Comment supprimer systeme progressive protection

Résolu/Fermé
yasser0312 Messages postés 11 Date d'inscription vendredi 28 décembre 2012 Statut Membre Dernière intervention 28 décembre 2012 - 28 déc. 2012 à 09:44
buckhulk Messages postés 13690 Date d'inscription dimanche 21 septembre 2008 Statut Contributeur Dernière intervention 14 novembre 2020 - 28 déc. 2012 à 17:04
Bonjour,
ça fait une semaine que j'ai chopé un virus systeme progressive protection et j'arrive pas a le supprimer si vous voulez bien m'aidé sachant que j'ai deux autres session si non la session concerné et carrément bloqué et je suis pas tré doué en informatique merci de me repondre
je suis sous windows vista

2 réponses

buckhulk Messages postés 13690 Date d'inscription dimanche 21 septembre 2008 Statut Contributeur Dernière intervention 14 novembre 2020 1 756
28 déc. 2012 à 10:32
bonjour,
pourrais-tu m'envoyer un rapport ZHPDiag que je vois ce qui ne va pas sur ton ordi ?
ATTENTION : Si ton Antivirus est Avast, désactive la sandbox sinon l'analyse risque d'être faussées.
Voici comment faire : ICI
ne pas oublier de la réactiver en fin de désinfection

1) * Télécharge ZHPDiag (de Nicolas coolman) sur ton bureau !!

>> ZHPDiag (de Nicolas coolman)

a) * Une fois le téléchargement achevé,
b) * double clique sur ZHPDiag.exe et suis les instructions.
c)* L'outil va créer 3 icônes de racourcis : ZHPDiag >> ZHPFix >>MBRcheck

N'oublie pas de cocher la case qui permet de mettre un raccourci sur le Bureau.

2) * Fais un clic droit sur le logo de ZHPDiag.exe,en forme de parchemin qui se trouve sur ton bureau « exécuter en tant qu'Administrateur

3) * Clique sur Options >>
a] * Clique sur Tous

4) * Clique sur l'icône représentant une loupe (« Lancer le diagnostic »)

* Important >> Pendant l analyse de ton PC par ZHPDIag ne touche à plus rien !!!!!

5) * Le rapport s'affiche sur ton Bureau une fois terminé !

les rapports étant trop long, les héberger :

Rappel des dépôts

1 cijoint
2 pjoint
3 up2share
4 FEC
1
yasser0312 Messages postés 11 Date d'inscription vendredi 28 décembre 2012 Statut Membre Dernière intervention 28 décembre 2012
28 déc. 2012 à 12:29
merci de votre reponse voila mon rapport
Rapport de ZHPDiag v1.33.21 par Nicolas Coolman, Update du 27/12/2012
Run by yasser at 28/12/2012 12:05:42
State : Version à jour.
UAC :


---\\ Web Browser
MSIE: Internet Explorer v7.0.6001.18000 (Defaut)
GCIE: Google Chrome v23.0.1271.97

---\\ Windows Product Information
~ Langage: Français
Windows Vista Home Basic Edition, 32-bit Service Pack 1 (Build 6001)
Windows Server License Manager Script : OK
~ Vista, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 44MV3
Windows License : OK
Windows Automatic Updates : OK

---\\ System Information
~ Processor: x86 Family 15 Model 107 Stepping 2, AuthenticAMD
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 1917 MB (35% free)
System Restore: Activé (Enable)
System drive C: has 173 GB (60%) free of 286 GB

---\\ Logged in mode
~ Computer Name: PC-DE-YASSER
~ User Name: yasser
~ All Users Names: yasser, les autres, invite, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\yasser\AppData\Roaming\
~ %Desktop% : C:\Users\yasser\Desktop\
~ %Favorites% : C:\Users\yasser\Favorites\
~ %LocalAppData% : C:\Users\yasser\AppData\Local\
~ %StartMenu% : C:\Users\yasser\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\WINDOWS\
~ %System% : C:\WINDOWS\System32\

---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 173 Go of 286 Go)
D:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 12 Go)
E:\ CD-ROM drive (Not Inserted)
F:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
G:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
H:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
I:\ Floppy drive, Flash card reader, USB Key (Not Inserted)



---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Scan Security Center in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.4F554999D7D5F05DAAEBBA7B5BA1089D] - (.Microsoft Corporation - Explorateur Windows.) (.29/10/2008 - 07:29:41.) -- C:\WINDOWS\Explorer.exe [2927104]
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.21/01/2008 - 03:33:13.) -- C:\WINDOWS\System32\Wininit.exe [96768]
[MD5.DA5A72211661C7F162B332FEA4F09A69] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.21/04/2011 - 16:00:34.) -- C:\WINDOWS\System32\wininet.dll [833024]
[MD5.C2610B6BDBEFC053BBDAB4F1B965CB24] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.21/01/2008 - 03:34:38.) -- C:\WINDOWS\System32\Winlogon.exe [314880]
[MD5.48EB99503533C27AC6135648E5474457] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.21/04/2011 - 14:16:42.) -- C:\WINDOWS\system32\Drivers\AFD.sys [273408]
[MD5.2D9C903DC76A66813D350A562DE40ED9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.21/01/2008 - 03:32:21.) -- C:\WINDOWS\system32\Drivers\atapi.sys [21560]
[MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.21/01/2008 - 03:33:23.) -- C:\WINDOWS\system32\Drivers\Cdfs.sys [70144]
[MD5.1EC25CEA0DE6AC4718BF89F9E1778B57] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.21/01/2008 - 03:32:23.) -- C:\WINDOWS\system32\Drivers\Cdrom.sys [67072]
[MD5.A3E9FA213F443AC77C7746119D13FEEC] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.14/04/2011 - 15:24:14.) -- C:\WINDOWS\system32\Drivers\DfsC.sys [75264]
[MD5.C87B1EE051C0464491C1A7B03FA0BC99] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.21/01/2008 - 03:32:47.) -- C:\WINDOWS\system32\Drivers\HDAudBus.sys [53760]
[MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Pilote de port i8042.) (.21/01/2008 - 03:32:45.) -- C:\WINDOWS\system32\Drivers\i8042prt.sys [54784]
[MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) (.21/01/2008 - 03:34:06.) -- C:\WINDOWS\system32\Drivers\IpNat.sys [100864]
[MD5.5734A0F2BE7E495F7D3ED6EFD4B9F5A1] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.29/04/2011 - 13:49:35.) -- C:\WINDOWS\system32\Drivers\MRxSmb.sys [105984]
[MD5.7C5FEE5B1C5728507CD96FB4A13E7A02] - (.Microsoft Corporation - MBT Transport driver.) (.21/01/2008 - 03:34:49.) -- C:\WINDOWS\system32\Drivers\netBT.sys [184320]
[MD5.B4EFFE29EB4F15538FD8A9681108492D] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.21/01/2008 - 03:33:23.) -- C:\WINDOWS\system32\Drivers\ntfs.sys [1081912]
[MD5.0FA9B5055484649D63C303FE404E5F4D] - (.Microsoft Corporation - Pilote de port parallèle.) (.02/11/2006 - 09:51:30.) -- C:\WINDOWS\system32\Drivers\Parport.sys [79360]
[MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/01/2008 - 03:34:44.) -- C:\WINDOWS\system32\Drivers\Rasl2tp.sys [76288]
[MD5.FBC0BACD9C3D7F6956853F64A66E252D] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.21/01/2008 - 03:32:22.) -- C:\WINDOWS\system32\Drivers\rdpdr.sys [248832]
[MD5.031E6BCD53C9B2B9ACE111EAFEC347B6] - (.Microsoft Corporation - SMB Transport driver.) (.21/01/2008 - 03:34:49.) -- C:\WINDOWS\system32\Drivers\smb.sys [66560]
[MD5.D09276B1FAB033CE1D40DCBDF303D10F] - (.Microsoft Corporation - TDI Translation Driver.) (.21/01/2008 - 03:34:42.) -- C:\WINDOWS\system32\Drivers\tdx.sys [71680]
[MD5.D8B4A53DD2769F226B3EB374374987C9] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.21/01/2008 - 03:32:47.) -- C:\WINDOWS\system32\Drivers\volsnap.sys [227896]
~ Scan Generic Processes in 00mn 01s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 2/148
~ Mes musiques (My Musics) : 1/2
~ Mes Videos (My Videos) : 1/2
~ Mes Favoris (My Favorites) : 1/32
~ Mon Bureau (My Desktop) : 0/119
~ Menu demarrer (Programs) : 1/30
~ Scan Hidden Files in 00mn 00s



---\\ Processus lancés
[MD5.4AB15690A90D8AD0642FAB1FBF03804F] - (.LeapFrog Enterprises, Inc. - Monitor Application.) -- C:\Program Files\LeapFrog\LeapFrog Connect\Monitor.exe [295304] [PID.2800]
[MD5.5D61BE7DB55B026A5D61A3EED09D0EAD] - (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408] [PID.2836]
[MD5.5425B0E1A2FBEE08E5FE3F8A54FE487F] - (.Nokia - Nokia Launch Application.) -- C:\Users\yasser\Desktop\Nokia PC Suite 7\PCSuite.exe [1516632] [PID.2876]
[MD5.677C67E2EAF738DC820A3BC60D1C9675] - (.Nokia - Nokia PC Internet Access.) -- C:\Program Files\Nokia\PC Internet Access\NPCIA.exe [651264] [PID.2928]
[MD5.A2C1288BD3DEDE03B2327E5972678C2E] - (.McAfee, Inc. - McAfee Security Scanner Scheduler.) -- C:\Program Files\McAfee Security Scan\3.0.285\SSScheduler.exe [271808] [PID.3024]
[MD5.F96EBC5A624349D81DCC7600A3C5DC43] - (.Microsoft Corporation - Console IME.) -- C:\Windows\system32\conime.exe [69120] [PID.3632]
[MD5.62BB79160F86CD962F312C68C6239BFD] - (.Microsoft Corporation - Windows Update.) -- C:\Windows\system32\wuauclt.exe [53472] [PID.3180]
[MD5.083649EF692A066880C9326020915AFE] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [4297136] [PID.4440]
[MD5.AEE32C6C4019893E3F9D99786B88310D] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe [26104104] [PID.5392]
[MD5.2D08AC1443FFA7FBED9A5EA5FD49AEB3] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1242728] [PID.3584]
[MD5.E47122BA6141DCF9F440218837693B74] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [3806208] [PID.160]
[MD5.CF7769F13B3ECC5E2BF1B3D1C5831AE8] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 175.2.) -- C:\Windows\system32\nvvsvc.exe [118784] [PID.944]
[MD5.E077FCA2A7E79FB9BF67D3E30B5CE593] - (.Microsoft Corporation - Antimalware Service Executable.) -- c:\Program Files\Microsoft Security Client\MsMpEng.exe [20472] [PID.1056]
[MD5.0BA91E1358AD25236863039BB2609A2E] - (.Microsoft Corporation - Service de gestion des licences Microsoft.) -- C:\Windows\system32\SLsvc.exe [2623488] [PID.1344]
[MD5.4B555106290BD117334E9A08761C035A] - (...) -- ystem32\rundll32.exe [0] [PID.1576]
[MD5.A5BCBAF0477C4869B67E0195AEA4A9CD] - (.Avira GmbH - Antivirus Scheduler.) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe [136360] [PID.1784]
[MD5.3CCE4AFA4AACDB28E01A148394212186] - (.Avira GmbH - Antivirus On-Access Service.) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe [269480] [PID.2020]
[MD5.C8158791418A749F981D1423C74BA4EE] - (.LeapFrog Enterprises, Inc. - CommandService Application.) -- C:\Program Files\LeapFrog\LeapFrog Connect\CommandService.exe [7392136] [PID.2068]
[MD5.CDE000884FD7BAF0C1FDFE029B0891DE] - (.Avira GmbH - AntiVir shadow copy service.) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe [76968] [PID.2584]
[MD5.61600A35C185804E7B44886A92FE534C] - (.Avira GmbH - AntiVir WebGuard Service.) -- C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.exe [428200] [PID.3912]
[MD5.3B846434055F80D9E89D0742F3ADAD34] - (.Microsoft Corporation - Microsoft Network Realtime Inspection Servi.) -- c:\Program Files\Microsoft Security Client\NisSrv.exe [287824] [PID.3940]
[MD5.C3BB6CF8F9EE199005A2AAE2815AD756] - (.Nokia - ServiceLayer Module.) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [724376] [PID.1440]
[MD5.92210B62D245B8ACC8600E3141E48DEB] - (.Nokia - USB Media Server.) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe [174488] [PID.2700]
[MD5.CE565CA700A87863DC792163E2942628] - (.Nokia - Serial Media Server.) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe [126872] [PID.768]
[MD5.A3A30438C48D2D71556E120C9C7BA7A0] - (.Hewlett-Packard - HP Health Check Service.) -- c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [94208] [PID.848]
[MD5.8FA553E9AE69808D99C164733A0F9590] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [44808] [PID.1940]
~ Scan Processes Running in 00mn 03s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\yasser\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] None
~ Scan Google Browser in 00mn 00s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32_11_5_502_135.dll
P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
~ Scan Firefox Browser in 00mn 00s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {cfcb809c-3a22-4616-a916-6c007bd9d920} . (.Google Inc. - Google Update.) (No version) -- (.not file.)
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Google Inc. - Google Update.) (No version) -- (.not file.)
R3 - URLSearchHook: (no name) - {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} . (.Google Inc. - Google Update.) (No version) -- (.not file.)
R3 - URLSearchHook: (no name) - {cfcb809c-3a22-4616-a916-6c007bd9d920} . (.Google Inc. - Google Update.) (No version) -- (.not file.)
R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 0
~ Scan IE Browser in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Scan Proxy management in 00mn 00s



---\\
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
~ Scan Keys in 00mn 00s



---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Scan Hosts File in 00mn 00s
~ Nombre de lignes (Lines number): 20



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} Clé orpheline
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AOL Toolbar BHO - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} Clé orpheline
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll
O2 - BHO: FileConverter 1.5 - {cfcb809c-3a22-4616-a916-6c007bd9d920} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\FileConverter_1.5\prxtbFile.dll
~ Scan BHO in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: AOL Toolbar - [HKLM]{DE9C389F-3316-41A7-809B-AA305ED9D922} . (...) -- (.not file.)
O3 - Toolbar: FileConverter 1.5 Toolbar - [HKLM]{cfcb809c-3a22-4616-a916-6c007bd9d920} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\FileConverter_1.5\prxtbFile.dll
O3 - Toolbar: Google Toolbar - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: avast! WebRep - [HKLM]{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
~ Scan Toolbar in 00mn 00s



---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [avgnt] . (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
O4 - HKLM\..\Run: [Monitor] . (.LeapFrog Enterprises, Inc. - Monitor Application.) -- C:\Program Files\LeapFrog\LeapFrog Connect\Monitor.exe
O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- c:\Program Files\Microsoft Security Client\msseces.exe
O4 - HKLM\..\Run: [avast] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastUI.exe
O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [PC Suite Tray] . (.Nokia - Nokia Launch Application.) -- C:\Users\yasser\Desktop\Nokia PC Suite 7\PCSuite.exe
O4 - HKCU\..\Run: [NokiaPCInternetAccess] . (.Nokia - Nokia PC Internet Access.) -- C:\Program Files\Nokia\PC Internet Access\NPCIA.exe
O4 - HKCU\..\Run: [Optimizer Pro] . (.PC Utilities Pro - Fix, clean, optimize your PC!.) -- C:\Program Files\Optimizer Pro\OptProLauncher.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] oobefldr.dll
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] oobefldr.dll
O4 - HKUS\S-1-5-21-852344733-3975358385-614812635-1000\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-21-852344733-3975358385-614812635-1000\..\Run: [PC Suite Tray] . (.Nokia - Nokia Launch Application.) -- C:\Users\yasser\Desktop\Nokia PC Suite 7\PCSuite.exe
O4 - HKUS\S-1-5-21-852344733-3975358385-614812635-1000\..\Run: [NokiaPCInternetAccess] . (.Nokia - Nokia PC Internet Access.) -- C:\Program Files\Nokia\PC Internet Access\NPCIA.exe
O4 - HKUS\S-1-5-21-852344733-3975358385-614812635-1000\..\Run: [Optimizer Pro] . (.PC Utilities Pro - Fix, clean, optimize your PC!.) -- C:\Program Files\Optimizer Pro\OptProLauncher.exe
~ Scan Application in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Users\yasser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink DVD Suite Deluxe.lnk . (.CyberLink.) -- C:\Program Files\CyberLink\DVD Suite Deluxe\PowerStarter.exe
O4 - Global Startup: C:\Users\yasser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\yasser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Mail\WinMail.exe
O4 - Global Startup: C:\Users\yasser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
O4 - Global Startup: C:\Users\yasser\Desktop\27132-91964-spyware-doctor.exe.lnk . (.PC Tools.) -- C:\Users\yasser\AppData\Local\Temp\27132-91964-spyware-doctor.exe
O4 - Global Startup: C:\Users\yasser\Desktop\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\yasser\Desktop\Supprimer System Progressive Protection - YouTube.url . (...) -- C:\Users\yasser\Desktop\Supprimer System Progressive Protection - YouTube.url
O4 - Global Startup: C:\Users\yasser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\les autres\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink DVD Suite Deluxe.lnk . (.CyberLink.) -- C:\Program Files\CyberLink\DVD Suite Deluxe\PowerStarter.exe
O4 - Global Startup: C:\Users\les autres\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\les autres\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Mail\WinMail.exe
O4 - Global Startup: C:\Users\les autres\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
O4 - Global Startup: C:\Users\les autres\Desktop\2012-12-02 anniversaire yasser - Raccourci.lnk . (...) -- C:\Users\les autres\Desktop\2012-12-02 anniversaire yasser
O4 - Global Startup: C:\Users\les autres\Desktop\Google Chrome.lnk . (...) -- C:\Users\yasser\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
O4 - Global Startup: C:\Users\les autres\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (...) -- C:\Users\yasser\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
O4 - Global Startup: C:\Users\les autres\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\mbam.exe - Raccourci.lnk . (.Malwarebytes Corporation.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
O4 - Global Startup: C:\Users\les autres\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
O4 - Global Startup: C:\Users\invite\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink DVD Suite Deluxe.lnk . (.CyberLink.) -- C:\Program Files\CyberLink\DVD Suite Deluxe\PowerStarter.exe
O4 - Global Startup: C:\Users\invite\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\invite\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Mail\WinMail.exe
O4 - Global Startup: C:\Users\invite\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
O4 - Global Startup: C:\Users\invite\Desktop\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\invite\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\invite\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Scan Global Startup in 00mn 04s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
~ Scan Winsock in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{129F8596-9796-4458-9A78-6E451546AD1D}: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{129F8596-9796-4458-9A78-6E451546AD1D}: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CS2\Services\Tcpip\..\{129F8596-9796-4458-9A78-6E451546AD1D}: DhcpNameServer = 192.168.0.254
~ Scan Domain in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\system32\mshtml.dll
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\System32\itss.dll
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\system32\mshtml.dll
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\system32\mshtml.dll
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\WINDOWS\system32\inetcomm.dll
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\System32\itss.dll
O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\system32\mshtml.dll
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\system32\mshtml.dll
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\System32\mscoree.dll
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\System32\mscoree.dll
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\System32\mscoree.dll
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
~ Scan Protocole Additionnel in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\system32\webcheck.dll
~ Scan SSODL in 00mn 00s



---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - (.not file.)
~ Scan STS/SSO in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) . (.Avira GmbH - Antivirus Scheduler.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) . (.Avira GmbH - Antivirus On-Access Service.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira AntiVir WebGuard (AntiVirWebService) . (.Avira GmbH - AntiVir WebGuard Service.) - C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.exe
O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: HP Health Check Service (HP Health Check Service) . (.Hewlett-Packard - HP Health Check Service.) - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: LeapFrog Connect Device Service (LeapFrog Connect Device Service) . (.LeapFrog Enterprises, Inc. - CommandService Application.) - C:\Program Files\LeapFrog\LeapFrog Connect\CommandService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 175.2.) - C:\WINDOWS\System32\nvvsvc.exe
~ Scan Services in 00mn 01s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Scan Desktop Component in 00mn 00s



---\\ BootExecute (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ Scan Keys in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-852344733-3975358385-614812635-1001Core.job
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-852344733-3975358385-614812635-1001UA.job
[MD5.95CE557D16A75606CCC2D7F3B0B0BCCB] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[MD5.7F19838AC317C34FCED020BE529AF71E] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe
[MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskUserS-1-5-21-852344733-3975358385-614812635-1001Core] (...) -- C:\Users\yasser\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskUserS-1-5-21-852344733-3975358385-614812635-1001UA] (...) -- C:\Users\yasser\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.)
[MD5.EC16CDD6BA4AA4F02C3615F997F6FD84] [APT] [HP Health Check] (.Hewlett-Packard.) -- c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
[MD5.627C50E15FAE0382B5F71C4E0BF5F49F] [APT] [RecoveryCD] (...) -- C:\Program Files\Hewlett-Packard\SDP\RemEngine.exe
[MD5.00000000000000000000000000000000] [APT] [Scheduled Update for Ask Toolbar] (...) -- C:\Program Files\Ask.com\UpdateTask.exe (.not file.)
[MD5.8A447432636CC71B1036034B9BFF5342] [APT] [Scheduled Maintenance] (.PC-Doctor, Inc..) -- C:\Program Files\PC-Doctor for Windows\RunProfiler.exe
[MD5.EFB0FCD1CD300E5708E73230D91D6532] [APT] [Scheduled Maintenance Swap] (.PC-Doctor, Inc..) -- C:\Program Files\PC-Doctor for Windows\task_swap.exe
~ Scan Scheduled Task in 00mn 06s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\WINDOWS\System32\wmploc.dll
O40 - ASIC: Internet Explorer - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\system32\ie4uinit.exe
O40 - ASIC: Browser Customizations - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - Personnalisation d'IEAK.) -- C:\Windows\system32\iedkcs32.dll
O40 - ASIC: Microsoft Windows Media Player 11.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll
O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\WINDOWS\System32\themeui.dll
O40 - ASIC: Microsoft Windows Mail 7 - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\WINDOWS\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\WINDOWS\System32\wmploc.dll
O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\System32\shell32.dll
O40 - ASIC: Internet Explorer - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\system32\ie4uinit.exe
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
O40 - ASIC: Adobe Flash Player - {D27CDB6E-AE6D-11CF-96B8-444553540000} . (.Adobe Systems, Inc. - Adobe Flash Player 11.5 r502.) -- C:\Windows\system32\Macromed\Flash\Flash32_11_5_502_135.ocx
~ Scan Active Setup in 00mn 00s



---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\WINDOWS\system32\drivers\afd.sys
O41 - Driver: (avipbb) . (.Avira GmbH - Avira Driver for Security Enhancement.) - C:\WINDOWS\System32\DRIVERS\avipbb.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\WINDOWS\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\WINDOWS\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\WINDOWS\System32\Drivers\dfsc.sys
O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\WINDOWS\System32\DRIVERS\i8042prt.sys
O41 - Driver: (kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\WINDOWS\System32\DRIVERS\kbdclass.sys
O41 - Driver: (kbdhid) . (.Microsoft Corporation - Pilote de filtre clavier HID.) - C:\WINDOWS\System32\DRIVERS\kbdhid.sys
O41 - Driver: (mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\WINDOWS\System32\DRIVERS\mouclass.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\WINDOWS\System32\DRIVERS\netbios.sys
O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\WINDOWS\System32\DRIVERS\netbt.sys
O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\WINDOWS\System32\drivers\nsiproxy.sys
O41 - Driver: C:\WINDOWS\System32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\WINDOWS\System32\DRIVERS\pacer.sys
O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\WINDOWS\System32\DRIVERS\rasacd.sys
O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\WINDOWS\System32\DRIVERS\rdbss.sys
O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\WINDOWS\System32\DRIVERS\RDPCDD.sys
O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\WINDOWS\System32\drivers\rdpencdd.sys
O41 - Driver: C:\WINDOWS\System32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\WINDOWS\System32\DRIVERS\smb.sys
O41 - Driver: (ssmdrv) . (.Avira GmbH - AVIRA SnapShot Driver.) - C:\WINDOWS\System32\DRIVERS\ssmdrv.sys
O41 - Driver: C:\WINDOWS\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\WINDOWS\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\WINDOWS\System32\DRIVERS\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\WINDOWS\system32\drivers\vga.sys
O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\WINDOWS\System32\DRIVERS\wanarp.sys
O41 - Driver: Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0 (ws2ifsl) . (.Microsoft Corporation - Winsock2 IFS Layer.) - C:\WINDOWS\system32\drivers\ws2ifsl.sys
~ Scan Drivers in 00mn 02s



---\\ Logiciels installés (O42)
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {14DC0059-00F1-4F62-BD1A-AB23CD51A95E}
O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Reader 8.1.2 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A81200000003}
O42 - Logiciel: Avira AntiVir Personal - Free Antivirus - (.Avira GmbH.) [HKLM] -- Avira AntiVir Desktop
O42 - Logiciel: CyberLink DVD Suite Deluxe - (.CyberLink Corp..) [HKLM] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
O42 - Logiciel: DVD Play - (.Hewlett-Packard.) [HKLM] -- {45D707E9-F3C4-11D9-A373-0050BAE317E1}
O42 - Logiciel: FileConverter 1.5 Toolbar - (.FileConverter 1.5.) [HKLM] -- FileConverter_1.5 Toolbar
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: HP Active Support Library - (.Hewlett-Packard.) [HKLM] -- {5DAA9C36-8F8B-462F-8CCA-E205BC3751F5}
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM] -- {C27C82E4-9C53-4D76-9ED3-A01A3D5EE679}
O42 - Logiciel: HP Customer Feedback - (.Hewlett-Packard.) [HKLM] -- {9DBA770F-BF73-4D39-B1DF-6035D95268FC}
O42 - Logiciel: HP Demo - (.Hewlett-Packard.) [HKLM] -- {48BF4489-0C58-4E80-BB17-94A673CE310A}
O42 - Logiciel: HP Easy Setup - Frontend - (.Hewlett-Packard.) [HKLM] -- {F405DC00-37F3-4A5F-97F4-C1310CCEE53A}
O42 - Logiciel: HP Recovery Manager RSS - (.Hewlet Packard Company.) [HKLM] -- {A0640EC2-B97E-4FC1-AD14-227C9E386BB4}
O42 - Logiciel: HP Total Care Advisor - (.Hewlett-Packard.) [HKLM] -- {f32502b5-5b64-4882-bf61-77f23edcac4f}
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {C8FD5BC1-92EF-4C15-92A9-F9AC7F61985F}
O42 - Logiciel: Hercules Classic Link - (.Hercules.) [HKLM] -- {B1549CC1-EB81-4E7C-9C7C-8B97CD9FD37A}
O42 - Logiciel: Hercules Webcam - (.Pas de propriétaire.) [HKLM] -- {A250D351-A07F-4D5D-AB6C-693C69B9BFAF}
O42 - Logiciel: Hewlett-Packard Active Check for Health Check - (.Hewlett-Packard.) [HKLM] -- {254C37AA-6B72-4300-84F6-98A82419187E}
O42 - Logiciel: Hewlett-Packard Asset Agent for Health Check - (.HP.) [HKLM] -- {669D4A35-146B-4314-89F1-1AC3D7B88367}
O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243}
O42 - Logiciel: LeapFrog Connect (French) - (.LeapFrog.) [HKLM] -- UPCShell
O42 - Logiciel: LeapFrog Connect - (.LeapFrog.) [HKLM] -- {C9505888-CD3C-4E59-BBD8-07D155D7E912}
O42 - Logiciel: LeapFrog Tag Plugin - (.LeapFrog.) [HKLM] -- {A1768501-00ED-4F53-B128-FF806D90C138}
O42 - Logiciel: Lidl-Photos FR - (.Pas de propriétaire.) [HKLM] -- Lidl-Photos FR
O42 - Logiciel: MSVC90_x86 - (.Nokia.) [HKLM] -- {AF111648-99A1-453E-81DD-80DBBF6DAD0D}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Malwarebytes Anti-Malware version 1.65.1.1000 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM] -- McAfee Security Scan
O42 - Logiciel: Media Player Classic - Home Cinema v1.5.2.3456 - (.MPC-HC Team.) [HKLM] -- {2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM] -- {98EABC7F-B1A1-43A5-B505-5B4EC3908DCD}
O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM] -- Microsoft Security Client
O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {3B160861-7250-451E-B5EE-8B92BF30A710}
O42 - Logiciel: My HP Games - (.WildTangent.) [HKLM] -- WildTangent hp Master Uninstall
O42 - Logiciel: NVIDIA Drivers - (.Pas de propriétaire.) [HKLM] -- NVIDIA Drivers
O42 - Logiciel: Nokia Connectivity Cable Driver - (.Nokia.) [HKLM] -- {A57025CC-5F2E-4D01-B387-06DB10500D43}
O42 - Logiciel: Nokia PC Internet Access - (.Nokia.) [HKLM] -- Nokia PC Internet Access
O42 - Logiciel: Nokia PC Internet Access - (.Nokia.) [HKLM] -- {653A52D8-127C-476D-BAD9-27117A3A4959}
O42 - Logiciel: Nokia PC Suite - (.Nokia.) [HKLM] -- Nokia PC Suite
O42 - Logiciel: Nokia PC Suite - (.Nokia.) [HKLM] -- {866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}
O42 - Logiciel: Optimizer Pro v3.0 - (.PC Utilities Pro.) [HKLM] -- Optimizer Pro_is1
O42 - Logiciel: Outils de diagnostic du matériel - (.PC-Doctor, Inc..) [HKLM] -- PC-Doctor for Windows
O42 - Logiciel: PC Connectivity Solution - (.Nokia.) [HKLM] -- {644F4910-E812-49AD-93EC-86828CB81A0D}
O42 - Logiciel: Package de pilotes Windows - Nokia Modem (02/25/2011 4.7) - (.Nokia.) [HKLM] -- E0AC723A3DE3A04256288CADBBB011B112AED454
O42 - Logiciel: Package de pilotes Windows - Nokia Modem (02/25/2011 7.01.0.9) - (.Nokia.) [HKLM] -- 72A50F48CC5601190B9C4E74D81161693133E7F7
O42 - Logiciel: Package de pilotes Windows - Nokia pccsmcfd "LegacyDriver" (05/31/2012 7.1 - (.Nokia.) [HKLM] -- 17D063A0A9F5D5A225B76B1D9BCB5ADBE85C8382
O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM] -- {40BF1E83-20EB-11D8-97C5-0009C5020658}
O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}
O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1}
O42 - Logiciel: Python 2.5.2 - (.Python Software Foundation.) [HKLM] -- {6B976ADF-8AE8-434E-B282-A06C7F624D2F}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: SPORE Creature Creator Trial Edition - (.Electronic Arts.) [HKLM] -- {ECEE0279-785F-4CB3-9F28-E69813234BF8}
O42 - Logiciel: SimpleTV 0.4.5 b2 - (.SergeyVS.) [HKLM] -- {290A2821-B1F8-4565-B49A-24F349A5B5CB}_is1
O42 - Logiciel: Skype(TM) 4.2 - (.Skype Technologies S.A..) [HKLM] -- {5C474A83-A45F-470C-9AC8-2BD1C251BF9A}
O42 - Logiciel: Use the entry named LeapFrog Connect to uninstall (LeapFrog Tag Plugin) - (.LeapFrog.) [HKLM] -- TagPlugin
O42 - Logiciel: VLC media player 1.1.11 - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: WinRAR 4.01 (32 bits) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver
O42 - Logiciel: Windows Driver Package - LeapFrog (FlyUsb) USB (11/05/2008 1.1.1.0) - (.LeapFrog.) [HKLM] -- 781745E87AFF80C0C1388CFF79D19ECAB2E9BB47
O42 - Logiciel: Windows Driver Package - Leapfrog (Leapfrog-USBLAN) Net (09/10/2009 02.03. - (.Leapfrog.) [HKLM] -- 8F14F2ECEDE68D26EA515B48DC25B39103C4FE8D
O42 - Logiciel: avast! Free Antivirus v7.0.1474.0 - (.AVAST Software.) [HKLM] -- avast
O42 - Logiciel: muvee autoProducer 6.1 - (.muvee Technologies.) [HKLM] -- {B9AB88D8-3A09-4A4A-8993-0E2F6F9F294B}

---\\ HKCU & HKLM Software Keys
[HKCU\Software\AOL]
[HKCU\Software\Adobe]
[HKCU\Software\AppDataLow\Software\Conduit]
[HKCU\Software\AppDataLow\Software\FileConverter_1.5]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software\PriceGong]
[HKCU\Software\AppDataLow\Software\Yahoo]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\Avast Software]
[HKCU\Software\Avira]
[HKCU\Software\CeWe Color]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Convar]
[HKCU\Software\CyberLink]
[HKCU\Software\Digital River]
[HKCU\Software\EasyBits]
[HKCU\Software\Facebook]
[HKCU\Software\Gabest]
[HKCU\Software\GetData]
[HKCU\Software\Google]
[HKCU\Software\GridinSoft]
[HKCU\Software\HP]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\Licenses]
[HKCU\Software\Macromedia]
[HKCU\Software\MainConcept (Muvee)]
[HKCU\Software\MainConcept]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\Mooii]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\NVIDIA Corporation]
[HKCU\Software\Netscape]
[HKCU\Software\Nokia]
[HKCU\Software\Odboso]
[HKCU\Software\Optimizer Pro]
[HKCU\Software\Policies]
[HKCU\Software\RegisteredApplications]
[HKCU\Software\SimpleTV by SergeyVS#3]
[HKCU\Software\SkypeRS]
[HKCU\Software\Skype]
[HKCU\Software\Systweak]
[HKCU\Software\Trolltech]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Yahoo]
[HKCU\Software\ZONER]
[HKCU\Software\kde.org]
[HKLM\Software\685D6D1C-D73A-4F37-B7E5E53660311DDB]
[HKLM\Software\AVAST Software]
[HKLM\Software\Adobe]
[HKLM\Software\AdwCleaner]
[HKLM\Software\America Online]
[HKLM\Software\Avira]
[HKLM\Software\BrowserChoice]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Conduit]
[HKLM\Software\CyberLink]
[HKLM\Software\Debug]
[HKLM\Software\EasyBits]
[HKLM\Software\Electronic Arts]
[HKLM\Software\EnigmaSoftwareGroup]
[HKLM\Software\FileConverter_1.5]
[HKLM\Software\Gabest]
[HKLM\Software\Google]
[HKLM\Software\HPS]
[HKLM\Software\HP]
[HKLM\Software\Hercules Technologies]
[HKLM\Software\Hercules]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\Iminent]
[HKLM\Software\Intel]
[HKLM\Software\LeapFrog]
[HKLM\Software\Licenses]
[HKLM\Software\LightScribe]
[HKLM\Software\Macromedia]
[HKLM\Software\Malwarebytes' Anti-Malware]
[HKLM\Software\McAfee.com]
[HKLM\Software\Mircrosoft]
[HKLM\Software\Mooii]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\NVIDIA Corporation]
[HKLM\Software\Nokia]
[HKLM\Software\ODBC]
[HKLM\Software\PC Connectivity Solution]
[HKLM\Software\PC-Doctor]
[HKLM\Software\PCSuite]
[HKLM\Software\PCTools]
[HKLM\Software\PixArt]
[HKLM\Software\Policies]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SRS Labs]
[HKLM\Software\Skype]
[HKLM\Software\Stellar Information Systems Ltd.]
[HKLM\Software\Symantec]
[HKLM\Software\Systweak]
[HKLM\Software\Uniblue]
[HKLM\Software\VideoLAN]
[HKLM\Software\Vittalia]
[HKLM\Software\Volatile]
[HKLM\Software\WOW6432Node]
[HKLM\Software\WildTangent]
[HKLM\Software\Wilson WindowWare]
[HKLM\Software\WinRAR]
[HKLM\Software\Windows]
[HKLM\Software\X-AVCSD]
[HKLM\Software\Yahoo]
[HKLM\Software\ZONER]
[HKLM\Software\mcafeeupdater]
[HKLM\Software\muvee Technologies]
~ Scan Softwares in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 13/09/2012 - 13:43:13 - [191,377] ----D C:\Program Files\Adobe
O43 - CFD: 28/12/2012 - 09:25:56 - [285,087] ----D C:\Program Files\AVAST Software
O43 - CFD: 19/01/2012 - 17:39:15 - [207,904] ----D C:\Program Files\Avira
O43 - CFD: 26/12/2012 - 09:49:45 - [270,830] ----D C:\Program Files\Common Files
O43 - CFD: 14/12/2012 - 11:16:35 - [0,609] ----D C:\Program Files\Conduit
O43 - CFD: 28/08/2008 - 04:55:00 - [700,953] ----D C:\Program Files\CyberLink
O43 - CFD: 03/12/2012 - 17:40:20 - [2,049] ----D C:\Program Files\DIFX
O43 - CFD: 14/08/2012 - 17:06:00 - [66,413] ----D C:\Program Files\EasyBits For Kids
O43 - CFD: 25/12/2012 - 20:24:35 - [26,924] ----D C:\Program Files\Enigma Software Group
O43 - CFD: 19/01/2012 - 16:48:34 - [0] R---D C:\Program Files\Fichiers communs
O43 - CFD: 14/12/2012 - 11:16:34 - [4,849] ----D C:\Program Files\FileConverter_1.5
O43 - CFD: 26/12/2012 - 12:50:38 - [259,421] ----D C:\Program Files\Google
O43 - CFD: 14/12/2012 - 11:10:59 - [14,270] ----D C:\Program Files\GridinSoft Trojan Killer
O43 - CFD: 28/08/2008 - 05:08:17 - [89,982] ----D C:\Program Files\Hewlett-Packard
O43 - CFD: 28/08/2008 - 04:58:06 - [59,749] ----D C:\Program Files\HP
O43 - CFD: 28/08/2008 - 05:07:27 - [294,652] ----D C:\Program Files\HP Games
O43 - CFD: 19/01/2012 - 18:38:52 - [79,949] --H-D C:\Program Files\InstallShield Installation Information
O43 - CFD: 21/01/2012 - 11:49:25 - [1,487] ----D C:\Program Files\Internet Explorer
O43 - CFD: 03/12/2012 - 17:39:39 - [56,405] ----D C:\Program Files\LeapFrog
O43 - CFD: 07/09/2012 - 17:56:33 - [196,670] ----D C:\Program Files\Lidl-Photos
O43 - CFD: 14/12/2012 - 13:02:28 - [12,644] ----D C:\Program Files\Malwarebytes' Anti-Malware
O43 - CFD: 03/12/2012 - 18:32:22 - [10,715] ----D C:\Program Files\McAfee Security Scan
O43 - CFD: 24/01/2012 - 09:19:37 - [19,830] ----D C:\Program Files\Media Player Classic - Home Cinema
O43 - CFD: 02/11/2006 - 13:35:51 - [44,260] ----D C:\Program Files\Microsoft Games
O43 - CFD: 19/01/2012 - 16:53:08 - [52,106] ----D C:\Program Files\Microsoft Office
O43 - CFD: 26/12/2012 - 19:44:38 - [20,985] ----D C:\Program Files\Microsoft Security Client
O43 - CFD: 12/12/2012 - 16:01:41 - [137,991] ----D C:\Program Files\Microsoft Works
O43 - CFD: 23/01/2012 - 10:29:00 - [0,015] ----D C:\Program Files\Microsoft.NET
O43 - CFD: 21/01/2012 - 11:49:09 - [19,522] ----D C:\Program Files\Movie Maker
O43 - CFD: 02/11/2006 - 13:35:51 - [0,025] ----D C:\Program Files\MSBuild
O43 - CFD: 20/01/2012 - 09:05:16 - [0] ----D C:\Program Files\MSXML 4.0
O43 - CFD: 28/08/2008 - 04:55:44 - [148,174] ----D C:\Program Files\muvee Technologies
O43 - CFD: 14/10/2012 - 17:22:28 - [7,213] ----D C:\Program Files\Nokia
O43 - CFD: 19/01/2012 - 16:50:27 - [3,183] R---D C:\Program Files\Online Services
O43 - CFD: 14/12/2012 - 14:51:24 - [25,791] ----D C:\Program Files\Optimizer Pro
O43 - CFD: 14/10/2012 - 17:00:11 - [15,046] ----D C:\Program Files\PC Connectivity Solution
O43 - CFD: 26/12/2012 - 10:15:15 - [2,003] ----D C:\Program Files\PC Tools
O43 - CFD: 28/08/2008 - 05:02:23 - [79,385] ----D C:\Program Files\PC-Doctor for Windows
O43 - CFD: 28/08/2008 - 04:44:43 - [59,933] ----D C:\Program Files\Realtek
O43 - CFD: 02/11/2006 - 13:35:51 - [36,894] ----D C:\Program Files\Reference Assemblies
O43 - CFD: 30/01/2012 - 18:49:00 - [84,935] ----D C:\Program Files\SimpleTV
O43 - CFD: 09/02/2012 - 15:57:14 - [24,895] R---D C:\Program Files\Skype
O43 - CFD: 02/11/2006 - 13:58:18 - [0] --H-D C:\Program Files\Uninstall Information
O43 - CFD: 20/01/2012 - 08:52:32 - [80,790] ----D C:\Program Files\VideoLAN
O43 - CFD: 28/08/2008 - 14:12:57 - [0,970] ----D C:\Program Files\Windows Calendar
O43 - CFD: 28/08/2008 - 14:12:57 - [2,633] ----D C:\Program Files\Windows Collaboration
O43 - CFD: 28/08/2008 - 14:12:57 - [4,284] ----D C:\Program Files\Windows Defender
O43 - CFD: 21/01/2012 - 11:49:33 - [8,525] ----D C:\Program Files\Windows Mail
O43 - CFD: 21/01/2012 - 11:49:35 - [4,291] ----D C:\Program Files\Windows Media Player
O43 - CFD: 19/01/2012 - 16:48:34 - [7,577] ----D C:\Program Files\Windows NT
O43 - CFD: 28/08/2008 - 14:12:57 - [7,786] ----D C:\Program Files\Windows Photo Gallery
O43 - CFD: 19/01/2012 - 16:50:07 - [6,394] ----D C:\Program Files\Windows Sidebar
O43 - CFD: 21/01/2012 - 19:58:19 - [3,865] ----D C:\Program Files\WinRAR
O43 - CFD: 14/12/2012 - 11:11:38 - [0,203] ----D C:\Program Files\Yahoo!
O43 - CFD: 28/12/2012 - 12:06:12 - [10,032] ----D C:\Program Files\ZHPDiag
O43 - CFD: 19/01/2012 - 16:51:05 - [10,315] ----D C:\Program Files\Common Files\Adobe
O43 - CFD: 13/09/2012 - 13:43:10 - [39,997] ----D C:\Program Files\Common Files\Adobe AIR
O43 - CFD: 28/08/2008 - 04:47:36 - [4,780] ----D C:\Program Files\Common Files\InstallShield
O43 - CFD: 14/12/2012 - 14:29:19 - [0,040] ---AD C:\Program Files\Common Files\LightScribe
O43 - CFD: 28/08/2008 - 04:55:10 - [0,054] ---AD C:\Program Files\Common Files\LS Getting Started
O43 - CFD: 19/01/2012 - 16:53:11 - [78,360] ----D C:\Program Files\Common Files\microsoft shared
O43 - CFD: 28/08/2008 - 04:55:44 - [48,020] ----D C:\Program Files\Common Files\muvee Technologies
O43 - CFD: 14/10/2012 - 17:03:27 - [6,937] ----D C:\Program Files\Common Files\Nokia
O43 - CFD: 26/12/2012 - 19:48:11 - [2,909] ----D C:\Program Files\Common Files\PC Tools
O43 - CFD: 14/10/2012 - 17:03:37 - [0,084] ----D C:\Program Files\Common Files\PCSuite
O43 - CFD: 02/11/2006 - 12:18:33 - [0,003] ----D C:\Program Files\Common Files\Services
O43 - CFD: 02/11/2006 - 12:18:33 - [39,198] ----D C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 19/01/2012 - 17:23:09 - [0,496] ----D C:\Program Files\Common Files\Symantec Shared
O43 - CFD: 28/08/2008 - 14:12:57 - [8,286] ----D C:\Program Files\Common Files\System
O43 - CFD: 25/12/2012 - 20:22:53 - [31,350] ----D C:\Program Files\Common Files\Wise Installation Wizard
O43 - CFD: 07/12/2012 - 09:53:01 - [0,001] ----D C:\ProgramData\Adobe
O43 - CFD: 28/08/2008 - 05:08:39 - [13,001] ----D C:\ProgramData\AOL
O43 - CFD: 19/01/2012 - 16:48:34 - [0] --H-D C:\ProgramData\Application Data
O43 - CFD: 28/12/2012 - 09:25:56 - [22,053] ----D C:\ProgramData\AVAST Software
O43 - CFD: 19/01/2012 - 17:39:15 - [105,835] ----D C:\ProgramData\Avira
O43 - CFD: 19/01/2012 - 16:48:34 - [0] --H-D C:\ProgramData\Bureau
O43 - CFD: 28/08/2012 - 14:11:31 - [0,006] ----D C:\ProgramData\CyberLink
O43 - CFD: 19/01/2012 - 16:48:34 - [0] --H-D C:\ProgramData\Documents
O43 - CFD: 19/01/2012 - 16:48:34 - [0] --H-D C:\ProgramData\Favoris
O43 - CFD: 28/12/2012 - 11:16:15 - [0,007] ----D C:\ProgramData\FEEE07E6D9C2691F0000FEED090271C0
O43 - CFD: 07/02/2012 - 15:16:09 - [0,514] ----D C:\ProgramData\Google
O43 - CFD: 19/01/2012 - 16:45:16 - [62,047] ----D C:\ProgramData\Hewlett-Packard
O43 - CFD: 19/04/2012 - 12:35:08 - [2,377] ----D C:\ProgramData\HP
O43 - CFD: 09/09/2012 - 16:14:12 - [0,356] ----D C:\ProgramData\hps
O43 - CFD: 14/10/2012 - 17:22:16 - [274,854] ----D C:\ProgramData\Installations
O43 - CFD: 03/12/2012 - 17:38:14 - [71,829] ----D C:\ProgramData\Leapfrog
O43 - CFD: 19/01/2012 - 18:52:08 - [16,691] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 03/12/2012 - 17:43:45 - [0,047] ----D C:\ProgramData\McAfee
O43 - CFD: 14/12/2012 - 13:02:28 - [0,001] ----D C:\ProgramData\McAfee Security Scan
O43 - CFD: 19/01/2012 - 16:48:34 - [0] --H-D C:\ProgramData\Menu Démarrer
O43 - CFD: 26/12/2012 - 19:39:33 - [925,901] -S--D C:\ProgramData\Microsoft
O43 - CFD: 19/01/2012 - 16:48:34 - [0] --H-D C:\ProgramData\Modèles
O43 - CFD: 28/08/2008 - 04:55:41 - [0] ----D C:\ProgramData\muvee Technologies
O43 - CFD: 27/12/2012 - 07:40:59 - [0,560] ----D C:\ProgramData\MXSkypeRecorder
O43 - CFD: 19/01/2012 - 16:58:43 - [0,177] ----D C:\ProgramData\NVIDIA
O43 - CFD: 29/08/2012 - 14:08:42 - [0,000] ----D C:\ProgramData\PC Drivers HeadQuarters
O43 - CFD: 07/12/2012 - 15:16:51 - [0,011] ----D C:\ProgramData\PC Suite
O43 - CFD: 26/12/2012 - 19:25:57 - [322,564] ----D C:\ProgramData\PC Tools
O43 - CFD: 28/08/2008 - 05:02:21 - [0,001] ----D C:\ProgramData\PC-Doctor
O43 - CFD: 28/08/2008 - 05:02:21 - [1,911] ----D C:\ProgramData\PC-Doctor for Windows
O43 - CFD: 09/02/2012 - 16:09:37 - [0,618] ----D C:\ProgramData\Skype
O43 - CFD: 19/01/2012 - 17:06:34 - [0,002] ----D C:\ProgramData\Symantec
O43 - CFD: 26/12/2012 - 19:26:10 - [0,000] ---AD C:\ProgramData\TEMP
O43 - CFD: 09/09/2012 - 16:13:47 - [110,307] ----D C:\ProgramData\tmp
O43 - CFD: 28/08/2008 - 05:07:59 - [1358,985] ----D C:\ProgramData\WildTangent
O43 - CFD: 14/12/2012 - 11:12:06 - [0,583] ----D C:\ProgramData\Yahoo!
O43 - CFD: 13/09/2012 - 13:43:03 - [0,439] ----D C:\Users\yasser\AppData\Roaming\Adobe
O43 - CFD: 19/01/2012 - 17:43:31 - [0] ----D C:\Users\yasser\AppData\Roaming\Avira
O43 - CFD: 04/09/2012 - 09:37:15 - [0] ----D C:\Users\yasser\AppData\Roaming\GetRightToGo
O43 - CFD: 09/02/2012 - 16:53:15 - [0,005] ----D C:\Users\yasser\AppData\Roaming\Google
O43 - CFD: 19/01/2012 - 16:59:28 - [0,289] ----D C:\Users\yasser\AppData\Roaming\Hewlett-Packard
O43 - CFD: 19/01/2012 - 16:57:21 - [0] ----D C:\Users\yasser\AppData\Roaming\Identities
O43 - CFD: 19/01/2012 - 18:38:35 - [0] ----D C:\Users\yasser\AppData\Roaming\InstallShield
O43 - CFD: 19/01/2012 - 16:55:48 - [0,144] ----D C:\Users\yasser\AppData\Roaming\Macromedia
O43 - CFD: 19/01/2012 - 18:52:31 - [1,696] ----D C:\Users\yasser\AppData\Roaming\Malwarebytes
O43 - CFD: 11/02/2012 - 20:01:24 - [0,000] ----D C:\Users\yasser\AppData\Roaming\Media Player Classic
O43 - CFD: 26/12/2012 - 10:08:28 - [0,645] -S--D C:\Users\yasser\AppData\Roaming\Microsoft
O43 - CFD: 14/10/2012 - 17:06:06 - [0,001] ----D C:\Users\yasser\AppData\Roaming\Nokia
O43 - CFD: 08/11/2012 - 12:31:27 - [0,000] ----D C:\Users\yasser\AppData\Roaming\PC Suite
O43 - CFD: 13/09/2012 - 14:38:20 - [0,036] ----D C:\Users\yasser\AppData\Roaming\PhotoScape
O43 - CFD: 11/02/2012 - 20:06:22 - [40,726] ----D C:\Users\yasser\AppData\Roaming\SimpleTV V03
O43 - CFD: 28/12/2012 - 11:46:00 - [4,497] ----D C:\Users\yasser\AppData\Roaming\Skype
O43 - CFD: 19/01/2012 - 16:58:10 - [0] ----D C:\Users\yasser\AppData\Roaming\Symantec
O43 - CFD: 14/12/2012 - 14:27:29 - [0] ----D C:\Users\yasser\AppData\Roaming\Systweak
O43 - CFD: 26/12/2012 - 09:49:09 - [0,007] ----D C:\Users\yasser\AppData\Roaming\TestApp
O43 - CFD: 14/12/2012 - 13:02:48 - [0,074] ----D C:\Users\yasser\AppData\Roaming\vlc
O43 - CFD: 21/01/2012 - 19:58:47 - [0,000] ----D C:\Users\yasser\AppData\Roaming\WinRAR
O43 - CFD: 13/09/2012 - 13:43:02 - [0,216] ----D C:\Users\yasser\AppData\Local\Adobe
O43 - CFD: 19/01/2012 - 16:58:57 - [0,014] ----D C:\Users\yasser\AppData\Local\AOL
O43 - CFD: 19/01/2012 - 16:49:03 - [0] ----D C:\Users\yasser\AppData\Local\Application Data
O43 - CFD: 14/12/2012 - 11:16:33 - [0,063] ----D C:\Users\yasser\AppData\Local\Conduit
O43 - CFD: 19/01/2012 - 16:58:50 - [0] ----D C:\Users\yasser\AppData\Local\DVDPlay
O43 - CFD: 28/12/2012 - 11:57:05 - [0,065] ----D C:\Users\yasser\AppData\Local\Facebook
O43 - CFD: 26/12/2012 - 19:27:18 - [248,972] ----D C:\Users\yasser\AppData\Local\Google
O43 - CFD: 19/01/2012 - 16:59:31 - [0,000] ----D C:\Users\yasser\AppData\Local\Hewlett-Packard
O43 - CFD: 19/01/2012 - 16:49:03 - [0]
0
buckhulk Messages postés 13690 Date d'inscription dimanche 21 septembre 2008 Statut Contributeur Dernière intervention 14 novembre 2020 1 756
28 déc. 2012 à 12:46
tu n'as pas regardé !

les rapports étant trop long, les héberger :

Rappel des dépôts

1 cijoint
2 pjoint
3 up2share
4 FEC
1
yasser0312 Messages postés 11 Date d'inscription vendredi 28 décembre 2012 Statut Membre Dernière intervention 28 décembre 2012
28 déc. 2012 à 13:59
c'est bon j'ai envoyé le rapport a pjoint et a FEC mais je sais pas comment sa marche
0
yasser0312 Messages postés 11 Date d'inscription vendredi 28 décembre 2012 Statut Membre Dernière intervention 28 décembre 2012
28 déc. 2012 à 14:05
http://www.cjoint.com/12dc/BLCmw62kaeK.htm
0
buckhulk Messages postés 13690 Date d'inscription dimanche 21 septembre 2008 Statut Contributeur Dernière intervention 14 novembre 2020 1 756
28 déc. 2012 à 14:21
ça marche pareil !
je lis le rapport
0
yasser0312 Messages postés 11 Date d'inscription vendredi 28 décembre 2012 Statut Membre Dernière intervention 28 décembre 2012
28 déc. 2012 à 14:26
ok merci
0
buckhulk Messages postés 13690 Date d'inscription dimanche 21 septembre 2008 Statut Contributeur Dernière intervention 14 novembre 2020 1 756
28 déc. 2012 à 14:35
bon tu vas déjà passer TDSSKiller :

TDSSKiller est un outils gratuit de Kaspersky qui permet de supprimer les infections TDSS/Alureon.ou les problèmes de redirections lors des recherches google.
1 - Telecharge sur ton bureau :TDSSKiller
2 - Dezippe le et execute le.
3 - Clique sur Start scan et laisse l'outil scanner ton disque dur sans l'interrompre et sans utiliser le PC.
4 - Si des fichiers infectés sont trouvées, une nouvelle fenêtre va s'ouvrir:
5 - Assure-toi que l'onglet "cure" est sélectionné puis cliques sur continue, en bas à droite de la fenêtre.
6 - Clique sur : Reboot computer

et après :AdwCleaner
AdwCleaner : Logiciel très simple d'utilisation

1 - Téléchargez AdwCleaner et lance son exécution.
>>>ICI<<<
2 - L'interface du programme va s'ouvrir.
Cliques sur le bouton Recherche afin de lancer la détection, celle-ci ne prendra que quelques secondes, patientes.
Le rapport est automatiquement enregistré à la racine de votre disque dur principal, en général C:
(CTRL+A Pour tout sélectionner , CTRL+C pour copier et CTRL+V pour coller)

3 - Avant de faire la suppression poste le rapport au cas ou il y ai des faux positifs !

4 - Fermes le rapport puis cliques sur le bouton Suppression
5 - Dès la suppression effective, le logiciel demande de redémarrer l'ordinateur, cliques sur Ok.

tu m'envoies les 3 rapports pareil que le premier !
0