[g3n-h@ckm@n] Impossible d’accéder à mon disque dur externe (500Go) 2016-07-20T17:11:16+00:00

SOSVirus : Dépannage PC Gratuit Support Aide à la désinfection – Forum Virus Sécurité [g3n-h@ckm@n] Impossible d’accéder à mon disque dur externe (500Go)

  • Auteur
    Messages
  • Photo du profil de lecopaindaccordlecopaindaccord
    Participant
    Post count: 13

    Bonjour,
    Il y a quelques temps j’ai voulu accéder à mon disque dur mais en vain : tout avait disparu et un message étrange me demandant de l’argent afin de récupérer mes données est apparu
    Je crois être victime d’un virus
    Je suis sur Windows 10 avec Avast Free Antivirus mis à jour et utilisé régulièrement !

  • Photo du profil de lecopaindaccordlecopaindaccord
    Participant
    Post count: 13

    Peut-être que quelqu’un aurait une solution qui permettrait de récupérer le travail de nombreuses années que j’avais mis en sauvegarde sur ce disque !
    Merci d’avance

  • Photo du profil de g3n-h@ckm@ng3n-h@ckm@n
    Admin bbPress
    Post count: 8314

    salut

    • désactive ton antivirus le temps du téléchargement et du scan
    • Télécharge quickDiag sur ton bureau
    • lance-le ( pour vista/7/8/8.1/10 = clic droit “Executer en tant qu’administrateur” )

    • clique sur “Quick” puis une fois terminé :
    • héberge le rapport sur http://cjoint.com
    • Donne le lien obtenu dans ta prochaine réponse

    note : le rapport sera sur le bureau au nom de QuickDiag_date_heure.txt, et une copie du même nom sera disponible à la racine de ton disque ( logiquement C: )

  • Photo du profil de lecopaindaccordlecopaindaccord
    Participant
    Post count: 13

    Bonjour et merci pour votre réponse (rapide en plus)

    Je viens de faire la démarche que vous avez préconisé et j’ai posté le fichier txt
    le lien est : http://www.cjoint.com/c/FGvmko2Yy6M

    Bonne journée

  • Photo du profil de g3n-h@ckm@ng3n-h@ckm@n
    Admin bbPress
    Post count: 8314

    hello

    tu peux désinstaller ca , ca sert à rien :

    IObit Malware Fighter
    Advanced SystemCare

    en fait tout ce qui est Iobit est obsolète

    =====

    • Désactive ton antivirus le temps du téléchargement et de l’utilisation, le mieux étant jusqu’au prochain redémarrage.
    • Télécharge AdsFix sur ton bureau.

      Note : Enregistrer votre travail avant de continuer !

    • Lance AdsFix ( clic droit “executer en tant qu’administrateur” pour Vista/7/8/8.1/10 )
    • Pour un pc assez infecté , il peut mettre plusieurs secondes à se charger
    • Laisse-toi guider pour installer le certificat de sécurité puis à l’issue , l’outil va se fermer
    • relance-le
    • Clique sur Options , puis Autoriser la suppression , puis enfin sur Nettoyer.
    • Ne touche pas l’ordinateur le temps du scan !!
    • Inscrit ton pays

      Note : Patiente le temps du scan

    • Laisse travailler l’outil même s’il te parait bloqué
    • Héberge le rapport C:AdsFix_date_heure.txt sur http://cjoint.com puis donne le lien obtenu.
  • Photo du profil de lecopaindaccordlecopaindaccord
    Participant
    Post count: 13

    bonjour ,

    je ne comprends comment faire pour télécharger adsfix !

    quand je clique sur le lien , cela m’envoie sur une page pour télécharger un jeu !! et payant en plus (5€/semaine)

    pourriez-vous m’aider?

    MERCI

  • Photo du profil de g3n-h@ckm@ng3n-h@ckm@n
    Admin bbPress
    Post count: 8314

    bonsoir

    faut descendre un peu et cliquer sur le gros bouton vert rectangulaire ” Telecharger”

  • Photo du profil de lecopaindaccordlecopaindaccord
    Participant
    Post count: 13

    Bonjour,

    j’ai réussi à télécharger le logiciel et à lancer un scan (tout en autorisant la suppression) mais le scan s’est arrêté (par windows) au bout de 50% .

    Je l’ai relancé et il a été arrêté par windows au même endroit!

    Aurais-je omis un détail?

    PS : il a supprimé plus de 50 fichiers!

    merci pour votre aide

  • Photo du profil de g3n-h@ckm@ng3n-h@ckm@n
    Admin bbPress
    Post count: 8314

    bonjour

    fais voir le bout de rapport que tu as dans C: stp

  • Photo du profil de lecopaindaccordlecopaindaccord
    Participant
    Post count: 13

    bonjour Oh Maître,

    je crois que vous allez me prendre pour une bille car je ne sais pas où trouver ce rapport qui se trouve dans : “C: stp”

    auriez-vous l’amabilité d’éclairer ma lanterne, merci

    bonne journée

  • Photo du profil de g3n-h@ckm@ng3n-h@ckm@n
    Admin bbPress
    Post count: 8314

    hello

    demarrer => ordinateur => disque local C: et dans la fenetre en bas y’as AdsFix.txt

  • Photo du profil de lecopaindaccordlecopaindaccord
    Participant
    Post count: 13

    Hello,
    Voici un copié-collé (un peu long) de l’AdsFix.txt comme demandé
    Bonne lecture (car pour moi ce sont des hiéroglyphes)


    | AdsFix | g3n-h@ckm@n | 3_29.07.2016.2


    Vista | 7 | 8 | 8.1 | 10 – 32/64 bits


    Start 12:10:57 – 29/07/2016

    Mis a jour le : 29/07/2016 | 08.40 par g3n-h@ckm@n
    Contact : https://www.sosvirus.net
    Assistance : https://www.sosvirus.net/aide-nettoyage-pc/
    Feedbacks : https://www.sosvirus.net/aide-nettoyage-pc/
    Facebook : https://www.facebook.com/AdsFixAntiAdware
    C:UsersFrançoisDesktopAdsFix.exe
    Boot: Normal boot
    [François (Administrator)] – [FRANÇOIS-PC] – (france [040C])
    SID = S-1-5-21-2383793236-4229707838-1608618944-1001 || [4672616ec3a76f6973205e5e]
    PC : Packard Bell – MCP73PV – To Be Filled By O.E.M.
    Processor : X64 – 2600 – Pentium(R) Dual-Core CPU E5300 @ 2.60GHz
    Bios : American Megatrends Inc. – 09/07/2009 – V.P01-A1
    CoreTemp : 22 C

    CPU #1 value:0 %
    CPU #2 value:0 %
    Total Overall CPU Usage value:0 %

    Système : Windows 10 Home (64 bits) Core
    Memoire RAM = Total (MB) : 4194 | Libre (MB) : 1875
    Pagefile = Total (MB) : 8388 | Libre (MB) : 5511
    Virtuelle = Total (MB) : 4194 | Libre (MB) : 3900

    C: -> [Fixed] | [Packard Bell] | Total : 141.45 Go | Free : 64.41 Go -> NTFS [SATA]
    D: -> [Fixed] | [Travail Personnel] | Total : 141.54 Go | Free : 90.68 Go -> NTFS [SATA]
    E: -> [CDROM] | [Audio CD]

    Registre sauvegardé , pour restaurer : Cliquer sur Options & Restaurer le registre (C:AdsFixSaveRegistry [29.07.2016 @ 12_10_51]) ou un element
    Restauration de fichiers ou dossiers supprimes par erreur : Cliquer sur Options & Restaurer Fichiers ou dossiers, Selectionner un element >> “Restaurer”


    | Mises a jour Windows


    | Navigateurs

    IE : 11.0.10586.494 (© Microsoft Corporation. Tous droits réservés.)
    FF : 47.0.1.6018 (©Firefox and Mozilla Developers; available under the MPL 2 license.)
    GC : 51.0.2704.103 (Copyright 2015 Google Inc. All rights reserved.)
    MS-Edge : 11.0.10586.494 (© Microsoft Corporation. All rights reserved.)


    | Security (atcav : 0)

    FW :
    WMI : OK
    WU: Windows Update Service [Manual(3)] = non en cours
    AS: Windows Defender [Manual(3)] = non en cours
    FW: Windows FireWall Service [Auto(2)] = en cours
    WMI: Windows Management Instrumentation (System Information) [Auto(2)] = en cours


    | FlashPlayer

    ActiveX : 22.0.0.209
    Plugin : 18.0.0.209
    Plugin : 22.0.0.209


    | Processes closed

    1756 | [Owner : |Parent : 796(services.exe)] – (.NVIDIA Corporation – NVIDIA Driver Helper Service, Version 341.95.) – (8.17.13.4195) = C:WindowsSystem32nvvsvc.exe
    1652 | [Owner : Système |Parent : 460(svchost.exe)] – (.Microsoft Corporation – Infrastructure d’extensibilité pour les services réseau Windows sans fil 802.11.) – (10.0.10586.0) = C:WindowsSystem32wlanext.exe
    1644 | [Owner : Système |Parent : 1652(wlanext.exe)] – (.Microsoft Corporation – Console Window Host.) – (10.0.10586.0) = C:WindowsSystem32conhost.exe
    2240 | [Owner : SERVICE LOCAL |Parent : 460(svchost.exe)] – (.Microsoft Corporation – Device Association Framework Provider Host.) – (10.0.10586.0) = C:WindowsSystem32dasHost.exe
    2300 | [Owner : LogonSessionId_0_166033 |Parent : 796(services.exe)] – (.Microsoft Corporation – Application sous-système spouleur.) – (10.0.10586.122) = C:WindowsSystem32spoolsv.exe
    2640 | [Owner : Système |Parent : 796(services.exe)] – (.Microsoft Corporation – Microsoft Application Virtualization Virtual Service Agent.) – (4.6.0.551) = C:Program Files (x86)Microsoft Application Virtualization Clientsftvsa.exe
    2648 | [Owner : Système |Parent : 796(services.exe)] – (.Acer Incorporated – Global Registration Service.) – (1.0.2001.0) = C:Program Files (x86)Packard BellRegistrationGregHSRW.exe
    2724 | [Owner : Système |Parent : 796(services.exe)] – (.Acer – Acer Update Service.) – (1.0.0.6) = C:Program FilesPackard BellPackard Bell UpdaterUpdaterService.exe
    2760 | [Owner : Système |Parent : 796(services.exe)] – (.IObit – Product Updater.) – (2.1.6.2358) = C:Program Files (x86)IObitLiveUpdateLiveUpdate.exe
    2832 | [Owner : Système |Parent : 796(services.exe)] – (.DEVGURU Co., LTD. – MSS CS Connectivity Service.) – (2.5.5.0) = C:Program Files (x86)SamsungUSB Drivers25_escapeconnss_conn_service.exe
    2136 | [Owner : LogonSessionId_0_191830 |Parent : 796(services.exe)] – (.Microsoft Corporation – Message Queuing Service.) – (10.0.10586.0) = C:WindowsSystem32mqsvc.exe
    2224 | [Owner : Système |Parent : 796(services.exe)] – (. – NVIDIA Corporation.) – (2.2.0.7308) = C:Program FilesNVIDIA CorporationNetworkAccessManagerbin32nSvcIp.exe
    2236 | [Owner : Système |Parent : 796(services.exe)] – (. – .) – (0.0.0.0) = C:Program Files (x86)RealUpdateServiceRealPlayerUpdateSvc.exe
    3232 | [Owner : Système |Parent : 796(services.exe)] – (.Microsoft Corporation – Microsoft Application Virtualization Client Service.) – (4.6.0.551) = C:Program Files (x86)Microsoft Application Virtualization Clientsftlist.exe
    5484 | [Owner : Système |Parent : 796(services.exe)] – (.Microsoft Corporation – Microsoft Office Client Virtualization Service .) – (14.0.4514.1004) = C:Program Files (x86)Common FilesMicrosoft SharedVirtualization HandlerCVHSVC.EXE
    2656 | [Owner : LogonSessionId_0_564332 |Parent : 796(services.exe)] – (.Microsoft Corporation – Service de la passerelle de la couche Application.) – (10.0.10586.0) = C:WindowsSystem32alg.exe
    7772 | [Owner : SERVICE LOCAL |Parent : 460(svchost.exe)] – (.Microsoft Corporation – Windows Driver Foundation – Processus hôte de l’infrastructure de pilotes en mode utilisateur.) – (10.0.10586.0) = C:WindowsSystem32WUDFHost.exe
    1696 | [Owner : Système |Parent : 1756()] – (.NVIDIA Corporation – NVIDIA User Experience Driver Component.) – (8.17.13.4195) = C:Program FilesNVIDIA CorporationDisplaynvxdsync.exe
    10680 | [Owner : Système |Parent : 1756()] – (.NVIDIA Corporation – NVIDIA Driver Helper Service, Version 341.95.) – (8.17.13.4195) = C:WindowsSystem32nvvsvc.exe
    7784 | [Owner : François |Parent : 1072(svchost.exe)] – (.IObit – Smart Defrag 5.) – (5.1.0.788) = C:Program Files (x86)IObitSmart DefragSmartDefrag.exe
    12108 | [Owner : François |Parent : 1072(svchost.exe)] – (.Microsoft Corporation – Processus hôte pour Tâches Windows.) – (10.0.10586.0) = C:WindowsSystem32taskhostw.exe
    6544 | [Owner : François |Parent : 1072(svchost.exe)] – (.Microsoft Corporation – IPoint.exe.) – (2.3.188.0) = C:Program FilesMicrosoft Mouse and Keyboard Centeripoint.exe
    13432 | [Owner : François |Parent : 1072(svchost.exe)] – (.Microsoft Corporation – IType.exe.) – (2.3.188.0) = C:Program FilesMicrosoft Mouse and Keyboard Centeritype.exe
    13404 | [Owner : François |Parent : 892(svchost.exe)] – (.Microsoft Corporation – Runtime Broker.) – (10.0.10586.0) = C:WindowsSystem32RuntimeBroker.exe
    3320 | [Owner : François |Parent : 1696()] – (.NVIDIA Corporation – NVIDIA Settings.) – (7.17.13.4195) = C:Program FilesNVIDIA CorporationDisplaynvtray.exe
    14244 | [Owner : François |Parent : 3320()] – (.NVIDIA Corporation – NVIDIA GeForce Experience Backend.) – (12.4.55.0) = C:Program Files (x86)NVIDIA CorporationUpdate CoreNvBackend.exe
    8916 | [Owner : François |Parent : 13992(explorer.exe)] – (.Realtek Semiconductor – Gestionnaire audio HD Realtek.) – (1.0.0.993) = C:Program FilesRealtekAudioHDARAVCpl64.exe
    600 | [Owner : François |Parent : 13992(explorer.exe)] – (.Microsoft Corporation – Processus hôte Windows (Rundll32).) – (10.0.10586.0) = C:WindowsSysWOW64rundll32.exe
    8700 | [Owner : François |Parent : 12388()] – (.Samsung Electronics Co., Ltd. – Kies TrayAgent Application.) – (2.0.0.145) = C:Program Files (x86)SamsungKiesKiesTrayAgent.exe
    4384 | [Owner : François |Parent : 12388()] – (.Oracle Corporation – Java Update Scheduler.) – (2.8.91.14) = C:Program Files (x86)Common FilesJavaJava Updatejusched.exe
    11228 | [Owner : Système |Parent : 10784(winlogon.exe)] – (.Microsoft Corporation – Usermode Font Driver Host.) – (10.0.10586.420) = C:WindowsSystem32fontdrvhost.exe
    13300 | [Owner : François |Parent : 796(services.exe)] – (.Microsoft Corporation – Processus hôte pour les services Windows.) – (10.0.10586.0) = C:WindowsSystem32svchost.exe
    11296 | [Owner : François |Parent : 892(svchost.exe)] – (.Microsoft Corporation – Application Frame Host.) – (10.0.10586.0) = C:WindowsSystem32ApplicationFrameHost.exe
    1788 | [Owner : François |Parent : 892(svchost.exe)] – (.Microsoft Corporation – Paramètres.) – (10.0.10586.11) = C:WindowsImmersiveControlPanelSystemSettings.exe
    12680 | [Owner : François |Parent : 892(svchost.exe)] – (.Microsoft Corporation – LockAppHost.) – (10.0.10586.494) = C:WindowsSystem32LockAppHost.exe
    9828 | [Owner : François |Parent : 892(svchost.exe)] – (. – .) – (0.0.0.0) = C:WindowsSystemAppsMicrosoft.LockApp_cw5n1h2txyewyLockApp.exe
    13500 | [Owner : François |Parent : 6432(AvastUI.exe)] – (.Microsoft Corporation – Chargeur CTF.) – (10.0.10586.0) = C:WindowsSysWOW64ctfmon.exe


    | Tasks

    Suppression : Ad-Aware Update (Daily 1)
    Suppression : Ad-Aware Update (Daily 2)
    Suppression : Ad-Aware Update (Daily 3)
    Suppression : Ad-Aware Update (Daily 4)
    Suppression : Driver Booster SkipUAC (François)
    Suppression : ReclaimerUpdateXML_François
    Suppression : ReimageUpdater
    Suppression : RunAsStdUser Task
    Suppression : SmartDefrag_AutoAnalyze
    Suppression : SmartDefrag_Startup
    Suppression : SmartDefrag_Update


    | Services


    | AppCertDlls | AppInit_DLLs


    | DNSapi.dll

    C:WINDOWSSystem32dnsapi.dll : driversetchosts
    C:WINDOWSSysWOW64dnsapi.dll : driversetchosts


    | Hosts


    | SafeBoot


    | Winsock


    | DNS


    | Registre

    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerDOMStorage1net.com
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerEdpDomStorage1net.com
    Suppression : HKLM64SOFTWAREClasses.musx : FinaleNotation
    Suppression : HKLM64SOFTWAREClassesASCExtMenu.CExtMenu : CExtMenu Class
    Suppression : HKLM64SOFTWAREClassesASCExtMenu.CExtMenu.1 : CExtMenu Class
    Suppression : HKLM64SOFTWAREClassesBearShare :
    Suppression : HKLM64SOFTWAREClassesDownload.SwInstaller : SwInstaller Class
    Suppression : HKLM64SOFTWAREClassesDownload.SwInstaller.1 : SwInstaller Class
    Suppression : HKLM64SOFTWAREClassesDownload.SwInstallerAttributes.1 : SwInstallerAttributes Class
    Suppression : HKLM64SOFTWAREClassesProd.cap :
    Suppression : HKLM64SOFTWAREClassesShopperReports.CntntDic : ShopperReports
    Suppression : HKLM64SOFTWAREClassesShopperReports.CntntDic.1 : ShopperReports
    Suppression : HKLM64SOFTWAREClassesShopperReports.CntntDisp.1 : ShopperReports
    Suppression : HKLM64SOFTWAREClassesSwdir.SwInstallerCtl : SwInstallerCtl Class
    Suppression : HKLM64SOFTWAREClassesSwdir.SwInstallerCtl.1 : SwInstallerCtl Class
    Suppression : HKLM64SOFTWAREClassesToolbar.ToolbarHelperObject : ToolbarHelperObject Class
    Suppression : HKLM64SOFTWAREClassesToolbar.ToolbarHelperObject.1 : ToolbarHelperObject Class
    Suppression : HKLM64SOFTWAREClassesViProtocol.ViProtocolOLE : ViProtocolOLE Class
    Suppression : HKLM64SOFTWAREClassesViProtocol.ViProtocolOLE.1 : ViProtocolOLE Class
    Suppression : HKLM64SOFTWAREClassesApplicationsregistrybooster2011_01NET.exe
    Suppression : HKLM64SOFTWAREClassesAppIDBRNstIE.DLL
    Suppression : HKLM64SOFTWAREClassesAppIDprotector_dll.DLL
    Suppression : HKLM64SOFTWAREClassesAppIDREI_AxControl.DLL
    Suppression : HKLM64SOFTWAREClassesAppIDScriptHelper.EXE
    Suppression : HKLM64SOFTWAREClassesAppIDViProtocol.DLL
    Suppression : HKLM64SOFTWAREClassesAppID{1FDFF5A2-7BB1-48E1-8081-7236812B12B2} : ViProtocol
    Suppression : HKLM64SOFTWAREClassesAppID{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A} : REI_AxControl
    Suppression : HKLM64SOFTWAREClassesAppID{96FBC13C-8214-4100-88E0-FF74D7A1CB4D} : protector_dll
    Suppression : HKLM64SOFTWAREClassesAppID{C41C967C-1BD4-404c-8393-A34F94156193} : BearShare
    Suppression : HKLMSOFTWAREWow6432NodeClassesDownload.SwInstallerAttributes : SwInstallerAttributes Class
    Suppression : HKLMSOFTWAREWow6432NodeClassesShopperReports.CntntDisp : ShopperReports
    Suppression : HKLMSOFTWAREWow6432NodeClassesApplicationsregistrybooster2012.exe
    Suppression : HKUS-1-5-18SOFTWAREMicrosoftInternet ExplorerInternetRegistryREGISTRYUSERS-1-5-18SOFTWAREStartNow Toolbar
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREMicrosoftInternet ExplorerInternetRegistryREGISTRYUSERS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREIB Updater
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREMicrosoftInternet ExplorerInternetRegistryREGISTRYUSERS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREStartNow Toolbar
    Suppression : HKLM64SOFTWAREClassesCLSID{2803063F-4B8D-4dc6-8874-D1802487FE2D}
    Suppression : HKLMSOFTWAREWow6432NodeClassesCLSID{28310B1B-B757-4b87-9AFA-8E5FAF126156}
    Suppression : HKLMSOFTWAREWow6432NodeClassesCLSID{4DB2E429-B905-479A-9EFF-F7CBD9FD52DE}
    Suppression : HKLMSOFTWAREWow6432NodeClassesCLSID{79D2A12A-1AEC-4124-9733-F4E0DE751578} : C:PROGRA~2WIC4A1~1MESSEN~1vvpltfrm.dll #
    Suppression : HKLMSOFTWAREWow6432NodeClassesCLSID{B658800C-F66E-4EF3-AB85-6C0C227862A9}
    Suppression : HKLMSOFTWAREWow6432NodeClassesCLSID{CC7BD6F1-565C-47ce-A5BB-9C935E77B59D}
    Suppression : HKLMSOFTWAREWow6432NodeClassesCLSID{CFC16189-8A92-4a29-A940-60248385F426}
    Suppression : HKLMSOFTWAREWow6432NodeClassesCLSID{D21ED08F-6B88-45EC-A71C-6BD453B561D0}
    Suppression : HKLM64SOFTWAREClassesTypeLib{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36} : # C:Program FilesReimageReimage RepairREI_Axcontrol.dll
    Suppression : HKLM64SOFTWAREClassesInterface{9BB31AD8-5DB2-459E-A901-DEA536F23BA4} : {FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
    Suppression : HKLM64SoftwareClassesWOW6432NodeInterface{9BB31AD8-5DB2-459E-A901-DEA536F23BA4} : {FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
    Suppression : HKLM64SOFTWAREClassesInterface{BD51A48E-EB5F-4454-8774-EF962DF64546} : {FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
    Suppression : HKLM64SoftwareClassesWOW6432NodeInterface{BD51A48E-EB5F-4454-8774-EF962DF64546} : {FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
    Suppression : HKLMSYSTEMCurrentControlSetServicesEventlogApplicationDriver Detective
    Suppression : HKLMSYSTEMCurrentControlSetServicesEventlogApplicationSavingsbullFilterService64
    Suppression : [HKLM64SOFTWAREmozillaFirefoxExtensions]~[{336D0C35-8A85-403a-B9D2-65C292C39087}] : C:Program FilesIB UpdaterFirefox
    Suppression : [HKLMSOFTWAREWow6432NodemozillaFirefoxExtensions]~[{336D0C35-8A85-403a-B9D2-65C292C39087}] : C:Program FilesIB UpdaterFirefox
    Suppression : [HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREMicrosoftWindows NTCurrentVersionAppCompatFlagsCompatibility AssistantStore]~[C:Program Files (x86)MyFree Codec1.0b betauninstall.exe]
    Suppression : HKUS-1-5-18SOFTWAREAppDataLow{1146AC44-2F03-4431-B4FD-889BC837521F} : ///%
    Suppression : HKUS-1-5-18SOFTWAREAppDataLowSoftwaremedia enhance
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREBackgroundContainer
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREBoxore
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREcacaoweb
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREDriverTuner
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREFissaSearch
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREfreezefrogsa
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREGlarySoft
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREIminent.com
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWARELiveSupport
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREOfferBox
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREParetoLogic
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREReimage
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREShopperReports3
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWARESmartTweak
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWARESpeedMaxPc
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREsystweak
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWARETutorials
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREYahooPartnerToolbar
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREAppDataLowSoftwareBackgroundContainerV3
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREAppDataLowSoftwarePriceGong
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREAppDataLowSoftwareSavings Bull
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREAppDataLowSoftwareSmartBar
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SoftwareLocal AppWizard-Generated ApplicationsReimage – Windows Problem Relief.
    Suppression : HKLM64SOFTWAREIB Updater
    Suppression : HKLM64SOFTWARELevelQualityWatcher
    Suppression : HKLM64SOFTWAREReimage
    Suppression : HKLM64SOFTWARESavings Bull
    Suppression : HKLM64SoftwareClientsStartMenuInternetBeamrise.KSG6LPYWODZVW5HZSNJARERTYE
    Suppression : HKLMSOFTWAREWow6432NodeBoxore
    Suppression : HKLMSOFTWAREWow6432NodeDigital River
    Suppression : HKLMSOFTWAREWow6432NodeFREEzeFrog
    Suppression : HKLMSOFTWAREWow6432NodeGlarySoft
    Suppression : HKLMSOFTWAREWow6432NodeIB Updater
    Suppression : HKLMSOFTWAREWow6432NodeOfferBox
    Suppression : HKLMSOFTWAREWow6432NodeParetoLogic
    Suppression : HKLMSOFTWAREWow6432NodeSearchquMediabarTb
    Suppression : HKLMSOFTWAREWow6432NodeShopperReports3
    Suppression : HKLMSOFTWAREWow6432NodeSoftonic_France_FF
    Suppression : HKLMSOFTWAREWow6432NodeSpeedMaxPc
    Suppression : HKLMSOFTWAREWow6432NodesupTab
    Suppression : HKLMSOFTWAREWow6432NodeSystweak
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREBearShare
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREInstallCore
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWARENico Mak Computing
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREreimagerepair
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWARETelecharger
    Suppression : HKLM64SOFTWARESavingsBull Filter


    | AdsFix | g3n-h@ckm@n | 3_29.07.2016.2


    Vista | 7 | 8 | 8.1 | 10 – 32/64 bits


    Start 19:02:50 – 29/07/2016

    Mis a jour le : 29/07/2016 | 08.40 par g3n-h@ckm@n
    Contact : https://www.sosvirus.net
    Assistance : https://www.sosvirus.net/aide-nettoyage-pc/
    Feedbacks : https://www.sosvirus.net/aide-nettoyage-pc/
    Facebook : https://www.facebook.com/AdsFixAntiAdware
    C:UsersFrançoisDesktopAdsFix.exe
    Boot: Normal boot
    [François (Administrator)] – [FRANÇOIS-PC] – (france [040C])
    SID = S-1-5-21-2383793236-4229707838-1608618944-1001 || [4672616ec3a76f6973205e5e]
    PC : Packard Bell – MCP73PV – To Be Filled By O.E.M.
    Processor : X64 – 2600 – Pentium(R) Dual-Core CPU E5300 @ 2.60GHz
    Bios : American Megatrends Inc. – 09/07/2009 – V.P01-A1
    CoreTemp : 36 C

    CPU #1 value:37 %
    CPU #2 value:24 %
    Total Overall CPU Usage value:31 %

    Système : Windows 10 Home (64 bits) Core
    Memoire RAM = Total (MB) : 4194 | Libre (MB) : 2350
    Pagefile = Total (MB) : 8388 | Libre (MB) : 6397
    Virtuelle = Total (MB) : 4194 | Libre (MB) : 3904

    C: -> [Fixed] | [Packard Bell] | Total : 141.45 Go | Free : 66.63 Go -> NTFS [SATA]
    D: -> [Fixed] | [Travail Personnel] | Total : 141.54 Go | Free : 90.68 Go -> NTFS [SATA]
    E: -> [CDROM] | [Audio CD]
    J: -> [Fixed] | [] | Total : 0.28 Go | Free : 0.28 Go -> FAT [USB]

    Registre sauvegardé , pour restaurer : Cliquer sur Options & Restaurer le registre (C:AdsFixSaveRegistry [29.07.2016 @ 19_02_46]) ou un element
    Restauration de fichiers ou dossiers supprimes par erreur : Cliquer sur Options & Restaurer Fichiers ou dossiers, Selectionner un element >> “Restaurer”


    | Mises a jour Windows


    | Navigateurs

    IE : 11.0.10586.494 (© Microsoft Corporation. Tous droits réservés.)
    FF : 47.0.1.6018 (©Firefox and Mozilla Developers; available under the MPL 2 license.)
    GC : 51.0.2704.103 (Copyright 2015 Google Inc. All rights reserved.)
    MS-Edge : 11.0.10586.494 (© Microsoft Corporation. All rights reserved.)


    | Security (atcav : 0)

    FW :
    WMI : OK
    WU: Windows Update Service [Manual(3)] = non en cours
    AS: Windows Defender [Manual(3)] = non en cours
    FW: Windows FireWall Service [Auto(2)] = en cours
    WMI: Windows Management Instrumentation (System Information) [Auto(2)] = en cours


    | FlashPlayer

    ActiveX : 22.0.0.209
    Plugin : 18.0.0.209
    Plugin : 22.0.0.209


    | Processes closed

    12736 | [Owner : SERVICE LOCAL |Parent : 460(svchost.exe)] – (.Microsoft Corporation – Device Association Framework Provider Host.) – (10.0.10586.0) = C:WindowsSystem32dasHost.exe
    12836 | [Owner : LogonSessionId_0_191269317 |Parent : 796(services.exe)] – (.Microsoft Corporation – Application sous-système spouleur.) – (10.0.10586.122) = C:WindowsSystem32spoolsv.exe
    6880 | [Owner : François |Parent : 892(svchost.exe)] – (.Microsoft Corporation – Runtime Broker.) – (10.0.10586.0) = C:WindowsSystem32RuntimeBroker.exe
    7728 | [Owner : François |Parent : 796(services.exe)] – (.Microsoft Corporation – Processus hôte pour les services Windows.) – (10.0.10586.0) = C:WindowsSystem32svchost.exe
    13432 | [Owner : LogonSessionId_0_191696962 |Parent : 796(services.exe)] – (.Microsoft Corporation – Message Queuing Service.) – (10.0.10586.0) = C:WindowsSystem32mqsvc.exe
    8896 | [Owner : LogonSessionId_0_191698610 |Parent : 796(services.exe)] – (.Microsoft Corporation – Service de la passerelle de la couche Application.) – (10.0.10586.0) = C:WindowsSystem32alg.exe
    860 | [Owner : SERVICE LOCAL |Parent : 460(svchost.exe)] – (.Microsoft Corporation – Windows Driver Foundation – Processus hôte de l’infrastructure de pilotes en mode utilisateur.) – (10.0.10586.0) = C:WindowsSystem32WUDFHost.exe
    13600 | [Owner : Système |Parent : 796(services.exe)] – (.NVIDIA Corporation – NVIDIA Driver Helper Service, Version 341.95.) – (8.17.13.4195) = C:WindowsSystem32nvvsvc.exe
    4924 | [Owner : Système |Parent : 13600()] – (.NVIDIA Corporation – NVIDIA User Experience Driver Component.) – (8.17.13.4195) = C:Program FilesNVIDIA CorporationDisplaynvxdsync.exe
    6612 | [Owner : Système |Parent : 13600()] – (.NVIDIA Corporation – NVIDIA Driver Helper Service, Version 341.95.) – (8.17.13.4195) = C:WindowsSystem32nvvsvc.exe
    13488 | [Owner : François |Parent : 892(svchost.exe)] – (.Microsoft Corporation – Application Frame Host.) – (10.0.10586.0) = C:WindowsSystem32ApplicationFrameHost.exe
    13324 | [Owner : François |Parent : 4924()] – (.NVIDIA Corporation – NVIDIA Settings.) – (7.17.13.4195) = C:Program FilesNVIDIA CorporationDisplaynvtray.exe
    12780 | [Owner : François |Parent : 13324()] – (.NVIDIA Corporation – NVIDIA GeForce Experience Backend.) – (12.4.55.0) = C:Program Files (x86)NVIDIA CorporationUpdate CoreNvBackend.exe
    12916 | [Owner : François |Parent : 892(svchost.exe)] – (.Microsoft Corporation – Paramètres.) – (10.0.10586.11) = C:WindowsImmersiveControlPanelSystemSettings.exe


    | Tasks


    | Services


    | AppCertDlls | AppInit_DLLs


    | DNSapi.dll

    C:WINDOWSSystem32dnsapi.dll : driversetchosts
    C:WINDOWSSysWOW64dnsapi.dll : driversetchosts


    | Hosts


    | SafeBoot


    | Winsock


    | DNS


    | Registre

    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerDOMStoragesolvusoft.com
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerEdpDomStoragesolvusoft.com
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREMicrosoftInternet ExplorerInternetRegistryREGISTRYUSERS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREWajam
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREDriverTuner_Init
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWARESoftonic
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWARETutoTag
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREAppDataLowSoftwaresearchqutoolbar
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREAppDataLowSoftwareSoftonic_France_FF
    Suppression : HKLMSOFTWAREWow6432Nodefree_soft_to_day
    Suppression : HKLMSOFTWAREWow6432Nodesweet-pageSoftware
    Suppression : HKLMSOFTWAREWow6432NodeTaronja


    | AdsFix | g3n-h@ckm@n | 3_29.07.2016.2


    Vista | 7 | 8 | 8.1 | 10 – 32/64 bits


    Start 14:33:06 – 31/07/2016

    Mis a jour le : 29/07/2016 | 08.40 par g3n-h@ckm@n
    Contact : https://www.sosvirus.net
    Assistance : https://www.sosvirus.net/aide-nettoyage-pc/
    Feedbacks : https://www.sosvirus.net/aide-nettoyage-pc/
    Facebook : https://www.facebook.com/AdsFixAntiAdware
    C:UsersFrançoisDesktopAdsFix.exe
    Boot: Normal boot
    [François (Administrator)] – [FRANÇOIS-PC] – (FRANCE [040C])
    SID = S-1-5-21-2383793236-4229707838-1608618944-1001 || [4672616ec3a76f6973205e5e]
    PC : Packard Bell – MCP73PV – To Be Filled By O.E.M.
    Processor : X64 – 2600 – Pentium(R) Dual-Core CPU E5300 @ 2.60GHz
    Bios : American Megatrends Inc. – 09/07/2009 – V.P01-A1
    CoreTemp : 21 C

    CPU #1 value:25 %
    CPU #2 value:6 %
    Total Overall CPU Usage value:15 %

    Système : Windows 10 Home (64 bits) Core
    Memoire RAM = Total (MB) : 4194 | Libre (MB) : 2619
    Pagefile = Total (MB) : 8388 | Libre (MB) : 6619
    Virtuelle = Total (MB) : 4194 | Libre (MB) : 3904

    C: -> [Fixed] | [Packard Bell] | Total : 141.45 Go | Free : 67.23 Go -> NTFS [SATA]
    D: -> [Fixed] | [Travail Personnel] | Total : 141.54 Go | Free : 91.84 Go -> NTFS [SATA]
    E: -> [CDROM] | [Audio CD]

    Registre sauvegardé , pour restaurer : Cliquer sur Options & Restaurer le registre (C:AdsFixSaveRegistry [31.07.2016 @ 14_33_03]) ou un element
    Restauration de fichiers ou dossiers supprimes par erreur : Cliquer sur Options & Restaurer Fichiers ou dossiers, Selectionner un element >> “Restaurer”


    | Mises a jour Windows


    | Navigateurs

    IE : 11.0.10586.494 (© Microsoft Corporation. Tous droits réservés.)
    FF : 47.0.1.6018 (©Firefox and Mozilla Developers; available under the MPL 2 license.)
    GC : 51.0.2704.103 (Copyright 2015 Google Inc. All rights reserved.)
    MS-Edge : 11.0.10586.494 (© Microsoft Corporation. All rights reserved.)


    | Security (atcav : 3)

    AV : Avast Antivirus Enabled
    AS : Avast Antivirus Enabled
    FW :
    WMI : OK
    WU: Windows Update Service [Manual(3)] = non en cours
    AS: Windows Defender [Manual(3)] = non en cours
    FW: Windows FireWall Service [Auto(2)] = en cours
    WMI: Windows Management Instrumentation (System Information) [Auto(2)] = en cours


    | FlashPlayer

    ActiveX : 22.0.0.209
    Plugin : 18.0.0.209
    Plugin : 22.0.0.209


    | Processes closed

    1088 | [Owner : |Parent : 804(services.exe)] – (.NVIDIA Corporation – NVIDIA Driver Helper Service, Version 341.95.) – (8.17.13.4195) = C:WindowsSystem32nvvsvc.exe
    1272 | [Owner : |Parent : 1088()] – (.NVIDIA Corporation – NVIDIA User Experience Driver Component.) – (8.17.13.4195) = C:Program FilesNVIDIA CorporationDisplaynvxdsync.exe
    1280 | [Owner : |Parent : 1088()] – (.NVIDIA Corporation – NVIDIA Driver Helper Service, Version 341.95.) – (8.17.13.4195) = C:WindowsSystem32nvvsvc.exe
    1780 | [Owner : Système |Parent : 492(svchost.exe)] – (.Microsoft Corporation – Infrastructure d’extensibilité pour les services réseau Windows sans fil 802.11.) – (10.0.10586.0) = C:WindowsSystem32wlanext.exe
    1584 | [Owner : SERVICE LOCAL |Parent : 492(svchost.exe)] – (.Microsoft Corporation – Device Association Framework Provider Host.) – (10.0.10586.0) = C:WindowsSystem32dasHost.exe
    2080 | [Owner : LogonSessionId_0_162226 |Parent : 804(services.exe)] – (.Microsoft Corporation – Application sous-système spouleur.) – (10.0.10586.122) = C:WindowsSystem32spoolsv.exe
    2368 | [Owner : Système |Parent : 804(services.exe)] – (.Microsoft Corporation – Microsoft Application Virtualization Virtual Service Agent.) – (4.6.0.551) = C:Program Files (x86)Microsoft Application Virtualization Clientsftvsa.exe
    2392 | [Owner : Système |Parent : 804(services.exe)] – (.Acer Incorporated – Global Registration Service.) – (1.0.2001.0) = C:Program Files (x86)Packard BellRegistrationGregHSRW.exe
    2460 | [Owner : LogonSessionId_0_171474 |Parent : 804(services.exe)] – (.Microsoft Corporation – Message Queuing Service.) – (10.0.10586.0) = C:WindowsSystem32mqsvc.exe
    2484 | [Owner : Système |Parent : 804(services.exe)] – (. – .) – (0.0.0.0) = C:Program Files (x86)RealUpdateServiceRealPlayerUpdateSvc.exe
    2800 | [Owner : Système |Parent : 804(services.exe)] – (. – NVIDIA Corporation.) – (2.2.0.7308) = C:Program FilesNVIDIA CorporationNetworkAccessManagerbin32nSvcIp.exe
    2876 | [Owner : Système |Parent : 804(services.exe)] – (.DEVGURU Co., LTD. – MSS CS Connectivity Service.) – (2.5.5.0) = C:Program Files (x86)SamsungUSB Drivers25_escapeconnss_conn_service.exe
    3016 | [Owner : Système |Parent : 804(services.exe)] – (.Acer – Acer Update Service.) – (1.0.0.6) = C:Program FilesPackard BellPackard Bell UpdaterUpdaterService.exe
    3060 | [Owner : Système |Parent : 804(services.exe)] – (.Microsoft Corporation – Microsoft Application Virtualization Client Service.) – (4.6.0.551) = C:Program Files (x86)Microsoft Application Virtualization Clientsftlist.exe
    3084 | [Owner : Système |Parent : 804(services.exe)] – (.IObit – Product Updater.) – (2.1.6.2358) = C:Program Files (x86)IObitLiveUpdateLiveUpdate.exe
    4060 | [Owner : Système |Parent : 804(services.exe)] – (.Microsoft Corporation – Microsoft Office Client Virtualization Service .) – (14.0.4514.1004) = C:Program Files (x86)Common FilesMicrosoft SharedVirtualization HandlerCVHSVC.EXE
    4484 | [Owner : François |Parent : 604(svchost.exe)] – (.Microsoft Corporation – Processus hôte pour Tâches Windows.) – (10.0.10586.0) = C:WindowsSystem32taskhostw.exe
    4496 | [Owner : François |Parent : 604(svchost.exe)] – (.Microsoft Corporation – IPoint.exe.) – (2.3.188.0) = C:Program FilesMicrosoft Mouse and Keyboard Centeripoint.exe
    4620 | [Owner : François |Parent : 604(svchost.exe)] – (.Microsoft Corporation – IType.exe.) – (2.3.188.0) = C:Program FilesMicrosoft Mouse and Keyboard Centeritype.exe
    4708 | [Owner : LogonSessionId_0_277526 |Parent : 804(services.exe)] – (.Microsoft Corporation – Service de la passerelle de la couche Application.) – (10.0.10586.0) = C:WindowsSystem32alg.exe
    1984 | [Owner : François |Parent : 1272()] – (.NVIDIA Corporation – NVIDIA Settings.) – (7.17.13.4195) = C:Program FilesNVIDIA CorporationDisplaynvtray.exe
    4460 | [Owner : François |Parent : 1984()] – (.NVIDIA Corporation – NVIDIA GeForce Experience Backend.) – (12.4.55.0) = C:Program Files (x86)NVIDIA CorporationUpdate CoreNvBackend.exe
    5720 | [Owner : François |Parent : 3904(explorer.exe)] – (.Realtek Semiconductor – Gestionnaire audio HD Realtek.) – (1.0.0.993) = C:Program FilesRealtekAudioHDARAVCpl64.exe
    1820 | [Owner : François |Parent : 3904(explorer.exe)] – (.Microsoft Corporation – Processus hôte Windows (Rundll32).) – (10.0.10586.0) = C:WindowsSysWOW64rundll32.exe
    5260 | [Owner : François |Parent : 5828()] – (.AVAST Software – avast! Antivirus.) – (12.2.3126.2) = C:Program FilesAVAST SoftwareAvastavastui.exe.146995084950001
    4852 | [Owner : François |Parent : 5828()] – (.Samsung Electronics Co., Ltd. – Kies TrayAgent Application.) – (2.0.0.145) = C:Program Files (x86)SamsungKiesKiesTrayAgent.exe
    4572 | [Owner : François |Parent : 5828()] – (.Oracle Corporation – Java Update Scheduler.) – (2.8.101.13) = C:Program Files (x86)Common FilesJavaJava Updatejusched.exe
    3616 | [Owner : Système |Parent : 772(winlogon.exe)] – (.Microsoft Corporation – Usermode Font Driver Host.) – (10.0.10586.420) = C:WindowsSystem32fontdrvhost.exe
    2076 | [Owner : François |Parent : 804(services.exe)] – (.Microsoft Corporation – Processus hôte pour les services Windows.) – (10.0.10586.0) = C:WindowsSystem32svchost.exe
    696 | [Owner : François |Parent : 900(svchost.exe)] – (.Microsoft Corporation – Application Frame Host.) – (10.0.10586.0) = C:WindowsSystem32ApplicationFrameHost.exe


    | Tasks


    | Services


    | AdsFix | g3n-h@ckm@n | 3_29.07.2016.2


    Vista | 7 | 8 | 8.1 | 10 – 32/64 bits


    Start 15:18:25 – 31/07/2016

    Mis a jour le : 29/07/2016 | 08.40 par g3n-h@ckm@n
    Contact : https://www.sosvirus.net
    Assistance : https://www.sosvirus.net/aide-nettoyage-pc/
    Feedbacks : https://www.sosvirus.net/aide-nettoyage-pc/
    Facebook : https://www.facebook.com/AdsFixAntiAdware
    C:UsersFrançoisDesktopAdsFix.exe
    Boot: Normal boot
    [François (Administrator)] – [FRANÇOIS-PC] – (FRANCE [040C])
    SID = S-1-5-21-2383793236-4229707838-1608618944-1001 || [4672616ec3a76f6973205e5e]
    PC : Packard Bell – MCP73PV – To Be Filled By O.E.M.
    Processor : X64 – 2600 – Pentium(R) Dual-Core CPU E5300 @ 2.60GHz
    Bios : American Megatrends Inc. – 09/07/2009 – V.P01-A1
    CoreTemp : 21 C

    CPU #1 value:1 %
    CPU #2 value:1 %
    Total Overall CPU Usage value:1 %

    Système : Windows 10 Home (64 bits) Core
    Memoire RAM = Total (MB) : 4194 | Libre (MB) : 2525
    Pagefile = Total (MB) : 8388 | Libre (MB) : 6627
    Virtuelle = Total (MB) : 4194 | Libre (MB) : 3904

    C: -> [Fixed] | [Packard Bell] | Total : 141.45 Go | Free : 66.55 Go -> NTFS [SATA]
    D: -> [Fixed] | [Travail Personnel] | Total : 141.54 Go | Free : 91.84 Go -> NTFS [SATA]
    E: -> [CDROM] | [Audio CD]
    J: -> [Fixed] | [] | Total : 0.28 Go | Free : 0.28 Go -> FAT [USB]

    Registre sauvegardé , pour restaurer : Cliquer sur Options & Restaurer le registre (C:AdsFixSaveRegistry [31.07.2016 @ 15_18_22]) ou un element
    Restauration de fichiers ou dossiers supprimes par erreur : Cliquer sur Options & Restaurer Fichiers ou dossiers, Selectionner un element >> “Restaurer”


    | Mises a jour Windows


    | Navigateurs

    IE : 11.0.10586.494 (© Microsoft Corporation. Tous droits réservés.)
    FF : 47.0.1.6018 (©Firefox and Mozilla Developers; available under the MPL 2 license.)
    GC : 51.0.2704.103 (Copyright 2015 Google Inc. All rights reserved.)
    MS-Edge : 11.0.10586.494 (© Microsoft Corporation. All rights reserved.)


    | Security (atcav : 3)

    AV : Avast Antivirus Enabled
    AS : Avast Antivirus Enabled
    FW :
    WMI : OK
    WU: Windows Update Service [Manual(3)] = non en cours
    AS: Windows Defender [Manual(3)] = non en cours
    FW: Windows FireWall Service [Auto(2)] = en cours
    WMI: Windows Management Instrumentation (System Information) [Auto(2)] = en cours


    | FlashPlayer

    ActiveX : 22.0.0.209
    Plugin : 18.0.0.209
    Plugin : 22.0.0.209


    | Processes closed

    5588 | [Owner : SERVICE LOCAL |Parent : 492(svchost.exe)] – (.Microsoft Corporation – Device Association Framework Provider Host.) – (10.0.10586.0) = C:WindowsSystem32dasHost.exe
    988 | [Owner : LogonSessionId_0_9787023 |Parent : 804(services.exe)] – (.Microsoft Corporation – Application sous-système spouleur.) – (10.0.10586.122) = C:WindowsSystem32spoolsv.exe
    5708 | [Owner : François |Parent : 804(services.exe)] – (.Microsoft Corporation – Processus hôte pour les services Windows.) – (10.0.10586.0) = C:WindowsSystem32svchost.exe
    2800 | [Owner : LogonSessionId_0_10018449 |Parent : 804(services.exe)] – (.Microsoft Corporation – Message Queuing Service.) – (10.0.10586.0) = C:WindowsSystem32mqsvc.exe
    1332 | [Owner : LogonSessionId_0_10019190 |Parent : 804(services.exe)] – (.Microsoft Corporation – Service de la passerelle de la couche Application.) – (10.0.10586.0) = C:WindowsSystem32alg.exe
    3724 | [Owner : SERVICE LOCAL |Parent : 492(svchost.exe)] – (.Microsoft Corporation – Windows Driver Foundation – Processus hôte de l’infrastructure de pilotes en mode utilisateur.) – (10.0.10586.0) = C:WindowsSystem32WUDFHost.exe
    3368 | [Owner : Système |Parent : 772(winlogon.exe)] – (.Microsoft Corporation – Usermode Font Driver Host.) – (10.0.10586.420) = C:WindowsSystem32fontdrvhost.exe


    | Tasks


    | Services


    | AppCertDlls | AppInit_DLLs


    | DNSapi.dll

    C:WINDOWSSystem32dnsapi.dll : driversetchosts
    C:WINDOWSSysWOW64dnsapi.dll : driversetchosts


    | Hosts


    | SafeBoot


    | Winsock


    | DNS


    | Registre

    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerDOMStoragesoundcloud.com
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerEdpDomStoragesoundcloud.com


    | AdsFix | g3n-h@ckm@n | 3_29.07.2016.2


    Vista | 7 | 8 | 8.1 | 10 – 32/64 bits


    Start 11:46:15 – 07/08/2016

    Mis a jour le : 29/07/2016 | 08.40 par g3n-h@ckm@n
    Contact : https://www.sosvirus.net
    Assistance : https://www.sosvirus.net/aide-nettoyage-pc/
    Feedbacks : https://www.sosvirus.net/aide-nettoyage-pc/
    Facebook : https://www.facebook.com/AdsFixAntiAdware
    C:UsersFrançoisDesktopAdsFix.exe
    Boot: Normal boot
    [François (Administrator)] – [FRANÇOIS-PC] – (france [040C])
    SID = S-1-5-21-2383793236-4229707838-1608618944-1001 || [4672616ec3a76f6973205e5e]
    PC : Packard Bell – MCP73PV – To Be Filled By O.E.M.
    Processor : X64 – 2600 – Pentium(R) Dual-Core CPU E5300 @ 2.60GHz
    Bios : American Megatrends Inc. – 09/07/2009 – V.P01-A1
    CoreTemp : 19 C

    CPU #1 value:7 %
    CPU #2 value:1 %
    Total Overall CPU Usage value:4 %

    Système : Windows 10 Home (64 bits) Core
    Memoire RAM = Total (MB) : 4194 | Libre (MB) : 2755
    Pagefile = Total (MB) : 8388 | Libre (MB) : 6779
    Virtuelle = Total (MB) : 4194 | Libre (MB) : 3900

    C: -> [Fixed] | [Packard Bell] | Total : 141.45 Go | Free : 64 Go -> NTFS [SATA]
    D: -> [Fixed] | [Travail Personnel] | Total : 141.54 Go | Free : 90.54 Go -> NTFS [SATA]
    E: -> [CDROM] | [030904_0950] | Total : 0.23 Go | Free : 0 Go -> CDFS [SATA]
    J: -> [Fixed] | [] | Total : 0.28 Go | Free : 0.28 Go -> FAT [USB]

    Registre sauvegardé , pour restaurer : Cliquer sur Options & Restaurer le registre (C:AdsFixSaveRegistry [07.08.2016 @ 11_46_13]) ou un element
    Restauration de fichiers ou dossiers supprimes par erreur : Cliquer sur Options & Restaurer Fichiers ou dossiers, Selectionner un element >> “Restaurer”


    | Mises a jour Windows


    | Navigateurs

    IE : 11.0.10586.494 (© Microsoft Corporation. Tous droits réservés.)
    FF : 47.0.1.6018 (©Firefox and Mozilla Developers; available under the MPL 2 license.)
    GC : 51.0.2704.103 (Copyright 2015 Google Inc. All rights reserved.)
    MS-Edge : 11.0.10586.494 (© Microsoft Corporation. All rights reserved.)


    | Security (atcav : 0)

    FW :
    WMI : OK
    WU: Windows Update Service [Manual(3)] = non en cours
    AS: Windows Defender [Manual(3)] = non en cours
    FW: Windows FireWall Service [Auto(2)] = en cours
    WMI: Windows Management Instrumentation (System Information) [Auto(2)] = en cours


    | FlashPlayer

    ActiveX : 22.0.0.209
    Plugin : 18.0.0.209
    Plugin : 22.0.0.209


    | Processes closed

    1100 | [Owner : |Parent : 784(services.exe)] – (.NVIDIA Corporation – NVIDIA Driver Helper Service, Version 341.95.) – (8.17.13.4195) = C:WindowsSystem32nvvsvc.exe
    1412 | [Owner : |Parent : 1100()] – (.NVIDIA Corporation – NVIDIA User Experience Driver Component.) – (8.17.13.4195) = C:Program FilesNVIDIA CorporationDisplaynvxdsync.exe
    1420 | [Owner : |Parent : 1100()] – (.NVIDIA Corporation – NVIDIA Driver Helper Service, Version 341.95.) – (8.17.13.4195) = C:WindowsSystem32nvvsvc.exe
    1912 | [Owner : Système |Parent : 696(svchost.exe)] – (.Microsoft Corporation – Infrastructure d’extensibilité pour les services réseau Windows sans fil 802.11.) – (10.0.10586.0) = C:WindowsSystem32wlanext.exe
    1644 | [Owner : LogonSessionId_0_142479 |Parent : 784(services.exe)] – (.Microsoft Corporation – Application sous-système spouleur.) – (10.0.10586.122) = C:WindowsSystem32spoolsv.exe
    2300 | [Owner : SERVICE LOCAL |Parent : 696(svchost.exe)] – (.Microsoft Corporation – Device Association Framework Provider Host.) – (10.0.10586.0) = C:WindowsSystem32dasHost.exe
    2320 | [Owner : Système |Parent : 784(services.exe)] – (.Acer Incorporated – Global Registration Service.) – (1.0.2001.0) = C:Program Files (x86)Packard BellRegistrationGregHSRW.exe
    2328 | [Owner : Système |Parent : 784(services.exe)] – (.IObit – Product Updater.) – (2.1.6.2358) = C:Program Files (x86)IObitLiveUpdateLiveUpdate.exe
    2336 | [Owner : Système |Parent : 784(services.exe)] – (.Microsoft Corporation – Microsoft Application Virtualization Virtual Service Agent.) – (4.6.0.551) = C:Program Files (x86)Microsoft Application Virtualization Clientsftvsa.exe
    2712 | [Owner : LogonSessionId_0_196794 |Parent : 784(services.exe)] – (.Microsoft Corporation – Message Queuing Service.) – (10.0.10586.0) = C:WindowsSystem32mqsvc.exe
    2864 | [Owner : Système |Parent : 784(services.exe)] – (. – .) – (0.0.0.0) = C:Program Files (x86)RealUpdateServiceRealPlayerUpdateSvc.exe
    2432 | [Owner : Système |Parent : 784(services.exe)] – (.DEVGURU Co., LTD. – MSS CS Connectivity Service.) – (2.5.5.0) = C:Program Files (x86)SamsungUSB Drivers25_escapeconnss_conn_service.exe
    2904 | [Owner : Système |Parent : 784(services.exe)] – (.Acer – Acer Update Service.) – (1.0.0.6) = C:Program FilesPackard BellPackard Bell UpdaterUpdaterService.exe
    3088 | [Owner : Système |Parent : 784(services.exe)] – (. – NVIDIA Corporation.) – (2.2.0.7308) = C:Program FilesNVIDIA CorporationNetworkAccessManagerbin32nSvcIp.exe
    3460 | [Owner : Système |Parent : 784(services.exe)] – (.Microsoft Corporation – Microsoft Application Virtualization Client Service.) – (4.6.0.551) = C:Program Files (x86)Microsoft Application Virtualization Clientsftlist.exe
    4648 | [Owner : Système |Parent : 784(services.exe)] – (.Microsoft Corporation – Microsoft Office Client Virtualization Service .) – (14.0.4514.1004) = C:Program Files (x86)Common FilesMicrosoft SharedVirtualization HandlerCVHSVC.EXE
    4360 | [Owner : François |Parent : 608(svchost.exe)] – (.Microsoft Corporation – Processus hôte pour Tâches Windows.) – (10.0.10586.0) = C:WindowsSystem32taskhostw.exe
    4708 | [Owner : LogonSessionId_0_308077 |Parent : 784(services.exe)] – (.Microsoft Corporation – Service de la passerelle de la couche Application.) – (10.0.10586.0) = C:WindowsSystem32alg.exe
    2708 | [Owner : François |Parent : 608(svchost.exe)] – (.Microsoft Corporation – IPoint.exe.) – (2.3.188.0) = C:Program FilesMicrosoft Mouse and Keyboard Centeripoint.exe
    5056 | [Owner : François |Parent : 608(svchost.exe)] – (.Microsoft Corporation – IType.exe.) – (2.3.188.0) = C:Program FilesMicrosoft Mouse and Keyboard Centeritype.exe
    1576 | [Owner : François |Parent : 1412()] – (.NVIDIA Corporation – NVIDIA Settings.) – (7.17.13.4195) = C:Program FilesNVIDIA CorporationDisplaynvtray.exe
    4164 | [Owner : François |Parent : 1576()] – (.NVIDIA Corporation – NVIDIA GeForce Experience Backend.) – (12.4.55.0) = C:Program Files (x86)NVIDIA CorporationUpdate CoreNvBackend.exe
    4516 | [Owner : François |Parent : 3592(explorer.exe)] – (.Realtek Semiconductor – Gestionnaire audio HD Realtek.) – (1.0.0.993) = C:Program FilesRealtekAudioHDARAVCpl64.exe
    868 | [Owner : François |Parent : 3592(explorer.exe)] – (.Microsoft Corporation – Processus hôte Windows (Rundll32).) – (10.0.10586.0) = C:WindowsSysWOW64rundll32.exe
    4908 | [Owner : François |Parent : 5504()] – (.Samsung Electronics Co., Ltd. – Kies TrayAgent Application.) – (2.0.0.145) = C:Program Files (x86)SamsungKiesKiesTrayAgent.exe
    5556 | [Owner : François |Parent : 5504()] – (.Oracle Corporation – Java Update Scheduler.) – (2.8.101.13) = C:Program Files (x86)Common FilesJavaJava Updatejusched.exe
    5972 | [Owner : Système |Parent : 764(winlogon.exe)] – (.Microsoft Corporation – Usermode Font Driver Host.) – (10.0.10586.420) = C:WindowsSystem32fontdrvhost.exe
    5148 | [Owner : François |Parent : 784(services.exe)] – (.Microsoft Corporation – Processus hôte pour les services Windows.) – (10.0.10586.0) = C:WindowsSystem32svchost.exe
    3168 | [Owner : François |Parent : 892(svchost.exe)] – (.Microsoft Corporation – Application Frame Host.) – (10.0.10586.0) = C:WindowsSystem32ApplicationFrameHost.exe
    3324 | [Owner : SERVICE LOCAL |Parent : 696(svchost.exe)] – (.Microsoft Corporation – Windows Driver Foundation – Processus hôte de l’infrastructure de pilotes en mode utilisateur.) – (10.0.10586.0) = C:WindowsSystem32WUDFHost.exe
    5976 | [Owner : François |Parent : 4916(avastui.exe)] – (.Microsoft Corporation – Chargeur CTF.) – (10.0.10586.0) = C:WindowsSysWOW64ctfmon.exe


    | Tasks


    | Services


    | AppCertDlls | AppInit_DLLs


    | DNSapi.dll

    C:WINDOWSSystem32dnsapi.dll : driversetchosts
    C:WINDOWSSysWOW64dnsapi.dll : driversetchosts


    | Hosts


    | SafeBoot


    | Winsock


    | DNS


    | Registre

    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerDOMStoragew.soundcloud.com
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerEdpDomStoragew.soundcloud.com
    Suppression : HKLM64SOFTWAREClasses.musx : FinaleNotation
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREAppDataLowSoftwareBackgroundContainerV3

  • Photo du profil de g3n-h@ckm@ng3n-h@ckm@n
    Admin bbPress
    Post count: 8314

    bonsoir j’ai rarement vu un pc aussi pourri

    reessaie avec la derniere version en ligne : https://toolslib.net/downloads/viewdownload/20-adsfix/

  • Photo du profil de lecopaindaccordlecopaindaccord
    Participant
    Post count: 13

    Bonjour,

    J’ai téléchargé le logiciel (nouvelle version) comme vous me l’avez demandé, suivi la même procédure qu’auparavant et arrivé à 50% Windows 10 bloque le logiciel et je suis obligé de le fermer !

    Je vous joint le même fichier Adsfix.txt

    Cela ne résout toujours pas mon problème d’accès à mes données sur le disque dur externe …

    Que me conseillez-vous de faire pour les récupérer?

    Cordialement


    | AdsFix | g3n-h@ckm@n | 3_29.07.2016.2


    Vista | 7 | 8 | 8.1 | 10 – 32/64 bits


    Start 12:10:57 – 29/07/2016

    Mis a jour le : 29/07/2016 | 08.40 par g3n-h@ckm@n
    Contact : https://www.sosvirus.net
    Assistance : https://www.sosvirus.net/aide-nettoyage-pc/
    Feedbacks : https://www.sosvirus.net/aide-nettoyage-pc/
    Facebook : https://www.facebook.com/AdsFixAntiAdware
    C:UsersFrançoisDesktopAdsFix.exe
    Boot: Normal boot
    [François (Administrator)] – [FRANÇOIS-PC] – (france [040C])
    SID = S-1-5-21-2383793236-4229707838-1608618944-1001 || [4672616ec3a76f6973205e5e]
    PC : Packard Bell – MCP73PV – To Be Filled By O.E.M.
    Processor : X64 – 2600 – Pentium(R) Dual-Core CPU E5300 @ 2.60GHz
    Bios : American Megatrends Inc. – 09/07/2009 – V.P01-A1
    CoreTemp : 22 C

    CPU #1 value:0 %
    CPU #2 value:0 %
    Total Overall CPU Usage value:0 %

    Système : Windows 10 Home (64 bits) Core
    Memoire RAM = Total (MB) : 4194 | Libre (MB) : 1875
    Pagefile = Total (MB) : 8388 | Libre (MB) : 5511
    Virtuelle = Total (MB) : 4194 | Libre (MB) : 3900

    C: -> [Fixed] | [Packard Bell] | Total : 141.45 Go | Free : 64.41 Go -> NTFS [SATA]
    D: -> [Fixed] | [Travail Personnel] | Total : 141.54 Go | Free : 90.68 Go -> NTFS [SATA]
    E: -> [CDROM] | [Audio CD]

    Registre sauvegardé , pour restaurer : Cliquer sur Options & Restaurer le registre (C:AdsFixSaveRegistry [29.07.2016 @ 12_10_51]) ou un element
    Restauration de fichiers ou dossiers supprimes par erreur : Cliquer sur Options & Restaurer Fichiers ou dossiers, Selectionner un element >> “Restaurer”


    | Mises a jour Windows


    | Navigateurs

    IE : 11.0.10586.494 (© Microsoft Corporation. Tous droits réservés.)
    FF : 47.0.1.6018 (©Firefox and Mozilla Developers; available under the MPL 2 license.)
    GC : 51.0.2704.103 (Copyright 2015 Google Inc. All rights reserved.)
    MS-Edge : 11.0.10586.494 (© Microsoft Corporation. All rights reserved.)


    | Security (atcav : 0)

    FW :
    WMI : OK
    WU: Windows Update Service [Manual(3)] = non en cours
    AS: Windows Defender [Manual(3)] = non en cours
    FW: Windows FireWall Service [Auto(2)] = en cours
    WMI: Windows Management Instrumentation (System Information) [Auto(2)] = en cours


    | FlashPlayer

    ActiveX : 22.0.0.209
    Plugin : 18.0.0.209
    Plugin : 22.0.0.209


    | Processes closed

    1756 | [Owner : |Parent : 796(services.exe)] – (.NVIDIA Corporation – NVIDIA Driver Helper Service, Version 341.95.) – (8.17.13.4195) = C:WindowsSystem32nvvsvc.exe
    1652 | [Owner : Système |Parent : 460(svchost.exe)] – (.Microsoft Corporation – Infrastructure d’extensibilité pour les services réseau Windows sans fil 802.11.) – (10.0.10586.0) = C:WindowsSystem32wlanext.exe
    1644 | [Owner : Système |Parent : 1652(wlanext.exe)] – (.Microsoft Corporation – Console Window Host.) – (10.0.10586.0) = C:WindowsSystem32conhost.exe
    2240 | [Owner : SERVICE LOCAL |Parent : 460(svchost.exe)] – (.Microsoft Corporation – Device Association Framework Provider Host.) – (10.0.10586.0) = C:WindowsSystem32dasHost.exe
    2300 | [Owner : LogonSessionId_0_166033 |Parent : 796(services.exe)] – (.Microsoft Corporation – Application sous-système spouleur.) – (10.0.10586.122) = C:WindowsSystem32spoolsv.exe
    2640 | [Owner : Système |Parent : 796(services.exe)] – (.Microsoft Corporation – Microsoft Application Virtualization Virtual Service Agent.) – (4.6.0.551) = C:Program Files (x86)Microsoft Application Virtualization Clientsftvsa.exe
    2648 | [Owner : Système |Parent : 796(services.exe)] – (.Acer Incorporated – Global Registration Service.) – (1.0.2001.0) = C:Program Files (x86)Packard BellRegistrationGregHSRW.exe
    2724 | [Owner : Système |Parent : 796(services.exe)] – (.Acer – Acer Update Service.) – (1.0.0.6) = C:Program FilesPackard BellPackard Bell UpdaterUpdaterService.exe
    2760 | [Owner : Système |Parent : 796(services.exe)] – (.IObit – Product Updater.) – (2.1.6.2358) = C:Program Files (x86)IObitLiveUpdateLiveUpdate.exe
    2832 | [Owner : Système |Parent : 796(services.exe)] – (.DEVGURU Co., LTD. – MSS CS Connectivity Service.) – (2.5.5.0) = C:Program Files (x86)SamsungUSB Drivers25_escapeconnss_conn_service.exe
    2136 | [Owner : LogonSessionId_0_191830 |Parent : 796(services.exe)] – (.Microsoft Corporation – Message Queuing Service.) – (10.0.10586.0) = C:WindowsSystem32mqsvc.exe
    2224 | [Owner : Système |Parent : 796(services.exe)] – (. – NVIDIA Corporation.) – (2.2.0.7308) = C:Program FilesNVIDIA CorporationNetworkAccessManagerbin32nSvcIp.exe
    2236 | [Owner : Système |Parent : 796(services.exe)] – (. – .) – (0.0.0.0) = C:Program Files (x86)RealUpdateServiceRealPlayerUpdateSvc.exe
    3232 | [Owner : Système |Parent : 796(services.exe)] – (.Microsoft Corporation – Microsoft Application Virtualization Client Service.) – (4.6.0.551) = C:Program Files (x86)Microsoft Application Virtualization Clientsftlist.exe
    5484 | [Owner : Système |Parent : 796(services.exe)] – (.Microsoft Corporation – Microsoft Office Client Virtualization Service .) – (14.0.4514.1004) = C:Program Files (x86)Common FilesMicrosoft SharedVirtualization HandlerCVHSVC.EXE
    2656 | [Owner : LogonSessionId_0_564332 |Parent : 796(services.exe)] – (.Microsoft Corporation – Service de la passerelle de la couche Application.) – (10.0.10586.0) = C:WindowsSystem32alg.exe
    7772 | [Owner : SERVICE LOCAL |Parent : 460(svchost.exe)] – (.Microsoft Corporation – Windows Driver Foundation – Processus hôte de l’infrastructure de pilotes en mode utilisateur.) – (10.0.10586.0) = C:WindowsSystem32WUDFHost.exe
    1696 | [Owner : Système |Parent : 1756()] – (.NVIDIA Corporation – NVIDIA User Experience Driver Component.) – (8.17.13.4195) = C:Program FilesNVIDIA CorporationDisplaynvxdsync.exe
    10680 | [Owner : Système |Parent : 1756()] – (.NVIDIA Corporation – NVIDIA Driver Helper Service, Version 341.95.) – (8.17.13.4195) = C:WindowsSystem32nvvsvc.exe
    7784 | [Owner : François |Parent : 1072(svchost.exe)] – (.IObit – Smart Defrag 5.) – (5.1.0.788) = C:Program Files (x86)IObitSmart DefragSmartDefrag.exe
    12108 | [Owner : François |Parent : 1072(svchost.exe)] – (.Microsoft Corporation – Processus hôte pour Tâches Windows.) – (10.0.10586.0) = C:WindowsSystem32taskhostw.exe
    6544 | [Owner : François |Parent : 1072(svchost.exe)] – (.Microsoft Corporation – IPoint.exe.) – (2.3.188.0) = C:Program FilesMicrosoft Mouse and Keyboard Centeripoint.exe
    13432 | [Owner : François |Parent : 1072(svchost.exe)] – (.Microsoft Corporation – IType.exe.) – (2.3.188.0) = C:Program FilesMicrosoft Mouse and Keyboard Centeritype.exe
    13404 | [Owner : François |Parent : 892(svchost.exe)] – (.Microsoft Corporation – Runtime Broker.) – (10.0.10586.0) = C:WindowsSystem32RuntimeBroker.exe
    3320 | [Owner : François |Parent : 1696()] – (.NVIDIA Corporation – NVIDIA Settings.) – (7.17.13.4195) = C:Program FilesNVIDIA CorporationDisplaynvtray.exe
    14244 | [Owner : François |Parent : 3320()] – (.NVIDIA Corporation – NVIDIA GeForce Experience Backend.) – (12.4.55.0) = C:Program Files (x86)NVIDIA CorporationUpdate CoreNvBackend.exe
    8916 | [Owner : François |Parent : 13992(explorer.exe)] – (.Realtek Semiconductor – Gestionnaire audio HD Realtek.) – (1.0.0.993) = C:Program FilesRealtekAudioHDARAVCpl64.exe
    600 | [Owner : François |Parent : 13992(explorer.exe)] – (.Microsoft Corporation – Processus hôte Windows (Rundll32).) – (10.0.10586.0) = C:WindowsSysWOW64rundll32.exe
    8700 | [Owner : François |Parent : 12388()] – (.Samsung Electronics Co., Ltd. – Kies TrayAgent Application.) – (2.0.0.145) = C:Program Files (x86)SamsungKiesKiesTrayAgent.exe
    4384 | [Owner : François |Parent : 12388()] – (.Oracle Corporation – Java Update Scheduler.) – (2.8.91.14) = C:Program Files (x86)Common FilesJavaJava Updatejusched.exe
    11228 | [Owner : Système |Parent : 10784(winlogon.exe)] – (.Microsoft Corporation – Usermode Font Driver Host.) – (10.0.10586.420) = C:WindowsSystem32fontdrvhost.exe
    13300 | [Owner : François |Parent : 796(services.exe)] – (.Microsoft Corporation – Processus hôte pour les services Windows.) – (10.0.10586.0) = C:WindowsSystem32svchost.exe
    11296 | [Owner : François |Parent : 892(svchost.exe)] – (.Microsoft Corporation – Application Frame Host.) – (10.0.10586.0) = C:WindowsSystem32ApplicationFrameHost.exe
    1788 | [Owner : François |Parent : 892(svchost.exe)] – (.Microsoft Corporation – Paramètres.) – (10.0.10586.11) = C:WindowsImmersiveControlPanelSystemSettings.exe
    12680 | [Owner : François |Parent : 892(svchost.exe)] – (.Microsoft Corporation – LockAppHost.) – (10.0.10586.494) = C:WindowsSystem32LockAppHost.exe
    9828 | [Owner : François |Parent : 892(svchost.exe)] – (. – .) – (0.0.0.0) = C:WindowsSystemAppsMicrosoft.LockApp_cw5n1h2txyewyLockApp.exe
    13500 | [Owner : François |Parent : 6432(AvastUI.exe)] – (.Microsoft Corporation – Chargeur CTF.) – (10.0.10586.0) = C:WindowsSysWOW64ctfmon.exe


    | Tasks

    Suppression : Ad-Aware Update (Daily 1)
    Suppression : Ad-Aware Update (Daily 2)
    Suppression : Ad-Aware Update (Daily 3)
    Suppression : Ad-Aware Update (Daily 4)
    Suppression : Driver Booster SkipUAC (François)
    Suppression : ReclaimerUpdateXML_François
    Suppression : ReimageUpdater
    Suppression : RunAsStdUser Task
    Suppression : SmartDefrag_AutoAnalyze
    Suppression : SmartDefrag_Startup
    Suppression : SmartDefrag_Update


    | Services


    | AppCertDlls | AppInit_DLLs


    | DNSapi.dll

    C:WINDOWSSystem32dnsapi.dll : driversetchosts
    C:WINDOWSSysWOW64dnsapi.dll : driversetchosts


    | Hosts


    | SafeBoot


    | Winsock


    | DNS


    | Registre

    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerDOMStorage1net.com
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerEdpDomStorage1net.com
    Suppression : HKLM64SOFTWAREClasses.musx : FinaleNotation
    Suppression : HKLM64SOFTWAREClassesASCExtMenu.CExtMenu : CExtMenu Class
    Suppression : HKLM64SOFTWAREClassesASCExtMenu.CExtMenu.1 : CExtMenu Class
    Suppression : HKLM64SOFTWAREClassesBearShare :
    Suppression : HKLM64SOFTWAREClassesDownload.SwInstaller : SwInstaller Class
    Suppression : HKLM64SOFTWAREClassesDownload.SwInstaller.1 : SwInstaller Class
    Suppression : HKLM64SOFTWAREClassesDownload.SwInstallerAttributes.1 : SwInstallerAttributes Class
    Suppression : HKLM64SOFTWAREClassesProd.cap :
    Suppression : HKLM64SOFTWAREClassesShopperReports.CntntDic : ShopperReports
    Suppression : HKLM64SOFTWAREClassesShopperReports.CntntDic.1 : ShopperReports
    Suppression : HKLM64SOFTWAREClassesShopperReports.CntntDisp.1 : ShopperReports
    Suppression : HKLM64SOFTWAREClassesSwdir.SwInstallerCtl : SwInstallerCtl Class
    Suppression : HKLM64SOFTWAREClassesSwdir.SwInstallerCtl.1 : SwInstallerCtl Class
    Suppression : HKLM64SOFTWAREClassesToolbar.ToolbarHelperObject : ToolbarHelperObject Class
    Suppression : HKLM64SOFTWAREClassesToolbar.ToolbarHelperObject.1 : ToolbarHelperObject Class
    Suppression : HKLM64SOFTWAREClassesViProtocol.ViProtocolOLE : ViProtocolOLE Class
    Suppression : HKLM64SOFTWAREClassesViProtocol.ViProtocolOLE.1 : ViProtocolOLE Class
    Suppression : HKLM64SOFTWAREClassesApplicationsregistrybooster2011_01NET.exe
    Suppression : HKLM64SOFTWAREClassesAppIDBRNstIE.DLL
    Suppression : HKLM64SOFTWAREClassesAppIDprotector_dll.DLL
    Suppression : HKLM64SOFTWAREClassesAppIDREI_AxControl.DLL
    Suppression : HKLM64SOFTWAREClassesAppIDScriptHelper.EXE
    Suppression : HKLM64SOFTWAREClassesAppIDViProtocol.DLL
    Suppression : HKLM64SOFTWAREClassesAppID{1FDFF5A2-7BB1-48E1-8081-7236812B12B2} : ViProtocol
    Suppression : HKLM64SOFTWAREClassesAppID{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A} : REI_AxControl
    Suppression : HKLM64SOFTWAREClassesAppID{96FBC13C-8214-4100-88E0-FF74D7A1CB4D} : protector_dll
    Suppression : HKLM64SOFTWAREClassesAppID{C41C967C-1BD4-404c-8393-A34F94156193} : BearShare
    Suppression : HKLMSOFTWAREWow6432NodeClassesDownload.SwInstallerAttributes : SwInstallerAttributes Class
    Suppression : HKLMSOFTWAREWow6432NodeClassesShopperReports.CntntDisp : ShopperReports
    Suppression : HKLMSOFTWAREWow6432NodeClassesApplicationsregistrybooster2012.exe
    Suppression : HKUS-1-5-18SOFTWAREMicrosoftInternet ExplorerInternetRegistryREGISTRYUSERS-1-5-18SOFTWAREStartNow Toolbar
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREMicrosoftInternet ExplorerInternetRegistryREGISTRYUSERS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREIB Updater
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREMicrosoftInternet ExplorerInternetRegistryREGISTRYUSERS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREStartNow Toolbar
    Suppression : HKLM64SOFTWAREClassesCLSID{2803063F-4B8D-4dc6-8874-D1802487FE2D}
    Suppression : HKLMSOFTWAREWow6432NodeClassesCLSID{28310B1B-B757-4b87-9AFA-8E5FAF126156}
    Suppression : HKLMSOFTWAREWow6432NodeClassesCLSID{4DB2E429-B905-479A-9EFF-F7CBD9FD52DE}
    Suppression : HKLMSOFTWAREWow6432NodeClassesCLSID{79D2A12A-1AEC-4124-9733-F4E0DE751578} : C:PROGRA~2WIC4A1~1MESSEN~1vvpltfrm.dll #
    Suppression : HKLMSOFTWAREWow6432NodeClassesCLSID{B658800C-F66E-4EF3-AB85-6C0C227862A9}
    Suppression : HKLMSOFTWAREWow6432NodeClassesCLSID{CC7BD6F1-565C-47ce-A5BB-9C935E77B59D}
    Suppression : HKLMSOFTWAREWow6432NodeClassesCLSID{CFC16189-8A92-4a29-A940-60248385F426}
    Suppression : HKLMSOFTWAREWow6432NodeClassesCLSID{D21ED08F-6B88-45EC-A71C-6BD453B561D0}
    Suppression : HKLM64SOFTWAREClassesTypeLib{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36} : # C:Program FilesReimageReimage RepairREI_Axcontrol.dll
    Suppression : HKLM64SOFTWAREClassesInterface{9BB31AD8-5DB2-459E-A901-DEA536F23BA4} : {FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
    Suppression : HKLM64SoftwareClassesWOW6432NodeInterface{9BB31AD8-5DB2-459E-A901-DEA536F23BA4} : {FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
    Suppression : HKLM64SOFTWAREClassesInterface{BD51A48E-EB5F-4454-8774-EF962DF64546} : {FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
    Suppression : HKLM64SoftwareClassesWOW6432NodeInterface{BD51A48E-EB5F-4454-8774-EF962DF64546} : {FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
    Suppression : HKLMSYSTEMCurrentControlSetServicesEventlogApplicationDriver Detective
    Suppression : HKLMSYSTEMCurrentControlSetServicesEventlogApplicationSavingsbullFilterService64
    Suppression : [HKLM64SOFTWAREmozillaFirefoxExtensions]~[{336D0C35-8A85-403a-B9D2-65C292C39087}] : C:Program FilesIB UpdaterFirefox
    Suppression : [HKLMSOFTWAREWow6432NodemozillaFirefoxExtensions]~[{336D0C35-8A85-403a-B9D2-65C292C39087}] : C:Program FilesIB UpdaterFirefox
    Suppression : [HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREMicrosoftWindows NTCurrentVersionAppCompatFlagsCompatibility AssistantStore]~[C:Program Files (x86)MyFree Codec1.0b betauninstall.exe]
    Suppression : HKUS-1-5-18SOFTWAREAppDataLow{1146AC44-2F03-4431-B4FD-889BC837521F} : ///%
    Suppression : HKUS-1-5-18SOFTWAREAppDataLowSoftwaremedia enhance
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREBackgroundContainer
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREBoxore
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREcacaoweb
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREDriverTuner
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREFissaSearch
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREfreezefrogsa
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREGlarySoft
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREIminent.com
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWARELiveSupport
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREOfferBox
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREParetoLogic
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREReimage
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREShopperReports3
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWARESmartTweak
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWARESpeedMaxPc
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREsystweak
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWARETutorials
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREYahooPartnerToolbar
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREAppDataLowSoftwareBackgroundContainerV3
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREAppDataLowSoftwarePriceGong
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREAppDataLowSoftwareSavings Bull
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREAppDataLowSoftwareSmartBar
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SoftwareLocal AppWizard-Generated ApplicationsReimage – Windows Problem Relief.
    Suppression : HKLM64SOFTWAREIB Updater
    Suppression : HKLM64SOFTWARELevelQualityWatcher
    Suppression : HKLM64SOFTWAREReimage
    Suppression : HKLM64SOFTWARESavings Bull
    Suppression : HKLM64SoftwareClientsStartMenuInternetBeamrise.KSG6LPYWODZVW5HZSNJARERTYE
    Suppression : HKLMSOFTWAREWow6432NodeBoxore
    Suppression : HKLMSOFTWAREWow6432NodeDigital River
    Suppression : HKLMSOFTWAREWow6432NodeFREEzeFrog
    Suppression : HKLMSOFTWAREWow6432NodeGlarySoft
    Suppression : HKLMSOFTWAREWow6432NodeIB Updater
    Suppression : HKLMSOFTWAREWow6432NodeOfferBox
    Suppression : HKLMSOFTWAREWow6432NodeParetoLogic
    Suppression : HKLMSOFTWAREWow6432NodeSearchquMediabarTb
    Suppression : HKLMSOFTWAREWow6432NodeShopperReports3
    Suppression : HKLMSOFTWAREWow6432NodeSoftonic_France_FF
    Suppression : HKLMSOFTWAREWow6432NodeSpeedMaxPc
    Suppression : HKLMSOFTWAREWow6432NodesupTab
    Suppression : HKLMSOFTWAREWow6432NodeSystweak
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREBearShare
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREInstallCore
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWARENico Mak Computing
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREreimagerepair
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWARETelecharger
    Suppression : HKLM64SOFTWARESavingsBull Filter


    | AdsFix | g3n-h@ckm@n | 3_29.07.2016.2


    Vista | 7 | 8 | 8.1 | 10 – 32/64 bits


    Start 19:02:50 – 29/07/2016

    Mis a jour le : 29/07/2016 | 08.40 par g3n-h@ckm@n
    Contact : https://www.sosvirus.net
    Assistance : https://www.sosvirus.net/aide-nettoyage-pc/
    Feedbacks : https://www.sosvirus.net/aide-nettoyage-pc/
    Facebook : https://www.facebook.com/AdsFixAntiAdware
    C:UsersFrançoisDesktopAdsFix.exe
    Boot: Normal boot
    [François (Administrator)] – [FRANÇOIS-PC] – (france [040C])
    SID = S-1-5-21-2383793236-4229707838-1608618944-1001 || [4672616ec3a76f6973205e5e]
    PC : Packard Bell – MCP73PV – To Be Filled By O.E.M.
    Processor : X64 – 2600 – Pentium(R) Dual-Core CPU E5300 @ 2.60GHz
    Bios : American Megatrends Inc. – 09/07/2009 – V.P01-A1
    CoreTemp : 36 C

    CPU #1 value:37 %
    CPU #2 value:24 %
    Total Overall CPU Usage value:31 %

    Système : Windows 10 Home (64 bits) Core
    Memoire RAM = Total (MB) : 4194 | Libre (MB) : 2350
    Pagefile = Total (MB) : 8388 | Libre (MB) : 6397
    Virtuelle = Total (MB) : 4194 | Libre (MB) : 3904

    C: -> [Fixed] | [Packard Bell] | Total : 141.45 Go | Free : 66.63 Go -> NTFS [SATA]
    D: -> [Fixed] | [Travail Personnel] | Total : 141.54 Go | Free : 90.68 Go -> NTFS [SATA]
    E: -> [CDROM] | [Audio CD]
    J: -> [Fixed] | [] | Total : 0.28 Go | Free : 0.28 Go -> FAT [USB]

    Registre sauvegardé , pour restaurer : Cliquer sur Options & Restaurer le registre (C:AdsFixSaveRegistry [29.07.2016 @ 19_02_46]) ou un element
    Restauration de fichiers ou dossiers supprimes par erreur : Cliquer sur Options & Restaurer Fichiers ou dossiers, Selectionner un element >> “Restaurer”


    | Mises a jour Windows


    | Navigateurs

    IE : 11.0.10586.494 (© Microsoft Corporation. Tous droits réservés.)
    FF : 47.0.1.6018 (©Firefox and Mozilla Developers; available under the MPL 2 license.)
    GC : 51.0.2704.103 (Copyright 2015 Google Inc. All rights reserved.)
    MS-Edge : 11.0.10586.494 (© Microsoft Corporation. All rights reserved.)


    | Security (atcav : 0)

    FW :
    WMI : OK
    WU: Windows Update Service [Manual(3)] = non en cours
    AS: Windows Defender [Manual(3)] = non en cours
    FW: Windows FireWall Service [Auto(2)] = en cours
    WMI: Windows Management Instrumentation (System Information) [Auto(2)] = en cours


    | FlashPlayer

    ActiveX : 22.0.0.209
    Plugin : 18.0.0.209
    Plugin : 22.0.0.209


    | Processes closed

    12736 | [Owner : SERVICE LOCAL |Parent : 460(svchost.exe)] – (.Microsoft Corporation – Device Association Framework Provider Host.) – (10.0.10586.0) = C:WindowsSystem32dasHost.exe
    12836 | [Owner : LogonSessionId_0_191269317 |Parent : 796(services.exe)] – (.Microsoft Corporation – Application sous-système spouleur.) – (10.0.10586.122) = C:WindowsSystem32spoolsv.exe
    6880 | [Owner : François |Parent : 892(svchost.exe)] – (.Microsoft Corporation – Runtime Broker.) – (10.0.10586.0) = C:WindowsSystem32RuntimeBroker.exe
    7728 | [Owner : François |Parent : 796(services.exe)] – (.Microsoft Corporation – Processus hôte pour les services Windows.) – (10.0.10586.0) = C:WindowsSystem32svchost.exe
    13432 | [Owner : LogonSessionId_0_191696962 |Parent : 796(services.exe)] – (.Microsoft Corporation – Message Queuing Service.) – (10.0.10586.0) = C:WindowsSystem32mqsvc.exe
    8896 | [Owner : LogonSessionId_0_191698610 |Parent : 796(services.exe)] – (.Microsoft Corporation – Service de la passerelle de la couche Application.) – (10.0.10586.0) = C:WindowsSystem32alg.exe
    860 | [Owner : SERVICE LOCAL |Parent : 460(svchost.exe)] – (.Microsoft Corporation – Windows Driver Foundation – Processus hôte de l’infrastructure de pilotes en mode utilisateur.) – (10.0.10586.0) = C:WindowsSystem32WUDFHost.exe
    13600 | [Owner : Système |Parent : 796(services.exe)] – (.NVIDIA Corporation – NVIDIA Driver Helper Service, Version 341.95.) – (8.17.13.4195) = C:WindowsSystem32nvvsvc.exe
    4924 | [Owner : Système |Parent : 13600()] – (.NVIDIA Corporation – NVIDIA User Experience Driver Component.) – (8.17.13.4195) = C:Program FilesNVIDIA CorporationDisplaynvxdsync.exe
    6612 | [Owner : Système |Parent : 13600()] – (.NVIDIA Corporation – NVIDIA Driver Helper Service, Version 341.95.) – (8.17.13.4195) = C:WindowsSystem32nvvsvc.exe
    13488 | [Owner : François |Parent : 892(svchost.exe)] – (.Microsoft Corporation – Application Frame Host.) – (10.0.10586.0) = C:WindowsSystem32ApplicationFrameHost.exe
    13324 | [Owner : François |Parent : 4924()] – (.NVIDIA Corporation – NVIDIA Settings.) – (7.17.13.4195) = C:Program FilesNVIDIA CorporationDisplaynvtray.exe
    12780 | [Owner : François |Parent : 13324()] – (.NVIDIA Corporation – NVIDIA GeForce Experience Backend.) – (12.4.55.0) = C:Program Files (x86)NVIDIA CorporationUpdate CoreNvBackend.exe
    12916 | [Owner : François |Parent : 892(svchost.exe)] – (.Microsoft Corporation – Paramètres.) – (10.0.10586.11) = C:WindowsImmersiveControlPanelSystemSettings.exe


    | Tasks


    | Services


    | AppCertDlls | AppInit_DLLs


    | DNSapi.dll

    C:WINDOWSSystem32dnsapi.dll : driversetchosts
    C:WINDOWSSysWOW64dnsapi.dll : driversetchosts


    | Hosts


    | SafeBoot


    | Winsock


    | DNS


    | Registre

    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerDOMStoragesolvusoft.com
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerEdpDomStoragesolvusoft.com
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREMicrosoftInternet ExplorerInternetRegistryREGISTRYUSERS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREWajam
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREDriverTuner_Init
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWARESoftonic
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWARETutoTag
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREAppDataLowSoftwaresearchqutoolbar
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREAppDataLowSoftwareSoftonic_France_FF
    Suppression : HKLMSOFTWAREWow6432Nodefree_soft_to_day
    Suppression : HKLMSOFTWAREWow6432Nodesweet-pageSoftware
    Suppression : HKLMSOFTWAREWow6432NodeTaronja


    | AdsFix | g3n-h@ckm@n | 3_29.07.2016.2


    Vista | 7 | 8 | 8.1 | 10 – 32/64 bits


    Start 14:33:06 – 31/07/2016

    Mis a jour le : 29/07/2016 | 08.40 par g3n-h@ckm@n
    Contact : https://www.sosvirus.net
    Assistance : https://www.sosvirus.net/aide-nettoyage-pc/
    Feedbacks : https://www.sosvirus.net/aide-nettoyage-pc/
    Facebook : https://www.facebook.com/AdsFixAntiAdware
    C:UsersFrançoisDesktopAdsFix.exe
    Boot: Normal boot
    [François (Administrator)] – [FRANÇOIS-PC] – (FRANCE [040C])
    SID = S-1-5-21-2383793236-4229707838-1608618944-1001 || [4672616ec3a76f6973205e5e]
    PC : Packard Bell – MCP73PV – To Be Filled By O.E.M.
    Processor : X64 – 2600 – Pentium(R) Dual-Core CPU E5300 @ 2.60GHz
    Bios : American Megatrends Inc. – 09/07/2009 – V.P01-A1
    CoreTemp : 21 C

    CPU #1 value:25 %
    CPU #2 value:6 %
    Total Overall CPU Usage value:15 %

    Système : Windows 10 Home (64 bits) Core
    Memoire RAM = Total (MB) : 4194 | Libre (MB) : 2619
    Pagefile = Total (MB) : 8388 | Libre (MB) : 6619
    Virtuelle = Total (MB) : 4194 | Libre (MB) : 3904

    C: -> [Fixed] | [Packard Bell] | Total : 141.45 Go | Free : 67.23 Go -> NTFS [SATA]
    D: -> [Fixed] | [Travail Personnel] | Total : 141.54 Go | Free : 91.84 Go -> NTFS [SATA]
    E: -> [CDROM] | [Audio CD]

    Registre sauvegardé , pour restaurer : Cliquer sur Options & Restaurer le registre (C:AdsFixSaveRegistry [31.07.2016 @ 14_33_03]) ou un element
    Restauration de fichiers ou dossiers supprimes par erreur : Cliquer sur Options & Restaurer Fichiers ou dossiers, Selectionner un element >> “Restaurer”


    | Mises a jour Windows


    | Navigateurs

    IE : 11.0.10586.494 (© Microsoft Corporation. Tous droits réservés.)
    FF : 47.0.1.6018 (©Firefox and Mozilla Developers; available under the MPL 2 license.)
    GC : 51.0.2704.103 (Copyright 2015 Google Inc. All rights reserved.)
    MS-Edge : 11.0.10586.494 (© Microsoft Corporation. All rights reserved.)


    | Security (atcav : 3)

    AV : Avast Antivirus Enabled
    AS : Avast Antivirus Enabled
    FW :
    WMI : OK
    WU: Windows Update Service [Manual(3)] = non en cours
    AS: Windows Defender [Manual(3)] = non en cours
    FW: Windows FireWall Service [Auto(2)] = en cours
    WMI: Windows Management Instrumentation (System Information) [Auto(2)] = en cours


    | FlashPlayer

    ActiveX : 22.0.0.209
    Plugin : 18.0.0.209
    Plugin : 22.0.0.209


    | Processes closed

    1088 | [Owner : |Parent : 804(services.exe)] – (.NVIDIA Corporation – NVIDIA Driver Helper Service, Version 341.95.) – (8.17.13.4195) = C:WindowsSystem32nvvsvc.exe
    1272 | [Owner : |Parent : 1088()] – (.NVIDIA Corporation – NVIDIA User Experience Driver Component.) – (8.17.13.4195) = C:Program FilesNVIDIA CorporationDisplaynvxdsync.exe
    1280 | [Owner : |Parent : 1088()] – (.NVIDIA Corporation – NVIDIA Driver Helper Service, Version 341.95.) – (8.17.13.4195) = C:WindowsSystem32nvvsvc.exe
    1780 | [Owner : Système |Parent : 492(svchost.exe)] – (.Microsoft Corporation – Infrastructure d’extensibilité pour les services réseau Windows sans fil 802.11.) – (10.0.10586.0) = C:WindowsSystem32wlanext.exe
    1584 | [Owner : SERVICE LOCAL |Parent : 492(svchost.exe)] – (.Microsoft Corporation – Device Association Framework Provider Host.) – (10.0.10586.0) = C:WindowsSystem32dasHost.exe
    2080 | [Owner : LogonSessionId_0_162226 |Parent : 804(services.exe)] – (.Microsoft Corporation – Application sous-système spouleur.) – (10.0.10586.122) = C:WindowsSystem32spoolsv.exe
    2368 | [Owner : Système |Parent : 804(services.exe)] – (.Microsoft Corporation – Microsoft Application Virtualization Virtual Service Agent.) – (4.6.0.551) = C:Program Files (x86)Microsoft Application Virtualization Clientsftvsa.exe
    2392 | [Owner : Système |Parent : 804(services.exe)] – (.Acer Incorporated – Global Registration Service.) – (1.0.2001.0) = C:Program Files (x86)Packard BellRegistrationGregHSRW.exe
    2460 | [Owner : LogonSessionId_0_171474 |Parent : 804(services.exe)] – (.Microsoft Corporation – Message Queuing Service.) – (10.0.10586.0) = C:WindowsSystem32mqsvc.exe
    2484 | [Owner : Système |Parent : 804(services.exe)] – (. – .) – (0.0.0.0) = C:Program Files (x86)RealUpdateServiceRealPlayerUpdateSvc.exe
    2800 | [Owner : Système |Parent : 804(services.exe)] – (. – NVIDIA Corporation.) – (2.2.0.7308) = C:Program FilesNVIDIA CorporationNetworkAccessManagerbin32nSvcIp.exe
    2876 | [Owner : Système |Parent : 804(services.exe)] – (.DEVGURU Co., LTD. – MSS CS Connectivity Service.) – (2.5.5.0) = C:Program Files (x86)SamsungUSB Drivers25_escapeconnss_conn_service.exe
    3016 | [Owner : Système |Parent : 804(services.exe)] – (.Acer – Acer Update Service.) – (1.0.0.6) = C:Program FilesPackard BellPackard Bell UpdaterUpdaterService.exe
    3060 | [Owner : Système |Parent : 804(services.exe)] – (.Microsoft Corporation – Microsoft Application Virtualization Client Service.) – (4.6.0.551) = C:Program Files (x86)Microsoft Application Virtualization Clientsftlist.exe
    3084 | [Owner : Système |Parent : 804(services.exe)] – (.IObit – Product Updater.) – (2.1.6.2358) = C:Program Files (x86)IObitLiveUpdateLiveUpdate.exe
    4060 | [Owner : Système |Parent : 804(services.exe)] – (.Microsoft Corporation – Microsoft Office Client Virtualization Service .) – (14.0.4514.1004) = C:Program Files (x86)Common FilesMicrosoft SharedVirtualization HandlerCVHSVC.EXE
    4484 | [Owner : François |Parent : 604(svchost.exe)] – (.Microsoft Corporation – Processus hôte pour Tâches Windows.) – (10.0.10586.0) = C:WindowsSystem32taskhostw.exe
    4496 | [Owner : François |Parent : 604(svchost.exe)] – (.Microsoft Corporation – IPoint.exe.) – (2.3.188.0) = C:Program FilesMicrosoft Mouse and Keyboard Centeripoint.exe
    4620 | [Owner : François |Parent : 604(svchost.exe)] – (.Microsoft Corporation – IType.exe.) – (2.3.188.0) = C:Program FilesMicrosoft Mouse and Keyboard Centeritype.exe
    4708 | [Owner : LogonSessionId_0_277526 |Parent : 804(services.exe)] – (.Microsoft Corporation – Service de la passerelle de la couche Application.) – (10.0.10586.0) = C:WindowsSystem32alg.exe
    1984 | [Owner : François |Parent : 1272()] – (.NVIDIA Corporation – NVIDIA Settings.) – (7.17.13.4195) = C:Program FilesNVIDIA CorporationDisplaynvtray.exe
    4460 | [Owner : François |Parent : 1984()] – (.NVIDIA Corporation – NVIDIA GeForce Experience Backend.) – (12.4.55.0) = C:Program Files (x86)NVIDIA CorporationUpdate CoreNvBackend.exe
    5720 | [Owner : François |Parent : 3904(explorer.exe)] – (.Realtek Semiconductor – Gestionnaire audio HD Realtek.) – (1.0.0.993) = C:Program FilesRealtekAudioHDARAVCpl64.exe
    1820 | [Owner : François |Parent : 3904(explorer.exe)] – (.Microsoft Corporation – Processus hôte Windows (Rundll32).) – (10.0.10586.0) = C:WindowsSysWOW64rundll32.exe
    5260 | [Owner : François |Parent : 5828()] – (.AVAST Software – avast! Antivirus.) – (12.2.3126.2) = C:Program FilesAVAST SoftwareAvastavastui.exe.146995084950001
    4852 | [Owner : François |Parent : 5828()] – (.Samsung Electronics Co., Ltd. – Kies TrayAgent Application.) – (2.0.0.145) = C:Program Files (x86)SamsungKiesKiesTrayAgent.exe
    4572 | [Owner : François |Parent : 5828()] – (.Oracle Corporation – Java Update Scheduler.) – (2.8.101.13) = C:Program Files (x86)Common FilesJavaJava Updatejusched.exe
    3616 | [Owner : Système |Parent : 772(winlogon.exe)] – (.Microsoft Corporation – Usermode Font Driver Host.) – (10.0.10586.420) = C:WindowsSystem32fontdrvhost.exe
    2076 | [Owner : François |Parent : 804(services.exe)] – (.Microsoft Corporation – Processus hôte pour les services Windows.) – (10.0.10586.0) = C:WindowsSystem32svchost.exe
    696 | [Owner : François |Parent : 900(svchost.exe)] – (.Microsoft Corporation – Application Frame Host.) – (10.0.10586.0) = C:WindowsSystem32ApplicationFrameHost.exe


    | Tasks


    | Services


    | AdsFix | g3n-h@ckm@n | 3_29.07.2016.2


    Vista | 7 | 8 | 8.1 | 10 – 32/64 bits


    Start 15:18:25 – 31/07/2016

    Mis a jour le : 29/07/2016 | 08.40 par g3n-h@ckm@n
    Contact : https://www.sosvirus.net
    Assistance : https://www.sosvirus.net/aide-nettoyage-pc/
    Feedbacks : https://www.sosvirus.net/aide-nettoyage-pc/
    Facebook : https://www.facebook.com/AdsFixAntiAdware
    C:UsersFrançoisDesktopAdsFix.exe
    Boot: Normal boot
    [François (Administrator)] – [FRANÇOIS-PC] – (FRANCE [040C])
    SID = S-1-5-21-2383793236-4229707838-1608618944-1001 || [4672616ec3a76f6973205e5e]
    PC : Packard Bell – MCP73PV – To Be Filled By O.E.M.
    Processor : X64 – 2600 – Pentium(R) Dual-Core CPU E5300 @ 2.60GHz
    Bios : American Megatrends Inc. – 09/07/2009 – V.P01-A1
    CoreTemp : 21 C

    CPU #1 value:1 %
    CPU #2 value:1 %
    Total Overall CPU Usage value:1 %

    Système : Windows 10 Home (64 bits) Core
    Memoire RAM = Total (MB) : 4194 | Libre (MB) : 2525
    Pagefile = Total (MB) : 8388 | Libre (MB) : 6627
    Virtuelle = Total (MB) : 4194 | Libre (MB) : 3904

    C: -> [Fixed] | [Packard Bell] | Total : 141.45 Go | Free : 66.55 Go -> NTFS [SATA]
    D: -> [Fixed] | [Travail Personnel] | Total : 141.54 Go | Free : 91.84 Go -> NTFS [SATA]
    E: -> [CDROM] | [Audio CD]
    J: -> [Fixed] | [] | Total : 0.28 Go | Free : 0.28 Go -> FAT [USB]

    Registre sauvegardé , pour restaurer : Cliquer sur Options & Restaurer le registre (C:AdsFixSaveRegistry [31.07.2016 @ 15_18_22]) ou un element
    Restauration de fichiers ou dossiers supprimes par erreur : Cliquer sur Options & Restaurer Fichiers ou dossiers, Selectionner un element >> “Restaurer”


    | Mises a jour Windows


    | Navigateurs

    IE : 11.0.10586.494 (© Microsoft Corporation. Tous droits réservés.)
    FF : 47.0.1.6018 (©Firefox and Mozilla Developers; available under the MPL 2 license.)
    GC : 51.0.2704.103 (Copyright 2015 Google Inc. All rights reserved.)
    MS-Edge : 11.0.10586.494 (© Microsoft Corporation. All rights reserved.)


    | Security (atcav : 3)

    AV : Avast Antivirus Enabled
    AS : Avast Antivirus Enabled
    FW :
    WMI : OK
    WU: Windows Update Service [Manual(3)] = non en cours
    AS: Windows Defender [Manual(3)] = non en cours
    FW: Windows FireWall Service [Auto(2)] = en cours
    WMI: Windows Management Instrumentation (System Information) [Auto(2)] = en cours


    | FlashPlayer

    ActiveX : 22.0.0.209
    Plugin : 18.0.0.209
    Plugin : 22.0.0.209


    | Processes closed

    5588 | [Owner : SERVICE LOCAL |Parent : 492(svchost.exe)] – (.Microsoft Corporation – Device Association Framework Provider Host.) – (10.0.10586.0) = C:WindowsSystem32dasHost.exe
    988 | [Owner : LogonSessionId_0_9787023 |Parent : 804(services.exe)] – (.Microsoft Corporation – Application sous-système spouleur.) – (10.0.10586.122) = C:WindowsSystem32spoolsv.exe
    5708 | [Owner : François |Parent : 804(services.exe)] – (.Microsoft Corporation – Processus hôte pour les services Windows.) – (10.0.10586.0) = C:WindowsSystem32svchost.exe
    2800 | [Owner : LogonSessionId_0_10018449 |Parent : 804(services.exe)] – (.Microsoft Corporation – Message Queuing Service.) – (10.0.10586.0) = C:WindowsSystem32mqsvc.exe
    1332 | [Owner : LogonSessionId_0_10019190 |Parent : 804(services.exe)] – (.Microsoft Corporation – Service de la passerelle de la couche Application.) – (10.0.10586.0) = C:WindowsSystem32alg.exe
    3724 | [Owner : SERVICE LOCAL |Parent : 492(svchost.exe)] – (.Microsoft Corporation – Windows Driver Foundation – Processus hôte de l’infrastructure de pilotes en mode utilisateur.) – (10.0.10586.0) = C:WindowsSystem32WUDFHost.exe
    3368 | [Owner : Système |Parent : 772(winlogon.exe)] – (.Microsoft Corporation – Usermode Font Driver Host.) – (10.0.10586.420) = C:WindowsSystem32fontdrvhost.exe


    | Tasks


    | Services


    | AppCertDlls | AppInit_DLLs


    | DNSapi.dll

    C:WINDOWSSystem32dnsapi.dll : driversetchosts
    C:WINDOWSSysWOW64dnsapi.dll : driversetchosts


    | Hosts


    | SafeBoot


    | Winsock


    | DNS


    | Registre

    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerDOMStoragesoundcloud.com
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerEdpDomStoragesoundcloud.com


    | AdsFix | g3n-h@ckm@n | 3_29.07.2016.2


    Vista | 7 | 8 | 8.1 | 10 – 32/64 bits


    Start 11:46:15 – 07/08/2016

    Mis a jour le : 29/07/2016 | 08.40 par g3n-h@ckm@n
    Contact : https://www.sosvirus.net
    Assistance : https://www.sosvirus.net/aide-nettoyage-pc/
    Feedbacks : https://www.sosvirus.net/aide-nettoyage-pc/
    Facebook : https://www.facebook.com/AdsFixAntiAdware
    C:UsersFrançoisDesktopAdsFix.exe
    Boot: Normal boot
    [François (Administrator)] – [FRANÇOIS-PC] – (france [040C])
    SID = S-1-5-21-2383793236-4229707838-1608618944-1001 || [4672616ec3a76f6973205e5e]
    PC : Packard Bell – MCP73PV – To Be Filled By O.E.M.
    Processor : X64 – 2600 – Pentium(R) Dual-Core CPU E5300 @ 2.60GHz
    Bios : American Megatrends Inc. – 09/07/2009 – V.P01-A1
    CoreTemp : 19 C

    CPU #1 value:7 %
    CPU #2 value:1 %
    Total Overall CPU Usage value:4 %

    Système : Windows 10 Home (64 bits) Core
    Memoire RAM = Total (MB) : 4194 | Libre (MB) : 2755
    Pagefile = Total (MB) : 8388 | Libre (MB) : 6779
    Virtuelle = Total (MB) : 4194 | Libre (MB) : 3900

    C: -> [Fixed] | [Packard Bell] | Total : 141.45 Go | Free : 64 Go -> NTFS [SATA]
    D: -> [Fixed] | [Travail Personnel] | Total : 141.54 Go | Free : 90.54 Go -> NTFS [SATA]
    E: -> [CDROM] | [030904_0950] | Total : 0.23 Go | Free : 0 Go -> CDFS [SATA]
    J: -> [Fixed] | [] | Total : 0.28 Go | Free : 0.28 Go -> FAT [USB]

    Registre sauvegardé , pour restaurer : Cliquer sur Options & Restaurer le registre (C:AdsFixSaveRegistry [07.08.2016 @ 11_46_13]) ou un element
    Restauration de fichiers ou dossiers supprimes par erreur : Cliquer sur Options & Restaurer Fichiers ou dossiers, Selectionner un element >> “Restaurer”


    | Mises a jour Windows


    | Navigateurs

    IE : 11.0.10586.494 (© Microsoft Corporation. Tous droits réservés.)
    FF : 47.0.1.6018 (©Firefox and Mozilla Developers; available under the MPL 2 license.)
    GC : 51.0.2704.103 (Copyright 2015 Google Inc. All rights reserved.)
    MS-Edge : 11.0.10586.494 (© Microsoft Corporation. All rights reserved.)


    | Security (atcav : 0)

    FW :
    WMI : OK
    WU: Windows Update Service [Manual(3)] = non en cours
    AS: Windows Defender [Manual(3)] = non en cours
    FW: Windows FireWall Service [Auto(2)] = en cours
    WMI: Windows Management Instrumentation (System Information) [Auto(2)] = en cours


    | FlashPlayer

    ActiveX : 22.0.0.209
    Plugin : 18.0.0.209
    Plugin : 22.0.0.209


    | Processes closed

    1100 | [Owner : |Parent : 784(services.exe)] – (.NVIDIA Corporation – NVIDIA Driver Helper Service, Version 341.95.) – (8.17.13.4195) = C:WindowsSystem32nvvsvc.exe
    1412 | [Owner : |Parent : 1100()] – (.NVIDIA Corporation – NVIDIA User Experience Driver Component.) – (8.17.13.4195) = C:Program FilesNVIDIA CorporationDisplaynvxdsync.exe
    1420 | [Owner : |Parent : 1100()] – (.NVIDIA Corporation – NVIDIA Driver Helper Service, Version 341.95.) – (8.17.13.4195) = C:WindowsSystem32nvvsvc.exe
    1912 | [Owner : Système |Parent : 696(svchost.exe)] – (.Microsoft Corporation – Infrastructure d’extensibilité pour les services réseau Windows sans fil 802.11.) – (10.0.10586.0) = C:WindowsSystem32wlanext.exe
    1644 | [Owner : LogonSessionId_0_142479 |Parent : 784(services.exe)] – (.Microsoft Corporation – Application sous-système spouleur.) – (10.0.10586.122) = C:WindowsSystem32spoolsv.exe
    2300 | [Owner : SERVICE LOCAL |Parent : 696(svchost.exe)] – (.Microsoft Corporation – Device Association Framework Provider Host.) – (10.0.10586.0) = C:WindowsSystem32dasHost.exe
    2320 | [Owner : Système |Parent : 784(services.exe)] – (.Acer Incorporated – Global Registration Service.) – (1.0.2001.0) = C:Program Files (x86)Packard BellRegistrationGregHSRW.exe
    2328 | [Owner : Système |Parent : 784(services.exe)] – (.IObit – Product Updater.) – (2.1.6.2358) = C:Program Files (x86)IObitLiveUpdateLiveUpdate.exe
    2336 | [Owner : Système |Parent : 784(services.exe)] – (.Microsoft Corporation – Microsoft Application Virtualization Virtual Service Agent.) – (4.6.0.551) = C:Program Files (x86)Microsoft Application Virtualization Clientsftvsa.exe
    2712 | [Owner : LogonSessionId_0_196794 |Parent : 784(services.exe)] – (.Microsoft Corporation – Message Queuing Service.) – (10.0.10586.0) = C:WindowsSystem32mqsvc.exe
    2864 | [Owner : Système |Parent : 784(services.exe)] – (. – .) – (0.0.0.0) = C:Program Files (x86)RealUpdateServiceRealPlayerUpdateSvc.exe
    2432 | [Owner : Système |Parent : 784(services.exe)] – (.DEVGURU Co., LTD. – MSS CS Connectivity Service.) – (2.5.5.0) = C:Program Files (x86)SamsungUSB Drivers25_escapeconnss_conn_service.exe
    2904 | [Owner : Système |Parent : 784(services.exe)] – (.Acer – Acer Update Service.) – (1.0.0.6) = C:Program FilesPackard BellPackard Bell UpdaterUpdaterService.exe
    3088 | [Owner : Système |Parent : 784(services.exe)] – (. – NVIDIA Corporation.) – (2.2.0.7308) = C:Program FilesNVIDIA CorporationNetworkAccessManagerbin32nSvcIp.exe
    3460 | [Owner : Système |Parent : 784(services.exe)] – (.Microsoft Corporation – Microsoft Application Virtualization Client Service.) – (4.6.0.551) = C:Program Files (x86)Microsoft Application Virtualization Clientsftlist.exe
    4648 | [Owner : Système |Parent : 784(services.exe)] – (.Microsoft Corporation – Microsoft Office Client Virtualization Service .) – (14.0.4514.1004) = C:Program Files (x86)Common FilesMicrosoft SharedVirtualization HandlerCVHSVC.EXE
    4360 | [Owner : François |Parent : 608(svchost.exe)] – (.Microsoft Corporation – Processus hôte pour Tâches Windows.) – (10.0.10586.0) = C:WindowsSystem32taskhostw.exe
    4708 | [Owner : LogonSessionId_0_308077 |Parent : 784(services.exe)] – (.Microsoft Corporation – Service de la passerelle de la couche Application.) – (10.0.10586.0) = C:WindowsSystem32alg.exe
    2708 | [Owner : François |Parent : 608(svchost.exe)] – (.Microsoft Corporation – IPoint.exe.) – (2.3.188.0) = C:Program FilesMicrosoft Mouse and Keyboard Centeripoint.exe
    5056 | [Owner : François |Parent : 608(svchost.exe)] – (.Microsoft Corporation – IType.exe.) – (2.3.188.0) = C:Program FilesMicrosoft Mouse and Keyboard Centeritype.exe
    1576 | [Owner : François |Parent : 1412()] – (.NVIDIA Corporation – NVIDIA Settings.) – (7.17.13.4195) = C:Program FilesNVIDIA CorporationDisplaynvtray.exe
    4164 | [Owner : François |Parent : 1576()] – (.NVIDIA Corporation – NVIDIA GeForce Experience Backend.) – (12.4.55.0) = C:Program Files (x86)NVIDIA CorporationUpdate CoreNvBackend.exe
    4516 | [Owner : François |Parent : 3592(explorer.exe)] – (.Realtek Semiconductor – Gestionnaire audio HD Realtek.) – (1.0.0.993) = C:Program FilesRealtekAudioHDARAVCpl64.exe
    868 | [Owner : François |Parent : 3592(explorer.exe)] – (.Microsoft Corporation – Processus hôte Windows (Rundll32).) – (10.0.10586.0) = C:WindowsSysWOW64rundll32.exe
    4908 | [Owner : François |Parent : 5504()] – (.Samsung Electronics Co., Ltd. – Kies TrayAgent Application.) – (2.0.0.145) = C:Program Files (x86)SamsungKiesKiesTrayAgent.exe
    5556 | [Owner : François |Parent : 5504()] – (.Oracle Corporation – Java Update Scheduler.) – (2.8.101.13) = C:Program Files (x86)Common FilesJavaJava Updatejusched.exe
    5972 | [Owner : Système |Parent : 764(winlogon.exe)] – (.Microsoft Corporation – Usermode Font Driver Host.) – (10.0.10586.420) = C:WindowsSystem32fontdrvhost.exe
    5148 | [Owner : François |Parent : 784(services.exe)] – (.Microsoft Corporation – Processus hôte pour les services Windows.) – (10.0.10586.0) = C:WindowsSystem32svchost.exe
    3168 | [Owner : François |Parent : 892(svchost.exe)] – (.Microsoft Corporation – Application Frame Host.) – (10.0.10586.0) = C:WindowsSystem32ApplicationFrameHost.exe
    3324 | [Owner : SERVICE LOCAL |Parent : 696(svchost.exe)] – (.Microsoft Corporation – Windows Driver Foundation – Processus hôte de l’infrastructure de pilotes en mode utilisateur.) – (10.0.10586.0) = C:WindowsSystem32WUDFHost.exe
    5976 | [Owner : François |Parent : 4916(avastui.exe)] – (.Microsoft Corporation – Chargeur CTF.) – (10.0.10586.0) = C:WindowsSysWOW64ctfmon.exe


    | Tasks


    | Services


    | AppCertDlls | AppInit_DLLs


    | DNSapi.dll

    C:WINDOWSSystem32dnsapi.dll : driversetchosts
    C:WINDOWSSysWOW64dnsapi.dll : driversetchosts


    | Hosts


    | SafeBoot


    | Winsock


    | DNS


    | Registre

    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerDOMStoragew.soundcloud.com
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerEdpDomStoragew.soundcloud.com
    Suppression : HKLM64SOFTWAREClasses.musx : FinaleNotation
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREAppDataLowSoftwareBackgroundContainerV3


    | AdsFix | g3n-h@ckm@n | 3_16.08.2016.1


    Vista | 7 | 8 | 8.1 | 10 – 32/64 bits


    Start 15:16:48 – 17/08/2016

    Mis a jour le : 16/08/2016 | 14.35 par g3n-h@ckm@n
    Contact : https://www.sosvirus.net
    Assistance : https://www.sosvirus.net/aide-nettoyage-pc/
    Feedbacks : https://www.sosvirus.net/aide-nettoyage-pc/
    Facebook : https://www.facebook.com/AdsFixAntiAdware
    C:UsersFrançoisDownloadsadsfix_3_16.08.2016.1.exe
    Boot: Normal boot
    [François (Administrator)] – [FRANÇOIS-PC] – (FRANCE [040C])
    SID = S-1-5-21-2383793236-4229707838-1608618944-1001 || [4672616ec3a76f6973205e5e]
    PC : Packard Bell – MCP73PV – To Be Filled By O.E.M.
    Processor : X64 – 2600 – Pentium(R) Dual-Core CPU E5300 @ 2.60GHz
    Bios : American Megatrends Inc. – 09/07/2009 – V.P01-A1
    CoreTemp : 21 C

    CPU #1 value:62 %
    CPU #2 value:38 %
    Total Overall CPU Usage value:50 %

    Système : Windows 10 Home (64 bits) Core
    Memoire RAM = Total (MB) : 4194 | Libre (MB) : 2502
    Pagefile = Total (MB) : 8388 | Libre (MB) : 6586
    Virtuelle = Total (MB) : 4194 | Libre (MB) : 3903

    C: -> [Fixed] | [Packard Bell] | Total : 141.45 Go | Free : 56.15 Go -> NTFS [SATA]
    D: -> [Fixed] | [Travail Personnel] | Total : 141.54 Go | Free : 90.9 Go -> NTFS [SATA]

    Registre sauvegardé , pour restaurer : Cliquer sur Options & Restaurer le registre (C:AdsFixSaveRegistry [17.08.2016 @ 15_16_45]) ou un element
    Restauration de fichiers ou dossiers supprimes par erreur : Cliquer sur Options & Restaurer Fichiers ou dossiers, Selectionner un element >> “Restaurer”


    | Mises a jour Windows


    | Navigateurs

    IE : 11.0.10586.545 (© Microsoft Corporation. Tous droits réservés.)
    FF : 47.0.1.6018 (©Firefox and Mozilla Developers; available under the MPL 2 license.)
    GC : 52.0.2743.116 (Copyright 2016 Google Inc. All rights reserved.)
    MS-Edge : 11.0.10586.545 (© Microsoft Corporation. All rights reserved.)


    | Security (atcav : 0)

    FW :
    WMI : OK
    WU: Windows Update Service [Manual(3)] = non en cours
    AS: Windows Defender [Manual(3)] = non en cours
    FW: Windows FireWall Service [Auto(2)] = en cours
    WMI: Windows Management Instrumentation (System Information) [Auto(2)] = en cours


    | FlashPlayer

    ActiveX : 22.0.0.209
    Plugin : 18.0.0.209
    Plugin : 22.0.0.209


    | Processes closed

    1196 | [Owner : SERVICE LOCAL |Parent : 604(svchost.exe)] – (.Microsoft Corporation – Windows Driver Foundation – Processus hôte de l’infrastructure de pilotes en mode utilisateur.) – (10.0.10586.0) = C:WindowsSystem32WUDFHost.exe
    1280 | [Owner : Système |Parent : 800(services.exe)] – (.NVIDIA Corporation – NVIDIA Driver Helper Service, Version 341.95.) – (8.17.13.4195) = C:WindowsSystem32nvvsvc.exe
    1336 | [Owner : Système |Parent : 1280(nvvsvc.exe)] – (.NVIDIA Corporation – NVIDIA User Experience Driver Component.) – (8.17.13.4195) = C:Program FilesNVIDIA CorporationDisplaynvxdsync.exe
    1344 | [Owner : Système |Parent : 1280()] – (.NVIDIA Corporation – NVIDIA Driver Helper Service, Version 341.95.) – (8.17.13.4195) = C:WindowsSystem32nvvsvc.exe
    1992 | [Owner : Système |Parent : 604(svchost.exe)] – (.Microsoft Corporation – Infrastructure d’extensibilité pour les services réseau Windows sans fil 802.11.) – (10.0.10586.0) = C:WindowsSystem32wlanext.exe
    1752 | [Owner : Système |Parent : 800(services.exe)] – (.Microsoft Corporation – Application sous-système spouleur.) – (10.0.10586.122) = C:WindowsSystem32spoolsv.exe
    2180 | [Owner : SERVICE LOCAL |Parent : 604(svchost.exe)] – (.Microsoft Corporation – Device Association Framework Provider Host.) – (10.0.10586.0) = C:WindowsSystem32dasHost.exe
    2348 | [Owner : Système |Parent : 800(services.exe)] – (.Acer Incorporated – Global Registration Service.) – (1.0.2001.0) = C:Program Files (x86)Packard BellRegistrationGregHSRW.exe
    2356 | [Owner : Système |Parent : 800(services.exe)] – (.Microsoft Corporation – Microsoft Application Virtualization Virtual Service Agent.) – (4.6.0.551) = C:Program Files (x86)Microsoft Application Virtualization Clientsftvsa.exe
    2436 | [Owner : Système |Parent : 800(services.exe)] – (.IObit – Product Updater.) – (2.1.6.2358) = C:Program Files (x86)IObitLiveUpdateLiveUpdate.exe
    2508 | [Owner : Système |Parent : 800(services.exe)] – (. – .) – (0.0.0.0) = C:Program Files (x86)RealUpdateServiceRealPlayerUpdateSvc.exe
    2520 | [Owner : SERVICE RÉSEAU |Parent : 800(services.exe)] – (.Microsoft Corporation – Message Queuing Service.) – (10.0.10586.0) = C:WindowsSystem32mqsvc.exe
    2596 | [Owner : Système |Parent : 800(services.exe)] – (.Acer – Acer Update Service.) – (1.0.0.6) = C:Program FilesPackard BellPackard Bell UpdaterUpdaterService.exe
    2796 | [Owner : Système |Parent : 800(services.exe)] – (.DEVGURU Co., LTD. – MSS CS Connectivity Service.) – (2.5.5.0) = C:Program Files (x86)SamsungUSB Drivers25_escapeconnss_conn_service.exe
    3080 | [Owner : Système |Parent : 800(services.exe)] – (. – NVIDIA Corporation.) – (2.2.0.7308) = C:Program FilesNVIDIA CorporationNetworkAccessManagerbin32nSvcIp.exe
    3096 | [Owner : Système |Parent : 800(services.exe)] – (.Microsoft Corporation – Microsoft Application Virtualization Client Service.) – (4.6.0.551) = C:Program Files (x86)Microsoft Application Virtualization Clientsftlist.exe
    4048 | [Owner : SERVICE LOCAL |Parent : 800(services.exe)] – (.Microsoft Corporation – Service de la passerelle de la couche Application.) – (10.0.10586.0) = C:WindowsSystem32alg.exe
    4396 | [Owner : Système |Parent : 800(services.exe)] – (.Microsoft Corporation – Microsoft Office Client Virtualization Service .) – (14.0.4514.1004) = C:Program Files (x86)Common FilesMicrosoft SharedVirtualization HandlerCVHSVC.EXE
    5212 | [Owner : François |Parent : 8(svchost.exe)] – (.Microsoft Corporation – Processus hôte pour Tâches Windows.) – (10.0.10586.0) = C:WindowsSystem32taskhostw.exe
    5296 | [Owner : François |Parent : 8(svchost.exe)] – (.Microsoft Corporation – IPoint.exe.) – (2.3.188.0) = C:Program FilesMicrosoft Mouse and Keyboard Centeripoint.exe
    5464 | [Owner : François |Parent : 8(svchost.exe)] – (.Microsoft Corporation – IType.exe.) – (2.3.188.0) = C:Program FilesMicrosoft Mouse and Keyboard Centeritype.exe
    5632 | [Owner : François |Parent : 1336()] – (.NVIDIA Corporation – NVIDIA Settings.) – (7.17.13.4195) = C:Program FilesNVIDIA CorporationDisplaynvtray.exe
    4296 | [Owner : François |Parent : 5632(nvtray.exe)] – (.NVIDIA Corporation – NVIDIA GeForce Experience Backend.) – (12.4.55.0) = C:Program Files (x86)NVIDIA CorporationUpdate CoreNvBackend.exe
    6116 | [Owner : François |Parent : 4380(explorer.exe)] – (.Realtek Semiconductor – Gestionnaire audio HD Realtek.) – (1.0.0.993) = C:Program FilesRealtekAudioHDARAVCpl64.exe
    5488 | [Owner : François |Parent : 4380(explorer.exe)] – (.Microsoft Corporation – Processus hôte Windows (Rundll32).) – (10.0.10586.0) = C:WindowsSysWOW64rundll32.exe
    5420 | [Owner : François |Parent : 2860()] – (.Samsung Electronics Co., Ltd. – Kies TrayAgent Application.) – (2.0.0.145) = C:Program Files (x86)SamsungKiesKiesTrayAgent.exe
    4708 | [Owner : François |Parent : 2860()] – (.Oracle Corporation – Java Update Scheduler.) – (2.8.101.13) = C:Program Files (x86)Common FilesJavaJava Updatejusched.exe
    5268 | [Owner : Système |Parent : 760(winlogon.exe)] – (.Microsoft Corporation – Usermode Font Driver Host.) – (10.0.10586.420) = C:WindowsSystem32fontdrvhost.exe
    3612 | [Owner : François |Parent : 800(services.exe)] – (.Microsoft Corporation – Processus hôte pour les services Windows.) – (10.0.10586.0) = C:WindowsSystem32svchost.exe
    5320 | [Owner : François |Parent : 892(svchost.exe)] – (.Microsoft Corporation – Application Frame Host.) – (10.0.10586.0) = C:WindowsSystem32ApplicationFrameHost.exe
    6196 | [Owner : Système |Parent : 4844()] – (.Microsoft Corporation – Wimfltr v2 extractor.) – (10.0.10586.11) = C:WindowsSystem32wimserv.exe
    3484 | [Owner : François |Parent : 2068()] – (.Piriform Ltd – CCleaner.) – (5.21.0.5700) = C:Program Files (x86)CCleanerCCleaner64.exe
    6540 | [Owner : François |Parent : 5888(avastui.exe)] – (.Microsoft Corporation – Chargeur CTF.) – (10.0.10586.0) = C:WindowsSysWOW64ctfmon.exe
    3800 | [Owner : François |Parent : 3704()] – (.Microsoft Corporation – Internet Low-Mic Utility Tool.) – (11.0.10586.0) = C:Program FilesInternet Explorerielowutil.exe


    | Tasks


    | Services

    Suppression : AdvancedSystemCareService8 : C:Program Files (x86)IObitAdvanced SystemCare 8ASCService.exe


    | AppCertDlls | AppInit_DLLs


    | DNSapi.dll

    C:WINDOWSSystem32dnsapi.dll : driversetchosts
    C:WINDOWSSysWOW64dnsapi.dll : driversetchosts


    | Hosts


    | SafeBoot


    | Winsock


    | DNS


    | Registre

    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerDOMStoragewww.01net.com
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerDOMStoragewww.solvusoft.com
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerEdpDomStoragewww.01net.com
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREClassesLocal SettingsSoftwareMicrosoftWindowsCurrentVersionAppContainerStoragemicrosoft.microsoftedge_8wekyb3d8bbweChildren01Internet ExplorerEdpDomStoragewww.solvusoft.com
    Suppression : HKLM64SOFTWAREClasses.musx : FinaleNotation
    Suppression : HKLMSOFTWAREWow6432NodeClassesCLSID{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} : C:PROGRA~2IObitSURFIN~1BROWER~1ASCPLU~1.DLL #
    Suppression : [HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREMicrosoftWindows NTCurrentVersionAppCompatFlagsCompatibility AssistantStore]~[C:UsersFrançoisDownloadsiobit-malware-fighter-4-2-0-2544.exe]
    Suppression : [HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREMicrosoftWindows NTCurrentVersionAppCompatFlagsCompatibility AssistantStore]~[C:Program Files (x86)IObitSmart DefragSmartDefrag.exe]
    Suppression : HKUS-1-5-18SOFTWAREIObit
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREIObit
    Suppression : HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREAppDataLowSoftwareBackgroundContainerV3
    Suppression : HKLMSOFTWAREWow6432NodeIObit
    Suppression : HKLMSOFTWAREWow6432NodeMircrosoft
    Suppression : HKLMSOFTWAREWow6432Node{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
    Suppression : [HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREMicrosoftInternet ExplorerSearchScopes]~[DefaultScope] : {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
    Suppression : [HKLM64SOFTWAREMicrosoftInternet ExplorerSearchScopes]~[DefaultScope]
    Suppression : [HKLMSOFTWAREWow6432NodeMicrosoftInternet ExplorerSearchScopes]~[DefaultScope]

  • Photo du profil de g3n-h@ckm@ng3n-h@ckm@n
    Admin bbPress
    Post count: 8314
    • Télécharge MalwareBytes Anti-Malware
    • Procède à l’installation de celui çi
    • Décocher “Activer l’essai gratuit de Malwarebytes Anti-Malware Premium”
    • Malwarebytes va ce mettre à jour, laisse faire cette mise à jour,
    • Clique sur l’onglet « Paramètres » puis sur l’onglet « Détection et Protection« , Coche la case « Rechercher les Rootkits«
    • Clique sur l’onglet « Analyse » puis sur « Lancer l’analyse«

    • Une fois l’examen terminé vérifie que toutes les détections sont bien cochées, puis clique sur [Supprimer la sélection]
    • Si Malwarebytes te demande de redémarrer ton PC, clique sur “Oui“,
    • Au redémarrage de ton PC, relance Malwarebytes
    • Ouvre l’onglet “Historique” puis “Journaux de l’application
    • Fais un double-clic sur le dernier Scan Log en date (celui du haut)
    • En bas clique sur [Exporter]-> sélectionne “Fichier texte (*.txt)
    • Dans l’explorateur sélectionne le bureau, nomme-le mbam.txt, clique sur [Enregistrer]
    • Héberge le rapport mbam.txt sur http://cjoint.com puis donne le lien obtenu.
  • Photo du profil de lecopaindaccordlecopaindaccord
    Participant
    Post count: 13

    j’ai suivi vos recommandations et voici le lien
    http://www.cjoint.com/c/FHuoZ6HAgIM
    très cordialement

  • Photo du profil de g3n-h@ckm@ng3n-h@ckm@n
    Admin bbPress
    Post count: 8314

    bonjour tu peux refaire un rapport quickdiag hébergé sur cjoint.com comme tu as fait au début ?

  • Photo du profil de lecopaindaccordlecopaindaccord
    Participant
    Post count: 13

    Bonjour,

    Voilà qui est fait !

    le lien : http://www.cjoint.com/c/FHvnrkFnILM

    Bon après-midi !

    Cordialement

  • Photo du profil de g3n-h@ckm@ng3n-h@ckm@n
    Admin bbPress
    Post count: 8314

    bonjour

    désactive avast puis

    copie ce texte en entier :



    Kill::
    FireFox.exe
    Plugincontainer.exe
    FlashPlayerPlugin_22_0_0_209.exe

    Key::
    [HKLMSoftwareWOW6432NodeMicrosoftWindowsCurrentVersionRun]|"Tutorials"
    [HKLMSOFTWAREMicrosoftShared ToolsMSConfigstartupregAdobe Reader Speed Launcher]
    [HKLMSOFTWAREMicrosoftWindows NTCurrentVersionImage File execution Optionsijplmsvc.exe]
    [HKLMSOFTWAREMicrosoftWindows NTCurrentVersionImage File execution Optionsijplmui.exe]
    [HKLMSOFTWAREWOW6432NodeMicrosoftWindows NTCurrentVersionImage File execution Optionsijplmsvc.exe]
    [HKLMSOFTWAREWOW6432NodeMicrosoftWindows NTCurrentVersionImage File execution Optionsijplmui.exe]
    [HKLMSOFTWAREWOW6432NodeMicrosoftInternet ExplorerSearchScopes{c1d89ae7-449d-4929-b24b-fded04adbe06}]
    [HKLMSOFTWAREWOW6432NodeMicrosoftInternet ExplorerSearchScopes{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}]
    [HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREMicrosoftInternet ExplorerSearchScopes{4A7B638C-0518-4EAA-A377-E52DF75465B7}]
    [HKLMSOFTWAREWOW6432NodeMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{D7FD0502-927A-EFA5-58C3-F56C7488AE6E}]
    [HKLMSOFTWAREWOW6432NodeMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
    [HKLMSOFTWAREWOW6432NodeMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{95B7759C-8C7F-4BF1-B163-73684A933233}]
    [HKLMSOFTWAREWOW6432NodeMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{6d6b212b-2245-4898-8b16-9a11b81ff9e1}]
    [HKLMSOFTWAREWOW6432NodeMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{2FAC19AB-1068-1CBD-2F7F-1C754EC1BB01}]
    [HKLMSOFTWAREWOW6432NodeMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{3049C3E9-B461-4BC5-8870-4C09146192CA}]
    [HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
    [HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{3049C3E9-B461-4BC5-8870-4C09146192CA}]
    [HKLMSoftwareWOW6432NodemozillaFirefoxExtensions]|"avg@toolbar"
    [HKUS-1-5-21-2383793236-4229707838-1608618944-1001SoftwareConduit]
    [HKUS-1-5-21-2383793236-4229707838-1608618944-1001Softwareilivid]
    [HKUS-1-5-21-2383793236-4229707838-1608618944-1001SoftwareLocky]
    [HKUS-1-5-21-2383793236-4229707838-1608618944-1001SoftwareqW4VNdh11owob]
    [HKUS-1-5-21-2383793236-4229707838-1608618944-1001SoftwareSmart Soft]
    [HKUS-1-5-21-2383793236-4229707838-1608618944-1001SoftwareSoftplicity]
    [HKLMSYSTEMCurrentControlSetServicessharedaccessParametersFirewallPolicyFirewallRules]|"TCP Query User{39141D39-7569-46F7-AC5E-B8383189E98B}C:usersfrançoisappdataroamingcacaowebcacaoweb.exe"
    [HKLMSYSTEMCurrentControlSetServicessharedaccessParametersFirewallPolicyFirewallRules]|"UDP Query User{66E34F23-FEC6-4B25-8EA0-8DED634C8963}C:usersfrançoisappdataroamingcacaowebcacaoweb.exe"
    [HKLMSYSTEMCurrentControlSetServicessharedaccessParametersFirewallPolicyFirewallRules]|"TCP Query User{C227338B-1A44-4CDA-9D68-CB7D9561619C}C:usersfrançoisappdataroamingcacaowebcacaoweb.exe"
    [HKLMSYSTEMCurrentControlSetServicessharedaccessParametersFirewallPolicyFirewallRules]|"UDP Query User{C3AF7853-6487-4429-AB8B-EA8EA25772EC}C:usersfrançoisappdataroamingcacaowebcacaoweb.exe"
    [HKLMSOFTWAREMicrosoftwindowsCurrentVersionUninstall{27CC6AB1-E72B-4179-AF1A-EAE507EBAF52}}_is1]
    [HKLMSOFTWAREWOW6432NodeMicrosoftwindowsCurrentVersionUninstallDriver Booster_is1]
    [HKLMSOFTWAREWOW6432NodeMicrosoftwindowsCurrentVersionUninstallIObit Surfing Protection_is1]

    File::
    C:ProgramDataMicrosoftWindowsStart MenuProgramsQuickTime
    C:UsersFrançoisAppDataLocalGoogleChromeUser DataDefaultextensionsbbmegnmpleoagolcnjnejdacakedpcgd
    C:UsersFrançoisAppDataLocalGoogleChromeUser DataProfile 1extensionskhopjgpjdhgdfjfcdbajjfpiadfamigc
    C:UsersFrançoisAppDataLocalGoogleChromeUser DataProfile 1extensionspflphaooapbgpeakohlggbpidpppgdff
    C:UsersFrançoisAppDataLocalGoogleChromeUser DataProfile 1extensionsbepbmhgboaologfdajaanbcjmnhjmhfn
    C:UsersDefaultAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultExtensionsffxtlbr@mysearchdial.com
    C:UsersDefaultAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultExtensions{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}
    C:UsersDefault UserAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultExtensionsffxtlbr@mysearchdial.com
    C:UsersDefault UserAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultExtensions{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}
    C:UsersDefaultAppPoolAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultExtensionsffxtlbr@mysearchdial.com
    C:UsersDefaultAppPoolAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultExtensions{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}
    C:16417ca8e3716f4738dca028318f74
    C:3a024cf7b74f913cb8f0db
    C:4a52db8f309d404b1ec986
    C:4e0523c951e483972cedc28c4f7f34
    C:a0ab7f2b42566efa10
    C:f5a7e69962996ca65676f664ca88
    C:user.js
    C:WINDOWSIObit
    C:WINDOWSInstaller14a6e0.msi
    C:UsersFrançoisAppDataRoamingCrazyLoader
    C:UsersFrançoisAppDataRoamingDriverCure
    C:UsersFrançoisAppDataRoamingFissaSearch
    C:UsersFrançoisAppDataRoamingFREEzeFrog
    C:UsersFrançoisAppDataRoamingIObit
    C:UsersFrançoisAppDataRoamingPerformerSoft
    C:UsersFrançoisAppDataRoamingParetoLogic
    C:UsersFrançoisAppDataRoamingProductData
    C:UsersFrançoisAppDataRoamingSoftplicity
    C:UsersFrançoisAppDataRoamingSolvusoft
    C:UsersFrançoisAppDataRoamingSpeedMaxPc
    C:UsersFrançoisAppDataLocalAVG Secure Search
    C:UsersFrançoisAppDataRoamingMicrosoftWindowsStart MenuProgramsRadio Fr Solo 2.1
    C:UserswangzhisongAppDataLocalMobogenie
    C:ProgramData30cf6be1a4c11654
    C:ProgramDataAVG Secure Search
    C:ProgramDataParetoLogic
    C:ProgramDataPC Drivers HeadQuarters
    C:ProgramDataProductData
    C:ProgramDataReimage Protector
    C:ProgramDataSpeedMaxPc
    C:ProgramDataYoutubeBookmark
    C:Program Files (x86)FREEzeFrog
    C:Program Files (x86)IObit
    C:Program Files (x86)Softonic_France_FF
    C:Program Files (x86)Uptodown
    C:Program FilesRadio_Fr_solo-Install.exe
    C:Program Files (x86)Common FilesAVG Secure Search
    C:Program Files (x86)Common FilesIObit
    C:Program Files (x86)Common FilesSpeedMaxPc
    C:WINDOWSTasksRegCure Pro_sch_49580760-BD86-11E3-AB91-002511A8D373.job
    C:WINDOWSSystem32TasksRegCure Pro_sch_49580760-BD86-11E3-AB91-002511A8D373

    Line::
    C:UsersDefaultAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultPrefs.js|user_pref("browser.startup.homepage", "http://start.mysearchdial.com/?f=1&a=tele0103&cd=2XzuyEtN2Y1L1QzutDtDzz0E0FtByBzy0ByDtAyDyD0E0FtDtN0D0Tzu0SyByDyBtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=2080541238&ir=");|user_pref("browser.startup.homepage", "https://www.google.com");
    C:UsersDefaultAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultPrefs.js|user_pref("browser.search.selectedEngine", "Mysearchdial");
    C:UsersDefaultAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultPrefs.js|user_pref("browser.search.defaultenginename", "Mysearchdial");
    C:UsersDefault UserAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultPrefs.js|user_pref("browser.startup.homepage", "http://start.mysearchdial.com/?f=1&a=tele0103&cd=2XzuyEtN2Y1L1QzutDtDzz0E0FtByBzy0ByDtAyDyD0E0FtDtN0D0Tzu0SyByDyBtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=2080541238&ir=");
    C:UsersDefault UserAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultPrefs.js|user_pref("browser.search.selectedEngine", "Mysearchdial");
    C:UsersDefault UserAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultPrefs.js|user_pref("browser.search.defaultenginename", "Mysearchdial");
    C:UsersDefaultAppPoolAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultPrefs.js|user_pref("browser.startup.homepage", "http://start.mysearchdial.com/?f=1&a=tele0103&cd=2XzuyEtN2Y1L1QzutDtDzz0E0FtByBzy0ByDtAyDyD0E0FtDtN0D0Tzu0SyByDyBtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=2080541238&ir=");
    C:UsersDefaultAppPoolAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultPrefs.js|user_pref("browser.search.selectedEngine", "Mysearchdial");
    C:UsersDefaultAppPoolAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultPrefs.js|user_pref("browser.search.defaultenginename", "Mysearchdial");
    C:UsersFrançoisAppDataRoamingMozillaFirefoxProfilesikezwjm2.defaultPrefs.js|user_pref("extensions.avg@toolbar.install-event-fired", true);

    ADS::
    @C:ProgramDataTemp

    Clean::
    yes

    Lance Quickdiag et clique sur le “S” en haut à droite de l’interface

    une fenetre doit s’ouvrir avec exactement ce texte ( ne colle rien c’est pris en charge ) , ensuite tu refermes après vérification ( si il n’a pas la meme chose dans la fenetre que ce qui est dans le cadre au dessus , tu referme cette fenetre , te reselectionnes tout le texte et tu recliques sur le “S” ))

    Ensuite clique sur le bouton “Script”

    l’outil va travailler et presque instantanément une nouvelle fenêtre va s’ouvrir avec les résultats , tu copies tout ce qu’il y a dans cette nouvelle fenetre et tu colles le contenu dans ta réponse.

    une fois envoyé tu peux tout fermer de l’outil

  • Photo du profil de lecopaindaccordlecopaindaccord
    Participant
    Post count: 13

    bonjour,

    voilà le résultat ! bonne lecture !

    cordialement


    QuickScript | g3n-h@ckm@n | 2_17.07.2016.1



    XP | Vista | 7 | 8 | 8.1 | 10 – 32/64 bits


    – Start 22/08/2016 13:45:12

    Updated 17/07/2016 | 08.15 by g3n-h@ckm@n
    Contact : https://www.sosvirus.net/

    Time Zone : (UTC+01:00) Bruxelles, Copenhague, Madrid, Paris
    [François (Administrator)] – [FRANÇOIS-PC] (S-1-5-21-2383793236-4229707838-1608618944-1001)

    System: Microsoft Windows 10 Famille – – (10.0.10586) – BuildType: Multiprocessor Free – OSLanguage: 1036 (040c)
    System: AutoReboot: True – DebugFilePath: %SystemRoot%MEMORY.DMP – KernelDumpOnly: False – OverwriteExistingDebugFile: True – WriteDebugInfo: True – WriteToSystemLog: True
    Boot : Microsoft Windows 10 Famille|C:WINDOWS|DeviceHarddisk0Partition3
    Boot : Normal boot
    PC: imedia S3720 – Packard Bell – IdNumber: PVU330200694000A852700 – UUID: A8112500-73D3-0920-0927-092107000000
    Processor : X64 – 2600 Mhz – Pentium(R) Dual-Core CPU E5300 @ 2.60GHz
    Default System BIOS – – American Megatrends Inc. – S/N: PVU330200694000A852700 – P01-A1 – ACRSYS – 20090907
    CoreTemp : 18 Celsius


    | Script

    Process FireFox.exe : Not Found !
    Process Plugincontainer.exe : Not Found !
    Process FlashPlayerPlugin_22_0_0_209.exe : Not Found !
    Value : [HKLMSoftwareWOW6432NodeMicrosoftWindowsCurrentVersionRun]~[Tutorials] Deleted Successfully
    Key : [HKLMSOFTWAREMicrosoftShared ToolsMSConfigstartupregAdobe Reader Speed Launcher] Deleted Successfully
    Key : [HKLMSOFTWAREMicrosoftWindows NTCurrentVersionImage File execution Optionsijplmsvc.exe] Deleted Successfully
    Key : [HKLMSOFTWAREMicrosoftWindows NTCurrentVersionImage File execution Optionsijplmui.exe] Deleted Successfully
    Key : [HKLMSOFTWAREWOW6432NodeMicrosoftWindows NTCurrentVersionImage File execution Optionsijplmsvc.exe] Not Found !
    Key : [HKLMSOFTWAREWOW6432NodeMicrosoftWindows NTCurrentVersionImage File execution Optionsijplmui.exe ] Not Found !
    Key : [HKLMSOFTWAREWOW6432NodeMicrosoftInternet ExplorerSearchScopes{c1d89ae7-449d-4929-b24b-fded04adbe06}] Deleted Successfully
    Key : [HKLMSOFTWAREWOW6432NodeMicrosoftInternet ExplorerSearchScopes{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}] Deleted Successfully
    Key : [HKUS-1-5-21-2383793236-4229707838-1608618944-1001SOFTWAREMicrosoftInternet ExplorerSearchScopes{4A7B638C-0518-4EAA-A377-E52DF75465B7} ] Not Found !
    Key : [HKLMSOFTWAREWOW6432NodeMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{D7FD0502-927A-EFA5-58C3-F56C7488AE6E}] Deleted Successfully
    Key : [HKLMSOFTWAREWOW6432NodeMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{9421DD08-935F-4701-A9CA-22DF90AC4EA6}] Deleted Successfully
    Key : [HKLMSOFTWAREWOW6432NodeMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{95B7759C-8C7F-4BF1-B163-73684A933233}] Deleted Successfully
    Key : [HKLMSOFTWAREWOW6432NodeMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{6d6b212b-2245-4898-8b16-9a11b81ff9e1}] Deleted Successfully
    Key : [HKLMSOFTWAREWOW6432NodeMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{2FAC19AB-1068-1CBD-2F7F-1C754EC1BB01} ] Not Found !
    Key : [HKLMSOFTWAREWOW6432NodeMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{3049C3E9-B461-4BC5-8870-4C09146192CA}] Deleted Successfully
    Key : [HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{9421DD08-935F-4701-A9CA-22DF90AC4EA6}] Deleted Successfully
    Key : [HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{3049C3E9-B461-4BC5-8870-4C09146192CA}] Deleted Successfully
    Value : [HKLMSoftwareWOW6432NodemozillaFirefoxExtensions]~[avg@toolbar] Deleted Successfully
    Key : [HKUS-1-5-21-2383793236-4229707838-1608618944-1001SoftwareConduit] Deleted Successfully
    Key : [HKUS-1-5-21-2383793236-4229707838-1608618944-1001Softwareilivid] Deleted Successfully
    Key : [HKUS-1-5-21-2383793236-4229707838-1608618944-1001SoftwareLocky] Deleted Successfully
    Key : [HKUS-1-5-21-2383793236-4229707838-1608618944-1001SoftwareqW4VNdh11owob] Deleted Successfully
    Key : [HKUS-1-5-21-2383793236-4229707838-1608618944-1001SoftwareSmart Soft] Deleted Successfully
    Key : [HKUS-1-5-21-2383793236-4229707838-1608618944-1001SoftwareSoftplicity] Deleted Successfully
    Value : [HKLMSYSTEMCurrentControlSetServicessharedaccessParametersFirewallPolicyFirewallRules]~[TCP Query User{39141D39-7569-46F7-AC5E-B8383189E98B}C:usersfrançoisappdataroamingcacaowebcacaoweb.exe] Deleted Successfully
    Value : [HKLMSYSTEMCurrentControlSetServicessharedaccessParametersFirewallPolicyFirewallRules]~[UDP Query User{66E34F23-FEC6-4B25-8EA0-8DED634C8963}C:usersfrançoisappdataroamingcacaowebcacaoweb.exe] Deleted Successfully
    Value : [HKLMSYSTEMCurrentControlSetServicessharedaccessParametersFirewallPolicyFirewallRules]~[TCP Query User{C227338B-1A44-4CDA-9D68-CB7D9561619C}C:usersfrançoisappdataroamingcacaowebcacaoweb.exe] Deleted Successfully
    Value : [HKLMSYSTEMCurrentControlSetServicessharedaccessParametersFirewallPolicyFirewallRules]~[UDP Query User{C3AF7853-6487-4429-AB8B-EA8EA25772EC}C:usersfrançoisappdataroamingcacaowebcacaoweb.exe] Deleted Successfully
    Key : [HKLMSOFTWAREMicrosoftwindowsCurrentVersionUninstall{27CC6AB1-E72B-4179-AF1A-EAE507EBAF52}}_is1] Deleted Successfully
    Key : [HKLMSOFTWAREWOW6432NodeMicrosoftwindowsCurrentVersionUninstallDriver Booster_is1] Deleted Successfully
    Key : [HKLMSOFTWAREWOW6432NodeMicrosoftwindowsCurrentVersionUninstallIObit Surfing Protection_is1] Deleted Successfully
    C:ProgramDataMicrosoftWindowsStart MenuProgramsQuickTime Moved Successfully
    C:UsersFrançoisAppDataLocalGoogleChromeUser DataDefaultextensionsbbmegnmpleoagolcnjnejdacakedpcgd Moved Successfully
    C:UsersFrançoisAppDataLocalGoogleChromeUser DataProfile 1extensionskhopjgpjdhgdfjfcdbajjfpiadfamigc Moved Successfully
    C:UsersFrançoisAppDataLocalGoogleChromeUser DataProfile 1extensionspflphaooapbgpeakohlggbpidpppgdff Moved Successfully
    C:UsersFrançoisAppDataLocalGoogleChromeUser DataProfile 1extensionsbepbmhgboaologfdajaanbcjmnhjmhfn Moved Successfully
    C:UsersDefaultAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultExtensionsffxtlbr@mysearchdial.com Moved Successfully
    C:UsersDefaultAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultExtensions{ad9a41d2-9a49-4fa6-a79e-71a0785364c8} Moved Successfully
    C:UsersDefault UserAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultExtensionsffxtlbr@mysearchdial.com Not Found !
    C:UsersDefault UserAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultExtensions{ad9a41d2-9a49-4fa6-a79e-71a0785364c8} Not Found !
    C:UsersDefaultAppPoolAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultExtensionsffxtlbr@mysearchdial.com Moved Successfully
    C:UsersDefaultAppPoolAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultExtensions{ad9a41d2-9a49-4fa6-a79e-71a0785364c8} Moved Successfully
    C:16417ca8e3716f4738dca028318f74 Moved Successfully
    C:3a024cf7b74f913cb8f0db Moved Successfully
    C:4a52db8f309d404b1ec986 Moved Successfully
    C:4e0523c951e483972cedc28c4f7f34 Moved Successfully
    C:a0ab7f2b42566efa10 Moved Successfully
    C:f5a7e69962996ca65676f664ca88 Moved Successfully
    C:user.js Moved Successfully
    C:WINDOWSIObit Moved Successfully
    C:WINDOWSInstaller14a6e0.msi Moved Successfully
    C:UsersFrançoisAppDataRoamingCrazyLoader Moved Successfully
    C:UsersFrançoisAppDataRoamingDriverCure Moved Successfully
    C:UsersFrançoisAppDataRoamingFissaSearch Moved Successfully
    C:UsersFrançoisAppDataRoamingFREEzeFrog Moved Successfully
    C:UsersFrançoisAppDataRoamingIObit Moved Successfully
    C:UsersFrançoisAppDataRoamingPerformerSoft Moved Successfully
    C:UsersFrançoisAppDataRoamingParetoLogic Moved Successfully
    C:UsersFrançoisAppDataRoamingProductData Moved Successfully
    C:UsersFrançoisAppDataRoamingSoftplicity Moved Successfully
    C:UsersFrançoisAppDataRoamingSolvusoft Moved Successfully
    C:UsersFrançoisAppDataRoamingSpeedMaxPc Moved Successfully
    C:UsersFrançoisAppDataLocalAVG Secure Search Moved Successfully
    C:UsersFrançoisAppDataRoamingMicrosoftWindowsStart MenuProgramsRadio Fr Solo 2.1 Moved Successfully
    C:UserswangzhisongAppDataLocalMobogenie Moved Successfully
    C:ProgramData30cf6be1a4c11654 Moved Successfully
    C:ProgramDataAVG Secure Search Moved Successfully
    C:ProgramDataParetoLogic Moved Successfully
    C:ProgramDataPC Drivers HeadQuarters Moved Successfully
    C:ProgramDataProductData Moved Successfully
    C:ProgramDataReimage Protector Moved Successfully
    C:ProgramDataSpeedMaxPc Moved Successfully
    C:ProgramDataYoutubeBookmark Moved Successfully
    C:Program Files (x86)FREEzeFrog Moved Successfully
    C:Program Files (x86)IObit Moved Successfully
    C:Program Files (x86)Softonic_France_FF Moved Successfully
    C:Program Files (x86)Uptodown Moved Successfully
    C:Program FilesRadio_Fr_solo-Install.exe Moved Successfully
    C:Program Files (x86)Common FilesAVG Secure Search Moved Successfully
    C:Program Files (x86)Common FilesIObit Moved Successfully
    C:Program Files (x86)Common FilesSpeedMaxPc Moved Successfully
    C:WINDOWSTasksRegCure Pro_sch_49580760-BD86-11E3-AB91-002511A8D373.job Moved Successfully
    C:WINDOWSSystem32TasksRegCure Pro_sch_49580760-BD86-11E3-AB91-002511A8D373 Moved Successfully
    Line : C:UsersDefaultAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultPrefs.js : user_pref(“browser.startup.homepage”, “http://start.mysearchdial.com/?f=1&a=tele0103&cd=2XzuyEtN2Y1L1QzutDtDzz0E0FtByBzy0ByDtAyDyD0E0FtDtN0D0Tzu0SyByDyBtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=2080541238&ir=”); -> user_pref(“browser.startup.homepage”, “https://www.google.com”); Changed Successfully
    Line : C:UsersDefaultAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultPrefs.js : user_pref(“browser.search.selectedEngine”, “Mysearchdial”); -> Deleted Successfully
    Line : C:UsersDefaultAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultPrefs.js : user_pref(“browser.search.defaultenginename”, “Mysearchdial”); -> Deleted Successfully
    Line : C:UsersDefaultAppPoolAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultPrefs.js : user_pref(“browser.startup.homepage”, “http://start.mysearchdial.com/?f=1&a=tele0103&cd=2XzuyEtN2Y1L1QzutDtDzz0E0FtByBzy0ByDtAyDyD0E0FtDtN0D0Tzu0SyByDyBtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=2080541238&ir=”); -> Deleted Successfully
    Line : C:UsersDefaultAppPoolAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultPrefs.js : user_pref(“browser.search.selectedEngine”, “Mysearchdial”); -> Deleted Successfully
    Line : C:UsersDefaultAppPoolAppDataRoamingMozillaFirefoxProfilesrdm0sq78.defaultPrefs.js : user_pref(“browser.search.defaultenginename”, “Mysearchdial”); -> Deleted Successfully
    Line : C:UsersFrançoisAppDataRoamingMozillaFirefoxProfilesikezwjm2.defaultPrefs.js : user_pref(“extensions.avg@toolbar.install-event-fired”, true); -> Deleted Successfully


    | ADS

    Deleted : @C:ProgramDataTemp:1D32EC29
    Deleted : @C:ProgramDataTemp:2683706C
    Deleted : @C:ProgramDataTemp:4CF61E54
    Deleted : @C:ProgramDataTemp:63238B95
    Deleted : @C:ProgramDataTemp:AB689DEA
    Deleted : @C:ProgramDataTemp:ABE89FFE
    Deleted : @C:ProgramDataTemp:C31F31E6
    Deleted : @C:ProgramDataTemp:D1B5B4F1


    | CleanDisk :

    FreeSpace : 58007
    Cleaning…….
    FreeSpace : 58130

  • Photo du profil de g3n-h@ckm@ng3n-h@ckm@n
    Admin bbPress
    Post count: 8314

    re

    impec :)

    redemarre le pc et dis moi si des soucis persistent :)

  • Photo du profil de lecopaindaccordlecopaindaccord
    Participant
    Post count: 13

    re bonjour,

    le problème d’accès à mon disque dur externe persiste, quand je le branche et que je cherche à y accéder, voilà ce qu’il y a :
    un dossier : “.Trashes”
    un fichier : .DS_Store 7 Ko
    un fichier : ._.Trashes 4 Ko

  • Photo du profil de g3n-h@ckm@ng3n-h@ckm@n
    Admin bbPress
    Post count: 8314

    ce sont des dossiers créés par un mac , s’il n’y a que cela c’est qu il n y a rien d’autre

    quelle est la place utilisée sur le disque ?

  • Photo du profil de lecopaindaccordlecopaindaccord
    Participant
    Post count: 13

    bonjour,
    la place affichée est de 228 Mo
    mais j’avais auparavant plus de 350Go de données (sur les 500Go du disque)
    je l’ai branché récemment sur un vieux mac que je possédais …
    Y a-t’il une solution pour récupérer ces données?

  • Photo du profil de g3n-h@ckm@ng3n-h@ckm@n
    Admin bbPress
    Post count: 8314

Vous devez être connecté pour répondre à ce sujet.