Adware : Tarma Installer / tuto4pc / Services x86

Résolu
kinoubombi Messages postés 12 Statut Membre -  
kinoubombi Messages postés 12 Statut Membre -
merci de m'aider à empecher ces fenetres imtempestives de s'ouvrir tout le temps.
j'ai ad aware comme antivirus mais c déja infesté , je suis en train de faire un scan pour vous dire ce qu'il annonce.
merci de m'aider à résoudre ce probleme.

13 réponses

  1. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    Salut,

    Télécharge https://www.malekal.com/adwcleaner-supprimer-virus-adwares-pup/?t=33839&start= AdwCleaner ( d'Xplode ) sur ton bureau.
    Sur la page d'AdwCleaner, à droite, clic sur la disquette grise avec la flèche verte pour lancer le téléchargement.
    Lance AdwCleaner, clique sur [Scanner] puis patiente (pas besoin de copier/coller le rapport ici).
    Quand cela est terminé, clic sur [Nettoyage].
    Clic sur Rapport puis copie/colle le contenu du rapport dans ta prochaine réponse par un copier/coller.
    Si cela ne fonctionne pas, utilise le site http://pjjoint.malekal.com pour héberger le rapport, donne le lien du rapport dans un nouveau message.

    Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt

    0
  2. kinoubombi Messages postés 12 Statut Membre
     
    salut
    j'ai suivi tes recommandations et voila le rapport

    # AdwCleaner v3.001 - Rapport créé le 26/08/2013 à 19:43:54
    # Mis à jour le 24/08/2013 par Xplode
    # Système d'exploitation : Windows 7 Professional (32 bits)
    # Nom d'utilisateur : BOMBIX - BOMBIX-PC
    # Exécuté depuis : C:\Users\BOMBIX\Downloads\adwcleaner.exe
    # Option : Nettoyer

    ***** [ Services ] *****

    [#] Service Supprimé : CltMngSvc
    Service Supprimé : IB Updater
    [#] Service Supprimé : IBUpdaterService

    ***** [ Fichiers / Dossiers ] *****

    Dossier Supprimé : C:\Kreapixel
    Dossier Supprimé : C:\SearchProtect
    Dossier Supprimé : C:\ProgramData\blekko toolbars
    Dossier Supprimé : C:\ProgramData\boost_interprocess
    Dossier Supprimé : C:\ProgramData\search protection
    Dossier Supprimé : C:\ProgramData\Tarma Installer
    Dossier Supprimé : C:\ProgramData\visualbee
    Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tuto_4pc
    Dossier Supprimé : C:\Program Files\Conduit
    Dossier Supprimé : C:\Program Files\Giant Savings Extension
    Dossier Supprimé : C:\Program Files\IB Updater
    Dossier Supprimé : C:\Program Files\MyPC Backup
    Dossier Supprimé : C:\Program Files\Mysearchdial
    Dossier Supprimé : C:\Program Files\SearchProtect
    Dossier Supprimé : C:\Program Files\Services x86
    Dossier Supprimé : C:\Program Files\tuto4pc_fr_53
    Dossier Supprimé : C:\Windows\system32\ARFC
    Dossier Supprimé : C:\Windows\system32\jmdp
    Dossier Supprimé : C:\Windows\system32\WNLT
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Local\Conduit
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Local\cre
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Local\EoRezo
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Local\Giant Savings Extension
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Local\lollipop
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Local\Services x86
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Local\visualbeeexe
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Local\tuto4pc_fr_53
    Dossier Supprimé : C:\Users\BOMBIX\AppData\LocalLow\adawaretb
    Dossier Supprimé : C:\Users\BOMBIX\AppData\LocalLow\Conduit
    Dossier Supprimé : C:\Users\BOMBIX\AppData\LocalLow\delta
    Dossier Supprimé : C:\Users\BOMBIX\AppData\LocalLow\incredibar.com
    Dossier Supprimé : C:\Users\BOMBIX\AppData\LocalLow\Mysearchdial
    Dossier Supprimé : C:\Users\BOMBIX\AppData\LocalLow\PriceGong
    Dossier Supprimé : C:\Users\BOMBIX\AppData\LocalLow\searchresultstb
    Dossier Supprimé : C:\Users\BOMBIX\AppData\LocalLow\Toolbar4
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Roaming\DealPly
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Roaming\Mysearchdial
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Roaming\OpenCandy
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Roaming\SearchProtect
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Roaming\Systweak
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Roaming\WebPlayerBdd
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DealPly
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Roaming\Mozilla\Firefox\Profiles\j9vgll4e.default\adawaretb
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Roaming\Mozilla\Firefox\Profiles\wpy7vkc2.default\Extensions\{AD9A41D2-9A49-4FA6-A79E-71A0785364C8}
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Roaming\Mozilla\Firefox\Profiles\wpy7vkc2.default\Extensions\{f531b93a-b50b-4ff1-8288-404c881ac4da}
    Dossier Supprimé : C:\Program Files\Mozilla Firefox\Extensions\ffxtlbr@babylon.com
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Roaming\Mozilla\Firefox\Profiles\wpy7vkc2.default\Extensions\ffxtlbr@mysearchdial.com
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Local\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakpajgggjjcjmidfbnnncnbaihjneaj
    Dossier Supprimé : C:\Users\BOMBIX\AppData\Local\Google\Chrome\User Data\Default\Extensions\halffneccaebicfdfajnbfgpglahfgoe
    [!] Dossier Supprimé : C:\Users\BOMBIX\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakpajgggjjcjmidfbnnncnbaihjneaj
    [!] Dossier Supprimé : C:\Users\BOMBIX\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakpajgggjjcjmidfbnnncnbaihjneaj
    Fichier Supprimé : C:\Users\Public\Desktop\MySearchDial.url
    Fichier Supprimé : C:\Windows\system32\dmwu.exe
    Fichier Supprimé : C:\Windows\system32\ImhxxpComm.dll
    Fichier Supprimé : C:\Windows\system32\roboot.exe
    Fichier Supprimé : C:\Users\BOMBIX\AppData\Local\mysearchdial.crx
    Fichier Supprimé : C:\Users\BOMBIX\AppData\Roaming\Mozilla\Firefox\Profiles\j9vgll4e.default\searchplugins\Babylon.xml
    Fichier Supprimé : C:\Users\BOMBIX\AppData\Roaming\Mozilla\Firefox\Profiles\wpy7vkc2.default\searchplugins\Mysearchdial.xml
    Fichier Supprimé : C:\Users\BOMBIX\AppData\Roaming\Mozilla\Firefox\Profiles\j9vgll4e.default\searchplugins\MyStart Search.xml
    Fichier Supprimé : C:\Program Files\Mozilla Firefox\searchplugins\Search_Results.xml
    Fichier Supprimé : C:\Users\BOMBIX\AppData\Roaming\Mozilla\Firefox\Profiles\j9vgll4e.default\\invalidprefs.js
    Fichier Supprimé : C:\Users\BOMBIX\AppData\Roaming\Mozilla\Firefox\Profiles\j9vgll4e.default\user.js
    Fichier Supprimé : C:\Users\BOMBIX\AppData\Roaming\Mozilla\Firefox\Profiles\wpy7vkc2.default\user.js
    Fichier Supprimé : C:\Windows\System32\Tasks\Dealply
    Fichier Supprimé : C:\Windows\Tasks\MySearchDial.job
    Fichier Supprimé : C:\Windows\System32\Tasks\MySearchDial

    ***** [ Raccourcis ] *****

    ***** [ Registre ] *****

    Valeur Supprimée : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{336D0C35-8A85-403A-B9D2-65C292C39087}]
    Valeur Supprimée : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{FE1DEEEA-DB6D-44B8-83F0-34FC0F9D1052}]
    Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd
    Clé Supprimée : HKCU\Software\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
    Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
    Clé Supprimée : HKCU\Software\Google\Chrome\Extensions\hakpajgggjjcjmidfbnnncnbaihjneaj
    Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\hakpajgggjjcjmidfbnnncnbaihjneaj
    Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\halffneccaebicfdfajnbfgpglahfgoe
    Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc
    Clé Supprimée : HKCU\Software\Google\Chrome\Extensions\paoponfhfdfnjgddpnpjkambkcgdaaib
    Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\paoponfhfdfnjgddpnpjkambkcgdaaib
    Clé Supprimée : HKCU\Software\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
    Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Dealply
    [#] Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2C021B19-93A2-4AC6-BF85-EFC64EB1C283}
    [#] Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2C021B19-93A2-4AC6-BF85-EFC64EB1C283}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPlyUpdate
    [#] Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4F3A7383-39B0-4EA7-BA9E-D547776D0269}
    [#] Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4F3A7383-39B0-4EA7-BA9E-D547776D0269}
    [#] Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\MySearchDial
    [#] Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E28EED6E-DE3D-409D-9760-A41CE5F4DC64}
    [#] Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E28EED6E-DE3D-409D-9760-A41CE5F4DC64}
    Valeur Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [searchprotect]
    Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
    Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\Extension.DLL
    Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL
    Clé Supprimée : HKLM\SOFTWARE\Classes\Applications\ilividsetup.exe
    Clé Supprimée : HKLM\SOFTWARE\Classes\esrv.mysearchdialESrvc
    Clé Supprimée : HKLM\SOFTWARE\Classes\esrv.mysearchdialESrvc.1
    Clé Supprimée : HKLM\SOFTWARE\Classes\Extension.ExtensionHelperObject
    Clé Supprimée : HKLM\SOFTWARE\Classes\Extension.ExtensionHelperObject.1
    Clé Supprimée : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialappCore
    Clé Supprimée : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialappCore.1
    Clé Supprimée : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialdskBnd
    Clé Supprimée : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialdskBnd.1
    Clé Supprimée : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialHlpr
    Clé Supprimée : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialHlpr.1
    Clé Supprimée : HKLM\SOFTWARE\Classes\Prod.cap
    Clé Supprimée : HKLM\SOFTWARE\Classes\YontooIEClient.Api
    Clé Supprimée : HKLM\SOFTWARE\Classes\YontooIEClient.Api.1
    Clé Supprimée : HKLM\SOFTWARE\Classes\YontooIEClient.Layers
    Clé Supprimée : HKLM\SOFTWARE\Classes\YontooIEClient.Layers.1
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASAPI32
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASMANCS
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Giant Savings Extension_RASAPI32
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Giant Savings Extension_RASMANCS
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Giant Savings Extension-InternalInstaller_RASAPI32
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Giant Savings Extension-InternalInstaller_RASMANCS
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\iLivid_RASAPI32
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\iLivid_RASMANCS
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\iLividMediaBar_RASAPI32
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\iLividMediaBar_RASMANCS
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetup_RASAPI32
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetup_RASMANCS
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\IminentSetup_RASAPI32
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\IminentSetup_RASMANCS
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\incredibar_install_RASAPI32
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\incredibar_install_RASMANCS
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\IncredibarToolbar_RASAPI32
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\IncredibarToolbar_RASMANCS
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_RASAPI32
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_RASMANCS
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\WajamUpdater_RASAPI32
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\WajamUpdater_RASMANCS
    Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SearchProtectAll]
    Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [tuto4pc_fr_53]
    Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0021810.BHO
    Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0021810.BHO.1
    Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0021810.Sandbox
    Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0021810.Sandbox.1
    Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0027096.BHO
    Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0027096.BHO.1
    Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0027096.Sandbox
    Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0027096.Sandbox.1
    Clé Supprimée : HKCU\Software\94dfd9e63aef47
    Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
    Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{B302A1BD-0157-49FA-90F1-4E94F22C7B4B}
    Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
    Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
    Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}
    Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
    Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{0F6E720A-1A6B-40E1-A294-1D4D19F156C8}
    Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{3004627E-F8E9-4E8B-909D-316753CBA923}
    Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{336D0C35-8A85-403A-B9D2-65C292C39087}
    Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
    Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{4ED063C9-4A0B-4B44-A9DC-23AFF424A0D3}
    Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{6C97A91E-4524-4019-86AF-2AA2D567BF5C}
    Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}
    Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
    Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{82E74373-58AB-47EB-B0F0-A1D82BB8EB5C}
    Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{C358B3D0-B911-41E3-A276-E7D43A6BA56D}
    Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}
    Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
    Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}
    Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
    Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
    Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A36867C6-302D-49FC-9D8E-1EB037B5F1AB}
    Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550255705596}
    Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660266706696}
    Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{1D5A4199-956E-49BC-B89F-6A35C57C0D13}
    Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}
    Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440244704496}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0F6E720A-1A6B-40E1-A294-1D4D19F156C8}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{336D0C35-8A85-403A-B9D2-65C292C39087}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6C97A91E-4524-4019-86AF-2AA2D567BF5C}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110211181110}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110211701196}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0F6E720A-1A6B-40E1-A294-1D4D19F156C8}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3004627E-F8E9-4E8B-909D-316753CBA923}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{336D0C35-8A85-403A-B9D2-65C292C39087}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{58124A0B-DC32-4180-9BFF-E0E21AE34026}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6C97A91E-4524-4019-86AF-2AA2D567BF5C}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{82E1477C-B154-48D3-9891-33D83C26BCD3}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9639E4A-801B-4843-AEE3-03D9DA199E77}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110211181110}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110211701196}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0F6E720A-1A6B-40E1-A294-1D4D19F156C8}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3004627E-F8E9-4E8B-909D-316753CBA923}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{336D0C35-8A85-403A-B9D2-65C292C39087}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{58124A0B-DC32-4180-9BFF-E0E21AE34026}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6C97A91E-4524-4019-86AF-2AA2D567BF5C}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F531B93A-B50B-4FF1-8288-404C881AC4DA}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F9639E4A-801B-4843-AEE3-03D9DA199E77}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110211181110}
    Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110211701196}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{219046AE-358F-4CF1-B1FD-2B4DE83642A8}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110211181110}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110211181110}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110211701196}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110211701196}
    Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
    Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
    Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
    Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47C0-9269-B4C6572FD61A}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
    Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{3004627E-F8E9-4E8B-909D-316753CBA923}]
    Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{6C97A91E-4524-4019-86AF-2AA2D567BF5C}]
    Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
    Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{977AE9CC-AF83-45E8-9E03-E2798216E2D5}]
    Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{6C97A91E-4524-4019-86AF-2AA2D567BF5C}]
    Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
    Clé Supprimée : HKCU\Software\BabSolution
    Clé Supprimée : HKCU\Software\Conduit
    Clé Supprimée : HKCU\Software\Cr_Installer
    Clé Supprimée : HKCU\Software\DataMngr
    Clé Supprimée : HKCU\Software\delta LTD
    Clé Supprimée : HKCU\Software\ilivid
    Clé Supprimée : HKCU\Software\IM
    Clé Supprimée : HKCU\Software\ImInstaller
    Clé Supprimée : HKCU\Software\InstallCore
    Clé Supprimée : HKCU\Software\InstalledBrowserExtensions
    Clé Supprimée : HKCU\Software\lollipop
    Clé Supprimée : HKCU\Software\mysearchdial
    Clé Supprimée : HKCU\Software\SearchProtect
    Clé Supprimée : HKCU\Software\Tuto4PC
    Clé Supprimée : HKCU\Software\Tutorials
    Clé Supprimée : HKCU\Software\TutoTag
    Clé Supprimée : HKCU\Software\WNLT
    Clé Supprimée : HKCU\Software\AppDataLow\Software\adawaretb
    Clé Supprimée : HKCU\Software\AppDataLow\Software\Conduit
    Clé Supprimée : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
    Clé Supprimée : HKCU\Software\AppDataLow\Software\Crossrider
    Clé Supprimée : HKCU\Software\AppDataLow\Software\Giant Savings Extension
    Clé Supprimée : HKCU\Software\AppDataLow\Software\PriceGong
    Clé Supprimée : HKCU\Software\AppDataLow\Software\Services x86
    Clé Supprimée : HKCU\Software\AppDataLow\Software\SmartBar
    Clé Supprimée : HKLM\Software\adawaretb
    Clé Supprimée : HKLM\Software\Babylon
    Clé Supprimée : HKLM\Software\Conduit
    Clé Supprimée : HKLM\Software\DataMngr
    Clé Supprimée : HKLM\Software\IB Updater
    Clé Supprimée : HKLM\Software\iLividSRTB
    Clé Supprimée : HKLM\Software\Iminent
    Clé Supprimée : HKLM\Software\InstallCore
    Clé Supprimée : HKLM\Software\mysearchdial
    Clé Supprimée : HKLM\Software\SearchProtect
    Clé Supprimée : HKLM\Software\systweak
    Clé Supprimée : HKLM\Software\Tarma Installer
    Clé Supprimée : HKLM\Software\Tutorials
    Clé Supprimée : HKLM\Software\visualbee
    Clé Supprimée : HKLM\Software\WNLT
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{336D0C35-8A85-403a-B9D2-65C292C39087}_is1
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\adawaretb
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\mysearchdial
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Services x86
    Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WNLT

    ***** [ Navigateurs ] *****

    -\\ Internet Explorer v8.0.7600.16385

    Paramètre Restauré : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
    Paramètre Restauré : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [bProtectTabs]

    -\\ Mozilla Firefox v23.0.1 (fr)

    [ Fichier : C:\Users\BOMBIX\AppData\Roaming\Mozilla\Firefox\Profiles\j9vgll4e.default\prefs.js ]

    Ligne Supprimée : user_pref("extensions.BabylonToolbar.admin", false);
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.aflt", "babsst");
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.appId", "{BDB69379-802F-4eaf-B541-F8DE92DD98DB}");
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.autoRvrt", "false");
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.dfltLng", "fr");
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.excTlbr", false);
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.ffxUnstlRst", true);
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.id", "b210b636000000000000f07bcb0a8b08");
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.instlDay", "15925");
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.instlRef", "sst");
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.newTab", false);
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.rvrt", "false");
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.smplGrp", "none");
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.tlbrId", "base");
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.tlbrSrchUrl", "hxxp://search.babylon.com/?babsrc=TB_def&mntrId=b210b636000000000000f07bcb0a8b08&q=");
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.vrsn", "1.8.23.1");
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.vrsnTs", "1.8.23.115:05:33");
    Ligne Supprimée : user_pref("extensions.BabylonToolbar.vrsni", "1.8.23.1");
    Ligne Supprimée : user_pref("extensions.BabylonToolbar_i.babExt", "");
    Ligne Supprimée : user_pref("extensions.BabylonToolbar_i.babTrack", "affID=121828&tsp=4968");
    Ligne Supprimée : user_pref("extensions.BabylonToolbar_i.srcExt", "ss");
    Ligne Supprimée : user_pref("extensions.delta.admin", false);
    Ligne Supprimée : user_pref("extensions.delta.aflt", "babsst");
    Ligne Supprimée : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
    Ligne Supprimée : user_pref("extensions.delta.autoRvrt", "false");
    Ligne Supprimée : user_pref("extensions.delta.dfltLng", "fr");
    Ligne Supprimée : user_pref("extensions.delta.excTlbr", false);
    Ligne Supprimée : user_pref("extensions.delta.ffxUnstlRst", true);
    Ligne Supprimée : user_pref("extensions.delta.id", "b210b636000000000000f07bcb0a8b08");
    Ligne Supprimée : user_pref("extensions.delta.instlDay", "15925");
    Ligne Supprimée : user_pref("extensions.delta.instlRef", "sst");
    Ligne Supprimée : user_pref("extensions.delta.newTab", false);
    Ligne Supprimée : user_pref("extensions.delta.prdct", "delta");
    Ligne Supprimée : user_pref("extensions.delta.prtnrId", "delta");
    Ligne Supprimée : user_pref("extensions.delta.rvrt", "false");
    Ligne Supprimée : user_pref("extensions.delta.smplGrp", "none");
    Ligne Supprimée : user_pref("extensions.delta.tlbrId", "base");
    Ligne Supprimée : user_pref("extensions.delta.tlbrSrchUrl", "");
    Ligne Supprimée : user_pref("extensions.delta.vrsn", "1.8.22.0");
    Ligne Supprimée : user_pref("extensions.delta.vrsnTs", "1.8.22.09:15:20");
    Ligne Supprimée : user_pref("extensions.delta.vrsni", "1.8.22.0");
    Ligne Supprimée : user_pref("extensions.delta_i.babExt", "");
    Ligne Supprimée : user_pref("extensions.delta_i.babTrack", "affID=119357&tsp=4968");
    Ligne Supprimée : user_pref("extensions.delta_i.srcExt", "ss");

    [ Fichier : C:\Users\BOMBIX\AppData\Roaming\Mozilla\Firefox\Profiles\wpy7vkc2.default\prefs.js ]

    Ligne Supprimée : user_pref("browser.startup.homepage", "hxxp://start.mysearchdial.com/?f=1&a=airmsd&cd=2XzuyEtN2Y1L1Qzu0FtDyB0B0C0BtD0Azz0BtDzz0ByCtAyCtN0D0Tzu0CyDtDtAtN1L2XzutBtFtBtFtCtFyCtCzztN1L1Czu1T1L1C1H1B1Q&cr=[...]
    Ligne Supprimée : user_pref("browser.search.selectedEngine", "Mysearchdial");
    Ligne Supprimée : user_pref("browser.search.defaultenginename", "Mysearchdial");

    -\\ Google Chrome v

    [ Fichier : C:\Users\BOMBIX\AppData\Local\Google\Chrome\User Data\Default\preferences ]

    *************************

    AdwCleaner[R0].txt - [30117 octets] - [26/08/2013 19:42:44]
    AdwCleaner[S0].txt - [29980 octets] - [26/08/2013 19:43:54]

    ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [30041 octets] ##########
    0
  3. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    Faire un scan OTL pour diagnostiquer les programmes qui tournent et déceler des infections - Le programme va générer deux rapports OTL.txt et Extras.txt
    Fournir les deux rapports :

    Tu peux suivre les indications de cette page pour t'aider : https://www.malekal.com/tutorial-otl/

    * Télécharge http://www.geekstogo.com/forum/files/file/398-otl-oldtimers-list-it/ sur ton bureau.
    (Sous Vista/Win7, il faut cliquer droit sur OTL et choisir Exécuter en tant qu'administrateur)

    Dans le cas d'Avast!, ne pas lancer le programme dans la Sandbox (voir lien d'aide ci-dessus).

    * Lance OTL
    * En haut à droite de Analyse rapide, coche "tous les utilisateurs"
    * Sur OTL, sous Personnalisation, copie-colle le script ci-dessous :

    netsvcs
    msconfig
    safebootminimal
    safebootnetwork
    activex
    drivers32
    %ALLUSERSPROFILE%\Application Data\*.
    %ALLUSERSPROFILE%\Application Data\*.exe /s
    %APPDATA%\*.
    %APPDATA%\*.exe /s
    %temp%\*.exe /s
    %SYSTEMDRIVE%\*.exe
    %systemroot%\*. /mp /s
    %systemroot%\system32\consrv.dll
    %systemroot%\system32\*.dll /lockedfiles
    %windir%\Tasks\*.job /lockedfiles
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\System32\config\*.sav
    /md5start
    explorer.exe
    winlogon.exe
    services.exe
    wininit.exe
    /md5stop
    HKEY_CLASSES_ROOT\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InprocServer32 /s
    HKEY_LOCAL_MACHINE\SYSTEM\SYSTEM\CurrentControlSet\Services\lanmanserver\parameters /s
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems /s
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\AppCertDlls /s
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList /s
    HKEY_LOCAL_MACHINE\Software\Microsoft\Command Processor /s
    HKEY_CURRENT_USER\Software\Microsoft\Command Processor /s
    CREATERESTOREPOINT
    nslookup https://www.google.fr/?gws_rd=ssl /c
    SAVEMBR:0
    hklm\software\clients\startmenuinternet|command /rs
    hklm\software\clients\startmenuinternet|command /64 /rs

    * Clique sur le bouton Analyse.

    * Quand le scan est fini, utilise le site http://pjjoint.malekal.com/ pour envoyer le rapport OTL.txt (et Extra.txt si présent).
    Donne le ou les liens pjjoint qui pointent vers ces rapports ici dans un nouveau message.
    Je répète : donne le lien du rapport pjjoint ici dans un nouveau message.

    NE PAS COPIER/COLLER LE RAPPORT ICI - DONNER LE LIEN PJJOINT DANS UN NOUVEAU MESSAGE

    0
  4. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  5. kinoubombi Messages postés 12 Statut Membre
     
    ca c le rapport aprés correction .

    Error: Unable to interpret <OTL logfile created on: 26/08/2013 20:17:57 - Run 1> in the current context!
    Error: Unable to interpret <OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\BOMBIX\Desktop> in the current context!
    Error: Unable to interpret < Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation> in the current context!
    Error: Unable to interpret <Internet Explorer (Version = 8.0.7600.16385)> in the current context!
    Error: Unable to interpret <Locale: 0000040c | Country: France | Language: FRA | Date Format: dd/MM/yyyy> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <2,99 Gb Total Physical Memory | 1,91 Gb Available Physical Memory | 64,02% Memory free> in the current context!
    Error: Unable to interpret <5,98 Gb Paging File | 4,68 Gb Available in Paging File | 78,19% Paging File free> in the current context!
    Error: Unable to interpret <Paging file location(s): ?:\pagefile.sys [binary data]> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files> in the current context!
    Error: Unable to interpret <Drive C: | 698,54 Gb Total Space | 312,32 Gb Free Space | 44,71% Space Free | Partition Type: NTFS> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <Computer Name: BOMBIX-PC | User Name: BOMBIX | Logged in as Administrator.> in the current context!
    Error: Unable to interpret <Boot Mode: Normal | Scan Mode: Current user> in the current context!
    Error: Unable to interpret <Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[color=#E56717]========== Processes (SafeList) ==========/color> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <PRC - [2013/08/26 20:15:56 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\BOMBIX\Desktop\OTL.exe> in the current context!
    Error: Unable to interpret <PRC - [2013/08/17 22:19:32 | 000,276,376 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe> in the current context!
    Error: Unable to interpret <PRC - [2013/08/08 08:50:16 | 001,861,512 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe> in the current context!
    Error: Unable to interpret <PRC - [2013/07/15 23:09:24 | 000,554,384 | ---- | M] (Lavasoft) -- C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe> in the current context!
    Error: Unable to interpret <PRC - [2013/07/13 17:05:52 | 000,217,992 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Update\1.3.21.153\GoogleCrashHandler.exe> in the current context!
    Error: Unable to interpret <PRC - [2013/06/13 02:27:38 | 001,236,336 | ---- | M] (Lavasoft Limited) -- C:\Program Files\Ad-Aware Antivirus\AdAwareService.exe> in the current context!
    Error: Unable to interpret <PRC - [2013/06/13 02:27:36 | 018,834,784 | ---- | M] (Lavasoft Limited) -- C:\PROGRA~1\AD-AWA~1\AdAware.exe> in the current context!
    Error: Unable to interpret <PRC - [2013/05/15 18:54:08 | 000,755,536 | ---- | M] (CybelSoft) -- C:\Program Files\ma-config.com\MaConfigAgent.exe> in the current context!
    Error: Unable to interpret <PRC - [2013/05/11 12:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe> in the current context!
    Error: Unable to interpret <PRC - [2013/03/07 01:32:44 | 004,767,304 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe> in the current context!
    Error: Unable to interpret <PRC - [2012/12/01 06:38:02 | 001,821,032 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe> in the current context!
    Error: Unable to interpret <PRC - [2012/12/01 06:38:02 | 000,865,128 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe> in the current context!
    Error: Unable to interpret <PRC - [2012/11/19 13:15:20 | 000,285,240 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe> in the current context!
    Error: Unable to interpret <PRC - [2012/11/19 13:15:20 | 000,014,904 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe> in the current context!
    Error: Unable to interpret <PRC - [2012/09/20 05:39:12 | 003,677,000 | ---- | M] (GFI Software) -- C:\Program Files\Ad-Aware Antivirus\SBAMSvc.exe> in the current context!
    Error: Unable to interpret <PRC - [2009/07/14 03:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe> in the current context!
    Error: Unable to interpret <PRC - [2009/07/14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe> in the current context!
    Error: Unable to interpret <PRC - [2009/07/14 03:14:15 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe> in the current context!
    Error: Unable to interpret <PRC - [2009/07/14 03:14:12 | 000,100,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\audiodg.exe> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[color=#E56717]========== Modules (No Company Name) ==========/color> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <MOD - [2013/08/17 22:19:32 | 003,551,640 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll> in the current context!
    Error: Unable to interpret <MOD - [2013/08/08 08:50:15 | 016,166,280 | ---- | M] () -- C:\Windows\System32\Macromed\Flash\NPSWF32_11_8_800_94.dll> in the current context!
    Error: Unable to interpret <MOD - [2012/12/19 10:24:38 | 000,032,768 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorCommon\2ed3a6a5defc46fe3954e2b2ad0f2dfa\IAStorCommon.ni.dll> in the current context!
    Error: Unable to interpret <MOD - [2012/12/19 10:24:38 | 000,029,696 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorDataMgrSvcInt#\5928e0a0e545cbd410a35df19e9d5580\IAStorDataMgrSvcInterfaces.ni.dll> in the current context!
    Error: Unable to interpret <MOD - [2012/12/19 10:24:34 | 000,406,528 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\0fd3a8fe8757b432ec45c6648b8a173b\IAStorUtil.ni.dll> in the current context!
    Error: Unable to interpret <MOD - [2009/07/14 10:39:17 | 000,499,712 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.ServiceModel.resources\3.0.0.0_fr_b77a5c561934e089\System.ServiceModel.resources.dll> in the current context!
    Error: Unable to interpret <MOD - [2009/07/14 10:39:06 | 000,311,296 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_fr_b77a5c561934e089\mscorlib.resources.dll> in the current context!
    Error: Unable to interpret <MOD - [2009/07/14 06:55:41 | 001,358,336 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.WorkflowServ#\bf248d315e6a94b62f23a44fb47399a5\System.WorkflowServices.ni.dll> in the current context!
    Error: Unable to interpret <MOD - [2009/07/14 06:55:22 | 001,705,984 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\b685ea7755ea35759d886f06720a9d3a\System.ServiceModel.Web.ni.dll> in the current context!
    Error: Unable to interpret <MOD - [2009/07/14 06:45:34 | 001,072,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\e791f7aea04b8d379f6dbaadb5fdeb96\System.IdentityModel.ni.dll> in the current context!
    Error: Unable to interpret <MOD - [2009/07/14 06:45:33 | 017,400,320 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\e1adf6b481f5120153829fa54ee8a041\System.ServiceModel.ni.dll> in the current context!
    Error: Unable to interpret <MOD - [2009/07/14 06:43:53 | 002,347,008 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\39e53f507d9cbc5c10a2f47c4b0d09dd\System.Runtime.Serialization.ni.dll> in the current context!
    Error: Unable to interpret <MOD - [2009/07/14 06:43:53 | 000,256,000 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\81282964925798589021d3e0e6de779f\SMDiagnostics.ni.dll> in the current context!
    Error: Unable to interpret <MOD - [2009/07/14 06:43:36 | 011,804,160 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\3871fc2b96345aa6f3be81d9e3c97160\System.Web.ni.dll> in the current context!
    Error: Unable to interpret <MOD - [2009/07/14 06:43:04 | 012,430,848 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\fedf1ba58dced4f0b3f8c457648ceed9\System.Windows.Forms.ni.dll> in the current context!
    Error: Unable to interpret <MOD - [2009/07/14 06:42:57 | 001,586,688 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\ead6be8b410d56b5576b10e56af2c180\System.Drawing.ni.dll> in the current context!
    Error: Unable to interpret <MOD - [2009/07/14 06:42:40 | 005,452,800 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\5dd9f783008543df3e642ff1e99de4e8\System.Xml.ni.dll> in the current context!
    Error: Unable to interpret <MOD - [2009/07/14 06:42:37 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\4b1350e31ff09cc583b34854816d8036\System.Configuration.ni.dll> in the current context!
    Error: Unable to interpret <MOD - [2009/07/14 06:42:36 | 007,949,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\5ba3bf5367fc012300c6566f20cb7f54\System.ni.dll> in the current context!
    Error: Unable to interpret <MOD - [2009/07/14 06:42:30 | 011,490,816 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\8c1770d45c63cf5c462eeb945ef9aa5d\mscorlib.ni.dll> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[color=#E56717]========== Services (SafeList) ==========/color> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <SRV - [2013/08/21 19:51:52 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)> in the current context!
    Error: Unable to interpret <SRV - [2013/08/17 22:19:32 | 000,117,656 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)> in the current context!
    Error: Unable to interpret <SRV - [2013/06/13 02:27:38 | 001,236,336 | ---- | M] (Lavasoft Limited) [Auto | Running] -- C:\Program Files\Ad-Aware Antivirus\AdAwareService.exe -- (Ad-Aware Service)> in the current context!
    Error: Unable to interpret <SRV - [2013/05/15 18:54:08 | 000,755,536 | ---- | M] (CybelSoft) [Auto | Running] -- C:\Program Files\ma-config.com\MaConfigAgent.exe -- (MaConfigAgent)> in the current context!
    Error: Unable to interpret <SRV - [2013/05/11 12:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)> in the current context!
    Error: Unable to interpret <SRV - [2013/03/07 01:32:44 | 000,045,248 | ---- | M] (AVAST Software) [Auto | Stopped] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)> in the current context!
    Error: Unable to interpret <SRV - [2013/03/01 12:11:32 | 000,161,384 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)> in the current context!
    Error: Unable to interpret <SRV - [2012/12/17 15:55:38 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)> in the current context!
    Error: Unable to interpret <SRV - [2012/12/03 17:39:40 | 001,259,880 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)> in the current context!
    Error: Unable to interpret <SRV - [2012/11/19 13:15:20 | 000,014,904 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)> in the current context!
    Error: Unable to interpret <SRV - [2012/09/20 05:39:12 | 003,677,000 | ---- | M] (GFI Software) [Auto | Running] -- C:\Program Files\Ad-Aware Antivirus\SBAMSvc.exe -- (SBAMSvc)> in the current context!
    Error: Unable to interpret <SRV - [2009/07/14 03:16:15 | 000,016,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\StorSvc.dll -- (StorSvc)> in the current context!
    Error: Unable to interpret <SRV - [2009/07/14 03:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)> in the current context!
    Error: Unable to interpret <SRV - [2009/07/14 03:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc)> in the current context!
    Error: Unable to interpret <SRV - [2009/07/14 03:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[color=#E56717]========== Driver Services (SafeList) ==========/color> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\Lavalys\EVEREST Home Edition\kerneld.wnt -- (EverestDriver)> in the current context!
    Error: Unable to interpret <DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys -- (esgiguard)> in the current context!
    Error: Unable to interpret <DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\avfsfilter.sys -- (AVFSFilter)> in the current context!
    Error: Unable to interpret <DRV - [2013/08/26 15:41:13 | 000,013,560 | ---- | M] (GFI Software) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\gfibto.sys -- (gfibto)> in the current context!
    Error: Unable to interpret <DRV - [2013/05/07 09:56:01 | 000,040,776 | ---- | M] (Malwarebytes Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\mbamswissarmy.sys -- (MBAMSwissArmy)> in the current context!
    Error: Unable to interpret <DRV - [2013/04/11 11:06:45 | 000,041,584 | ---- | M] (ThreatTrack Security) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\gfiark.sys -- (gfiark)> in the current context!
    Error: Unable to interpret <DRV - [2013/03/07 01:33:24 | 000,765,736 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\System32\drivers\aswSnx.sys -- (aswSnx)> in the current context!
    Error: Unable to interpret <DRV - [2013/03/07 01:33:24 | 000,368,176 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswSP.sys -- (aswSP)> in the current context!
    Error: Unable to interpret <DRV - [2013/03/07 01:33:24 | 000,164,736 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\aswVmm.sys -- (aswVmm)> in the current context!
    Error: Unable to interpret <DRV - [2013/03/07 01:33:24 | 000,062,376 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswTdi.sys -- (aswTdi)> in the current context!
    Error: Unable to interpret <DRV - [2013/03/07 01:33:24 | 000,049,248 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\drivers\aswRvrt.sys -- (aswRvrt)> in the current context!
    Error: Unable to interpret <DRV - [2013/03/07 01:33:23 | 000,066,336 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswMonFlt.sys -- (aswMonFlt)> in the current context!
    Error: Unable to interpret <DRV - [2013/03/07 01:33:23 | 000,060,656 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswRdr2.sys -- (aswRdr)> in the current context!
    Error: Unable to interpret <DRV - [2013/03/07 01:33:22 | 000,029,816 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswFsBlk.sys -- (aswFsBlk)> in the current context!
    Error: Unable to interpret <DRV - [2012/12/19 10:48:24 | 000,147,768 | ---- | M] (JMicron Technology Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\jmcr.sys -- (JMCR)> in the current context!
    Error: Unable to interpret <DRV - [2012/12/03 17:39:40 | 009,373,032 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)> in the current context!
    Error: Unable to interpret <DRV - [2012/11/19 13:10:30 | 000,526,392 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\iaStorA.sys -- (iaStorA)> in the current context!
    Error: Unable to interpret <DRV - [2012/11/19 13:10:28 | 000,025,656 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\iaStorF.sys -- (iaStorF)> in the current context!
    Error: Unable to interpret <DRV - [2012/09/12 20:19:38 | 000,066,344 | ---- | M] (GFI Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\sbapifs.sys -- (sbapifs)> in the current context!
    Error: Unable to interpret <DRV - [2012/07/03 17:25:17 | 000,149,352 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvhda32v.sys -- (NVHDA)> in the current context!
    Error: Unable to interpret <DRV - [2011/07/21 20:55:50 | 000,016,640 | ---- | M] (CybelSoft) [Kernel | On_Demand | Stopped] -- C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys -- (driverhardwarev2)> in the current context!
    Error: Unable to interpret <DRV - [2011/05/13 19:57:42 | 000,025,656 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\hpdskflt.sys -- (hpdskflt)> in the current context!
    Error: Unable to interpret <DRV - [2011/05/13 19:57:20 | 000,035,896 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Accelerometer.sys -- (Accelerometer)> in the current context!
    Error: Unable to interpret <DRV - [2009/07/14 03:19:10 | 000,175,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vmbus.sys -- (vmbus)> in the current context!
    Error: Unable to interpret <DRV - [2009/07/14 03:19:10 | 000,040,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmstorfl.sys -- (storflt)> in the current context!
    Error: Unable to interpret <DRV - [2009/07/14 03:19:10 | 000,028,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\storvsc.sys -- (storvsc)> in the current context!
    Error: Unable to interpret <DRV - [2009/07/14 01:51:11 | 000,034,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb)> in the current context!
    Error: Unable to interpret <DRV - [2009/07/14 01:28:47 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vms3cap.sys -- (s3cap)> in the current context!
    Error: Unable to interpret <DRV - [2009/07/14 01:28:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VMBusHID.sys -- (VMBusHID)> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[color=#E56717]========== Standard Registry (SafeList) ==========/color> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[color=#E56717]========== Internet Explorer ==========/color> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com> in the current context!
    Error: Unable to interpret <IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = > in the current context!
    Error: Unable to interpret <IE - HKLM\..\SearchScopes,DefaultScope = > in the current context!
    Error: Unable to interpret <IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = https://www.bing.com/?scope=web&mkt=fr-FR{searchTerms}&FORM=IE8SRC> in the current context!
    Error: Unable to interpret <IE - HKLM\..\SearchScopes\{0DEB00F8-D891-48CC-8478-F7DB3CAA1643: "URL" = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=airmsd&cd=2XzuyEtN2Y1L1Qzu0FtDyB0B0C0BtD0Azz0BtDzz0ByCtAyCtN0D0Tzu0CyDtDtAtN1L2XzutBtFtBtFtCtFyCtCzztN1L1Czu1T1L1C1H1B1Q&cr=323886958&ir=> in the current context!
    Error: Unable to interpret <IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = https://www.google.com/webhp?gws_rd=ssl{searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.fr/0SEFRFR/SAOS02> in the current context!
    Error: Unable to interpret <IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.msn.com/fr-fr/?redirfallthru=http%3a%2f%2fhome.microsoft.com%2faccess%2fallinone.asp%26gt%3b%3f in the current context!
    Error: Unable to interpret <IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://securedsearch2.lavasoft.com/index.php?pr=vmn&id=adawaretb&v=3_4&ent=hp&u=254F0070C72E6C094E88A852174125EE> in the current context!
    Error: Unable to interpret <IE - HKCU\..\SearchScopes,DefaultScope = > in the current context!
    Error: Unable to interpret <IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = https://www.bing.com/?scope=web&mkt=fr-FR{searchTerms}&src=IE-SearchBox&FORM=IE8SRC> in the current context!
    Error: Unable to interpret <IE - HKCU\..\SearchScopes\{0DEB00F8-D891-48CC-8478-F7DB3CAA1643}: "URL" = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=airmsd&cd=2XzuyEtN2Y1L1Qzu0FtDyB0B0C0BtD0Azz0BtDzz0ByCtAyCtN0D0Tzu0CyDtDtAtN1L2XzutBtFtBtFtCtFyCtCzztN1L1Czu1T1L1C1H1B1Q&cr=323886958&ir=> in the current context!
    Error: Unable to interpret <IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = https://www.google.com/webhp?gws_rd=ssl{searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7SAVJ_frFR515> in the current context!
    Error: Unable to interpret <IE - HKCU\..\SearchScopes\{777D72EC-083A-C974-F909-5D8150EAC12E}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3285358&CUI=UN33232680423137723&UM=99> in the current context!
    Error: Unable to interpret <IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[color=#E56717]========== FireFox ==========/color> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <FF - prefs.js..browser.search.useDBForOrder: true> in the current context!
    Error: Unable to interpret <FF - prefs.js..browser.startup.homepage: "https://www.sfr.fr/#sfrintid=V_head_logo&sfrclicid=X_head_logo"> in the current context!
    Error: Unable to interpret <FF - prefs.js..extensions.enabledAddons: %7B87934c42-161d-45bc-8cef-ef18abe2a30c%7D:3.4> in the current context!
    Error: Unable to interpret <FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:23.0.1> in the current context!
    Error: Unable to interpret <FF - prefs.js..keyword.URL: "https://lavasoft.gosearchresults.com/?q=&tt=vmn__adawaretb__3_4__go__bs__yrgc&pid=5ad8b1ac9091145d32056191"> in the current context!
    Error: Unable to interpret <FF - user.js - File not found> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll ()> in the current context!
    Error: Unable to interpret <FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)> in the current context!
    Error: Unable to interpret <FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found> in the current context!
    Error: Unable to interpret <FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)> in the current context!
    Error: Unable to interpret <FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)> in the current context!
    Error: Unable to interpret <FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)> in the current context!
    Error: Unable to interpret <FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)> in the current context!
    Error: Unable to interpret <FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.7: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)> in the current context!
    Error: Unable to interpret <FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013/01/20 11:21:46 | 000,000,000 | ---D | M]> in the current context!
    Error: Unable to interpret <FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2013/04/28 19:33:08 | 000,000,000 | ---D | M]> in the current context!
    Error: Unable to interpret <FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 23.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components> in the current context!
    Error: Unable to interpret <FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 23.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins> in the current context!
    Error: Unable to interpret <FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013/01/20 11:21:46 | 000,000,000 | ---D | M]> in the current context!
    Error: Unable to interpret <FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 23.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components> in the current context!
    Error: Unable to interpret <FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 23.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[2013/06/21 14:52:15 | 000,000,000 | ---D | M] (No name found) -- C:\Users\BOMBIX\AppData\Roaming\mozilla\Extensions> in the current context!
    Error: Unable to interpret <[2013/01/20 11:19:53 | 000,000,000 | ---D | M] (No name found) -- C:\Users\BOMBIX\AppData\Roaming\mozilla\Firefox\extensions> in the current context!
    Error: Unable to interpret <[2013/01/20 11:22:12 | 000,000,000 | ---D | M] (uTorrentBar_FR) -- C:\Users\BOMBIX\AppData\Roaming\mozilla\Firefox\extensions\{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}> in the current context!
    Error: Unable to interpret <[2013/08/23 13:01:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\BOMBIX\AppData\Roaming\mozilla\Firefox\Profiles\j9vgll4e.default\extensions> in the current context!
    Error: Unable to interpret <[2013/08/23 13:02:05 | 000,000,000 | ---D | M] (Ad-Aware Security Add-on) -- C:\Users\BOMBIX\AppData\Roaming\mozilla\Firefox\Profiles\j9vgll4e.default\extensions\{87934c42-161d-45bc-8cef-ef18abe2a30c}> in the current context!
    Error: Unable to interpret <[2013/08/26 19:44:26 | 000,000,000 | ---D | M] (No name found) -- C:\Users\BOMBIX\AppData\Roaming\mozilla\Firefox\Profiles\wpy7vkc2.default\extensions> in the current context!
    Error: Unable to interpret <[2013/08/17 22:19:28 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\extensions> in the current context!
    Error: Unable to interpret <[2013/08/17 22:19:28 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\browser\extensions> in the current context!
    Error: Unable to interpret <[2013/08/17 22:19:33 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[color=#E56717]========== Chrome ==========/color> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <O1 HOSTS File: ([2009/06/10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts> in the current context!
    Error: Unable to interpret <O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)> in the current context!
    Error: Unable to interpret <O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll (Google Inc.)> in the current context!
    Error: Unable to interpret <O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll (Yahoo! Inc)> in the current context!
    Error: Unable to interpret <O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)> in the current context!
    Error: Unable to interpret <O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.> in the current context!
    Error: Unable to interpret <O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {05EEB91A-AEF7-4F8A-978F-FB83E7B03F8E} - No CLSID value found.> in the current context!
    Error: Unable to interpret <O4 - HKLM..\Run: [Ad-Aware Antivirus] C:\Program Files\Ad-Aware Antivirus\AdAwareLauncher.exe (Lavasoft Limited)> in the current context!
    Error: Unable to interpret <O4 - HKLM..\Run: [Ad-Aware Browsing Protection] C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe (Lavasoft)> in the current context!
    Error: Unable to interpret <O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)> in the current context!
    Error: Unable to interpret <O4 - HKLM..\Run: [IAStorIcon] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe (Intel Corporation)> in the current context!
    Error: Unable to interpret <O4 - HKLM..\Run: [Search Protection] C:\ProgramData\Search Protection\SearchProtection.exe File not found> in the current context!
    Error: Unable to interpret <O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5> in the current context!
    Error: Unable to interpret <O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3> in the current context!
    Error: Unable to interpret <O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000 File not found> in the current context!
    Error: Unable to interpret <O13 - gopher Prefix: missing> in the current context!
    Error: Unable to interpret <O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1> in the current context!
    Error: Unable to interpret <O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9B792119-DB19-4C1B-988A-F7C6EF34CA8D}: DhcpNameServer = 192.168.1.1> in the current context!
    Error: Unable to interpret <O18 - Protocol\Handler\livecall - No CLSID value found> in the current context!
    Error: Unable to interpret <O18 - Protocol\Handler\msnim - No CLSID value found> in the current context!
    Error: Unable to interpret <O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)> in the current context!
    Error: Unable to interpret <O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)> in the current context!
    Error: Unable to interpret <O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)> in the current context!
    Error: Unable to interpret <O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)> in the current context!
    Error: Unable to interpret <O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)> in the current context!
    Error: Unable to interpret <O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.> in the current context!
    Error: Unable to interpret <O32 - HKLM CDRom: AutoRun - 1> in the current context!
    Error: Unable to interpret <O32 - AutoRun File - [2009/06/10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]> in the current context!
    Error: Unable to interpret <O34 - HKLM BootExecute: (autocheck autochk *)> in the current context!
    Error: Unable to interpret <O35 - HKLM\..comfile [open] -- "%1" %*> in the current context!
    Error: Unable to interpret <O35 - HKLM\..exefile [open] -- "%1" %*> in the current context!
    Error: Unable to interpret <O37 - HKLM\...com [@ = comfile] -- "%1" %*> in the current context!
    Error: Unable to interpret <O37 - HKLM\...exe [@ = exefile] -- "%1" %*> in the current context!
    Error: Unable to interpret <O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)> in the current context!
    Error: Unable to interpret <O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)> in the current context!
    Error: Unable to interpret <O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[color=#E56717]========== Files/Folders - Created Within 30 Days ==========/color> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[2013/08/26 20:15:56 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\BOMBIX\Desktop\OTL.exe> in the current context!
    Error: Unable to interpret <[2013/08/26 19:42:39 | 000,000,000 | ---D | C] -- C:\AdwCleaner> in the current context!
    Error: Unable to interpret <[2013/08/24 14:36:04 | 000,000,000 | ---D | C] -- C:\Program Files\Enigma Software Group> in the current context!
    Error: Unable to interpret <[2013/08/24 14:34:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Wise Installation Wizard> in the current context!
    Error: Unable to interpret <[2013/08/23 20:25:44 | 000,000,000 | ---D | C] -- C:\ProgramData\clp> in the current context!
    Error: Unable to interpret <[2013/08/23 14:10:02 | 000,041,584 | ---- | C] (ThreatTrack Security) -- C:\Windows\System32\drivers\gfiark.sys> in the current context!
    Error: Unable to interpret <[2013/08/23 13:07:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\VDD> in the current context!
    Error: Unable to interpret <[2013/08/23 13:06:55 | 000,000,000 | ---D | C] -- C:\Users\BOMBIX\AppData\Roaming\LavasoftStatistics> in the current context!
    Error: Unable to interpret <[2013/08/23 13:04:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Ad-Aware Antivirus> in the current context!
    Error: Unable to interpret <[2013/08/23 13:02:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ad-Aware Antivirus> in the current context!
    Error: Unable to interpret <[2013/08/23 13:02:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Lavasoft> in the current context!
    Error: Unable to interpret <[2013/08/23 13:02:40 | 000,000,000 | ---D | C] -- C:\Program Files\Ad-Aware Antivirus> in the current context!
    Error: Unable to interpret <[2013/08/23 13:02:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Downloaded Installations> in the current context!
    Error: Unable to interpret <[2013/08/23 13:02:20 | 000,000,000 | ---D | C] -- C:\Users\BOMBIX\AppData\Local\adawarebp> in the current context!
    Error: Unable to interpret <[2013/08/23 13:02:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Ad-Aware Browsing Protection> in the current context!
    Error: Unable to interpret <[2013/08/23 13:02:14 | 000,000,000 | ---D | C] -- C:\Program Files\Toolbar Cleaner> in the current context!
    Error: Unable to interpret <[2013/08/23 13:02:09 | 000,000,000 | ---D | C] -- C:\Users\BOMBIX\AppData\Roaming\SecureSearch> in the current context!
    Error: Unable to interpret <[2013/08/23 13:01:53 | 000,000,000 | ---D | C] -- C:\Program Files\Lavasoft> in the current context!
    Error: Unable to interpret <[2013/08/23 13:00:20 | 000,013,560 | ---- | C] (GFI Software) -- C:\Windows\System32\drivers\gfibto.sys> in the current context!
    Error: Unable to interpret <[2013/08/23 13:00:17 | 000,000,000 | ---D | C] -- C:\Users\BOMBIX\AppData\Roaming\Ad-Aware Antivirus> in the current context!
    Error: Unable to interpret <[2013/08/23 09:42:14 | 000,000,000 | ---D | C] -- C:\Users\BOMBIX\AppData\Local\{9B98FDDF-2A69-45B5-A06D-BC2A06B9C694}> in the current context!
    Error: Unable to interpret <[2013/08/19 16:35:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy> in the current context!
    Error: Unable to interpret <[2013/08/19 16:34:47 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy 2> in the current context!
    Error: Unable to interpret <[2013/08/17 22:19:28 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox> in the current context!
    Error: Unable to interpret <[2013/08/14 14:16:27 | 000,000,000 | ---D | C] -- C:\Users\BOMBIX\AppData\Local\{F2E92019-4CD4-409C-BD9C-A217E0BB27B0}> in the current context!
    Error: Unable to interpret <[2013/08/14 13:39:07 | 000,000,000 | ---D | C] -- C:\Users\BOMBIX\AppData\Local\Avg2013> in the current context!
    Error: Unable to interpret <[2013/08/09 16:27:21 | 000,000,000 | ---D | C] -- C:\Users\BOMBIX\AppData\Local\{8A8F2F31-0BDF-4AA4-A5CF-E54162C353EE}> in the current context!
    Error: Unable to interpret <[2013/08/07 19:29:28 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service> in the current context!
    Error: Unable to interpret <[2013/08/07 17:25:18 | 000,000,000 | ---D | C] -- C:\Users\BOMBIX\AppData\Local\{D63838CD-5088-4E8E-9D6E-54237391A58F}> in the current context!
    Error: Unable to interpret <[2013/07/29 20:12:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth> in the current context!
    Error: Unable to interpret <[2013/07/29 19:57:44 | 000,000,000 | ---D | C] -- C:\Users\BOMBIX\Documents\sauvegarde ordi michel 2013> in the current context!
    Error: Unable to interpret <[2013/07/28 18:33:41 | 000,000,000 | ---D | C] -- C:\Users\BOMBIX\AppData\Local\{700AE43B-A82A-4420-BEEC-FFD85AD56C84}> in the current context!
    Error: Unable to interpret <[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[color=#E56717]========== Files - Modified Within 30 Days ==========/color> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[2013/08/26 20:15:56 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\BOMBIX\Desktop\OTL.exe> in the current context!
    Error: Unable to interpret <[2013/08/26 20:11:00 | 000,001,056 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job> in the current context!
    Error: Unable to interpret <[2013/08/26 19:51:45 | 000,696,042 | ---- | M] () -- C:\Windows\System32\perfh00C.dat> in the current context!
    Error: Unable to interpret <[2013/08/26 19:51:45 | 000,608,228 | ---- | M] () -- C:\Windows\System32\perfh009.dat> in the current context!
    Error: Unable to interpret <[2013/08/26 19:51:45 | 000,128,220 | ---- | M] () -- C:\Windows\System32\perfc00C.dat> in the current context!
    Error: Unable to interpret <[2013/08/26 19:51:45 | 000,104,104 | ---- | M] () -- C:\Windows\System32\perfc009.dat> in the current context!
    Error: Unable to interpret <[2013/08/26 19:48:00 | 000,001,002 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job> in the current context!
    Error: Unable to interpret <[2013/08/26 19:47:41 | 000,001,826 | ---- | M] () -- C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk> in the current context!
    Error: Unable to interpret <[2013/08/26 19:47:32 | 000,001,052 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job> in the current context!
    Error: Unable to interpret <[2013/08/26 19:47:24 | 000,067,584 | ---- | M] () -- C:\Windows\bootstat.dat> in the current context!
    Error: Unable to interpret <[2013/08/26 19:47:21 | 2408,734,720 | -HS- | M] () -- C:\hiberfil.sys> in the current context!
    Error: Unable to interpret <[2013/08/26 15:41:13 | 000,044,424 | ---- | M] (GFI Software) -- C:\Windows\System32\sbbd.exe> in the current context!
    Error: Unable to interpret <[2013/08/26 15:41:13 | 000,013,560 | ---- | M] (GFI Software) -- C:\Windows\System32\drivers\gfibto.sys> in the current context!
    Error: Unable to interpret <[2013/08/24 14:04:38 | 000,048,456 | ---- | M] () -- C:\Users\BOMBIX\Documents\cc_20130824_140404.reg> in the current context!
    Error: Unable to interpret <[2013/08/21 19:51:49 | 000,692,104 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe> in the current context!
    Error: Unable to interpret <[2013/08/21 19:51:49 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl> in the current context!
    Error: Unable to interpret <[2013/08/19 16:18:14 | 000,014,528 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0> in the current context!
    Error: Unable to interpret <[2013/08/19 16:18:14 | 000,014,528 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0> in the current context!
    Error: Unable to interpret <[2013/08/07 19:29:31 | 000,001,105 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk> in the current context!
    Error: Unable to interpret <[2013/07/29 20:12:45 | 000,002,170 | ---- | M] () -- C:\Users\Public\Desktop\Google Earth.lnk> in the current context!
    Error: Unable to interpret <[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[color=#E56717]========== Files Created - No Company Name ==========/color> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[2013/08/24 14:04:16 | 000,048,456 | ---- | C] () -- C:\Users\BOMBIX\Documents\cc_20130824_140404.reg> in the current context!
    Error: Unable to interpret <[2013/08/23 13:02:42 | 000,001,826 | ---- | C] () -- C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk> in the current context!
    Error: Unable to interpret <[2013/08/07 19:29:31 | 000,001,117 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk> in the current context!
    Error: Unable to interpret <[2013/08/07 19:29:31 | 000,001,105 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk> in the current context!
    Error: Unable to interpret <[2013/07/29 20:12:45 | 000,002,170 | ---- | C] () -- C:\Users\Public\Desktop\Google Earth.lnk> in the current context!
    Error: Unable to interpret <[2013/05/07 09:20:55 | 000,082,681 | ---- | C] () -- C:\Windows\Uninstal.exe> in the current context!
    Error: Unable to interpret <[2013/04/20 20:58:13 | 000,000,017 | ---- | C] () -- C:\Users\BOMBIX\AppData\Local\resmon.resmoncfg> in the current context!
    Error: Unable to interpret <[2013/03/22 14:42:23 | 000,164,736 | ---- | C] () -- C:\Windows\System32\drivers\aswVmm.sys> in the current context!
    Error: Unable to interpret <[2013/03/22 14:42:21 | 000,049,248 | ---- | C] () -- C:\Windows\System32\drivers\aswRvrt.sys> in the current context!
    Error: Unable to interpret <[2013/03/02 16:29:18 | 000,000,093 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc> in the current context!
    Error: Unable to interpret <[2012/12/30 21:12:36 | 000,186,453 | ---- | C] () -- C:\Windows\hpoins39.dat.temp> in the current context!
    Error: Unable to interpret <[2012/12/30 21:12:35 | 000,000,629 | ---- | C] () -- C:\Windows\hpomdl39.dat.temp> in the current context!
    Error: Unable to interpret <[2012/12/30 12:38:19 | 000,226,107 | ---- | C] () -- C:\Windows\hpoins39.dat> in the current context!
    Error: Unable to interpret <[2012/12/30 12:38:19 | 000,000,703 | ---- | C] () -- C:\Windows\hpomdl39.dat> in the current context!
    Error: Unable to interpret <[2012/12/19 10:41:16 | 000,006,656 | ---- | C] () -- C:\Windows\System32\bcmwlrc.dll> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[color=#E56717]========== ZeroAccess Check ==========/color> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[2009/07/14 06:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]> in the current context!
    Error: Unable to interpret <"" = %SystemRoot%\system32\shell32.dll -- [2009/07/14 03:16:14 | 012,866,560 | ---- | M] (Microsoft Corporation)> in the current context!
    Error: Unable to interpret <"ThreadingModel" = Apartment> in the current context!
    Error: Unable to interpret < > in the current context!
    Error: Unable to interpret <[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]> in the current context!
    Error: Unable to interpret <"" = %systemroot%\system32\wbem\fastprox.dll -- [2009/07/14 03:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation)> in the current context!
    Error: Unable to interpret <"ThreadingModel" = Free> in the current context!
    Error: Unable to interpret < > in the current context!

    Error: Unable to interpret <[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]> in the current context!
    Error: Unable to interpret <"" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/14 03:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)> in the current context!
    Error: Unable to interpret <"ThreadingModel" = Both> in the current context!
    Error: Unable to interpret << End of report >> in the current context!

    OTL by OldTimer - Version 3.2.69.0 log created on 08262013_211237
    0
    1. kinoubombi Messages postés 12 Statut Membre
       
      merci du temps que tu me consacres .
      cela fait plaisir.
      0
  6. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    sur pjjoint le rapport OTL.
    Lire la procédure jusqu'au bout.
    0
  7. kinoubombi Messages postés 12 Statut Membre
     
    bonjour
    c'est pas que je veux y mettre de la mauvaise volonté mais la je suis un peu perdu.
    j'ai été sur le lien puis accéder à la procédure de désinfection puis aprés j'ai rien.
    remets moi sur la route stp.
    bonne journée
    0
  8. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    A la fin de la procédure pour OTL donnée là : https://forums.commentcamarche.net/forum/affich-28589726-adware-tarma-installer-tuto4pc-services-x86#3

    c'est écrit qu'il faut pas copier/coller directement le rapport :

    * Quand le scan est fini, utilise le site http://pjjoint.malekal.com/ pour envoyer le rapport OTL.txt (et Extra.txt si présent).
    Donne le ou les liens pjjoint qui pointent vers ces rapports ici dans un nouveau message.
    Je répète : donne le lien du rapport pjjoint ici dans un nouveau message.

    NE PAS COPIER/COLLER LE RAPPORT ICI - DONNER LE LIEN PJJOINT DANS UN NOUVEAU MESSAGE


    voila, je peux pas faire plus clair en langage informatique :/

    0
  9. kinoubombi Messages postés 12 Statut Membre
     
    salut

    donc c bon j'ai fait ce qu'il faut sauf que je n'aurais pas du coller aprés correction .
    c grave ou pas .

    j'ai bien fait avec le lien, c celui la pour le extra
    https://pjjoint.malekal.com/files.php?id=20130827_w10q14w12j11p7

    merci
    0
    1. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
       
      ça c'est le rapport extra.txt
      manque OTL.Txt
      0
  10. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    Tu as deux antivirus : Avast! et Ad-Aware.
    Vas dans le Panneau de Configuration puis Programmes et Fonctionnalités
    Désinstalle un des deux.

    Désinstalle Google Toolbar.

    Supprime l'extension Utorrent Toolbar sur Firefox :
    Sur Firefox : Menu Outils / Modules complémentaires
    Onglet Extension.

    Les barres d'outils sont là pour t'affilier à un service (moteur de recherche de Yahoo! ou Google), ça rajoute des fonctionnalités mais en général les navigateurs les ont par défaut.
    De plus, elles enregistrent les sites que tu visites pour les transmettre (tracking) à faire de la publicité ciblée, c'est pas super niveau protection de la vie privée.
    Plusieurs toolbars ralentissent le PC et peuvent faire planter les navigateurs WEB.
    Au final, il est pas conseillé d'en utiliser.
    Lire :
    Les toolbars c'est pas obligatoire!

    ~~

    Sinon rien d'anormal.

    0
  11. kinoubombi Messages postés 12 Statut Membre
     
    bonsoir
    je n'artive pas a désinstaller avast.
    j'ai déjà fait les étapes mais il veut pas
    il me dit error
    0
    1. kinoubombi Messages postés 12 Statut Membre
       
      merci pour tout
      je ne sais pas ce que je dois mettre en final quand c résolu
      0
  12. kinoubombi Messages postés 12 Statut Membre
     
    salut

    super pour avast en revanche je ne trouve pas l'extension d'u torrent toolbar sur firefox pour la supprimer.
    j'ai été dans les modules complémentaires mais elle n'y est pas.
    0
  13. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    ok, alors je pense que c'est bon.

    Installe Malwarebyte's Anti-Malware : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
    Fais des scans réguliers avec, il est efficace.

    Pour ne plus te faire avoir.
    A lire - Programmes parasites / PUPs : https://www.malekal.com/adwares-pup-protection/

    0
    1. kinoubombi Messages postés 12 Statut Membre
       
      merci de ton aide.
      a bientot
      0