Comment supprimer Tuto4pc svp

Résolu
mrhazard Messages postés 24 Statut Membre -  
Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   -
Bonjour à tous,
Récemment, j'ai sur mon pc une demande de mise à jour qui me dis d'installer Tuto4pc et des fenêtres publicitaires qui s'ouvrent tout le temps.
J'aimerais savoir comment supprimer Tuto4pc de mon ordinateur,
En vous remerciant pour vos réponses.

4 réponses

  1. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    Salut,

    Programmes et fonctionnalités du panneau de configuration.
    Désinstalle tous les programmes Tuto4PC et FreeSoftToday.

    puis :

    Suis ce tutorial https://www.malekal.com/adwcleaner-supprimer-virus-adwares-pup/?t=33839&start= AdwCleaner ( d'Xplode ) sur ton bureau.
    Vas sur le lien, télécharge AdwCleaner comme indiqué.
    Lance AdwCleaner, clique sur [Scanner].
    Le scan peux durer plusieurs minutes, patienter.
    Une fois le scan terminé, clique sur [Nettoyer]

    Une fois le nettoyage terminé, un rapport s'ouvrira. Copie/colle le contenu du rapport dans ta prochaine réponse par un copier/coller.
    Si cela ne fonctionne pas, utilise le site http://pjjoint.malekal.com pour héberger le rapport, donne le lien du rapport dans un nouveau message.

    Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt

    Like the angel you are, you laugh creating a lightness in my chest,
    Your eyes they penetrate me,
    (Your answer's always 'maybe')
    That's when I got up and left
    1
    1. mrhazard Messages postés 24 Statut Membre
       
      je vous poste le rapport dans la journée car je travaille et merci pour votre soutien.
      0
    2. mrhazard Messages postés 24 Statut Membre
       
      # AdwCleaner v3.019 - Rapport créé le 19/02/2014 à 10:25:57
      # Mis à jour le 17/02/2014 par Xplode
      # Système d'exploitation : Microsoft Windows XP Service Pack 3 (32 bits)
      # Nom d'utilisateur : Lebegue - USER-5944C6F0F9
      # Exécuté depuis : C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Mes documents\Downloads\adwcleaner.exe
      # Option : Nettoyer

      ***** [ Services ] *****


      ***** [ Fichiers / Dossiers ] *****


      ***** [ Raccourcis ] *****


      ***** [ Registre ] *****

      Clé Supprimée : HKCU\Software\Tutorials

      ***** [ Navigateurs ] *****

      -\\ Internet Explorer v8.0.6001.18702


      -\\ Google Chrome v32.0.1700.107

      *************************

      AdwCleaner[R2].txt - [2682 octets] - [09/02/2014 14:45:07]
      AdwCleaner[R3].txt - [924 octets] - [09/02/2014 17:19:57]
      AdwCleaner[R4].txt - [983 octets] - [09/02/2014 17:20:54]
      AdwCleaner[R5].txt - [1475 octets] - [19/02/2014 01:14:42]
      AdwCleaner[R6].txt - [1163 octets] - [19/02/2014 10:25:07]
      AdwCleaner[S2].txt - [2763 octets] - [09/02/2014 14:47:41]
      AdwCleaner[S3].txt - [1552 octets] - [19/02/2014 01:16:04]
      AdwCleaner[S4].txt - [1086 octets] - [19/02/2014 10:25:57]

      ########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [1146 octets] ##########
      0
  2. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    tu as pu le désinstaller ?

    Faire un Scan OTL - Temps : Environ 40min
    =============================================
    OTL permet de diagnostiquer les programmes qui tournent et déceler des infections - Le programme va générer deux rapports OTL.txt et Extras.txt
    Fournir les deux rapports :

    Tu peux suivre les indications de cette page pour t'aider : https://www.malekal.com/tutorial-otl/

    * Télécharge http://www.geekstogo.com/forum/files/file/398-otl-oldtimers-list-it/ sur ton bureau.
    (Sous Vista/Win7, il faut cliquer droit sur OTL et choisir Exécuter en tant qu'administrateur)

    Dans le cas d'Avast!, ne pas lancer le programme dans la Sandbox (voir lien d'aide ci-dessus).

    * Lance OTL
    * En haut à droite de Analyse rapide, coche "tous les utilisateurs"
    * Clique sur le bouton Analyse.

    **** Si durant le scan - OTL ne répond pas, ne touche à rien et laisse le scan se poursuivre ****

    * Quand le scan est fini, utilise le site http://pjjoint.malekal.com/ pour envoyer le rapport OTL.txt (et Extra.txt si présent).
    Donne le ou les liens pjjoint qui pointent vers ces rapports ici dans une réponse.
    Je répète : donne le lien du rapport pjjoint ici en réponse.

    NE PAS COPIER/COLLER LE RAPPORT ICI - DONNER LE LIEN PJJOINT DANS UN NOUVEAU MESSAGE

    1
    1. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
       
      tu as pu le désinstaller ?
      0
    2. mrhazard Messages postés 24 Statut Membre
       
      j'ai toujours des pages publicitaires et impossible de le supprimer dans program files, on m'a conseillé roguekiller est-ce un bon moyen de supprimer Tuto4pc ?
      0
    3. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
       
      Les programmes ça se supprime pas en supprimant les fichiers depuis Program Files.

      Dans mon premier message :

      Programmes et fonctionnalités du panneau de configuration.
      Désinstalle tous les programmes Tuto4PC et FreeSoftToday.
      0
    4. mrhazard Messages postés 24 Statut Membre
       
      je n'arrive pas a trouver tuto4pc et FreeSoftToday dans la suppression des programmes.
      Cela veut dire qu'il est supprimé ?
      0
  3. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    Fais ça pour voir :

    Relance OTL.
    o sous Personnalisation (Custom Scan), copie_colle le contenu du cadre ci dessous (bien prendre :OTL en début).
    Clic Correction (Fix), un rapport apparraitra, copie/colle le contenu ici:

    :OTL
    O4 - HKLM..\Run: [tuto4pc_fr_85] File not found
    O4 - HKLM..\Run: [tuto4pc_fr_86] C:\Program Files\tuto4pc_fr_86\tuto4pc_fr_86.exe ()
    O4 - HKLM..\Run: [uptt4fr7.exe] C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\tuto4pc_fr_7\uptt4fr7.exe ()

    * poste le rapport ici

    Redémarre l'ordinateur

    Like the angel you are, you laugh creating a lightness in my chest,
    Your eyes they penetrate me,
    (Your answer's always 'maybe')
    That's when I got up and left
    1
    1. mrhazard Messages postés 24 Statut Membre
       
      OTL logfile created on: 19/02/2014 12:48:27 - Run 2
      OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Mes documents\Downloads
      Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
      Internet Explorer (Version = 8.0.6001.18702)
      Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy

      2,00 Gb Total Physical Memory | 1,03 Gb Available Physical Memory | 51,40% Memory free
      3,85 Gb Paging File | 3,04 Gb Available in Paging File | 78,97% Paging File free
      Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
      Drive C: | 151,37 Gb Total Space | 24,95 Gb Free Space | 16,48% Space Free | Partition Type: NTFS
      Drive D: | 146,71 Gb Total Space | 146,22 Gb Free Space | 99,66% Space Free | Partition Type: NTFS

      Computer Name: USER-5944C6F0F9 | User Name: Lebegue | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: Current user | Quick Scan
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

      [color=#E56717]========== Processes (SafeList) ==========[/color]

      PRC - [2014/02/19 11:31:09 | 000,706,560 | ---- | M] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Temp\is-5UQN0.tmp\majt4pc.tmp
      PRC - [2014/02/19 11:31:08 | 007,062,456 | ---- | M] (Tuto4PC ) -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\tuto4pc_fr_7\Download\majt4pc.exe
      PRC - [2014/02/19 10:31:34 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Mes documents\Downloads\OTL.exe
      PRC - [2014/02/02 00:42:39 | 000,866,632 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
      PRC - [2013/12/24 07:25:20 | 011,670,992 | ---- | M] () -- C:\Program Files\tuto4pc_fr_86\tuto4pc_fr_86.exe
      PRC - [2013/12/18 21:05:43 | 000,182,696 | ---- | M] (Oracle Corporation) -- C:\Program Files\Java\jre7\bin\jqs.exe
      PRC - [2013/10/31 11:35:46 | 000,070,880 | ---- | M] () -- C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
      PRC - [2013/10/31 11:35:30 | 000,449,760 | ---- | M] (Sony) -- C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
      PRC - [2013/10/23 15:01:10 | 000,022,208 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\MsMpEng.exe
      PRC - [2013/10/23 14:55:28 | 000,948,440 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\msseces.exe
      PRC - [2013/07/02 08:16:26 | 000,254,336 | ---- | M] (Oracle Corporation) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe
      PRC - [2012/12/21 15:27:46 | 000,057,008 | ---- | M] (Apple Inc.) -- C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe
      PRC - [2012/09/17 17:19:52 | 000,719,720 | ---- | M] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\tuto4pc_fr_7\uptt4fr7.exe
      PRC - [2009/08/18 11:29:22 | 001,529,728 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSVC.EXE
      PRC - [2009/08/18 11:29:22 | 000,183,152 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSVCM.EXE
      PRC - [2008/09/30 17:46:14 | 007,418,368 | ---- | M] (OpenOffice.org) -- C:\Program Files\OpenOffice.org 3\program\soffice.bin
      PRC - [2008/09/30 17:45:02 | 007,424,000 | ---- | M] (OpenOffice.org) -- C:\Program Files\OpenOffice.org 3\program\soffice.exe
      PRC - [2008/04/14 13:00:00 | 001,037,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


      [color=#E56717]========== Modules (No Company Name) ==========[/color]

      MOD - [2014/02/19 11:31:09 | 000,706,560 | ---- | M] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Temp\is-5UQN0.tmp\majt4pc.tmp
      MOD - [2014/02/02 00:42:37 | 013,616,456 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\32.0.1700.107\PepperFlash\pepflashplayer.dll
      MOD - [2014/02/02 00:42:37 | 000,399,688 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\32.0.1700.107\ppgooglenaclpluginchrome.dll
      MOD - [2014/02/02 00:42:35 | 004,055,368 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\32.0.1700.107\pdf.dll
      MOD - [2014/02/02 00:41:43 | 001,634,632 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\32.0.1700.107\ffmpegsumo.dll
      MOD - [2013/12/24 07:25:20 | 011,670,992 | ---- | M] () -- C:\Program Files\tuto4pc_fr_86\tuto4pc_fr_86.exe
      MOD - [2013/11/06 15:33:28 | 000,654,336 | ---- | M] () -- C:\Program Files\Sony\Sony PC Companion\PhoneUpdate.dll
      MOD - [2013/10/31 11:35:46 | 000,070,880 | ---- | M] () -- C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
      MOD - [2013/09/13 10:02:30 | 000,208,896 | ---- | M] () -- C:\Program Files\Sony\Sony PC Companion\MExplorer.dll
      MOD - [2013/05/20 11:58:08 | 000,620,718 | ---- | M] () -- C:\Program Files\Sony\Sony PC Companion\sqlite3.dll
      MOD - [2012/09/17 17:19:52 | 000,719,720 | ---- | M] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\tuto4pc_fr_7\uptt4fr7.exe
      MOD - [2012/04/30 10:57:42 | 000,039,936 | ---- | M] () -- C:\Program Files\Sony\Sony PC Companion\TMonitorAPI.dll
      MOD - [2011/11/01 23:26:32 | 000,087,912 | ---- | M] () -- C:\Program Files\Fichiers communs\Apple\Apple Application Support\zlib1.dll
      MOD - [2011/11/01 23:26:12 | 001,242,472 | ---- | M] () -- C:\Program Files\Fichiers communs\Apple\Apple Application Support\libxml2.dll
      MOD - [2011/07/07 13:54:36 | 000,233,984 | ---- | M] () -- C:\Program Files\Sony\Sony PC Companion\Report.dll
      MOD - [2011/03/02 12:40:51 | 000,140,288 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll
      MOD - [2008/10/15 16:44:52 | 000,205,312 | ---- | M] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Temp\is-7SBVK.tmp\itdownload.dll
      MOD - [2008/07/29 14:55:14 | 000,969,728 | ---- | M] () -- C:\Program Files\OpenOffice.org 3\program\libxml2.dll
      MOD - [2008/04/14 13:00:00 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll


      [color=#E56717]========== Services (SafeList) ==========[/color]

      SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
      SRV - File not found [On_Demand | Stopped] -- C:\Documents and Settings\All Users\Application Data\BitRaider\BRSptSvc.exe -- (BRSptSvc)
      SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt)
      SRV - [2014/02/09 16:33:44 | 000,257,928 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
      SRV - [2013/12/18 21:05:43 | 000,182,696 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService)
      SRV - [2013/10/23 15:01:10 | 000,022,208 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
      SRV - [2013/09/05 10:34:30 | 000,171,680 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
      SRV - [2013/02/04 17:43:22 | 000,155,824 | ---- | M] (Avanquest Software) [On_Demand | Stopped] -- C:\Program Files\Sony\Sony PC Companion\PCCService.exe -- (Sony PC Companion)
      SRV - [2012/12/21 15:27:46 | 000,057,008 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe -- (Apple Mobile Device)
      SRV - [2009/08/18 11:29:22 | 001,529,728 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSVC.EXE -- (wlidsvc)
      SRV - [2005/04/03 23:41:10 | 000,069,632 | ---- | M] (Macrovision Corporation) [On_Demand | Stopped] -- C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe -- (IDriverT)


      [color=#E56717]========== Driver Services (SafeList) ==========[/color]

      DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
      DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
      DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
      DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
      DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
      DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
      DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\pccsmcfd.sys -- (pccsmcfd)
      DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
      DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
      DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\EagleXNt.sys -- (EagleXNt)
      DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\EagleNT.sys -- (EagleNT)
      DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
      DRV - File not found [File_System | On_Demand | Stopped] -- c:\Documents and Settings\All Users\Application Data\BitRaider\BRDriver.sys -- (BRDriver)
      DRV - [2012/10/01 17:16:50 | 000,025,200 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggsemc.sys -- (ggsemc)
      DRV - [2012/10/01 17:16:50 | 000,012,400 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggflt.sys -- (ggflt)
      DRV - [2012/04/06 19:15:10 | 000,033,512 | ---- | M] (AnchorFree Inc) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\taphss.sys -- (taphss)
      DRV - [2011/11/10 04:42:12 | 007,493,120 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
      DRV - [2010/04/28 06:44:02 | 000,054,760 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\fssfltr_tdi.sys -- (fssfltr)
      DRV - [2009/04/21 11:09:07 | 000,005,632 | ---- | M] () [File_System | System | Running] -- C:\WINDOWS\System32\drivers\StarOpen.sys -- (StarOpen)
      DRV - [2009/03/05 08:14:50 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\FsUsbExDisk.Sys -- (FsUsbExDisk)
      DRV - [2008/07/02 20:38:14 | 000,089,600 | R--- | M] (ATI Research Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AtiHdmi.sys -- (AtiHdmiService)
      DRV - [2007/12/12 07:35:46 | 000,212,992 | R--- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\viahduaa.sys -- (VIAHdAudAddService)
      DRV - [2007/09/20 11:07:40 | 000,022,016 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus)
      DRV - [2007/09/20 11:07:38 | 000,053,632 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD)
      DRV - [2006/11/10 08:54:10 | 000,061,600 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SE2Cbus.sys -- (SE2Cbus)


      [color=#E56717]========== Standard Registry (SafeList) ==========[/color]


      [color=#E56717]========== Internet Explorer ==========[/color]

      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = https://www.google.com/?gws_rd=ssl
      IE - HKLM\..\SearchScopes,DefaultScope =
      IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = https://www.bing.com/?scope=web&mkt=fr-FR{searchTerms}&FORM=IE8SRC

      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?gws_rd=ssl
      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/?gws_rd=ssl
      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = fr
      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 3E 37 A9 5D 71 94 CB 01 [binary data]
      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = https://www.google.com/?gws_rd=ssl
      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = https://www.google.com/?gws_rd=ssl
      IE - HKCU\..\SearchScopes,DefaultScope =
      IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = https://www.bing.com/?scope=web&mkt=fr-FR{searchTerms}&src=IE-SearchBox&Form=IE8SRC
      IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = https://www.google.com/webhp?gws_rd=ssl{searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7GGLL_fr
      IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
      IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local


      [color=#E56717]========== FireFox ==========[/color]

      FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
      FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: File not found
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

      FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2009/10/16 15:48:08 | 000,000,000 | ---D | M]
      FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\mozilla_cc@internetdownloadmanager.com: C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\IDM\idmmzcc5

      [2013/07/15 20:16:22 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Mozilla\Extensions
      [2010/10/09 23:47:29 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Mozilla\Extensions\mozswing@mozswing.org
      [2013/07/15 20:25:49 | 000,000,000 | ---D | M] (Speed Analysis 2) -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Mozilla\Extensions\speedanalysis02@SpeedAnalysis.com
      [2013/07/15 20:25:50 | 000,000,000 | ---D | M] (Zula Games) -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Mozilla\Extensions\zulagames@ZulaGames.com
      [2013/06/11 15:00:29 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions

      [color=#E56717]========== Chrome ==========[/color]

      CHR - default_search_provider: Google (Enabled)
      CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
      CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
      CHR - Extension: Google\u00A0Drive = C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
      CHR - Extension: YouTube = C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
      CHR - Extension: Recherche Google = C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
      CHR - Extension: Google\u00A0Wallet = C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\
      CHR - Extension: Google\u00A0Wallet = C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
      CHR - Extension: Gmail = C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

      O1 HOSTS File: ([2014/02/09 14:51:25 | 000,001,074 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
      O1 - Hosts: 127.0.0.1 localhost
      O1 - Hosts: 0.0.0.0 boxore.com
      O1 - Hosts: 0.0.0.0 www.boxore.com
      O1 - Hosts: 0.0.0.0 boxore.org
      O1 - Hosts: 0.0.0.0 www.boxore.org
      O1 - Hosts: 0.0.0.0 boxore.net
      O1 - Hosts: 0.0.0.0 www.boxore.net
      O1 - Hosts: 0.0.0.0 dlmanager.com
      O1 - Hosts: 0.0.0.0 www.dlmanager.com
      O1 - Hosts: 0.0.0.0 dlmanager.org
      O1 - Hosts: 0.0.0.0 www.dlmanager.org
      O1 - Hosts: 0.0.0.0 dlmanager.net
      O1 - Hosts: 0.0.0.0 www.dlmanager.net
      O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
      O2 - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
      O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
      O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
      O4 - HKLM..\Run: [] File not found
      O4 - HKLM..\Run: [Adobe ARM] C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
      O4 - HKLM..\Run: [AppleSyncNotifier] C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleSyncNotifier.exe (Apple Inc.)
      O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Fichiers communs\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
      O4 - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
      O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
      O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe (Oracle Corporation)
      O4 - HKLM..\Run: [tuto4pc_fr_85] File not found
      O4 - HKLM..\Run: [tuto4pc_fr_86] C:\Program Files\tuto4pc_fr_86\tuto4pc_fr_86.exe ()
      O4 - HKLM..\Run: [uptt4fr7.exe] C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\tuto4pc_fr_7\uptt4fr7.exe ()
      O4 - HKCU..\Run: [Sony PC Companion] C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe (Sony)
      O4 - Startup: C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Menu Démarrer\Programmes\Démarrage\OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
      O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0
      O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html File not found
      O9 - Extra 'Tools' menuitem : Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre7\bin\jp2iexp.dll ()
      O9 - Extra Button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\Smart Print\SmartPrintSetup.exe (Hewlett-Packard)
      O9 - Extra 'Tools' menuitem : HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\Smart Print\SmartPrintSetup.exe (Hewlett-Packard)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
      O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab (Checkers Class)
      O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab (Solitaire Showdown Class)
      O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 10.51.2)
      O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.)
      O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class)
      O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07)
      O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 10.51.2)
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6F80DA7A-0E42-4558-A27F-8E2D4F585629}: DhcpNameServer = 192.168.1.254
      O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
      O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
      O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
      O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Fichiers communs\Skype\Skype4COM.dll (Skype Technologies)
      O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
      O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
      O24 - Desktop Components:0 (Ma page d'accueil) - About:Home
      O24 - Desktop WallPaper: C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
      O24 - Desktop BackupWallPaper: C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
      O32 - HKLM CDRom: AutoRun - 1
      O32 - AutoRun File - [2009/02/11 00:15:53 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
      O33 - MountPoints2\{568ffa48-f7dc-11dd-80f5-002197881752}\Shell - "" = AutoRun
      O33 - MountPoints2\{568ffa48-f7dc-11dd-80f5-002197881752}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL copy.exe
      O33 - MountPoints2\{812d454c-0be0-11e2-b4a1-0021977eea05}\Shell - "" = AutoRun
      O33 - MountPoints2\{812d454c-0be0-11e2-b4a1-0021977eea05}\Shell\AutoRun\command - "" = J:\Startme.exe
      O34 - HKLM BootExecute: (autocheck autochk *)
      O35 - HKLM\..comfile [open] -- "%1" %*
      O35 - HKLM\..exefile [open] -- "%1" %*
      O37 - HKLM\...com [@ = comfile] -- "%1" %*
      O37 - HKLM\...exe [@ = exefile] -- "%1" %*
      O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
      O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

      [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

      [2014/02/19 00:37:08 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Recent
      [2014/02/09 17:40:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Google Chrome
      [2014/02/09 17:36:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\Deployment
      [2014/02/09 15:11:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Malwarebytes
      [2014/02/09 15:11:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
      [2014/02/09 14:56:31 | 000,000,000 | ---D | C] -- C:\Shortcut_Module
      [2014/02/09 14:45:05 | 000,000,000 | ---D | C] -- C:\AdwCleaner
      [2014/01/28 19:58:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\tut_fr_86
      [2014/01/28 19:58:00 | 000,000,000 | ---D | C] -- C:\Program Files\tuto4pc_fr_86
      [2014/01/27 18:01:36 | 000,000,000 | -HSD | C] -- C:\found.001
      [2014/01/25 10:17:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Documents\BitRaider
      [2014/01/25 10:16:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\SWTORPerf
      [2014/01/25 10:13:08 | 000,000,000 | ---D | C] -- C:\Program Files\Electronic Arts
      [2014/01/25 10:12:50 | 000,000,000 | ---D | C] -- C:\Users
      [4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
      [30 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
      [1 C:\WINDOWS\System32\dllcache\*.tmp files -> C:\WINDOWS\System32\dllcache\*.tmp -> ]
      [1 C:\Program Files\*.tmp files -> C:\Program Files\*.tmp -> ]

      [color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

      [2014/02/19 12:47:00 | 000,001,058 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
      [2014/02/19 12:31:00 | 000,001,002 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
      [2014/02/19 10:37:02 | 000,000,400 | -H-- | M] () -- C:\WINDOWS\tasks\Microsoft Antimalware Scheduled Scan.job
      [2014/02/19 10:27:39 | 000,001,707 | ---- | M] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Menu Démarrer\Programmes\Démarrage\Alertes de surveillance de l'encre - HP ENVY 4500 series.lnk
      [2014/02/19 10:27:22 | 000,001,054 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
      [2014/02/19 10:26:59 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
      [2014/02/19 10:10:02 | 000,000,446 | ---- | M] () -- C:\WINDOWS\tasks\At1.job
      [2014/02/18 20:40:01 | 000,000,446 | ---- | M] () -- C:\WINDOWS\tasks\At2.job
      [2014/02/18 19:45:01 | 000,000,446 | ---- | M] () -- C:\WINDOWS\tasks\At3.job
      [2014/02/18 14:00:01 | 000,000,446 | ---- | M] () -- C:\WINDOWS\tasks\At4.job
      [2014/02/18 10:18:28 | 000,012,598 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
      [2014/02/14 22:46:55 | 000,770,136 | ---- | M] () -- C:\WINDOWS\System32\perfh00C.dat
      [2014/02/14 22:46:55 | 000,677,832 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
      [2014/02/14 22:46:55 | 000,177,668 | ---- | M] () -- C:\WINDOWS\System32\perfc00C.dat
      [2014/02/14 22:46:55 | 000,146,882 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
      [2014/02/09 23:36:39 | 000,036,864 | ---- | M] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      [2014/02/09 19:25:49 | 000,001,835 | ---- | M] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
      [2014/02/09 17:42:15 | 000,000,809 | ---- | M] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Bureau\Internet Explorer.lnk
      [2014/02/09 17:40:33 | 000,001,817 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Google Chrome.lnk
      [2014/02/09 17:33:55 | 000,000,821 | ---- | M] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Microsoft\Internet Explorer\Quick Launch\Démarrer Internet Explorer.lnk
      [2014/02/06 19:23:12 | 000,013,581 | ---- | M] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Mes documents\lettre de motivation aide financiere heure de conduite.odt
      [4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
      [30 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
      [1 C:\WINDOWS\System32\dllcache\*.tmp files -> C:\WINDOWS\System32\dllcache\*.tmp -> ]
      [1 C:\Program Files\*.tmp files -> C:\Program Files\*.tmp -> ]

      [color=#E56717]========== Files Created - No Company Name ==========[/color]

      [2014/02/09 17:42:15 | 000,000,809 | ---- | C] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Bureau\Internet Explorer.lnk
      [2014/02/09 17:40:33 | 000,001,835 | ---- | C] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
      [2014/02/09 17:40:33 | 000,001,817 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Google Chrome.lnk
      [2014/02/09 17:37:13 | 000,001,058 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
      [2014/02/09 17:37:12 | 000,001,054 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
      [2014/02/09 17:33:55 | 000,000,809 | ---- | C] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Menu Démarrer\Programmes\Internet Explorer.lnk
      [2014/02/06 11:09:18 | 000,013,581 | ---- | C] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Mes documents\lettre de motivation aide financiere heure de conduite.odt
      [2013/12/30 19:44:38 | 000,000,057 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\Ament.ini
      [2013/10/28 19:32:38 | 000,001,037 | ---- | C] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\recently-used.xbel
      [2012/12/24 17:07:06 | 000,000,802 | ---- | C] () -- C:\WINDOWS\disney.ini
      [2012/12/13 17:46:58 | 000,003,584 | ---- | C] () -- C:\WINDOWS\System32\multit.dll
      [2012/12/13 17:46:29 | 000,278,528 | ---- | C] () -- C:\WINDOWS\System32\FiltreAlpha.dll
      [2012/07/06 10:36:49 | 000,102,912 | ---- | C] () -- C:\WINDOWS\System32\EasyHook64.dll
      [2012/07/06 10:36:49 | 000,084,480 | ---- | C] () -- C:\WINDOWS\System32\EasyHook32.dll
      [2012/06/10 20:00:33 | 000,000,000 | ---- | C] () -- C:\WINDOWS\iPlayer.INI
      [2011/07/04 07:21:24 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\$_hpcst$.hpc
      [2011/04/11 09:43:36 | 000,036,864 | ---- | C] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      [2011/02/27 09:24:34 | 001,537,024 | ---- | C] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\questdb.v12
      [2011/02/27 09:24:34 | 000,016,384 | ---- | C] () -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\CDRusersDB.v12
      [2009/04/21 11:09:15 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\LauncherAccess.dt

      [color=#E56717]========== ZeroAccess Check ==========[/color]

      [2009/02/11 01:29:45 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

      [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

      [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
      "" = %SystemRoot%\system32\shdocvw.dll -- [2011/12/19 09:54:10 | 001,510,912 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
      "" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009/02/09 11:53:55 | 000,473,600 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
      "" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008/04/14 13:00:00 | 000,273,920 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Both

      [color=#E56717]========== LOP Check ==========[/color]

      [2013/07/21 12:34:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\188F1432-103A-4ffb-80F1-36B633C5C9E1
      [2012/06/27 20:43:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVAST Software
      [2011/02/27 09:00:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\BVRP Software
      [2012/06/21 15:55:00 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\Common Files
      [2013/01/01 15:06:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Electronic Arts
      [2012/12/13 18:00:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Labography
      [2010/04/26 10:50:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Suite
      [2012/10/01 17:14:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Sony
      [2013/05/22 20:08:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Speedbit
      [2013/05/22 20:22:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
      [2013/01/13 20:45:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TuneUp Software
      [2013/12/30 19:46:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Visan
      [2010/08/03 10:56:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WinZip
      [2013/01/13 20:51:08 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Application Data\{32364CEA-7855-4A3C-B674-53D8E9B97936}
      [2013/01/13 22:05:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
      [2013/01/13 22:05:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
      [2013/10/06 20:00:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Audacity
      [2012/07/24 14:59:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Babylon
      [2011/08/25 17:36:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\BeSpotted
      [2012/12/13 17:39:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\com.adobe.downloadassistant.AdobeDownloadAssistant
      [2010/10/09 22:08:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Dealio
      [2011/08/26 14:38:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\DMCache
      [2013/06/29 10:55:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\EasyBurner
      [2013/12/15 09:40:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Electronic Arts
      [2013/05/22 20:08:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\EQATEC Analytics
      [2012/12/30 12:51:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\FileZilla
      [2011/04/27 19:27:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\GameMaker
      [2011/03/15 20:38:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\GetGo Software
      [2012/05/06 20:31:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\gtk-2.0
      [2012/03/23 18:02:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\inkscape
      [2012/12/13 17:47:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Labography
      [2011/08/23 18:35:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Mosamic
      [2012/01/18 16:59:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Need for Speed World
      [2012/03/17 18:38:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\ObviousIdea
      [2011/04/15 20:37:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\OfferBox
      [2010/10/19 17:56:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\OpenOffice.org
      [2012/07/21 19:34:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Oracle
      [2013/07/15 20:25:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\PerformerSoft
      [2011/09/03 16:34:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Samsung
      [2012/07/02 10:22:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Search Settings
      [2012/10/01 19:37:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Sony
      [2012/01/08 15:10:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\TeamViewer
      [2010/10/09 22:01:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Teleca
      [2011/03/16 22:48:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\The Creative Assembly
      [2012/07/06 10:36:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\Toolbar4
      [2013/01/13 20:45:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\TuneUp Software
      [2011/04/04 19:49:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lebegue.USER-5944C6F0F9\Application Data\widestream

      [color=#E56717]========== Purity Check ==========[/color]



      [color=#E56717]========== Alternate Data Streams ==========[/color]

      @Alternate Data Stream - 48 bytes -> C:\Documents and Settings\All Users\DRM:??????????
      @Alternate Data Stream - 141 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:862BDB1A
      @Alternate Data Stream - 118 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:56E2E879

      < End of report >
      0
    2. mrhazard Messages postés 24 Statut Membre
       
      Cela n'a rien changer, toujours une mise à jour demandé de Tuto4pc et des fenêtres de publicités
      0
    3. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
       
      Ca n'a rien changé car tu n'as pas fait la correction.
      0
    4. mrhazard Messages postés 24 Statut Membre
       
      quand je fais correction,il me dit de charger un document mais j'ai aucun document quand je cherche
      0
    5. mrhazard Messages postés 24 Statut Membre
       
      je rappelle que après cliquer sur mise à jour un nouvelle fenêtre s'ouvre pour l'installation de Tuto4pc, c'est peut être sa le problème.
      0
  4. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    :)

    Installe Malwarebyte's Anti-Malware : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
    Fais des scans réguliers avec, il est efficace.

    Pour ne plus te faire avoir.
    A lire -
    1
    1. mrhazard Messages postés 24 Statut Membre
       
      Est-ce Microsoft security essential est un bon anti-virus ?
      0
    2. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
       
      bof, je préfére Avast!.
      0