usb en mode raccourci 2013-10-22T15:13:29+00:00
  • Auteur
    Messages
  • Photo du profil de alesiaalesia
    Participant
    Post count: 17

    bonjours voila depuis que j’ai mis ma clef usb dans l’ordinateur de mon lycée tout mes fichier se sont mis en raccourci que faire ?

    voici le listing :
    ############################## | UsbFix V 7.145 | [Listing]

    Utilisateur: audrey (Administrateur) # AUDREY-PC
    Mis à jour le 17/10/2013 par El Desaparecido – Team SosVirus
    Lancé à 17:01:24 | 22/10/2013

    Site Web: http://www.usbfix.net/” onclick=”window.open(this.href);return false;
    Forum : https://www.sosvirus.net/” onclick=”window.open(this.href);return false;
    Upload Malware: upload_malware.php
    Contact: http://www.usbfix.net/contact/” onclick=”window.open(this.href);return false;

    PC: Hewlett-Packard (365C)
    CPU: Intel(R) Core(TM) i3 CPU M 330 @ 2.13GHz
    RAM -> [Total : 4023 | Free : 1352]
    Bios: Hewlett-Packard
    Boot: Normal boot

    OS: Microsoft Windows 7 Édition Familiale Premium (6.1.7601 64-Bit) # Service Pack 1
    WB: Windows Internet Explorer 9.0.8112.16421

    SC: Security Center Service [Enabled]
    WU: Windows Update Service [Enabled]
    AV: avast! Antivirus [Enabled | Updated]
    FW: Windows FireWall Service [Enabled]

    C: (%systemdrive%) -> Disque fixe # 579 Go (377 Go libre(s) – 65%) [] # NTFS
    D: -> Disque fixe # 17 Go (3 Go libre(s) – 16%) [RECOVERY] # NTFS
    E: -> Disque fixe # 99 Mo (83 Mo libre(s) – 83%) [HP_TOOLS] # FAT32
    F: -> CD-ROM
    G: -> Disque amovible # 4 Go (3 Go libre(s) – 82%) [Transcend] # FAT32

    ################## | Listing |

    [13/07/2013 – 17:55:44 | SHD ] C:$Recycle.Bin
    [01/12/2010 – 19:16:51 | D ] C:2f4c587e84160bb19c4ceba76af8aa09
    [23/03/2013 – 20:03:34 | D ] C:4735185beedade692b224300dfd1f1de
    [29/09/2013 – 10:34:37 | D ] C:86db32a144fa28a680e81fd38d7870
    [23/09/2013 – 08:29:37 | D ] C:9bcf3afcf39ad6e1f425ba40
    [30/09/2013 – 08:03:12 | D ] C:a710de534ada7c34609cbec3737be94d
    [23/09/2011 – 20:42:09 | D ] C:AeriaGames
    [22/10/2013 – 16:59:50 | RASHD ] C:Autorun.inf
    [09/01/2010 – 11:45:31 | SHD ] C:boot
    [14/07/2009 – 03:38:58 | RASH | 383562] C:bootmgr
    [22/10/2013 – 15:40:19 | SHD ] C:Config.Msi
    [14/07/2009 – 07:08:56 | SHD ] C:Documents and Settings
    [05/09/2013 – 14:18:40 | D ] C:ee48d8f723f18e5eff3feeca929bc1
    [16/07/2011 – 11:37:21 | A | 9] C:END
    [07/11/2007 – 09:00:40 | A | 17734] C:eula.1028.txt
    [07/11/2007 – 09:00:40 | A | 17734] C:eula.1031.txt
    [07/11/2007 – 09:00:40 | A | 10134] C:eula.1033.txt
    [07/11/2007 – 09:00:40 | A | 17734] C:eula.1036.txt
    [07/11/2007 – 09:00:40 | A | 17734] C:eula.1040.txt
    [07/11/2007 – 09:00:40 | A | 118] C:eula.1041.txt
    [07/11/2007 – 09:00:40 | A | 17734] C:eula.1042.txt
    [07/11/2007 – 09:00:40 | A | 17734] C:eula.2052.txt
    [07/11/2007 – 09:00:40 | A | 17734] C:eula.3082.txt
    [18/03/2011 – 22:44:18 | D ] C:Facemoi
    [17/02/2012 – 21:46:12 | SHD ] C:found.000
    [07/11/2007 – 09:00:40 | A | 1110] C:globdata.ini
    [22/10/2013 – 16:15:05 | ASH | 3163709440] C:hiberfil.sys
    [19/03/2010 – 03:00:05 | HD ] C:HP
    [19/03/2010 – 02:49:16 | D ] C:IExp0.tmp
    [19/03/2010 – 02:49:17 | D ] C:IExp1.tmp
    [07/11/2007 – 09:44:20 | A | 855040] C:install.exe
    [07/11/2007 – 09:00:40 | A | 843] C:install.ini
    [07/11/2007 – 09:44:20 | A | 75280] C:install.res.1028.dll
    [07/11/2007 – 09:44:20 | A | 95248] C:install.res.1031.dll
    [07/11/2007 – 09:44:20 | A | 90128] C:install.res.1033.dll
    [07/11/2007 – 09:44:20 | A | 96272] C:install.res.1036.dll
    [07/11/2007 – 09:44:20 | A | 94224] C:install.res.1040.dll
    [07/11/2007 – 09:44:20 | A | 80400] C:install.res.1041.dll
    [07/11/2007 – 09:44:20 | A | 78864] C:install.res.1042.dll
    [07/11/2007 – 09:44:20 | A | 74768] C:install.res.2052.dll
    [07/11/2007 – 09:44:20 | A | 95248] C:install.res.3082.dll
    [23/03/2013 – 00:54:04 | D ] C:Kreapixel
    [29/06/2013 – 21:43:40 | HD ] C:mnt
    [09/01/2010 – 00:21:24 | RHD ] C:MSOCache
    [22/10/2013 – 16:15:05 | ASH | 4218281984] C:pagefile.sys
    [14/07/2009 – 05:20:08 | D ] C:PerfLogs
    [27/02/2012 – 14:32:03 | D ] C:Poker
    [12/10/2013 – 10:13:51 | RD ] C:Program Files
    [22/10/2013 – 16:20:41 | RD ] C:Program Files (x86)
    [22/10/2013 – 15:38:16 | HD ] C:ProgramData
    [17/08/2010 – 21:06:53 | SHD ] C:Recovery
    [05/09/2013 – 13:27:37 | D ] C:Riot Games
    [22/03/2013 – 16:33:42 | D ] C:SwSetup
    [22/10/2013 – 15:48:08 | SHD ] C:System Volume Information
    [01/12/2010 – 14:55:39 | HD ] C:SYSTEM.SAV
    [20/09/2013 – 17:49:14 | D ] C:Temp
    [04/11/2012 – 13:49:08 | A | 0] C:temp.txt
    [22/10/2013 – 17:01:26 | D ] C:UsbFix
    [22/10/2013 – 16:53:20 | A | 8691] C:UsbFix [Listing 1 ] AUDREY-PC.txt
    [22/10/2013 – 17:01:26 | A | 4301] C:UsbFix [Listing 2 ] AUDREY-PC.txt
    [03/01/2013 – 15:35:58 | A | 2251] C:user.js
    [13/07/2013 – 17:55:24 | RD ] C:Users
    [07/11/2007 – 09:00:40 | A | 5686] C:vcredist.bmp
    [07/11/2007 – 08:09:22 | A | 1442522] C:VC_RED.cab
    [07/11/2007 – 08:12:28 | A | 232960] C:VC_RED.MSI
    [12/10/2013 – 10:13:49 | D ] C:Windows
    [30/08/2011 – 13:16:33 | A | 4680] C:{00EC353B-270A-4CDA-9DED-1FB92980334D}
    [14/10/2011 – 14:11:50 | A | 3240] C:{D26F4ABB-959A-46BF-9BEE-515D3E614081}
    [13/07/2013 – 17:55:44 | SHD ] D:$RECYCLE.BIN
    [22/10/2013 – 16:59:51 | RASHD ] D:Autorun.inf
    [17/08/2010 – 21:11:26 | SHD ] D:boot
    [14/07/2009 – 20:39:00 | ASH | 383562] D:bootmgr
    [17/08/2010 – 21:11:26 | SH | 0] D:BT_HP.FLG
    [19/03/2010 – 12:44:39 | ASH | 483] D:CSP.DAT
    [19/03/2010 – 12:54:04 | ASH | 12036] D:DeployRp.log
    [17/08/2010 – 21:11:26 | SHD ] D:hp
    [20/04/2012 – 18:43:31 | A | 20] D:HPSF_Rep.txt
    [17/08/2010 – 21:11:25 | ASH | 22] D:language.ini
    [17/08/2010 – 21:11:26 | SHD ] D:preload
    [17/08/2010 – 21:11:26 | SD ] D:Recovery
    [19/03/2010 – 12:54:02 | ASH | 0] D:RPCONFIG.LOG
    [11/02/2012 – 12:24:05 | SHD ] D:System Volume Information
    [17/08/2010 – 21:11:26 | SHD ] D:system.sav
    [20/04/2012 – 18:43:32 | A | 20] E:HPSF_Rep.txt
    [24/07/2011 – 13:24:46 | AD ] E:Hewlett-Packard
    [11/12/2011 – 16:32:50 | A | 1573630] E:heroes.png
    [11/12/2011 – 16:27:10 | A | 1620032] E:la guilde.png
    [11/12/2011 – 16:27:24 | A | 1560459] E:la guilde2.png
    [11/12/2011 – 16:29:02 | A | 2217875] E:nous.png
    [11/12/2011 – 16:29:28 | A | 2279272] E:nous2.png
    [11/12/2011 – 16:32:24 | A | 1752081] E:nous3.png
    [11/12/2011 – 16:28:46 | A | 2345197] E:annaale.png
    [17/08/2010 – 20:11:30 | SHD ] E:$RECYCLE.BIN
    [22/10/2013 – 16:59:52 | RASHD ] E:Autorun.inf
    [12/10/2013 – 09:53:26 | SH | 161755] G:Louis_François_LEJEUNE_-_La_Chasse_à_l’ours_vers_la_cascade_du_lac_d’Oo,_près_de_Bagnères-de-Luchon_-_Musée_des_Augustins_-_2000_1_1.jpg
    [12/10/2013 – 09:55:28 | SH | 117017] G:4waterfall.jpg
    [12/10/2013 – 10:00:32 | SH | 15164] G:cascade subli.png
    [22/10/2013 – 17:01:08 | A | 708] G:cascades.lnk
    [20/09/2013 – 18:46:20 | SH | 2590] G:esc avec meg.rtf
    [27/09/2013 – 08:39:48 | SH | 17736] G:m840-173-1234979981chat-et-chien.jpg
    [12/10/2013 – 09:54:38 | SH | 4869] G:neon-luminance-cascades-deau-fluorescentes-L-omtJMS.jpeg
    [14/10/2013 – 11:01:04 | SH | 888606] G:cascades.docx
    [13/10/2013 – 19:19:24 | SH | 14026] G:a imprimer esc.docx
    [02/10/2013 – 15:24:14 | SH | 5933568] G:dossier technologique AUDREY2.doc
    [03/10/2013 – 16:26:46 | SHD ] G:stav 4 octobre bis
    [03/10/2013 – 16:02:02 | SHD ] G:stav terminal 4 octobre
    [22/10/2013 – 17:01:06 | A | 756] G:cascade subli.lnk
    [09/10/2013 – 14:39:00 | SH | 5934592] G:dossier technologique AUDREY2bis.doc
    [22/10/2013 – 17:01:06 | A | 1864] G:Louis_François_LEJEUNE_-_La_Chasse_à_l’ours_vers_la_cascade_du_lac_d’Oo,_près_de_Bagnères-de-Luchon_-_Musée_des_Augustins_-_2000_1_1.lnk
    [22/10/2013 – 17:01:06 | A | 728] G:esc avec meg.lnk
    [22/10/2013 – 17:01:06 | A | 1664] G:m840-173-1234979981chat-et-chien.lnk
    [22/10/2013 – 17:01:08 | A | 830] G:neon-luminance-cascades-deau-fluorescentes-L-omtJMS.lnk
    [22/10/2013 – 17:01:08 | A | 740] G:a imprimer esc.lnk
    [22/10/2013 – 17:01:08 | A | 796] G:dossier technologique AUDREY2.lnk
    [22/10/2013 – 17:01:08 | A | 808] G:dossier technologique AUDREY2bis.lnk
    [22/10/2013 – 17:01:08 | A | 804] G:Les organisations de services.lnk
    [22/10/2013 – 17:01:08 | A | 840] G:dossier technologique AUDREY2 ameliorer.lnk
    [22/10/2013 – 17:01:08 | A | 782] G:stav 4 octobre bis.lnk
    [22/10/2013 – 17:01:08 | A | 792] G:stav terminal 4 octobre.lnk
    [13/10/2013 – 21:30:38 | SH | 69554284] G:iTunesHelper.vbe
    [22/10/2013 – 17:01:08 | A | 788] G:schemas organisation CCAS.lnk
    [16/10/2013 – 14:43:34 | SH | 16191] G:Les organisations de services.docx
    [16/10/2013 – 14:55:02 | SH | 5934592] G:dossier technologique AUDREY2 ameliorer.doc
    [16/10/2013 – 15:19:10 | SH | 14992] G:schemas organisation CCAS.docx
    [16/10/2013 – 15:36:14 | SH | 11652] G:schemas partenaria.docx
    [22/10/2013 – 17:01:08 | A | 756] G:schemas partenaria.lnk
    [22/10/2013 – 17:01:06 | A | 1620] G:4waterfall.lnk
    [22/10/2013 – 17:01:08 | A | 756] G:Autorun.inf.lnk
    [22/10/2013 – 16:59:52 | SHD ] G:Autorun.inf

    ################## | E.O.F |

    merci de m’aider

  • Anonyme
    Post count: 0

    Re alesia :hello: ,

    Bienvenue sur SosVirus :welcome:

    Donc oui ta clé est bien infectée : G:iTunesHelper.vbe

    [hr:1b51w905]

    • Exécute UsbFix
    • Choisi l’option Suppression

      Note : Si UsbFix bloque à 14%, éxécute UsbFix en mode sans échec. (Voir >> ICI <<)

    • Copie et Colle le contenu du rapport qui apparaît à la fin du scan dans ta réponse
  • Photo du profil de alesiaalesia
    Participant
    Post count: 17

    avant de faire cela es ce que mes fichiers seront supprimer ?

  • Anonyme
    Post count: 0

    avant de faire cela , es ce que mes fichiers seront supprimer ?

    Non, ils seront restaurés :)

  • Photo du profil de alesiaalesia
    Participant
    Post count: 17

    le progression s’est bloquée a 22% es ce normal ?

  • Anonyme
    Post count: 0

    Patiente un peut et dis moi si ça bloque toujours ou pas

  • Photo du profil de alesiaalesia
    Participant
    Post count: 17

    cela fait 30min toujours a 22% , que faire ?

  • Anonyme
    Post count: 0

    Il faut eteindre le pc et redémarrer en mode sans echec. Une fois dans ce mode, execute UsbFix mode Suppression.

    (Voir >> ICI <<)

  • Photo du profil de alesiaalesia
    Participant
    Post count: 17

    ni F8 ni F12 ne me font redémarrer en mode sans échec :triste:

  • Photo du profil de alesiaalesia
    Participant
    Post count: 17

    mais usbfix s’est bloquer a 72% en faisant que marquer ” le programme ne répond pas ” :unhappy:

  • Anonyme
    Post count: 0

    ni F8 ni F12 ne me font redémarrer en mode sans échec :triste:

    :(

    On va faire autrement, ne t’inquiètes pas ;)

    • Télécharge ZHPDiag (de Nicolas Coolman) sur ton bureau.
    • Installe le logiciel.
    • Lance ZHPDiag, exécuter en tant qu’administrateur sous Windows : 7/8 et Vista

    • Clique sur Configurer
    • Clique sur l’icône représentant une loupe avec un + (« Lancer le diagnostic »)

      Note : Ne pas fermer le programme même si il est indiqué qu’il ne répond plus.

    • Une fois le scan terminé rends toi sur le bureau, le fichier ZHPDiag.txt à été créé.
    • Héberge le rapport ZHPDiag.txt sur SosUpload, puis copie/colle le lien fourni dans ta prochaine réponse sur le forum
  • Photo du profil de alesiaalesia
    Participant
    Post count: 17

    avast me bloque le logiciel me disant que celui ci est un cheval de trois, que faire ? :triste: :triste: :triste:

  • Anonyme
    Post count: 0

    On a pas de chances :cry: ^^

    Désactive Avast le temps de la désinfection : tutoriel-desactiver-protection-residentiel-t586.html#p3517

  • Photo du profil de alesiaalesia
    Participant
    Post count: 17

    cela ma ouvert une fenêtre avec plein de donné différente mais ce fait plus de 20 milles caractère alors que je ne peux que poster au maximum 6 milles caractere :electriksock:

  • Anonyme
    Post count: 0

    Héberge le rapport ZHPDiag.txt qui est sur ton bureau sur SosUpload, puis copie/colle le lien fourni dans ta prochaine réponse sur le forum

  • Photo du profil de alesiaalesia
    Participant
    Post count: 17

    https://antimalware.top/log/SosUpload.d1031f66406f7567ec51adce5e11fbb5.txt” onclick=”window.open(this.href);return false;

  • Anonyme
    Post count: 0

    Bueno alesia , retrousse tes manches on a du travail, ton pc est salement infecté :(

    • Télécharges Adwcleaner (de Xplode) sur ton Bureau !
    • Fais clic droit dessus, exécuter en tant qu’administrateur sous Windows : 7/8 et Vista
      1. Choisi l’option Scanner
      2. Choisi l’option Nettoyer
    • Accepte l’avertissement en cliquant sur OK

    • Acceptes les avertissements/informations en cliquant sur OK
    • Copie et Colle le contenu du rapport qui apparaît au redémarrage du PC
  • Photo du profil de alesiaalesia
    Participant
    Post count: 17

    https://antimalware.top/log/SosUpload.b8cf6e05756c3062860d3b7bb4b4ace0.txt” onclick=”window.open(this.href);return false;

  • Anonyme
    Post count: 0
    • Télécharge Malwarebytes’ Anti-Malware et installe le.
    • Lance Malwarebytes’ Anti-Malware.
    • Clique sur l’onglet “Mises à jours” puis sur “Rechercher des mises à jours”.
    • Clique sur l’onglet “Recherche”, coche “éxécuter un examen rapide” puis clic sur Rechercher.

    A la fin de l’analyse, si MBAM n’a rien trouvé :

    • Clique sur OK, le rapport s’ouvre spontanément.

    Si des menaces ont été détectées :

    • Clique sur OK puis “Afficher les résultats”.
    • Choisis l’option “Supprimer la sélection”.
    • Si MBAM demande le redémarrage de Windows : Clique sur “Oui”.
    • Une fois le PC redémarré, le rapport se trouve dans l’onglet “Rapports/Logs”.
    • Sinon le rapport s’ouvre automatiquement après la suppression.
    • Post le rapport dans ta prochaine réponse.
  • Photo du profil de alesiaalesia
    Participant
    Post count: 17

    https://antimalware.top/log/SosUpload.86807aa5c928bb91ead89faa1b6743e7.txt” onclick=”window.open(this.href);return false;

  • Anonyme
    Post count: 0

    Lance UsbFix avec toutes tes clé usb connectée, choisi l’option listing et transmet moi le rapport stp

  • Photo du profil de alesiaalesia
    Participant
    Post count: 17

    ############################## | UsbFix V 7.145 | [Listing]

    Utilisateur: audrey (Administrateur) # AUDREY-PC
    Mis à jour le 17/10/2013 par El Desaparecido – Team SosVirus
    Lancé à 20:06:51 | 22/10/2013

    Site Web: http://www.usbfix.net/” onclick=”window.open(this.href);return false;
    Forum : https://www.sosvirus.net/” onclick=”window.open(this.href);return false;
    Upload Malware: upload_malware.php
    Contact: http://www.usbfix.net/contact/” onclick=”window.open(this.href);return false;

    PC: Hewlett-Packard (365C)
    CPU: Intel(R) Core(TM) i3 CPU M 330 @ 2.13GHz
    RAM -> [Total : 4023 | Free : 1368]
    Bios: Hewlett-Packard
    Boot: Normal boot

    OS: Microsoft Windows 7 Édition Familiale Premium (6.1.7601 64-Bit) # Service Pack 1
    WB: Windows Internet Explorer 9.0.8112.16421

    SC: Security Center Service [Enabled]
    WU: Windows Update Service [Enabled]
    AV: avast! Antivirus [Enabled | Updated]
    FW: Windows FireWall Service [Enabled]

    C: (%systemdrive%) -> Disque fixe # 579 Go (398 Go libre(s) – 69%) [] # NTFS
    D: -> Disque fixe # 17 Go (3 Go libre(s) – 16%) [RECOVERY] # NTFS
    E: -> Disque fixe # 99 Mo (83 Mo libre(s) – 83%) [HP_TOOLS] # FAT32
    F: -> CD-ROM
    G: -> Disque amovible # 4 Go (3 Go libre(s) – 84%) [Transcend] # FAT32

    ################## | Listing |

    [13/07/2013 – 17:55:44 | SHD ] C:$Recycle.Bin
    [01/12/2010 – 19:16:51 | D ] C:2f4c587e84160bb19c4ceba76af8aa09
    [23/03/2013 – 20:03:34 | D ] C:4735185beedade692b224300dfd1f1de
    [29/09/2013 – 10:34:37 | D ] C:86db32a144fa28a680e81fd38d7870
    [23/09/2013 – 08:29:37 | D ] C:9bcf3afcf39ad6e1f425ba40
    [30/09/2013 – 08:03:12 | D ] C:a710de534ada7c34609cbec3737be94d
    [22/10/2013 – 19:16:12 | D ] C:AdwCleaner
    [23/09/2011 – 20:42:09 | D ] C:AeriaGames
    [22/10/2013 – 18:16:11 | RASHD ] C:Autorun.inf
    [09/01/2010 – 11:45:31 | SHD ] C:boot
    [14/07/2009 – 03:38:58 | RASH | 383562] C:bootmgr
    [22/10/2013 – 15:40:19 | SHD ] C:Config.Msi
    [14/07/2009 – 07:08:56 | SHD ] C:Documents and Settings
    [05/09/2013 – 14:18:40 | D ] C:ee48d8f723f18e5eff3feeca929bc1
    [07/11/2007 – 09:00:40 | N | 17734] C:eula.1028.txt
    [07/11/2007 – 09:00:40 | N | 17734] C:eula.1031.txt
    [07/11/2007 – 09:00:40 | N | 10134] C:eula.1033.txt
    [07/11/2007 – 09:00:40 | N | 17734] C:eula.1036.txt
    [07/11/2007 – 09:00:40 | N | 17734] C:eula.1040.txt
    [07/11/2007 – 09:00:40 | N | 118] C:eula.1041.txt
    [07/11/2007 – 09:00:40 | N | 17734] C:eula.1042.txt
    [07/11/2007 – 09:00:40 | N | 17734] C:eula.2052.txt
    [07/11/2007 – 09:00:40 | N | 17734] C:eula.3082.txt
    [17/02/2012 – 21:46:12 | D ] C:found.000
    [07/11/2007 – 09:00:40 | N | 1110] C:globdata.ini
    [22/10/2013 – 19:17:44 | ASH | 3163709440] C:hiberfil.sys
    [19/03/2010 – 03:00:05 | D ] C:HP
    [19/03/2010 – 02:49:16 | D ] C:IExp0.tmp
    [19/03/2010 – 02:49:17 | D ] C:IExp1.tmp
    [07/11/2007 – 09:44:20 | N | 855040] C:install.exe
    [07/11/2007 – 09:00:40 | N | 843] C:install.ini
    [07/11/2007 – 09:44:20 | N | 75280] C:install.res.1028.dll
    [07/11/2007 – 09:44:20 | N | 95248] C:install.res.1031.dll
    [07/11/2007 – 09:44:20 | N | 90128] C:install.res.1033.dll
    [07/11/2007 – 09:44:20 | N | 96272] C:install.res.1036.dll
    [07/11/2007 – 09:44:20 | N | 94224] C:install.res.1040.dll
    [07/11/2007 – 09:44:20 | N | 80400] C:install.res.1041.dll
    [07/11/2007 – 09:44:20 | N | 78864] C:install.res.1042.dll
    [07/11/2007 – 09:44:20 | N | 74768] C:install.res.2052.dll
    [07/11/2007 – 09:44:20 | N | 95248] C:install.res.3082.dll
    [29/06/2013 – 21:43:40 | D ] C:mnt
    [09/01/2010 – 00:21:24 | RHD ] C:MSOCache
    [22/10/2013 – 19:17:44 | ASH | 4218281984] C:pagefile.sys
    [14/07/2009 – 05:20:08 | D ] C:PerfLogs
    [22/10/2013 – 18:36:32 | A | 512] C:PhysicalDisk0_MBR.bin
    [27/02/2012 – 14:32:03 | D ] C:Poker
    [22/10/2013 – 19:15:27 | D ] C:Program Files
    [22/10/2013 – 19:30:53 | D ] C:Program Files (x86)
    [22/10/2013 – 19:30:55 | HD ] C:ProgramData
    [17/08/2010 – 21:06:53 | SHD ] C:Recovery
    [05/09/2013 – 13:27:37 | D ] C:Riot Games
    [22/03/2013 – 16:33:42 | D ] C:SwSetup
    [22/10/2013 – 19:51:10 | SHD ] C:System Volume Information
    [01/12/2010 – 14:55:39 | D ] C:SYSTEM.SAV
    [20/09/2013 – 17:49:14 | D ] C:Temp
    [22/10/2013 – 20:06:55 | D ] C:UsbFix
    [22/10/2013 – 17:26:29 | N | 7747] C:UsbFix [Clean 3] AUDREY-PC.txt
    [22/10/2013 – 17:35:21 | N | 5522] C:UsbFix [Clean 4] AUDREY-PC.txt
    [22/10/2013 – 18:16:45 | A | 17420] C:UsbFix [Clean 5] AUDREY-PC.txt
    [22/10/2013 – 16:53:20 | N | 8691] C:UsbFix [Listing 1 ] AUDREY-PC.txt
    [22/10/2013 – 17:01:26 | N | 8763] C:UsbFix [Listing 2 ] AUDREY-PC.txt
    [22/10/2013 – 20:06:55 | A | 4515] C:UsbFix [Listing 3 ] AUDREY-PC.txt
    [22/10/2013 – 17:06:33 | N | 8701] C:UsbFix [Scan 1] AUDREY-PC.txt
    [03/01/2013 – 15:35:58 | N | 2251] C:user.js
    [13/07/2013 – 17:55:24 | RD ] C:Users
    [07/11/2007 – 09:00:40 | N | 5686] C:vcredist.bmp
    [07/11/2007 – 08:09:22 | N | 1442522] C:VC_RED.cab
    [07/11/2007 – 08:12:28 | N | 232960] C:VC_RED.MSI
    [22/10/2013 – 18:55:52 | D ] C:Windows
    [30/08/2011 – 13:16:33 | N | 4680] C:{00EC353B-270A-4CDA-9DED-1FB92980334D}
    [14/10/2011 – 14:11:50 | N | 3240] C:{D26F4ABB-959A-46BF-9BEE-515D3E614081}
    [13/07/2013 – 17:55:44 | SHD ] D:$RECYCLE.BIN
    [22/10/2013 – 18:16:11 | RASHD ] D:Autorun.inf
    [17/08/2010 – 21:11:26 | SHD ] D:boot
    [14/07/2009 – 20:39:00 | ASH | 383562] D:bootmgr
    [17/08/2010 – 21:11:26 | N | 0] D:BT_HP.FLG
    [19/03/2010 – 12:44:39 | N | 483] D:CSP.DAT
    [19/03/2010 – 12:54:04 | N | 12036] D:DeployRp.log
    [17/08/2010 – 21:11:26 | D ] D:hp
    [20/04/2012 – 18:43:31 | N | 20] D:HPSF_Rep.txt
    [17/08/2010 – 21:11:25 | N | 22] D:language.ini
    [17/08/2010 – 21:11:26 | SHD ] D:preload
    [17/08/2010 – 21:11:26 | SD ] D:Recovery
    [19/03/2010 – 12:54:02 | N | 0] D:RPCONFIG.LOG
    [11/02/2012 – 12:24:05 | SHD ] D:System Volume Information
    [17/08/2010 – 21:11:26 | D ] D:system.sav
    [20/04/2012 – 18:43:32 | N | 20] E:HPSF_Rep.txt
    [24/07/2011 – 13:24:46 | D ] E:Hewlett-Packard
    [11/12/2011 – 16:32:50 | N | 1573630] E:heroes.png
    [11/12/2011 – 16:27:10 | N | 1620032] E:la guilde.png
    [11/12/2011 – 16:27:24 | N | 1560459] E:la guilde2.png
    [11/12/2011 – 16:29:02 | N | 2217875] E:nous.png
    [11/12/2011 – 16:29:28 | N | 2279272] E:nous2.png
    [11/12/2011 – 16:32:24 | N | 1752081] E:nous3.png
    [11/12/2011 – 16:28:46 | N | 2345197] E:annaale.png
    [17/08/2010 – 20:11:30 | SHD ] E:$RECYCLE.BIN
    [22/10/2013 – 18:16:12 | RASHD ] E:Autorun.inf
    [12/10/2013 – 09:53:26 | N | 161755] G:Louis_François_LEJEUNE_-_La_Chasse_à_l’ours_vers_la_cascade_du_lac_d’Oo,_près_de_Bagnères-de-Luchon_-_Musée_des_Augustins_-_2000_1_1.jpg
    [12/10/2013 – 09:55:28 | N | 117017] G:4waterfall.jpg
    [12/10/2013 – 10:00:32 | N | 15164] G:cascade subli.png
    [20/09/2013 – 18:46:20 | N | 2590] G:esc avec meg.rtf
    [27/09/2013 – 08:39:48 | N | 17736] G:m840-173-1234979981chat-et-chien.jpg
    [12/10/2013 – 09:54:38 | N | 4869] G:neon-luminance-cascades-deau-fluorescentes-L-omtJMS.jpeg
    [14/10/2013 – 11:01:04 | N | 888606] G:cascades.docx
    [13/10/2013 – 19:19:24 | N | 14026] G:a imprimer esc.docx
    [02/10/2013 – 15:24:14 | N | 5933568] G:dossier technologique AUDREY2.doc
    [03/10/2013 – 16:26:46 | D ] G:stav 4 octobre bis
    [03/10/2013 – 16:02:02 | D ] G:stav terminal 4 octobre
    [09/10/2013 – 14:39:00 | N | 5934592] G:dossier technologique AUDREY2bis.doc
    [16/10/2013 – 14:43:34 | N | 16191] G:Les organisations de services.docx
    [16/10/2013 – 14:55:02 | N | 5934592] G:dossier technologique AUDREY2 ameliorer.doc
    [16/10/2013 – 15:19:10 | N | 14992] G:schemas organisation CCAS.docx
    [16/10/2013 – 15:36:14 | N | 11652] G:schemas partenaria.docx
    [22/10/2013 – 18:16:12 | RASHD ] G:Autorun.inf

    ################## | E.O.F |

  • Anonyme
    Post count: 0

    T’as plus de soucis sur ta clé usb, tu confirmes ?

    Je regarde ton rapport ZhpDiag pendant ce temps.

  • Photo du profil de alesiaalesia
    Participant
    Post count: 17

    certain fichier ne s”ouvre pas :triste:
    :fache: :faché19:

  • Photo du profil de alesiaalesia
    Participant
    Post count: 17

    j’ai redémarrer mon pc les fichiers se re-ouvre enfin :content:

  • Anonyme
    Post count: 0

    certain fichier ne s”ouvre pas :triste:

    On verra ça à la fin ;)

    • Télécharge OTM de OldTimer sur ton bureau.
    • Double-clique sur OTM.exe pour le lancer.
    • Sous Vista/Seven , clic droit -> lancer en tant qu’administrateur
    • Copie la liste ci-dessous et colle-la dans le cadre de gauche de OTM sous Paste Instructions for Items to be Moved.


    :files
    C:UsersaudreyDownloadsSweetIm*.exe
    C:UsersaudreyDesktopgrandfantasia_fr_installer_20110303.exe
    C:UsersaudreyAppDataLocalTempct3198785
    C:ProgramDataResultBrowser
    C:UsersaudreyAppDataRoamingMozillaExtensions{1FD91A9C-410C-4090-BBCC-55D3450EF433}
    C:UsersaudreySoftonicDownloader_pour_microsoft-excel-viewer.exe
    C:UsersaudreyDownloadsdr_house_saison_7_episode_1_.exe
    C:UsersaudreyDownloadsfreemp3wma_telechargement_01net.exe
    C:UsersaudreyDownloadsSoftonic*.*
    C:UsersaudreyDesktopSoftonic_France.exe
    C:WindowsInstaller1975e7.msi
    C:WindowsInstaller3fc67d.msi
    C:UsersaudreyAppDataLocalTemp*.dll
    C:UsersaudreyAppDataLocalTemp*.exe
    C:UsersaudreyAppDataLocalTemp*.dat
    C:UsersaudreyAppDataLocalTemp*.bat
    C:UsersaudreyAppDataLocalTemp1net
    C:UsersaudreyAppDataLocalTemp138A58A6-BAB0-7891-9DB5-E126BC2945B2
    C:UsersaudreyAppDataLocalTemp5915E03B-BAB0-7891-9E36-C66A9D217B46
    C:UsersaudreyAppDataLocalTemp8BA11C02-BAB0-7891-A458-D9043A94E5BE
    C:UsersaudreyAppDataLocalTempA8B18C26-BAB0-7891-8D57-448F660C1B28
    C:UsersaudreyAppDataLocalTempbusF0A5
    C:UsersaudreyAppDataLocalTempFE7A3E1D-BAB0-7891-8168-8F523D769B33
    C:UsersaudreyAppDataLocalTempRarSFX0
    C:UsersaudreyAppDataLocalTempupdEE15
    C:UsersaudreyAppDataLocalTemp__TEMPWEBPLAYER__
    C:Poker
    C:UsersaudreyDownloadsBattleship_for_Pocket_PC_1.0.exe
    C:UsersaudreyDownloadsFacemoods-setup.exe
    C:ProgramData{F01C14AE-F9C0-49DB-A28C-4C24EE6762FE}
    C:UsersaudreyAppDataRoamingqbnut
    C:WindowsPrefetch*.pf

    :Reg
    [-HKEY_CURRENT_USERSoftware5353dd8bbc6fbd10]

    :commands
    [emptytemp]
    • Clique sur “MoveIt!” .
    • Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demanderas de redémarrer l’ordinateur.
    • Si c’est le cas, acceptes en cliquant sur “YES”.
    • Post le rapport dans ta prochaine réponse.
    • Le rapport est situé dans C:_OTMMovedFiles (Le nom du rapport correspond au moment de sa création : date_heure.log).
  • Photo du profil de alesiaalesia
    Participant
    Post count: 17

    All processes killed
    ========== FILES ==========
    File/Folder C:UsersaudreyDownloadsSweetIm*.exe not found.
    C:UsersaudreyDesktopgrandfantasia_fr_installer_20110303.exe moved successfully.
    C:UsersaudreyAppDataLocalTempct3198785xpi folder moved successfully.
    C:UsersaudreyAppDataLocalTempct3198785 folder moved successfully.
    C:ProgramDataResultBrowser folder moved successfully.
    C:UsersaudreyAppDataRoamingMozillaExtensions{1FD91A9C-410C-4090-BBCC-55D3450EF433} moved successfully.
    C:UsersaudreySoftonicDownloader_pour_microsoft-excel-viewer.exe moved successfully.
    C:UsersaudreyDownloadsdr_house_saison_7_episode_1_.exe moved successfully.
    C:UsersaudreyDownloadsfreemp3wma_telechargement_01net.exe moved successfully.
    C:UsersaudreyDownloadsSoftonicDownloader_pour_gboost.exe moved successfully.
    C:UsersaudreyDownloadsSoftonicDownloader_pour_outlook-express-email-recovery-software.exe moved successfully.
    C:UsersaudreyDownloadsSoftonicDownloader_pour_word-viewer (1).exe moved successfully.
    C:UsersaudreyDownloadsSoftonicDownloader_pour_word-viewer.exe moved successfully.
    C:UsersaudreyDesktopSoftonic_France.exe moved successfully.
    C:WindowsInstaller1975e7.msi moved successfully.
    C:WindowsInstaller3fc67d.msi moved successfully.
    DllUnregisterServer procedure not found in C:UsersaudreyAppDataLocalTempinstallhelper.dll
    DllUnregisterServer procedure not found in C:UsersaudreyAppDataLocalTempqvfp4bmo.dll
    LoadLibrary failed for C:UsersaudreyAppDataLocalTempSCC.dll
    DllUnregisterServer procedure not found in C:UsersaudreyAppDataLocalTempSRAssetsHelper.dll
    DllUnregisterServer procedure not found in C:UsersaudreyAppDataLocalTempstubhelper.dll
    DllUnregisterServer procedure not found in C:UsersaudreyAppDataLocalTempswt-win32-3349.dll
    C:UsersaudreyAppDataLocalTempinstallhelper.dll moved successfully.
    C:UsersaudreyAppDataLocalTempqvfp4bmo.dll moved successfully.
    C:UsersaudreyAppDataLocalTempSCC.dll moved successfully.
    C:UsersaudreyAppDataLocalTempSRAssetsHelper.dll moved successfully.
    C:UsersaudreyAppDataLocalTempstubhelper.dll moved successfully.
    C:UsersaudreyAppDataLocalTempswt-win32-3349.dll moved successfully.
    C:UsersaudreyAppDataLocalTempFacebookUpdateSetup_v1.2.205.0.exe1fa0ddf moved successfully.
    C:UsersaudreyAppDataLocalTempfx-runtime.exe moved successfully.
    C:UsersaudreyAppDataLocalTempgbinit.exe moved successfully.
    C:UsersaudreyAppDataLocalTempIE9-Windows7-x64.exe moved successfully.
    C:UsersaudreyAppDataLocalTempincredibar_install.exe moved successfully.
    C:UsersaudreyAppDataLocalTempInstaller.exe moved successfully.
    C:UsersaudreyAppDataLocalTempinstall_helper.exe moved successfully.
    C:UsersaudreyAppDataLocalTempinstloffer.exe moved successfully.
    C:UsersaudreyAppDataLocalTempjre-6u31-windows-i586-iftw-rv.exe moved successfully.
    C:UsersaudreyAppDataLocalTempmediaget-uninstaller.exe moved successfully.
    C:UsersaudreyAppDataLocalTempQuarantine.exe moved successfully.
    C:UsersaudreyAppDataLocalTempResource.exe moved successfully.
    C:UsersaudreyAppDataLocalTempsetup_fsu_cid.exe moved successfully.
    C:UsersaudreyAppDataLocalTempsimbo.exe moved successfully.
    C:UsersaudreyAppDataLocalTempSkypeSetup.exe moved successfully.
    C:UsersaudreyAppDataLocalTempsp54373.exe moved successfully.
    C:UsersaudreyAppDataLocalTempsp58915.exe moved successfully.
    C:UsersaudreyAppDataLocalTempSPSetup.exe moved successfully.
    C:UsersaudreyAppDataLocalTempstub.exe moved successfully.
    C:UsersaudreyAppDataLocalTemptbbabylonv3.exe moved successfully.
    C:UsersaudreyAppDataLocalTempuninst1.exe moved successfully.
    C:UsersaudreyAppDataLocalTempUninstallHPSA.exe moved successfully.
    C:UsersaudreyAppDataLocalTempUninstallHPTCA.exe moved successfully.
    C:UsersaudreyAppDataLocalTempUpdate_off_moovidaImmersed-2.1.0.2-win32.exe moved successfully.
    C:UsersaudreyAppDataLocalTempvcredist_x86.exe moved successfully.
    C:UsersaudreyAppDataLocalTempF13B94AF-7A93-469E-91EA-3CEA3303C96B.dat moved successfully.
    C:UsersaudreyAppDataLocalTempF15C7569-2818-4E12-9247-82359C2CD31A.dat moved successfully.
    C:UsersaudreyAppDataLocalTempF17CEFDD-AAD6-49F2-B566-D56CDA71730F.dat moved successfully.
    C:UsersaudreyAppDataLocalTempF1B5FA8E-50A4-427F-8C06-F7711997790B.dat moved successfully.
    C:UsersaudreyAppDataLocalTempF372C007-1825-4B39-97DC-99C0797CE38C.dat moved successfully.
    C:UsersaudreyAppDataLocalTempF42BCB50-8098-4E9D-AECD-633DF53E5285.dat moved successfully.
    C:UsersaudreyAppDataLocalTempF5785CAC-45CD-49AD-AE23-E91F97CE9250.dat moved successfully.
    C:UsersaudreyAppDataLocalTempF5F55055-91AD-4F52-9427-D13C3030F4FB.dat moved successfully.
    C:UsersaudreyAppDataLocalTempF60843DC-0BA2-47EB-B9C1-3E18B846ECF2.dat moved successfully.
    C:UsersaudreyAppDataLocalTempF6659CB9-CBF1-430A-ACF7-8AA8EA7B7A33.dat moved successfully.
    C:UsersaudreyAppDataLocalTempF78E17D3-1397-46E0-96BE-17272A8EC089.dat moved successfully.
    C:UsersaudreyAppDataLocalTempFA91D9CF-0892-47B2-A61E-D0FC234FB2B2.dat moved successfully.
    C:UsersaudreyAppDataLocalTempFCD03EE1-4EC8-4C2C-81D3-5A55921DA30A.dat moved successfully.
    C:UsersaudreyAppDataLocalTempFDE37E52-F1A0-4E1F-9D79-FE14200A82C2.dat moved successfully.
    C:UsersaudreyAppDataLocalTempFE337656-E6F1-4206-BCA8-DED1134F7A09.dat moved successfully.
    C:UsersaudreyAppDataLocalTemptemp.bat moved successfully.
    C:UsersaudreyAppDataLocalTemp{1774CB8B-54B9-4335-8BE0-1686309B4809}.bat moved successfully.
    C:UsersaudreyAppDataLocalTemp{1DC763DC-1E8B-4DD0-9E86-4B49B242CABA}.bat moved successfully.
    C:UsersaudreyAppDataLocalTemp{2AB5C311-D2C7-4EDB-9364-03B5D490A8CF}.bat moved successfully.
    C:UsersaudreyAppDataLocalTemp{54FAC32F-7C73-46A0-8452-653298C4E578}.bat moved successfully.
    C:UsersaudreyAppDataLocalTemp{787DECCD-A93C-4B7E-B689-84DAA85622EB}.bat moved successfully.
    C:UsersaudreyAppDataLocalTemp{C3E74EA5-9A59-4237-A645-0168BB53BC88}.bat moved successfully.
    C:UsersaudreyAppDataLocalTemp{C507791C-A47B-4D13-BAE2-0F42B164CFCF}.bat moved successfully.
    C:UsersaudreyAppDataLocalTemp{D18CF1F4-56B2-42DD-B8F4-EA9FD42F6A4F}.bat moved successfully.
    C:UsersaudreyAppDataLocalTemp{F0824DA8-D301-4C9E-B007-74B3C762FF01}.bat moved successfully.
    C:UsersaudreyAppDataLocalTemp1net folder moved successfully.
    C:UsersaudreyAppDataLocalTemp138A58A6-BAB0-7891-9DB5-E126BC2945B2Latest folder moved successfully.
    C:UsersaudreyAppDataLocalTemp138A58A6-BAB0-7891-9DB5-E126BC2945B2 folder moved successfully.
    C:UsersaudreyAppDataLocalTemp5915E03B-BAB0-7891-9E36-C66A9D217B46LatestHtmlScreens folder moved successfully.
    C:UsersaudreyAppDataLocalTemp5915E03B-BAB0-7891-9E36-C66A9D217B46Latest folder moved successfully.
    C:UsersaudreyAppDataLocalTemp5915E03B-BAB0-7891-9E36-C66A9D217B46 folder moved successfully.
    C:UsersaudreyAppDataLocalTemp8BA11C02-BAB0-7891-A458-D9043A94E5BELatestHtmlScreens folder moved successfully.
    C:UsersaudreyAppDataLocalTemp8BA11C02-BAB0-7891-A458-D9043A94E5BELatest folder moved successfully.
    C:UsersaudreyAppDataLocalTemp8BA11C02-BAB0-7891-A458-D9043A94E5BE folder moved successfully.
    C:UsersaudreyAppDataLocalTempA8B18C26-BAB0-7891-8D57-448F660C1B28LatestHtmlScreens folder moved successfully.
    C:UsersaudreyAppDataLocalTempA8B18C26-BAB0-7891-8D57-448F660C1B28Latest folder moved successfully.
    C:UsersaudreyAppDataLocalTempA8B18C26-BAB0-7891-8D57-448F660C1B28 folder moved successfully.
    C:UsersaudreyAppDataLocalTempbusF0A5 folder moved successfully.
    C:UsersaudreyAppDataLocalTempFE7A3E1D-BAB0-7891-8168-8F523D769B33 folder moved successfully.
    C:UsersaudreyAppDataLocalTempRarSFX0 folder moved successfully.
    C:UsersaudreyAppDataLocalTempupdEE15 folder moved successfully.
    C:UsersaudreyAppDataLocalTemp__TEMPWEBPLAYER__ folder moved successfully.
    C:Poker folder moved successfully.
    C:UsersaudreyDownloadsBattleship_for_Pocket_PC_1.0.exe moved successfully.
    C:UsersaudreyDownloadsFacemoods-setup.exe moved successfully.
    C:ProgramData{F01C14AE-F9C0-49DB-A28C-4C24EE6762FE} folder moved successfully.
    C:UsersaudreyAppDataRoamingqbnutTINT folder moved successfully.
    C:UsersaudreyAppDataRoamingqbnut folder moved successfully.
    C:WindowsPrefetchAESTSR64.EXE-2C722252.pf moved successfully.
    C:WindowsPrefetchAPPLEMOBILEDEVICESERVICE.EXE-100BA47F.pf moved successfully.
    C:WindowsPrefetchATBROKER.EXE-2E15A492.pf moved successfully.
    C:WindowsPrefetchAUDIODG.EXE-BDFD3029.pf moved successfully.
    C:WindowsPrefetchAUTOUPDATER.EXE-29FF1C1E.pf moved successfully.
    C:WindowsPrefetchAU_.EXE-9F21B76F.pf moved successfully.
    C:WindowsPrefetchAVAST.SETUP-B1D66586.pf moved successfully.
    C:WindowsPrefetchAVASTEMUPDATE.EXE-6EF4B603.pf moved successfully.
    C:WindowsPrefetchBACKGROUNDHOST.EXE-5B89B554.pf moved successfully.
    C:WindowsPrefetchBACKGROUNDHOST64.EXE-36EF4419.pf moved successfully.
    C:WindowsPrefetchBACKGROUNDHOST64.EXE-54A544F6.pf moved successfully.
    C:WindowsPrefetchBITGUARD.EXE-42A18088.pf moved successfully.
    C:WindowsPrefetchCALC.EXE-77FDF17F.pf moved successfully.
    C:WindowsPrefetchCHROME.EXE-D999B1BA.pf moved successfully.
    C:WindowsPrefetchCMD.EXE-AC113AA8.pf moved successfully.
    C:WindowsPrefetchCOMPONENT_358.DECRPT-322CA528.pf moved successfully.
    C:WindowsPrefetchCOMPONENT_358.TMP-EBA4F9BF.pf moved successfully.
    C:WindowsPrefetchCOMPONENT_369-C8385BC2.pf moved successfully.
    C:WindowsPrefetchCOMPONENT_600-D49A07C6.pf moved successfully.
    C:WindowsPrefetchCOMPONENT_613-D49ACE12.pf moved successfully.
    C:WindowsPrefetchCOMPONENT_640-D49D1F3A.pf moved successfully.
    C:WindowsPrefetchCOMPONENT_661.DECRPT-01289EE9.pf moved successfully.
    C:WindowsPrefetchCONHOST.EXE-1F3E9D7E.pf moved successfully.
    C:WindowsPrefetchCONSENT.EXE-531BD9EA.pf moved successfully.
    C:WindowsPrefetchCVHSVC.EXE-F0F061EE.pf moved successfully.
    C:WindowsPrefetchDEFRAG.EXE-588F90AD.pf moved successfully.
    C:WindowsPrefetchDLLHOST.EXE-4F28A26F.pf moved successfully.
    C:WindowsPrefetchDLLHOST.EXE-5E46FA0D.pf moved successfully.
    C:WindowsPrefetchDLLHOST.EXE-766398D2.pf moved successfully.
    C:WindowsPrefetchDLLHOST.EXE-76936ED5.pf moved successfully.
    C:WindowsPrefetchDLLHOST.EXE-97F6A314.pf moved successfully.
    C:WindowsPrefetchDLLHOST.EXE-B2EB1806.pf moved successfully.
    C:WindowsPrefetchDLLHOST.EXE-ECB71776.pf moved successfully.
    C:WindowsPrefetchDMWU.EXE-128F7561.pf moved successfully.
    C:WindowsPrefetchEXPLORER.EXE-A80E4F97.pf moved successfully.
    C:WindowsPrefetchFACEBOOKUPDATE.EXE-F191803B.pf moved successfully.
    C:WindowsPrefetchFILESCOUT.EXE-A12E202B.pf moved successfully.
    C:WindowsPrefetchFLASHPLAYERUPDATESERVICE.EXE-216D9C35.pf moved successfully.
    C:WindowsPrefetchGOOGLEUPDATE.EXE-B95715F5.pf moved successfully.
    C:WindowsPrefetchGRANDFANTASIA.EXE-2C102031.pf moved successfully.
    C:WindowsPrefetchIELOWUTIL.EXE-903B8AC1.pf moved successfully.
    C:WindowsPrefetchINSTALL.EXE-07D7152E.pf moved successfully.
    C:WindowsPrefetchINSTALL.EXE-B22EDAF5.pf moved successfully.
    C:WindowsPrefetchINSTALL.EXE-D2838CA6.pf moved successfully.
    C:WindowsPrefetchINSTALL_HELPER.EXE-001B9D42.pf moved successfully.
    C:WindowsPrefetchINSTALL_HELPER.EXE-8FF8FD41.pf moved successfully.
    C:WindowsPrefetchINSTALL_HELPER.EXE-92A50C9D.pf moved successfully.
    C:WindowsPrefetchLAUNCHER.EXE-322F2E24.pf moved successfully.
    C:WindowsPrefetchLOGONUI.EXE-09140401.pf moved successfully.
    C:WindowsPrefetchMSCONFIG.EXE-3A52734E.pf moved successfully.
    C:WindowsPrefetchMSFEEDSSYNC.EXE-6E6FBDF4.pf moved successfully.
    C:WindowsPrefetchMSIEXEC.EXE-A2D55CB6.pf moved successfully.
    C:WindowsPrefetchMSPAINT.EXE-76E10B24.pf moved successfully.
    C:WindowsPrefetchMUMBLE.EXE-5D7B72ED.pf moved successfully.
    C:WindowsPrefetchNSS.EXE-C7972A8E.pf moved successfully.
    C:WindowsPrefetchNTOSBOOT-B00DFAAD.pf moved successfully.
    C:WindowsPrefetchNTSETUP.EXE-EC107BA6.pf moved successfully.
    C:WindowsPrefetchNVVSVC.EXE-0B2AA3F6.pf moved successfully.
    C:WindowsPrefetchPCPERFORMER.EXE-F9E6CFDB.pf moved successfully.
    C:WindowsPrefetchREALPLAY.EXE-BBD23B10.pf moved successfully.
    C:WindowsPrefetchRECORDINGMANAGER.EXE-EC3608E9.pf moved successfully.
    C:WindowsPrefetchREGSVR32.EXE-8461DBEE.pf moved successfully.
    C:WindowsPrefetchREGSVR32.EXE-D5170E12.pf moved successfully.
    C:WindowsPrefetchRUNDLL32.EXE-0FB84B4B.pf moved successfully.
    C:WindowsPrefetchRUNDLL32.EXE-3E7DA226.pf moved successfully.
    C:WindowsPrefetchRUNDLL32.EXE-411A328D.pf moved successfully.
    C:WindowsPrefetchRUNDLL32.EXE-50F8B8EA.pf moved successfully.
    C:WindowsPrefetchRUNDLL32.EXE-60A87A47.pf moved successfully.
    C:WindowsPrefetchRUNDLL32.EXE-6A051009.pf moved successfully.
    C:WindowsPrefetchRUNDLL32.EXE-87432CEE.pf moved successfully.
    C:WindowsPrefetchRUNONCE.EXE-0E293DD6.pf moved successfully.
    C:WindowsPrefetchRUNONCE.EXE-D0649312.pf moved successfully.
    C:WindowsPrefetchSAUPDATE.EXE-D9FFE270.pf moved successfully.
    C:WindowsPrefetchSC.EXE-945D79AE.pf moved successfully.
    C:WindowsPrefetchSCHTASKS.EXE-AD598958.pf moved successfully.
    C:WindowsPrefetchSDCLT.EXE-E10B972A.pf moved successfully.
    C:WindowsPrefetchSEARCHFILTERHOST.EXE-77482212.pf moved successfully.
    C:WindowsPrefetchSEARCHPROTOCOLHOST.EXE-0CB8CADE.pf moved successfully.
    C:WindowsPrefetchSETHC.EXE-6A2DC453.pf moved successfully.
    C:WindowsPrefetchSETUP.EXE-5BA847F3.pf moved successfully.
    C:WindowsPrefetchSIDEBAR.EXE-FA75EA61.pf moved successfully.
    C:WindowsPrefetchSKSETUP.EXE-CA0B1C0A.pf moved successfully.
    C:WindowsPrefetchSKYPE.EXE-E71BF59F.pf moved successfully.
    C:WindowsPrefetchSNDVOL.EXE-5D4CC7D6.pf moved successfully.
    C:WindowsPrefetchSOFTWAREUPDATE.EXE-C9D94961.pf moved successfully.
    C:WindowsPrefetchSPEEDANALYSIS03.EXE-DA74BD2B.pf moved successfully.
    C:WindowsPrefetchSPOOLSV.EXE-D1F6B8B6.pf moved successfully.
    C:WindowsPrefetchSPPSVC.EXE-B0F8131B.pf moved successfully.
    C:WindowsPrefetchSTIJ.EXE-87F7B715.pf moved successfully.
    C:WindowsPrefetchSTIJ.EXE-E21799F9.pf moved successfully.
    C:WindowsPrefetchSTTRAY64.EXE-332B9C2C.pf moved successfully.
    C:WindowsPrefetchSVCHOST.EXE-0377DC5D.pf moved successfully.
    C:WindowsPrefetchSVCHOST.EXE-3AB35CA7.pf moved successfully.
    C:WindowsPrefetchSVCHOST.EXE-7AC6742A.pf moved successfully.
    C:WindowsPrefetchSVCHOST.EXE-7CFEDEA3.pf moved successfully.
    C:WindowsPrefetchSVCHOST.EXE-80F4A784.pf moved successfully.
    C:WindowsPrefetchSVCHOST.EXE-9EFC97F2.pf moved successfully.
    C:WindowsPrefetchSVCHOST.EXE-FEDB32D0.pf moved successfully.
    C:WindowsPrefetchSVCSETUP.EXE-129566E5.pf moved successfully.
    C:WindowsPrefetchTASKENG.EXE-48D4E289.pf moved successfully.
    C:WindowsPrefetchTASKHOST.EXE-7238F31D.pf moved successfully.
    C:WindowsPrefetchTASKKILL.EXE-E0105477.pf moved successfully.
    C:WindowsPrefetchTHCH.EXE-F6B36BFF.pf moved successfully.
    C:WindowsPrefetchTRUSTEDINSTALLER.EXE-3CC531E5.pf moved successfully.
    C:WindowsPrefetchUNINSTALL.EXE-B5868C80.pf moved successfully.
    C:WindowsPrefetchUPDATEPCTUTO.EXE-2D75CCDA.pf moved successfully.
    C:WindowsPrefetchUPDATEPCTUTOHP.EXE-A70E42F1.pf moved successfully.
    C:WindowsPrefetchUPDATER.EXE-EA1310CB.pf moved successfully.
    C:WindowsPrefetchUPDATETASK.EXE-2134F96B.pf moved successfully.
    C:WindowsPrefetchUPDATETUTO4PC.EXE-3B322F4F.pf moved successfully.
    C:WindowsPrefetchUPDATETUTO4PCHP.EXE-818D7F17.pf moved successfully.
    C:WindowsPrefetchVCREDIST_X64.EXE-AF535EF1.pf moved successfully.
    C:WindowsPrefetchVCREDIST_X86.EXE-ACB17DE0.pf moved successfully.
    C:WindowsPrefetchVIDEO PERFORMER.EXE-539C10F3.pf moved successfully.
    C:WindowsPrefetchVIDEOPERFORMERSETUP.EXE-B7E8BF20.pf moved successfully.
    C:WindowsPrefetchVSSVC.EXE-B8AFC319.pf moved successfully.
    C:WindowsPrefetchWERFAULT.EXE-37549B7E.pf moved successfully.
    C:WindowsPrefetchWERFAULT.EXE-E69F695A.pf moved successfully.
    C:WindowsPrefetchWERMGR.EXE-0F2AC88C.pf moved successfully.
    C:WindowsPrefetchWMIADAP.EXE-F8DFDFA2.pf moved successfully.
    C:WindowsPrefetchWMIPRVSE.EXE-1628051C.pf moved successfully.
    C:WindowsPrefetchWMPLAYER.EXE-26C72A86.pf moved successfully.
    C:WindowsPrefetchWMPNSCFG.EXE-FC0D39BF.pf moved successfully.
    C:WindowsPrefetchWRTC.EXE-CBEDA604.pf moved successfully.
    C:WindowsPrefetchWSQMCONS.EXE-118B52B7.pf moved successfully.
    C:WindowsPrefetchWSSETUP.EXE-7407FF46.pf moved successfully.
    C:WindowsPrefetchWUAUCLT.EXE-70318591.pf moved successfully.
    C:WindowsPrefetchZULAGAMES.EXE-6F012978.pf moved successfully.
    C:WindowsPrefetch_LAUNCHER.EXE-385C306F.pf moved successfully.
    ========== REGISTRY ==========
    Registry key HKEY_CURRENT_USERSoftware5353dd8bbc6fbd10 not found.
    ========== COMMANDS ==========

    [EMPTYTEMP]

    User: All Users

    User: audrey
    ->Temp folder emptied: 2115249649 bytes
    ->Temporary Internet Files folder emptied: 453696019 bytes
    ->Java cache emptied: 2415252 bytes
    ->FireFox cache emptied: 9321051 bytes
    ->Google Chrome cache emptied: 424578323 bytes
    ->Apple Safari cache emptied: 782336 bytes
    ->Flash cache emptied: 59574 bytes

    User: Default
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 33170 bytes
    ->Flash cache emptied: 57616 bytes

    User: Default User
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: laurence
    ->Temp folder emptied: 5224476 bytes
    ->Temporary Internet Files folder emptied: 73454157 bytes
    ->Java cache emptied: 7755 bytes
    ->Google Chrome cache emptied: 11391332 bytes
    ->Flash cache emptied: 2804 bytes

    User: maman
    ->Temp folder emptied: 62671 bytes
    ->Temporary Internet Files folder emptied: 34064 bytes

    User: Public

    User: Yinours
    ->Temp folder emptied: 6283084 bytes
    ->Temporary Internet Files folder emptied: 250063491 bytes
    ->Java cache emptied: 464 bytes
    ->Google Chrome cache emptied: 340860763 bytes
    ->Flash cache emptied: 58633 bytes

    %systemdrive% .tmp files removed: 0 bytes
    %systemroot% .tmp files removed: 0 bytes
    %systemroot%System32 .tmp files removed: 0 bytes
    %systemroot%System32 (64bit) .tmp files removed: 0 bytes
    %systemroot%System32drivers .tmp files removed: 0 bytes
    Windows Temp folder emptied: 55694970 bytes
    %systemroot%system32configsystemprofileAppDataLocalMicrosoftWindowsTemporary Internet Files folder emptied: 2361234 bytes
    %systemroot%system32configsystemprofileAppDataLocalLowSunJavaDeployment folder emptied: 765 bytes
    %systemroot%sysnativeconfigsystemprofileAppDataLocalMicrosoftWindowsTemporary Internet Files folder emptied: 13407227 bytes
    RecycleBin emptied: 16656295 bytes

    Total Files Cleaned = 3 607,00 mb

    OTM by OldTimer – Version 3.1.21.0 log created on 10222013_203332

    Files moved on Reboot…
    C:UsersaudreyAppDataLocalTempFXSAPIDebugLogFile.txt moved successfully.
    File move failed. C:Windowstemp_avast_Webshlock.txt scheduled to be moved on reboot.

    Registry entries deleted on Reboot…

  • Photo du profil de alesiaalesia
    Participant
    Post count: 17

    il y a encore beaucoup de chose a faire ? :/

  • Anonyme
    Post count: 0

    il y a encore beaucoup de chose a faire ? :/

    Ca se termine , mais surtout ne télécharge plus sur softonic et 01.net , tes soucis viennent de là .

    Refais un scan ZHPDiag et transmet moi le nouveau rapport stp

  • Photo du profil de alesiaalesia
    Participant
    Post count: 17

    https://antimalware.top/log/SosUpload.6c61d7904c4fb91ee00734261f7c2146.txt” onclick=”window.open(this.href);return false;

    je peux supprimer les logiciels télécharger pendant les manipulations ou je doit les garder par sécurité ?

  • Anonyme
    Post count: 0
    • Séléctionne et copie le script suivant :

      Script ZHPFix
      G2 – GCE: Preference [User DataDefault] [cnmdgidklhhnmppphpohildcefnaaflp] Services x86 v.1.25.141, (Activé) =>PUP.CrossRider
      G2 – GCE: Preference [User DataDefault] [dbknnmebcajacipdbplichlbfjbjamlf] Facemoi v.2.3.0 (Désactivé) =>PUP.Facemoi
      G2 – GCE: Preference [User DataDefault] [dhkplhfnhceodhffomolpfigojocbpcb] Babylon Toolbar v.1.7 (Désactivé) =>Toolbar.Babylon
      G2 – GCE: Preference [User DataDefault] [eooncjejnppfjjklapaamhcdmjbilmde] Delta Toolbar v.1.1 (Désactivé) =>Toolbar.DeltaSearch
      G2 – GCE: Preference [User DataDefault] [gaiilaahiahdejapggenmdmafpmbipje] DealPly v.3.3.7.2 (Désactivé) =>PUP.DealPly
      G2 – GCE: Preference [User DataDefault] [igdhbblpcellaljokkpfhcjlagemhgjl] Iminent v.4.43.0 (Désactivé) =>Adware.IMBooster
      G2 – GCE: Preference [User DataDefault] [bbjciahceamgodcoidkjpchnokgfpphh] Funmoods v.2.1.3 (Désactivé) =>PUP.Funmoods
      G2 – GCE: Preference [User DataDefault] [bdhffggcfjnkigeciffmipblemhphbjl] WhiteSmoke US v.2.3.15.10 (Désactivé) =>PUP.WhiteSmoke
      M2 – MFEP: prefs.js [audrey – xspioyw9.default217e8200-a3b3-43df-b951-8ec01d483d7f@b98c6809-1f3f-41a1-bb1c-692cf84781e9.com] [] Services x86 v (..) =>PUP.CrossRider
      M2 – MFEP: prefs.js [audrey – xspioyw9.defaultzulagames@ZulaGames.com] [] Zula Games v1.0.0.6 (..) =>Adware.InstallBrain
      R5 – HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = *.local;127.0.0.1:9421; =>Hijacker.Proxy
      [HKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesExplorer] NoActiveDesktopChanges: Modified
      O4 – GSProgram [Public]: Moovida.lnk . (…) — C:Program Files (x86)FluendoMoovidaMoovida.exe (.not file.) =>Adware.SPointer
      [MD5.00000000000000000000000000000000] [APT] [{D1A3AD3D-BE56-474D-9B14-3B13CA5C6DC2}] (…) — C:UsersaudreyDownloadsFacemoods-setup.exe (.not file.) [0] =>Adware.Facemoods
      [MD5.9C77FDFE61DD216C0D33AA4E588FB590] [APT] [{EADB6B84-867D-499A-A1DC-1F6D3259E10D}] (.qbnut.com.) — C:UsersaudreyDownloadsTSO-BETA-2-Win32-Build63.exe [1866499]
      [HKCUSoftwareTitan.fr]
      [HKCUSoftwareqbnut]
      [HKLMSoftwareWow6432NodeMajEoRezo] =>PUP.Eorezo
      [HKLMSoftwareWow6432NodeResultBrowser]
      [HKLMSoftwareWow6432NodeSweetIM] =>PUP.SweetIM
      O43 – CFD: 30/11/2012 – 20:18:32 – [0] —-D C:Program Files (x86)majeorezo =>PUP.Eorezo
      O43 – CFD: 30/11/2012 – 20:18:38 – [4,385] —-D C:Program Files (x86)majeorezo_fr_3 =>PUP.Eorezo
      O43 – CFD: 30/11/2012 – 20:18:24 – [4,383] —-D C:Program Files (x86)majpctuto_fr_6 =>PUP.AgenceExclusive
      O53 – SMSR:HKLM…startupregeorezo_fr_3 [Key] . (…) — C:Program Files (x86)majeorezo_fr_3eorezo_fr_3.exe =>PUP.Eorezo
      O53 – SMSR:HKLM…startupregFacemoi [Key] . (…) — C:Facemoifacemoi.exe (.not file.) =>PUP.Facemoi
      O53 – SMSR:HKLM…startupregfacemoods [Key] . (…) — C:Program Files (x86)facemoods.comfacemoods1.4.17.1facemoodssrv.exe (.not file.) =>Adware.Facemoods
      O53 – SMSR:HKLM…startupregGM4IE [Key] . (…) — C:Facemoifacemoi.exe (.not file.) =>PUP.Facemoi
      O53 – SMSR:HKLM…startupregIminent [Key] . (…) — C:Program Files (x86)IminentIminent.exe (.not file.) =>Adware.IMBooster
      O53 – SMSR:HKLM…startupregIminentMessenger [Key] . (…) — C:Program Files (x86)IminentIminent.Messengers.exe (.not file.) =>Adware.IMBooster
      O53 – SMSR:HKLM…startupregpctuto_fr_6 [Key] . (…) — C:Program Files (x86)majpctuto_fr_6pctuto_fr_6.exe =>PUP.AgenceExclusive
      O53 – SMSR:HKLM…startupregSweetIM [Key] . (…) — C:Program Files (x86)SweetIMMessengerSweetIM.exe (.not file.) =>PUP.SweetIM
      O53 – SMSR:HKLM…startupregTutorials [Key] . (…) — C:Program Files (x86)Tuto4pctuto4pc.exe (.not file.) =>PUP.Eorezo
      O56 – MWPE:[HKLM…policiesExplorer] – “NoActiveDesktopChanges”=1
      O87 – FAEL: “{B8DF363A-97A4-4E3C-8C3B-E3724053C269}” |In – Public – P6 – TRUE | .(…) — C:UsersaudreyAppDataLocalMicrosoftWindowsTemporary Internet FilesContent.IE5M3V857SXFacemoods[1].exe (.not file.) =>Adware.Facemoods
      O87 – FAEL: “{CD3E586E-9F67-429C-9B26-C844C15332DC}” |In – Public – P17 – TRUE | .(…) — C:UsersaudreyAppDataLocalMicrosoftWindowsTemporary Internet FilesContent.IE5M3V857SXFacemoods[1].exe (.not file.) =>Adware.Facemoods
      O87 – FAEL: “{C6130922-661A-4BDD-A7CF-A4FD8334747D}” |In – Public – P6 – TRUE | .(…) — C:UsersaudreyDownloadsSweetImSetup.exe (.not file.) =>PUP.SweetIM
      O87 – FAEL: “{BD8E7BDA-B38A-40AB-8425-017FFB729762}” |In – Public – P17 – TRUE | .(…) — C:UsersaudreyDownloadsSweetImSetup.exe (.not file.) =>PUP.SweetIM
      O87 – FAEL: “{CD2389F3-5217-4990-BA8C-0BC9B06F1A5D}” |In – Public – P6 – TRUE | .(…) — C:UsersaudreyDownloadsSweetImSetup (1).exe (.not file.) =>PUP.SweetIM
      O87 – FAEL: “{1627BEE8-AF62-4371-B57C-878CCB0798AB}” |In – Public – P17 – TRUE | .(…) — C:UsersaudreyDownloadsSweetImSetup (1).exe (.not file.) =>PUP.SweetIM
      O87 – FAEL: “{0C08AA63-1835-4346-9528-477CF24A6E7B}” |In – Public – P6 – TRUE | .(…) — C:Program Files (x86)Windows iLivid ToolbarToolBardtUser.exe (.not file.) =>Adware.Bandoo
      O87 – FAEL: “{79CF03D4-C662-407A-8223-4F229D11B787}” |In – Public – P17 – TRUE | .(…) — C:Program Files (x86)Windows iLivid ToolbarToolBardtUser.exe (.not file.) =>Adware.Bandoo
      O87 – FAEL: “{D20481E1-509D-4223-AE86-0E28063770CE}” |In – None – P17 – TRUE | .(…) — C:Program Files (x86)IminentIminent.exe (.not file.) =>Adware.IMBooster
      O87 – FAEL: “{2AE03AD2-B372-4AB9-AC52-E0BFB6013190}” |In – None – P17 – TRUE | .(…) — C:Program Files (x86)IminentIminent.Messengers.exe (.not file.) =>Adware.IMBooster
      O87 – FAEL: “TCP Query User{5AE7C389-C75B-40B9-A83B-68337CA74650}C:usersaudreyappdataroamingnosibaybubble dockbubble dock.exe” |In – Public – P6 – TRUE | .(…) — C:usersaudreyappdataroamingnosibaybubble dockbubble dock.exe (.not file.) =>PUP.BubbleDock
      O87 – FAEL: “UDP Query User{6485C073-41E4-4439-BCD0-315C30FB868E}C:usersaudreyappdataroamingnosibaybubble dockbubble dock.exe” |In – Public – P17 – TRUE | .(…) — C:usersaudreyappdataroamingnosibaybubble dockbubble dock.exe (.not file.) =>PUP.BubbleDock
      O87 – FAEL: “TCP Query User{1EB5B019-FAD0-4131-BDEB-04E87F27152A}C:usersaudreyappdatalocalmediaget2mediaget.exe” |In – Private – P6 – TRUE | .(…) — C:usersaudreyappdatalocalmediaget2mediaget.exe (.not file.) =>PUP.MediaGet
      O87 – FAEL: “UDP Query User{0031B1B2-723E-431B-A579-381A99004AAC}C:usersaudreyappdatalocalmediaget2mediaget.exe” |In – Private – P17 – TRUE | .(…) — C:usersaudreyappdatalocalmediaget2mediaget.exe (.not file.) =>PUP.MediaGet
      O87 – FAEL: “{B105958F-F073-4ED6-90F8-A7F8C3E03902}” |In – Public – P6 – TRUE | .(…) — C:Program Files (x86)Searchqu ToolbarDatamngrToolBardtUser.exe (.not file.) =>PUP.Datamngr
      O87 – FAEL: “{2EC8289E-FC9E-41D1-8D51-01117D72EB8D}” |In – Public – P17 – TRUE | .(…) — C:Program Files (x86)Searchqu ToolbarDatamngrToolBardtUser.exe (.not file.) =>PUP.Datamngr
      O87 – FAEL: “{95348F9F-EE70-42A5-B4B4-15D6088CB39E}” |In – Public – P6 – TRUE | .(…) — C:WindowsSystem32dmwu.exe (.not file.)
      O87 – FAEL: “{6F6C73E1-4D5A-4915-8056-783AD6714A3A}” |In – Public – P17 – TRUE | .(…) — C:WindowsSystem32dmwu.exe (.not file.)
      O87 – FAEL: “{FCD059A4-A60E-40C4-9D6A-2F5F3803FB9D}” |In – Private – P6 – TRUE | .(…) — C:WindowsSystem32dmwu.exe (.not file.)
      O87 – FAEL: “{DA62EE66-1586-49F2-B568-9C0CBD12C89F}” |In – Private – P17 – TRUE | .(…) — C:WindowsSystem32dmwu.exe (.not file.)
      [HKLMSoftwareGoogleChromeExtensionsbbjciahceamgodcoidkjpchnokgfpphh] =>PUP.Funmoods^
      [HKLMSoftwareGoogleChromeExtensionsbdhffggcfjnkigeciffmipblemhphbjl] =>PUP.WhiteSmoke^
      [HKLMSoftwareGoogleChromeExtensionscnmdgidklhhnmppphpohildcefnaaflp] =>PUP.CrossRider^
      [HKLMSoftwareGoogleChromeExtensionsdbknnmebcajacipdbplichlbfjbjamlf] =>PUP.Facemoi^
      [HKLMSoftwareGoogleChromeExtensionsdhkplhfnhceodhffomolpfigojocbpcb] =>Toolbar.Babylon^
      [HKLMSoftwareGoogleChromeExtensionseooncjejnppfjjklapaamhcdmjbilmde] =>Toolbar.DeltaSearch^
      [HKLMSoftwareGoogleChromeExtensionsgaiilaahiahdejapggenmdmafpmbipje] =>PUP.DealPly^
      [HKLMSoftwareGoogleChromeExtensionsigdhbblpcellaljokkpfhcjlagemhgjl] =>Adware.IMBooster^
      [HKLMSoftwareMicrosoftShared ToolsMSConfigstartupregeorezo_fr_3] =>PUP.Eorezo^
      [HKLMSoftwareMicrosoftShared ToolsMSConfigstartupregFacemoi] =>PUP.Facemoi^
      [HKLMSoftwareMicrosoftShared ToolsMSConfigstartupregfacemoods] =>Adware.Facemoods^
      [HKLMSoftwareMicrosoftShared ToolsMSConfigstartupregGM4IE] =>PUP.Facemoi^
      [HKLMSoftwareMicrosoftShared ToolsMSConfigstartupregIminent] =>Adware.IMBooster^
      [HKLMSoftwareMicrosoftShared ToolsMSConfigstartupregIminentMessenger] =>Adware.IMBooster^
      [HKLMSoftwareMicrosoftShared ToolsMSConfigstartupregpctuto_fr_6] =>PUP.AgenceExclusive^
      [HKLMSoftwareMicrosoftShared ToolsMSConfigstartupregSweetIM] =>PUP.SweetIM^
      [HKLMSoftwareMicrosoftShared ToolsMSConfigstartupregTutorials] =>PUP.Eorezo^
      [HKLMSoftwareClassesInstallerFeatures7324911AA745d164DB449BB751477AAD] =>PUP.SweetIM
      [HKLMSoftwareClassesInstallerProducts7324911AA745d164DB449BB751477AAD] =>PUP.SweetIM
      [HKLMSoftwareWow6432NodeClassesInstallerFeatures7324911AA745d164DB449BB751477AAD] =>PUP.SweetIM
      [HKLMSoftwareWow6432NodeClassesInstallerProducts7324911AA745d164DB449BB751477AAD] =>PUP.SweetIM
      [HKLMSoftwareMicrosoftInternet Explorerextensions{898EA8C8-E7FF-479B-8935-AEC46303B9E5}] =>Toolbar.Skype
      [HKCUSoftwareMicrosoftInternet ExplorerLow RightsElevationPolicy{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Toolbar.Ask
      [HKLMSoftwareWow6432NodeSweetIM] =>PUP.SweetIM
      [HKLMSoftwareWow6432NodeMicrosoftTracingBingBar_RASAPI32] =>Toolbar.Bing
      [HKLMSoftwareClassesInstallerFeatures426EA07F14B2F674CBC9A0F751C8F351] =>PUP.SweetIM
      [HKLMSoftwareClassesInstallerProducts426EA07F14B2F674CBC9A0F751C8F351] =>PUP.SweetIM
      [HKLMSoftwareWow6432NodeClassesInstallerFeatures426EA07F14B2F674CBC9A0F751C8F351] =>PUP.SweetIM
      [HKLMSoftwareWow6432NodeClassesInstallerProducts426EA07F14B2F674CBC9A0F751C8F351] =>PUP.SweetIM
      [HKLMSoftwareClassesInstallerFeatures112C48061A10E464790A9077E221B205] =>Adware.SPointer
      [HKLMSoftwareClassesInstallerProducts112C48061A10E464790A9077E221B205] =>Adware.SPointer
      [HKLMSoftwareWow6432NodeClassesInstallerFeatures112C48061A10E464790A9077E221B205] =>Adware.SPointer
      [HKLMSoftwareWow6432NodeClassesInstallerProducts112C48061A10E464790A9077E221B205] =>Adware.SPointer
      [HKLMSoftwareWow6432NodeClassesCLSID{22222222-2222-2222-2222-220222702296}] =>PUP.CrossRider
      [HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerLow RightsElevationPolicy{21111111-1111-1111-1111-110211701196}] =>PUP.CrossRider
      [HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerLow RightsElevationPolicy{31111111-1111-1111-1111-110211701196}] =>PUP.CrossRider
      [HKLMSoftwareMicrosoftInternet ExplorerToolbar]:{2318C2B1-4965-11d4-9B18-009027A5CD4F} =>Toolbar.Google^
      C:UsersaudreyAppDataRoamingMozillaFirefoxProfilesxspioyw9.default217e8200-a3b3-43df-b951-8ec01d483d7f@b98c6809-1f3f-41a1-bb1c-692cf84781e9.com =>PUP.CrossRider^
      C:UsersaudreyAppDataRoamingMozillaFirefoxProfilesxspioyw9.defaultzulagames@ZulaGames.com =>Adware.InstallBrain^
      C:Program Files (x86)majeorezo =>PUP.Eorezo^
      C:Program Files (x86)majeorezo_fr_3 =>PUP.Eorezo^
      C:Program Files (x86)majpctuto_fr_6 =>PUP.AgenceExclusive^
      C:Program Files (x86)ResultBrowser =>Adware.QuestScan
      C:UsersaudreyAppDataLocalGoogleChromeUser DataDefaultExtensionscnmdgidklhhnmppphpohildcefnaaflp =>PUP.CrossRider
      C:UsersaudreyAppDataLocalGoogleChromeUser DataDefaultExtensionsbbjciahceamgodcoidkjpchnokgfpphh =>PUP.Funmoods^
      C:UsersaudreyAppDataLocalGoogleChromeUser DataDefaultExtensionsbdhffggcfjnkigeciffmipblemhphbjl =>PUP.WhiteSmoke^
      C:UsersaudreyAppDataLocalGoogleChromeUser DataDefaultExtensionsdbknnmebcajacipdbplichlbfjbjamlf =>PUP.Facemoi^
      C:UsersaudreyAppDataLocalGoogleChromeUser DataDefaultExtensionsdhkplhfnhceodhffomolpfigojocbpcb =>Toolbar.Babylon^
      C:UsersaudreyAppDataLocalGoogleChromeUser DataDefaultExtensionseooncjejnppfjjklapaamhcdmjbilmde =>Toolbar.DeltaSearch^
      C:UsersaudreyAppDataLocalGoogleChromeUser DataDefaultExtensionsgaiilaahiahdejapggenmdmafpmbipje =>PUP.DealPly^
      C:UsersaudreyAppDataLocalGoogleChromeUser DataDefaultExtensionsigdhbblpcellaljokkpfhcjlagemhgjl =>Adware.IMBooster^
      [HKLMSoftwareWow6432NodeMajEoRezo] =>PUP.Eorezo^
      C:WindowsInstaller21fa03.msi =>Adware.IMBooster^
      C:WindowsInstaller21fa0a.msi =>Adware.IMBooster^
      C:WindowsInstaller5967ffc.msi =>Adware.Boxore^
      C:WindowsInstallerbd2449.msi =>Adware.Facemoods^
      C:WindowsInstallercb3568.msi =>Adware.SPointer^
      C:WindowsInstallerdfba63.msi =>Adware.Bandoo^
      EmptyCLSID
      Emptytemp
      EmptyFlash
      Sysrestore

    • Lances ZHPFix, exécuter en tant qu’administrateur sous Windows : 7/8 et Vista

      1. Clique sur Importer
      2. Les lignes précedemment copiées doivent être collées dans le cadre
      3. Si c’est le cas, Clic sur “GO

    • Confirmes les nettoyages des données en cliquant sur “Oui
    • Une fois le scan terminé rends toi sur le bureau, le fichier ZHPFixReport à été crée.
    • Héberge le rapport ZHPFixReport sur SosUpload, puis copie/colle le lien fourni dans ta prochaine réponse.

    [hr:1bg664zn]

    • Pour supprimer les outils de désinfections utilisés :
    • Télécharges Delfix sur ton Bureau.
    • Lance Delfix, exécuter en tant qu’administrateur sous Windows : 7/8 et Vista
    • Coche la case suivantes :
      • Supprimer les outils de désinfection
      • Purger la restauration système

  • Photo du profil de alesiaalesia
    Participant
    Post count: 17

    https://antimalware.top/log/SosUpload.219b871c596756ae94b5830b75351bed.txt” onclick=”window.open(this.href);return false;

  • Anonyme
    Post count: 0

    Non ça c’est le rapport ZhpDiag, j’attend le rapport ZHPFix

Le sujet ‘usb en mode raccourci’ est fermé à de nouvelles réponses.