15 sujets de 1 à 15 (sur un total de 46)
  • Auteur
    Messages
  • sophie29
    Nombre d'articles : 0

    Bonjour, mes fichiers vidéo sont devenus des raccourcis usbc ! j’ai suivi les modalités usbfix, mais mon probleme demeure

    Anonyme
    Nombre d'articles : 0

    Hello :hello: ,

    Bienvenue sur SosVirus :welcome:

    Nous allons faire un diagnostique :

    • Télécharge FRST (de Farbar) sur ton bureau !
    • Ferme toutes les applications en cours !
    • Lance FRST, exécuter en tant qu’administrateur sous Windows : 7/8 et Vista
    • Coche la case Addition.txt
    • Clique sur Scan

    • Une fois le scan terminé rends toi sur le bureau, deux rapports FRST.txt et Addition.txt ont été créés.
    • Héberge les rapports FRST.txt et Addition.txt sur SosUpload, puis copie/colle le lien fourni dans ta prochaine réponse
      -> Tutoriel SosUpload : actu/tutoriel-sosupload/
    sophie29
    Nombre d'articles : 0

    apparement la version n’est pas compatible avec mon ordi ?!

    Anonyme
    Nombre d'articles : 0

    Oupsss oui désolé :(, tu es en 32 Bit.
    Prend celle ci : https://www.sosvirus.net/telecharger/frst-farbar/

    sophie29
    Nombre d'articles : 0

    Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-04-2015
    Ran by sophie (administrator) on PC-DE-SOPHIE on 12-04-2015 13:56:58
    Running from C:UserssophieDownloads
    Loaded Profiles: sophie (Available profiles: sophie)
    Platform: Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 2 (X86) OS Language: Français (France)
    Internet Explorer Version 9 (Default browser: Chrome)
    Boot Mode: Normal
    Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

    ==================== Processes (Whitelisted) =================

    (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

    Failed to access process -> csrss.exe
    Failed to access process -> csrss.exe
    Failed to access process -> unsecapp.exe
    Failed to access process -> WmiPrvSE.exe
    (Kaspersky Lab ZAO) C:Program FilesKaspersky LabKaspersky Anti-Virus 2011avp.exe
    (Kaspersky Lab ZAO) C:Program FilesKaspersky LabKaspersky Anti-Virus 2011avp.exe
    (Microsoft Corporation) C:WindowsSystem32wbemunsecapp.exe
    (Microsoft Corporation) C:WindowsMicrosoft.NETFrameworkv3.0WPFPresentationFontCache.exe
    (Microsoft Corp.) C:Program FilesCommon Filesmicrosoft sharedWindows LiveWLIDSVC.EXE
    (Microsoft Corp.) C:Program FilesCommon Filesmicrosoft sharedWindows LiveWLIDSVCM.EXE
    (Apple Inc.) C:Program FilesCommon FilesAppleMobile Device SupportAppleMobileDeviceService.exe
    () C:Program FilesAcerEmpowering TechnologyServiceETService.exe
    (Microsoft Corporation) C:WindowsSystem32SLsvc.exe
    (Microsoft Corporation) C:Program FilesWindows Media Playerwmpnscfg.exe
    (Microsoft Corporation) C:WindowsSystem32wbemunsecapp.exe
    Failed to access process -> WUDFHost.exe
    (Microsoft Corporation) C:WindowsSystem32conime.exe
    (Avanquest Software) C:Program FilesPC Speed MaximizerSPMSchedule.exe
    (Google Inc.) C:UserssophieAppDataLocalGoogleChromeApplicationchrome.exe
    (Google Inc.) C:UserssophieAppDataLocalGoogleChromeApplicationchrome.exe
    (Microsoft Corporation) C:WindowsSystem32conime.exe
    (Microsoft Corporation) C:WindowsSystem32conime.exe
    (Google Inc.) C:UserssophieAppDataLocalGoogleChromeApplicationchrome.exe
    (Google Inc.) C:UserssophieAppDataLocalGoogleChromeApplicationchrome.exe
    () C:ProgramData5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15PluginContainer.exe
    () C:Program FilesCommon Files5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15Updater.exe
    () C:Program FilesOLBPreOLBPre.exe
    Failed to access process -> SafeGuardApp.exe
    () C:Program FilesSafeGuardSafeGuardSrv.exe
    (Alerts LLC) C:Program FilesSafeGuardSGUpdaterSvc.exe
    (Alerts LLC) C:Program FilesSafeGuardSafeGuard.exe
    (Microsoft Corporation) C:WindowsSystem32cmd.exe
    () C:UserssophieAppDataRoamingGameogameo.exe
    () C:UserssophieAppDataRoamingGameogameo.exe
    () C:UserssophieAppDataRoamingGameogameo.exe
    (Google Inc.) C:UserssophieAppDataLocalGoogleChromeApplicationchrome.exe
    (Farbar) C:UserssophieDownloadsFRST (1).exe
    Failed to access process -> WmiPrvSE.exe

    ==================== Registry (Whitelisted) ==================

    (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

    HKLM…Run: [Windows Defender] => C:Program FilesWindows DefenderMSASCui.exe [1008184 2008-01-21] (Microsoft Corporation)
    HKLM…Run: [SynTPEnh] => C:Program FilesSynapticsSynTPSynTPEnh.exe [1037608 2008-02-22] (Synaptics, Inc.)
    HKLM…Run: [BkupTray] => C:Program FilesNewTech InfosystemsNTI Backup Now 5BkupTray.exe [34040 2008-04-06] ()
    HKLM…Run: [NvCplDaemon] => RUNDLL32.EXE C:Windowssystem32NvCpl.dll,NvStartup
    HKLM…Run: [NvMediaCenter] => RUNDLL32.EXE C:Windowssystem32NvMcTray.dll,NvTaskbarInit
    HKLM…Run: [RtHDVCpl] => C:WindowsRtHDVCpl.exe [6265376 2008-08-07] (Realtek Semiconductor)
    HKLM…Run: [Skytel] => C:WindowsSkytel.exe [1833504 2008-08-07] (Realtek Semiconductor Corp.)
    HKLM…Run: [PLFSetI] => C:WindowsPLFSetI.exe [200704 2007-10-23] ()
    HKLM…Run: [LManager] => C:Program FilesLaunch ManagerLManager.exe [809480 2008-07-25] (Dritek System Inc.)
    HKLM…Run: [eAudio] => C:Program FilesAcerEmpowering TechnologyeAudioeAudio.exe [544768 2008-03-07] (Acer Incorporated)
    HKLM…Run: [eDataSecurity Loader] => C:Program FilesAcerEmpowering TechnologyeDataSecurityx86eDSloader.exe [526896 2008-03-04] (Egis Incorporated)
    HKLM…Run: [ePower_DMC] => C:Program FilesAcerEmpowering TechnologyePowerePower_DMC.exe [397312 2008-04-30] (Acer Inc.)
    HKLM…Run: [eRecoveryService] => [X]
    HKLM…Run: [ArcadeDeluxeAgent] => C:Program FilesAcer Arcade DeluxeAcer Arcade DeluxeArcadeDeluxeAgent.exe [147456 2008-04-10] (CyberLink Corp.)
    HKLM…Run: [CLMLServer] => C:Program FilesAcer Arcade DeluxeAcer Arcade DeluxeKernelCLMLCLMLSvc.exe [167936 2008-04-10] (CyberLink)
    HKLM…Run: [PlayMovie] => C:Program FilesAcer Arcade DeluxePlayMoviePMVService.exe [167936 2008-04-18] (Acer Corp.)
    HKLM…Run: [WarReg_PopUp] => C:Program FilesAcerWR_PopUpWarReg_PopUp.exe [303104 2008-01-29] (Acer Incorporated)
    HKLM…Run: [Google Desktop Search] => C:Program FilesGoogleGoogle Desktop SearchGoogleDesktop.exe [30192 2010-08-24] (Google)
    HKLM…Run: [SystrayORAHSS] => C:Program FilesOrangeSystraySystrayApp.exe [94208 2007-09-25] (France Telecom SA)
    HKLM…Run: [ORAHSSSessionManager] => C:Program FilesOrangeSessionManagerSessionManager.exe [102400 2007-09-25] (France Telecom SA)
    HKLM…Run: [IMBooster] => C:Program FilesIminentIMBoosterIMBooster.exe /warmup
    HKLM…Run: [AVP] => C:Program FilesKaspersky LabKaspersky Anti-Virus 2011avp.exe [365336 2010-11-02] (Kaspersky Lab ZAO)
    HKLM…Run: [RIMBBLaunchAgent.exe] => C:Program FilesCommon FilesResearch In MotionUSB DriversRIMBBLaunchAgent.exe [443408 2013-09-09] (Research In Motion Limited)
    HKLM…Run: [HP Software Update] => C:Program FilesHpHP Software UpdateHPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard)
    HKLM…Run: [] => [X]
    HKLM…Run: [SunJavaUpdateSched] => C:Program FilesCommon FilesJavaJava Updatejusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.)
    HKLM…Run: [APSDaemon] => C:Program FilesCommon FilesAppleApple Application SupportAPSDaemon.exe [43816 2014-07-03] (Apple Inc.)
    HKLM…Run: [Adobe ARM] => C:Program FilesCommon FilesAdobeARM1.0AdobeARM.exe [959904 2014-05-08] (Adobe Systems Incorporated)
    HKLM…Run: [iTunesHelper] => C:Program FilesiTunesiTunesHelper.exe [152392 2014-07-08] (Apple Inc.)
    HKLM…Run: [QuickTime Task] => C:Program FilesQuickTimeQTTask.exe [421888 2014-10-02] (Apple Inc.)
    HKLM…Run: [SafeGuard] => C:Program FilesSafeGuardSafeGuardApp.exe [1537552 2015-04-01] ()
    HKLM…RunOnce: [] => [X]
    WinlogonNotifyklogon: C:Windowssystem32klogon.dll (Kaspersky Lab ZAO)
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…Run: [ehTray.exe] => C:WindowsehomeehTray.exe [125952 2008-01-21] (Microsoft Corporation)
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…Run: [Packard Bell Software Suite] => C:Program FilesPackard BellSoftware SuitePBSoftSuite.exe [2901024 2009-04-10] (Acer Incorporated)
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…Run: [swg] => C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe [68856 2008-12-25] (Google Inc.)
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…Run: [TomTomHOME.exe] => C:Program FilesTomTom HOME 2TomTomHOMERunner.exe [247728 2011-04-22] (TomTom)
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…Run: [MyTomTomSA.exe] => C:Program FilesMyTomTom 3MyTomTomSA.exe [399320 2011-06-14] (TomTom)
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…Run: [Google Update] => C:UserssophieAppDataLocalGoogleUpdateGoogleUpdate.exe [107912 2014-10-29] (Google Inc.)
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…Run: [HP Deskjet 3050A J611 series (NET)] => C:Program FilesHPHP Deskjet 3050A J611 seriesBinScanToPCActivationApp.exe [1804648 2011-06-08] (Hewlett-Packard Co.)
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…Run: [GoogleChromeAutoLaunch_0DEC1F07CA013F4B103C99BFC48C8962] => C:UserssophieAppDataLocalGoogleChromeApplicationchrome.exe [809288 2015-03-30] (Google Inc.)
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…Run: [Gameo] => C:UserssophieAppDataRoamingGameogameo.exe [42482176 2015-02-22] ()
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…RunOnce: [Iminent.Notifier Install] => “C:UserssophieAppDataLocalTempNotifierSetup.exe” /s <===== ATTENTION
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…RunOnce: [DigitalSites] => wscript /E:vbscript /B “C:UserssophieAppDataRoamingDigitalSitesUpdateProcbkup.dat”
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…MountPoints2: {8f93ea72-149a-11e4-a166-001d72cd668f} – F:HTC_Sync_Manager_PC.exe
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…MountPoints2: {d2307d45-f178-11de-9c25-001d72cd668f} – F:ClickMe.exe
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…MountPoints2: {d69248e6-f97c-11df-9a5b-001d72cd668f} – G:LaunchU3.exe -a
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…MountPoints2: {fc623d3a-0fe1-11e4-a2b9-001d72cd668f} – F:HTC_Sync_Manager_PC.exe
    HKUS-1-5-21-348216579-2849367412-1210017331-1000Control PanelDesktop\SCRNSAVE.EXE -> C:Windowssystem32Acer.scr [83554304 2007-04-20] ()
    AppInit_DLLs: C:PROGRA~1GOOGLEGOOGLE~1GOEC62~1.DLL => C:Program FilesGoogleGoogle Desktop SearchGoogleDesktopNetwork3.dll [123392 2010-08-24] (Google)
    AppInit_DLLs: ,C:PROGRA~1KASPER~1KASPER~2mzvkbd3.dll => C:Program FilesKaspersky LabKaspersky Anti-Virus 2011mzvkbd3.dll [109240 2010-10-05] (Kaspersky Lab ZAO)
    Startup: C:ProgramDataMicrosoftWindowsStart MenuProgramsStartupAcer VCM.lnk
    ShortcutTarget: Acer VCM.lnk -> C:Program FilesAcerAcer VCMAcerVCM.exe (Acer Incorporated)
    Startup: C:ProgramDataMicrosoftWindowsStart MenuProgramsStartupGoPro Importer.lnk
    ShortcutTarget: GoPro Importer.lnk -> C:Program FilesGoProToolsImporterGoPro Importer.exe (GoPro)
    Startup: C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupAlertes de surveillance de l’encre – .lnk
    ShortcutTarget: Alertes de surveillance de l’encre – .lnk -> C:Program FilesHPHP Deskjet 3050A J611 seriesBinHPStatusBL.dll (Hewlett-Packard Co.)
    Startup: C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupAlertes de surveillance de l’encre – HP Deskjet 3050A J611 series (réseau).lnk
    ShortcutTarget: Alertes de surveillance de l’encre – HP Deskjet 3050A J611 series (réseau).lnk -> C:Program FilesHPHP Deskjet 3050A J611 seriesBinHPStatusBL.dll (Hewlett-Packard Co.)
    Startup: C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupMyPC Backup.lnk
    ShortcutTarget: MyPC Backup.lnk -> C:Program FilesOLBPreOLBPre.exe ()
    Startup: C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupNotification de cadeaux MSN.lnk
    ShortcutTarget: Notification de cadeaux MSN.lnk -> C:UserssophieAppDataRoamingMicrosoftNotification de cadeaux MSNlsnfier.exe (Microsoft Corporation)
    Startup: C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupOneNote 2007 – Capture d’écran et lancement.lnk
    ShortcutTarget: OneNote 2007 – Capture d’écran et lancement.lnk -> C:Program FilesMicrosoft OfficeOffice12ONENOTEM.EXE (Microsoft Corporation)
    Startup: C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupSafeGuard.lnk
    ShortcutTarget: SafeGuard.lnk -> C:Program FilesSafeGuardSafeGuard.exe (Alerts LLC)
    ShellIconOverlayIdentifiers: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:Program FilesAcerEmpowering TechnologyeDataSecurityx86PSDProtect.dll (Egis Incorporated)

    ==================== Internet (Whitelisted) ====================

    (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

    HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = about:blank
    HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL =
    HKUS-1-5-21-348216579-2849367412-1210017331-1000SoftwareMicrosoftInternet ExplorerMain,Start Page = http://fr.yhs4.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ggfc_15_15&param1=1&param2=f%3D1%26b%3DIE%26cc%3Dfr%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1Qzu0E0CtC0AyDzy0DyC0Fzy0BtCzyzy0DtCtN0D0Tzu0StCtCzyyBtN1L2XzutAtFzytFzztFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAtB0BtC0DtD0CzytGtDyC0EtBtG0C0FyCyDtGtDzztA0AtGyD0CyB0BtDzyyByBzyyCtCtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyE0ByE0BtA0D0B0CtG0C0AyB0FtGyEyB0FtCtG0ByDtByDtGyDtBtCtA0A0BtDtBtBtCyBtC2QtN0A0LzutB%26cr%3D679966945%26a%3Dwny_ggfc_15_15%26os%3DWindows Vista (TM) Home Premium
    URLSearchHook: HKUS-1-5-21-348216579-2849367412-1210017331-1000 – Search Class – {08C06D61-F1F3-4799-86F8-BE1A89362C85} – C:Program FilesOrangeSearchURLHookSearchPageURL.dll ()
    URLSearchHook: HKUS-1-5-21-348216579-2849367412-1210017331-1000 – (No Name) – {7b13ec3e-999a-4b70-b9cb-2617b8323822} – No File
    SearchScopes: HKLM -> DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://fr.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ggfc_15_15&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1Qzu0E0CtC0AyDzy0DyC0Fzy0BtCzyzy0DtCtN0D0Tzu0StCtCzyyBtN1L2XzutAtFzytFzztFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAtB0BtC0DtD0CzytGtDyC0EtBtG0C0FyCyDtGtDzztA0AtGyD0CyB0BtDzyyByBzyyCtCtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyE0ByE0BtA0D0B0CtG0C0AyB0FtGyEyB0FtCtG0ByDtByDtGyDtBtCtA0A0BtDtBtBtCyBtC2QtN0A0LzutB%26cr%3D679966945%26a%3Dwny_ggfc_15_15%26os%3DWindows Vista (TM) Home Premium&p={searchTerms}
    SearchScopes: HKLM -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://fr.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ggfc_15_15&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1Qzu0E0CtC0AyDzy0DyC0Fzy0BtCzyzy0DtCtN0D0Tzu0StCtCzyyBtN1L2XzutAtFzytFzztFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAtB0BtC0DtD0CzytGtDyC0EtBtG0C0FyCyDtGtDzztA0AtGyD0CyB0BtDzyyByBzyyCtCtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyE0ByE0BtA0D0B0CtG0C0AyB0FtGyEyB0FtCtG0ByDtByDtGyDtBtCtA0A0BtDtBtBtCyBtC2QtN0A0LzutB%26cr%3D679966945%26a%3Dwny_ggfc_15_15%26os%3DWindows Vista (TM) Home Premium&p={searchTerms}
    SearchScopes: HKLM -> {8CDE19E6-71C2-4B46-89B7-35F6A18C571A} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW
    SearchScopes: HKLM -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2438727
    SearchScopes: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://fr.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ggfc_15_15&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1Qzu0E0CtC0AyDzy0DyC0Fzy0BtCzyzy0DtCtN0D0Tzu0StCtCzyyBtN1L2XzutAtFzytFzztFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAtB0BtC0DtD0CzytGtDyC0EtBtG0C0FyCyDtGtDzztA0AtGyD0CyB0BtDzyyByBzyyCtCtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyE0ByE0BtA0D0B0CtG0C0AyB0FtGyEyB0FtCtG0ByDtByDtGyDtBtCtA0A0BtDtBtBtCyBtC2QtN0A0LzutB%26cr%3D679966945%26a%3Dwny_ggfc_15_15%26os%3DWindows Vista (TM) Home Premium&p={searchTerms}
    SearchScopes: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?FORM=IEFM1&q={searchTerms}&src={referrer:source?}
    SearchScopes: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> {19F2B849-4ADE-4d4b-85F9-C31C643DBDE9} URL = http://www.fastbrowsersearch.com/results/results.aspx?q={searchTerms}&c=web&s=DSP&v=18&tid={7D7857B4-09BD-4d07-8AEA-2280FFB41455}
    SearchScopes: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> {3CE021A4-4747-41B3-A025-70423C63781F} URL = http://search.softonic.com/MOY00005/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=240e99d100000000000000234dd42c1f&toi=16092&r=18
    SearchScopes: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://fr.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ggfc_15_15&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1Qzu0E0CtC0AyDzy0DyC0Fzy0BtCzyzy0DtCtN0D0Tzu0StCtCzyyBtN1L2XzutAtFzytFzztFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAtB0BtC0DtD0CzytGtDyC0EtBtG0C0FyCyDtGtDzztA0AtGyD0CyB0BtDzyyByBzyyCtCtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyE0ByE0BtA0D0B0CtG0C0AyB0FtGyEyB0FtCtG0ByDtByDtGyDtBtCtA0A0BtDtBtBtCyBtC2QtN0A0LzutB%26cr%3D679966945%26a%3Dwny_ggfc_15_15%26os%3DWindows Vista (TM) Home Premium&p={searchTerms}
    SearchScopes: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> {70D46D94-BF1E-45ED-B567-48701376298E} URL = http://127.0.0.1:4664/search&s=BhksIK2ZSb86Tbqfdxyi_ia1xL8?q={searchTerms}
    SearchScopes: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> {8CDE19E6-71C2-4B46-89B7-35F6A18C571A} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7GGLL_fr
    SearchScopes: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> {9D5BD211-422C-4164-9298-BB4186A30F31} URL = http://www.bing.com/search?q={searchTerms}&mkt=fr-FR&form=MIMWA5
    SearchScopes: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2438727
    BHO: No Name -> {02478D38-C3F9-4efb-9B51-7695ECA05670} -> No File
    BHO: IEVkbdBHO Class -> {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} -> C:Program FilesKaspersky LabKaspersky Anti-Virus 2011ievkbd.dll [2010-10-05] (Kaspersky Lab ZAO)
    BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:Program FilesJavajre7binssv.dll [2013-02-24] (Oracle Corporation)
    BHO: Partner BHO Class -> {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} -> C:ProgramDataPartnerpartner.dll [2008-12-25] (Google Inc.)
    BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:Program FilesCommon FilesMicrosoft SharedWindows LiveWindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
    BHO: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:Program FilesWindows LiveCompanioncompanioncore.dll [2012-03-08] (Microsoft Corporation)
    BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:Program FilesGoogleGoogle ToolbarGoogleToolbar_32.dll [2015-03-08] (Google Inc.)
    BHO: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:Program FilesMicrosoftBingBarBingExt.dll [2011-02-28] (Microsoft Corporation.)
    BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:Program FilesJavajre7binjp2ssv.dll [2013-02-24] (Oracle Corporation)
    BHO: FilterBHO Class -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:Program FilesKaspersky LabKaspersky Anti-Virus 2011klwtbbho.dll [2010-10-05] (Kaspersky Lab ZAO)
    BHO: browse pulse -> {ed8e593d-1965-4e45-9d55-d56162dcde14} -> C:Program Filesbrowse pulseExtensionsed8e593d-1965-4e45-9d55-d56162dcde14.dll [2015-04-12] ()
    Toolbar: HKLM – No Name – {0BF43445-2F28-4351-9252-17FE6E806AA0} – No File
    Toolbar: HKLM – Acer eDataSecurity Management – {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} – C:Program FilesAcerEmpowering TechnologyeDataSecurityx86eDStoolbar.dll [2008-03-04] (Egis Incorporated.)
    Toolbar: HKLM – Bing Bar – {8dcb7100-df86-4384-8842-8fa844297b3f} – C:Program FilesMicrosoftBingBarBingExt.dll [2011-02-28] (Microsoft Corporation.)
    Toolbar: HKLM – Google Toolbar – {2318C2B1-4965-11d4-9B18-009027A5CD4F} – C:Program FilesGoogleGoogle ToolbarGoogleToolbar_32.dll [2015-03-08] (Google Inc.)
    Toolbar: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> Google Toolbar – {2318C2B1-4965-11D4-9B18-009027A5CD4F} – C:Program FilesGoogleGoogle ToolbarGoogleToolbar_32.dll [2015-03-08] (Google Inc.)
    Toolbar: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> No Name – {21FA44EF-376D-4D53-9B0F-8A89D3229068} – No File
    Toolbar: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> No Name – {7B13EC3E-999A-4B70-B9CB-2617B8323822} – No File
    DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
    DPF: {04CB5B64-5915-4629-B869-8945CEBADD21} https://static.impots.gouv.fr/abos/static/securite/certdgi1.cab
    DPF: {0972B098-DEE9-4279-AC7E-4BAAA029102D} http://assets.photobox.com/assets/aurigma/ImageUploader5.cab?20101216075330
    DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab
    DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} http://srv03.admin.over-blog.com/fdata/iu/ImageUploader5.cab
    DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab
    DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} http://game14.zylom.com/activex/zylomgamesplayer.cab
    DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
    DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
    Handler: livecall – {828030A1-22C1-4009-854F-8E305202313F} – C:Program FilesWindows LiveMessengermsgrapp.dll No File []
    Handler: ms-itss – {0A9007C0-4076-11D3-8789-0000F8105754} – c:Program FilesCommon FilesMicrosoft SharedInformation Retrievalmsitss.dll [2001-06-21] (Microsoft Corporation)
    Handler: msnim – {828030A1-22C1-4009-854F-8E305202313F} – C:Program FilesWindows LiveMessengermsgrapp.dll No File []
    Winsock: Catalog5 07 C:Program FilesBonjourmdnsNSP.dll [121704] (Apple Inc.)
    TcpipParameters: [DhcpNameServer] 192.168.1.1

    FireFox:
    ========
    FF Plugin: @Apple.com/iTunes,version=1.0 -> C:Program FilesiTunesMozilla Pluginsnpitunes.dll [2014-02-21] ()
    FF Plugin: @java.com/DTPlugin,version=10.15.2 -> C:Windowssystem32npDeployJava1.dll [2013-02-24] (Oracle Corporation)
    FF Plugin: @java.com/JavaPlugin,version=10.15.2 -> C:Program FilesJavajre7binplugin2npjp2.dll [2013-02-24] (Oracle Corporation)
    FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:Program FilesMicrosoft Silverlight5.1.30514.0npctrl.dll [2014-05-13] ( Microsoft Corporation)
    FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:Program FilesMicrosoftOffice LivenpOLW.dll [2010-04-26] (Microsoft Corp.)
    FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:Program FilesWindows LivePhoto GalleryNPWLPG.dll [2012-03-08] (Microsoft Corporation)
    FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:Program FilesWindows LivePhoto GalleryNPWLPG.dll [2012-03-08] (Microsoft Corporation)
    FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:Program FilesWindows LivePhoto GalleryNPWLPG.dll [2012-03-08] (Microsoft Corporation)
    FF Plugin: @microsoft.com/WPF,version=3.5 -> C:WindowsMicrosoft.NETFrameworkv3.5Windows Presentation FoundationNPWPF.dll [2008-07-29] (Microsoft Corporation)
    FF Plugin: @rim.com/WebSLLauncher,version=1.0 -> C:Program FilesCommon FilesResearch In MotionBBWebSLLauncherNPWebSLLauncher.dll [2013-11-06] ()
    FF Plugin: @t-immersion.com/DFusionHomeWebPlugIn -> C:Program FilesTotal ImmersionDFusionHomeWebPlugInNPDFusionWebFirefox.dll [2011-11-22] (Total Immersion)
    FF Plugin: @tools.google.com/Google Update;version=3 -> C:Program FilesGoogleUpdate1.3.26.9npGoogleUpdate3.dll [2015-02-26] (Google Inc.)
    FF Plugin: @tools.google.com/Google Update;version=9 -> C:Program FilesGoogleUpdate1.3.26.9npGoogleUpdate3.dll [2015-02-26] (Google Inc.)
    FF Plugin: Adobe Reader -> C:Program FilesAdobeReader 10.0ReaderAIRnppdf32.dll [2014-05-08] (Adobe Systems Inc.)
    FF Plugin HKUS-1-5-21-348216579-2849367412-1210017331-1000: @stonetrip.com/ShiVaWebPlayer,version=1.8.1.0 -> C:UserssophieAppDataRoaming..LocalLowStoneTripWebPlayer1.8.1npShiVa3D_1.8.1.dll [2010-03-04] (Stonetrip)
    FF Plugin HKUS-1-5-21-348216579-2849367412-1210017331-1000: @tools.google.com/Google Update;version=3 -> C:UserssophieAppDataLocalGoogleUpdate1.3.26.9npGoogleUpdate3.dll [2015-02-26] (Google Inc.)
    FF Plugin HKUS-1-5-21-348216579-2849367412-1210017331-1000: @tools.google.com/Google Update;version=9 -> C:UserssophieAppDataLocalGoogleUpdate1.3.26.9npGoogleUpdate3.dll [2015-02-26] (Google Inc.)
    FF Plugin HKUS-1-5-21-348216579-2849367412-1210017331-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:UserssophieAppDataLocalLowUnityWebPlayerloadernpUnity3D32.dll [2014-02-20] (Unity Technologies ApS)
    FF HKLM…FirefoxExtensions: [{20a82645-c095-46ed-80e3-08825760534b}] – C:WindowsMicrosoft.NETFrameworkv3.5Windows Presentation FoundationDotNetAssistantExtension
    FF Extension: Microsoft .NET Framework Assistant – C:WindowsMicrosoft.NETFrameworkv3.5Windows Presentation FoundationDotNetAssistantExtension [2009-08-22]
    FF HKLM…FirefoxExtensions: [virtualKeyboard@kaspersky.ru] – C:Program FilesKaspersky LabKaspersky Anti-Virus 2011FFExtvirtualKeyboard@kaspersky.ru
    FF Extension: Kaspersky Virtual Keyboard – C:Program FilesKaspersky LabKaspersky Anti-Virus 2011FFExtvirtualKeyboard@kaspersky.ru [2011-05-31]
    FF HKLM…FirefoxExtensions: [linkfilter@kaspersky.ru] – C:Program FilesKaspersky LabKaspersky Anti-Virus 2011FFExtlinkfilter@kaspersky.ru
    FF Extension: Kaspersky URL Advisor – C:Program FilesKaspersky LabKaspersky Anti-Virus 2011FFExtlinkfilter@kaspersky.ru [2011-04-13]
    FF HKLM…FirefoxExtensions: [quickprint@hp.com] – C:Program FilesHewlett-PackardSmartPrintQPExtension
    FF Extension: SmartPrintButton – C:Program FilesHewlett-PackardSmartPrintQPExtension [2012-05-12]

    Chrome:
    =======
    CHR HomePage: Default -> hxxp://www.over-blog.com/com-1130449281/rss.xml
    CHR StartupUrls: Default -> “hxxp://www.google.com/”, “hxxp://search.softonic.com/MOY00005/tb_v1?SearchSource=48&cc=&mi=240e99d100000000000000234dd42c1f&toi=16092”, “hxxp://fr.yhs4.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ggfc_15_15&param1=1&param2=f%3D7%26b%3DChrome%26cc%3Dfr%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1Qzu0E0CtC0AyDzy0DyC0Fzy0BtCzyzy0DtCtN0D0Tzu0StCtCzyyBtN1L2XzutAtFzytFzztFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAtB0BtC0DtD0CzytGtDyC0EtBtG0C0FyCyDtGtDzztA0AtGyD0CyB0BtDzyyByBzyyCtCtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyE0ByE0BtA0D0B0CtG0C0AyB0FtGyEyB0FtCtG0ByDtByDtGyDtBtCtA0A0BtDtBtBtCyBtC2QtN0A0LzutB%26cr%3D679966945%26a%3Dwny_ggfc_15_15%26os%3DWindows Vista (TM) Home Premium”
    CHR DefaultSearchKeyword: Default -> google.com_
    CHR DefaultSearchURL: Default -> http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7GGLL_fr
    CHR DefaultSuggestURL: Default ->
    CHR Profile: C:UserssophieAppDataLocalGoogleChromeUser DataDefault
    CHR Extension: (YouTube) – C:UserssophieAppDataLocalGoogleChromeUser DataDefaultExtensionsblpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-22]
    CHR Extension: (Google Search) – C:UserssophieAppDataLocalGoogleChromeUser DataDefaultExtensionscoobgpohoikkiipiblmjeljniedjpjpf [2014-01-22]
    CHR Extension: (Yulia Brodskaya) – C:UserssophieAppDataLocalGoogleChromeUser DataDefaultExtensionsjlgdloilieclkegafohackmhffbmdpko [2014-01-22]
    CHR Extension: (Chrome Hotword Shared Module) – C:UserssophieAppDataLocalGoogleChromeUser DataDefaultExtensionslccekmodgklaepjeofjdjpbminllajkg [2015-03-21]
    CHR Extension: (Google Wallet) – C:UserssophieAppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccmgmieda [2013-09-02]
    CHR Extension: (Gmail) – C:UserssophieAppDataLocalGoogleChromeUser DataDefaultExtensionspjkljhegncpnkpknbcohdijeoejaedia [2014-01-22]
    StartMenuInternet: Google Chrome – C:UserssophieAppDataLocalGoogleChromeApplicationchrome.exe

    ========================== Services (Whitelisted) =================

    (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

    R2 AVP; C:Program FilesKaspersky LabKaspersky Anti-Virus 2011avp.exe [365336 2010-11-02] (Kaspersky Lab ZAO)
    S3 BlackBerry Device Manager; C:Program FilesCommon FilesResearch In MotionUSB DriversBbDevMgr.exe [585728 2013-09-09] (Research In Motion Limited) [File not signed]
    S2 BUNAgentSvc; C:Program FilesNewTech InfosystemsNTI Backup Now 5ClientAgentsvc.exe [16384 2008-03-03] (NewTech Infosystems, Inc.) [File not signed]
    S2 CLHNService; C:Program FilesAcer Arcade DeluxeHomeMediaKernelDMPCLHNService.exe [81504 2008-01-16] () [File not signed]
    R2 ETService; C:Program FilesAcerEmpowering TechnologyServiceETService.exe [24576 2008-03-21] () [File not signed]
    S2 FTRTSVC; C:Program FilesCommon FilesFrance TelecomShared ModulesFTRTSVCFTRTSVC.exe [65536 2007-09-25] (France Telecom SA) [File not signed]
    S3 GoogleDesktopManager-051210-111108; C:Program FilesGoogleGoogle Desktop SearchGoogleDesktop.exe [30192 2010-08-24] (Google)
    S2 LightScribeService; C:Program FilesCommon FilesLightScribeLSSrvc.exe [61440 2007-01-17] (Hewlett-Packard Company) [File not signed]
    S2 MobilityService; C:AcerMobility CenterMobilityService.exe [110592 2007-12-06] () [File not signed]
    S2 NTISchedulerSvc; C:Program FilesNewTech InfosystemsNTI Backup Now 5SchedulerSvc.exe [131072 2008-04-04] () [File not signed]
    S2 PowerSave; C:Program FilesPackard BellSoftware SuitePowerSavePSPBSSS.exe [1002016 2009-04-06] (Packard Bell Services)
    S2 RichVideo; C:Program FilesCyberlinkShared filesRichVideo.exe [272024 2007-01-09] ()
    S2 RS_Service; C:Program FilesAcerAcer VCMRS_Service.exe [233472 2008-01-10] (Acer Incorporated) [File not signed]
    R2 SafeGuard Update Service; C:Program FilesSafeGuardSafeGuardSrv.exe [585744 2015-04-01] ()
    R2 Service Mgr browsepulse; C:ProgramData5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15plugincontainer.exe [640240 2015-04-12] ()
    R2 SGUpdater; C:Program FilesSafeGuardSGUpdaterSvc.exe [16392 2015-03-17] (Alerts LLC)
    R2 Update Mgr browsepulse; C:Program FilesCommon Files5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15updater.exe [560368 2015-04-12] ()
    R2 WinDefend; C:Program FilesWindows Defendermpsvc.dll [272952 2008-01-21] (Microsoft Corporation)

    ==================== Drivers (Whitelisted) ====================

    (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

    R0 kl1; C:WindowsSystem32DRIVERSkl1.sys [132184 2010-06-09] (Kaspersky Lab ZAO)
    R1 kl2; C:WindowsSystem32DRIVERSkl2.sys [11352 2010-06-09] (Kaspersky Lab ZAO)
    R1 KLIF; C:WindowsSystem32DRIVERSklif.sys [488536 2010-10-01] (Kaspersky Lab)
    R1 KLIM6; C:WindowsSystem32DRIVERSklim6.sys [22104 2010-04-22] (Kaspersky Lab ZAO)
    R3 klmouflt; C:WindowsSystem32DRIVERSklmouflt.sys [19984 2009-11-02] (Kaspersky Lab)
    R2 NTIPPKernel; C:Program FilesAcer Arcade DeluxeHomeMediaKernelDMPNTIPPKernel.sys [122368 2008-01-16] (Cyberlink Corp.) [File not signed]
    S3 PCAMp50; C:WindowsSystem32DriversPCAMp50.sys [28224 2006-11-28] (Printing Communications Assoc., Inc. (PCAUSA))
    S3 PCASp50; C:WindowsSystem32DriversPCASp50.sys [27072 2006-11-28] (Printing Communications Assoc., Inc. (PCAUSA))
    R3 RTL8192cu; C:WindowsSystem32DRIVERSRTL8192cu.sys [693760 2011-06-01] (Realtek Semiconductor Corporation )
    R1 RtlProt; C:WindowsSystem32DRIVERSrtlprot.sys [25896 2007-04-23] (Windows (R) Codename Longhorn DDK provider)
    R2 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796}; C:Program FilesAcer Arcade DeluxePlayMovie00.fcl [61424 2008-04-18] (Cyberlink Corp.)
    S3 athr; system32DRIVERSathr.sys [X]
    S3 IpInIp; system32DRIVERSipinip.sys [X]
    S3 NwlnkFlt; system32DRIVERSnwlnkflt.sys [X]
    S3 NwlnkFwd; system32DRIVERSnwlnkfwd.sys [X]

    ==================== NetSvcs (Whitelisted) ===================

    (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)

    ==================== One Month Created Files and Folders ========

    (If an entry is included in the fixlist, the filefolder will be moved.)

    2015-04-12 13:56 – 2015-04-12 13:58 – 00032732 _____ () C:UserssophieDownloadsFRST.txt
    2015-04-12 13:55 – 2015-04-12 13:57 – 00000000 ____D () C:FRST
    2015-04-12 13:54 – 2015-04-12 13:54 – 01135104 _____ (Farbar) C:UserssophieDownloadsFRST (1).exe
    2015-04-12 13:51 – 2015-04-12 13:51 – 01135104 _____ (Farbar) C:UserssophieDownloadsFRST.exe
    2015-04-12 13:31 – 2015-04-12 13:31 – 02095616 _____ (Farbar) C:UserssophieDownloadsFRST64 (3).exe
    2015-04-12 13:26 – 2015-04-12 13:26 – 02095616 _____ (Farbar) C:UserssophieDownloadsFRST64 (2).exe
    2015-04-12 13:23 – 2015-04-12 13:23 – 02095616 _____ (Farbar) C:UserssophieDownloadsFRST64 (1).exe
    2015-04-12 13:19 – 2015-04-12 13:22 – 00000000 ____D () C:UserssophieAppDataLocalGameo
    2015-04-12 13:19 – 2015-04-12 13:21 – 00000000 ____D () C:UserssophieAppDataRoamingGameo
    2015-04-12 13:19 – 2015-04-12 13:19 – 00001686 _____ () C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsGameo.lnk
    2015-04-12 13:19 – 2015-04-12 13:19 – 00000174 _____ () C:UserssophieDesktopPlay Games Online.url
    2015-04-12 13:19 – 2015-04-12 13:19 – 00000174 _____ () C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsPlay Games Online.url
    2015-04-12 13:19 – 2015-04-12 13:19 – 00000000 ____D () C:UserssophieAppDataRoamingPC Speed Maximizer
    2015-04-12 13:19 – 2015-04-12 13:19 – 00000000 ____D () C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsGameo
    2015-04-12 13:18 – 2015-04-12 13:18 – 00000000 ____D () C:UserssophieAppDataLocalAlerts_LLC
    2015-04-12 13:17 – 2015-04-12 13:17 – 00000000 ____D () C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsSafeGuard
    2015-04-12 13:17 – 2015-04-12 13:17 – 00000000 ____D () C:UserssophieAppDataLocalSafeGuard
    2015-04-12 13:17 – 2015-04-12 13:17 – 00000000 ____D () C:ProgramDataMicrosoftWindowsStart MenuProgramsSafeGuard
    2015-04-12 13:17 – 2015-04-12 13:17 – 00000000 ____D () C:Program FilesSafeGuard
    2015-04-12 13:17 – 2015-04-12 13:17 – 00000000 ____D () C:Program FilesOLBPre
    2015-04-12 13:15 – 2015-04-12 13:19 – 00000296 _____ () C:WindowsTasksDigital Sites.job
    2015-04-12 13:15 – 2015-04-12 13:15 – 00000000 ____D () C:UserssophieAppDataRoamingDigitalSites
    2015-04-12 13:15 – 2015-04-12 13:15 – 00000000 ____D () C:UserssophieAppDataRoaming1H1Q1V1N1N1O1R
    2015-04-12 13:15 – 2015-04-12 13:15 – 00000000 ____D () C:ProgramData5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15
    2015-04-12 13:15 – 2015-04-12 13:15 – 00000000 ____D () C:Program FilesCommon Files5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15
    2015-04-12 13:15 – 2015-04-12 13:15 – 00000000 ____D () C:Program Filesbrowse pulse
    2015-04-12 13:14 – 2015-04-12 13:14 – 00000000 ____D () C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsMiPony
    2015-04-12 13:14 – 2015-04-12 13:14 – 00000000 ____D () C:ProgramDataMicrosoftWindowsStart MenuProgramsPC Speed Maximizer
    2015-04-12 13:14 – 2015-04-12 13:14 – 00000000 ____D () C:ProgramDataMicrosoftWindowsStart MenuProgramsMiPony
    2015-04-12 13:14 – 2015-04-12 13:14 – 00000000 ____D () C:Program FilesPC Speed Maximizer
    2015-04-12 13:14 – 2015-04-12 13:14 – 00000000 ____D () C:Program FilesMiPony
    2015-04-12 13:13 – 2015-04-12 13:13 – 00796287 _____ (Web Installer application ) C:UserssophieDownloadsDownloadManagerSetup.exe
    2015-04-12 13:12 – 2015-04-12 13:13 – 02095616 _____ (Farbar) C:UserssophieDownloadsFRST64.exe
    2015-04-12 13:08 – 2015-04-12 13:08 – 00008515 _____ () C:UserssophieDesktopUsbFix_Report.txt
    2015-04-12 12:30 – 2015-04-12 12:46 – 00000000 ____D () C:UsbFix
    2015-04-12 12:30 – 2015-04-12 12:30 – 00001408 _____ () C:UserssophieDesktopUsbFix.lnk
    2015-04-12 12:27 – 2015-04-12 12:28 – 04312424 _____ (El Desaparecido – SosVirus.net – UsbFix.net) C:UserssophieDownloadsUsbFix_7.9212.exe
    2015-04-12 11:12 – 2015-04-12 11:12 – 00001730 _____ () C:UsersPublicDesktopQuickTime Player.lnk
    2015-04-12 11:12 – 2015-04-12 11:12 – 00000000 ____D () C:ProgramDataMicrosoftWindowsStart MenuProgramsQuickTime
    2015-04-12 10:52 – 2015-04-12 10:55 – 42096984 _____ (Apple Inc.) C:UserssophieDownloadsQuickTimeInstaller.exe
    2015-04-12 10:50 – 2015-04-12 11:44 – 00000000 ____D () C:UserssophieAppDataRoamingGoPro
    2015-04-12 10:50 – 2015-04-12 11:37 – 00000000 ____D () C:UserssophieAppDataLocalGoPro
    2015-04-12 10:48 – 2015-04-12 10:48 – 00000905 _____ () C:UserssophieDesktopGoPro Studio.lnk
    2015-04-12 10:46 – 2015-04-12 11:37 – 00000000 ____D () C:UsersPublicCineForm
    2015-04-12 10:46 – 2015-04-12 10:48 – 00000000 ____D () C:ProgramDataMicrosoftWindowsStart MenuProgramsGoPro
    2015-04-12 10:46 – 2015-04-12 10:46 – 00000000 ____D () C:WindowsLastGood
    2015-04-12 10:46 – 2015-04-12 10:46 – 00000000 ____D () C:Program FilesDIFX
    2015-04-12 10:46 – 2015-04-12 10:46 – 00000000 ____D () C:Program FilesCineForm
    2015-04-12 10:43 – 2015-04-12 10:46 – 00000000 ____D () C:Program FilesGoPro
    2015-04-12 10:43 – 2015-04-12 10:43 – 00000000 ____D () C:ProgramDataPackage Cache
    2015-04-12 10:15 – 2015-04-12 10:27 – 163904608 _____ () C:UserssophieDownloadsGoProStudioPC-2.5.4.404.exe
    2015-04-04 16:50 – 2015-04-04 16:52 – 00000000 ____D () C:UserssophieDocumentsGOPRO
    2015-03-30 17:51 – 2015-03-30 17:51 – 00014336 _____ () C:UserssophieDocumentsTEST MOTRICITE.wps

    ==================== One Month Modified Files and Folders =======

    (If an entry is included in the fixlist, the filefolder will be moved.)

    2015-04-12 13:18 – 2010-02-01 11:38 – 00001056 _____ () C:WindowsTasksGoogleUpdateTaskMachineUA.job
    2015-04-12 13:01 – 2012-05-12 12:48 – 00000258 _____ () C:WindowsTasksHP Photo Creations Messager.job
    2015-04-12 12:45 – 2006-11-02 14:47 – 00003216 ____H () C:Windowssystem327B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
    2015-04-12 12:45 – 2006-11-02 14:47 – 00003216 ____H () C:Windowssystem327B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
    2015-04-12 12:43 – 2008-10-24 10:18 – 00000000 _____ () C:Windowssystem32LogConfigTemp.xml
    2015-04-12 12:16 – 2006-11-02 12:33 – 01615904 _____ () C:Windowssystem32PerfStringBackup.INI
    2015-04-12 11:12 – 2011-05-07 12:00 – 00000000 ____D () C:Program FilesQuickTime
    2015-04-12 10:46 – 2008-12-25 19:46 – 00000000 ____D () C:Userssophie
    2015-04-12 10:46 – 2008-04-30 09:24 – 00013372 _____ () C:WindowsDPINST.LOG
    2015-04-12 10:46 – 2006-11-02 13:18 – 00000000 ___RD () C:UsersPublic
    2015-04-12 10:44 – 2008-10-24 10:06 – 01129634 _____ () C:WindowsWindowsUpdate.log
    2015-04-12 10:30 – 2008-12-28 22:08 – 00045056 _____ () C:UserssophieAppDataLocalDCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    2015-04-12 10:02 – 2012-02-22 20:20 – 00002049 _____ () C:UserssophieDesktopGoogle Chrome.lnk
    2015-04-12 09:59 – 2010-04-16 21:02 – 00000000 ____D () C:ProgramDataKaspersky Lab
    2015-04-12 09:57 – 2008-12-25 21:51 – 00002299 _____ () C:UserssophieAppDataRoamingacervcmtmp.ini
    2015-04-12 09:55 – 2010-02-01 11:38 – 00001052 _____ () C:WindowsTasksGoogleUpdateTaskMachineCore.job
    2015-04-12 09:55 – 2008-05-08 08:28 – 00000147 _____ () C:Windowssystem32agent.log
    2015-04-12 09:55 – 2006-11-02 15:01 – 00000006 ____H () C:WindowsTasksSA.DAT
    2015-04-12 09:54 – 2009-02-23 09:01 – 00027934 _____ () C:ProgramDatanvModes.001
    2015-04-12 09:54 – 2008-01-21 04:47 – 04680878 _____ () C:WindowsPFRO.log
    2015-04-04 16:55 – 2006-11-02 15:01 – 00032588 _____ () C:WindowsTasksSCHEDLGU.TXT
    2015-03-30 17:51 – 2010-09-20 12:55 – 00003060 _____ () C:UserssophieAppDataRoamingwklnhst.dat
    2015-03-30 17:41 – 2013-12-14 19:06 – 00095744 _____ () C:UserssophieDocumentsTESTS GARDIENS.wps
    2015-03-21 11:36 – 2006-11-02 14:52 – 00189582 _____ () C:Windowssetupact.log
    2015-03-14 19:12 – 2013-12-25 18:39 – 00000000 ____D () C:UserssophieAppDataLocalApple Computer

    ==================== Files in the root of some directories =======

    2008-12-25 21:51 – 2015-04-12 09:57 – 0002299 _____ () C:UserssophieAppDataRoamingacervcmtmp.ini
    2012-11-09 12:52 – 2012-11-09 12:52 – 0085733 _____ () C:UserssophieAppDataRoamingPhoto.jpg
    2011-05-11 07:38 – 2013-12-15 12:17 – 0000770 _____ () C:UserssophieAppDataRoamingRim.Desktop.Exception.log
    2011-01-09 21:01 – 2014-01-22 09:57 – 0003107 _____ () C:UserssophieAppDataRoamingRim.Desktop.HttpServerSetup.log
    2011-11-27 12:39 – 2013-12-15 12:17 – 0000770 _____ () C:UserssophieAppDataRoamingRim.DesktopHelper.Exception.log
    2010-09-20 12:55 – 2015-03-30 17:51 – 0003060 _____ () C:UserssophieAppDataRoamingwklnhst.dat
    2009-05-08 12:56 – 2014-12-25 11:20 – 0007592 _____ () C:UserssophieAppDataLocald3d9caps.dat
    2008-12-28 22:08 – 2015-04-12 10:30 – 0045056 _____ () C:UserssophieAppDataLocalDCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    2011-05-13 07:24 – 2011-05-13 07:24 – 0000000 _____ () C:UserssophieAppDataLocal{7A27CF98-BC61-4424-A040-8DEC18FE7341}
    2011-05-13 07:27 – 2011-05-13 07:27 – 0000000 _____ () C:UserssophieAppDataLocal{8B409176-D026-470D-80C3-A523C4804E61}
    2012-05-12 12:41 – 2012-05-12 12:41 – 0000057 _____ () C:ProgramDataAment.ini
    2009-02-23 09:01 – 2015-04-12 09:54 – 0027934 _____ () C:ProgramDatanvModes.001
    2009-02-22 10:54 – 2014-12-10 17:05 – 0027934 _____ () C:ProgramDatanvModes.dat

    Some content of TEMP:
    ====================
    C:UserssophieAppDataLocalTempCloudBackup9412.exe

    ==================== Bamital & volsnap Check =================

    (There is no automatic fix for files that do not pass verification.)

    C:Windowsexplorer.exe => File is digitally signed
    C:Windowssystem32winlogon.exe => File is digitally signed
    C:Windowssystem32wininit.exe => File is digitally signed
    C:Windowssystem32svchost.exe => File is digitally signed
    C:Windowssystem32services.exe => File is digitally signed
    C:Windowssystem32User32.dll => File is digitally signed
    C:Windowssystem32userinit.exe => File is digitally signed
    C:Windowssystem32rpcss.dll => File is digitally signed
    C:Windowssystem32Driversvolsnap.sys => File is digitally signed

    LastRegBack: 2015-04-12 10:02

    ==================== End Of Log ============================

    sophie29
    Nombre d'articles : 0

    Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-04-2015
    Ran by sophie (administrator) on PC-DE-SOPHIE on 12-04-2015 13:56:58
    Running from C:UserssophieDownloads
    Loaded Profiles: sophie (Available profiles: sophie)
    Platform: Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 2 (X86) OS Language: Français (France)
    Internet Explorer Version 9 (Default browser: Chrome)
    Boot Mode: Normal
    Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

    ==================== Processes (Whitelisted) =================

    (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

    Failed to access process -> csrss.exe
    Failed to access process -> csrss.exe
    Failed to access process -> unsecapp.exe
    Failed to access process -> WmiPrvSE.exe
    (Kaspersky Lab ZAO) C:Program FilesKaspersky LabKaspersky Anti-Virus 2011avp.exe
    (Kaspersky Lab ZAO) C:Program FilesKaspersky LabKaspersky Anti-Virus 2011avp.exe
    (Microsoft Corporation) C:WindowsSystem32wbemunsecapp.exe
    (Microsoft Corporation) C:WindowsMicrosoft.NETFrameworkv3.0WPFPresentationFontCache.exe
    (Microsoft Corp.) C:Program FilesCommon Filesmicrosoft sharedWindows LiveWLIDSVC.EXE
    (Microsoft Corp.) C:Program FilesCommon Filesmicrosoft sharedWindows LiveWLIDSVCM.EXE
    (Apple Inc.) C:Program FilesCommon FilesAppleMobile Device SupportAppleMobileDeviceService.exe
    () C:Program FilesAcerEmpowering TechnologyServiceETService.exe
    (Microsoft Corporation) C:WindowsSystem32SLsvc.exe
    (Microsoft Corporation) C:Program FilesWindows Media Playerwmpnscfg.exe
    (Microsoft Corporation) C:WindowsSystem32wbemunsecapp.exe
    Failed to access process -> WUDFHost.exe
    (Microsoft Corporation) C:WindowsSystem32conime.exe
    (Avanquest Software) C:Program FilesPC Speed MaximizerSPMSchedule.exe
    (Google Inc.) C:UserssophieAppDataLocalGoogleChromeApplicationchrome.exe
    (Google Inc.) C:UserssophieAppDataLocalGoogleChromeApplicationchrome.exe
    (Microsoft Corporation) C:WindowsSystem32conime.exe
    (Microsoft Corporation) C:WindowsSystem32conime.exe
    (Google Inc.) C:UserssophieAppDataLocalGoogleChromeApplicationchrome.exe
    (Google Inc.) C:UserssophieAppDataLocalGoogleChromeApplicationchrome.exe
    () C:ProgramData5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15PluginContainer.exe
    () C:Program FilesCommon Files5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15Updater.exe
    () C:Program FilesOLBPreOLBPre.exe
    Failed to access process -> SafeGuardApp.exe
    () C:Program FilesSafeGuardSafeGuardSrv.exe
    (Alerts LLC) C:Program FilesSafeGuardSGUpdaterSvc.exe
    (Alerts LLC) C:Program FilesSafeGuardSafeGuard.exe
    (Microsoft Corporation) C:WindowsSystem32cmd.exe
    () C:UserssophieAppDataRoamingGameogameo.exe
    () C:UserssophieAppDataRoamingGameogameo.exe
    () C:UserssophieAppDataRoamingGameogameo.exe
    (Google Inc.) C:UserssophieAppDataLocalGoogleChromeApplicationchrome.exe
    (Farbar) C:UserssophieDownloadsFRST (1).exe
    Failed to access process -> WmiPrvSE.exe

    ==================== Registry (Whitelisted) ==================

    (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

    HKLM…Run: [Windows Defender] => C:Program FilesWindows DefenderMSASCui.exe [1008184 2008-01-21] (Microsoft Corporation)
    HKLM…Run: [SynTPEnh] => C:Program FilesSynapticsSynTPSynTPEnh.exe [1037608 2008-02-22] (Synaptics, Inc.)
    HKLM…Run: [BkupTray] => C:Program FilesNewTech InfosystemsNTI Backup Now 5BkupTray.exe [34040 2008-04-06] ()
    HKLM…Run: [NvCplDaemon] => RUNDLL32.EXE C:Windowssystem32NvCpl.dll,NvStartup
    HKLM…Run: [NvMediaCenter] => RUNDLL32.EXE C:Windowssystem32NvMcTray.dll,NvTaskbarInit
    HKLM…Run: [RtHDVCpl] => C:WindowsRtHDVCpl.exe [6265376 2008-08-07] (Realtek Semiconductor)
    HKLM…Run: [Skytel] => C:WindowsSkytel.exe [1833504 2008-08-07] (Realtek Semiconductor Corp.)
    HKLM…Run: [PLFSetI] => C:WindowsPLFSetI.exe [200704 2007-10-23] ()
    HKLM…Run: [LManager] => C:Program FilesLaunch ManagerLManager.exe [809480 2008-07-25] (Dritek System Inc.)
    HKLM…Run: [eAudio] => C:Program FilesAcerEmpowering TechnologyeAudioeAudio.exe [544768 2008-03-07] (Acer Incorporated)
    HKLM…Run: [eDataSecurity Loader] => C:Program FilesAcerEmpowering TechnologyeDataSecurityx86eDSloader.exe [526896 2008-03-04] (Egis Incorporated)
    HKLM…Run: [ePower_DMC] => C:Program FilesAcerEmpowering TechnologyePowerePower_DMC.exe [397312 2008-04-30] (Acer Inc.)
    HKLM…Run: [eRecoveryService] => [X]
    HKLM…Run: [ArcadeDeluxeAgent] => C:Program FilesAcer Arcade DeluxeAcer Arcade DeluxeArcadeDeluxeAgent.exe [147456 2008-04-10] (CyberLink Corp.)
    HKLM…Run: [CLMLServer] => C:Program FilesAcer Arcade DeluxeAcer Arcade DeluxeKernelCLMLCLMLSvc.exe [167936 2008-04-10] (CyberLink)
    HKLM…Run: [PlayMovie] => C:Program FilesAcer Arcade DeluxePlayMoviePMVService.exe [167936 2008-04-18] (Acer Corp.)
    HKLM…Run: [WarReg_PopUp] => C:Program FilesAcerWR_PopUpWarReg_PopUp.exe [303104 2008-01-29] (Acer Incorporated)
    HKLM…Run: [Google Desktop Search] => C:Program FilesGoogleGoogle Desktop SearchGoogleDesktop.exe [30192 2010-08-24] (Google)
    HKLM…Run: [SystrayORAHSS] => C:Program FilesOrangeSystraySystrayApp.exe [94208 2007-09-25] (France Telecom SA)
    HKLM…Run: [ORAHSSSessionManager] => C:Program FilesOrangeSessionManagerSessionManager.exe [102400 2007-09-25] (France Telecom SA)
    HKLM…Run: [IMBooster] => C:Program FilesIminentIMBoosterIMBooster.exe /warmup
    HKLM…Run: [AVP] => C:Program FilesKaspersky LabKaspersky Anti-Virus 2011avp.exe [365336 2010-11-02] (Kaspersky Lab ZAO)
    HKLM…Run: [RIMBBLaunchAgent.exe] => C:Program FilesCommon FilesResearch In MotionUSB DriversRIMBBLaunchAgent.exe [443408 2013-09-09] (Research In Motion Limited)
    HKLM…Run: [HP Software Update] => C:Program FilesHpHP Software UpdateHPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard)
    HKLM…Run: [] => [X]
    HKLM…Run: [SunJavaUpdateSched] => C:Program FilesCommon FilesJavaJava Updatejusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.)
    HKLM…Run: [APSDaemon] => C:Program FilesCommon FilesAppleApple Application SupportAPSDaemon.exe [43816 2014-07-03] (Apple Inc.)
    HKLM…Run: [Adobe ARM] => C:Program FilesCommon FilesAdobeARM1.0AdobeARM.exe [959904 2014-05-08] (Adobe Systems Incorporated)
    HKLM…Run: [iTunesHelper] => C:Program FilesiTunesiTunesHelper.exe [152392 2014-07-08] (Apple Inc.)
    HKLM…Run: [QuickTime Task] => C:Program FilesQuickTimeQTTask.exe [421888 2014-10-02] (Apple Inc.)
    HKLM…Run: [SafeGuard] => C:Program FilesSafeGuardSafeGuardApp.exe [1537552 2015-04-01] ()
    HKLM…RunOnce: [] => [X]
    WinlogonNotifyklogon: C:Windowssystem32klogon.dll (Kaspersky Lab ZAO)
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…Run: [ehTray.exe] => C:WindowsehomeehTray.exe [125952 2008-01-21] (Microsoft Corporation)
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…Run: [Packard Bell Software Suite] => C:Program FilesPackard BellSoftware SuitePBSoftSuite.exe [2901024 2009-04-10] (Acer Incorporated)
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…Run: [swg] => C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe [68856 2008-12-25] (Google Inc.)
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…Run: [TomTomHOME.exe] => C:Program FilesTomTom HOME 2TomTomHOMERunner.exe [247728 2011-04-22] (TomTom)
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…Run: [MyTomTomSA.exe] => C:Program FilesMyTomTom 3MyTomTomSA.exe [399320 2011-06-14] (TomTom)
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…Run: [Google Update] => C:UserssophieAppDataLocalGoogleUpdateGoogleUpdate.exe [107912 2014-10-29] (Google Inc.)
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…Run: [HP Deskjet 3050A J611 series (NET)] => C:Program FilesHPHP Deskjet 3050A J611 seriesBinScanToPCActivationApp.exe [1804648 2011-06-08] (Hewlett-Packard Co.)
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…Run: [GoogleChromeAutoLaunch_0DEC1F07CA013F4B103C99BFC48C8962] => C:UserssophieAppDataLocalGoogleChromeApplicationchrome.exe [809288 2015-03-30] (Google Inc.)
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…Run: [Gameo] => C:UserssophieAppDataRoamingGameogameo.exe [42482176 2015-02-22] ()
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…RunOnce: [Iminent.Notifier Install] => “C:UserssophieAppDataLocalTempNotifierSetup.exe” /s <===== ATTENTION
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…RunOnce: [DigitalSites] => wscript /E:vbscript /B “C:UserssophieAppDataRoamingDigitalSitesUpdateProcbkup.dat”
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…MountPoints2: {8f93ea72-149a-11e4-a166-001d72cd668f} – F:HTC_Sync_Manager_PC.exe
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…MountPoints2: {d2307d45-f178-11de-9c25-001d72cd668f} – F:ClickMe.exe
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…MountPoints2: {d69248e6-f97c-11df-9a5b-001d72cd668f} – G:LaunchU3.exe -a
    HKUS-1-5-21-348216579-2849367412-1210017331-1000…MountPoints2: {fc623d3a-0fe1-11e4-a2b9-001d72cd668f} – F:HTC_Sync_Manager_PC.exe
    HKUS-1-5-21-348216579-2849367412-1210017331-1000Control PanelDesktop\SCRNSAVE.EXE -> C:Windowssystem32Acer.scr [83554304 2007-04-20] ()
    AppInit_DLLs: C:PROGRA~1GOOGLEGOOGLE~1GOEC62~1.DLL => C:Program FilesGoogleGoogle Desktop SearchGoogleDesktopNetwork3.dll [123392 2010-08-24] (Google)
    AppInit_DLLs: ,C:PROGRA~1KASPER~1KASPER~2mzvkbd3.dll => C:Program FilesKaspersky LabKaspersky Anti-Virus 2011mzvkbd3.dll [109240 2010-10-05] (Kaspersky Lab ZAO)
    Startup: C:ProgramDataMicrosoftWindowsStart MenuProgramsStartupAcer VCM.lnk
    ShortcutTarget: Acer VCM.lnk -> C:Program FilesAcerAcer VCMAcerVCM.exe (Acer Incorporated)
    Startup: C:ProgramDataMicrosoftWindowsStart MenuProgramsStartupGoPro Importer.lnk
    ShortcutTarget: GoPro Importer.lnk -> C:Program FilesGoProToolsImporterGoPro Importer.exe (GoPro)
    Startup: C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupAlertes de surveillance de l’encre – .lnk
    ShortcutTarget: Alertes de surveillance de l’encre – .lnk -> C:Program FilesHPHP Deskjet 3050A J611 seriesBinHPStatusBL.dll (Hewlett-Packard Co.)
    Startup: C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupAlertes de surveillance de l’encre – HP Deskjet 3050A J611 series (réseau).lnk
    ShortcutTarget: Alertes de surveillance de l’encre – HP Deskjet 3050A J611 series (réseau).lnk -> C:Program FilesHPHP Deskjet 3050A J611 seriesBinHPStatusBL.dll (Hewlett-Packard Co.)
    Startup: C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupMyPC Backup.lnk
    ShortcutTarget: MyPC Backup.lnk -> C:Program FilesOLBPreOLBPre.exe ()
    Startup: C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupNotification de cadeaux MSN.lnk
    ShortcutTarget: Notification de cadeaux MSN.lnk -> C:UserssophieAppDataRoamingMicrosoftNotification de cadeaux MSNlsnfier.exe (Microsoft Corporation)
    Startup: C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupOneNote 2007 – Capture d’écran et lancement.lnk
    ShortcutTarget: OneNote 2007 – Capture d’écran et lancement.lnk -> C:Program FilesMicrosoft OfficeOffice12ONENOTEM.EXE (Microsoft Corporation)
    Startup: C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupSafeGuard.lnk
    ShortcutTarget: SafeGuard.lnk -> C:Program FilesSafeGuardSafeGuard.exe (Alerts LLC)
    ShellIconOverlayIdentifiers: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:Program FilesAcerEmpowering TechnologyeDataSecurityx86PSDProtect.dll (Egis Incorporated)

    ==================== Internet (Whitelisted) ====================

    (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

    HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = about:blank
    HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL =
    HKUS-1-5-21-348216579-2849367412-1210017331-1000SoftwareMicrosoftInternet ExplorerMain,Start Page = http://fr.yhs4.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ggfc_15_15&param1=1&param2=f%3D1%26b%3DIE%26cc%3Dfr%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1Qzu0E0CtC0AyDzy0DyC0Fzy0BtCzyzy0DtCtN0D0Tzu0StCtCzyyBtN1L2XzutAtFzytFzztFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAtB0BtC0DtD0CzytGtDyC0EtBtG0C0FyCyDtGtDzztA0AtGyD0CyB0BtDzyyByBzyyCtCtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyE0ByE0BtA0D0B0CtG0C0AyB0FtGyEyB0FtCtG0ByDtByDtGyDtBtCtA0A0BtDtBtBtCyBtC2QtN0A0LzutB%26cr%3D679966945%26a%3Dwny_ggfc_15_15%26os%3DWindows Vista (TM) Home Premium
    URLSearchHook: HKUS-1-5-21-348216579-2849367412-1210017331-1000 – Search Class – {08C06D61-F1F3-4799-86F8-BE1A89362C85} – C:Program FilesOrangeSearchURLHookSearchPageURL.dll ()
    URLSearchHook: HKUS-1-5-21-348216579-2849367412-1210017331-1000 – (No Name) – {7b13ec3e-999a-4b70-b9cb-2617b8323822} – No File
    SearchScopes: HKLM -> DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://fr.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ggfc_15_15&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1Qzu0E0CtC0AyDzy0DyC0Fzy0BtCzyzy0DtCtN0D0Tzu0StCtCzyyBtN1L2XzutAtFzytFzztFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAtB0BtC0DtD0CzytGtDyC0EtBtG0C0FyCyDtGtDzztA0AtGyD0CyB0BtDzyyByBzyyCtCtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyE0ByE0BtA0D0B0CtG0C0AyB0FtGyEyB0FtCtG0ByDtByDtGyDtBtCtA0A0BtDtBtBtCyBtC2QtN0A0LzutB%26cr%3D679966945%26a%3Dwny_ggfc_15_15%26os%3DWindows Vista (TM) Home Premium&p={searchTerms}
    SearchScopes: HKLM -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://fr.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ggfc_15_15&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1Qzu0E0CtC0AyDzy0DyC0Fzy0BtCzyzy0DtCtN0D0Tzu0StCtCzyyBtN1L2XzutAtFzytFzztFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAtB0BtC0DtD0CzytGtDyC0EtBtG0C0FyCyDtGtDzztA0AtGyD0CyB0BtDzyyByBzyyCtCtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyE0ByE0BtA0D0B0CtG0C0AyB0FtGyEyB0FtCtG0ByDtByDtGyDtBtCtA0A0BtDtBtBtCyBtC2QtN0A0LzutB%26cr%3D679966945%26a%3Dwny_ggfc_15_15%26os%3DWindows Vista (TM) Home Premium&p={searchTerms}
    SearchScopes: HKLM -> {8CDE19E6-71C2-4B46-89B7-35F6A18C571A} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW
    SearchScopes: HKLM -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2438727
    SearchScopes: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://fr.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ggfc_15_15&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1Qzu0E0CtC0AyDzy0DyC0Fzy0BtCzyzy0DtCtN0D0Tzu0StCtCzyyBtN1L2XzutAtFzytFzztFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAtB0BtC0DtD0CzytGtDyC0EtBtG0C0FyCyDtGtDzztA0AtGyD0CyB0BtDzyyByBzyyCtCtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyE0ByE0BtA0D0B0CtG0C0AyB0FtGyEyB0FtCtG0ByDtByDtGyDtBtCtA0A0BtDtBtBtCyBtC2QtN0A0LzutB%26cr%3D679966945%26a%3Dwny_ggfc_15_15%26os%3DWindows Vista (TM) Home Premium&p={searchTerms}
    SearchScopes: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?FORM=IEFM1&q={searchTerms}&src={referrer:source?}
    SearchScopes: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> {19F2B849-4ADE-4d4b-85F9-C31C643DBDE9} URL = http://www.fastbrowsersearch.com/results/results.aspx?q={searchTerms}&c=web&s=DSP&v=18&tid={7D7857B4-09BD-4d07-8AEA-2280FFB41455}
    SearchScopes: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> {3CE021A4-4747-41B3-A025-70423C63781F} URL = http://search.softonic.com/MOY00005/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=240e99d100000000000000234dd42c1f&toi=16092&r=18
    SearchScopes: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://fr.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ggfc_15_15&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1Qzu0E0CtC0AyDzy0DyC0Fzy0BtCzyzy0DtCtN0D0Tzu0StCtCzyyBtN1L2XzutAtFzytFzztFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAtB0BtC0DtD0CzytGtDyC0EtBtG0C0FyCyDtGtDzztA0AtGyD0CyB0BtDzyyByBzyyCtCtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyE0ByE0BtA0D0B0CtG0C0AyB0FtGyEyB0FtCtG0ByDtByDtGyDtBtCtA0A0BtDtBtBtCyBtC2QtN0A0LzutB%26cr%3D679966945%26a%3Dwny_ggfc_15_15%26os%3DWindows Vista (TM) Home Premium&p={searchTerms}
    SearchScopes: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> {70D46D94-BF1E-45ED-B567-48701376298E} URL = http://127.0.0.1:4664/search&s=BhksIK2ZSb86Tbqfdxyi_ia1xL8?q={searchTerms}
    SearchScopes: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> {8CDE19E6-71C2-4B46-89B7-35F6A18C571A} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7GGLL_fr
    SearchScopes: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> {9D5BD211-422C-4164-9298-BB4186A30F31} URL = http://www.bing.com/search?q={searchTerms}&mkt=fr-FR&form=MIMWA5
    SearchScopes: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2438727
    BHO: No Name -> {02478D38-C3F9-4efb-9B51-7695ECA05670} -> No File
    BHO: IEVkbdBHO Class -> {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} -> C:Program FilesKaspersky LabKaspersky Anti-Virus 2011ievkbd.dll [2010-10-05] (Kaspersky Lab ZAO)
    BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:Program FilesJavajre7binssv.dll [2013-02-24] (Oracle Corporation)
    BHO: Partner BHO Class -> {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} -> C:ProgramDataPartnerpartner.dll [2008-12-25] (Google Inc.)
    BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:Program FilesCommon FilesMicrosoft SharedWindows LiveWindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
    BHO: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:Program FilesWindows LiveCompanioncompanioncore.dll [2012-03-08] (Microsoft Corporation)
    BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:Program FilesGoogleGoogle ToolbarGoogleToolbar_32.dll [2015-03-08] (Google Inc.)
    BHO: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:Program FilesMicrosoftBingBarBingExt.dll [2011-02-28] (Microsoft Corporation.)
    BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:Program FilesJavajre7binjp2ssv.dll [2013-02-24] (Oracle Corporation)
    BHO: FilterBHO Class -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:Program FilesKaspersky LabKaspersky Anti-Virus 2011klwtbbho.dll [2010-10-05] (Kaspersky Lab ZAO)
    BHO: browse pulse -> {ed8e593d-1965-4e45-9d55-d56162dcde14} -> C:Program Filesbrowse pulseExtensionsed8e593d-1965-4e45-9d55-d56162dcde14.dll [2015-04-12] ()
    Toolbar: HKLM – No Name – {0BF43445-2F28-4351-9252-17FE6E806AA0} – No File
    Toolbar: HKLM – Acer eDataSecurity Management – {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} – C:Program FilesAcerEmpowering TechnologyeDataSecurityx86eDStoolbar.dll [2008-03-04] (Egis Incorporated.)
    Toolbar: HKLM – Bing Bar – {8dcb7100-df86-4384-8842-8fa844297b3f} – C:Program FilesMicrosoftBingBarBingExt.dll [2011-02-28] (Microsoft Corporation.)
    Toolbar: HKLM – Google Toolbar – {2318C2B1-4965-11d4-9B18-009027A5CD4F} – C:Program FilesGoogleGoogle ToolbarGoogleToolbar_32.dll [2015-03-08] (Google Inc.)
    Toolbar: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> Google Toolbar – {2318C2B1-4965-11D4-9B18-009027A5CD4F} – C:Program FilesGoogleGoogle ToolbarGoogleToolbar_32.dll [2015-03-08] (Google Inc.)
    Toolbar: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> No Name – {21FA44EF-376D-4D53-9B0F-8A89D3229068} – No File
    Toolbar: HKUS-1-5-21-348216579-2849367412-1210017331-1000 -> No Name – {7B13EC3E-999A-4B70-B9CB-2617B8323822} – No File
    DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
    DPF: {04CB5B64-5915-4629-B869-8945CEBADD21} https://static.impots.gouv.fr/abos/static/securite/certdgi1.cab
    DPF: {0972B098-DEE9-4279-AC7E-4BAAA029102D} http://assets.photobox.com/assets/aurigma/ImageUploader5.cab?20101216075330
    DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab
    DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} http://srv03.admin.over-blog.com/fdata/iu/ImageUploader5.cab
    DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab
    DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} http://game14.zylom.com/activex/zylomgamesplayer.cab
    DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
    DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
    Handler: livecall – {828030A1-22C1-4009-854F-8E305202313F} – C:Program FilesWindows LiveMessengermsgrapp.dll No File []
    Handler: ms-itss – {0A9007C0-4076-11D3-8789-0000F8105754} – c:Program FilesCommon FilesMicrosoft SharedInformation Retrievalmsitss.dll [2001-06-21] (Microsoft Corporation)
    Handler: msnim – {828030A1-22C1-4009-854F-8E305202313F} – C:Program FilesWindows LiveMessengermsgrapp.dll No File []
    Winsock: Catalog5 07 C:Program FilesBonjourmdnsNSP.dll [121704] (Apple Inc.)
    TcpipParameters: [DhcpNameServer] 192.168.1.1

    FireFox:
    ========
    FF Plugin: @Apple.com/iTunes,version=1.0 -> C:Program FilesiTunesMozilla Pluginsnpitunes.dll [2014-02-21] ()
    FF Plugin: @java.com/DTPlugin,version=10.15.2 -> C:Windowssystem32npDeployJava1.dll [2013-02-24] (Oracle Corporation)
    FF Plugin: @java.com/JavaPlugin,version=10.15.2 -> C:Program FilesJavajre7binplugin2npjp2.dll [2013-02-24] (Oracle Corporation)
    FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:Program FilesMicrosoft Silverlight5.1.30514.0npctrl.dll [2014-05-13] ( Microsoft Corporation)
    FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:Program FilesMicrosoftOffice LivenpOLW.dll [2010-04-26] (Microsoft Corp.)
    FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:Program FilesWindows LivePhoto GalleryNPWLPG.dll [2012-03-08] (Microsoft Corporation)
    FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:Program FilesWindows LivePhoto GalleryNPWLPG.dll [2012-03-08] (Microsoft Corporation)
    FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:Program FilesWindows LivePhoto GalleryNPWLPG.dll [2012-03-08] (Microsoft Corporation)
    FF Plugin: @microsoft.com/WPF,version=3.5 -> C:WindowsMicrosoft.NETFrameworkv3.5Windows Presentation FoundationNPWPF.dll [2008-07-29] (Microsoft Corporation)
    FF Plugin: @rim.com/WebSLLauncher,version=1.0 -> C:Program FilesCommon FilesResearch In MotionBBWebSLLauncherNPWebSLLauncher.dll [2013-11-06] ()
    FF Plugin: @t-immersion.com/DFusionHomeWebPlugIn -> C:Program FilesTotal ImmersionDFusionHomeWebPlugInNPDFusionWebFirefox.dll [2011-11-22] (Total Immersion)
    FF Plugin: @tools.google.com/Google Update;version=3 -> C:Program FilesGoogleUpdate1.3.26.9npGoogleUpdate3.dll [2015-02-26] (Google Inc.)
    FF Plugin: @tools.google.com/Google Update;version=9 -> C:Program FilesGoogleUpdate1.3.26.9npGoogleUpdate3.dll [2015-02-26] (Google Inc.)
    FF Plugin: Adobe Reader -> C:Program FilesAdobeReader 10.0ReaderAIRnppdf32.dll [2014-05-08] (Adobe Systems Inc.)
    FF Plugin HKUS-1-5-21-348216579-2849367412-1210017331-1000: @stonetrip.com/ShiVaWebPlayer,version=1.8.1.0 -> C:UserssophieAppDataRoaming..LocalLowStoneTripWebPlayer1.8.1npShiVa3D_1.8.1.dll [2010-03-04] (Stonetrip)
    FF Plugin HKUS-1-5-21-348216579-2849367412-1210017331-1000: @tools.google.com/Google Update;version=3 -> C:UserssophieAppDataLocalGoogleUpdate1.3.26.9npGoogleUpdate3.dll [2015-02-26] (Google Inc.)
    FF Plugin HKUS-1-5-21-348216579-2849367412-1210017331-1000: @tools.google.com/Google Update;version=9 -> C:UserssophieAppDataLocalGoogleUpdate1.3.26.9npGoogleUpdate3.dll [2015-02-26] (Google Inc.)
    FF Plugin HKUS-1-5-21-348216579-2849367412-1210017331-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:UserssophieAppDataLocalLowUnityWebPlayerloadernpUnity3D32.dll [2014-02-20] (Unity Technologies ApS)
    FF HKLM…FirefoxExtensions: [{20a82645-c095-46ed-80e3-08825760534b}] – C:WindowsMicrosoft.NETFrameworkv3.5Windows Presentation FoundationDotNetAssistantExtension
    FF Extension: Microsoft .NET Framework Assistant – C:WindowsMicrosoft.NETFrameworkv3.5Windows Presentation FoundationDotNetAssistantExtension [2009-08-22]
    FF HKLM…FirefoxExtensions: [virtualKeyboard@kaspersky.ru] – C:Program FilesKaspersky LabKaspersky Anti-Virus 2011FFExtvirtualKeyboard@kaspersky.ru
    FF Extension: Kaspersky Virtual Keyboard – C:Program FilesKaspersky LabKaspersky Anti-Virus 2011FFExtvirtualKeyboard@kaspersky.ru [2011-05-31]
    FF HKLM…FirefoxExtensions: [linkfilter@kaspersky.ru] – C:Program FilesKaspersky LabKaspersky Anti-Virus 2011FFExtlinkfilter@kaspersky.ru
    FF Extension: Kaspersky URL Advisor – C:Program FilesKaspersky LabKaspersky Anti-Virus 2011FFExtlinkfilter@kaspersky.ru [2011-04-13]
    FF HKLM…FirefoxExtensions: [quickprint@hp.com] – C:Program FilesHewlett-PackardSmartPrintQPExtension
    FF Extension: SmartPrintButton – C:Program FilesHewlett-PackardSmartPrintQPExtension [2012-05-12]

    Chrome:
    =======
    CHR HomePage: Default -> hxxp://www.over-blog.com/com-1130449281/rss.xml
    CHR StartupUrls: Default -> “hxxp://www.google.com/”, “hxxp://search.softonic.com/MOY00005/tb_v1?SearchSource=48&cc=&mi=240e99d100000000000000234dd42c1f&toi=16092”, “hxxp://fr.yhs4.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ggfc_15_15&param1=1&param2=f%3D7%26b%3DChrome%26cc%3Dfr%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1Qzu0E0CtC0AyDzy0DyC0Fzy0BtCzyzy0DtCtN0D0Tzu0StCtCzyyBtN1L2XzutAtFzytFzztFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAtB0BtC0DtD0CzytGtDyC0EtBtG0C0FyCyDtGtDzztA0AtGyD0CyB0BtDzyyByBzyyCtCtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyE0ByE0BtA0D0B0CtG0C0AyB0FtGyEyB0FtCtG0ByDtByDtGyDtBtCtA0A0BtDtBtBtCyBtC2QtN0A0LzutB%26cr%3D679966945%26a%3Dwny_ggfc_15_15%26os%3DWindows Vista (TM) Home Premium”
    CHR DefaultSearchKeyword: Default -> google.com_
    CHR DefaultSearchURL: Default -> http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7GGLL_fr
    CHR DefaultSuggestURL: Default ->
    CHR Profile: C:UserssophieAppDataLocalGoogleChromeUser DataDefault
    CHR Extension: (YouTube) – C:UserssophieAppDataLocalGoogleChromeUser DataDefaultExtensionsblpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-22]
    CHR Extension: (Google Search) – C:UserssophieAppDataLocalGoogleChromeUser DataDefaultExtensionscoobgpohoikkiipiblmjeljniedjpjpf [2014-01-22]
    CHR Extension: (Yulia Brodskaya) – C:UserssophieAppDataLocalGoogleChromeUser DataDefaultExtensionsjlgdloilieclkegafohackmhffbmdpko [2014-01-22]
    CHR Extension: (Chrome Hotword Shared Module) – C:UserssophieAppDataLocalGoogleChromeUser DataDefaultExtensionslccekmodgklaepjeofjdjpbminllajkg [2015-03-21]
    CHR Extension: (Google Wallet) – C:UserssophieAppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccmgmieda [2013-09-02]
    CHR Extension: (Gmail) – C:UserssophieAppDataLocalGoogleChromeUser DataDefaultExtensionspjkljhegncpnkpknbcohdijeoejaedia [2014-01-22]
    StartMenuInternet: Google Chrome – C:UserssophieAppDataLocalGoogleChromeApplicationchrome.exe

    ========================== Services (Whitelisted) =================

    (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

    R2 AVP; C:Program FilesKaspersky LabKaspersky Anti-Virus 2011avp.exe [365336 2010-11-02] (Kaspersky Lab ZAO)
    S3 BlackBerry Device Manager; C:Program FilesCommon FilesResearch In MotionUSB DriversBbDevMgr.exe [585728 2013-09-09] (Research In Motion Limited) [File not signed]
    S2 BUNAgentSvc; C:Program FilesNewTech InfosystemsNTI Backup Now 5ClientAgentsvc.exe [16384 2008-03-03] (NewTech Infosystems, Inc.) [File not signed]
    S2 CLHNService; C:Program FilesAcer Arcade DeluxeHomeMediaKernelDMPCLHNService.exe [81504 2008-01-16] () [File not signed]
    R2 ETService; C:Program FilesAcerEmpowering TechnologyServiceETService.exe [24576 2008-03-21] () [File not signed]
    S2 FTRTSVC; C:Program FilesCommon FilesFrance TelecomShared ModulesFTRTSVCFTRTSVC.exe [65536 2007-09-25] (France Telecom SA) [File not signed]
    S3 GoogleDesktopManager-051210-111108; C:Program FilesGoogleGoogle Desktop SearchGoogleDesktop.exe [30192 2010-08-24] (Google)
    S2 LightScribeService; C:Program FilesCommon FilesLightScribeLSSrvc.exe [61440 2007-01-17] (Hewlett-Packard Company) [File not signed]
    S2 MobilityService; C:AcerMobility CenterMobilityService.exe [110592 2007-12-06] () [File not signed]
    S2 NTISchedulerSvc; C:Program FilesNewTech InfosystemsNTI Backup Now 5SchedulerSvc.exe [131072 2008-04-04] () [File not signed]
    S2 PowerSave; C:Program FilesPackard BellSoftware SuitePowerSavePSPBSSS.exe [1002016 2009-04-06] (Packard Bell Services)
    S2 RichVideo; C:Program FilesCyberlinkShared filesRichVideo.exe [272024 2007-01-09] ()
    S2 RS_Service; C:Program FilesAcerAcer VCMRS_Service.exe [233472 2008-01-10] (Acer Incorporated) [File not signed]
    R2 SafeGuard Update Service; C:Program FilesSafeGuardSafeGuardSrv.exe [585744 2015-04-01] ()
    R2 Service Mgr browsepulse; C:ProgramData5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15plugincontainer.exe [640240 2015-04-12] ()
    R2 SGUpdater; C:Program FilesSafeGuardSGUpdaterSvc.exe [16392 2015-03-17] (Alerts LLC)
    R2 Update Mgr browsepulse; C:Program FilesCommon Files5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15updater.exe [560368 2015-04-12] ()
    R2 WinDefend; C:Program FilesWindows Defendermpsvc.dll [272952 2008-01-21] (Microsoft Corporation)

    ==================== Drivers (Whitelisted) ====================

    (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

    R0 kl1; C:WindowsSystem32DRIVERSkl1.sys [132184 2010-06-09] (Kaspersky Lab ZAO)
    R1 kl2; C:WindowsSystem32DRIVERSkl2.sys [11352 2010-06-09] (Kaspersky Lab ZAO)
    R1 KLIF; C:WindowsSystem32DRIVERSklif.sys [488536 2010-10-01] (Kaspersky Lab)
    R1 KLIM6; C:WindowsSystem32DRIVERSklim6.sys [22104 2010-04-22] (Kaspersky Lab ZAO)
    R3 klmouflt; C:WindowsSystem32DRIVERSklmouflt.sys [19984 2009-11-02] (Kaspersky Lab)
    R2 NTIPPKernel; C:Program FilesAcer Arcade DeluxeHomeMediaKernelDMPNTIPPKernel.sys [122368 2008-01-16] (Cyberlink Corp.) [File not signed]
    S3 PCAMp50; C:WindowsSystem32DriversPCAMp50.sys [28224 2006-11-28] (Printing Communications Assoc., Inc. (PCAUSA))
    S3 PCASp50; C:WindowsSystem32DriversPCASp50.sys [27072 2006-11-28] (Printing Communications Assoc., Inc. (PCAUSA))
    R3 RTL8192cu; C:WindowsSystem32DRIVERSRTL8192cu.sys [693760 2011-06-01] (Realtek Semiconductor Corporation )
    R1 RtlProt; C:WindowsSystem32DRIVERSrtlprot.sys [25896 2007-04-23] (Windows (R) Codename Longhorn DDK provider)
    R2 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796}; C:Program FilesAcer Arcade DeluxePlayMovie00.fcl [61424 2008-04-18] (Cyberlink Corp.)
    S3 athr; system32DRIVERSathr.sys [X]
    S3 IpInIp; system32DRIVERSipinip.sys [X]
    S3 NwlnkFlt; system32DRIVERSnwlnkflt.sys [X]
    S3 NwlnkFwd; system32DRIVERSnwlnkfwd.sys [X]

    ==================== NetSvcs (Whitelisted) ===================

    (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)

    ==================== One Month Created Files and Folders ========

    (If an entry is included in the fixlist, the filefolder will be moved.)

    2015-04-12 13:56 – 2015-04-12 13:58 – 00032732 _____ () C:UserssophieDownloadsFRST.txt
    2015-04-12 13:55 – 2015-04-12 13:57 – 00000000 ____D () C:FRST
    2015-04-12 13:54 – 2015-04-12 13:54 – 01135104 _____ (Farbar) C:UserssophieDownloadsFRST (1).exe
    2015-04-12 13:51 – 2015-04-12 13:51 – 01135104 _____ (Farbar) C:UserssophieDownloadsFRST.exe
    2015-04-12 13:31 – 2015-04-12 13:31 – 02095616 _____ (Farbar) C:UserssophieDownloadsFRST64 (3).exe
    2015-04-12 13:26 – 2015-04-12 13:26 – 02095616 _____ (Farbar) C:UserssophieDownloadsFRST64 (2).exe
    2015-04-12 13:23 – 2015-04-12 13:23 – 02095616 _____ (Farbar) C:UserssophieDownloadsFRST64 (1).exe
    2015-04-12 13:19 – 2015-04-12 13:22 – 00000000 ____D () C:UserssophieAppDataLocalGameo
    2015-04-12 13:19 – 2015-04-12 13:21 – 00000000 ____D () C:UserssophieAppDataRoamingGameo
    2015-04-12 13:19 – 2015-04-12 13:19 – 00001686 _____ () C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsGameo.lnk
    2015-04-12 13:19 – 2015-04-12 13:19 – 00000174 _____ () C:UserssophieDesktopPlay Games Online.url
    2015-04-12 13:19 – 2015-04-12 13:19 – 00000174 _____ () C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsPlay Games Online.url
    2015-04-12 13:19 – 2015-04-12 13:19 – 00000000 ____D () C:UserssophieAppDataRoamingPC Speed Maximizer
    2015-04-12 13:19 – 2015-04-12 13:19 – 00000000 ____D () C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsGameo
    2015-04-12 13:18 – 2015-04-12 13:18 – 00000000 ____D () C:UserssophieAppDataLocalAlerts_LLC
    2015-04-12 13:17 – 2015-04-12 13:17 – 00000000 ____D () C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsSafeGuard
    2015-04-12 13:17 – 2015-04-12 13:17 – 00000000 ____D () C:UserssophieAppDataLocalSafeGuard
    2015-04-12 13:17 – 2015-04-12 13:17 – 00000000 ____D () C:ProgramDataMicrosoftWindowsStart MenuProgramsSafeGuard
    2015-04-12 13:17 – 2015-04-12 13:17 – 00000000 ____D () C:Program FilesSafeGuard
    2015-04-12 13:17 – 2015-04-12 13:17 – 00000000 ____D () C:Program FilesOLBPre
    2015-04-12 13:15 – 2015-04-12 13:19 – 00000296 _____ () C:WindowsTasksDigital Sites.job
    2015-04-12 13:15 – 2015-04-12 13:15 – 00000000 ____D () C:UserssophieAppDataRoamingDigitalSites
    2015-04-12 13:15 – 2015-04-12 13:15 – 00000000 ____D () C:UserssophieAppDataRoaming1H1Q1V1N1N1O1R
    2015-04-12 13:15 – 2015-04-12 13:15 – 00000000 ____D () C:ProgramData5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15
    2015-04-12 13:15 – 2015-04-12 13:15 – 00000000 ____D () C:Program FilesCommon Files5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15
    2015-04-12 13:15 – 2015-04-12 13:15 – 00000000 ____D () C:Program Filesbrowse pulse
    2015-04-12 13:14 – 2015-04-12 13:14 – 00000000 ____D () C:UserssophieAppDataRoamingMicrosoftWindowsStart MenuProgramsMiPony
    2015-04-12 13:14 – 2015-04-12 13:14 – 00000000 ____D () C:ProgramDataMicrosoftWindowsStart MenuProgramsPC Speed Maximizer
    2015-04-12 13:14 – 2015-04-12 13:14 – 00000000 ____D () C:ProgramDataMicrosoftWindowsStart MenuProgramsMiPony
    2015-04-12 13:14 – 2015-04-12 13:14 – 00000000 ____D () C:Program FilesPC Speed Maximizer
    2015-04-12 13:14 – 2015-04-12 13:14 – 00000000 ____D () C:Program FilesMiPony
    2015-04-12 13:13 – 2015-04-12 13:13 – 00796287 _____ (Web Installer application ) C:UserssophieDownloadsDownloadManagerSetup.exe
    2015-04-12 13:12 – 2015-04-12 13:13 – 02095616 _____ (Farbar) C:UserssophieDownloadsFRST64.exe
    2015-04-12 13:08 – 2015-04-12 13:08 – 00008515 _____ () C:UserssophieDesktopUsbFix_Report.txt
    2015-04-12 12:30 – 2015-04-12 12:46 – 00000000 ____D () C:UsbFix
    2015-04-12 12:30 – 2015-04-12 12:30 – 00001408 _____ () C:UserssophieDesktopUsbFix.lnk
    2015-04-12 12:27 – 2015-04-12 12:28 – 04312424 _____ (El Desaparecido – SosVirus.net – UsbFix.net) C:UserssophieDownloadsUsbFix_7.9212.exe
    2015-04-12 11:12 – 2015-04-12 11:12 – 00001730 _____ () C:UsersPublicDesktopQuickTime Player.lnk
    2015-04-12 11:12 – 2015-04-12 11:12 – 00000000 ____D () C:ProgramDataMicrosoftWindowsStart MenuProgramsQuickTime
    2015-04-12 10:52 – 2015-04-12 10:55 – 42096984 _____ (Apple Inc.) C:UserssophieDownloadsQuickTimeInstaller.exe
    2015-04-12 10:50 – 2015-04-12 11:44 – 00000000 ____D () C:UserssophieAppDataRoamingGoPro
    2015-04-12 10:50 – 2015-04-12 11:37 – 00000000 ____D () C:UserssophieAppDataLocalGoPro
    2015-04-12 10:48 – 2015-04-12 10:48 – 00000905 _____ () C:UserssophieDesktopGoPro Studio.lnk
    2015-04-12 10:46 – 2015-04-12 11:37 – 00000000 ____D () C:UsersPublicCineForm
    2015-04-12 10:46 – 2015-04-12 10:48 – 00000000 ____D () C:ProgramDataMicrosoftWindowsStart MenuProgramsGoPro
    2015-04-12 10:46 – 2015-04-12 10:46 – 00000000 ____D () C:WindowsLastGood
    2015-04-12 10:46 – 2015-04-12 10:46 – 00000000 ____D () C:Program FilesDIFX
    2015-04-12 10:46 – 2015-04-12 10:46 – 00000000 ____D () C:Program FilesCineForm
    2015-04-12 10:43 – 2015-04-12 10:46 – 00000000 ____D () C:Program FilesGoPro
    2015-04-12 10:43 – 2015-04-12 10:43 – 00000000 ____D () C:ProgramDataPackage Cache
    2015-04-12 10:15 – 2015-04-12 10:27 – 163904608 _____ () C:UserssophieDownloadsGoProStudioPC-2.5.4.404.exe
    2015-04-04 16:50 – 2015-04-04 16:52 – 00000000 ____D () C:UserssophieDocumentsGOPRO
    2015-03-30 17:51 – 2015-03-30 17:51 – 00014336 _____ () C:UserssophieDocumentsTEST MOTRICITE.wps

    ==================== One Month Modified Files and Folders =======

    (If an entry is included in the fixlist, the filefolder will be moved.)

    2015-04-12 13:18 – 2010-02-01 11:38 – 00001056 _____ () C:WindowsTasksGoogleUpdateTaskMachineUA.job
    2015-04-12 13:01 – 2012-05-12 12:48 – 00000258 _____ () C:WindowsTasksHP Photo Creations Messager.job
    2015-04-12 12:45 – 2006-11-02 14:47 – 00003216 ____H () C:Windowssystem327B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
    2015-04-12 12:45 – 2006-11-02 14:47 – 00003216 ____H () C:Windowssystem327B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
    2015-04-12 12:43 – 2008-10-24 10:18 – 00000000 _____ () C:Windowssystem32LogConfigTemp.xml
    2015-04-12 12:16 – 2006-11-02 12:33 – 01615904 _____ () C:Windowssystem32PerfStringBackup.INI
    2015-04-12 11:12 – 2011-05-07 12:00 – 00000000 ____D () C:Program FilesQuickTime
    2015-04-12 10:46 – 2008-12-25 19:46 – 00000000 ____D () C:Userssophie
    2015-04-12 10:46 – 2008-04-30 09:24 – 00013372 _____ () C:WindowsDPINST.LOG
    2015-04-12 10:46 – 2006-11-02 13:18 – 00000000 ___RD () C:UsersPublic
    2015-04-12 10:44 – 2008-10-24 10:06 – 01129634 _____ () C:WindowsWindowsUpdate.log
    2015-04-12 10:30 – 2008-12-28 22:08 – 00045056 _____ () C:UserssophieAppDataLocalDCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    2015-04-12 10:02 – 2012-02-22 20:20 – 00002049 _____ () C:UserssophieDesktopGoogle Chrome.lnk
    2015-04-12 09:59 – 2010-04-16 21:02 – 00000000 ____D () C:ProgramDataKaspersky Lab
    2015-04-12 09:57 – 2008-12-25 21:51 – 00002299 _____ () C:UserssophieAppDataRoamingacervcmtmp.ini
    2015-04-12 09:55 – 2010-02-01 11:38 – 00001052 _____ () C:WindowsTasksGoogleUpdateTaskMachineCore.job
    2015-04-12 09:55 – 2008-05-08 08:28 – 00000147 _____ () C:Windowssystem32agent.log
    2015-04-12 09:55 – 2006-11-02 15:01 – 00000006 ____H () C:WindowsTasksSA.DAT
    2015-04-12 09:54 – 2009-02-23 09:01 – 00027934 _____ () C:ProgramDatanvModes.001
    2015-04-12 09:54 – 2008-01-21 04:47 – 04680878 _____ () C:WindowsPFRO.log
    2015-04-04 16:55 – 2006-11-02 15:01 – 00032588 _____ () C:WindowsTasksSCHEDLGU.TXT
    2015-03-30 17:51 – 2010-09-20 12:55 – 00003060 _____ () C:UserssophieAppDataRoamingwklnhst.dat
    2015-03-30 17:41 – 2013-12-14 19:06 – 00095744 _____ () C:UserssophieDocumentsTESTS GARDIENS.wps
    2015-03-21 11:36 – 2006-11-02 14:52 – 00189582 _____ () C:Windowssetupact.log
    2015-03-14 19:12 – 2013-12-25 18:39 – 00000000 ____D () C:UserssophieAppDataLocalApple Computer

    ==================== Files in the root of some directories =======

    2008-12-25 21:51 – 2015-04-12 09:57 – 0002299 _____ () C:UserssophieAppDataRoamingacervcmtmp.ini
    2012-11-09 12:52 – 2012-11-09 12:52 – 0085733 _____ () C:UserssophieAppDataRoamingPhoto.jpg
    2011-05-11 07:38 – 2013-12-15 12:17 – 0000770 _____ () C:UserssophieAppDataRoamingRim.Desktop.Exception.log
    2011-01-09 21:01 – 2014-01-22 09:57 – 0003107 _____ () C:UserssophieAppDataRoamingRim.Desktop.HttpServerSetup.log
    2011-11-27 12:39 – 2013-12-15 12:17 – 0000770 _____ () C:UserssophieAppDataRoamingRim.DesktopHelper.Exception.log
    2010-09-20 12:55 – 2015-03-30 17:51 – 0003060 _____ () C:UserssophieAppDataRoamingwklnhst.dat
    2009-05-08 12:56 – 2014-12-25 11:20 – 0007592 _____ () C:UserssophieAppDataLocald3d9caps.dat
    2008-12-28 22:08 – 2015-04-12 10:30 – 0045056 _____ () C:UserssophieAppDataLocalDCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    2011-05-13 07:24 – 2011-05-13 07:24 – 0000000 _____ () C:UserssophieAppDataLocal{7A27CF98-BC61-4424-A040-8DEC18FE7341}
    2011-05-13 07:27 – 2011-05-13 07:27 – 0000000 _____ () C:UserssophieAppDataLocal{8B409176-D026-470D-80C3-A523C4804E61}
    2012-05-12 12:41 – 2012-05-12 12:41 – 0000057 _____ () C:ProgramDataAment.ini
    2009-02-23 09:01 – 2015-04-12 09:54 – 0027934 _____ () C:ProgramDatanvModes.001
    2009-02-22 10:54 – 2014-12-10 17:05 – 0027934 _____ () C:ProgramDatanvModes.dat

    Some content of TEMP:
    ====================
    C:UserssophieAppDataLocalTempCloudBackup9412.exe

    ==================== Bamital & volsnap Check =================

    (There is no automatic fix for files that do not pass verification.)

    C:Windowsexplorer.exe => File is digitally signed
    C:Windowssystem32winlogon.exe => File is digitally signed
    C:Windowssystem32wininit.exe => File is digitally signed
    C:Windowssystem32svchost.exe => File is digitally signed
    C:Windowssystem32services.exe => File is digitally signed
    C:Windowssystem32User32.dll => File is digitally signed
    C:Windowssystem32userinit.exe => File is digitally signed
    C:Windowssystem32rpcss.dll => File is digitally signed
    C:Windowssystem32Driversvolsnap.sys => File is digitally signed

    LastRegBack: 2015-04-12 10:02

    ==================== End Of Log ============================

    sophie29
    Nombre d'articles : 0
    sophie29
    Nombre d'articles : 0
    Anonyme
    Nombre d'articles : 0

    Désinstalle les logiciels suivant si présent :

    • Download Manager Packages
    • Java 7 Update 15
    • Gameo
    • Adobe Flash Player 11 ActiveX
    • Adobe Reader X

    [hr:189gj6ze]

    [hr:189gj6ze]

    Tu as installé des adwares et des logiciels indésirables sur ton PC (Certainement à ton insu).
    Pour comprendre, je t’invite à lire ce sujet : topic82172.html

    • Télécharge Adwcleaner (de Xplode) sur ton Bureau !
    • Fais clic droit dessus, exécuter en tant qu’administrateur sous Windows : 7/8 et Vista,sinon double-clique pour XP.
      1. Choisis l’option Scanner
      2. Choisis l’option Nettoyer
    • Accepte l’avertissement en cliquant sur OK

    • Accepte les avertissements/informations en cliquant sur OK
    • Copie et Colle le contenu du rapport qui apparaît au redémarrage du PC.

    [hr:189gj6ze]

    • Désactive ton antivirus le temps du téléchargement et de l’utilisation.
    • Télécharge ZHPCleaner de Nicolas Coolman sur ton bureau.
    • Ferme ton navigateur
    • Fais un double clique sur l’icône pour le lancer
      Note: Clique droit sur l’icône puis Exécuter en tant qu’administrateur sous Windows Vista, Seven et Windows 8
    • Accepte “les conditions d’utilisation
    • Clique sur Nettoyer

    Note: Durant le scan, si l’outil te demande “Avez-vous installé ce proxy ?” et que tu n’en as pas installé, clique sur “Non” ou “Voulez-vous remplacer la page d’accueil ?, clique sur “Non

    • Héberge le rapport ZHPCleaner.txt présent sur ton bureau sur SosUpload puis copie/colle le lien fourni dans ta prochaine réponse.
    sophie29
    Nombre d'articles : 0
    sophie29
    Nombre d'articles : 0
    Anonyme
    Nombre d'articles : 0

    Perfect :)

    On continue le nettoyage :

    • Télécharge MalwareBytes Anti-Malware
    • Procède à l’installation de celui çi Décocher “Activer l’essai gratuit de Malwarebytes Anti-Malware Premium”

    • Clic sur Examiner maintenant

    • Une fois l’examen terminé vérifie que toutes les détections sont bien cochées, puis clique sur [Supprimer la sélection]

    • Un redémarrage sera peut-être nécessaire, si oui laisse faire et relance ensuite Malwarebytes
    • Ouvre l’onglet “Historique” puis “Journaux de l’application”
    • Fais un double-clic sur le dernier Scan Log en date (celui du haut)

    • En bas clique sur [Exporter] -> sélectionne “Fichier texte (*.txt)”

    • Dans l’explorateur sélectionne le bureau, nomme-le mbam.txt, clique sur [Enregistrer]

    • Héberge le rapport mbam.txt sur SOSUpload puis donne le lien obtenu.
      -> Tutoriel SosUpload : actu/tutoriel-sosupload/
    sophie29
    Nombre d'articles : 0

    mais, je vais pouvoir retrouver mes vidéos sur ma carte sd ?

    sophie29
    Nombre d'articles : 0

    parce que mes vidéos etaient sur un stockage externe type microsd ? et que tous les logiciels de nettoyage que j’ai passé là ne s’occupent pas des perifériques externes ?

    sophie29
    Nombre d'articles : 0
15 sujets de 1 à 15 (sur un total de 46)
  • Vous devez être connecté pour répondre à ce sujet.