Besoin d'un avis avancé sur mon scan OTL sous W10

Fermé
HLait Messages postés 14 Date d'inscription jeudi 6 août 2015 Statut Membre Dernière intervention 8 juillet 2016 - 6 août 2015 à 14:23
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 - 6 août 2015 à 20:04
Depuis hier j'avais un pb avec mes fenêtres qui ne voulaient pas s'ouvrir et google qui m'affichaient sans cesse un sans titre + page blanche
J'ai lancé un full scan avec 360 TS qui m'a trouvé et supprimé 13 menaces
J'ai lancé adwcleaner + mbam + tdsskiller ils ne m'ont rien trouvé
J'aimerais savoir selon les "experts" des virus chiants et cachés si mon scan a révélé queqlue chose ou alors c'est un bug de W10
Merci d'avance pour vos réponses ^^
Je recherche un pare feu fonctionnant sous W10 (je sais pas comment on fait pour savoir si celui de windows est activé ou pas)

Rapport de otl (le fichier s'appel extras)

OTL Extras logfile created on: 06/08/2015 12:54:06 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Soso\Downloads
Professional (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.10240.16384)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy

1,60 Gb Total Physical Memory | 0,22 Gb Available Physical Memory | 13,88% Memory free
3,48 Gb Paging File | 1,54 Gb Available in Paging File | 44,21% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 296,08 Gb Total Space | 216,37 Gb Free Space | 73,08% Space Free | Partition Type: NTFS
Drive E: | 1,99 Gb Total Space | 0,01 Gb Free Space | 0,41% Space Free | Partition Type: FAT32

Computer Name: SOSO- | User Name: Soso | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (All) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.bat [@ = batfile] -- "%1" %*
.chm [@ = chm.file] -- C:\WINDOWS\hh.exe (Microsoft Corporation)
.cmd [@ = cmdfile] -- "%1" %*
.com [@ = comfile] -- "%1" %*
.cpl [@ = cplfile] -- C:\WINDOWS\System32\control.exe (Microsoft Corporation)
.exe [@ = exefile] -- "%1" %*
.hlp [@ = hlpfile] -- C:\WINDOWS\winhlp32.exe (Microsoft Corporation)
.hta [@ = htafile] -- C:\WINDOWS\System32\mshta.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
.inf [@ = inffile] -- C:\WINDOWS\System32\NOTEPAD.EXE (Microsoft Corporation)
.ini [@ = inifile] -- C:\WINDOWS\System32\NOTEPAD.EXE (Microsoft Corporation)
.url [@ = InternetShortcut] -- C:\WINDOWS\System32\rundll32.exe (Microsoft Corporation)
.js [@ = JSFile] -- C:\WINDOWS\System32\WScript.exe (Microsoft Corporation)
.jse [@ = JSEFile] -- C:\WINDOWS\System32\WScript.exe (Microsoft Corporation)
.pif [@ = piffile] -- "%1" %*
.reg [@ = regfile] -- C:\WINDOWS\regedit.exe (Microsoft Corporation)
.scr [@ = scrfile] -- "%1" /S
.txt [@ = txtfile] -- C:\WINDOWS\System32\NOTEPAD.EXE (Microsoft Corporation)
.vbe [@ = VBEFile] -- C:\WINDOWS\System32\WScript.exe (Microsoft Corporation)
.vbs [@ = VBSFile] -- C:\WINDOWS\System32\WScript.exe (Microsoft Corporation)
.wsf [@ = WSFFile] -- C:\WINDOWS\System32\WScript.exe (Microsoft Corporation)
.wsh [@ = WSHFile] -- C:\WINDOWS\System32\WScript.exe (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

[color=#E56717]========== Shell Spawning ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
batfile [open] -- "%1" %*
batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation)
cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
cmdfile [open] -- "%1" %*
cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htafile [open] -- C:\Windows\System32\mshta.exe "%1" {1E460BD7-F1C3-4B2E-88BF-4E770A288AF5}%U{1E460BD7-F1C3-4B2E-88BF-4E770A288AF5} %* (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office15\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- Reg Error: Key error.
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office15\msohtmed.exe" /p %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
inffile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
jsfile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsfile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsfile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
jsefile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsefile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsefile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation)
regfile [open] -- regedit.exe "%1" (Microsoft Corporation)
regfile [merge] -- Reg Error: Key error.
regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation)
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation)
vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbefile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbsfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[color=#E56717]========== Authorized Applications List ==========[/color]


[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0035E6E2-A387-4C9C-9B38-1CE080C65FC1}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{06E75863-270E-4283-9FC2-099C2ACDDC23}" = lport=8317 | protocol=6 | dir=in | name=techsmith camtasia studio |
"{11000E21-BC88-4607-97BF-BA500372D76A}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office15\outlook.exe |
"{124094DB-DBBB-4BF8-97D7-36ABF8CF72B1}" = rport=137 | protocol=17 | dir=out | app=system |
"{175B2204-2330-40A7-8A51-7A3801F40FF1}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{4030E72E-7799-4D90-A505-A6739520A405}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{539BFDEF-E8D9-44C7-88D0-68ECB2B51B83}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\google\chrome\application\chrome.exe |
"{77465B95-4B07-4020-84DB-D4A55AB6F284}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{8D4A676E-5F01-4E67-AA1D-49CAD3E1539D}" = rport=138 | protocol=17 | dir=out | app=system |
"{9D107A3E-4389-45C0-B7C3-3C06881ABF99}" = lport=138 | protocol=17 | dir=in | app=system |
"{AEC1F7D1-7003-449D-BB7C-8A4A1FD179F1}" = lport=137 | protocol=17 | dir=in | app=system |
"{AF84C1BE-0697-44E2-8661-288A6BC989DB}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{BCEB71EE-B08C-4030-A47C-7A9C93CBD656}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{BD42007C-A01B-4FE5-AC27-3A6FA6B95108}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{CA8FD790-6812-4966-B2B3-10C6FB89650D}" = lport=139 | protocol=6 | dir=in | app=system |
"{D2CCCDD3-37FB-4232-9022-49271F5FD419}" = lport=445 | protocol=6 | dir=in | app=system |
"{D3D12798-8811-47C4-959E-FF36F0B880BE}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{D6C3E0D2-1260-4005-BEE5-F02A1F044060}" = rport=445 | protocol=6 | dir=out | app=system |
"{E6192857-51FB-4D83-8D9A-33773C3DE27B}" = rport=139 | protocol=6 | dir=out | app=system |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{06F5BEAB-CBC2-4973-A9BA-850C51BB5479}" = protocol=17 | dir=in | app=c:\program files\360\total security\liveupdate360.exe |
"{0D076257-5B9A-4F37-8F47-DE32CDDC0AD7}" = protocol=6 | dir=in | app=c:\windows\system32\muzapp.exe |
"{1B42211C-A6B0-4F0A-869D-8A1686957536}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{1C3F0324-2609-4984-9EC2-9A69E7910A00}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe |
"{1CC64444-2F72-49CA-9F08-B5C904D6455C}" = protocol=17 | dir=in | app=c:\windows\system32\muzapp.exe |
"{1F6BEC89-1E5B-4F88-8E7B-E6F73935C016}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{3D2AF610-B7E3-4EF0-B3B3-2D25DA9576BD}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{3E391A6B-EE9F-4C88-9AD7-BE0280175CB1}" = dir=out | svc=glasswire | app=c:\program files\glasswire\gwctlsrv.exe |
"{5C66BCDE-C8C2-4904-92B2-394A151BED91}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{6CB91E2C-44AA-4129-A34C-F265F5FCB1A0}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\lync.exe |
"{7D741DF0-3436-44D0-A23B-B5D7B475689C}" = protocol=6 | dir=in | app=c:\program files\360\total security\liveupdate360.exe |
"{8927A184-DFE1-4348-9168-DCA67BC91ADE}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{894E58BD-8FBB-4745-BD6E-B37F2B072F9C}" = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe |
"{8E5235A0-9EC7-4456-BE8F-028563C75D5B}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\lync.exe |
"{974E9C92-FEA5-4BAF-9BA7-EBEAA887384C}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{A08769CD-97E0-4256-BB30-5590501563A1}" = protocol=17 | dir=in | app=c:\program files\360\total security\safemon\qhsafetray.exe |
"{A855BA02-2EC8-4C61-948C-1963EBCBEFA9}" = protocol=17 | dir=in | app=c:\program files\360\total security\safemon\qhsafetray.exe |
"{B56E08E0-E0A8-4190-9C64-EFE0A93EB8E2}" = protocol=6 | dir=in | app=c:\program files\360\total security\safemon\qhsafetray.exe |
"{E06AC7F2-F12C-4735-BDA6-001374AD938F}" = dir=in | app=c:\program files\windows live\contacts\wlcomm.exe |
"{E4E9EB6B-D9D7-482D-9F42-BCFFDBBC60B8}" = dir=in | svc=glasswire | app=c:\program files\glasswire\gwctlsrv.exe |
"{F4B8FBD2-7C51-44A2-81FE-D390F9A9FFB7}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe |
"{FE2A04B8-B40D-4EE1-8AF5-FFFAF4EC5EFE}" = protocol=6 | dir=in | app=c:\program files\360\total security\safemon\qhsafetray.exe |
"TCP Query User{0D57DAB3-0159-4D25-96C6-00EEFC7AFF17}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=6 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe |
"TCP Query User{7163DE1C-42CA-4F11-B631-35A36FCF5503}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=6 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe |
"UDP Query User{24DC5BBF-EDDB-464F-8DC1-28D52FF3FF08}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=17 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe |
"UDP Query User{9BB9499A-1D50-40FA-9F72-6B1F5557957F}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=17 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe |

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{04801E42-B1A6-4C52-9F3D-CADB5A050433}" = HP Software Setup
"{053E44FC-2928-C879-1B44-C004594B8D01}" = CCC Help French
"{05E379CC-F626-4E7D-8354-463865B303BF}" = Windows Live UX Platform Language Pack
"{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
"{08E81ABD-79F7-49C2-881F-FD6CB0975693}" = Roxio Creator Data
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{101A497C-7EF6-4001-834D-E5FA1C70FEFA}" = Bluetooth Win7 Suite
"{11087D24-567D-7D88-69C6-D7A08B5F4C47}" = Catalyst Control Center - Branding
"{11190DFE-3E1B-1200-C45C-D9F3EC68A7BF}" = AMD Fuel
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP250_series" = Canon MP250 series MP Drivers
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F54DAFA-9261-4A62-B59D-6C9F26B48FE4}" = Roxio Creator Tools
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{22154f09-719a-4619-bb71-5b3356999fbf}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
"{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype(TM) 7.3
"{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 67
"{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727
"{30A2A953-DEB1-466A-B660-F4399C7C6B9D}" = Roxio MyDVD
"{3168E261-02B8-D99D-A50F-8FF0EE48E6B2}" = CCC Help Danish
"{31B9D218-FED2-4C6C-B19F-7294FFC130B0}" = Adobe AIR
"{31FA6DA5-8178-7873-9355-DF995040C53A}" = CCC Help Polish
"{32E9C1A5-0FDA-4483-987D-DBABF9CC1DD8}" = Microsoft Antimalware Service FR-FR Language Pack
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5}" = Windows Live
"{3911CF56-9EF2-39BA-846A-C27BD3CD0685}" = Microsoft .NET Framework 4.5.2
"{3E75652D-99B1-417E-B163-BEF33CAD3F16}" = League of Legends
"{42BD9F64-3083-ED0A-DCE9-236D3E882F37}" = CCC Help Dutch
"{485B7F3C-C910-C973-238C-C688697A9F81}" = Catalyst Control Center Localization All
"{488F0347-C4A7-4374-91A7-30818BEDA710}" = Galerie de photos Windows Live
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}" = Microsoft Search Enhancement Pack
"{4E615180-B330-5673-9451-E64B6AADD557}" = CCC Help Czech
"{50779A29-834E-4E36-BBEB-B7CABC67A825}" = Microsoft Security Client FR-FR Language Pack
"{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module
"{537BF16E-7412-448C-95D8-846E85A1D817}" = Roxio Creator Business
"{5A5BA63B-B181-BF26-805B-80B8412F4C43}" = CCC Help Norwegian
"{6057E21C-ABE9-4059-AE3E-3BEB9925E660}" = Windows Live Messenger
"{607A2367-289B-2ECE-0EAF-07ABEDE7B8C9}" = CCC Help German
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{61AD15B2-50DB-4686-A739-14FE180D4429}" = Windows Live ID Sign-in Assistant
"{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module
"{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{69843259-D8D8-5FEF-689F-0E03D84BB7FD}" = CCC Help Korean
"{69BC5CB9-58D2-71BB-8C63-ED4EAC73AAF8}" = ATI Catalyst Install Manager
"{6DEC8BD5-7574-47FA-B080-492BBBE2FEA3}" = Windows Live Movie Maker
"{6E3939AE-9996-4D07-9A30-14C78AE93576}" = Microsoft Security Client
"{6E5324C1-84FC-4F76-9A3A-C65E07F80EE6}" = Complément Messenger
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = Analyseur et SDK MSXML 4.0 SP2
"{7216871F-869E-437C-B9BF-2A13F2DCE63F}_is1" = Auslogics BoostSpeed 8
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{73A4F29F-31AC-4EBD-AA1B-0CC5F18C8F83}" = Roxio Creator Audio
"{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
"{76810709-A7D3-468D-9167-A1780C1E766C}" = Windows Live FolderShare
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}" = Windows Live Messenger Companion Core
"{7E60A32D-7AD9-7CF6-1378-2FBCDBB37E71}" = Transformice
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{86C896FC-3B6E-98B9-106B-D3CF1CDFF6C9}" = CCC Help Hungarian
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8D337F77-BE7F-41A2-A7CB-D5A63FD7049B}" = Sonic CinePlayer Decoder Pack
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{90150000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2013
"{90150000-0015-040C-0000-0000000FF1CE}" = Microsoft Access MUI (French) 2013
"{90150000-0016-040C-0000-0000000FF1CE}" = Microsoft Excel MUI (French) 2013
"{90150000-0018-040C-0000-0000000FF1CE}" = Microsoft PowerPoint MUI (French) 2013
"{90150000-0019-040C-0000-0000000FF1CE}" = Microsoft Publisher MUI (French) 2013
"{90150000-001A-040C-0000-0000000FF1CE}" = Microsoft Outlook MUI (French) 2013
"{90150000-001B-040C-0000-0000000FF1CE}" = Microsoft Word MUI (French) 2013
"{90150000-001F-0401-0000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - ????? ???????
"{90150000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Korrekturhilfen 2013 - Deutsch
"{90150000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - English
"{90150000-001F-040C-0000-0000000FF1CE}" = Outils de vérification linguistique 2013 de Microsoft Office - Français
"{90150000-001F-0413-0000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - Nederlands
"{90150000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - Español
"{90150000-002C-040C-0000-0000000FF1CE}" = Microsoft Office Proofing (French) 2013
"{90150000-0044-040C-0000-0000000FF1CE}" = Microsoft InfoPath MUI (French) 2013
"{90150000-006E-040C-0000-0000000FF1CE}" = Microsoft Office Shared MUI (French) 2013
"{90150000-0090-040C-0000-0000000FF1CE}" = Microsoft DCF MUI (French) 2013
"{90150000-00A1-040C-0000-0000000FF1CE}" = Microsoft OneNote MUI (French) 2013
"{90150000-00BA-040C-0000-0000000FF1CE}" = Microsoft Groove MUI (French) 2013
"{90150000-00E1-040C-0000-0000000FF1CE}" = Microsoft Office OSM MUI (French) 2013
"{90150000-00E2-040C-0000-0000000FF1CE}" = Microsoft Office OSM UX MUI (French) 2013
"{90150000-012B-040C-0000-0000000FF1CE}" = Microsoft Lync MUI (French) 2013
"{904AC0F0-F69E-467E-A719-B083940F608A}" = Camtasia Studio 8
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{986E003C-E56D-5A47-110E-D3C81F0E8535}" = Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.11761.0_neutral_~_8wekyb3d8bbwe (x86)
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9B1686E7-25FC-79CF-2EC3-9C109A963629}" = CCC Help Chinese Standard
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A25FF1C0-80B6-4B8B-A551-DC525697A408}" = AMD APP SDK Runtime
"{A27F10D3-1012-BDF6-5E93-156067D430A3}" = CCC Help Russian
"{A2A9BD28-A904-9730-7D9C-16AE489785BB}" = CCC Help Greek
"{A7E904A4-1157-2B06-EE34-7054AFF53C23}" = Catalyst Control Center InstallProxy
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{ABDCE712-808E-A58B-258B-F7CE83205C58}" = CCC Help Japanese
"{AD67E700-F262-B2C4-758C-E360B398951B}" = CCC Help English
"{AE119B2F-0A12-3FD3-935F-A96D62205681}" = Microsoft .NET Framework 4.5.2 (FRA)
"{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}" = DirectX 9 Runtime
"{B02AB0EE-9203-3BBF-D2A5-F09E96713BE8}" = CCC Help Turkish
"{B6862404-1B79-C0C4-EC57-5433FFC8D74C}" = CCC Help Italian
"{B6A26DE5-F2B5-4D58-9570-4FC760E00FCD}" = Roxio Creator Copy
"{B77D51FB-70AB-5952-A276-18F17FAB9509}" = CCC Help Finnish
"{B92990D9-B01F-DEE1-5F74-1535B80BD416}" = CCC Help Spanish
"{BA545370-897C-A0F1-1CB8-93ED5CC2DCF2}" = CCC Help Swedish
"{BBA5B0EB-5746-C279-2A12-2AF046FD37CD}" = AMD Media Foundation Decoders
"{BDA95DBA-E7A3-5B3D-CDE5-FE1A7066E80C}" = CCC Help Chinese Traditional
"{C267D704-754F-ABEB-E491-0F3CEA59C9D5}" = CCC Help Thai
"{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Atheros Driver Installation Program
"{C893D8C0-1BA0-4517-B11C-E89B65E72F70}" = Windows Live Photo Common
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CFA66508-B19D-4032-AB0A-EBBA2BDF1368}" = Manga Studio
"{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{DE149A94-A0CB-62A8-6EBC-F189A57D9896}" = CCC Help Portuguese
"{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1" = Auslogics DiskDefrag
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E2E207AA-0715-00AF-3DB7-31247E78753F}" = AMD Catalyst Control Center
"{E44578C7-4667-4124-8BC2-1161BCA54978}" = HP Power Manager
"{E5441D19-417C-8C34-3F31-CCBD563C946E}" = Catalyst Control Center InstallProxy
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{EC877639-07AB-495C-BFD1-D63AF9140810}" = Roxio Activation Module
"{ED439A64-F018-4DD4-8BA5-328D85AB09AB}" = Roxio Creator Business v10
"{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module
"{EF0D0746-9B61-D3DA-B0A7-8EDA1AC230A1}" = ccc-utility
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727
"360TotalSecurity" = 360 Total Security
"7-Zip" = 7-Zip 9.20
"Adobe AIR" = Adobe AIR
"Adobe Flash Player NPAPI" = Adobe Flash Player 18 NPAPI
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"CCleaner" = CCleaner
"Freemake Video Converter_is1" = Freemake Video Converter version 4.1.6
"GlassWire 1.0" = GlassWire 1.0 (remove only)
"Google Chrome" = Google Chrome
"HyperCam 2" = HyperCam 2
"InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
"KLiteCodecPack_is1" = K-Lite Codec Pack 11.3.0 Full
"League of Legends 3.0.1" = League of Legends
"Malwarebytes Anti-Exploit_is1" = Malwarebytes Anti-Exploit version 1.07.1.1015
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware version 2.1.8.1057
"Microsoft Security Client" = Microsoft Security Essentials
"Office15.PROPLUS" = Microsoft Office Professionnel Plus 2013
"PDF Complete" = PDF Complete Special Edition
"Shockwave" = Shockwave
"SynTPDeinstKey" = Synaptics TouchPad Driver
"TagScanner_is1" = TagScanner 5.1.620
"Transformice" = Transformice
"WinGimp-2.0_is1" = GIMP 2.6.12
"WinLiveSuite" = Windows Live
"WUCCCApp" = AMD Catalyst Control Center

[color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"1D98FB2F-73F1-419A-A159-521B0F645CFB-2" = Dofus Beta
"MyFreeCodec" = MyFreeCodec
"MyPaint" = MyPaint 1.0.0
"TeamSpeak 3 Client" = TeamSpeak 3 Client

[color=#E56717]========== Last 20 Event Log Errors ==========[/color]

[ Application Events ]
Error - 06/08/2015 07:04:19 | Computer Name = Soso- | Source = Application Error | ID = 1000
Description = Nom de l'application défaillante backgroundTaskHost.exe, version :
10.0.10240.16384, horodatage : 0x559f3b40 Nom du module défaillant : PhotosApp.Windows.dll,
version : 15.721.12350.0, horodatage : 0x55aea810 Code d'exception : 0xc00000fd Décalage
d'erreur : 0x00ab4679 ID du processus défaillant : 0x1830 Heure de début de l'application
défaillante : 0x01d0d037880fd577 Chemin d'accès de l'application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe
Chemin
d'accès du module défaillant: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.721.12350.0_x86__8wekyb3d8bbwe\PhotosApp.Windows.dll
ID
de rapport : eb98b0b1-6eca-4e55-ba48-20e7e4dd51c2 Nom complet du package défaillant :
Microsoft.Windows.Photos_15.721.12350.0_x86__8wekyb3d8bbwe ID de l'application relative
au package défaillant : App

Error - 06/08/2015 07:25:12 | Computer Name = Soso- | Source = Application Error | ID = 1000
Description = Nom de l'application défaillante backgroundTaskHost.exe, version :
10.0.10240.16384, horodatage : 0x559f3b40 Nom du module défaillant : PhotosApp.Windows.dll,
version : 15.721.12350.0, horodatage : 0x55aea810 Code d'exception : 0xc00000fd Décalage
d'erreur : 0x00ab4679 ID du processus défaillant : 0x8f0 Heure de début de l'application
défaillante : 0x01d0d03a7997ca5c Chemin d'accès de l'application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe
Chemin
d'accès du module défaillant: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.721.12350.0_x86__8wekyb3d8bbwe\PhotosApp.Windows.dll
ID
de rapport : 98a86c2a-37d1-4602-939c-b35d7219f2a9 Nom complet du package défaillant :
Microsoft.Windows.Photos_15.721.12350.0_x86__8wekyb3d8bbwe ID de l'application relative
au package défaillant : App


< End of report >

Est-ce que je vous donne aussi celui qui s'appelle OTL ?
A voir également:

1 réponse

Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 658
6 août 2015 à 14:30
Salut,

Tu as installé des adwares et programmes parasites sur ton PC qui ouvrent des publicités et ralentissent l'ordinateur et les navigateurs WEB.
Voici la procédure à suivre pour les supprimer :

Commence par ceci :

Suis le tutorial AdwCleaner( d'Xplode )
Ce programme permet de supprimer les adwares et programmes parasites :
  • Télécharge le sur ton bureau ou dossier de téléchargement.
  • Lance AdwCleaner, clique sur [Scanner].
  • L'analyse peux durer plusieurs minutes, patiente.
  • Une fois le scan terminé, ne décoche rien, clique sur [Nettoyer]
  • Une fois le nettoyage terminé, un rapport s'ouvrira. Copie/colle le contenu du rapport dans ta prochaine réponse par un copier/coller.


Si cela ne fonctionne pas, utilise le site http://pjjoint.malekal.com pour héberger le rapport, donne le lien du rapport dans un nouveau message.
Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt


puis :

Suis le tutoriel FRST.
(et bien prendre le temps de lire afin d'appliquer correctement - tout y est expliqué).
Télécharge et lance le scan FRST, cela va générer trois rapports FRST :
  • FRST.txt
  • Shortcut.txt
  • Additionnal.txt


Envoie, comme expliqué, ces trois rapports sur le site http://pjjoint.malekal.com et en retour donne les trois liens pjjoint qui mènent à ses rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.

0
HLait Messages postés 14 Date d'inscription jeudi 6 août 2015 Statut Membre Dernière intervention 8 juillet 2016
6 août 2015 à 17:39
Non mais j'ai déjà lancé adwcleaner hier,il n'a rien trouvé xD
Je l'ai précisé plus haut
Je vais test le second logiciel que tu me proposes
Est-ce que sur le rapport d'otl tu as remarqué des parasites ou autres ?
0
HLait Messages postés 14 Date d'inscription jeudi 6 août 2015 Statut Membre Dernière intervention 8 juillet 2016
6 août 2015 à 17:43
(au passage,j'ai adblock (depuis loooontemps) + video adblock donc les pubs ne me gênent pas vu qu'il s'en charge)
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 658
6 août 2015 à 20:04
A toi de voir si tu ne veux pas suivre la procédure.
Ton rapport OTL ne sert à rien :
c'est pas le additionnal et pas le OTL.txt
En plus copier/coller ici directement, c'est illisible.

D'autre part FRST remplace OTL.
0