Pc qui plante pour rien

Bonjour, depuis peu mon pc se met à ramer pour rien , par exemple quand je n'ai que firefox d'ouvert , je commence à taper une requête et firefox ne repond plus ...
Aidez moi , je pense avoir un virus , voici le link pour ZHPDiag : http://cjoint.com/12ju/BGdlhThHhq1.htm

47 réponses

Résumé de la discussion

Le problème est un rallentissement du PC et des lenteurs de Firefox lors de la saisie, avec une suspicion de virus sur Windows 7 et Firefox 13.0.1. Des solutions préconisées incluent des analyses anti-malware et nettoyage: AdwCleaner pour repérer les barres d’outils et Malwarebytes pour un scan complet des disques, et d'autres mesures comme la suppression de fichiers temporaires. En cas de lenteurs persistantes, des gestes préconisés incluent la vérification de l’espace disque et le nettoyage des fichiers temporaires, avec des outils tels que CCleaner pour optimiser le système. Par ailleurs, la discussion indique aussi que l'espace disque insuffisant peut provoquer des lenteurs et nécessite nettoyage et redémarrage après les scans afin d'améliorer les performances.

Bobot (l’IA à votre service)
  1. Contributeur sécurité
    Salut byDeeh,

    Il y a un certain nombre de raisons pour lesquels ton pc est lent, il y a des infections, ensuite ton pc est chargé, tu as passé le seuil de moins de 10% de place sur ton disque dur.

    ------------------------------------------------------------------------
    1) Télécharge AdwCleaner ( d'Xplode ) sur ton bureau :

    Lance le, clique sur [Suppression] puis patiente le temps du scan.
    Une fois le scan fini, un rapport s'ouvrira. Poste moi son contenu dans ta prochaine réponse.

    Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt

    Les toolbars, c'est pas obligatoire ( par Malekal ) :https://forum.malekal.com/viewtopic.php?t=6173&start=
    https://forum.malekal.com/viewtopic.php?t=33776&start=

    ------------------------------------------------------------------------
    2) ▶ En cas de problème, n'hésite pas à consulter le tutoriel Malwarebytes Anti-Malware.

    Il se peut que le scan soit long, mais il faut le laisser se terminer.

    ▶ Télécharge Malwarebytes' Anti-Malware sur ton bureau.

    ▶ Lance l'installation, (Clic droit "exécuter en tant qu'administrateur" si tu es sous Windows Vista ou 7).

    ▶ Une fois l'installation terminée, le programme se lance et se met à jour. Dans l'onglet Mise à jour, clique sur le bouton "Recherche de mise à jour" au cas où cela n'aurait pas été le cas.

    ▶ Une fois la mise à jour terminée, rends-toi dans l'onglet Recherche.
    ▶ Sélectionne Exécuter un examen complet.
    ▶ Sélectionne Tous les disques.
    ▶ Clique sur Rechercher.

    ▶ Si des menaces ont été détectées, clique sur Afficher les résultats.
    ▶ Sélectionne toutes les menaces et clique sur Supprimer la sélection, l'ordinateur peut demander le redémarrage, si tel est le cas accepte.

    ▶ Une fois redémarré, ouvre Malwarebytes et rends-toi dans l'onglet Rapport.
    ▶ Ouvre le dernier en date, et copie-colle le sur le forum.

    PS : Un petit s'il vous plait, merci est appréciable.
    1. ok j'abandonne qui veut prend le topic
      1. re, ,
        Dsl mais j'ai fais exactement ce qu'on m'a demandé , c'est ton script qui n'a pas marché !
        Et dsl de t'avoir mal parlé hier je me suis emporté , disons que je suis un peu "soupe au lait" quelques fois ... :/
      2. Bonsoir,

        ce n'est pas pour autant qu'il faut lui parler comme si il est incompétent.
        J'ai l'impression que tu fais les choses trop rapidement, sans lire les conseils.
        Je sais que le fait que ton ordinateur t'handicape énormément, mais <b> l'embrasement émotionnel<b> est à éviter.
        g3n-h@ckm@n n'est pas un novice,loin de là, il désinfecte quasiment les ordinateurs tout les jours, et encore il est bénévole, ca me rend triste des comportements blessants.
        Mais bon, l'erreur est humaine
      3. Encore une fois dsl :/ Et je connais le domaine de compétences de gh , je n'ai jamais posé de doutes là dessus , je lui ai mal parlé car j'ai eu l'impression d'être littéralement pris pour un c** qui ne savait pas ce qu'il faisait , mais j'ai eu tors :'(
        Par contre je ne comprend rien à l'échec du script oO
    2. rapport :

      Error: Unable to interpret <:OTL
      [31/12/2011 19:39:09] -- |A| -- C:\Windows\(÷k
      [10/06/2012 14:38:56] -- |A| -- C:\Windows\Ôùp
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: File not found
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: File not found
      O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
      O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
      O3 - HKU\geekitude_ON_C\..\Toolbar\WebBrowser: (no name) - {05EEB91A-AEF7-4F8A-978F-FB83E7B03F8E} - No CLSID value found.
      O3 - HKU\parents_ON_C\..\Toolbar\WebBrowser: (no name) - {05EEB91A-AEF7-4F8A-978F-FB83E7B03F8E} - No CLSID value found.
      O3 - HKU\parents_ON_C\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
      O4 - HKU\geekitude_ON_C..\Run: [SpybotSD TeaTimer]
      O4 - Startup: C:\Users\parents\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk = File > in the current context!
      Error: Unable to interpret <not found
      O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
      [2012/05/23 19:05:07 | 000,000,000 | ---D | M] -- C:\Users\RaiD FasteR\AppData\Roaming\.Etaria
      @Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:0B4227B4
      @Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:05EE1EEF

      > in the current context!
      Error: Unable to interpret <

      > in the current context!
      Error: Unable to interpret <:Reg
      [-HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\DATAMNGR]
      [-HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Facebook Update]
      [-HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\{9D71D88C-C598-4935-C5D1-43AA4DB90836}]

      > in the current context!
      Error: Unable to interpret <

      > in the current context!
      Error: Unable to interpret <:Files
      C:\PROGRA~1\SEARCH~1
      C:\Users\RaiD FasteR\AppData\Roaming\Bifrost > in the current context!

      OTLPE by OldTimer - Version 3.1.48.0 log created on 07062012_222751
      1. j'ai fais exactement ce qui était demandé pourtant :O
    3. re , le rapport OTL :

      OTL logfile created on: 06/07/2012 18:52:36 - Run
      OTLPE by OldTimer - Version 3.1.48.0 Folder = X:\Program Files\OTLPE
      Windows 7 Home Premium Service Pack 1 (Version = 6.1.7601) - Type = System
      Internet Explorer (Version = 8.0.7601.17514)
      Locale: 0000040c | Country: France | Language: FRA | Date Format: dd/MM/yyyy

      3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 76,00% Memory free
      3,00 Gb Paging File | 2,00 Gb Available in Paging File | 75,00% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
      Drive C: | 278,07 Gb Total Space | 124,40 Gb Free Space | 44,74% Space Free | Partition Type: NTFS
      Drive D: | 382,66 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
      Drive E: | 15,61 Gb Total Space | 14,97 Gb Free Space | 95,87% Space Free | Partition Type: FAT32
      Drive X: | 255,15 Mb Total Space | 252,72 Mb Free Space | 99,05% Space Free | Partition Type: NTFS

      Computer Name: MININT-1VA0PL7 | User Name: Système
      Boot Mode: Normal | Scan Mode: All users
      Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
      Using ControlSet: ControlSet001

      [color=#E56717]========== Win32 Services (SafeList) ==========[/color]

      SRV - [2012/06/30 20:56:37 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
      SRV - [2012/06/23 15:14:38 | 000,250,056 | ---- | M] (Adobe Systems Incorporated) [On_Demand] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
      SRV - [2012/06/07 18:12:14 | 000,160,944 | R--- | M] (Skype Technologies) [Auto] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
      SRV - [2012/02/07 13:18:28 | 001,373,576 | ---- | M] (LogMeIn Inc.) [Disabled] -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
      SRV - [2012/02/05 22:15:30 | 000,655,624 | ---- | M] (Acresso Software Inc.) [Disabled] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
      SRV - [2011/10/29 22:02:02 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
      SRV - [2011/06/06 12:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) [Disabled] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
      SRV - [2010/03/18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) [Disabled] -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon)
      SRV - [2009/08/18 01:36:08 | 000,176,128 | ---- | M] (AMD) [Disabled] -- C:\Windows\System32\atiesrxx.exe -- (AMD External Events Utility)
      SRV - [2009/07/14 02:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
      SRV - [2009/07/14 02:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)
      SRV - [2009/01/26 15:31:10 | 001,153,368 | ---- | M] (Safer Networking Ltd.) [Auto] -- C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe -- (SBSDWSCService)
      SRV - [2002/12/17 17:26:22 | 007,520,337 | ---- | M] (Microsoft Corporation) [Auto] -- C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe -- (MSSQL$SONY_MEDIAMGR)
      SRV - [2002/12/17 17:23:30 | 000,311,872 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE -- (SQLAgent$SONY_MEDIAMGR)

      [color=#E56717]========== Driver Services (SafeList) ==========[/color]

      DRV - File not found [Kernel | On_Demand] -- -- (EagleXNt)
      DRV - [2011/07/28 06:53:46 | 000,152,576 | ---- | M] (Hauppauge, Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\hcwhdpvr.sys -- (hcwhdpvr)
      DRV - [2010/11/20 11:24:41 | 000,052,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
      DRV - [2010/11/20 10:59:44 | 000,035,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb)
      DRV - [2010/09/16 02:16:00 | 000,154,240 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\AVerFx2HD.sys -- (USBHD)
      DRV - [2010/01/27 03:09:02 | 000,050,704 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto] -- C:\Windows\System32\drivers\npf.sys -- (npf)
      DRV - [2010/01/05 02:20:10 | 001,500,160 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\athur.sys -- (athur)
      DRV - [2009/08/18 02:48:06 | 004,994,560 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\atikmdag.sys -- (atikmdag)
      DRV - [2009/07/14 00:52:10 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\vwifimp.sys -- (vwifimp)
      DRV - [2009/07/13 23:02:51 | 004,231,168 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\netw5v32.sys -- (netw5v32) Pilote de carte de liaison WiFi sans fil Intel(R)
      DRV - [2009/07/13 23:02:47 | 000,050,688 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\L1C62x86.sys -- (L1C) NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20)
      DRV - [2009/04/22 13:46:42 | 003,482,112 | ---- | M] () [Kernel | On_Demand] -- C:\Windows\System32\drivers\snp2uvc.sys -- (SNP2UVC)
      DRV - [2009/03/30 03:09:28 | 000,239,336 | ---- | M] (Microsoft Corporation) [File_System | Disabled] -- C:\Windows\System32\drivers\RsFx0103.sys -- (RsFx0103)
      DRV - [2009/03/18 17:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\hamachi.sys -- (hamachi)
      DRV - [2009/02/08 22:42:42 | 000,099,968 | ---- | M] (Guillemot Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\hxctlflt.sys -- (hxctlflt)
      DRV - [2005/02/23 14:58:56 | 000,011,776 | ---- | M] (Arcsoft, Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\afc.sys -- (Afc)

      [color=#E56717]========== Standard Registry (SafeList) ==========[/color]

      [color=#E56717]========== Internet Explorer ==========[/color]

      IE - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/toolbar/ie8/sidebar.html

      IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\geekitude_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
      IE - HKU\geekitude_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\parents_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
      IE - HKU\parents_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = https://www.msn.com/fr-fr?ocid=iehp
      IE - HKU\parents_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = fr
      IE - HKU\parents_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 8C EC 20 36 DB 1C CD 01 [binary data]
      IE - HKU\parents_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
      IE - HKU\parents_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

      IE - HKU\RaiD_FasteR_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
      IE - HKU\RaiD_FasteR_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = https://www.msn.com/fr-fr?ocid=iehp
      IE - HKU\RaiD_FasteR_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = fr
      IE - HKU\RaiD_FasteR_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 29 47 B3 A4 DF 0D CD 01 [binary data]
      IE - HKU\RaiD_FasteR_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      [color=#E56717]========== FireFox ==========[/color]

      FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\System32\Macromed\Flash\NPSWF32_11_3_300_262.dll ()
      FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\System32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
      FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
      FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.5.1: C:\Windows\System32\npDeployJava1.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.5.1: C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: File not found
      FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: File not found
      FF - HKLM\Software\MozillaPlugins\@ngm.nexoneu.com/NxGame: C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/06/30 20:56:43 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012/07/03 09:47:04 | 000,000,000 | ---D | M]

      [2012/06/25 20:38:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\geekitude\AppData\Roaming\mozilla\Extensions
      [2012/06/25 20:51:58 | 000,000,000 | ---D | M] (No name found) -- C:\Users\geekitude\AppData\Roaming\mozilla\Firefox\Profiles\pzb2m9qh.default\extensions
      [2012/06/10 14:36:59 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\extensions
      [2012/04/24 20:16:47 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files\mozilla firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
      File not found (No name found) --
      () (No name found) -- C:\USERS\GEEKITUDE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\PZB2M9QH.DEFAULT\EXTENSIONS\{73A6FE31-595D-460B-A920-FCC0F8843232}.XPI
      [2012/06/30 20:56:40 | 000,085,472 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
      [2012/06/30 20:56:33 | 000,001,516 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazon-france.xml
      [2012/06/30 20:56:33 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
      [2012/06/30 20:56:33 | 000,001,822 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\cnrtl-tlfi-fr.xml
      [2012/06/30 20:56:33 | 000,001,154 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-france.xml
      [2012/06/30 20:56:33 | 000,001,426 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-fr.xml
      [2012/06/30 20:56:33 | 000,000,956 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-france.xml

      O1 HOSTS File: ([2009/06/10 22:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
      O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
      O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation)
      O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation)
      O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
      O3 - HKU\geekitude_ON_C\..\Toolbar\WebBrowser: (no name) - {05EEB91A-AEF7-4F8A-978F-FB83E7B03F8E} - No CLSID value found.
      O3 - HKU\parents_ON_C\..\Toolbar\WebBrowser: (no name) - {05EEB91A-AEF7-4F8A-978F-FB83E7B03F8E} - No CLSID value found.
      O3 - HKU\parents_ON_C\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
      O4 - HKLM..\Run: [ArcSoft Connection Service] C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft Inc.)
      O4 - HKU\geekitude_ON_C..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer Networking Limited)
      O4 - HKU\RaiD_FasteR_ON_C..\Run: [Clownfish] C:\Program Files\Clownfish\Clownfish.exe (Bogdan Sharkov)
      O4 - HKU\LocalService_ON_C..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
      O4 - HKU\NetworkService_ON_C..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
      O4 - Startup: C:\Users\parents\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk = File not found
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
      O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
      O13 - gopher Prefix: missing
      O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
      O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
      O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
      O32 - HKLM CDRom: AutoRun - 1
      O32 - AutoRun File - [2009/06/10 22:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
      O34 - HKLM BootExecute: (autocheck autochk *) - File not found
      O35 - HKLM\..comfile [open] -- "%1" %*
      O35 - HKLM\..exefile [open] -- "%1" %*
      O37 - HKLM\...com [@ = comfile] -- "%1" %*
      O37 - HKLM\...exe [@ = exefile] -- "%1" %*

      [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

      [2012/07/05 19:10:01 | 000,000,000 | ---D | C] -- C:\boot-sav
      [2012/07/05 15:27:10 | 000,000,000 | ---D | C] -- C:\_OTL
      [2012/07/04 17:37:50 | 000,000,000 | ---D | C] -- C:\Pre_Scan
      [2012/07/04 16:47:09 | 000,000,000 | ---D | C] -- C:\Windows\Pre_Scan
      [2012/07/03 10:26:03 | 000,000,000 | ---D | C] -- C:\Users\RaiD FasteR\AppData\Roaming\Malwarebytes
      [2012/07/03 10:25:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
      [2012/07/03 10:25:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
      [2012/07/03 10:25:55 | 000,022,344 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
      [2012/07/03 10:25:55 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
      [2012/07/03 09:55:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
      [2012/07/03 09:55:27 | 000,000,000 | ---D | C] -- C:\Program Files\ZHPDiag
      [2012/07/03 09:55:27 | 000,000,000 | ---D | C] -- C:\ZHP
      [2012/07/03 09:50:37 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
      [2012/07/03 09:48:41 | 000,000,000 | ---D | C] -- C:\Program Files\Oracle
      [2012/07/03 09:47:04 | 000,772,504 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\npDeployJava1.dll
      [2012/07/03 09:47:04 | 000,227,720 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\javaws.exe
      [2012/07/03 09:46:24 | 000,174,064 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\javaw.exe
      [2012/07/03 09:46:24 | 000,174,064 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\java.exe
      [2012/07/03 09:46:00 | 000,000,000 | ---D | C] -- C:\Program Files\Java
      [2012/07/02 09:32:22 | 000,000,000 | ---D | C] -- C:\Users\RaiD FasteR\AppData\Local\Diagnostics
      [2012/06/30 20:34:08 | 000,000,000 | ---D | C] -- C:\Users\RaiD FasteR\Desktop\clipsAmis
      [2012/06/29 15:44:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Easy Password
      [2012/06/29 15:44:05 | 000,000,000 | ---D | C] -- C:\Program Files\Easy Password
      [2012/06/27 17:02:07 | 000,000,000 | ---D | C] -- C:\Users\geekitude\AppData\Roaming\Skype
      [2012/06/27 16:39:19 | 000,000,000 | ---D | C] -- C:\Users\geekitude\Desktop\Try4ever
      [2012/06/25 20:59:32 | 000,000,000 | ---D | C] -- C:\Users\geekitude\AppData\Roaming\GetRightToGo
      [2012/06/25 20:39:54 | 000,000,000 | ---D | C] -- C:\Users\geekitude\AppData\Local\Macromedia
      [2012/06/25 20:39:53 | 000,000,000 | ---D | C] -- C:\Users\geekitude\AppData\Roaming\Adobe
      [2012/06/25 20:38:42 | 000,000,000 | ---D | C] -- C:\Users\geekitude\AppData\Roaming\Mozilla
      [2012/06/25 20:38:42 | 000,000,000 | ---D | C] -- C:\Users\geekitude\AppData\Local\Mozilla
      [2012/06/25 20:35:51 | 000,000,000 | R--D | C] -- C:\Users\geekitude\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
      [2012/06/25 20:35:51 | 000,000,000 | R--D | C] -- C:\Users\geekitude\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
      [2012/06/25 20:35:51 | 000,000,000 | -H-D | C] -- C:\Users\geekitude\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned
      [2012/06/25 20:35:22 | 000,000,000 | ---D | C] -- C:\Users\geekitude\AppData\Roaming\Identities
      [2012/06/25 20:34:49 | 000,000,000 | ---D | C] -- C:\Users\geekitude\AppData\Local\VirtualStore
      [2012/06/25 20:34:42 | 000,000,000 | -HSD | C] -- C:\Users\geekitude\AppData\Local\Temporary Internet Files
      [2012/06/25 20:34:42 | 000,000,000 | -HSD | C] -- C:\Users\geekitude\Documents\Mes vidéos
      [2012/06/25 20:34:42 | 000,000,000 | -HSD | C] -- C:\Users\geekitude\Documents\Mes images
      [2012/06/25 20:34:42 | 000,000,000 | -HSD | C] -- C:\Users\geekitude\Documents\Ma musique
      [2012/06/25 20:34:42 | 000,000,000 | -HSD | C] -- C:\Users\geekitude\AppData\Local\Historique
      [2012/06/25 20:34:42 | 000,000,000 | -HSD | C] -- C:\Users\geekitude\AppData\Local\Application Data
      [2012/06/25 20:34:42 | 000,000,000 | ---D | C] -- C:\Users\geekitude\AppData\LocalLow
      [2012/06/25 20:34:40 | 000,000,000 | --SD | C] -- C:\Users\geekitude\AppData\Roaming\Microsoft
      [2012/06/25 20:34:40 | 000,000,000 | R--D | C] -- C:\Users\geekitude\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
      [2012/06/25 20:34:40 | 000,000,000 | R--D | C] -- C:\Users\geekitude\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
      [2012/06/25 20:34:40 | 000,000,000 | ---D | C] -- C:\Users\geekitude\Documents\Visual Studio 2010
      [2012/06/25 20:34:40 | 000,000,000 | ---D | C] -- C:\Users\geekitude\AppData\Local\Temp
      [2012/06/25 20:34:40 | 000,000,000 | ---D | C] -- C:\Users\geekitude\AppData\Roaming
      [2012/06/25 20:34:40 | 000,000,000 | ---D | C] -- C:\Users\geekitude\AppData\Local\Microsoft
      [2012/06/25 20:34:40 | 000,000,000 | ---D | C] -- C:\Users\geekitude\AppData\Roaming\Media Center Programs
      [2012/06/25 20:34:40 | 000,000,000 | ---D | C] -- C:\Users\geekitude\AppData\Roaming\Macromedia
      [2012/06/25 20:34:40 | 000,000,000 | ---D | C] -- C:\Users\geekitude\AppData\Local
      [2012/06/25 20:34:39 | 000,000,000 | ---D | C] -- C:\Users\geekitude
      [2012/06/24 08:32:17 | 002,422,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wucltux.dll
      [2012/06/24 08:32:17 | 000,045,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups2.dll
      [2012/06/24 08:32:02 | 000,577,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapi.dll
      [2012/06/24 08:32:02 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wudriver.dll
      [2012/06/24 08:32:02 | 000,035,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups.dll
      [2012/06/24 08:31:33 | 000,171,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuwebv.dll
      [2012/06/24 08:31:33 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapp.exe
      [2012/06/13 22:06:19 | 000,000,000 | ---D | C] -- C:\Users\RaiD FasteR\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
      [2012/06/13 22:05:57 | 000,000,000 | ---D | C] -- C:\Users\RaiD FasteR\AppData\Local\Google
      [2012/06/13 14:50:44 | 000,627,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
      [2012/06/13 14:50:41 | 001,638,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
      [2012/06/13 14:50:41 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
      [2012/06/13 14:50:41 | 000,132,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll
      [2012/06/13 14:50:41 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
      [2012/06/13 14:50:28 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript.dll
      [2012/06/13 14:50:23 | 002,343,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
      [2012/06/13 14:50:22 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpcorekmts.dll
      [2012/06/13 14:50:22 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpwsx.dll
      [2012/06/13 14:50:22 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdrmemptylst.exe
      [2012/06/11 21:33:13 | 000,000,000 | ---D | C] -- C:\Users\RaiD FasteR\Desktop\REC
      [2012/06/10 19:01:03 | 000,000,000 | ---D | C] -- C:\Users\parents\AppData\Local\Macromedia
      [2012/06/10 17:28:45 | 000,000,000 | ---D | C] -- C:\Users\RaiD FasteR\AppData\Local\Macromedia
      [2012/06/10 15:35:48 | 000,000,000 | ---D | C] -- C:\Program Files\SystemRequirementsLab
      [2012/06/10 15:35:32 | 000,000,000 | ---D | C] -- C:\Users\RaiD FasteR\AppData\Roaming\SystemRequirementsLab
      [2012/06/10 13:23:10 | 000,000,000 | ---D | C] -- C:\Users\RaiD FasteR\Desktop\music
      [2008/08/21 11:46:20 | 000,184,320 | ---- | C] ( ) -- C:\Windows\System32\rsnp2uvc.dll
      [2007/07/04 15:28:52 | 000,176,128 | ---- | C] ( ) -- C:\Windows\System32\csnp2uvc.dll

      [color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

      [2012/07/06 16:41:38 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
      [2012/07/06 16:40:49 | 000,001,054 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
      [2012/07/06 16:21:13 | 2414,260,224 | -HS- | M] () -- C:\hiberfil.sys
      [2012/07/04 12:22:00 | 000,001,094 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4065672459-2805341061-527959478-1005UA.job
      [2012/07/04 11:01:17 | 000,001,002 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
      [2012/07/04 10:59:00 | 000,000,952 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-4065672459-2805341061-527959478-1013UA.job
      [2012/07/04 10:56:42 | 000,001,058 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
      [2012/07/03 22:32:36 | 000,023,392 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
      [2012/07/03 19:45:02 | 000,023,392 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
      [2012/07/03 13:59:00 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-4065672459-2805341061-527959478-1013Core.job
      [2012/07/03 10:25:56 | 000,001,071 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
      [2012/07/03 10:25:56 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
      [2012/07/03 09:55:29 | 000,000,960 | ---- | M] () -- C:\Users\Public\Desktop\MBRCheck.lnk
      [2012/07/03 09:55:29 | 000,000,953 | ---- | M] () -- C:\Users\Public\Desktop\ZHPDiag.lnk
      [2012/07/03 09:55:29 | 000,000,948 | ---- | M] () -- C:\Users\Public\Desktop\ZHPFix.lnk
      [2012/07/03 09:55:29 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
      [2012/07/03 09:46:06 | 000,174,064 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\javaw.exe
      [2012/07/03 09:46:06 | 000,174,064 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\java.exe
      [2012/07/03 09:44:46 | 000,007,614 | ---- | M] () -- C:\Users\RaiD FasteR\AppData\Local\Resmon.ResmonCfg
      [2012/07/02 21:22:00 | 000,001,042 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4065672459-2805341061-527959478-1005Core.job
      [2012/07/01 19:24:39 | 000,144,596 | ---- | M] () -- C:\Users\RaiD FasteR\Desktop\IMG_01072012_202143.png
      [2012/07/01 11:56:04 | 000,016,563 | ---- | M] () -- C:\Users\RaiD FasteR\Desktop\275531_100000811161795_847873748_n.jpg
      [2012/07/01 00:52:01 | 001,458,385 | ---- | M] () -- C:\Users\RaiD FasteR\Desktop\BackGround Sweeq.png
      [2012/06/29 18:21:45 | 000,000,894 | ---- | M] () -- C:\Users\RaiD FasteR\Desktop\World of Warcraft.lnk
      [2012/06/29 15:44:07 | 000,001,029 | ---- | M] () -- C:\Users\Public\Desktop\Easy Password.lnk
      [2012/06/29 15:44:07 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Easy Password
      [2012/06/27 17:02:02 | 000,002,503 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
      [2012/06/27 17:02:02 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
      [2012/06/27 16:40:32 | 000,001,427 | ---- | M] () -- C:\Users\geekitude\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
      [2012/06/25 21:01:20 | 000,001,244 | ---- | M] () -- C:\Users\geekitude\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Spybot - Search & Destroy.lnk
      [2012/06/25 21:01:20 | 000,001,220 | ---- | M] () -- C:\Users\geekitude\Desktop\Spybot - Search & Destroy.lnk
      [2012/06/25 21:01:20 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy
      [2012/06/25 20:28:48 | 000,476,908 | ---- | M] () -- C:\Users\RaiD FasteR\Desktop\iamjustageek-738246.jpeg
      [2012/06/24 09:49:11 | 001,576,288 | ---- | M] () -- C:\Users\RaiD FasteR\Desktop\JUSTFAVORIT.psd
      [2012/06/24 09:49:06 | 000,396,579 | ---- | M] () -- C:\Users\RaiD FasteR\Desktop\SOFTBOX - JF.c4d
      [2012/06/24 08:46:39 | 000,900,096 | ---- | M] () -- C:\Users\RaiD FasteR\Desktop\30005_30039.TS.sfk
      [2012/06/23 15:14:35 | 000,426,184 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
      [2012/06/23 15:14:35 | 000,070,344 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
      [2012/06/22 21:14:18 | 000,343,945 | ---- | M] () -- C:\Users\RaiD FasteR\Desktop\18779292832905_town2.jpg
      [2012/06/22 21:12:38 | 000,066,258 | ---- | M] () -- C:\Users\RaiD FasteR\Desktop\PeV6sl1.jpg
      [2012/06/22 21:12:03 | 000,038,893 | ---- | M] () -- C:\Users\RaiD FasteR\Desktop\4544762_f520.jpg
      [2012/06/22 20:35:59 | 000,014,077 | ---- | M] () -- C:\Users\RaiD FasteR\Desktop\skypemsgbcp.PNG
      [2012/06/14 20:47:16 | 002,235,120 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
      [2012/06/13 22:27:04 | 000,828,726 | ---- | M] () -- C:\Windows\System32\perfh00C.dat
      [2012/06/13 22:27:04 | 000,735,568 | ---- | M] () -- C:\Windows\System32\perfh009.dat
      [2012/06/13 22:27:04 | 000,181,156 | ---- | M] () -- C:\Windows\System32\perfc00C.dat
      [2012/06/13 22:27:04 | 000,153,444 | ---- | M] () -- C:\Windows\System32\perfc009.dat
      [2012/06/13 22:25:59 | 000,000,688 | ---- | M] () -- C:\Windows\System32\MRT.INI
      [2012/06/13 22:06:23 | 000,002,345 | ---- | M] () -- C:\Users\RaiD FasteR\Desktop\Google Chrome.lnk
      [2012/06/10 14:38:57 | 000,000,020 | ---- | M] () -- C:\Windows\Ôùp

      [color=#E56717]========== Files Created - No Company Name ==========[/color]

      [2012/07/03 10:25:56 | 000,001,071 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
      [2012/07/03 09:55:29 | 000,000,960 | ---- | C] () -- C:\Users\Public\Desktop\MBRCheck.lnk
      [2012/07/03 09:55:29 | 000,000,953 | ---- | C] () -- C:\Users\Public\Desktop\ZHPDiag.lnk
      [2012/07/03 09:55:29 | 000,000,948 | ---- | C] () -- C:\Users\Public\Desktop\ZHPFix.lnk
      [2012/07/03 09:44:46 | 000,007,614 | ---- | C] () -- C:\Users\RaiD FasteR\AppData\Local\Resmon.ResmonCfg
      [2012/07/01 19:22:10 | 000,144,596 | ---- | C] () -- C:\Users\RaiD FasteR\Desktop\IMG_01072012_202143.png
      [2012/07/01 11:55:56 | 000,016,563 | ---- | C] () -- C:\Users\RaiD FasteR\Desktop\275531_100000811161795_847873748_n.jpg
      [2012/07/01 00:50:52 | 001,458,385 | ---- | C] () -- C:\Users\RaiD FasteR\Desktop\BackGround Sweeq.png
      [2012/06/29 15:44:07 | 000,001,029 | ---- | C] () -- C:\Users\Public\Desktop\Easy Password.lnk
      [2012/06/27 16:40:32 | 000,001,427 | ---- | C] () -- C:\Users\geekitude\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
      [2012/06/25 21:01:20 | 000,001,244 | ---- | C] () -- C:\Users\geekitude\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Spybot - Search & Destroy.lnk
      [2012/06/25 21:01:20 | 000,001,220 | ---- | C] () -- C:\Users\geekitude\Desktop\Spybot - Search & Destroy.lnk
      [2012/06/25 20:35:53 | 000,001,433 | ---- | C] () -- C:\Users\geekitude\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
      [2012/06/25 20:34:41 | 000,000,290 | ---- | C] () -- C:\Users\geekitude\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk
      [2012/06/25 20:34:41 | 000,000,272 | ---- | C] () -- C:\Users\geekitude\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk
      [2012/06/25 20:28:53 | 000,476,908 | ---- | C] () -- C:\Users\RaiD FasteR\Desktop\iamjustageek-738246.jpeg
      [2012/06/24 09:48:57 | 000,396,579 | ---- | C] () -- C:\Users\RaiD FasteR\Desktop\SOFTBOX - JF.c4d
      [2012/06/24 09:48:51 | 001,576,288 | ---- | C] () -- C:\Users\RaiD FasteR\Desktop\JUSTFAVORIT.psd
      [2012/06/24 08:36:49 | 000,900,096 | ---- | C] () -- C:\Users\RaiD FasteR\Desktop\30005_30039.TS.sfk
      [2012/06/22 21:14:23 | 000,343,945 | ---- | C] () -- C:\Users\RaiD FasteR\Desktop\18779292832905_town2.jpg
      [2012/06/22 21:12:43 | 000,066,258 | ---- | C] () -- C:\Users\RaiD FasteR\Desktop\PeV6sl1.jpg
      [2012/06/22 21:12:07 | 000,038,893 | ---- | C] () -- C:\Users\RaiD FasteR\Desktop\4544762_f520.jpg
      [2012/06/22 20:35:59 | 000,014,077 | ---- | C] () -- C:\Users\RaiD FasteR\Desktop\skypemsgbcp.PNG
      [2012/06/13 22:06:23 | 000,002,345 | ---- | C] () -- C:\Users\RaiD FasteR\Desktop\Google Chrome.lnk
      [2012/06/10 16:21:07 | 000,001,002 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
      [2012/06/10 14:38:56 | 000,000,020 | ---- | C] () -- C:\Windows\Ôùp
      [2012/05/11 08:26:22 | 000,000,688 | ---- | C] () -- C:\Windows\System32\MRT.INI
      [2012/02/17 14:10:50 | 000,000,265 | ---- | C] () -- C:\Windows\HCWBlast.ini
      [2012/02/17 14:10:25 | 000,065,536 | ---- | C] () -- C:\Windows\System32\dmcrypto.dll
      [2012/02/17 14:09:43 | 000,002,336 | ---- | C] () -- C:\Windows\HCWPNP.INI
      [2012/02/04 11:52:32 | 001,044,468 | ---- | C] () -- C:\Windows\System32\drivers\MBFW.bin
      [2011/10/27 21:05:04 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
      [2010/01/27 03:09:02 | 000,053,299 | ---- | C] () -- C:\Windows\System32\pthreadVC.dll
      [2009/07/14 09:39:49 | 000,828,726 | ---- | C] () -- C:\Windows\System32\perfh00C.dat
      [2009/07/14 09:39:49 | 000,344,522 | ---- | C] () -- C:\Windows\System32\perfi00C.dat
      [2009/07/14 09:39:49 | 000,181,156 | ---- | C] () -- C:\Windows\System32\perfc00C.dat
      [2009/07/14 09:39:49 | 000,038,160 | ---- | C] () -- C:\Windows\System32\perfd00C.dat
      [2009/07/14 05:57:37 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
      [2009/07/14 05:33:53 | 002,235,120 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
      [2009/07/14 03:05:48 | 000,735,568 | ---- | C] () -- C:\Windows\System32\perfh009.dat
      [2009/07/14 03:05:48 | 000,291,294 | ---- | C] () -- C:\Windows\System32\perfi009.dat
      [2009/07/14 03:05:48 | 000,153,444 | ---- | C] () -- C:\Windows\System32\perfc009.dat
      [2009/07/14 03:05:48 | 000,031,548 | ---- | C] () -- C:\Windows\System32\perfd009.dat
      [2009/07/14 03:05:05 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
      [2009/07/14 03:04:11 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
      [2009/07/14 00:55:01 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
      [2009/07/14 00:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
      [2009/07/14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
      [2009/06/18 18:29:04 | 000,197,654 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat
      [2009/06/10 22:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
      [2009/04/22 13:46:42 | 003,482,112 | ---- | C] () -- C:\Windows\System32\drivers\snp2uvc.sys
      [2009/02/18 16:55:22 | 000,294,912 | ---- | C] () -- C:\Windows\System32\ATIODE.exe
      [2009/02/03 19:52:04 | 000,045,056 | ---- | C] () -- C:\Windows\System32\ATIODCLI.exe
      [2008/07/16 08:59:38 | 000,027,264 | ---- | C] () -- C:\Windows\System32\drivers\sncduvc.sys
      [2006/05/19 09:39:58 | 000,015,497 | ---- | C] () -- C:\Windows\snp2uvc.ini

      [color=#E56717]========== LOP Check ==========[/color]

      [2012/06/25 21:00:07 | 000,000,000 | ---D | M] -- C:\Users\geekitude\AppData\Roaming\GetRightToGo
      [2012/02/24 11:10:48 | 000,000,000 | ---D | M] -- C:\Users\parents\AppData\Roaming\.minecraft
      [2012/01/23 10:46:25 | 000,000,000 | ---D | M] -- C:\Users\parents\AppData\Roaming\OpenOffice.org
      [2012/02/10 19:21:16 | 000,000,000 | ---D | M] -- C:\Users\parents\AppData\Roaming\Systweak
      [2012/05/23 19:05:07 | 000,000,000 | ---D | M] -- C:\Users\RaiD FasteR\AppData\Roaming\.Etaria
      [2012/07/02 22:06:38 | 000,000,000 | ---D | M] -- C:\Users\RaiD FasteR\AppData\Roaming\.minecraft
      [2012/04/12 22:58:26 | 000,000,000 | ---D | M] -- C:\Users\RaiD FasteR\AppData\Roaming\Audacity
      [2012/02/05 15:39:07 | 000,000,000 | ---D | M] -- C:\Users\RaiD FasteR\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
      [2012/04/22 11:58:45 | 000,000,000 | ---D | M] -- C:\Users\RaiD FasteR\AppData\Roaming\G-Recorder
      [2012/02/05 16:36:38 | 000,000,000 | ---D | M] -- C:\Users\RaiD FasteR\AppData\Roaming\gtk-2.0
      [2012/03/23 22:52:17 | 000,000,000 | ---D | M] -- C:\Users\RaiD FasteR\AppData\Roaming\ImgBurn
      [2012/02/04 15:32:06 | 000,000,000 | ---D | M] -- C:\Users\RaiD FasteR\AppData\Roaming\OpenOffice.org
      [2012/02/03 20:12:50 | 000,000,000 | ---D | M] -- C:\Users\RaiD FasteR\AppData\Roaming\Publish Providers
      [2012/02/11 21:06:23 | 000,000,000 | ---D | M] -- C:\Users\RaiD FasteR\AppData\Roaming\Sony
      [2012/02/11 21:01:27 | 000,000,000 | ---D | M] -- C:\Users\RaiD FasteR\AppData\Roaming\Sony Creative Software Inc
      [2012/06/10 15:35:32 | 000,000,000 | ---D | M] -- C:\Users\RaiD FasteR\AppData\Roaming\SystemRequirementsLab
      [2012/02/10 07:03:24 | 000,000,000 | ---D | M] -- C:\Users\RaiD FasteR\AppData\Roaming\Systweak
      [2009/07/14 05:53:55 | 000,000,000 | -HSD | M] -- C:\ProgramData\Application Data
      [2012/04/29 17:43:51 | 000,000,000 | ---D | M] -- C:\ProgramData\AVG2012
      [2011/10/27 21:15:17 | 000,000,000 | -HSD | M] -- C:\ProgramData\Bureau
      [2012/02/23 13:35:28 | 000,000,000 | -H-D | M] -- C:\ProgramData\CanonBJ
      [2012/02/05 14:03:43 | 000,000,000 | -H-D | M] -- C:\ProgramData\Common Files
      [2009/07/14 05:53:55 | 000,000,000 | -HSD | M] -- C:\ProgramData\Desktop
      [2009/07/14 05:53:55 | 000,000,000 | -HSD | M] -- C:\ProgramData\Documents
      [2011/10/27 21:15:17 | 000,000,000 | -HSD | M] -- C:\ProgramData\Favoris
      [2009/07/14 05:53:55 | 000,000,000 | -HSD | M] -- C:\ProgramData\Favorites
      [2011/10/27 21:15:17 | 000,000,000 | -HSD | M] -- C:\ProgramData\Menu Démarrer
      [2012/04/29 13:05:06 | 000,000,000 | ---D | M] -- C:\ProgramData\MFAData
      [2011/10/27 21:15:17 | 000,000,000 | -HSD | M] -- C:\ProgramData\Modèles
      [2011/12/02 19:16:17 | 000,000,000 | ---D | M] -- C:\ProgramData\Nexon
      [2011/12/02 19:16:51 | 000,000,000 | ---D | M] -- C:\ProgramData\NexonEU
      [2011/12/29 18:41:00 | 000,000,000 | ---D | M] -- C:\ProgramData\Sony
      [2009/07/14 05:53:55 | 000,000,000 | -HSD | M] -- C:\ProgramData\Start Menu
      [2012/04/19 16:48:18 | 000,000,000 | ---D | M] -- C:\ProgramData\TEMP
      [2009/07/14 05:53:55 | 000,000,000 | -HSD | M] -- C:\ProgramData\Templates
      [2012/05/31 19:25:44 | 000,000,000 | ---D | M] -- C:\ProgramData\VirtualWifiRouter
      [2011/11/20 21:57:52 | 000,000,000 | ---D | M] -- C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
      [2012/07/03 13:59:00 | 000,000,930 | ---- | M] () -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4065672459-2805341061-527959478-1013Core.job
      [2012/07/04 10:59:00 | 000,000,952 | ---- | M] () -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4065672459-2805341061-527959478-1013UA.job
      [2012/05/29 19:20:25 | 000,032,482 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

      [color=#E56717]========== Purity Check ==========[/color]

      [color=#E56717]========== Custom Scans ==========[/color]

      [color=#A23BEC]< :OTL
      [31/12/2011 19:39:09] -- |A| -- C:\Windows\(÷k
      [10/06/2012 14:38:56] -- |A| -- C:\Windows\Ôùp
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: File not found
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: File not found
      O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
      O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
      O3 - HKU\geekitude_ON_C\..\Toolbar\WebBrowser: (no name) - {05EEB91A-AEF7-4F8A-978F-FB83E7B03F8E} - No CLSID value found.
      O3 - HKU\parents_ON_C\..\Toolbar\WebBrowser: (no name) - {05EEB91A-AEF7-4F8A-978F-FB83E7B03F8E} - No CLSID value found.
      O3 - HKU\parents_ON_C\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
      O4 - HKU\geekitude_ON_C..\Run: [SpybotSD TeaTimer]
      O4 - Startup: C:\Users\parents\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk = File >[/color]
      Invalid Switch: WLPG,version=15.4.3502.0922: File not found
      O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
      O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
      O3 - HKU\geekitude_ON_C\..\Toolbar\WebBrowser: (no name) - {05EEB91A-AEF7-4F8A-978F-FB83E7B03F8E} - No CLSID value found.
      O3 - HKU\parents_ON_C\..\Toolbar\WebBrowser: (no name) - {05EEB91A-AEF7-4F8A-978F-FB83E7B03F8E} - No CLSID value found.
      O3 - HKU\parents_ON_C\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
      O4 - HKU\geekitude_ON_C..\Run: [SpybotSD TeaTimer]
      O4 - Startup: C:\Users\parents\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk = File

      [color=#A23BEC]< not found
      O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
      [2012/05/23 19:05:07 | 000,000,000 | ---D | M] -- C:\Users\RaiD FasteR\AppData\Roaming\.Etaria
      @Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:0B4227B4
      @Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:05EE1EEF

      >[/color]
      Invalid Switch: 23 19:05:07 | 000,000,000 | ---D | M] -- C:\Users\RaiD FasteR\AppData\Roaming\.Etaria
      @Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:0B4227B4
      @Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:05EE1EEF

      [color=#A23BEC]< :Reg
      [-HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\DATAMNGR]
      [-HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Facebook Update]
      [-HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\{9D71D88C-C598-4935-C5D1-43AA4DB90836}]

      >[/color]

      [color=#A23BEC]< :Files
      C:\PROGRA~1\SEARCH~1
      C:\Users\RaiD FasteR\AppData\Roaming\Bifrost >[/color]

      [color=#E56717]========== Alternate Data Streams ==========[/color]

      @Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:0B4227B4
      @Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:05EE1EEF

      < End of report >
      1. ah , situation du pc : Quand je démarre je boot windows normal , le texte "démarrage de windows" s'affiche sans le logo qui apparaît environ 1min30 à 2 min après , ensuite après un écran noir+souris qui dure + de 5min je me logg , et le "bienvenue" reste + de 5minutes en freezant des fois , et après j'ai un écran noir +souris et c'est bloqué là .
      2. Alors effectivement ton ordinateur à attrapé un virus attend un peu je vais te passer un logiciel antivirus que tu auras à mettre une une clé USB ou un DVD et le lancé directement en tant que logiciel de boot pour faire un scan de ton PC et éliminer les virus si il y en as.
      3. bah je suis en live cd pour faire le scan dont tu viens de voir le rapport , et ya un bouton runfix de prévue ;) mais merci quand même pour ton attention :)
      4. Euh .. OTL bug ou tu fais pas ce qui est écrit ? Oo
        Tu as fait l'analyse au lieu de la correction, non ?

        Lis toujours tout ce qui écrit et applique à la lettre ce qui t'est demandé !
      5. bah j'ai fais scan --"
    4. Bonjour,

      En 1er:
      Je te recommande de télécharger: System mechanic https://www.clubic.com/telecharger-fiche9702-system-mechanic.html
      Donc ensuite tu l'installe(redémarrage obligatoire désolé) et tu le lance (Il va te demander de faire une mise à jour, NE LA FAIT PAS)

      En 2eme:
      Tu vas ensuite dans Toolbox à gauche puis individual Tools

      En 3eme:
      Clique sur Defragment Memory: start puis tu coche la case performing deep je c'est plus quoi..... Puis tu commence la défragamentation. Sa peut prendre entre 1 et 5 minutes.

      En 4eme:
      Tu retourne au menu avec Exit. Puis tu clique sur Optimize Windows Startup: start
      Puis séléctionne Deep optimization puis next puis tu attend et après tu clique sur Exit

      En 5eme:
      Dans les différentes catégorie à gauche tu séléctionne Repair Problèms puis Repair Registry Problems puis complete Optimization and repair puis Next puis tu attend. Après tout sa redémarrare l'ordi et dis moi se que sa donne. Si sa marche(se qui est possible) je te ferai faire un autre truc. Mais au moins tout sa sa aura fait un nettoyage.
      1. c'est gentil de vouloir m'aider , mais tu t'es trompé dsl :/
      2. en plus mon pc est inutilisable :)
    5. :OUPS: je suis en plein scan et j'ai oublié de cocher les 4 cases à gauche sur "all" , c'est grave ? :O
      1. Contributeur sécurité
        Dans le Canned Speach de G3n-h@ckm@n, je vois pas de case à cocher. Contente toi de faire ce qui est écrit.
      2. avant il me l'avait demandé pour le 1er scan
      3. Contributeur sécurité
        oui mais tu es plus au premier scan...
      4. oui ok mais j'avais pas touché les paramettres donc c'était resté sur all ...
      5. (pour le premier essai du 2e scan)
    6. salut :D
      Je vois pas trop où il me dit de recommencer ça mais je vais le faire :)
      1. Contributeur sécurité
        Re.

        "je crois que gh n'a pas compris que j'avais fais le MBR après le script"

        Je crois qu'il a très bien vu, mais qu'il n'y a rien de plus énervant
        que de passer du temps à donner des conseils dans un certain but
        ou tout au moins, dans un but certain, et de voir les gens faire d'autres
        choses qui n'ont pas été demandées.

        Ensuite, que Gen "donne" ton topic à un autre ne va pas t'avancer
        beaucoup, il est comme tous, des fois il est là, et des fois il n'a pas
        forcement le temps d'être là.

        Comme on le dit souvent un peu partout sur le site, si il y a
        un caractère urgent à ta demande, tu peux toujours aller voir
        un spécialiste et payer le temps passé...

        On a tous appris un jour, on ne devrait jamais l'oublier...
        1. re,

          "rien de plus énervant
          que de passer du temps à donner des conseils dans un certain but
          ou tout au moins, dans un but certain, et de voir les gens faire d'autres
          choses qui n'ont pas été demandées. "
          -->qu'est ce que j'ai fait qui n'a pas été demandé , explique j'attend
        2. ah le MBR ? J'ai fait de la place en supprimant une AUTRE partition , je vois pas le rapport --" J'ai juste demandé si je devais refaire un scan, des fois que l'augmentation de la place sur le disque dur ait changé ds trucs , mais ça n'a aucun rapport avec le fait que le script soit faux ... ou tout du moins qu'il n'ait pas fonctionné ...
        3. Contributeur sécurité
          Passe à la page 3, y a le lien du post que tu dois recommencer.
        4. oui merci je viens de voir ;)
      2. Juste je crois que gh n'a pas compris que j'avais fais le MBR après le script ...
        1. oh tu va arrêter tout de suite là donne le topic à qqn d'autre ! J'ai tout fais comme t'as demandé alors commence pas à dire ça !
          1. Contributeur sécurité
            Bonjour.

            Zen, tu t'adresses à des bénévoles qui prennent sur leur
            temps pour essayer de t'aider...

            :o(
          2. je sais bien mais là il repond presque plus et quand il rep c'est pour dire nimp ...Je le connais pas en plus ...
          3. Je sais qu'il essaye de m'aider mais il pourrait dire franchement qu'il a pas le temps et donner le topic à qqn d'autre ...
          4. :cray:
        2. c'est un peu à toi de me dire ce que je fais , ou alors c'est juste un détail et on peut passer à la suite ?
          1. je croi que ton processeur est en trein de faiblir. J'ai lut aucun post avent donc voila
            1. je pense aussi , mais ya des ordis avec de moins bon processeur qui fonctionnent quand même ;)
          2. euh après t'avoir envoyé le rapport j'ai supprimé ma partition linux dont je ne me servais pas , et ya eu un grub rescue> que j'ai résolu avec un live CD qui a mis un mbr pour windows donc plus de problème , mais je voulais savoir si je devais refaire une analyse du coup ?
            1. je sais pas ce que t'as fait mais t'as pas fait comme dit
              1. à bon ?? je vois pas ce que j'aurais mal fait , j'ai mis ton script et j'ai fait run fix , et le rapport me dit que le script marche pas ou que ya une erreur (enfin je crois)
            • 1
            • 2
            • 3