Supprimer les programmes dont je ne me sers pas/ nettoyage pc
Résolu
maxanne18
Messages postés
214
Date d'inscription
Statut
Membre
Dernière intervention
-
maxanne18 Messages postés 214 Date d'inscription Statut Membre Dernière intervention -
maxanne18 Messages postés 214 Date d'inscription Statut Membre Dernière intervention -
Bonjour,
j'ai un "vieux" pc Windows xp qui est infesté de virus et cie ...
J'ai téléchargé puis lancé malwarebytes qui a detecté et supprimé 260 erreurs
J'ai supprimé les 260 erreurs trouvéés et j'aimerais bien trouver un logiciel qui me permettra de désinstaller tous les programmes dont je ne me sers pas et qui envahissent ce pc avant de mettre en place un antivirus
(ce pc n'est pas protégé)
merci de ton aide Lili :-)
j'ai un "vieux" pc Windows xp qui est infesté de virus et cie ...
J'ai téléchargé puis lancé malwarebytes qui a detecté et supprimé 260 erreurs
J'ai supprimé les 260 erreurs trouvéés et j'aimerais bien trouver un logiciel qui me permettra de désinstaller tous les programmes dont je ne me sers pas et qui envahissent ce pc avant de mettre en place un antivirus
(ce pc n'est pas protégé)
merci de ton aide Lili :-)
A voir également:
- Supprimer les programmes dont je ne me sers pas/ nettoyage pc
- Nettoyage pc lent - Guide
- Supprimer rond bleu whatsapp - Guide
- Nettoyage mac - Guide
- Reinitialiser pc - Guide
- Mon pc s'allume mais ne démarre pas windows 10 - Guide
73 réponses
Hello
Je te mets les consignes
Attention script personnalisé à ne pas reproduire sur un autre ordinateur risque de plantage !
* Copies uniquement les lignes indiquées en gras ci-dessous dans le presse papier(tu surlignes avec la souris puis clic droit copier de Script ZHPFix jusqu'à la fin soit sysrestore)
Script ZHPFix
[MD5.896A1DB9A972AD2339C2E8569EC926D1] - (.Safer Networking Limited - System settings protector.) -- C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2144088] [PID.1104]
[MD5.E6E503845208A148A9E3E7FAA63B97A4] - (.PC Tools - StartMan Application.) -- C:\Program Files\Fichiers communs\PC Tools\sMonitor\StartManSvc.exe [583640] [PID.1156]
G2 - GCE: Preference [User Data\Default] [aaoinoedhmfcafpbdomnmdohliffdckd] FunkLyrics v.1.133 (Désactivé) =>Adware.AddLyrics
G2 - GCE: Preference [User Data\Default] [eooncjejnppfjjklapaamhcdmjbilmde] Delta Toolbar v.1.4 (Activé) =>Toolbar.DeltaSearch
G2 - GCE: Preference [User Data\Default] [igdhbblpcellaljokkpfhcjlagemhgjl] Iminent v.7.36.1.1, (Désactivé) =>Adware.IMBooster
G2 - GCE: Preference [User Data\Default] [kdidombaedgpfiiedeimiebkmbilgmlc] DefaultTab v.1.1.28, (Activé) =>Adware.Bandoo
G2 - GCE: Preference [User Data\Default] [kplononoginapdidffpaglcncgaembgo] Download and Sa v.7.1 (Désactivé) =>Adware.DownloadnSave
G2 - GCE: Preference [User Data\Default] [mphpbdjcljebbcnfopfngmfdackbbdgf] DealPly Shopping v.3.5.0.0 (Activé) =>PUP.DealPly
G2 - GCE: Preference [User Data\Default] [ppdjnkblmcjfnlogjjhpigpdgpcgdpll] BrowseFox v.1.0.0 (Activé) =>Adware.BrowseFox
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe (.not file.)
O4 - HKCU\..\Run: [WinUsr] C:\Program Files\Winsudate\gibusr.exe (.not file.)
OPT:O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
OPT:O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\CTFMON.exe
OPT:O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\CTFMON.exe
OPT:O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\CTFMON.exe
OPT:O4 - HKUS\S-1-5-21-796845957-2025429265-839522115-1004\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-796845957-2025429265-839522115-1004\..\Run: [WinUsr] C:\Program Files\Winsudate\gibusr.exe (.not file.)
O23 - Service: PC Tools Startup and Shutdown Monitor se (PCToolsSSDMonitorSvc) . (.PC Tools - StartMan Application.) - C:\Program Files\Fichiers communs\PC Tools\sMonitor\StartManSvc.exe
O23 - Service: (vToolbarUpdater15.5.0) . (...) - C:\Program Files\Fichiers communs\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe (.not file.) =>Toolbar.AVGSearch
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\At1.job [458]
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\At2.job [458]
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\At3.job [458]
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\At4.job [458]
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\At5.job [414]
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\OptimizerProUpdaterTask{581DFD45-F154-4D9C-9C2A-659F26477180}.job [572] =>PUP.OptimizerPro
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\SmartPCFix Task.job [366] =>Rogue.SmartPCFix
[HKCU\Software\IncrediMail]
[HKCU\Software\TorrentAid]
[HKCU\Software\WEDLMNGR] =>PUP.weDownloadManager
[HKCU\Software\Winsudate]
[HKCU\Software\PCTools]
[HKLM\Software\PCTools]
[HKLM\Software\WEDL] =>PUP.weDownloadManager
O43 - CFD: 25/08/2013 - 06:35:03 - [0,179] ----D C:\Program Files\BitDownload =>Adware.BitDownload
O43 - CFD: 31/10/2011 - 18:53:27 - [0,000] ----D C:\Documents and Settings\All Users\Application Data\IM
O43 - CFD: 31/10/2011 - 18:49:46 - [0,012] ----D C:\Documents and Settings\All Users\Application Data\IncrediMail
O43 - CFD: 24/12/2007 - 14:36:01 - [1,340] ----D C:\Documents and Settings\Anne Jacquot\Application Data\BitDownload =>Adware.BitDownload
O43 - CFD: 31/10/2011 - 20:12:41 - [26,290] ----D C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\IM
O43 - CFD: 18/09/2006 - 16:19:12 - [1535,668] ----D C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Shareaza
[MD5.70FC2625CEE5E8010631044346B1FAE6] [WIS][19/06/2011] (.iMesh Inc. - iMesh.) -- C:\Windows\Installer\43bb9f.msi [304640] =>PUP.iMesh
[MD5.FB34B8A36B45CBC68E0CBA85D0B989B9] [WIS][14/10/2012] (.Iminent - Iminent.) -- C:\Windows\Installer\478d31.msi [1678848] =>Adware.IMBooster
O90 - PUC: "82E17E6ABC34E3244B517B0CD07709E2" . (.Iminent.) -- C:\WINDOWS\Installer\{A6E71E28-43CB-423E-B415-B7C00D77902E}\imbooster.ico =>Adware.IMBooster
O64 - Services: CurCS - 02/01/1601 - Pas de propriétaire (vToolbarUpdater15.5.0) .(...) - LEGACY_VTOOLBARUPDATER15.5.0
SS - | Auto 10/07/1658 0 | (vToolbarUpdater15.5.0) . (...) - C:\Program Files\Fichiers communs\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe =>Toolbar.AVGSearch
SR - | Auto 05/08/2010 583640 | (PCToolsSSDMonitorSvc) . (.PC Tools.) - C:\Program Files\Fichiers communs\PC Tools\sMonitor\StartManSvc.exe
[HKLM\Software\Google\Chrome\Extensions\aaoinoedhmfcafpbdomnmdohliffdckd] =>Adware.AddLyrics^
[HKLM\Software\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde] =>Toolbar.DeltaSearch^
[HKLM\Software\Google\Chrome\Extensions\igdhbblpcellaljokkpfhcjlagemhgjl] =>Adware.IMBooster^
[HKLM\Software\Google\Chrome\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc] =>Adware.Bandoo^
[HKLM\Software\Google\Chrome\Extensions\kplononoginapdidffpaglcncgaembgo] =>Adware.DownloadnSave^
[HKLM\Software\Google\Chrome\Extensions\mphpbdjcljebbcnfopfngmfdackbbdgf] =>PUP.DealPly^
[HKLM\Software\Google\Chrome\Extensions\ppdjnkblmcjfnlogjjhpigpdgpcgdpll] =>Adware.BrowseFox^
[HKLM\SYSTEM\CurrentControlSet\Services\vToolbarUpdater15.5.0] =>Toolbar.AVGSearch^
[HKLM\Software\Classes\Interface\{0bbf19a5-be50-4e06-a340-6777a505e490}] =>Adware.RecordNRip
[HKLM\Software\Classes\TypeLib\{2d77ac8a-0a4c-40d0-9557-51907a575e45}] =>Adware.RecordNRip
[HKLM\Software\Classes\Interface\{869e753f-bd0d-4832-8131-94feee058ae3}] =>Adware.RecordNRip
[HKLM\Software\Classes\CLSID\{01AD9322-02FF-4f4f-AC52-92FDA5AE65F0}] =>Adware.RecordNRip
[HKLM\Software\Classes\CLSID\{03F14321-8FED-4CBC-B01A-4B57FC199062}] =>PUP.BearShare
[HKLM\Software\Classes\CLSID\{148132E6-626D-4A5E-8063-A761EB29A50B}] =>PUP.BearShare
[HKLM\Software\Classes\CLSID\{23BDC78C-B7BB-42E5-B970-54B292592D72}] =>PUP.BearShare
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{28387537-E3F9-4ED7-860C-11E69AF4A8A0}] =>Toolbar.Agent
[HKLM\Software\Classes\CLSID\{2C6F7E96-73BC-47A5-9F51-B67F0BAFE24D}] =>PUP.BearShare
[HKLM\Software\Classes\TypeLib\{43B4B831-F41F-4F73-8F14-4FFF0BA75B1B}] =>PUP.iMesh
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{474597C5-AB09-49d6-A4D5-2E8D7341384E}] =>PUP.iMesh
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{474597C5-AB09-49d6-A4D5-2E8D7341384E}] =>PUP.iMesh
[HKLM\Software\Classes\CLSID\{4C58EB04-7B72-4D3D-A36E-66167A99BC31}] =>PUP.BearShare
[HKLM\Software\Classes\CLSID\{4EE0B011-604C-47F3-8F2B-39F79640B85E}] =>PUP.BearShare
[HKLM\Software\Classes\CLSID\{5D9E7BE9-95E5-4392-8CD2-D82DE89589ED}] =>PUP.BearShare
[HKLM\Software\Classes\AppID\{5e50ae1d-bc76-418b-94c4-efeac0cef80c}] =>Toolbar.Kiwee
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5F1C03FD-025E-4786-AF80-C2EF5C979115}] =>Toolbar.Deenero
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5F1C03FD-025E-4786-AF80-C2EF5C979115}] =>Toolbar.Deenero
[HKLM\Software\Classes\AppID\{69E54DE2-C4ED-4BEC-8046-E3F9AC74B4B0}] =>PUP.iMesh
[HKLM\Software\Classes\CLSID\{6BC38BF4-E84D-46E1-920B-42D31AEA617E}] =>Toolbar.Agent
[HKLM\Software\Classes\TypeLib\{6C9945B7-1D19-46CB-88C0-45A24DF6CD6E}] =>PUP.iMesh
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6E13D095-45C3-4271-9475-F3B48227DD9F}] =>Adware.Zugo
[HKLM\Software\Classes\TypeLib\{84B9B044-17C0-48FB-A300-C9747D5DF29C}] =>PUP.iMesh
[HKLM\Software\Classes\TypeLib\{85672EDB-2CC8-40B9-A9E8-77D3478F2EFB}] =>PUP.iMesh
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}] =>Adware.IMBooster
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{cd36797a-70f3-4acd-8825-623d3b896881}] =>Toolbar.Conduit
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{cd36797a-70f3-4acd-8825-623d3b896881}] =>Toolbar.Conduit
[HKLM\Software\Classes\CLSID\{CD5175E2-7CC1-418C-B66C-0AB95DAD4103}] =>PUP.BearShare
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D5792AA9-D373-4039-8670-2CDAB6A71F15}] =>Trojan.Lop
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D5792AA9-D373-4039-8670-2CDAB6A71F15}] =>Trojan.Lop
[HKLM\Software\Classes\CLSID\{D8BFC514-1135-4393-B09A-193D2AAC5037}] =>PUP.BearShare
[HKLM\Software\Classes\AppID\{F54A0D21-6A53-460C-8301-C694EC9E1033}] =>PUP.iMesh
[HKLM\Software\Classes\AppID\{F7BCCFD4-2FA6-477D-A1B0-EF7500B3C49E}] =>PUP.iMesh
[HKLM\Software\Classes\CLSID\{F8AB43ED-EC88-4de7-B213-F89157D29C62}] =>PUP.iMesh
[HKLM\Software\Classes\AppID\Launcher.EXE] =>PUP.BearShare
[HKLM\Software\Classes\AppID\NCTAudioCompress3.DLL] =>PUP.BearShare
[HKLM\Software\Classes\AppID\NCTAudioFile3.DLL] =>PUP.BearShare
[HKLM\Software\Classes\AppID\NCTAudioFileWMA3.DLL] =>PUP.BearShare
[HKLM\Software\Classes\AppID\NCTAudioFormatSettings3.DLL] =>PUP.BearShare
[HKLM\Software\Classes\nctaudiocdwriter2.audiocdwriter2] =>Adware.RecordNRip
[HKLM\Software\Classes\nctaudiocdwriter2.audiocdwriter2.1] =>Adware.RecordNRip
[HKLM\Software\Classes\Installer\Features\82E17E6ABC34E3244B517B0CD07709E2] =>Adware.IMBooster
[HKLM\Software\Classes\Installer\Products\82E17E6ABC34E3244B517B0CD07709E2] =>Adware.IMBooster
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\82E17E6ABC34E3244B517B0CD07709E2] =>Adware.IMBooster
[HKCU\Software\aedgency] =>Toolbar.Deenero
[HKLM\Software\aedgency] =>Toolbar.Deenero
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\bitdownload] =>Adware.BitDownload
[HKCU\Software\WakeNet] =>Trojan.BHO
[HKCU\Software\Winsudate] =>Adware.Gibmedia
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>Toolbar.Tarma
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>Toolbar.Tarma
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\AVG SafeGuard toolbar] =>Toolbar.AVGSafeGuard
[HKCU\Software\AVG SafeGuard toolbar] =>Toolbar.AVGSafeGuard
[HKLM\Software\AVG SafeGuard toolbar] =>Toolbar.AVGSafeGuard
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A] =>Adware.IMBooster
[HKLM\Software\Classes\Audience.ToolBand.1] =>Toolbar.Agent
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{2318C2B1-4965-11d4-9B18-009027A5CD4F} =>Toolbar.Google^
[HKCU\Software\Microsoft\Windows\CurrentVersion\Run]:WinUsr =>Adware.Gibmedia
C:\Program Files\BitDownload =>Adware.BitDownload^
C:\Documents and Settings\Anne Jacquot\Application Data\BitDownload =>Adware.BitDownload^
C:\Program Files\torrent_search =>Toolbar.Conduit
C:\Documents and Settings\All Users\Application Data\InstallMate =>Toolbar.Tarma
C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaoinoedhmfcafpbdomnmdohliffdckd =>Adware.AddLyrics^
C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde =>Toolbar.DeltaSearch^
C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\igdhbblpcellaljokkpfhcjlagemhgjl =>Adware.IMBooster^
C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc =>Adware.Bandoo^
C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\kplononoginapdidffpaglcncgaembgo =>Adware.DownloadnSave^
C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\mphpbdjcljebbcnfopfngmfdackbbdgf =>PUP.DealPly^
C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ppdjnkblmcjfnlogjjhpigpdgpcgdpll =>Adware.BrowseFox^
C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google^
C:\WINDOWS\Tasks\OptimizerProUpdaterTask{581DFD45-F154-4D9C-9C2A-659F26477180}.job =>PUP.OptimizerPro^
C:\WINDOWS\Tasks\SmartPCFix Task.job =>Rogue.SmartPCFix^
[HKCU\Software\WEDLMNGR] =>PUP.weDownloadManager^
[HKLM\Software\WEDL] =>PUP.weDownloadManager^
C:\WINDOWS\Prefetch\OPTIMIZERPRO.EXE-1F07964B.pf =>PUP.OptimizerPro^
C:\WINDOWS\Prefetch\DEALPLYLIVE.EXE-36935358.pf =>PUP.DealPly^
C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www2.delta-search.com_0.localstorage =>Toolbar.DeltaSearch^
C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www2.delta-search.com_0.localstorage-journal =>Toolbar.DeltaSearch^
C:\WINDOWS\Installer\{A6E71E28-43CB-423E-B415-B7C00D77902E}\imbooster.ico =>Adware.IMBooster^
C:\Windows\Installer\43bb9f.msi =>PUP.iMesh^
C:\Windows\Installer\478d31.msi =>Adware.IMBooster^
C:\Program Files\Fichiers communs\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe =>Toolbar.AVGSearch^
Sysrestore
* Lance ZHPFix (icône seringue)en tant qu'administrateur(si tu es sous Vista/7/8)sinon double clique sur l'icône en forme de seringue puis clique sur OK pour continuer.
* Cliques sur importer(Dans certains cas le script se colle automatiquement dans la zone de script et ne nécessite pas de cliquer sur le bouton "IMPORTER".)
* Si tu ne vois pas les lignes clic droit dans l'encadré puis coller
* Clique sur le bouton GO pour lancer le nettoyage, et laisse l'outil travailler.
* Zhpfix te proposera de vider la corbeille si tu le souhaites cliques sur oui si tu ne le souhaites pas cliques sur non
* Redémarre le PC et poste le rapport C:\ZHP\ZHPFixReport.txt
Je te mets les consignes
Attention script personnalisé à ne pas reproduire sur un autre ordinateur risque de plantage !
* Copies uniquement les lignes indiquées en gras ci-dessous dans le presse papier(tu surlignes avec la souris puis clic droit copier de Script ZHPFix jusqu'à la fin soit sysrestore)
Script ZHPFix
[MD5.896A1DB9A972AD2339C2E8569EC926D1] - (.Safer Networking Limited - System settings protector.) -- C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2144088] [PID.1104]
[MD5.E6E503845208A148A9E3E7FAA63B97A4] - (.PC Tools - StartMan Application.) -- C:\Program Files\Fichiers communs\PC Tools\sMonitor\StartManSvc.exe [583640] [PID.1156]
G2 - GCE: Preference [User Data\Default] [aaoinoedhmfcafpbdomnmdohliffdckd] FunkLyrics v.1.133 (Désactivé) =>Adware.AddLyrics
G2 - GCE: Preference [User Data\Default] [eooncjejnppfjjklapaamhcdmjbilmde] Delta Toolbar v.1.4 (Activé) =>Toolbar.DeltaSearch
G2 - GCE: Preference [User Data\Default] [igdhbblpcellaljokkpfhcjlagemhgjl] Iminent v.7.36.1.1, (Désactivé) =>Adware.IMBooster
G2 - GCE: Preference [User Data\Default] [kdidombaedgpfiiedeimiebkmbilgmlc] DefaultTab v.1.1.28, (Activé) =>Adware.Bandoo
G2 - GCE: Preference [User Data\Default] [kplononoginapdidffpaglcncgaembgo] Download and Sa v.7.1 (Désactivé) =>Adware.DownloadnSave
G2 - GCE: Preference [User Data\Default] [mphpbdjcljebbcnfopfngmfdackbbdgf] DealPly Shopping v.3.5.0.0 (Activé) =>PUP.DealPly
G2 - GCE: Preference [User Data\Default] [ppdjnkblmcjfnlogjjhpigpdgpcgdpll] BrowseFox v.1.0.0 (Activé) =>Adware.BrowseFox
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe (.not file.)
O4 - HKCU\..\Run: [WinUsr] C:\Program Files\Winsudate\gibusr.exe (.not file.)
OPT:O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
OPT:O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\CTFMON.exe
OPT:O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\CTFMON.exe
OPT:O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\CTFMON.exe
OPT:O4 - HKUS\S-1-5-21-796845957-2025429265-839522115-1004\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-796845957-2025429265-839522115-1004\..\Run: [WinUsr] C:\Program Files\Winsudate\gibusr.exe (.not file.)
O23 - Service: PC Tools Startup and Shutdown Monitor se (PCToolsSSDMonitorSvc) . (.PC Tools - StartMan Application.) - C:\Program Files\Fichiers communs\PC Tools\sMonitor\StartManSvc.exe
O23 - Service: (vToolbarUpdater15.5.0) . (...) - C:\Program Files\Fichiers communs\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe (.not file.) =>Toolbar.AVGSearch
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\At1.job [458]
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\At2.job [458]
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\At3.job [458]
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\At4.job [458]
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\At5.job [414]
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\OptimizerProUpdaterTask{581DFD45-F154-4D9C-9C2A-659F26477180}.job [572] =>PUP.OptimizerPro
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\SmartPCFix Task.job [366] =>Rogue.SmartPCFix
[HKCU\Software\IncrediMail]
[HKCU\Software\TorrentAid]
[HKCU\Software\WEDLMNGR] =>PUP.weDownloadManager
[HKCU\Software\Winsudate]
[HKCU\Software\PCTools]
[HKLM\Software\PCTools]
[HKLM\Software\WEDL] =>PUP.weDownloadManager
O43 - CFD: 25/08/2013 - 06:35:03 - [0,179] ----D C:\Program Files\BitDownload =>Adware.BitDownload
O43 - CFD: 31/10/2011 - 18:53:27 - [0,000] ----D C:\Documents and Settings\All Users\Application Data\IM
O43 - CFD: 31/10/2011 - 18:49:46 - [0,012] ----D C:\Documents and Settings\All Users\Application Data\IncrediMail
O43 - CFD: 24/12/2007 - 14:36:01 - [1,340] ----D C:\Documents and Settings\Anne Jacquot\Application Data\BitDownload =>Adware.BitDownload
O43 - CFD: 31/10/2011 - 20:12:41 - [26,290] ----D C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\IM
O43 - CFD: 18/09/2006 - 16:19:12 - [1535,668] ----D C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Shareaza
[MD5.70FC2625CEE5E8010631044346B1FAE6] [WIS][19/06/2011] (.iMesh Inc. - iMesh.) -- C:\Windows\Installer\43bb9f.msi [304640] =>PUP.iMesh
[MD5.FB34B8A36B45CBC68E0CBA85D0B989B9] [WIS][14/10/2012] (.Iminent - Iminent.) -- C:\Windows\Installer\478d31.msi [1678848] =>Adware.IMBooster
O90 - PUC: "82E17E6ABC34E3244B517B0CD07709E2" . (.Iminent.) -- C:\WINDOWS\Installer\{A6E71E28-43CB-423E-B415-B7C00D77902E}\imbooster.ico =>Adware.IMBooster
O64 - Services: CurCS - 02/01/1601 - Pas de propriétaire (vToolbarUpdater15.5.0) .(...) - LEGACY_VTOOLBARUPDATER15.5.0
SS - | Auto 10/07/1658 0 | (vToolbarUpdater15.5.0) . (...) - C:\Program Files\Fichiers communs\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe =>Toolbar.AVGSearch
SR - | Auto 05/08/2010 583640 | (PCToolsSSDMonitorSvc) . (.PC Tools.) - C:\Program Files\Fichiers communs\PC Tools\sMonitor\StartManSvc.exe
[HKLM\Software\Google\Chrome\Extensions\aaoinoedhmfcafpbdomnmdohliffdckd] =>Adware.AddLyrics^
[HKLM\Software\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde] =>Toolbar.DeltaSearch^
[HKLM\Software\Google\Chrome\Extensions\igdhbblpcellaljokkpfhcjlagemhgjl] =>Adware.IMBooster^
[HKLM\Software\Google\Chrome\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc] =>Adware.Bandoo^
[HKLM\Software\Google\Chrome\Extensions\kplononoginapdidffpaglcncgaembgo] =>Adware.DownloadnSave^
[HKLM\Software\Google\Chrome\Extensions\mphpbdjcljebbcnfopfngmfdackbbdgf] =>PUP.DealPly^
[HKLM\Software\Google\Chrome\Extensions\ppdjnkblmcjfnlogjjhpigpdgpcgdpll] =>Adware.BrowseFox^
[HKLM\SYSTEM\CurrentControlSet\Services\vToolbarUpdater15.5.0] =>Toolbar.AVGSearch^
[HKLM\Software\Classes\Interface\{0bbf19a5-be50-4e06-a340-6777a505e490}] =>Adware.RecordNRip
[HKLM\Software\Classes\TypeLib\{2d77ac8a-0a4c-40d0-9557-51907a575e45}] =>Adware.RecordNRip
[HKLM\Software\Classes\Interface\{869e753f-bd0d-4832-8131-94feee058ae3}] =>Adware.RecordNRip
[HKLM\Software\Classes\CLSID\{01AD9322-02FF-4f4f-AC52-92FDA5AE65F0}] =>Adware.RecordNRip
[HKLM\Software\Classes\CLSID\{03F14321-8FED-4CBC-B01A-4B57FC199062}] =>PUP.BearShare
[HKLM\Software\Classes\CLSID\{148132E6-626D-4A5E-8063-A761EB29A50B}] =>PUP.BearShare
[HKLM\Software\Classes\CLSID\{23BDC78C-B7BB-42E5-B970-54B292592D72}] =>PUP.BearShare
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{28387537-E3F9-4ED7-860C-11E69AF4A8A0}] =>Toolbar.Agent
[HKLM\Software\Classes\CLSID\{2C6F7E96-73BC-47A5-9F51-B67F0BAFE24D}] =>PUP.BearShare
[HKLM\Software\Classes\TypeLib\{43B4B831-F41F-4F73-8F14-4FFF0BA75B1B}] =>PUP.iMesh
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{474597C5-AB09-49d6-A4D5-2E8D7341384E}] =>PUP.iMesh
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{474597C5-AB09-49d6-A4D5-2E8D7341384E}] =>PUP.iMesh
[HKLM\Software\Classes\CLSID\{4C58EB04-7B72-4D3D-A36E-66167A99BC31}] =>PUP.BearShare
[HKLM\Software\Classes\CLSID\{4EE0B011-604C-47F3-8F2B-39F79640B85E}] =>PUP.BearShare
[HKLM\Software\Classes\CLSID\{5D9E7BE9-95E5-4392-8CD2-D82DE89589ED}] =>PUP.BearShare
[HKLM\Software\Classes\AppID\{5e50ae1d-bc76-418b-94c4-efeac0cef80c}] =>Toolbar.Kiwee
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5F1C03FD-025E-4786-AF80-C2EF5C979115}] =>Toolbar.Deenero
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5F1C03FD-025E-4786-AF80-C2EF5C979115}] =>Toolbar.Deenero
[HKLM\Software\Classes\AppID\{69E54DE2-C4ED-4BEC-8046-E3F9AC74B4B0}] =>PUP.iMesh
[HKLM\Software\Classes\CLSID\{6BC38BF4-E84D-46E1-920B-42D31AEA617E}] =>Toolbar.Agent
[HKLM\Software\Classes\TypeLib\{6C9945B7-1D19-46CB-88C0-45A24DF6CD6E}] =>PUP.iMesh
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6E13D095-45C3-4271-9475-F3B48227DD9F}] =>Adware.Zugo
[HKLM\Software\Classes\TypeLib\{84B9B044-17C0-48FB-A300-C9747D5DF29C}] =>PUP.iMesh
[HKLM\Software\Classes\TypeLib\{85672EDB-2CC8-40B9-A9E8-77D3478F2EFB}] =>PUP.iMesh
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}] =>Adware.IMBooster
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{cd36797a-70f3-4acd-8825-623d3b896881}] =>Toolbar.Conduit
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{cd36797a-70f3-4acd-8825-623d3b896881}] =>Toolbar.Conduit
[HKLM\Software\Classes\CLSID\{CD5175E2-7CC1-418C-B66C-0AB95DAD4103}] =>PUP.BearShare
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D5792AA9-D373-4039-8670-2CDAB6A71F15}] =>Trojan.Lop
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D5792AA9-D373-4039-8670-2CDAB6A71F15}] =>Trojan.Lop
[HKLM\Software\Classes\CLSID\{D8BFC514-1135-4393-B09A-193D2AAC5037}] =>PUP.BearShare
[HKLM\Software\Classes\AppID\{F54A0D21-6A53-460C-8301-C694EC9E1033}] =>PUP.iMesh
[HKLM\Software\Classes\AppID\{F7BCCFD4-2FA6-477D-A1B0-EF7500B3C49E}] =>PUP.iMesh
[HKLM\Software\Classes\CLSID\{F8AB43ED-EC88-4de7-B213-F89157D29C62}] =>PUP.iMesh
[HKLM\Software\Classes\AppID\Launcher.EXE] =>PUP.BearShare
[HKLM\Software\Classes\AppID\NCTAudioCompress3.DLL] =>PUP.BearShare
[HKLM\Software\Classes\AppID\NCTAudioFile3.DLL] =>PUP.BearShare
[HKLM\Software\Classes\AppID\NCTAudioFileWMA3.DLL] =>PUP.BearShare
[HKLM\Software\Classes\AppID\NCTAudioFormatSettings3.DLL] =>PUP.BearShare
[HKLM\Software\Classes\nctaudiocdwriter2.audiocdwriter2] =>Adware.RecordNRip
[HKLM\Software\Classes\nctaudiocdwriter2.audiocdwriter2.1] =>Adware.RecordNRip
[HKLM\Software\Classes\Installer\Features\82E17E6ABC34E3244B517B0CD07709E2] =>Adware.IMBooster
[HKLM\Software\Classes\Installer\Products\82E17E6ABC34E3244B517B0CD07709E2] =>Adware.IMBooster
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\82E17E6ABC34E3244B517B0CD07709E2] =>Adware.IMBooster
[HKCU\Software\aedgency] =>Toolbar.Deenero
[HKLM\Software\aedgency] =>Toolbar.Deenero
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\bitdownload] =>Adware.BitDownload
[HKCU\Software\WakeNet] =>Trojan.BHO
[HKCU\Software\Winsudate] =>Adware.Gibmedia
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>Toolbar.Tarma
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>Toolbar.Tarma
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\AVG SafeGuard toolbar] =>Toolbar.AVGSafeGuard
[HKCU\Software\AVG SafeGuard toolbar] =>Toolbar.AVGSafeGuard
[HKLM\Software\AVG SafeGuard toolbar] =>Toolbar.AVGSafeGuard
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A] =>Adware.IMBooster
[HKLM\Software\Classes\Audience.ToolBand.1] =>Toolbar.Agent
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{2318C2B1-4965-11d4-9B18-009027A5CD4F} =>Toolbar.Google^
[HKCU\Software\Microsoft\Windows\CurrentVersion\Run]:WinUsr =>Adware.Gibmedia
C:\Program Files\BitDownload =>Adware.BitDownload^
C:\Documents and Settings\Anne Jacquot\Application Data\BitDownload =>Adware.BitDownload^
C:\Program Files\torrent_search =>Toolbar.Conduit
C:\Documents and Settings\All Users\Application Data\InstallMate =>Toolbar.Tarma
C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaoinoedhmfcafpbdomnmdohliffdckd =>Adware.AddLyrics^
C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde =>Toolbar.DeltaSearch^
C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\igdhbblpcellaljokkpfhcjlagemhgjl =>Adware.IMBooster^
C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc =>Adware.Bandoo^
C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\kplononoginapdidffpaglcncgaembgo =>Adware.DownloadnSave^
C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\mphpbdjcljebbcnfopfngmfdackbbdgf =>PUP.DealPly^
C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ppdjnkblmcjfnlogjjhpigpdgpcgdpll =>Adware.BrowseFox^
C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google^
C:\WINDOWS\Tasks\OptimizerProUpdaterTask{581DFD45-F154-4D9C-9C2A-659F26477180}.job =>PUP.OptimizerPro^
C:\WINDOWS\Tasks\SmartPCFix Task.job =>Rogue.SmartPCFix^
[HKCU\Software\WEDLMNGR] =>PUP.weDownloadManager^
[HKLM\Software\WEDL] =>PUP.weDownloadManager^
C:\WINDOWS\Prefetch\OPTIMIZERPRO.EXE-1F07964B.pf =>PUP.OptimizerPro^
C:\WINDOWS\Prefetch\DEALPLYLIVE.EXE-36935358.pf =>PUP.DealPly^
C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www2.delta-search.com_0.localstorage =>Toolbar.DeltaSearch^
C:\Documents and Settings\Anne Jacquot\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www2.delta-search.com_0.localstorage-journal =>Toolbar.DeltaSearch^
C:\WINDOWS\Installer\{A6E71E28-43CB-423E-B415-B7C00D77902E}\imbooster.ico =>Adware.IMBooster^
C:\Windows\Installer\43bb9f.msi =>PUP.iMesh^
C:\Windows\Installer\478d31.msi =>Adware.IMBooster^
C:\Program Files\Fichiers communs\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe =>Toolbar.AVGSearch^
Sysrestore
* Lance ZHPFix (icône seringue)en tant qu'administrateur(si tu es sous Vista/7/8)sinon double clique sur l'icône en forme de seringue puis clique sur OK pour continuer.
* Cliques sur importer(Dans certains cas le script se colle automatiquement dans la zone de script et ne nécessite pas de cliquer sur le bouton "IMPORTER".)
* Si tu ne vois pas les lignes clic droit dans l'encadré puis coller
* Clique sur le bouton GO pour lancer le nettoyage, et laisse l'outil travailler.
* Zhpfix te proposera de vider la corbeille si tu le souhaites cliques sur oui si tu ne le souhaites pas cliques sur non
* Redémarre le PC et poste le rapport C:\ZHP\ZHPFixReport.txt
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Super tu te débrouilles comme un chef!
Avant de finaliser
Peux tu vider la quarantaine de Mbam
Tu veux changer pour avast?
Avant de finaliser
Peux tu vider la quarantaine de Mbam
Tu veux changer pour avast?
Hello
Pour Mbam ouvres le puis cliques sur l'onglet quarantaine puis tout supprimer
Pour avast
Je te conseille d'abord de le télécharger(sans l'installer) ici http://redir.iavs5x.u.avcdn.net/iavs5x/avast_free_antivirus_setup.exe
Ensuite désinstalles MSE par ajout suppression de programme
Ensuite installes avast
Refais moi ensuite un zhpdiag
Pour Mbam ouvres le puis cliques sur l'onglet quarantaine puis tout supprimer
Pour avast
Je te conseille d'abord de le télécharger(sans l'installer) ici http://redir.iavs5x.u.avcdn.net/iavs5x/avast_free_antivirus_setup.exe
Ensuite désinstalles MSE par ajout suppression de programme
Ensuite installes avast
Refais moi ensuite un zhpdiag
Mbam perimé depuis 12 jours (!!!) il me demande de mettre a jour , j'ai lancé ..; j'attends et je reviens
alors, ok dans "programmes files /c" j'ai un fichier qui s'appelle MSEcACHE, c'est celui là que je dois supprimer ?
[url=http://www.noelshack.com/2013-39-1380013728-progrm-files-copie-image.png][img]http://image.noelshack.com/minis/2013/39/1380013728-progrm-files-copie-image.png[/img][/url]
Je ne comprends pas pourquoi mais je n'arrive pas à enregistrer le document paint de l'intérieur de ce dossier
donc à l'interieur il y a 4 fichiers : catalog, eula document texte, ppviewver archive winrar et ppviewer package Windows installer ...
donc à l'interieur il y a 4 fichiers : catalog, eula document texte, ppviewver archive winrar et ppviewer package Windows installer ...