit.exe
                            [MD5.61AC3EFDFACFDD3F0F11DD4FD4044223] - [01/08/2011 08:54:15] - (.© Microsoft Corporation. - Application d'ouverture de session Userinit.) - [26 Ko] - (6.1.7601.17514) - C:\Windows\SysWOW64\userinit.exe
                            [MD5.BAFE84E637BF7388C96EF48D4D3FDD53] - [01/08/2011 08:54:11] - (.© Microsoft Corporation. - Application d'ouverture de session Userinit.) - [30 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe
                            [MD5.61AC3EFDFACFDD3F0F11DD4FD4044223] - [01/08/2011 08:54:15] - (.© Microsoft Corporation. - Application d'ouverture de session Userinit.) - [26 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
                            [MD5.94355C28C1970635A31B3FE52EB7CEBA] - [14/07/2009 01:52:37] - (.© Microsoft Corporation. - Application de démarrage de Windows.) - [126 Ko] - (6.1.7600.16385) - C:\Windows\System32\wininit.exe
                            [MD5.B5C5DCAD3899512020D135600129D665] - [14/07/2009 01:36:49] - (.© Microsoft Corporation. - Application de démarrage de Windows.) - [94 Ko] - (6.1.7600.16385) - C:\Windows\SysWOW64\wininit.exe
                            [MD5.94355C28C1970635A31B3FE52EB7CEBA] - [14/07/2009 01:52:37] - (.© Microsoft Corporation. - Application de démarrage de Windows.) - [126 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-wininit_31bf3856ad364e35_6.1.7600.16385_none_8ce7aa761e01ad49\wininit.exe
                            [MD5.B5C5DCAD3899512020D135600129D665] - [14/07/2009 01:36:49] - (.© Microsoft Corporation. - Application de démarrage de Windows.) - [94 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\x86_microsoft-windows-wininit_31bf3856ad364e35_6.1.7600.16385_none_30c90ef265a43c13\wininit.exe
                            [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - [01/08/2011 08:56:07] - (.© Microsoft Corporation. - Application d'ouverture de session Windows.) - [381.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\winlogon.exe
                            [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - [01/08/2011 08:56:07] - (.© Microsoft Corporation. - Application d'ouverture de session Windows.) - [381.5 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
                            [MD5.1C7857B62DE5994A75B054A9FD4C3825] - [16/02/2012 14:42:55] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [487 Ko] - (6.1.7601.17752) - C:\Windows\System32\drivers\afd.sys
                            [MD5.D31DC7A16DEA4A9BAF179F3D6FBDB38C] - [01/08/2011 08:56:30] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [488 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.17514_none_360e4801750ca991\afd.sys
                            [MD5.D5B031C308A409A0A576BFF4CF083D30] - [31/07/2011 10:08:11] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [487.5 Ko] - (6.1.7601.17603) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.17603_none_3618198975057170\afd.sys
                            [MD5.1C7857B62DE5994A75B054A9FD4C3825] - [16/02/2012 14:42:55] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [487 Ko] - (6.1.7601.17752) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.17752_none_35e10b89752ee0f5\afd.sys
                            [MD5.F4AD06143EAC303F55D0E86C40802976] - [31/07/2011 10:08:11] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [487.5 Ko] - (6.1.7601.21712) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.21712_none_3695e61e8e2c13d4\afd.sys
                            [MD5.36A14FD1A23F57046361733B792CA8DB] - [16/02/2012 14:42:55] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [486.5 Ko] - (6.1.7601.21887) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.21887_none_364f3a028e605345\afd.sys
                            [MD5.02062C0B390B7729EDC9E69C680A6F3C] - [14/07/2009 01:19:47] - (.© Microsoft Corporation. - ATAPI IDE Miniport Driver.) - [23.56 Ko] - (6.1.7600.16385) - C:\Windows\System32\drivers\atapi.sys
                            [MD5.02062C0B390B7729EDC9E69C680A6F3C] - [14/07/2009 01:19:47] - (.© Microsoft Corporation. - ATAPI IDE Miniport Driver.) - [23.56 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys
                            [MD5.F036CE71586E93D94DAB220D7BDF4416] - [01/08/2011 08:52:02] - (.© Microsoft Corporation. - SCSI CD-ROM Driver.) - [144 Ko] - (6.1.7601.17514) - C:\Windows\System32\drivers\cdrom.sys
                            [MD5.F036CE71586E93D94DAB220D7BDF4416] - [01/08/2011 08:52:02] - (.© Microsoft Corporation. - SCSI CD-ROM Driver.) - [144 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys
                            [MD5.09594D1089C523423B32A4229263F068] - [01/08/2011 08:56:14] - (.© Microsoft Corporation. - MBT Transport driver.) - [255.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\drivers\netbt.sys
                            [MD5.09594D1089C523423B32A4229263F068] - [01/08/2011 08:56:14] - (.© Microsoft Corporation. - MBT Transport driver.) - [255.5 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_microsoft-windows-netbt_31bf3856ad364e35_6.1.7601.17514_none_be8acdd10de3b1a6\netbt.sys
                            [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - [01/08/2011 08:56:15] - (.© Microsoft Corporation. - TDI Translation Driver.) - [116.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\drivers\tdx.sys
                            [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - [01/08/2011 08:56:15] - (.© Microsoft Corporation. - TDI Translation Driver.) - [116.5 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_microsoft-windows-tdi-over-tcpip_31bf3856ad364e35_6.1.7601.17514_none_4863cdbaf2b532f8\tdx.sys
                            [MD5.0D08D2F3B3FF84E433346669B5E0F639] - [01/08/2011 08:55:46] - (.© Microsoft Corporation. - Pilote de cliché instantané du volume.) - [288.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\drivers\volsnap.sys
                            [MD5.0D08D2F3B3FF84E433346669B5E0F639] - [01/08/2011 08:55:46] - (.© Microsoft Corporation. - Volume Shadow Copy Driver.) - [288.88 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_volume.inf_31bf3856ad364e35_6.1.7601.17514_none_73dcbcf012b4850e\volsnap.sys

                            14:38:44

                            ¤¤¤¤¤¤¤¤¤¤ | Processes stopped

                            atiesrxx.exe (908)
                            atieclxx.exe (1064)
                            spoolsv.exe (1300)
                            taskhost.exe (1428)
                            explorer.exe (1536)
                            armsvc.exe (1648)
                            Fuel.Service.exe (1732)
                            CxAudMsg64.exe (1812)
                            dsiwmis.exe (1896)
                            ePowerSvc.exe (1960)
                            GREGsvc.exe (2024)
                            NBService.exe (308)
                            IScheduleSvc.exe (2256)
                            msseces.exe (2276)
                            ePowerTray.exe (2284)
                            c2c_service.exe (2344)
                            NMBgMonitor.exe (2352)
                            UpdaterService.exe (2556)
                            WLIDSVC.EXE (2640)
                            BackupManagerTray.exe (2816)
                            WLIDSVCM.EXE (2836)
                            jusched.exe (2936)
                            NMIndexingService.exe (1768)
                            NMIndexStoreSvr.exe (2320)
                            SearchIndexer.exe (2304)
                            wmpnetwk.exe (3556)
                            ePowerEvent.exe (3600)
                            chrome.exe (3968)
                            taskhost.exe (3648)
                            MOM.exe (3960)
                            CCC.exe (364)
                            SearchProtocolHost.exe (2676)
                            taskeng.exe (1592)
                            taskeng.exe (4020)

                            ¤¤¤¤¤¤¤¤¤¤ | Running processes

                            Boot : Normal

                            [MD5.1911A3356FA3F77CCC825CCBAC038C2A] - [14/07/2009 01:19:50] - 268 | C:\Windows\System32\smss.exe (.Microsoft Corporation - Gestionnaire de sessions Windows.) - (6.1.7600.16385) -> \SystemRoot\System32\smss.exe [112640 Ko]
                            [MD5.60C2862B4BF0FD9F582EF344C2B1EC72] - [14/07/2009 01:19:49] - 392 | C:\Windows\system32\csrss.exe (.Microsoft Corporation - Processus d'exécution client-serveur.) - (6.1.7600.16385) -> %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 [7680 Ko]
                            [MD5.94355C28C1970635A31B3FE52EB7CEBA] - [14/07/2009 01:52:37] - 472 | C:\Windows\system32\wininit.exe (.Microsoft Corporation - Application de démarrage de Windows.) - (6.1.7600.16385) -> wininit.exe [129024 Ko]
                            [MD5.60C2862B4BF0FD9F582EF344C2B1EC72] - [14/07/2009 01:19:49] - 480 | C:\Windows\system32\csrss.exe (.Microsoft Corporation - Processus d'exécution client-serveur.) - (6.1.7600.16385) -> %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 [7680 Ko]
                            [MD5.3EE6C4A17173C0B6822585296E9AB209] - [14/07/2009 01:19:46] - 520 | C:\Windows\system32\services.exe (.Microsoft Corporation - Applications Services et Contrôleur.) - (6.1.7600.16385) -> C:\Windows\system32\services.exe [328704 Ko]
                            [MD5.C118A82CD78818C29AB228366EBF81C3] - [31/01/2012 10:19:13] - 544 | C:\Windows\system32\lsass.exe (.Microsoft Corporation - Local Security Authority Process.) - (6.1.7601.17725) -> C:\Windows\system32\lsass.exe [31232 Ko]
                            [MD5.F2BF82316E93E590FF081B95F68443B7] - [01/08/2011 08:56:06] - 552 | C:\Windows\system32\lsm.exe (.Microsoft Corporation - Service du gestionnaire de session locale.) - (6.1.7601.17514) -> C:\Windows\system32\lsm.exe [343040 Ko]
                            [MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 01:31:13] - 644 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k DcomLaunch [27136 Ko]
                            [MD5.8ACDF26E44D108653FE638ABDF5BB043] - [01/08/2011 08:56:07] - 676 | C:\Windows\system32\winlogon.exe (.Microsoft Corporation - Application d'ouverture de session Windows.) - (6.1.7601.17514) -> winlogon.exe [390656 Ko]
                            [MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 01:31:13] - 768 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k RPCSS [27136 Ko]
                            [MD5.CC8E4F72F21340A4D3A3D4DB50313EF5] - [12/09/2012 21:21:48] - 816 | c:\Program Files\Microsoft Security Client\MsMpEng.exe (.Microsoft Corporation - Antimalware Service Executable.) - (4.1.522.0) -> "c:\Program Files\Microsoft Security Client\MsMpEng.exe" [22072 Ko]
                            [MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 01:31:13] - 976 | C:\Windows\System32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted [27136 Ko]
                            [MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 01:31:13] - 108 | C:\Windows\System32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [27136 Ko]
                            [MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 01:31:13] - 280 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k netsvcs [27136 Ko]
                            [MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 01:31:13] - 748 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k LocalService [27136 Ko]
                            [MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 01:31:13] - 1112 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k NetworkService [27136 Ko]
                            [MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 01:31:13] - 1344 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork [27136 Ko]
                            [MD5.F162D5F5E845B9DC352DD1BAD8CEF1BC] - [14/07/2009 01:37:38] - 1508 | C:\Windows\system32\Dwm.exe (.Microsoft Corporation - Gestionnaire de fenêtres du Bureau.) - (6.1.7600.16385) -> "C:\Windows\system32\Dwm.exe" [120320 Ko]
                            [MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 01:31:13] - 1996 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [27136 Ko]
                            [MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 01:31:13] - 2500 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k imgsvc [27136 Ko]
                            [MD5.2C98B9DFB52A5A9B69473FBDD0DC03D1] - [12/09/2012 21:21:48] - 3020 | c:\Program Files\Microsoft Security Client\NisSrv.exe (.Microsoft Corporation - Microsoft Network Realtime Inspection Service.) - (4.1.522.0) -> "c:\Program Files\Microsoft Security Client\NisSrv.exe" [368896 Ko]
                            [MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 01:31:13] - 1756 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted [27136 Ko]
                            [MD5.521202AA6F2B74FCCC6BC7E162109D71] - [14/07/2009 01:47:12] - 3292 | C:\Windows\system32\wbem\unsecapp.exe (.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) - (6.1.7600.16385) -> C:\Windows\system32\wbem\unsecapp.exe -Embedding [47104 Ko]
                            [MD5.34D4C852C7EAAD794C5932D7B894CBA8] - [01/08/2011 08:56:25] - 3436 | C:\Windows\system32\wbem\wmiprvse.exe (.Microsoft Corporation - WMI Provider Host.) - (6.1.7601.17514) -> C:\Windows\system32\wbem\wmiprvse.exe [372736 Ko]
                            [MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 01:31:13] - 4048 | C:\Windows\System32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\System32\svchost.exe -k LocalServicePeerNet [27136 Ko]
                            [MD5.A8EDB86FC2A4D6D1285E4C70384AC35A] - [14/07/2009 01:59:17] - 3112 | C:\Windows\system32\DllHost.exe (.Microsoft Corporation - COM Surrogate.) - (6.1.7600.16385) -> C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7} [9728 Ko]
                            [MD5.80FA57A7556D538E9B9A0A2D67FFDD3C] - [01/08/2011 08:56:19] - 4020 | C:\Windows\system32\taskeng.exe (.Microsoft Corporation - Moteur du Planificateur de tâches.) - (6.1.7601.17514) -> taskeng.exe {4FA451CD-2857-4A92-BDBD-F90063DCCC1D} [464384 Ko]
                            [MD5.0612999997E8F26AC6A8CDBD9843A6B4] - [23/10/2012 14:34:20] - 2632 | C:\Users\sandrine\Downloads\winlogon.exe (. - g3n-h@ckm@n.) - (2.1.0.22) -> "C:\Users\sandrine\Downloads\winlogon.exe" [2215406 Ko]
                            [MD5.1F2D0B612DC81FFF967050ECCEFC1B76] - [12/09/2012 21:21:48] - 1340 | c:\Program Files\Microsoft Security Client\MpCmdRun.exe (.Microsoft Corporation - Microsoft Malware Protection Command Line Utility.) - (4.1.522.0) -> "c:\Program Files\Microsoft Security Client\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey BD50DC55-92FE-1852-BACE-CD931BBF3486 -Reinvoke [337304 Ko]
                            [MD5.5D63FBE874CEE3C61C68536A1CD7282B] - [28/03/2011 21:11:06] - 2208 | C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (.Microsoft Corp. - Microsoft® Windows Live ID Service.) - (7.250.4232.0) -> "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE" [2292096 Ko]
                            [MD5.DA564DA7ED156AD4B3FC76853A6D2978] - [28/03/2011 21:11:06] - 3692 | C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) - (7.250.4232.0) -> WLIDSvcM.exe 2208 [223104 Ko]
                            [MD5.EB26CE28CA682D39D0CBFEA6FE28E12D] - [31/07/2011 10:08:26] - 1788 | C:\Windows\system32\SearchIndexer.exe (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - (7.0.7601.17610) -> C:\Windows\system32\SearchIndexer.exe /Embedding [591872 Ko]
                            [MD5.81FC8AC5503F4150BE8F7DD7176E39D0] - [31/07/2011 10:08:25] - 1948 | C:\Windows\system32\SearchProtocolHost.exe (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) - (7.0.7601.17610) -> "C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" [249856 Ko]
                            [MD5.E72CC771FFB4DA5995D422DAB718AAC6] - [01/08/2011 08:56:32] - 1960 | C:\Program Files\Windows Media Player\wmpnetwk.exe (.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) - (12.0.7601.17514) -> "C:\Program Files\Windows Media Player\wmpnetwk.exe" [1525248 Ko]
                            [MD5.3FE7C2DA248A3F03604D2A6570C479A4] - [15/08/2012 08:36:57] - 3128 | C:\Windows\System32\spoolsv.exe (.Microsoft Corporation - Application sous-système spouleur.) - (6.1.7601.17777) -> C:\Windows\System32\spoolsv.exe [559104 Ko]
                            [MD5.49A3AD5CE578CD77F445F3D244AEAB2D] - [31/07/2011 10:08:22] - 2180 | C:\Windows\system32\SearchFilterHost.exe (.Microsoft Corporation - Microsoft Windows Search Filter Host.) - (7.0.7601.17610) -> "C:\Windows\system32\SearchFilterHost.exe" 0 508 512 520 65536 516 [113664 Ko]
                            [MD5.34D4C852C7EAAD794C5932D7B894CBA8] - [01/08/2011 08:56:25] - 1968 | C:\Windows\system32\wbem\wmiprvse.exe (.Microsoft Corporation - WMI Provider Host.) - (6.1.7601.17514) -> C:\Windows\system32\wbem\wmiprvse.exe [372736 Ko]

                            ¤¤¤¤¤¤¤¤¤¤ | Winlogon

                            ¤

                            [HKLM | Winlogon]|[Shell] : explorer.exe
                            [HKLM64 | Winlogon]|[Shell] : explorer.exe
                            [HKLM | Winlogon]|[AutoRestartShell] : -> 0
                            [HKLM64 | Winlogon]|[AutoRestartShell] : 1 -> 0
                            [HKLM | Winlogon]|[userinit] : userinit.exe, -> C:\Windows\SysWOW64\userinit.exe,
                            [HKLM64 | Winlogon]|[userinit] : C:\Windows\system32\userinit.exe,
                            [HKLM | Winlogon]|[PowerDownAfterShutdown] : -> 1
                            [HKLM64 | Winlogon]|[PowerDownAfterShutdown] : 0 -> 1
                            [HKLM | Winlogon]|[System] :
                            [HKLM64 | Winlogon]|[System] :
                            [HKLM | Winlogon]|[Taskman] :

                            ¤¤¤¤¤¤¤¤¤¤ | Associations

                            [.exe] : exefile
                            [exefile | command] : "%1" %*
                            [.com] : comfile
                            [comfile | command] : "%1" %*
                            [.reg] : regfile
                            [regfile | command] : regedit.exe "%1"
                            [.scr] : scrfile
                            [scrfile | command] : "%1" /S
                            [.bat] : batfile
                            [batfile | command] : "%1" %*
                            [.cmd] : cmdfile
                            [cmdfile | command] : "%1" %*
                            [.pif] : piffile
                            [piffile | command] : "%1" %*
                            [.url] : InternetShortcut
                            [InternetShortcut | command] : "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l
                            [Application.Manifest | command] : rundll32.exe dfshim.dll,ShOpenVerbApplication %1
                            [Application.Reference | command] : rundll32.exe dfshim.dll,ShOpenVerbShortcut %1|%2
                            [Folder | command] : %SystemRoot%\Explorer.exe -> C:\Windows\explorer.exe

                            ¤

                            [IE | Command] | @ : C:\Program Files (x86)\Internet Explorer\iexplore.exe -> "C:\Program Files (x86)\Internet Explorer\iexplore.exe"
                            [IE64 | Command] | @ : "C:\Program Files (x86)\Internet Explorer\iexplore.exe"
                            [Applications | IE | Command] | @ : "C:\Program Files (x86)\Internet Explorer\iexplore.exe" %1
                            [Assoc | Applications] | @ : http://go.microsoft.com/fwlink/?LinkId=57426&Ext=%s -> http://shell.windows.com/fileassoc/%04x/xml/redir.asp?Ext=%s
                            [Assoc64 | Applications] | @ : http://go.microsoft.com/fwlink/?LinkId=57426&Ext=%s -> http://shell.windows.com/fileassoc/%04x/xml/redir.asp?Ext=%s

                            ¤¤¤¤¤¤¤¤¤¤ | Corrections diverses

                            [HKLM | Advanced\Folder\Hidden\SHOWALL]|[CheckedValue] : 1
                            [HKLM64 | Advanced\Folder\Hidden\SHOWALL]|[CheckedValue] : 1
                            [HKLM | CurrentVersion\Explorer]|[AlwaysUnloadDll] : -> 1
                            [HKLM64 | CurrentVersion\Explorer]|[AlwaysUnloadDll] : -> 1
                            [HKU\S-1-5-21-2235326386-795786822-2120572921-1001 | Desktop]|[Wallpaper] : C:\Users\sandrine\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
                            [HKU64\S-1-5-21-2235326386-795786822-2120572921-1001 | Desktop]|[Wallpaper] : C:\Users\sandrine\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
                            [HKU\S-1-5-19 | Explorer\Advanced]|[Hidden] : -> 0
                            [HKU\S-1-5-20 | Explorer\Advanced]|[Hidden] : -> 0
                            [HKU\S-1-5-21-2235326386-795786822-2120572921-1001 | Explorer\Advanced]|[Hidden] : 1 -> 0
                            [HKU\S-1-5-21-2235326386-795786822-2120572921-1001_Classes | Explorer\Advanced]|[Hidden] : -> 0
                            [HKU\S-1-5-18 | Explorer\Advanced]|[Hidden] : -> 0
                            [HKU64\S-1-5-19 | Explorer\Advanced]|[Hidden] : 0
                            [HKU64\S-1-5-20 | Explorer\Advanced]|[Hidden] : 0
                            [HKU64\S-1-5-21-2235326386-795786822-2120572921-1001 | Explorer\Advanced]|[Hidden] : 0
                            [HKU64\S-1-5-21-2235326386-795786822-2120572921-1001_Classes | Explorer\Advanced]|[Hidden] : 0
                            [HKU64\S-1-5-18 | Explorer\Advanced]|[Hidden] : 0
                            [HKLM | Control\SafeBoot]|[AlternateShell] : cmd.exe
                            [HKLM | HideDesktopIcons\NewStartPanel]|[{9343812e-1c37-4a49-a12e-4b2d810d956b}] : 1 -> 0
                            [HKLM64 | HideDesktopIcons\NewStartPanel]|[{9343812e-1c37-4a49-a12e-4b2d810d956b}] : 1 -> 0
                            [HKLM | HideDesktopIcons\NewStartPanel]|[{F02C1A0D-BE21-4350-88B0-7367FC96EF3C}] : 1 -> 0
                            [HKLM64 | HideDesktopIcons\NewStartPanel]|[{F02C1A0D-BE21-4350-88B0-7367FC96EF3C}] : 1 -> 0
                            [HKLM | HideDesktopIcons\NewStartPanel]|[{20D04FE0-3AEA-1069-A2D8-08002B30309D}] : 1 -> 0
                            [HKLM64 | HideDesktopIcons\NewStartPanel]|[{20D04FE0-3AEA-1069-A2D8-08002B30309D}] : 1 -> 0
                            [HKLM | HideDesktopIcons\NewStartPanel]|[{208D2C60-3AEA-1069-A2D7-08002B30309D}] : 1 -> 0
                            [HKLM64 | HideDesktopIcons\NewStartPanel]|[{208D2C60-3AEA-1069-A2D7-08002B30309D}] : 1 -> 0
                            [HKLM | HideDesktopIcons\NewStartPanel]|[{871C5380-42A0-1069-A2EA-08002B30309D}] : 1 -> 0
                            [HKLM64 | HideDesktopIcons\NewStartPanel]|[{871C5380-42A0-1069-A2EA-08002B30309D}] : 1 -> 0
                            [HKLM | HideDesktopIcons\NewStartPanel]|[{5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0}] : 1 -> 0
                            [HKLM64 | HideDesktopIcons\NewStartPanel]|[{5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0}] : 1 -> 0
                            [HKLM | HideDesktopIcons\NewStartPanel]|[{59031a47-3f72-44a7-89c5-5595fe6b30ee}] : 1 -> 0
                            [HKLM64 | HideDesktopIcons\NewStartPanel]|[{59031a47-3f72-44a7-89c5-5595fe6b30ee}] : 1 -> 0
                            [HKLM | Policies\Explorer]|[NoActiveDesktop] : 1 -> 0
                            [HKLM64 | Policies\Explorer]|[NoActiveDesktop] : 0
                            [HKLM | Policies\Explorer]|[NoActiveDesktopChanges] : 1 -> 0
                            [HKLM64 | Policies\Explorer]|[NoActiveDesktopChanges] : 0

                            14:40:15

                            ¤¤¤¤¤¤¤¤¤¤ | SafeBoot | Control | Repair

                            ¤

                            Cannot repair ! [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}] : Volume shadow copy

                            ¤

                            Safeboot Keys are O.K for : Network

                            ¤¤¤¤¤¤¤¤¤¤ | IFEO

                            ¤¤¤¤¤¤¤¤¤¤ | Mountpoints2

                            ¤¤¤¤¤¤¤¤¤¤ | Windows

                            [HKLM | Session Manager\SubSystems]|[Windows] : winsrv : %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16

                            [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]|[AppInit_DLLS] : c:\progra~2\sprote~1\sprote~1.dll
                            [HKLM64\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]|[AppInit_DLLS] :
                            [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]|[LoadAppInit_DLLs] : 1
                            [HKLM64\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]|[LoadAppInit_DLLs] : 1

                            ¤¤¤¤¤¤¤¤¤¤ | Security Center

                            [HKLM64 | Security Center\svc]|[AntispywareOverride] : 0
                            [HKLM64 | Security Center\svc]|[AntiVirusOverride] : 0
                            [HKLM64 | Security Center\svc]|[FirewallOverride] : 0

                            [HKLM | FirewallPolicy\DomainProfile]|[DisableNotifications] : 0
                            [HKLM | FirewallPolicy\StandardProfile]|[DisableNotifications] : 0

                            ¤¤¤¤¤¤¤¤¤¤ | Services Corrections

                            [Compbatt] : 0 : Actif
                            [RPCSS] : 2 : Actif
                            [Power] : 2 : Actif
                            [Profsvc] : 2 : Actif
                            [PlugPlay] : 2 : Actif
                            [PEAUTH] : 2 : Actif
                            [nsi] : 2 : Actif
                            [NLASvc] : 2 : Actif
                            [MPSsvc] : 2 : Actif
                            [MMCSS] : 2 : Inactif
                            [luafv] : 2 : Actif
                            [lltdio] : 2 : Actif
                            [Iphlpsvc] : 2 : Actif
                            [IKEEXT] : 3 -> 2 : Inactif
                            [gpsvc] : 2 : Actif
                            [lmhosts] : 2 : Actif
                            [LanmanWorkstation] : 2 : Actif
                            [LanmanServer] : 2 : Actif
                            [agp440] : 3 -> 2 : Inactif
                            [AudioEndpointBuilder] : 2 : Actif
                            [Audiosrv] : 2 : Actif
                            [BFE] : 2 : Actif
                            [Bits] : 2 : Actif
                            [CryptSvc] : 2 : Actif
                            [EapHost] : 3 -> 2 : Actif
                            [Wlansvc] : 2 : Actif
                            [SppSvc] : 2 : Inactif
                            [SharedAccess] : 4 -> 2 : Inactif
                            [windefend] : 3 -> 2 : Inactif
                            [winmgmt] : 2 : Actif
                            [wuauserv] : 2 : Actif
                            [wudfsvc] : 2 : Actif
                            [WerSvc] : 3 -> 2 : Inactif
                            [wscsvc] : 2 : Actif
                            [Cmbatt] : 3 : Actif
                            [Ndisuio] : 3 : Actif
                            [Wwansvc] : 3 : Inactif

                            14:41:08

                            ¤¤¤¤¤¤¤¤¤¤ | Internet Explorer

                            [HKU\S-1-5-21-2235326386-795786822-2120572921-1001 | Main]|[Start Page] : https://www.google.fr/?gws_rd=ssl -> https://www.google.com/?gws_rd=ssl
                            [HKU64\S-1-5-21-2235326386-795786822-2120572921-1001 | Main]|[Start Page] : https://www.google.com/?gws_rd=ssl
                            [HKU\S-1-5-21-2235326386-795786822-2120572921-1001 | Main]|[Local Page] : C:\Windows\system32\blank.htm
                            [HKU64\S-1-5-21-2235326386-795786822-2120572921-1001 | Main]|[Local Page] : C:\Windows\system32\blank.htm
                            [HKU\S-1-5-21-2235326386-795786822-2120572921-1001 | Main]|[Search Page] : https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF -> http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
                            [HKU64\S-1-5-21-2235326386-795786822-2120572921-1001 | Main]|[Search Page] : http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
                            [HKU\S-1-5-21-2235326386-795786822-2120572921-1001 | Main]|[Use Custom Search URL] : 0
                            [HKU64\S-1-5-21-2235326386-795786822-2120572921-1001 | Main]|[Use Custom Search URL] : 0

                            [HKLM | Search]|[SearchAssistant] : https://www.google.com/?gws_rd=ssl -> http://www.google.com/toolbar/ie8/sidebar.html
                            [HKLM | Main]|[Start Page] : https://www.google.com/?gws_rd=ssl -> https://www.msn.com/fr-fr/?ocid=iehp
                            [HKLM64 | Main]|[Start Page] : https://www.msn.com/fr-fr/?cobrand=packardbell.msn.com&ocid=AARDHP&pc=MAPB -> https://www.msn.com/fr-fr/?ocid=iehp
                            [HKLM | Main]|[Local Page] : C:\Windows\SysWOW64\blank.htm
                            [HKLM64 | Main]|[Local Page] : C:\Windows\System32\blank.htm -> C:\Windows\System32\blank.htm
                            [HKLM | Main]|[Default_Search_URL] : https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                            [HKLM64 | Main]|[Default_Search_URL] : https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                            [HKLM | Main]|[Default_Page_URL] : https://www.msn.com/fr-fr/?cobrand=packardbell.msn.com&ocid=AARDHP&pc=MAPB -> https://www.msn.com/fr-fr/?ocid=iehp
                            [HKLM64 | Main]|[Default_Page_URL] : https://www.msn.com/fr-fr/?cobrand=packardbell.msn.com&ocid=AARDHP&pc=MAPB -> https://www.msn.com/fr-fr/?ocid=iehp
                            [HKLM | Main]|[Search Page] : https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                            [HKLM64 | Main]|[Search Page] : https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                            [HKLM | AboutURLs]|[Tabs] : https://www.google.com/?gws_rd=ssl -> res://ieframe.dll/tabswelcome.htm

                            ¤

                            [HKU\S-1-5-21-2235326386-795786822-2120572921-1001 | PhishingFilter]|[EnabledV8] : 1
                            [HKU64\S-1-5-21-2235326386-795786822-2120572921-1001 | PhishingFilter]|[EnabledV8] : 1
                            [HKU\S-1-5-19 | Internet settings]|[EnableHttp1_1] : 1
                            [HKU\S-1-5-20 | Internet settings]|[EnableHttp1_1] : 1
                            [HKU\S-1-5-21-2235326386-795786822-2120572921-1001 | Internet settings]|[EnableHttp1_1] : 1
                            [HKU64\S-1-5-19 | Internet settings]|[EnableHttp1_1] : 1
                            [HKU64\S-1-5-20 | Internet settings]|[EnableHttp1_1] : 1
                            [HKU64\S-1-5-21-2235326386-795786822-2120572921-1001 | Internet settings]|[EnableHttp1_1] : 1
                            [HKU\S-1-5-21-2235326386-795786822-2120572921-1001 | Internet settings]|[MigrateProxy] : 1
                            [HKU64\S-1-5-21-2235326386-795786822-2120572921-1001 | Internet settings]|[MigrateProxy] : 1
                            [HKU\S-1-5-19 | Internet settings]|[AutoConfigProxy] : wininet.dll
                            [HKU\S-1-5-20 | Internet settings]|[AutoConfigProxy] : wininet.dll
                            [HKU\S-1-5-21-2235326386-795786822-2120572921-1001 | Internet settings]|[AutoConfigProxy] : wininet.dll
                            [HKU64\S-1-5-19 | Internet settings]|[AutoConfigProxy] : wininet.dll
                            [HKU64\S-1-5-20 | Internet settings]|[AutoConfigProxy] : wininet.dll
                            [HKU64\S-1-5-21-2235326386-795786822-2120572921-1001 | Internet settings]|[AutoConfigProxy] : wininet.dll

                            ¤¤¤¤¤¤¤¤¤¤ | Hosts

                            C:\Windows\System32\Drivers\etc\hosts : Cleaned :)

                            ¤¤¤¤¤¤¤¤¤¤ | Files | Folders | Registry

                            Quarantined and deleted Successfully : C:\$Recycle.bin\S-1-5-21-2235326386-795786822-2120572921-1001\$IIPMGL4.exe
                            Quarantined and deleted Successfully : C:\$Recycle.bin\S-1-5-21-2235326386-795786822-2120572921-1001\$RIY41TC\zylomgamesplayer.dll
                            Deleted : [HKLM\Software\Mircrosoft]
                            Deleted : [HKCR\CLSID\{3c471948-f874-49f5-b338-4f214a2ee0b1}] | @ -> C:\Program Files (x86)\Conduit\Community Alerts\Alert.dll

                            Impossible to move : C:\Windows\msdownld.tmp
                            Quarantined and deleted Successfully : C:\Windows\popcinfo.dat
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\AdobeARM.log
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\D4D4023F-A2A7-4E70-850F-186A9CDA8A5E\CbsProvider.dll
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\D4D4023F-A2A7-4E70-850F-186A9CDA8A5E\CompatProvider.dll
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\D4D4023F-A2A7-4E70-850F-186A9CDA8A5E\DismCore.dll
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\D4D4023F-A2A7-4E70-850F-186A9CDA8A5E\DismCorePS.dll
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\D4D4023F-A2A7-4E70-850F-186A9CDA8A5E\DismHost.exe
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\D4D4023F-A2A7-4E70-850F-186A9CDA8A5E\DismProv.dll
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\D4D4023F-A2A7-4E70-850F-186A9CDA8A5E\DmiProvider.dll
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\D4D4023F-A2A7-4E70-850F-186A9CDA8A5E\FolderProvider.dll
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\D4D4023F-A2A7-4E70-850F-186A9CDA8A5E\IntlProvider.dll
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\D4D4023F-A2A7-4E70-850F-186A9CDA8A5E\LogProvider.dll
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\D4D4023F-A2A7-4E70-850F-186A9CDA8A5E\MsiProvider.dll
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\D4D4023F-A2A7-4E70-850F-186A9CDA8A5E\OSProvider.dll
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\D4D4023F-A2A7-4E70-850F-186A9CDA8A5E\SmiProvider.dll
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\D4D4023F-A2A7-4E70-850F-186A9CDA8A5E\TransmogProvider.dll
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\D4D4023F-A2A7-4E70-850F-186A9CDA8A5E\UnattendProvider.dll
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\D4D4023F-A2A7-4E70-850F-186A9CDA8A5E\wdscore.dll
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\D4D4023F-A2A7-4E70-850F-186A9CDA8A5E\WimProvider.dll
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\jusched.log
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\{1982F362-C6BF-4FCA-B478-8775B39306B0}.tmp
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\{629F4A67-39D9-4CF6-837D-9C22AACAB413}.tmp
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\{F08D8C7C-1BFF-4843-BE86-3C96F331863F}.tmp
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\Temp\{F18CC56C-EBF2-47F6-8069-805923050E65}.tmp
                            Impossible to move : C:\Users\sandrine\AppData\Local\Temp\~DFDA6C2230C30816B3.TMP
                            Quarantined and deleted Successfully : C:\Windows\Temp\dsiwmis.log
                            Quarantined and deleted Successfully : C:\Windows\Temp\MpCmdRun.log
                            Quarantined and deleted Successfully : C:\Windows\Temp\MpSigStub.log
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Roaming\SoftGrid Client\shortcut_ex.dat
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Roaming\SoftGrid Client\userinfo.dat
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Roaming\Unde3r.exe
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Roaming\uTorrent\dht.dat
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Roaming\uTorrent\dht.dat.old
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Roaming\uTorrent\dht_feed.dat
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Roaming\uTorrent\dht_feed.dat.old
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Roaming\uTorrent\resume.dat
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Roaming\uTorrent\resume.dat.old
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Roaming\uTorrent\rss.dat
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Roaming\uTorrent\rss.dat.old
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Roaming\uTorrent\settings.dat
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Roaming\uTorrent\settings.dat.old
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Roaming\YourFileDownloader\dht.dat
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Roaming\adobe\Scripting.log
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\microsoft\windows\WindowsUpdate.log
                            Quarantined and deleted Successfully : C:\ProgramData\Common Files\AC99FDC6-F679-708A-215D-A003DBED592D.dat
                            Quarantined and deleted Successfully : C:\ProgramData\OptimizerPro1\OptimizerPro1.exe
                            Quarantined and deleted Successfully : C:\ProgramData\OptimizerPro1\runtime.dll
                            Quarantined and deleted Successfully : C:\ProgramData\WildTangent\134726E5-0682-43C5-8AA2-DD4D6A866DD4-extr.exe
                            Quarantined and deleted Successfully : C:\ProgramData\WildTangent\2698CE7D-5E0F-45A5-B451-557D8A56C3B9-extr.exe
                            Quarantined and deleted Successfully : C:\ProgramData\WildTangent\3edea465-61b0-4949-97e6-2cdc82169b9f-extr.exe
                            Quarantined and deleted Successfully : C:\ProgramData\WildTangent\4189e5c0-7eb4-4f54-b7b4-4228a8b03698-extr.exe
                            Quarantined and deleted Successfully : C:\ProgramData\WildTangent\46A07E00-B5A3-4EA8-B375-A503EBB9D726-extr.exe
                            Quarantined and deleted Successfully : C:\ProgramData\WildTangent\48136f9a-1fee-4382-9c40-5a5f285e8084-extr.exe
                            Quarantined and deleted Successfully : C:\ProgramData\WildTangent\5ae0d760-ddcf-4247-85df-eacefd518e86-extr.exe
                            Quarantined and deleted Successfully : C:\ProgramData\WildTangent\6BDF3201-10E6-46ED-9A87-7FD18C418CFD-extr.exe
                            Quarantined and deleted Successfully : C:\ProgramData\WildTangent\951226E3-26FC-40BC-8085-3677B1128F59-extr.exe
                            Quarantined and deleted Successfully : C:\ProgramData\WildTangent\BC3D43F7-BC64-490D-92B5-D2AABEC7FA85-extr.exe
                            Quarantined and deleted Successfully : C:\ProgramData\WildTangent\e2b21cc8-0f88-427a-a520-c3d6d8103063-extr.exe
                            Quarantined and deleted Successfully : C:\ProgramData\WildTangent\f10f89f1-9c08-4d85-9169-a28ba1fc6ab0-extr.exe
                            Quarantined and deleted Successfully : C:\ProgramData\WildTangent\fb65380e-3812-44f7-bbec-128e82369adf-extr.exe
                            Quarantined and deleted Successfully : C:\Users\sandrine\Downloads\adwcleaner.exe
                            Quarantined and deleted Successfully : C:\Users\sandrine\Downloads\winlogon.exe
                            Quarantined and deleted Successfully : C:\Users\sandrine\Downloads\ZHPDiag2.exe
                            Quarantined and Deleted successfully : C:\Users\sandrine\AppData\Local\{01AE8AE2-76E0-4903-ABB8-C000A7EB3937} -> WLM
                            Quarantined and Deleted successfully : C:\Users\sandrine\AppData\Local\{5D4D69E6-3771-467B-BFA1-D5E5AF9951B8} -> WLM
                            Quarantined and Deleted successfully : C:\Users\sandrine\AppData\Local\{AF20BE5E-5883-4F18-B8B1-1583A682A8CE} -> WLM
                            Quarantined and Deleted successfully : C:\Users\sandrine\AppData\Local\{B20126BD-D41D-4604-B8E1-5892CC8D7D8C} -> WLM
                            Quarantined and Deleted successfully : C:\Users\sandrine\AppData\Local\{D7DFC33C-5DE6-42E5-9F9B-E0FFCAC136CC} -> WLM
                            Quarantined and Deleted successfully : C:\Users\sandrine\AppData\Local\{E7BD3F12-5772-4465-B1A3-77ECFB95315C} -> WLM
                            Quarantined and deleted Successfully : C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2235326386-795786822-2120572921-1001Core.job
                            Quarantined and deleted Successfully : C:\Windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2235326386-795786822-2120572921-1001Core
                            Quarantined and deleted Successfully : C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2235326386-795786822-2120572921-1001UA.job
                            Quarantined and deleted Successfully : C:\Windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2235326386-795786822-2120572921-1001UA
                            Quarantined and deleted Successfully : C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
                            Quarantined and deleted Successfully : C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
                            Quarantined and deleted Successfully : C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
                            Quarantined and deleted Successfully : C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
                            Quarantined and deleted Successfully : C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2235326386-795786822-2120572921-1001Core.job
                            Quarantined and deleted Successfully : C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2235326386-795786822-2120572921-1001Core
                            Quarantined and deleted Successfully : C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2235326386-795786822-2120572921-1001UA.job
                            Quarantined and deleted Successfully : C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2235326386-795786822-2120572921-1001UA

                            17:05:10

                            Impossible to move : C:\Users\sandrine\AppData\Roaming\DriverCure
                            Impossible to move : C:\Users\sandrine\AppData\Roaming\YourFileDownloader
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\251170534765[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\261115976865[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\7047_mail[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\7117_mail[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\7131_mail[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\actu1[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\apici_aperti[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\arrow_silver[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\aufeminin[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\bg_prodMain[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\bon-achats-mode[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\bracelet-mots-doux[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\cata_231012_02[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\cata_231012_04[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\cata_231012_12_01[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\cata_231012_16[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\config[1].xml
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\config[2].xml
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\corps_haut[1].gif
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\desktop.ini
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\edito1[1].gif
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\F13[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\F14[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\F2[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\F3[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\F4[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\facebook[2].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\favicon[3].ico
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\fond_2[1].gif
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\footer_1[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\footer_3[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\footer_ban[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\ga[1].js
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\ga[2].js
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\ga[4].js
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\header[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\header_silver[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\img2[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\img3[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\jeu_frankenweenie2[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\logo_jdf-tetiere[1].gif
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\mailing3-bis_04[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\mailing3-bis_05[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\megamp_header[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\megamp_player_gauche[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\mise-a-jourkit_rentree-news_06[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\navcancl[1]
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\newsletter4_02[1].gif
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\nl-button-left[1].png
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\portail[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\produits_et_offres[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\roses-personnalisees[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\sepa[1].gif
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\sfondo[1].gif
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\showroomprive[1].gif
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\s[1].gif
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\template2_01[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\template2_02[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\Template_ADSL_37[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\Template_ADSL_45[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\Template_ADSL_48[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\Template_ADSL_55[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\Template_ADSL_64[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\title_sfr[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\twitter_bottom[1].gif
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\twitter_top[1].png
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\wbk2974_bogus[1]
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\wbk2984.tmp
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\wbk54D9_bogus[1]
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\wbk54DA.tmp
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\wbk6BC5_bogus[1]
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\wbk6BD5.tmp
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\wbk9AE0_bogus[1]
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\wbk9AF0.tmp
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\wbk9C0_bogus[1]
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\wbk9D0.tmp
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\wbkE5DD_bogus[1]
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\wbkE5EE.tmp
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\wbkE6BA_bogus[1]
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\wbkE6CB.tmp
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\wbkECD0_bogus[1]
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\3CH2F887\wbkECE0.tmp
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\130900261_11978019_0[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\7092_mail[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\7098_mail[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\7101_mail[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\7108_mail[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\923312167_M[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\abo_4euros_blanc[1].gif
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\actu3[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\actu9[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\assistance[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\back-01[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\back-02bis[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\bin_15x54[1].gif
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\bon-achat-deco[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\bon-achat-mode[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\btnShowMe[1].gif
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\bubble[1].png
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\cata_231012_01[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\cata_231012_03[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\cata_231012_11[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\config[1].xml
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\corps_bas[1].gif
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\corps_milieu[1].gif
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\desktop.ini
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\edito2[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\espace_client[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\F1[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\F2[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\F5[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\F6[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\F9[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\FB[1].gif
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\fb_bottom[1].gif
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\footer_5[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\grey-arrow-center[1].png
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\grey-arrow-left[1].png
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\grey-arrow-right[2].png
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\header1[1].jpg
                            Quarantined and deleted Successfully : C:\Users\sandrine\AppData\Local\temporary internet files\Content.IE5\BWZJ4KW4\header2[1].png
                            Quarantined and deleted Successfully : C:\Users\sand
                            0
                            1. j'avais demandé qu il soit hébergé tu vois bien qu il rentre pas voyons !! ^^
                              0
                              1. je n'y connais rien
                                comment faire?
                                0
                                1. je répète :

                                  NE LE POSTE PAS SUR LE FORUM !!! (il est trop long)

                                  Heberge le rapport sur https://forums-fec.be/upload puis donne le lien obtenu en echange

                                  0
                                  1. re
                                    c'est ca?

                                    : https://forums-fec.be/upload/www/?a=d&i=0648908
                                    0
                                    1. COMMENT CA Y A RIEN AU BOUT DU LIEN ?
                                      0
                                      • 1
                                      • 2