Répondre à : Mon PC Freeze/Se bloque complètement 2016-09-08T13:18:27+00:00
Evasion60
Participant
Nombre d'articles : 1557

:hello: Re

/! Infos =>

* Ad-Aware comme SpyBot S&D, ne sont plus utilisés (Peu de résultat // Obsolète)
A désinstaller, via le panneau de configuration

* Internet Explorer sous Win8, est en version 11
Mise à jour à effectuer, via Windows UpDate

* Tu as deux antivirus déclarés => AVG & Windows Defender8
Désactive Windows Defender, via le Centre de Maintenance

Ensuite =>

Applique ce correctif =>

Ouvre le bloc-notes
Séléctionne et copie le script ci dessous

[spoiler:4jhopmxs]Script ZHPFix
ShortcutFix
[MD5.09E9425AD8C61664A37ED84B8B58BDCF] – (.Safer-Networking Ltd. – Spybot – Search & Destroy tray access.) — C:Program Files (x86)Spybot – Search & Destroy 2SDTray.exe [3830224] [PID.6476] => Spybot-S&D Cleaning
[MD5.0B3BA73811EA0B419F996CB0B9BAE78A] – (.Lavasoft Limited – Ad-Aware Antivirus.) — C:Program Files (x86)Ad-Aware AntivirusAdAware.exe [18834784] [PID.5392] => Lavasoft
G2 РGCE: Preference [User DataDefault] [eooncjejnppfjjklapaamhcdmjbilmde] Delta Toolbar v.1.4 (D̩sactiv̩) => Toolbar.DeltaSearch
G2 РGCE: Preference [User DataDefault] [pbpohikckhbcljgombipcdoinkaedlfa] Smart Display v.1.6 (Activ̩) => Infection PUP (Spyware.SmartDisplay)
M2 – MFEP: prefs.js [dan – f1edfa1y.default4fdacf00-e9c4-4ad5-b4cf-bf9800f184f6@36857116-74e0-4973-936f-860cd2a102a9.com] [] Plus-HD-2.2 v (..)
O3 – Toolbar: Google Toolbar [64Bits] – [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. – Google Toolbar.) — C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_32.dll
O3 РToolbarWebBrowser: (no name) [64Bits] Р[HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Cl̩ orpheline => Toolbar.Google
O4 РGSProgram [Public]: Desktop.lnk РCl̩ orpheline
O4 – GSProgram [Public]: Spybot-S&D Start Center.lnk . (.Safer-Networking Ltd. – Start Center.) — C:Program Files (x86)Spybot – Search & Destroy 2SDWelcome.exe => Spybot-S&D Cleaning
O4 – GSQuickLaunch [dan]: PMU Poker.lnk . (…) — C:ProgramsPMUPMU.exe (.not file.) => PMU Poker Game
O4 – GSQuickLaunch [dan]: µTorrent.lnk . (.BitTorrent Inc. – µTorrent.) — C:UsersdanAppDataRoaminguTorrentuTorrent.exe => P2P.BitTorrent*
O4 РGSProgram [dan]: Poste de Travail.lnk РCl̩ orpheline
O4 – GSDesktop [dan]: Dan Dray.lnk . (…) — C:Usersdan
O4 – HKLM..Run: [SBRegRebootCleaner] . (.GFI Software – Registry Cleaner.) — C:Program Files (x86)Ad-Aware AntivirusSBRC.exe => Lavasoft
O4 – HKCU..Run: [AVG-Secure-Search-Update_0913b] C:UsersdanAppDataRoamingAVG 0913b CampaignAVG-Secure-Search-Update-0913b.exe (.not file.) => Toolbar.AVGSearch*
O4 – HKLM..Wow6432NodeRun: [dldtamon] C:Program Files (x86) (x86)Dell V305dldtamon.exe (.not file.) => Fichier absent
O4 – HKLM..Wow6432NodeRun: [SDTray] . (.Safer-Networking Ltd. – Spybot – Search & Destroy tray access.) — C:Program Files (x86)Spybot – Search & Destroy 2SDTray.exe => Spybot-S&D Cleaning
O4 РHKLM..Wow6432NodeRun: [Ad-Aware Antivirus] Cl̩ orpheline => Lavasoft
O4 – HKUSS-1-5-21-1492962219-184763394-522556990-1001..Run: [AVG-Secure-Search-Update_0913b] C:UsersdanAppDataRoamingAVG 0913b CampaignAVG-Secure-Search-Update-0913b.exe (.not file.) => Toolbar.AVGSearch*
O23 – Service: Spybot-S&D 2 Security Center Service (SDWSCService) . (.Safer-Networking Ltd. – Windows Security Center integration..) – C:Program Files (x86)Spybot – Search & Destroy 2SDWSCSvc.exe => Spybot-S&D Cleaning
[MD5.00000000000000000000000000000000] [APT] [{7478874F-DD2A-4C93-B744-BEEE5A597858}] (…) — C:Program Files (x86)glindorusglindorusuninstall.exe (.not file.) [0] => Fichier absent
[MD5.00000000000000000000000000000000] [APT] [{B424380C-AD7C-40A7-9FEF-06EB97BD10D1}] (…) — C:UsersdanDesktopKMSpico 5.1 by TazzKMSpico Only ServiceService_KMS.exe (.not file.) [0] => Fichier absent
O42 – Logiciel: FreeRide Games – (.Exent Technologies.) [HKLM][64Bits] — {6C26A305-4549-4A8A-9F03-25719C03B0FB} => Toolbar.FreeRide
O42 – Logiciel: Hébreu avec clavier français — Michael Langlois — 1.3 – (.Michael Langlois.) [HKLM][64Bits] — {23D0BEFD-26D3-4700-A012-1277B591C1E1}
O42 – Logiciel: LyricsWoofer – (.Lyrics Woofer LTD.) [HKLM][64Bits] — lwoofer@lyricswoofer.co => Adware.AddLyrics
O42 – Logiciel: PMU Poker – (.PMU.) [HKLM][64Bits] — PMUPoker => Online Game
[HKCUSoftwarePMU]
O43 – CFD: 28/04/2013 – 18:04:17 – [1,431] —-D C:Program Files (x86)Delayed Shutdown
O43 – CFD: 10/11/2012 – 07:18:15 – [14,753] —-D C:Program Files (x86)FreeRide Games => Toolbar.FreeRide
O43 – CFD: 10/11/2012 – 07:18:20 – [768,996] —-D C:ProgramDataFreeRide Games => Toolbar.FreeRide
O43 – CFD: 03/05/2013 – 16:09:28 – [23,535] -SH-D C:ProgramData{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} => Toolbar.TuneUp
O43 – CFD: 19/05/2013 – 11:15:41 – [0] —-D C:ProgramData{D76294E6-03B8-4971-AF2E-3F846161A690} => Empty Folder not necessary
O43 – CFD: 05/07/2013 – 09:03:24 – [0] —-D C:UsersdanAppDataRoamingDelayed Shutdown
O43 – CFD: 28/04/2013 – 19:10:52 – [0,005] —-D C:UsersdanAppDataRoamingPMU
O61 – LFC: 19/11/2013 – 15:44:44 —A- . (…) — C:UsersdanAppDataLocalGoogleToolbar Cache7.5.4601.54frtranslate_element.js.content [2381] => Toolbar.Google
O61 – LFC: 19/11/2013 – 15:44:44 —A- . (…) — C:UsersdanAppDataLocalGoogleToolbar Cache7.5.4601.54frtranslate_languages.json.content [1861] => Toolbar.Google
O61 – LFC: 21/11/2013 – 15:44:43 —A- . (…) — C:UsersdanAppDataLocalGoogleToolbarbroker_metrics.xml [8858] => Toolbar.Google
C:UsersdanDesktoplogicielsDreamweaver MX 2004 + Keygen.rar => Crack, KeyGen, Keymaker – Possible Malware
[MD5.32DCED18FFFEA0035E4FA975CA0AE8BE] [SPRF][22/04/2013] (.The Software Group – Software Update Setup.) — C:UsersdanAppDataLocalTempBoxoreInstaller.exe [620656] => Adware.Boxore*
[MD5.DE633B760309664B5DF356A894982CB5] [SPRF][07/03/2004] (…) — C:UsersdanAppDataRoamingQNVW601P.dll [16] => Infection Diverse (Trojan.Agent)
O87 – FAEL: “{C79A3CEB-AF0E-46B1-B81A-5F3D9389C5A3}” |In – Private – P6 – TRUE | .(…) — C:Program Files (x86) (x86)Dell V305dldtmon.exe (.not file.) => Dell Inc – Printer Device Monitor
O87 – FAEL: “{86EB7C24-0496-4007-BC06-999B8749B2A9}” |In – Private – P17 – TRUE | .(…) — C:Program Files (x86) (x86)Dell V305dldtmon.exe (.not file.) => Dell Inc – Printer Device Monitor
O87 – FAEL: “{AFEFAFB9-0A39-4A8E-9CF3-BCE36A64E194}” |In – Private – P6 – TRUE | .(…) — C:UsersdanAppDataLocalTempdldtwirelessFRENCHdldtwpss.exe (.not file.) => Fichier absent
O87 – FAEL: “{CCF9A001-F2A0-4844-9747-00A3778F045D}” |In – Private – P17 – TRUE | .(…) — C:UsersdanAppDataLocalTempdldtwirelessFRENCHdldtwpss.exe (.not file.) => Fichier absent
O87 – FAEL: “{C3805431-2103-47BD-B383-C52105B5393D}” |In – None – P17 – TRUE | .(…) — C:Program Files (x86) (x86)Dell V305dldtamon.exe (.not file.) => Fichier absent
O87 – FAEL: “{B100DE85-7B40-4D55-BC3C-6CB76B21B9A6}” |In – None – P17 – TRUE | .(…) — C:Program Files (x86) (x86)Dell V305frun.exe (.not file.) => Fichier absent
O87 – FAEL: “{EFE22B46-9AA7-42EB-903A-FAA35278FF61}” |In – None – P17 – TRUE | .(…) — C:Program Files (x86) (x86)Dell V305dldtmon.exe (.not file.) => Dell Inc – Printer Device Monitor
O87 – FAEL: “{067CB4AF-792D-4DF3-84B2-87E7D1D892BD}” | In – None – P17 – TRUE | .(.Pas de propriétaire – Time Executable.) — C:WINDOWSsystem32spoolDRIVERSx643dldttime.exe
O87 – FAEL: “{69894CEE-052B-4EA0-9715-C8D91D53F286}” |In – Private – P6 – TRUE | .(…) — C:Program Files (x86) (x86)Dell V305Wirelessdldtwpss.exe (.not file.) => Fichier absent
O87 – FAEL: “{F2D2481C-9FAC-43FF-A36D-D6A049C4748C}” |In – Private – P17 – TRUE | .(…) — C:Program Files (x86) (x86)Dell V305Wirelessdldtwpss.exe (.not file.) => Fichier absent
O87 – FAEL: “{9E665FB3-6BBF-489E-AEAA-DE7B2C0FA50E}” |In – Private – P6 – TRUE | .(…) — C:Program Files (x86)GoforFilesgoforfilesdl.exe (.not file.) => Peer2Peer.GoforFiles
O87 – FAEL: “{BF51A99E-6299-4583-A156-09576DB2E0D3}” |In – Private – P17 – TRUE | .(…) — C:Program Files (x86)GoforFilesgoforfilesdl.exe (.not file.) => Peer2Peer.GoforFiles
O87 – FAEL: “{B669CFB2-787B-4B42-9D3C-E9EFE9372FEE}” |In – Private – P6 – TRUE | .(…) — C:Program Files (x86)GoforFilesGoforFiles.exe (.not file.) => Peer2Peer.GoforFiles
O87 – FAEL: “{509B9FD1-7804-41FE-9D02-3819854426DB}” |In – Private – P17 – TRUE | .(…) — C:Program Files (x86)GoforFilesGoforFiles.exe (.not file.) => Peer2Peer.GoforFiles
O87 – FAEL: “TCP Query User{1287F30B-CA27-4ED2-B38D-732CABD11067}C:program files (x86)torntv.comtorntv downloader.exe” |In – Private – P6 – TRUE | .(…) — C:program files (x86)torntv.comtorntv downloader.exe (.not file.) => Infection PUP (Hijacker.TornTV)
O87 – FAEL: “UDP Query User{88EBC7DC-C014-42B5-AE24-13CF4E790E75}C:program files (x86)torntv.comtorntv downloader.exe” |In – Private – P17 – TRUE | .(…) — C:program files (x86)torntv.comtorntv downloader.exe (.not file.) => Infection PUP (Hijacker.TornTV)
O87 – FAEL: “TCP Query User{1EAEF3CA-BDC2-47F8-B067-14A0D6C0871F}C:program files (x86)tennis elbow 2013tenniselbow.exe” | In – Private – P6 – TRUE | .(.Mana Games – Tennis Elbow 2013.) — C:program files (x86)tennis elbow 2013tenniselbow.exe
O87 – FAEL: “UDP Query User{2FF51154-B1AE-4C04-AC45-8A435DF7BAC0}C:program files (x86)tennis elbow 2013tenniselbow.exe” | In – Private – P17 – TRUE | .(.Mana Games – Tennis Elbow 2013.) — C:program files (x86)tennis elbow 2013tenniselbow.exe
O87 – FAEL: “{AA64AD57-5FE7-4D24-A857-B08B6DC703CB}” |In – Private – P6 – TRUE | .(…) — C:Program Files (x86) (x86)Dell V305dldtamon.exe (.not file.) => Fichier absent
O87 – FAEL: “{9B876C53-3523-455B-B5E1-98A14C44FEA8}” |In – Private – P17 – TRUE | .(…) — C:Program Files (x86) (x86)Dell V305dldtamon.exe (.not file.) => Fichier absent
O87 – FAEL: “{3F0AAE17-3BCD-468C-BD31-121EFC657408}” |In – Private – P6 – TRUE | .(…) — C:Program Files (x86) (x86)Dell V305frun.exe (.not file.) => Fichier absent
O87 – FAEL: “{796032F7-F7C7-45A0-B141-DC4A3C07A94A}” |In – Private – P17 – TRUE | .(…) — C:Program Files (x86) (x86)Dell V305frun.exe (.not file.) => Fichier absent
SR – | Auto 13/06/2013 1236336 | (Ad-Aware Service) . (.Lavasoft Limited.) – C:Program Files (x86)Ad-Aware AntivirusAdAwareService.exe => Lavasoft
SR – | Auto 20/09/2012 3677000 | (SBAMSvc) . (.GFI Software.) – C:Program Files (x86)Ad-Aware AntivirusSBAMSvc.exe => Lavasoft
SR – | Auto 16/05/2013 1817560 | (SDScannerService) . (.Safer-Networking Ltd..) – C:Program Files (x86)Spybot – Search & Destroy 2SDFSSvc.exe => Spybot-S&D Cleaning
SR – | Auto 16/05/2013 1033688 | (SDUpdateService) . (.Safer-Networking Ltd..) – C:Program Files (x86)Spybot – Search & Destroy 2SDUpdSvc.exe => Spybot-S&D Cleaning
SR – | Auto 15/05/2013 171928 | (SDWSCService) . (.Safer-Networking Ltd..) – C:Program Files (x86)Spybot – Search & Destroy 2SDWSCSvc.exe => Spybot-S&D Cleaning
[HKLMSoftwareGoogleChromeExtensionseooncjejnppfjjklapaamhcdmjbilmde] => Toolbar.DeltaSearch
[HKLMSoftwareGoogleChromeExtensionspbpohikckhbcljgombipcdoinkaedlfa] => Infection PUP (Spyware.SmartDisplay)
[HKLMSoftwareMicrosoftWindowsCurrentVersionUninstalllwoofer@lyricswoofer.co]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components29799DE249E7DBC459FC6C8F07EB8375] => PUP.Tarma
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components238BBE24EA3A70408B81E4BB89C15E5] => PUP.Tarma
[HKLMSoftwareWow6432NodeMicrosoftWindowsCurrentVersionUninstalllwoofer@lyricswoofer.co]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ProductsC776EBEBCBCFBE408892EE7B12517FC] => PUP.VAFPlayer
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsC776EBEBCBCFBE408892EE7B12517FC] => PUP.VAFPlayer
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsCA0054A5AB3EFFE4CB5660E44A1E7DCC] => Infection PUP (Adware.Boxore)
[HKLMSoftwareMicrosoftInternet ExplorerToolbar]:{2318C2B1-4965-11d4-9B18-009027A5CD4F} => Toolbar.Google
C:UsersdanAppDataLocalGoogleChromeUser DataDefaultExtensionseooncjejnppfjjklapaamhcdmjbilmde => Toolbar.DeltaSearch
C:UsersdanAppDataLocalGoogleChromeUser DataDefaultExtensionspbpohikckhbcljgombipcdoinkaedlfa => Infection PUP (Spyware.SmartDisplay)
C:UsersdanAppDataRoamingMozillaFirefoxProfilesf1edfa1y.defaultextensions4fdacf00-e9c4-4ad5-b4cf-bf9800f184f6@36857116-74e0-4973-936f-860cd2a102a9.com
C:Program Files (x86)FreeRide Games => Toolbar.FreeRide
C:ProgramDataFreeRide Games => Toolbar.FreeRide
C:UsersdanAppDataLocalSoftware => Infection PUP (Adware.Boxore)
C:UsersdanAppDataLocalTempBoxoreInstaller.exe => Adware.Boxore*
C:UsersdanAppDataLocalTempsmt_ar_dosearches.exe => Temporary file not necessary
EmptyCLSID
Emptytemp
EmptyFlash[/spoiler:4jhopmxs]

Double-clique sur le raccourci du programme “ZHPFix” qui est sur ton bureau

Dans l’interface du logiciel qui s’est ouvert, clique sur “Importer” pour coller le Script ZHPFix

Si le script n’est pas conforme
Un avertissement s’affiche
Le script doit comporter obligatoirement comme première ligne Script ZHPFix

Si le script est conforme
Le texte précédemment copié doit être maintenant affiché automatiquement dans l’interface de ZHPFix

Vérifie que le script dans ZHPFix correspond aux lignes précédentes
Clique sur le bouton « GO » pour lancer le nettoyage
Confirme ce nettoyage en cliquant sur “OUI” dans les deux fenêtres suivantes


Ce traitement peut durer jusqu’à plusieurs minutes avant le nettoyage proprement dit des lignes du script
Le nettoyage s’effectue, ne touche à rien pendant cette étape, si le programme demande un redémarrage du pc fait le
A l’issue un rapport ZHPFix.txt s’affiche dans la zone de rapport de l’interface et dans le bloc note Windows
Le rapport est aussi sauvegardé sur le Bureau Windows et dans le dossier : CUsernomxxxAppDataRoamingZHPZHPFix.txt

Poste le contenu de ce rapport par un copier/coller dans ta réponse sur le forum

Ferme ZHPFix et le bloc note par la croix rouge en haut à droite des deux fenêtres

A te lire avec son rapport

😉