infections ??? j’ai tout essayé !!! 2014-06-20T08:25:16+00:00
  • Auteur
    Messages
  • lechasseurvirtuel
    Participant
    Post count: 35

    Bonjour a tous,

    ayant parcouru ce très intéressant forum, mais n’ayant pas trouvé la solution ( tout du moins c’est pas clair pour moi :D ) j’ouvre ce sujet et je vais vous exposer la nature de mon problème!
    Lorsque je vais sur internet avec Mozilla ou chrome et que j’ouvre une page qui est dans mes favoris je suis redirigé vers des sites X ou pub …., parfois c’est lorsque je clic sur un onglet de mon forum ou que je veux ouvrir une autre page que je suis dirigé ( ou pas !) vers des sites qui me disent que j’ai gagné 1 m d’euro !!!!
    Je suis sous 7, j’ai macaffe a jour, j,ai malwarebyte a jour et régulièrement scanné, j’ai adwcleaner fait aussi et j’ai enfin super anti spyware a jour et scanné aussi…. mais rien n’y fait!!! j’ai chargé ZHpdiag mais je n’ai pas la moindre idée de quoi faire avec ce rapport !
    D’aileur je vous le joints !

    Merci pour votre aide

    com~ Rapport de ZHPDiag v2014.6.19.94 – Nicolas Coolman (19/juin/2014)
    ~ Lancé par Emmanuel (20/juin/2014 10:06:41)
    ~ Adresse du Site Web http://nicolascoolman.fr” onclick=”window.open(this.href);return false;
    ~ Traduit par Nicolas Coolman
    ~ Etat de la version : Version à jour.
    ~ Liste blanche : Activée par le programme
    ~ Elévation des Privilèges : OK
    ~ User Account Control (UAC): Deactivate by program

    —\ Navigateurs Internet
    MSIE: Internet Explorer v10.0.9200.16921
    MFIE: Mozilla Firefox 30.0
    GCIE: Google Chrome v35.0.1916.153 (Defaut)

    —\ Informations sur les produits Windows
    ~ Langage: Français
    Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601)
    Windows Server License Manager Script : OK
    ~ Windows Operating System – Windows(R) 7, OEM_SLP channel
    System Locked Preinstallation (OEM_SLP) : OK
    Windows ID Activation : OK
    ~ Windows Partial Key : RMV82
    Windows License : OK
    ~ Windows Remaining Initializations Number : 2
    Software Protection Service (Protection logicielle) : OK
    Windows Automatic Updates : OK
    Windows Activation Technologies : OK

    —\ Logiciels de protection du système
    Malwarebytes Anti-Malware version 1.75.0.1300
    McAfee Security Scan Plus v3.8.130.10
    SUPERAntiSpyware v5.5.1012
    Windows Defender W7 (Deactivate)

    —\ Logiciels d’optimisation du système
    CCleaner v4.06

    —\ Logiciels de partage PeerToPeer

    —\ Surveillance de Logiciels
    Adobe Flash Player 13 Plugin
    Adobe Reader XI
    Java 7 Update 60
    Java 7 Update 9

    —\ Informations sur le système
    ~ Processor: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
    ~ Operating System: 64 Bits
    Boot mode: Normal (Normal boot)
    Total RAM: 6051 MB (57% free)
    System Restore: Activé (Enable)
    System drive C: has 404 GB (69%) free of 581 GB

    —\ Mode de connexion au système
    ~ Computer Name: EMMANUEL-PC
    ~ User Name: Emmanuel
    ~ All Users Names: HomeGroupUser$, Emmanuel, Administrateur,
    ~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89
    Logged in as Administrator

    —\ Variables d’environnement
    ~ System Unit : C:
    ~ %AppZHP% : C:UsersEmmanuelAppDataRoamingZHP
    ~ %AppData% : C:UsersEmmanuelAppDataRoaming
    ~ %Desktop% : C:UsersEmmanuelDesktop
    ~ %Favorites% : C:UsersEmmanuelFavorites
    ~ %LocalAppData% : C:UsersEmmanuelAppDataLocal
    ~ %StartMenu% : C:UsersEmmanuelAppDataRoamingMicrosoftWindowsStart Menu
    ~ %Windir% : C:Windows
    ~ %System% : C:WindowsSystem32

    —\ Enumération des unités disques
    C: Hard drive, Flash drive, Thumb drive (Free 404 Go of 581 Go)
    D: CD-ROM drive (Not Inserted)

    —\ Etat du Centre de Sécurité Windows
    [HKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesExplorer] NoActiveDesktopChanges: Modified
    ~ Security Center: 41 Legitimates Filtered in 00mn 00s

    —\ Recherche particulière de fichiers génériques
    [MD5.332FEAB1435662FC6C672E25BEB37BE3] – (.Microsoft Corporation – Explorateur Windows.) (.25/févr./2011 – 07:19:30.) — C:WindowsExplorer.exe [2871808]
    [MD5.94355C28C1970635A31B3FE52EB7CEBA] – (.Microsoft Corporation – Application de démarrage de Windows.) (.14/juil./2009 – 02:39:52.) — C:WindowsSystem32Wininit.exe [129024]
    [MD5.73AB92A1AA104EAF08B7AEA27B10C5CD] – (.Microsoft Corporation – Extensions Internet pour Win32.) (.24/mai/2014 – 03:47:54.) — C:WindowsSystem32wininet.dll [2239488]
    [MD5.88AB9B72B4BF3963A0DE0820B4B0B06C] – (.Microsoft Corporation – Application d’ouverture de session Windows.) (.04/mars/2014 – 10:43:50.) — C:WindowsSystem32Winlogon.exe [455168]
    [MD5.067FA52BFB59A56110A12312EF9AF243] – (.Microsoft Corporation – Bibliothèque de licences.) (.21/nov./2010 – 04:24:16.) — C:WindowsSystem32sppcomapi.dll [232448]
    [MD5.79059559E89D06E8B80CE2944BE20228] – (.Microsoft Corporation – Ancillary Function Driver for WinSock.) (.28/sept./2013 – 02:09:10.) — C:Windowssystem32DriversAFD.sys [497152]
    [MD5.02062C0B390B7729EDC9E69C680A6F3C] – (.Microsoft Corporation – ATAPI IDE Miniport Driver.) (.14/juil./2009 – 02:52:21.) — C:Windowssystem32Driversatapi.sys [24128]
    [MD5.B8BD2BB284668C84865658C77574381A] – (.Microsoft Corporation – CD-ROM File System Driver.) (.14/juil./2009 – 00:19:47.) — C:Windowssystem32DriversCdfs.sys [92160]
    [MD5.F036CE71586E93D94DAB220D7BDF4416] – (.Microsoft Corporation – SCSI CD-ROM Driver.) (.21/nov./2010 – 04:23:47.) — C:Windowssystem32DriversCdrom.sys [147456]
    [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] – (.Microsoft Corporation – DFS Namespace Client Driver.) (.21/nov./2010 – 04:24:32.) — C:Windowssystem32DriversDfsC.sys [102400]
    [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] – (.Microsoft Corporation – High Definition Audio Bus Driver.) (.21/nov./2010 – 04:23:47.) — C:Windowssystem32DriversHDAudBus.sys [122368]
    [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] – (.Microsoft Corporation – Pilote de port i8042.) (.14/juil./2009 – 00:19:57.) — C:Windowssystem32Driversi8042prt.sys [105472]
    [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] – (.Microsoft Corporation – IP Network Address Translator.) (.14/juil./2009 – 01:10:03.) — C:Windowssystem32DriversIpNat.sys [116224]
    [MD5.A5D9106A73DC88564C825D317CAC68AC] – (.Microsoft Corporation – Windows NT SMB Minirdr.) (.27/avr./2011 – 03:40:40.) — C:Windowssystem32DriversMRxSmb.sys [158208]
    [MD5.09594D1089C523423B32A4229263F068] – (.Microsoft Corporation – MBT Transport driver.) (.21/nov./2010 – 04:23:51.) — C:Windowssystem32DriversnetBT.sys [261632]
    [MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] – (.Microsoft Corporation – Pilote du système de fichiers NT.) (.24/janv./2014 – 03:37:55.) — C:Windowssystem32Driversntfs.sys [1684928]
    [MD5.0086431C29C35BE1DBC43F52CC273887] – (.Microsoft Corporation – Pilote de port parallèle.) (.14/juil./2009 – 01:00:41.) — C:Windowssystem32DriversParport.sys [97280]
    [MD5.471815800AE33E6F1C32FB1B97C490CA] – (.Microsoft Corporation – RAS L2TP mini-port/call-manager driver.) (.21/nov./2010 – 04:24:33.) — C:Windowssystem32DriversRasl2tp.sys [129536]
    [MD5.548260A7B8654E024DC30BF8A7C5BAA4] – (.Microsoft Corporation – SMB Transport driver.) (.14/juil./2009 – 01:09:09.) — C:Windowssystem32Driverssmb.sys [93184]
    [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] – (.Microsoft Corporation – TDI Translation Driver.) (.21/nov./2010 – 04:24:32.) — C:Windowssystem32Driverstdx.sys [119296]
    [MD5.0D08D2F3B3FF84E433346669B5E0F639] – (.Microsoft Corporation – Pilote de cliché instantané du volume.) (.21/nov./2010 – 04:23:47.) — C:Windowssystem32Driversvolsnap.sys [295808]
    ~ Generic Processes: Scanned in 00mn 00s

    —\ Etat des fichiers cachés (Caché/Total)
    ~ Mes images (My Pictures) : 3/8921
    ~ Mes musiques (My Musics) : 247/884
    ~ Mes Videos (My Videos) : 2/22
    ~ Mes Favoris (My Favorites) : 2/62
    ~ Mes Documents (My Documents) : 2/70171
    ~ Mon Bureau (My Desktop) : 0/50
    ~ Menu demarrer (Programs) : 1/34
    ~ Hidden Files: Scanned in 01mn 08s

    —\ Processus lancés
    [MD5.EBDD3032297EF6832A1D6D3AA6DC3537] – (.SoftThinks – Dell – Dell DataSafe Local Backup.) — C:Program Files (x86)Dell DataSafe Local BackupTOASTER.exe [4259648] [PID.4672]
    [MD5.CD4F7B90CB09831BCDEDE0A206CCDB35] – (.Pas de propriétaire – ST Service Scheduling.) — C:Program Files (x86)Dell DataSafe Local BackupCOMPONENTSSCHEDULERSTSERVICE.exe [2751808] [PID.4712]
    [MD5.09890A2F032B138A74B5DF2C1233FB1D] – (.SoftThinks – Dell – DataSafe Update Launcher.) — C:Program Files (x86)Dell DataSafe Local BackupComponentsDSUpdateDSUpd.exe [460096] [PID.4752]
    [MD5.38875F805FBD3D7B32D5B3EFEA7D1CD2] – (.Adobe Systems Incorporated – Adobe Creative Cloud.) — C:Program Files (x86)AdobeAdobe Creative CloudACCCreative Cloud.exe [2691480] [PID.4400]
    [MD5.1F85A80EBC4C4C1D562094F5AB231077] – (.Adobe Systems Incorporated – Adobe IPC Broker.) — C:Program Files (x86)Common FilesAdobeOOBEPDAppIPCAdobeIPCBroker.exe [769904] [PID.5316]
    [MD5.7FA16A68EF2B1B6C3281D1D33F513CB2] – (.Pas de propriétaire – Core Sync.) — C:Program Files (x86)AdobeAdobe Creative CloudCoreSyncCoreSync.exe [5288608] [PID.6932]
    [MD5.AA61E4E73E812D6411F375989E4501CE] – (.Adobe Systems Incorporated – Adobe CEF Helper.) — C:Program Files (x86)AdobeAdobe Creative CloudHEXAdobe CEF Helper.exe [419704] [PID.7136]
    [MD5.A5FCD42334CCC682DA1882A54338686C] – (.Google Inc. – Google Chrome.) — C:Program Files (x86)GoogleChromeApplicationchrome.exe [860488] [PID.3336]
    [MD5.6101A08505E45E1230A67FB8E32A707F] – (.Nicolas Coolman – ZHPDiag.) — C:Program Files (x86)ZHPDiagZHPDiag.exe [8070656] [PID.5824]
    [MD5.ADC420616C501B45D26C0FD3EF1E54E4] – (.ArcSoft Inc. – ArcSoft Connect Service.) — C:Program Files (x86)Common FilesArcSoftConnection ServiceBinACService.exe [113152] [PID.1888]
    [MD5.B362181ED3771DC03B4141927C80F801] – (.Adobe Systems Incorporated – Adobe Acrobat Update Service.) — C:Program Files (x86)Common FilesAdobeARM1.0armsvc.exe [65432] [PID.1908]
    [MD5.72551A9AE5F68905DFC3CBA0D5242566] – (.Microsoft Corporation – Updates Skype Click to Call.) — C:Program Files (x86)SkypeToolbarsAutoUpdateSkypeC2CAutoUpdateSvc.exe [1390720] [PID.1960]
    [MD5.6B669A00A431FF6CDCE67458933F5F0F] – (.Microsoft Corporation – Phone Number Recognition (PNR) module.) — C:Program Files (x86)SkypeToolbarsPNRSvcSkypeC2CPNRSvc.exe [1764992] [PID.1992]
    [MD5.7CADB4ABAE72390951886CF259791F5F] – (.Nuance Communications, Inc. – PDFPro IFilter Service.) — C:Program Files (x86)NuancePaperPortPDFProFiltSrvPP.exe [145256] [PID.2176]
    [MD5.86AED86C7198CFC797CEEEAF936DAB14] – (.Solid Documents, LLC – Solid Spool Service.) — C:windowsInstallerMSI3AB3.tmp [189688] [PID.2236]
    [MD5.74EC60E20516AAA573BE74F31175270F] – (.SoftThinks SAS – SoftThinks Agent Service.) — C:Program Files (x86)Dell DataSafe Local Backupsftservice.exe [1692480] [PID.2272]
    [MD5.2B29FD3AF7B4FEB272CD1F6EEC8FE4BA] – (.TeamViewer GmbH – TeamViewer 9.) — C:Program Files (x86)TeamViewerVersion9TeamViewer_Service.exe [4915040] [PID.2380]
    [MD5.E4FAD21646088D79F8889B6531396ACF] – (.TomTom – Windows Service for TomTom HOME.) — C:Program Files (x86)TomTom HOME 2TomTomHOMEService.exe [93072] [PID.2444]
    [MD5.D5A444B63637EC0932172C6719A10252] – (.Google Inc. – Google Crash Handler.) — C:Program Files (x86)GoogleUpdate1.3.24.7GoogleCrashHandler.exe [263048] [PID.3352]
    [MD5.0AB254994A460550258446950BB58311] – (.Intel Corporation – IAStorDataSvc.) — C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorDataMgrSvc.exe [14904] [PID.1428]
    [MD5.E70FD0D2C95F559A17321D831875593D] – (.Intel Corporation – Local Manageability Service.) — C:Program Files (x86)IntelIntel(R) Management Engine ComponentsLMSLMS.exe [277824] [PID.2160]
    [MD5.C485FB802F6C4A306B8F89BA087E5CA2] – (.Intel Corporation – User Notification Service.) — C:Program Files (x86)IntelIntel(R) Management Engine ComponentsUNSUNS.exe [365376] [PID.2312]
    ~ Processes Running: Scanned in 00mn 00s

    —\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
    C:UsersEmmanuelAppDataLocalGoogleChromeUser DataDefaultPreferences
    G2 – GCE: Preference [User DataDefault] [neajdppkdcdipfabeoofebfddakdcjhd] Google Network Speech v.1.0 (Activé)
    G2 – GCE: Preference [User DataDefault] [nmmhkkegccagdldgiimedpiccmgmieda] Google Wallet v.0.0.6.1 (Activé)
    G2 – GCE: Preference [User DataDefault] [pafkbggdmjlpgkdkcbjmhmfcdpncadgh] Google Now v.1.2.0.1 (Activé)

    —\ Liste des dossiers d’extension Google Chrome
    ~ Google Lines Browser: 11 Legitimates Filtered in 00mn 04s

    —\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
    C:UsersEmmanuelAppDataRoamingMozillaFirefoxProfilesi7i3esr.defaultprefs.js
    P2 – FPN: [HKLM] [@mcafee.com/MSC,version=10] – (…) — C:Program FilesmcafeemscnpMcSnFFPl64.dll
    ~ Firefox Browser: 8 Legitimates Filtered in 00mn 01s

    —\ Internet Explorer, Proxy Management (R5)
    R5 – HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyServer = no key
    R5 – HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyEnable = 0
    R5 – HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,MigrateProxy = 1
    R5 – HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,EnableHttp1_1 = 1
    R5 – HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyHttp1.1 = 1
    R5 – HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,AutoConfigProxy = wininet.dll
    ~ Proxy management: Scanned in 00mn 00s

    —\ Analyse des lignes F0, F1, F2, F3 – IniFiles, Autoloading programs
    F2 – REG:system.ini: USERINIT=C:Windowssystem32userinit.exe,
    F2 – REG:system.ini: Shell=C:Windowsexplorer.exe
    F2 – REG:system.ini: VMApplet=C:WindowsSystem32SystemPropertiesPerformance.exe
    ~ Keys: Scanned in 00mn 00s

    —\ Hosts file redirection (O1)
    ~ Le fichier hosts est sain (The hosts file is clean).
    ~ Hosts File: Scanned in 00mn 05s
    ~ Nombre de lignes (Lines number): 15371

    —\ Browser Helper Objects de navigateur (O2)
    O2 – BHO: McAfee Phishing Filter [64Bits] – {27B4851A-3207-45A2-B947-BE8AFE6163AB} . (…) — C:Program Filesmcafeemskmskapbho.dll
    ~ BHO: 12 Legitimates Filtered in 00mn 00s

    —\ Internet Explorer Toolbars (O3)
    O3 – ToolbarWebBrowser: (no name) – [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Clé orpheline
    ~ Toolbar: Scanned in 00mn 00s

    —\ Applications lancées au démarrage du système (O4)
    O4 – HKLM..Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated – Adobe Updater Startup Utility.) — C:Program Files (x86)Common FilesAdobeOOBEPDAppUWAUpdaterStartupUtility.exe =>.Adobe Systems Incorporated
    O4 – HKCU..Run: [GoogleChromeAutoLaunch_9F4F59E42807DAA807CE0622F81EBF62] . (.Google Inc. – Google Chrome.) — C:Program Files (x86)GoogleChromeApplicationchrome.exe
    O4 – HKCU..Run: [DellSystemDetect] . (…) — C:UsersEmmanuelAppDataRoamingMicrosoftWindowsStart MenuProgramsDellDell System Detect.appref-ms
    O4 – HKLM..Wow6432NodeRun: [mcui_exe] . (.McAfee, Inc. – McAfee Security Center.) — C:Program FilesMcAfee.comAgentmcagent.exe
    O4 – HKLM..Wow6432NodeRun: [mcpltui_exe] . (.McAfee, Inc. – McAfee Security Center.) — C:Program FilesMcAfee.comAgentmcagent.exe
    O4 – HKLM..Wow6432NodeRun: [Adobe Creative Cloud] . (.Adobe Systems Incorporated – Adobe Creative Cloud.) — C:Program Files (x86)AdobeAdobe Creative CloudACCCreative Cloud.exe
    O4 – HKUSS-1-5-19..Run: [Sidebar] . (.Microsoft Corporation – Gadgets du Bureau Windows.) — C:Program Files (x86)Windows SidebarSidebar.exe =>.Microsoft Corporation
    O4 – HKUSS-1-5-20..Run: [Sidebar] . (.Microsoft Corporation – Gadgets du Bureau Windows.) — C:Program Files (x86)Windows SidebarSidebar.exe =>.Microsoft Corporation
    O4 – HKUSS-1-5-19..RunOnce: [mctadmin] . (.Microsoft Corporation – MCTAdmin.) — C:WindowsSystem32mctadmin.exe =>.Microsoft Corporation
    O4 – HKUSS-1-5-20..RunOnce: [mctadmin] . (.Microsoft Corporation – MCTAdmin.) — C:WindowsSystem32mctadmin.exe =>.Microsoft Corporation
    O4 – HKUSS-1-5-21-1259277583-4085161142-551661434-1000..Run: [GoogleChromeAutoLaunch_9F4F59E42807DAA807CE0622F81EBF62] . (.Google Inc. – Google Chrome.) — C:Program Files (x86)GoogleChromeApplicationchrome.exe
    O4 – HKUSS-1-5-21-1259277583-4085161142-551661434-1000..Run: [DellSystemDetect] . (…) — C:UsersEmmanuelAppDataRoamingMicrosoftWindowsStart MenuProgramsDellDell System Detect.appref-ms
    ~ Application: Scanned in 00mn 00s

    —\ Boutons situés sur la barre d’outils principale d’Internet Explorer (O9)
    O9 – Extra button: &Envoyer à OneNote [64Bits] – {2670000A-7350-4f3c-8081-5663EE0C6C49} — C:Program Files (x86)MICROS~2Office14ONBttnIE.dll (.not file.)
    O9 – Extra button: Notes &liées OneNote [64Bits] – {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} — C:Program Files (x86)MICROS~2Office14ONBTTN~1.dll (.not file.)
    O9 – Extra button: Skype Click to Call [64Bits] – {898EA8C8-E7FF-479B-8935-AEC46303B9E5} . (…) — c:program files (x86)skypetoolbarsinternet explorer x64icon.ico
    ~ IE Extra Buttons: Scanned in 00mn 00s

    —\ Site dans la Zone de confiance d’Internet Explorer (O15)
    O15 – Trusted Zone: [HKCU…Domains] *.dell.com
    ~ IE Zone Confiance: Scanned in 00mn 01s

    —\ Modification Domaine/Adresses DNS (O17)
    O17 – HKLMSystemCCSServicesTcpip..{1689FF79-6688-4135-855E-DBF24C28271E}: NameServer = 0.0.0.0
    O17 – HKLMSystemCCSServicesTcpip..{62173E21-4731-4728-821E-FDFC8F1BC1EE}: DhcpNameServer = 192.168.1.1
    O17 – HKLMSystemCCSServicesTcpip..{D6C0A7A4-F426-4CF3-B10A-C5E2B93AA61D}: DhcpNameServer = 192.168.1.1
    O17 – HKLMSystemCS1ServicesTcpip..{1689FF79-6688-4135-855E-DBF24C28271E}: NameServer = 0.0.0.0
    O17 – HKLMSystemCS1ServicesTcpip..{62173E21-4731-4728-821E-FDFC8F1BC1EE}: DhcpNameServer = 192.168.1.1
    O17 – HKLMSystemCS1ServicesTcpip..{D6C0A7A4-F426-4CF3-B10A-C5E2B93AA61D}: DhcpNameServer = 192.168.1.1
    O17 – HKLMSystemCS2ServicesTcpip..{1689FF79-6688-4135-855E-DBF24C28271E}: NameServer = 0.0.0.0
    O17 – HKLMSystemCS2ServicesTcpip..{62173E21-4731-4728-821E-FDFC8F1BC1EE}: DhcpNameServer = 192.168.1.1
    O17 – HKLMSystemCS2ServicesTcpip..{D6C0A7A4-F426-4CF3-B10A-C5E2B93AA61D}: DhcpNameServer = 192.168.1.1
    O17 – HKLMSystemCCSServicesTcpipParameters: DhcpNameServer = 192.168.1.1
    ~ Domain: Scanned in 00mn 00s

    —\ Protocole additionnel (O18)
    O18 – Handler: wlpg [64Bits] – {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (…) —
    O18 – Filter: text/xml [64Bits] – {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation – Microsoft Office XML MIME Filter.) — C:Program FilesCommon FilesMicrosoft SharedOFFICE14MSOXMLMF.dll =>.Microsoft Corporation
    ~ Protocole Additionnel: Scanned in 00mn 00s

    —\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
    O20 – Winlogon Notify: igfxcui . (.Intel Corporation – igfxdev Module.) — C:WindowsSystem32igfxdev.dll
    ~ Winlogon: Scanned in 00mn 00s

    —\ Tâches planifiées en automatique (O39)
    [MD5.00000000000000000000000000000000] [APT] [{32F0E01F-211F-4A83-BDA2-0C371AC577D4}] (…) — C:UsersEmmanuelDesktopVideo_AMD_W7W8_A01_Setup-HC6HJ_ZPE.exe (.not file.) [0]
    [MD5.00000000000000000000000000000000] [APT] [{43239D08-3B01-46D1-82DB-542D0AC7246F}] (…) — C:UsersEmmanuelDownloadsAntiCrashSetup.exe (.not file.) [0] =>Crapware.SpyHunter
    [MD5.00000000000000000000000000000000] [APT] [{AE307963-5CE7-4E07-B7FC-599AE0EF618B}] (…) — C:UsersEmmanuelDownloadswin64_15288.exe (.not file.) [0]
    [MD5.00000000000000000000000000000000] [APT] [{F0F0458F-D529-4A54-81FA-27D4CD9918EA}] (…) — C:UsersEmmanuelDownloadsWin7Vista_64_152257.exe (.not file.) [0]
    O39 – APT: – (..) — C:WindowsSystem32TasksAdobe Flash Player Updater [1002]
    O39 – APT: – (..) — C:WindowsSystem32TasksGoogleUpdateTaskMachineCore [1068]
    O39 – APT: – (..) — C:WindowsSystem32TasksGoogleUpdateTaskMachineUA [1072]
    O39 – APT: – (..) — C:WindowsTasksPCDoctorBackgroundMonitorTask-Delay.job [564]
    O39 – APT: – (..) — C:WindowsSystem32TasksPCDoctorBackgroundMonitorTask-Delay [564]
    O39 – APT: APT: – (..) — C:WindowsTasksPCDoctorBackgroundMonitorTask-Delay.job [564] – (..) — C:WindowsTasksPCDoctorBackgroundMonitorTask.job [564]
    O39 – APT: APT: – (..) — C:WindowsSystem32TasksPCDoctorBackgroundMonitorTask-Delay [564] – (..) — C:WindowsSystem32TasksPCDoctorBackgroundMonitorTask [564]
    O39 – APT: – (..) — C:WindowsTasksSystemToolsDailyTest.job [506]
    O39 – APT: – (..) — C:WindowsSystem32TasksSystemToolsDailyTest [506]
    ~ Scheduled Task: 23 Legitimates Filtered in 00mn 04s

    —\ HKCU & HKLM Software Keys
    [HKCUSoftwareTelintrans]
    [HKLMSoftwareWow6432NodeTELINTRANS]
    ~ Key Software: 374 Legitimates Filtered in 00mn 00s

    —\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
    O43 – CFD: 02/mai/2014 – 11:16:46 – [] —-D C:Program Files (x86)Emoticon
    O43 – CFD: 05/nov./2012 – 19:52:53 – [] —-D C:Program Files (x86)Free Registry Cleaner For Seven
    O43 – CFD: 18/févr./2013 – 10:19:38 – [] —-D C:Program Files (x86)GUMD580.tmp
    O43 – CFD: 14/févr./2014 – 11:32:36 – [0] —-D C:Program Files (x86)slideshow
    O43 – CFD: 29/août/2011 – 17:29:05 – [] —-D C:ProgramDataIM
    O43 – CFD: 29/août/2011 – 17:29:05 – [] —-D C:ProgramDataIncrediMail
    O43 – CFD: 09/nov./2012 – 19:23:24 – [] –H-D C:ProgramData{B5B803B3-9B3A-414E-8030-FF46D1FAA390}
    O43 – CFD: 13/déc./2009 – 17:39:29 – [0] —-D C:ProgramData{BC9FCCF7-E686-494B-8C9B-55C9A39A7CA9}
    O43 – CFD: 25/sept./2013 – 15:58:51 – [] —-D C:UsersEmmanuelAppDataLocalmessengerdusexe
    O43 – CFD: 02/mai/2014 – 11:12:25 – [] —-D C:UsersEmmanuelAppDataRoamingMicrosoftWindowsStart MenuProgramsEmoticon
    ~ 101 Dossier CLSID vide (CLSID Empty Folder)
    ~ Program Folder: 395 Legitimates Filtered in 00mn 02s

    —\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
    O44 – LFC:[MD5.BF4A63DD1548C32D4E34940497EF8480] – 20/juin/2014 – 08:13:33 —A- . (…) — C:WindowsBRRBCOM.INI [336]
    ~ Files: 50 Legitimates Filtered in 00mn 38s

    —\ Enumération des clés de registre StartupReg (SMSR) (O53)
    O53 – SMSR:HKLM…startupregStage Remote [Key] . (.Pas de propriétaire – Stage Remote Manager.) — C:Program Files (x86)DellStage RemoteStageRemote.exe
    ~ SMSR Keys: 36 Legitimates Filtered in 00mn 01s

    —\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
    O55 – MWPS:[HKLM…PoliciesSystem] – “EnableUIADesktopToggle”=0
    O55 – MWPS:[HKLM…PoliciesSystem] – “FilterAdministratorToken”=0
    ~ MWPS: 18 Legitimates Filtered in 00mn 00s

    —\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56)
    O56 – MWPE:[HKLM…policiesExplorer] – “NoActiveDesktopChanges”=1
    ~ MWPE Keys: 5 Legitimates Filtered in 00mn 00s

    —\ Liste des pilotes du système (SDL) (O58)
    O58 – SDL:15/mars/2012 – 06:02:46 —A- . (.Windows (R) Win 7 DDK provider – Intel® Centrino® Wireless Bluetooth® + High Speed Virtual Adapt.) — C:WindowsSystem32DriversAmpPal.sys [198144]
    O58 – SDL:14/juil./2009 – 02:47:48 —A- . (.Emulex – Storport Miniport Driver for LightPulse HBAs.) — C:WindowsSystem32Driverselxstor.sys [530496]
    O58 – SDL:10/juin/2009 – 21:31:59 —A- . (.Hauppauge Computer Works, Inc. – Hauppauge WinTV 885 Consumer IR Driver for eHome.) — C:WindowsSystem32Drivershcw85cir.sys [31232]
    O58 – SDL:19/sept./2012 – 10:02:08 —A- . (.DEVGURU Co., LTD.(http://www.devguru.co.kr) – SAMSUNG USB Composite Device Driver (MSS Ver.3).) — C:WindowsSystem32Driversssudbus.sys [102368]
    O58 – SDL:30/juil./2012 – 12:32:08 —A- . (.DEVGURU Co., LTD.(http://www.devguru.co.kr) – SAMSUNG Android Modem Device Driver (MSS Ver.3).) — C:WindowsSystem32Driversssudmdm.sys [203104]
    O58 – SDL:14/juil./2009 – 02:45:55 —A- . (.Promise Technology – Promise SuperTrak EX Series Driver for Windows.) — C:WindowsSystem32Driversstexstor.sys [24656]
    O58 – SDL:25/janv./2011 – 10:57:18 —A- . (.IDT, Inc. – IDT PC Audio.) — C:WindowsSystem32Driversstwrt64.sys [520192]
    O58 – SDL:15/févr./2012 – 16:01:50 —A- . (.Apple, Inc. – Apple Mobile Device USB Driver.) — C:WindowsSystem32Driversusbaapl64.sys [52736]
    ~ Drivers: 91 Legitimates Filtered in 00mn 04s

    —\ Liste des outils de désinfection (LATC) (O63)
    O63 – Logiciel: ZHPDiag 2014 – (.Nicolas Coolman.) [HKLM] — ZHPDiag_is1 =>.Nicolas Coolman
    ~ ADS: Scanned in 00mn 00s

    —\ Associations Shell Spawning (O67)
    O67 – Shell Spawning: < .html> [HKCU..openCommand] (.Not Key.)
    ~ FASS Keys: 11 Legitimates Filtered in 00mn 00s

    —\ Menu de démarrage Internet (SMI) (O68)
    O68 – StartMenuInternet: [HKLM..ShellopenCommand] (.Mozilla Corporation – Firefox.) — C:Program Files (x86)Mozilla Firefoxfirefox.exe
    O68 – StartMenuInternet: [HKLM..ShellopenCommand] (.Google Inc. – Google Chrome.) — C:Program Files (x86)GoogleChromeApplicationchrome.exe
    O68 – StartMenuInternet: [HKLM..ShellopenCommand] (.Microsoft Corporation – Internet Explorer.) — C:Program FilesInternet Exploreriexplore.exe
    ~ Keys: Scanned in 00mn 00s

    —\ Recherche d’infection sur les navigateurs internet (SBI) (O69)
    O69 – SBI: SearchScopes [HKCU] ${searchCLSID} – (Bing) – http://www.bing.com” onclick=”window.open(this.href);return false;
    O69 – SBI: SearchScopes [HKCU] {0454ACC5-D0D8-4B58-BA6F-C4B2BF9CFA9D} – (Google) – http://www.google.com” onclick=”window.open(this.href);return false;
    O69 – SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} – (Bing) – http://www.bing.com” onclick=”window.open(this.href);return false;
    O69 – SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} – (Google) – http://www.google.com” onclick=”window.open(this.href);return false;
    O69 – SBI: SearchScopes [HKCU] {D4377667-6779-445D-8E49-ACF663A5A6B1} – (Google) – http://www.google.com” onclick=”window.open(this.href);return false;
    ~ Keys: Scanned in 00mn 00s

    —\ Recherche particulière à la racine du système (SPRF) (O84)
    [MD5.9722F91AE0607C3958FE05AD7E1B2C06] [SPRF][29/déc./2007] (…) — C:ProgramDataezsid.dat [32]
    [MD5.0572D24973FF58829200C8F383980DB9] [SPRF][22/août/2011] (…) — C:ProgramDataezsidmv.dat [56]
    ~ Files: 2 Legitimates Filtered in 00mn 00s

    —\ Recherche de clés de registre Tracing (O100)
    HKLMSOFTWAREWow6432NodeMicrosoftTracingLollipopInstaller_14656_RASAPI32 =>Adware.Lollipop
    HKLMSOFTWAREWow6432NodeMicrosoftTracingLollipopInstaller_14656_RASMANCS =>Adware.Lollipop
    HKLMSOFTWAREWow6432NodeMicrosoftTracingOptimizer_Pro_RASAPI32 =>PUP.OptimizerPro
    HKLMSOFTWAREWow6432NodeMicrosoftTracingOptimizer_Pro_RASMANCS =>PUP.OptimizerPro
    HKLMSOFTWAREWow6432NodeMicrosoftTracinguTorrent_RASAPI32 =>P2P.µTorrent
    HKLMSOFTWAREWow6432NodeMicrosoftTracinguTorrent_RASMANCS =>P2P.µTorrent
    HKLMSOFTWAREWow6432NodeMicrosoftTracingVAFPlayer_RASAPI32 =>PUP.VAFPlayer
    HKLMSOFTWAREWow6432NodeMicrosoftTracingVAFPlayer_RASMANCS =>PUP.VAFPlayer
    ~ BTK: 462 Legitimates Filtered in 00mn 00s

    —\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
    SS – | Demand 13/mai/2014 257712 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) – C:windowsSysWOW64MacromedFlashFlashPlayerUpdateService.exe
    SS – | Demand 03/nov./2010 897088 | (Bluetooth Device Monitor) . (.Intel Corporation.) – C:Program Files (x86)IntelBluetoothdevmonsrv.exe
    SS – | Demand 03/nov./2010 1298496 | (Bluetooth Media Service) . (.Intel Corporation.) – C:Program Files (x86)IntelBluetoothmediasrv.exe
    SS – | Demand 13/juil./2012 270336 | (BrYNSvc) . (.Brother Industries, Ltd..) – C:Program Files (x86)Browny02BrYNSvc.exe
    SS – | Demand 15/nov./2012 277048 | (cphs) . (.Intel Corporation.) – C:WindowsSysWow64IntelCpHeciSvc.exe
    SS – | Auto 02/janv./2012 136176 | (gupdate) . (.Google Inc..) – C:Program Files (x86)GoogleUpdateGoogleUpdate.exe
    SS – | Demand 02/janv./2012 136176 | (gupdatem) . (.Google Inc..) – C:Program Files (x86)GoogleUpdateGoogleUpdate.exe
    SS – | Demand 30/août/2010 220528 | (McAWFwk) . (.McAfee, Inc..) – C:Program FilesmcafeemscMcAWFwk.exe
    SS – | Demand 06/sept./2013 288776 | (McComponentHostService) . (.McAfee, Inc..) – C:Program FilesMcAfee Security Scan3.8.130McCHSvc.exe
    SS – | Demand 02/août/2013 602944 | (McODS) . (.McAfee, Inc..) – C:Program FilesmcafeeVirusScanmcods.exe
    SS – | Disabled 31/août/2012 201304 | (McOobeSv) . (.McAfee, Inc..) – C:Program FilesCommon FilesmcafeeMcSvcHostMcSvHost.exe
    SS – | Demand 11/juin/2014 119408 | (MozillaMaintenance) . (.Mozilla Foundation.) – C:Program Files (x86)Mozilla Maintenance Servicemaintenanceservice.exe
    SS – | Demand 25/juin/2012 272688 | (MyWiFiDHCPDNS) . (…) – C:Program FilesIntelWiFibinPanDhcpDns.exe
    SS – | Demand 25/nov./2010 1116656 | (RoxMediaDB12OEM) . (.Sonic Solutions.) – c:Program Files (x86)Common FilesRoxio SharedOEM12.0SharedCOMRoxMediaDB12OEM.exe
    SS – | Auto 25/nov./2010 219632 | (RoxWatch12) . (.Sonic Solutions.) – c:Program Files (x86)Common FilesRoxio SharedOEM12.0SharedCOMRoxWatch12OEM.exe
    SS – | Auto 23/oct./2013 172192 | (SkypeUpdate) . (.Skype Technologies.) – C:Program Files (x86)SkypeUpdaterUpdater.exe
    SS – | Demand 08/nov./2010 74392 | (stllssvr) . (.MicroVision Development, Inc..) – c:Program Files (x86)Common FilesSureThing Sharedstllssvr.exe
    SS – | Demand 03/mai/2012 517096 | (SwitchBoard) . (.Adobe Systems Incorporated.) – C:Program Files (x86)Common FilesAdobeSwitchBoardSwitchBoard.exe
    SS – | Demand 29/nov./2010 149504 | (TurboBoost) . (.Intel(R) Corporation.) – C:Program FilesIntelTurboBoostTurboBoost.exe
    SS – | Demand 14/juil./2009 27136 | C:Program Files (x86)Windows Defendermpsvc.dll (WinDefend) . (.Microsoft Corporation.) – C:WindowsSystem32svchost.exe
    SR – | Auto 08/sept./2012 140672 | (!SASCORE) . (.SUPERAntiSpyware.com.) – C:Program FilesSUPERAntiSpywareSASCORE64.exe
    SR – | Auto 18/mars/2010 113152 | (ACDaemon) . (.ArcSoft Inc..) – C:Program Files (x86)Common FilesArcSoftConnection ServiceBinACService.exe
    SR – | Auto 21/déc./2013 65432 | (AdobeARMservice) . (.Adobe Systems Incorporated.) – C:Program Files (x86)Common FilesAdobeARM1.0armsvc.exe
    SR – | Auto 03/mars/2009 89600 | (AESTFilters) . (.Andrea Electronics Corporation.) – C:Program FilesIDTWDMAESTSr64.exe
    SR – | Auto 28/sept./2012 239616 | (AMD External Events Utility) . (.AMD.) – C:WindowsSystem32atiesrxx.exe
    SR – | Auto 15/mars/2012 659976 | (AMPPALR3) . (.Intel Corporation.) – C:Program FilesIntelBluetoothHSBTHSAmpPalService.exe
    SR – | Auto 23/avr./2012 135952 | (BTHSSecurityMgr) . (.Intel(R) Corporation.) – C:Program FilesIntelBluetoothHSBTHSSecurityMgr.exe
    SR – | Auto 25/juin/2012 628016 | (EvtEng) . (.Intel(R) Corporation.) – C:Program FilesIntelWiFibinEvtEng.exe
    SR – | Auto 30/juil./2013 328928 | (HomeNetSvc) . (.McAfee, Inc..) – C:Program FilesCommon FilesMcAfeePlatformMcSvcHostMcSvHost.exe
    SR – | Auto 01/sept./2012 14904 | (IAStorDataMgrSvc) . (.Intel Corporation.) – C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorDataMgrSvc.exe
    SR – | Auto 19/juin/2012 634632 | (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) – C:Program FilesInteliCLS ClientHeciServer.exe
    SR – | Auto 19/juil./2012 277824 | (LMS) . (.Intel Corporation.) – C:Program Files (x86)IntelIntel(R) Management Engine ComponentsLMSLMS.exe
    SR – | Auto 25/avr./2014 178528 | (McAPExe) . (.McAfee, Inc..) – C:Program FilesMcAfeeMSCMcAPexe.exe
    SR – | Auto 30/juil./2013 328928 | (McMPFSvc) . (.McAfee, Inc..) – C:Program FilesCommon FilesMcAfeePlatformMcSvcHostMcSvHost.exe
    SR – | Auto 30/juil./2013 328928 | (McNaiAnn) . (.McAfee, Inc..) – C:Program FilesCommon FilesmcafeePlatformMcSvcHostMcSvHost.exe
    SR – | Auto 30/juil./2013 328928 | (mcpltsvc) . (.McAfee, Inc..) – C:Program FilesCommon FilesmcafeePlatformMcSvcHostMcSvHost.exe
    SR – | Auto 30/juil./2013 328928 | (McProxy) . (.McAfee, Inc..) – C:Program FilesCommon FilesmcafeePlatformMcSvcHostMcSvHost.exe
    SR – | Auto 18/mars/2014 1041192 | (mfecore) . (.McAfee, Inc..) – C:Program FilesCommon FilesMcAfeeAMCoremcshield.exe
    SR – | Auto 03/avr./2014 219752 | (mfefire) . (.McAfee, Inc..) – C:Program FilesCommon FilesMcAfeeSystemCoremfefire.exe
    SR – | Auto 03/avr./2014 189912 | (mfevtp) . (.McAfee, Inc..) – C:Windowssystem32mfevtps.exe
    SR – | Auto 30/juil./2013 328928 | (MSK80Service) . (.McAfee, Inc..) – C:Program FilesCommon FilesMcAfeePlatformMcSvcHostMcSvHost.exe
    SR – | Auto 02/août/2011 145256 | (PDFProFiltSrvPP) . (.Nuance Communications, Inc..) – C:Program Files (x86)NuancePaperPortPDFProFiltSrvPP.exe
    SR – | Auto 25/juin/2012 149296 | (RegSrvc) . (.Intel(R) Corporation.) – C:Program FilesCommon FilesIntelWirelessCommonRegSrvc.exe
    SR – | Auto 26/oct./2012 189688 | (SCPDFV4ReadSpool) . (.Solid Documents, LLC.) – C:windowsInstallerMSI3AB3.tmp
    SR – | Auto 18/août/2011 1692480 | (SftService) . (.SoftThinks SAS.) – C:Program Files (x86)Dell DataSafe Local Backupsftservice.exe
    SR – | Auto 25/janv./2011 296448 | (STacSV) . (.IDT, Inc..) – C:Program FilesIDTWDMSTacSV64.exe
    SR – | Auto 17/févr./2014 4915040 | (TeamViewer9) . (.TeamViewer GmbH.) – C:Program Files (x86)TeamViewerVersion9TeamViewer_Service.exe
    SR – | Auto 27/août/2013 93072 | (TomTomHOMEService) . (.TomTom.) – C:Program Files (x86)TomTom HOME 2TomTomHOMEService.exe
    SR – | Auto 19/juil./2012 365376 | (UNS) . (.Intel Corporation.) – C:Program Files (x86)IntelIntel(R) Management Engine ComponentsUNSUNS.exe
    SR – | Auto 10/juil./1658 0 | (WMPNetworkSvc) . (…) – C:Program Files (x86)Windows Media Playerwmpnetwk.exe =>.Microsoft Corporation
    SR – | Auto 14/juil./2009 27136 | C:WindowsSystem32wuaueng.dll (wuauserv) . (.Microsoft Corporation.) – C:WindowsSystem32svchost.exe
    SR – | Auto 25/juin/2012 3325232 | (ZeroConfigService) . (.Intel® Corporation.) – C:Program FilesIntelWiFibinZeroConfigService.exe
    ~ Services: Scanned in 00mn 08s

    —\ Scan Additionnel (O88)
    Database Version : 13026 – (19/juin/2014)
    Clés trouvées (Keys found) : 1
    Valeurs trouvées (Values found) : 0
    Dossiers trouvés (Folders found) : 0
    Fichiers trouvés (Files found) : 0

    [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsCA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^
    ~ Additionnel Scan: 382572 Items scanned in 00mn 54s

    —\ Informations complémentaires sur les modules
    ~ http://nicolascoolman.fr/g2-google-chrome-extensions/” onclick=”window.open(this.href);return false; =>.Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
    ~ http://nicolascoolman.fr/r5-internet-explorer-proxy-management-iepm/” onclick=”window.open(this.href);return false; =>.Internet Explorer, Proxy Management (R5)
    ~ http://nicolascoolman.fr/o2-browser-helper-objects-de-navigateur/” onclick=”window.open(this.href);return false; =>.Browser Helper Objects de navigateur (O2)
    ~ http://nicolascoolman.fr/o3-internet-explorer-toolbars/” onclick=”window.open(this.href);return false; =>.Internet Explorer Toolbars (O3)
    ~ http://nicolascoolman.fr/o4-applications-demarrees-par-le-registre/” onclick=”window.open(this.href);return false; =>.Applications lancées au démarrage du système (O4)
    ~ AMI: 5 Legitimates Filtered in 00mn 00s

    —\ Récapitulatif des détections trouvées sur votre station
    http://nicolascoolman.fr/crapware-spyhunter” onclick=”window.open(this.href);return false; =>Crapware.SpyHunter
    http://nicolascoolman.fr/adware-lollipop” onclick=”window.open(this.href);return false; =>Adware.Lollipop
    http://nicolascoolman.fr/pup-optimizerpro” onclick=”window.open(this.href);return false; =>PUP.OptimizerPro
    http://nicolascoolman.fr/pup-vafplayer” onclick=”window.open(this.href);return false; =>PUP.VAFPlayer
    http://nicolascoolman.fr/adware-boxore” onclick=”window.open(this.href);return false; =>Adware.Boxore
    ~ MSI: 5 link(s) detected in 00mn 00s

    ~ 1153 Legitimates filtered by white list
    End of the scan (483 lines in 04mn 10s)(0)

  • buckhulk
    Participant
    Post count: 2391

    bonjour lechasseurvirtuel

    on va déjà commencer par passer Adwcleaner et JRT :

    • Télécharge Adwcleaner (de Xplode) sur ton Bureau !
    • Fais clic droit dessus, exécuter en tant qu’administrateur sous Windows : 7/8 et Vista,sinon double-clique pour XP
      1. Choisis l’option Scanner
      2. Choisis l’option Nettoyer
    • Accepte l’avertissement en cliquant sur OK

    • Accepte les avertissements/informations en cliquant sur OK
    • Copie et Colle le contenu du rapport qui apparaît au redémarrage du PC

    ______________________________________

    • Télécharge Junkware Removal Tool (de thisisu) sur ton bureau.
    • Lance Junkware Removal Tool, exécuter en tant qu’administrateur sous Windows : 7/8 et Vista
    • Appuie sur n’importe quelle touche.

    • Une fois le scan terminé rends toi sur le bureau, le fichier JRT.txt à été créé.
    • Héberge le rapport JRT.txt surSosUpload, puis copie/colle le lien fourni dans ta prochaine réponse sur le forum

    :merci2:

  • lechasseurvirtuel
    Participant
    Post count: 35

    Cool.. c’est parti !

    Merci

  • lechasseurvirtuel
    Participant
    Post count: 35

    hé voila le rapport Adwcleaner:

    # AdwCleaner v3.212 – Rapport créé le 20/06/2014 à 11:13:26
    # Mis à jour le 05/06/2014 par Xplode
    # Système d’exploitation : Windows 7 Home Premium Service Pack 1 (64 bits)
    # Nom d’utilisateur : Emmanuel – EMMANUEL-PC
    # Exécuté depuis : C:UsersEmmanuelDownloadsadwcleaner_3.212 (1).exe
    # Option : Nettoyer

    ***** [ Services ] *****

    Service Supprimé : 70e6ca8c
    Service Supprimé : IePluginServices
    [#] Service Supprimé : Software_update
    [#] Service Supprimé : Software_update_m
    [#] Service Supprimé : Update sizlsearch
    Service Supprimé : WindowsProtectManger

    ***** [ Fichiers / Dossiers ] *****

    Dossier Supprimé : C:ProgramDataIePluginServices
    Dossier Supprimé : C:ProgramDataWindowsProtectManger
    Dossier Supprimé : C:ProgramDataMicrosoftWindowsStart MenuProgramsoptimizer pro v3.2
    Dossier Supprimé : C:Program Files (x86)Boxore
    Dossier Supprimé : C:Program Files (x86)Optimizer Pro
    Dossier Supprimé : C:Program Files (x86)sizlsearch
    Dossier Supprimé : C:Program Files (x86)SupTab
    Dossier Supprimé : C:UsersEmmanuelAppDataRoamingSupTab
    Dossier Supprimé : C:UsersEmmanuelAppDataLocalSoftware
    Dossier Supprimé : C:Program Files (x86)Software
    Dossier Supprimé : C:UsersEmmanuelAppDataLocalGoogleChromeUser DataDefaultExtensionspbpohikckhbcljgombipcdoinkaedlfa
    Dossier Supprimé : C:UsersEmmanuelAppDataLocalGoogleChromeUser DataDefaultExtensionspelmeidfhdlhlbjimpabfcbnnojbboma
    Fichier Supprimé : C:UsersEmmanuelAppDataRoamingMozillaFirefoxProfilesi7i3esr.defaultExtensionsjid1-FCM5fDwCW5M3AQ@jetpack.xpi
    Fichier Supprimé : C:UsersEmmanuelDesktopOptimizer Pro.lnk
    Fichier Supprimé : C:Program Files (x86)Mozilla Firefoxbrowsersearchpluginssweet-page.xml
    Fichier Supprimé : C:UsersEmmanuelAppDataRoamingMozillaFirefoxProfilesi7i3esr.defaultuser.js
    Fichier Supprimé : C:windowsTasksSoftwareUpdateTaskMachineCore.job
    Fichier Supprimé : C:windowsSystem32TasksSoftwareUpdateTaskMachineCore
    Fichier Supprimé : C:windowsTasksSoftwareUpdateTaskMachineUA.job
    Fichier Supprimé : C:windowsSystem32TasksSoftwareUpdateTaskMachineUA

    ***** [ Raccourcis ] *****

    ***** [ Registre ] *****

    Valeur Supprimée : HKCUSoftwareMicrosoftWindowsCurrentVersionRun [Optimizer Pro]
    Clé Supprimée : HKLMSOFTWAREClassesSoftwareUpdate.CoreClass
    Clé Supprimée : HKLMSOFTWAREClassesSoftwareUpdate.CoreClass.1
    Clé Supprimée : HKLMSOFTWAREClassesSoftwareUpdate.OnDemandCOMClassMachine
    Clé Supprimée : HKLMSOFTWAREClassesSoftwareUpdate.OnDemandCOMClassMachine.1.0
    Valeur Supprimée : HKLMSOFTWAREMicrosoftWindowsCurrentVersionRun [Boxore Client]
    Clé Supprimée : HKLMSOFTWAREMozillaPlugins@tools.Software.com/Software Update;version=3
    Clé Supprimée : HKLMSOFTWAREMozillaPlugins@tools.Software.com/Software Update;version=9
    Clé Supprimée : HKLMSOFTWAREClassesCLSID{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
    Clé Supprimée : HKLMSOFTWAREClassesCLSID{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
    Clé Supprimée : HKLMSOFTWAREClassesCLSID{36D96925-ABFA-4EB8-B630-305E905A930D}
    Clé Supprimée : HKLMSOFTWAREClassesCLSID{4AA46D49-459F-4358-B4D1-169048547C23}
    Clé Supprimée : HKLMSOFTWAREClassesInterface{917CAAE9-DD47-4025-936E-1414F07DF5B8}
    Clé Supprimée : HKLMSOFTWAREClassesTypeLib{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}
    Clé Supprimée : HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
    Clé Supprimée : HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{36D96925-ABFA-4EB8-B630-305E905A930D}
    Clé Supprimée : HKLMSOFTWAREMicrosoftWindowsCurrentVersionExtPreApproved{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
    Clé Supprimée : HKCUSoftwareMicrosoftInternet ExplorerSearchScopes{33BB0A4E-99AF-4226-BDF6-49120163DE86}
    Clé Supprimée : HKLMSOFTWAREMicrosoftInternet ExplorerSearchScopes{33BB0A4E-99AF-4226-BDF6-49120163DE86}
    Clé Supprimée : [x64] HKLMSOFTWAREClassesCLSID{4AA46D49-459F-4358-B4D1-169048547C23}
    Clé Supprimée : [x64] HKLMSOFTWAREClassesInterface{917CAAE9-DD47-4025-936E-1414F07DF5B8}
    Clé Supprimée : [x64] HKLMSOFTWAREMicrosoftInternet ExplorerSearchScopes{33BB0A4E-99AF-4226-BDF6-49120163DE86}
    Clé Supprimée : HKCUSoftwareBoxore
    Clé Supprimée : HKCUSoftwareOptimizer Pro
    Clé Supprimée : HKCUSoftwaresizlsearch
    Clé Supprimée : HKCUSoftwareAppDataLow{1146AC44-2F03-4431-B4FD-889BC837521F}
    Clé Supprimée : HKLMSoftware{1146AC44-2F03-4431-B4FD-889BC837521F}
    Clé Supprimée : HKLMSoftware{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
    Clé Supprimée : HKLMSoftware{6791A2F3-FC80-475C-A002-C014AF797E9C}
    Clé Supprimée : HKLMSoftwareBoxore
    Clé Supprimée : HKLMSoftwaresizlsearch
    Clé Supprimée : HKLMSoftwareSupDp
    Clé Supprimée : HKLMSoftwareSupTab
    Clé Supprimée : HKLMSoftwaresweet-pageSoftware
    Clé Supprimée : HKLMSoftwareWpm
    Clé Supprimée : HKLMSOFTWAREMicrosoftWindowsCurrentVersionUninstall{0E365FDA-909F-4939-838A-261DD468D862}
    Clé Supprimée : HKLMSOFTWAREMicrosoftWindowsCurrentVersionUninstallOptimizer Pro_is1
    Clé Supprimée : [x64] HKLMSOFTWAREMicrosoftWindowsCurrentVersionUninstallsizlsearch
    Donnée Supprimée : HKLMSOFTWAREMicrosoftWindows NTCurrentVersionWindows [AppInit_DLLs] – C:PROGRA~2SupTabSEARCH~1.DLL
    Donnée Supprimée : [x64] HKLMSOFTWAREMicrosoftWindows NTCurrentVersionWindows [AppInit_DLLs] – C:PROGRA~2SupTabSEARCH~2.DLL
    Clé Supprimée : HKLMSoftwareClassesInstallerFeaturesADF563E0F909939438A862D14D868D26
    Clé Supprimée : HKLMSoftwareClassesInstallerProductsADF563E0F909939438A862D14D868D26

    ***** [ Navigateurs ] *****

    #NOM?

    Paramètre Restauré : HKCUSoftwareMicrosoftInternet ExplorerMain [Start Page]
    Paramètre Restauré : HKCUSoftwareMicrosoftInternet ExplorerMain [Default_page_url]
    Paramètre Restauré : HKLMSOFTWAREMicrosoftInternet ExplorerMain [Default_Search_URL]
    Paramètre Restauré : HKLMSOFTWAREMicrosoftInternet ExplorerMain [Default_Page_URL]
    Paramètre Restauré : HKLMSOFTWAREMicrosoftInternet ExplorerMain [Start Page]
    Paramètre Restauré : HKLMSOFTWAREMicrosoftInternet ExplorerMain [Search Page]
    Paramètre Restauré : [x64] HKLMSOFTWAREMicrosoftInternet ExplorerMain [Default_Search_URL]
    Paramètre Restauré : [x64] HKLMSOFTWAREMicrosoftInternet ExplorerMain [Default_Page_URL]
    Paramètre Restauré : [x64] HKLMSOFTWAREMicrosoftInternet ExplorerMain [Start Page]
    Paramètre Restauré : [x64] HKLMSOFTWAREMicrosoftInternet ExplorerMain [Search Page]

    #NOM?

    [ Fichier : C:UsersEmmanuelAppDataRoamingMozillaFirefoxProfilesi7i3esr.defaultprefs.js ]

    Ligne Supprimée : user_pref(“browser.newtab.url”, “hxxp://www.sweet-page.com/newtab/?type=nt&ts=1403255247&from=adks&uid=WDCXWD6400BPVT-75HXZT1_WD-WXJ1A51D1034D1034”);
    Ligne Supprimée : user_pref(“browser.search.defaultenginename”, “sweet-page”);
    Ligne Supprimée : user_pref(“browser.search.selectedEngine”, “sweet-page”);
    Ligne Supprimée : user_pref(“browser.startup.homepage”, “hxxp://www.sweet-page.com/?type=hp&ts=1403255247&from=adks&uid=WDCXWD6400BPVT-75HXZT1_WD-WXJ1A51D1034D1034”);

    #NOM?

    [ Fichier : C:UsersEmmanuelAppDataLocalGoogleChromeUser DataDefaultpreferences ]

    Supprimée [Search Provider] : hxxp://www.sweet-page.com/web/?type=ds&ts=1403255247&from=adks&uid=WDCXWD6400BPVT-75HXZT1_WD-WXJ1A51D1034D1034&q=” onclick=”window.open(this.href);return false;{searchTerms}
    Supprimée [Startup_urls] : hxxp://www.sweet-page.com/?type=hp&ts=1403255247&from=adks&uid=WDCXWD6400BPVT-75HXZT1_WD-WXJ1A51D1034D1034″ onclick=”window.open(this.href);return false;
    Supprimée [Homepage] : hxxp://www.sweet-page.com/?type=hp&ts=1403255247&from=adks&uid=WDCXWD6400BPVT-75HXZT1_WD-WXJ1A51D1034D1034″ onclick=”window.open(this.href);return false;
    Supprimée [Extension] : pbpohikckhbcljgombipcdoinkaedlfa
    Supprimée [Extension] : pelmeidfhdlhlbjimpabfcbnnojbboma

    *************************

    AdwCleaner[R0].txt – [6127 octets] – [22/08/2013 23:00:36]
    AdwCleaner[R1].txt – [5435 octets] – [26/08/2013 16:18:29]
    AdwCleaner[R2].txt – [5210 octets] – [26/08/2013 17:02:27]
    AdwCleaner[R3].txt – [14848 octets] – [28/11/2013 15:54:49]
    AdwCleaner[R4].txt – [2967 octets] – [18/03/2014 19:31:00]
    AdwCleaner[R5].txt – [4523 octets] – [17/06/2014 10:50:47]
    AdwCleaner[R6].txt – [1681 octets] – [18/06/2014 19:53:20]
    AdwCleaner[R7].txt – [1801 octets] – [20/06/2014 09:44:13]
    AdwCleaner[R8].txt – [10387 octets] – [20/06/2014 11:11:53]
    AdwCleaner[S0].txt – [6038 octets] – [22/08/2013 23:02:29]
    AdwCleaner[S1].txt – [5644 octets] – [26/08/2013 16:20:05]
    AdwCleaner[S2].txt – [5349 octets] – [26/08/2013 17:03:43]
    AdwCleaner[S3].txt – [12054 octets] – [28/11/2013 15:56:30]
    AdwCleaner[S4].txt – [3047 octets] – [18/03/2014 19:32:32]
    AdwCleaner[S5].txt – [4576 octets] – [17/06/2014 10:59:22]
    AdwCleaner[S6].txt – [1742 octets] – [18/06/2014 19:54:06]
    AdwCleaner[S7].txt – [1862 octets] – [20/06/2014 09:45:14]
    AdwCleaner[S8].txt – [8954 octets] – [20/06/2014 11:13:26]

    ########## EOF – C:AdwCleanerAdwCleaner[S8].txt – [9014 octets] ##########

  • lechasseurvirtuel
    Participant
    Post count: 35

    Le fichier JRT !!! le voilou

    https://antimalware.top/www/?a=d&i=QV5Q6SHNJK” onclick=”window.open(this.href);return false;

    :merci2: :merci2: :merci2: :merci2: :merci2: :merci2:

  • lechasseurvirtuel
    Participant
    Post count: 35

    :content: :content: alors ça dit quoi docteur ?

  • lechasseurvirtuel
    Participant
    Post count: 35

    Il est plus la mon helper????

  • buckhulk
    Participant
    Post count: 2391

    helo , désolé ….. ^^

    il y a eu déjà pas mal de chose de faites , tu me dis comment ça va ?

    et tu me refais un ZHPDiag s’il te plait

    :merci2:

    • Télécharge ZHPDiag (de Nicolas Coolman) sur ton bureau.
    • Installe le logiciel.
    • Lance ZHPDiag, exécuter en tant qu’administrateur sous Windows : 7/8 et Vista
    • Clic sur Complet

      Note : Ne pas fermer le programme même si il est indiqué qu’il ne répond plus.

    • Une fois le scan terminé rends toi sur le bureau, le fichier ZHPDiag.txt à été créé.
    • Héberge le rapport ZHPDiag.txt sur SosUpload, puis copie/colle le lien fourni dans ta prochaine réponse sur le forum

    siffle

  • lechasseurvirtuel
    Participant
    Post count: 35

    et voila le deuxieme: https://antimalware.top/www/?a=d&i=lahXENVCv8” onclick=”window.open(this.href);return false;

    Merci

    J,ai fait quelques tests et apparemment c’est réglé :bravo1:

  • buckhulk
    Participant
    Post count: 2391
    ,ai fait quelques tests et apparemment c'est réglé :bravo1:

    oui en effet plus que quelques trucs….

    FlashPlayer à mettre à jour :

    Pour Flash Player :

    Flash Player choisir ta version

    Ne prendre des téléchargements QUE sur le site Editeur !

    [highlight=#ffff40:2ru4rsbo]Je te laisse tes P2P car ICI on m'a dit de les laisser mais si tu es infecté c'est surement à cause d'eux :[/highlight:2ru4rsbo]
    désinstalle tes µtorrent car bien qu’il ne soient pas infectieux , c’est leur utilisation (mauvaise) qui t’amènent des virus …

    Regarde ICI

    et ensuite :

    • Séléctionne et copie le script suivant :

      Script ZHPFix
      ShortcutFix
      Java 7 Update 9 => Oracle
      O3 - ToolbarWebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Clé orpheline => Toolbar.Google
      [MD5.00000000000000000000000000000000] [APT] [{32F0E01F-211F-4A83-BDA2-0C371AC577D4}] (...) -- C:UsersEmmanuelDesktopVideo_AMD_W7W8_A01_Setup-HC6HJ_ZPE.exe (.not file.) [0] => Fichier absent
      [MD5.00000000000000000000000000000000] [APT] [{43239D08-3B01-46D1-82DB-542D0AC7246F}] (...) -- C:UsersEmmanuelDownloadsAntiCrashSetup.exe (.not file.) [0] =>Crapware.SpyHunter
      [MD5.00000000000000000000000000000000] [APT] [{AE307963-5CE7-4E07-B7FC-599AE0EF618B}] (...) -- C:UsersEmmanuelDownloadswin64_15288.exe (.not file.) [0] => Fichier absent
      [MD5.00000000000000000000000000000000] [APT] [{F0F0458F-D529-4A54-81FA-27D4CD9918EA}] (...) -- C:UsersEmmanuelDownloadsWin7Vista_64_152257.exe (.not file.) [0] => Fichier absent
      O39 - APT: - (..) -- C:WindowsSystem32TasksPCDoctorBackgroundMonitorTask-Delay [564]
      O39 - APT: APT: - (..) -- C:WindowsTasksPCDoctorBackgroundMonitorTask-Delay.job [564] - (..) -- C:WindowsTasksPCDoctorBackgroundMonitorTask.job [564]
      O39 - APT: APT: - (..) -- C:WindowsSystem32TasksPCDoctorBackgroundMonitorTask-Delay [564] - (..) -- C:WindowsSystem32TasksPCDoctorBackgroundMonitorTask [564]
      O42 - Logiciel: WindowsProtectManger20.0.0.401 - (.Fuyu LIMITED.) [HKLM][64Bits] -- WindowsProtectManger =>PUP.Fuyu
      [HKCUSoftwarewebinternetsecurity] =>Spyware.Binternet
      O43 - CFD: 09/nov./2012 - 19:23:24 - [] --H-D C:ProgramData{B5B803B3-9B3A-414E-8030-FF46D1FAA390}
      O43 - CFD: 13/déc./2009 - 17:39:29 - [0] ----D C:ProgramData{BC9FCCF7-E686-494B-8C9B-55C9A39A7CA9} => Lavasoft Ad-Aware
      O43 - CFD: 25/sept./2013 - 15:58:51 - [] ----D C:UsersEmmanuelAppDataLocalmessengerdusexe => Rentabiliweb
      O43 - CFD: 20/juin/2014 - 11:12:40 - [0] ----D C:UsersEmmanuelAppDataLocalwebinternetsecurity =>Spyware.Binternet
      O44 - LFC:[MD5.BF4A63DD1548C32D4E34940497EF8480] - 20/juin/2014 - 08:13:33 ---A- . (...) -- C:WindowsBRRBCOM.INI [336]
      [MD5.79BBAAC753ABDA50DF19030265F7D1A6] [WIS][09/avr./2014] (.Boxore OU - Boxore Client Installer.) -- C:WindowsInstaller4b0c97.msi [2473984] =>Adware.Boxore
      HKLMSOFTWAREWow6432NodeMicrosoftTracingLollipopInstaller_14656_RASAPI32 =>Adware.Lollipop
      HKLMSOFTWAREWow6432NodeMicrosoftTracingLollipopInstaller_14656_RASMANCS =>Adware.Lollipop
      HKLMSOFTWAREWow6432NodeMicrosoftTracingOptimizer_Pro_RASAPI32 =>PUP.OptimizerPro
      HKLMSOFTWAREWow6432NodeMicrosoftTracingOptimizer_Pro_RASMANCS =>PUP.OptimizerPro
      HKLMSOFTWAREWow6432NodeMicrosoftTracingsizlsearch_RASAPI32 =>PUP.SizlSearch
      HKLMSOFTWAREWow6432NodeMicrosoftTracingsizlsearch_RASMANCS =>PUP.SizlSearch
      HKLMSOFTWAREWow6432NodeMicrosoftTracingupdatesizlsearch_RASAPI32 =>PUP.SizlSearch
      HKLMSOFTWAREWow6432NodeMicrosoftTracingupdatesizlsearch_RASMANCS =>PUP.SizlSearch
      HKLMSOFTWAREWow6432NodeMicrosoftTracingVAFPlayer_RASAPI32 =>PUP.VAFPlayer
      HKLMSOFTWAREWow6432NodeMicrosoftTracingVAFPlayer_RASMANCS =>PUP.VAFPlayer
      SS - | Demand 06/sept./2013 288776 | (McComponentHostService) . (.McAfee, Inc..) - C:Program FilesMcAfee Security Scan3.8.130McCHSvc.exe => McAfee, Inc
      [HKLMSoftwareMicrosoftWindowsCurrentVersionUninstallWindowsProtectManger] =>PUP.Fuyu^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUpgradeCodes1C875DDE39636004CA8CDAEC335B4160] =>Adware.PredictAd
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components124B064795BB484FA494FC7CF204C0C] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components1F8E7504D2D2644AB1185234D2AD5AC] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components4CDEDFDD6EF25443B78A49D1FE5B4F2] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components58911EBC07BAAE42B102E3F4B0D070D] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components5CE306CC244D284D8D8090E404CD7D3] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components89527E77AD22E345B0066D226E44F46] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsBD0B15D6F0C2BF428B339B2D2D732C9] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsC1AAA506D92B2D44BD6FEF6CDFB71E1] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsCAEC9AFF1716FF4DBACEED82F88C702] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsDD4444CBC682774C8E573CC73C5BC46] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsF68250201451D64EA71E91BA19832DC] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components126FFC99A0F214F41AE2D6C7A0FC09BF] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components12F72EF2521177A4BB467FF35A881382] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components14873772FE3926F4195C9280D52D3486] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components14CF11D787D40BF458A3B5CB123733CE] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components163A5460E4FB18343B4C0B781B27E813] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components1705977FCB2F22F4D8A9AB847C3FB9CE] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components19F133B6A0BA9B14493CE47703DF4CF3] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components1C735C7A54F53574CA5AEA93D0D1F01E] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components1CE2260B068265A488410CA171D93778] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components1DF1DD2609A2135479C19D72E41B64AA] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components1F72D9058D0863E4F8EB9FE6E980C385] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components2217D47FAFB0AC547820199B3A026CFB] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components22C5FD2815F5C7C4DB5F34F504BF9D96] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components26CF57FC035624845B9005289DFA1448] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components2719056FB4CDD294887140382819FFF7] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components2956CB28F45AAF746998774B3C9FF012] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components2AD5E582EBA9ED54989A134D9250922B] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components2BB672F8D2CA64146B6688371E75C986] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components2EA450B923F9C4D4BBEB203648FBFFDC] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components2ECA942EFDBD22B4EBB7FE3AB9EDDBDD] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components2F055C41FDCA50A43BE42A96D243AD47] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components2F4EE319A22490145BC4AEBC53B616CA] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components31E430E345D85D54CA33BC88AEFDB9D8] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components358096DA35E67B5479C2E880DF0C10C1] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components37345F678B330594E9E4AC16908F78CF] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components38641BF101151094F86DD62B534BDEC4] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components38762340C83E6764B87807B67154F5A4] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components3984BAF27BDA0DC4D8AED19FCB64BD7D] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components3D82200490995CE42AB754DCD90AC44D] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components3E9F0E4315A35D741873885200C6A454] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components3F261C3E5AD56E54598E24B106813C7E] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components40D753328E77EE842A82631EED62CEC5] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components40FDEFB25883CF140B9B5F89CB7E2871] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components412179CD2126BB34CAE51691856A3D68] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components43218F63264345445A73071C174FEEE8] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components439E8A02B7736CA488EECE28D7EE961A] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components456D8CED0106E1649AE5CBD8082AC705] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components459277E8A0EE8894F9D7F807DF90506A] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components463372A470C576443AE8802B1AC61D89] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components48F13E425ECD5F243A8A82AA2B65336D] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components4B6F3AD0EE690D2478C7D0528AADF8C4] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components4BB9D431259E08A499469636383B9935] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components4D3B0714BC82B2340AB18C031262573D] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components4D5809867D6C1D14180511D3AAD03F79] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components4DB13DED48DC4494C90DE800D31B086C] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components52C608FC2A61CCE479768A9719CABF7B] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components56861F0CE995D0E45835F5D31E105D54] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components58E44D082625757499995F9516313A9C] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components5A52F724764B00747A637F14FBBBB830] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components5B19839CB98BB914BA43E863BBE11B4E] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components613DCE6E373581A40B6C88D4F7C09096] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components6292C097F9759424BAFA3E32CD3DD562] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components62C171206461ED34885A4AE095F4A7AC] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components63E9F48D88AA940498502E29E3747471] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components64747EAAAE2BA5141AEBCF4F6651A144] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components6494B0B34076D6248B6E5F42E3252AD0] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components6495111F730311440BBC3AAAF3B8C7AC] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components65273BD75ADFA9146A0950469941299A] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components6543EA2E8E729CF4789BCD7361D58C03] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components658DABBCADB609E429A6769C46FAADD0] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components67A614CC45D7C5845BE2184211CC8F9C] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components6B6581D2CF6BB444D8ACBF79E3AF425B] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components6C0DB201BFD71284CB8CA279446863E8] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components6EA4E994723ECC940AE01A2507673199] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components6F2331E07AF9B414DB15E2E7BAB7F880] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components6F3E6739E6CECC64D9B7E5D24CF60746] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components73268B3F6C2206C4BAF14E3C5B4BC494] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components73D229597C7281E409FDEB3079E30E5A] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components75A49DF39158638428A0F7797D4CD1E6] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components75D223AE12684124794DD7D3FB067886] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components76937F723CDCAB547A9791D60867A5B5] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components78AD011E92C0B7D4A86E41451EC7A0F0] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components79080E81959ECB54E9E7B3C67AE5781A] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components7A8B37070412F4D47895AA40EFC2E39A] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components7F84DAA817EC0AB409DFE802184D5B09] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components82F14F44AA63A5945A2E960EF018794E] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components831071FAC16E2DA4682F55E0B0DE6979] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components83D0F8F1641145A42B26F71D534E9A34] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components84072C174C7F25148BFB33ADE8C704E1] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components872C7B3D2887D4E4EBF645D7AB9374D1] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components8C00987A23C36B145AB60EE274936EB3] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components8D736B12592E2E94094267BC5B7AA7EB] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components8F3E0221A8351144BB04AEF5266143CB] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components90E77522D1656DA4DABC673942243B44] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components920219BD6C542544893D7ECFCB5E2B6B] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components939840D09446FFF459FA6CB4F03C38BE] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components9459BDD3A7C686345A9B7A1AD1CC6BE4] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components95AC1A94BAFFE3D41B23B2097BA8B190] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components983EBB458AA802846BBC74D26C3209C8] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components98A0180804723E24AAA941C0B046363D] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components990A25796B2949842BACA56514B7316A] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components999D63C685BF046489CA3126029FE837] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components9AC4C1465926D52478BEC6D3DB946DD7] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components9CF7625ADC5FCFE43AD003DCC16B49CB] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsA2D54AC8D24E8F94ABBB993A69EF13EC] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsA357C02D064283D41978AFEEE1A48E0F] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsA4022CA9531268145AD6F8FD7F4F01DC] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsA5CDCC279604D6746A7DA9ED701BF41F] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsA6F4FE9AC6F165A4EAA8F90CE891C0DA] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsA960AC53CA238044A820A3B63D4536CA] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsAA3077BB9E4617440AF467D91146A8C4] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsAAC05EAA51DC78A41A1DCE3B31038584] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsAD7957C966A13904EA466152B29EA9AF] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsB13C910C1D6376A4BB2BDB9585253923] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsB1B5689BAD89AFD448923B5051E5BB50] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsB2CE0F97DFABDE446811F33E7273BFE2] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsB445461D74829AF4C8EF6C00B2861EF0] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsB4D011D14FD2DB74A9090EA633C0B98E] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsB551BEBCA0334AA40978C2137FD21AB2] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsB877893A942DC524580C7B45547FCBC8] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsBA71D41F6CC0B6247B05D473850A8AEA] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsBC651C0803618C44DA6F1DDD51AF35BF] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsBDE5B9F2A520B674BBB1BEAE5F5D51B8] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsBEE85C3D8F4816D4A9E5F4EAA4D80A2A] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsBFD48F71CCCEC97489147D4E852D3F6F] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsC05694CDCD2DD724F90F13A20E67EC7C] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsC42065D3060DD4648A38882BEA92941E] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsC5F606FB1152E344981B09071C472211] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsC77B53875F388AA4AA076F6F9D099011] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsC85EA06E73FF0A240B4C287EE0D9521D] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsCA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsCA30DE5A0DE293D4AA3BF5E13322823A] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsCA9ADF25A98C8074FA4CBBA3ED29FEFA] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsCCE886225BDEB6C43868B0AEDB036B02] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsCDD11BF4B1CAA584695EFBC611438213] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsCE1CCF5CABA1395409D54586592B319E] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsCE7392F9B9A81FA4EA952625BD5534FE] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsD12B7976E5CA7C34D932C1A8A1BF61C8] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsD91D500D43BD91A44B02BDBE41E0523F] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsDA2710A9158C6584C9677EB954F3AC97] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsDCF07B57C9DC38E419CF122EA180585E] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsDD2E1A561C7F1294BB3996EE77F6BBEE] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsDF14E9E130504B745A2AC47EF6145D24] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsDF7A4CDE9ED9CD7479FF74F35FA4149E] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsDFE39849AF921D045B613CD5852C76A6] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsE03EC5B80A22A7D4C92AB528A3D323E8] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsE1B9E95AA2730744AB926911484F8AD5] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsE3436415FB2833843B9EE970079A87C0] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsE3BBB86ACE9686A4281227D5F7EE95AE] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsE6B40E8EBBC3CD445BD2FC7D8FDCCFEC] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsE77C3F952C1F0354FAFADB6B080ACCF7] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsE84382A588F214C4C89C3DB758EA6AD6] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsE89B10C102BBEF941A920EE2269747C0] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsE9D73D5153C19FD48B6E10CB7E8572CE] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsEBAFF392ACA75ED4CA30BF821C1AE267] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsECFC746582988774684DB5D8D95F674D] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsEECC799BFA63E6146A81EAAA53540EDE] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsF1547261AA1C98C48B0ECDBC767C76CE] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsF1BDB464DE2D33547BB31C1B35D9C337] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsF29CFDBF9B20AB8448A1BD73A3FE863F] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsF5F8D8368E8CAE84188DE44DAF8C10F9] =>Adware.Boxore^
      [HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsFAB510A06C6F4B24AAD055CE6EEA27CD] =>Adware.Boxore^
      C:UsersEmmanuelAppDataLocalwebinternetsecurity =>Spyware.Binternet^
      [HKCUSoftwarewebinternetsecurity] =>Spyware.Binternet^
      C:WindowsInstaller4b0c97.msi =>Adware.Boxore^
      C:UsersEmmanuelAppDataLocalTempBoxoreInstaller.exe =>Adware.Boxore
      ProxyFix
      EmptyPrefetch
      EmptyFlash
      SysRestore
      FirewallRAZ
      EmptyTemp

    • Lances ZHPFix, exécuter en tant qu’administrateur sous Windows : 7/8 et Vista

      1. Clique sur Importer
      2. Les lignes précedemment copiées doivent être collées dans le cadre
      3. Si c’est le cas, Clic sur “GO


      exemple :

    • Confirmes les nettoyages des données en cliquant sur “Oui
    • Une fois le scan terminé rends toi sur le bureau, le fichier ZHPFixReport à été crée.
    • Héberge le rapport ZHPFixReport sur SosUpload, puis copie/colle le lien fourni dans ta prochaine réponse.
  • lechasseurvirtuel
    Participant
    Post count: 35

    Merci, super…. bon alors les torrent…zooouuu a la poubelle et voici le nouveau rapport:https://antimalware.top/www/?a=d&i=8ClcusFa5L

    merci

  • H.A.W.X
    Participant
    Post count: 1704

    Bonjour,

    @buckhulk wrote:

    [highlight=#ffff40:1249soso]Je te laisse tes P2P car ICI on m'a dit de les laisser mais si tu es infecté c'est surement à cause d'eux :[/highlight:1249soso]

    Tout à fait.

    @lechasseurvirtuel wrote:

    Merci, super…. bon alors les torrent…zooouuu a la poubelle

    Je tiens à te rassurer, les infections présentes sûr ton PC ne sont pas venue de tes P2Ps.
    Cela étant, sage décision.

    Bonne continuation.

  • buckhulk
    Participant
    Post count: 2391

    pour ta vielle version de java qui n’a pas été supprimé : désinstaller les anciennes versions

    maintenant si ça va bien et que c’est bon pour toi , c’est bon pour moi !

    pour les µtorrent c’est ton choix …..

    tu me dis et on passe au canned de fin

  • lechasseurvirtuel
    Participant
    Post count: 35

    Me suis occupé des vieilles version de java… le reste est bon….. super Merci beaucoup

  • buckhulk
    Participant
    Post count: 2391

    impeccable !

    On va passer Delfix maintenant :

    • Télécharges Delfix sur ton Bureau.
    • Lance Delfix, exécuter en tant qu’administrateur sous Windows : 7/8 et Vista
    • Coche la case suivantes :
      • Réactiver l’UAC
      • Supprimer les outils de désinfection
      • Effectuer une sauvegarde du registre
      • Purger la restauration système
      • Réinitialisation des paramètres système

    [fin2desinf:2flok6ta][/fin2desinf:2flok6ta]
    [diapo2:2flok6ta][/diapo2:2flok6ta]

    :bye: bon week-end !

Le sujet ‘infections ??? j’ai tout essayé !!!’ est fermé à de nouvelles réponses.