Aller au contenu

papi 33

Membres
  • Compteur de contenus

    44
  • Inscription

  • Dernière visite

Tout ce qui a été posté par papi 33

  1. AdwCleaner v3.020 - Rapport créé le 28/02/2014 à 18:20:34 # Mis à jour le 27/02/2014 par Xplode # Système d'exploitation : Windows Vista Home Premium Service Pack 2 (32 bits) # Nom d'utilisateur : michel - PC-DE-MICHEL # Exécuté depuis : C:\Users\michel\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\T0JRK330\adwcleaner.exe # Option : Scanner ***** [ Services ] ***** Service Présent : Allin1Convert_8hService ***** [ Fichiers / Dossiers ] ***** Dossier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl Dossier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje Dossier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbpohikckhbcljgombipcdoinkaedlfa Dossier Présent C:\Program Files\Allin1Convert_8h Dossier Présent C:\Program Files\DomaIQ Uninstaller Dossier Présent C:\Program Files\Iminent Dossier Présent C:\Program Files\Jump Flip Dossier Présent C:\Program Files\LinkSwift Dossier Présent C:\Program Files\myfree codec Dossier Présent C:\Program Files\PC Health Kit Dossier Présent C:\Program Files\PC Performer Dossier Présent C:\Program Files\Software Dossier Présent C:\ProgramData\boost_interprocess Dossier Présent C:\ProgramData\Conduit Dossier Présent C:\ProgramData\IBUpdaterService Dossier Présent C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec Dossier Présent C:\ProgramData\SpeedMaxPc Dossier Présent C:\ProgramData\WPM Dossier Présent C:\Users\michel\AppData\Local\Allin1Convert_8h Dossier Présent C:\Users\michel\AppData\Local\Conduit Dossier Présent C:\Users\michel\AppData\Local\Smartbar Dossier Présent C:\Users\michel\AppData\LocalLow\Allin1Convert_8h Dossier Présent C:\Users\michel\AppData\LocalLow\Conduit Dossier Présent C:\Users\michel\AppData\LocalLow\Delta Dossier Présent C:\Users\michel\AppData\LocalLow\iac Dossier Présent C:\Users\michel\AppData\LocalLow\Mysearchdial Dossier Présent C:\Users\michel\AppData\LocalLow\PriceGong Dossier Présent C:\Users\michel\AppData\Roaming\BabSolution Dossier Présent C:\Users\michel\AppData\Roaming\DriverCure Dossier Présent C:\Users\michel\AppData\Roaming\PerformerSoft Dossier Présent C:\Users\michel\AppData\Roaming\SpeedMaxPc Dossier Présent C:\Users\michel\chat-land Dossier Présent C:\Users\michel\Documents\PC Speed Maximizer Dossier Présent C:\Users\michel\prncnfgd Fichier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pflphaooapbgpeakohlggbpidpppgdff_0.localstorage Fichier Présent : C:\Users\michel\AppData\Local\mysearchdial-speeddial.crx ***** [ Raccourcis ] ***** ***** [ Registre ] ***** Clé Présente : HKCU\Software\AppDataLow\Software\allin1convert_8h Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\MyFreeCodec Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Wpm Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CD1A63BA-A08C-431B-9A34-F240AADC728D} Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A} Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CD1A63BA-A08C-431B-9A34-F240AADC728D} Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec Clé Présente : HKCU\Software\Myfree Codec Clé Présente : HKLM\Software\allin1convert_8h Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.feedmanager Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.feedmanager.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.htmlmenu Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.htmlmenu.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.htmlpanel Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.htmlpanel.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.multiplebutton Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.multiplebutton.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.pseudotransparentplugin Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.pseudotransparentplugin.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.radio Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.radio.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.radiosettings Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.radiosettings.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.scriptbutton Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.scriptbutton.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.settingsplugin Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.settingsplugin.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.thirdpartyinstaller Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.thirdpartyinstaller.1 Clé Présente : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector Clé Présente : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector.1 Clé Présente : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{248B3E95-17A4-482D-A8A8-6B3DF4D05C35} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{27F49273-DE3A-4111-90F9-6C474C37AEFB} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{39D4F1A1-A94D-4B7D-BF1D-7446308800ED} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{443321F7-E46C-42F8-812B-F35E98CBB44F} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{5CDE4714-32DC-473C-8194-0645E62C2E96} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{7EB7381C-FB01-47FC-9C42-ED64122C1B92} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{889F49D2-6CEA-40BE-BE5F-7217485F9745} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{8F83D657-5993-4FFA-9AEE-DA0B20D828A7} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{C8EF8F70-3807-424A-83F7-DA06FD4DACF9} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{CD1A63BA-A08C-431B-9A34-F240AADC728D} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{DE0F6787-9D1C-42B7-A0B9-EAC630F87902} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{E4EF697F-434B-4DC7-A464-4412462206DB} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{EF3F28C8-0330-4D18-B901-D24CB83E5AA1} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{EF5DB804-585B-472E-B415-BC63F8F01BF6} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{F2C368C5-9F44-4D43-89F3-A1CC87F1DA96} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{F99DDD9A-07D0-47AB-86F1-193533DD2C60} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{FD501041-8EBE-11CE-8183-00AA00577DA2} Clé Présente : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager Clé Présente : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1 Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{16976E15-10EA-44FD-804A-6ECBC9EBBFC7} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{2561FD25-FE31-4E56-A120-AF7FEAAE3124} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{4BD0FCFF-AD64-4315-9F2C-960EF3C21623} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{507C73BB-FC69-425E-8A49-9204F886B328} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{6EC57031-1740-4151-93C5-C465D6063DD2} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{76FC1003-0825-48BD-B59B-3B7A5754972C} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{9D217B94-6FC9-44FE-94B1-30C711871266} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{B48AC2CD-9662-47E0-A3C0-3B01BB3F463E} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{BE698E51-830B-447A-954D-901D6E05DDE2} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{BFCF748F-A56E-451F-AA45-0D7EB699E416} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{C292AD0A-C11F-479B-B8DB-743E72D283B0} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{D617CF84-B0BC-441F-9984-B676AFBA1E8D} Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{248B3E95-17A4-482D-A8A8-6B3DF4D05C35} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{27F49273-DE3A-4111-90F9-6C474C37AEFB} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7EB7381C-FB01-47FC-9C42-ED64122C1B92} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{E4EF697F-434B-4DC7-A464-4412462206DB} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F99DDD9A-07D0-47AB-86F1-193533DD2C60} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\allin1convert_8hbar uninstall firefox Clé Présente : HKLM\SOFTWARE\MozillaPlugins\@Allin1Convert_8h.com/Plugin Clé Présente : HKLM\Software\Myfree Codec Clé Présente : HKLM\Software\supWPM Clé Présente : HKLM\Software\sweet-pageSoftware Valeur Présente : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{CD1A63BA-A08C-431B-9A34-F240AADC728D}] Valeur Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{CD1A63BA-A08C-431B-9A34-F240AADC728D}] Valeur Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Allin1Convert Search Scope Monitor] Valeur Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Allin1Convert_8h Browser Plugin Loader] ***** [ Navigateurs ] ***** -\\ Internet Explorer v9.0.8112.16533
  2. gueKiller V8.8.10 [Feb 28 2014] par Adlice Software mail : http://www.adlice.com/contact/ Remontees : http://forum.adlice.com Site Web : http://www.surlatoile.org/RogueKiller/ Blog : http://www.adlice.com Systeme d'exploitation : Windows Vista (6.0.6002 Service Pack 2) 32 bits version Demarrage : Mode normal Utilisateur : michel [Droits d'admin] Mode : Suppression -- Date : 03/01/2014 14:57:09 | ARK || FAK || MBR | ¤¤¤ Processus malicieux : 0 ¤¤¤ ¤¤¤ Entrees de registre : 2 ¤¤¤ [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> REMPLACÉ (0) [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REMPLACÉ (0) ¤¤¤ Tâches planifiées : 7 ¤¤¤ [V1][sUSP PATH] Digital Sites.job : C:\Users\michel\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> SUPPRIMÉ [V1][sUSP PATH] MySearchDial.job : C:\Users\michel\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> SUPPRIMÉ [V2][sUSP PATH] Digital Sites : C:\Users\michel\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> SUPPRIMÉ [V2][sUSP PATH] MySearchDial : C:\Users\michel\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> ERROR DELETING TASK [V2][sUSP PATH] Updater21810.exe : C:\Users\michel\AppData\Local\Updater21810\Updater21810.exe - /extensionid=21810 /extensionname="Giant Savings Extension" /chromeid=halffneccaebicfdfajnbfgpglahfgoe [x][x] -> SUPPRIMÉ ¤¤¤ Entrées Startup : 0 ¤¤¤ ¤¤¤ Navigateurs web : 0 ¤¤¤ ¤¤¤ Addons navigateur : 0 ¤¤¤ ¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤ ¤¤¤ Driver : [CHARGE] ¤¤¤ [inline] EAT @explorer.exe (FwDoNothingOnObject) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [inline] EAT @explorer.exe (FwEnableMemTracing) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [inline] EAT @explorer.exe (FwSetMemLeakPolicy) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) ¤¤¤ Ruches Externes: ¤¤¤ ¤¤¤ Infection : ¤¤¤ ¤¤¤ Fichier HOSTS: ¤¤¤ --> %SystemRoot%\System32\drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ¤¤¤ MBR Verif: ¤¤¤ +++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD6400AAKS-22A7B0 ATA Device +++++ --- User --- [MBR] f38b5626f870548acb7d9102dc1b717f [bSP] bcbd62b8fed56d09e5e8dfe4629a753e : Windows Vista MBR Code Partition table: 0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 12288 Mo 1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 25167872 | Size: 598190 Mo User = LL1 ... OK! User = LL2 ... OK! Termine : << RKreport[0]_D_03012014_145709.txt >> RKreport[0]_S_03012014_145520.txt ogueKiller V8.8.10 [Feb 28 2014] par Adlice Software mail : http://www.adlice.com/contact/ Remontees : http://forum.adlice.com Site Web : http://www.surlatoile.org/RogueKiller/ Blog : http://www.adlice.com Systeme d'exploitation : Windows Vista (6.0.6002 Service Pack 2) 32 bits version Demarrage : Mode normal Utilisateur : michel [Droits d'admin] Mode : Suppression -- Date : 03/01/2014 15:10:20 | ARK || FAK || MBR | ¤¤¤ Processus malicieux : 0 ¤¤¤ ¤¤¤ Entrees de registre : 0 ¤¤¤ ¤¤¤ Tâches planifiées : 0 ¤¤¤ ¤¤¤ Entrées Startup : 0 ¤¤¤ ¤¤¤ Navigateurs web : 0 ¤¤¤ ¤¤¤ Addons navigateur : 0 ¤¤¤ ¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤ ¤¤¤ Driver : [CHARGE] ¤¤¤ [inline] EAT @explorer.exe (FwDoNothingOnObject) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [inline] EAT @explorer.exe (FwEnableMemTracing) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [inline] EAT @explorer.exe (FwSetMemLeakPolicy) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) ¤¤¤ Ruches Externes: ¤¤¤ ¤¤¤ Infection : ¤¤¤ ¤¤¤ Fichier HOSTS: ¤¤¤ --> %SystemRoot%\System32\drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ¤¤¤ MBR Verif: ¤¤¤ +++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD6400AAKS-22A7B0 ATA Device +++++ --- User --- [MBR] f38b5626f870548acb7d9102dc1b717f [bSP] bcbd62b8fed56d09e5e8dfe4629a753e : Windows Vista MBR Code Partition table: 0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 12288 Mo 1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 25167872 | Size: 598190 Mo User = LL1 ... OK! User = LL2 ... OK! Termine : << RKreport[0]_D_03012014_151020.txt >> RKreport[0]_D_03012014_145709.txt;RKreport[0]_S_03012014_145520.txt;RKreport[0]_S_03012014_150900.txt
  3. ogueKiller V8.8.10 [Feb 28 2014] par Adlice Software mail : http://www.adlice.com/contact/ Remontees : http://forum.adlice.com Site Web : http://www.surlatoile.org/RogueKiller/ Blog : http://www.adlice.com Systeme d'exploitation : Windows Vista (6.0.6002 Service Pack 2) 32 bits version Demarrage : Mode normal Utilisateur : michel [Droits d'admin] Mode : Suppression -- Date : 03/01/2014 14:57:09 | ARK || FAK || MBR | ¤¤¤ Processus malicieux : 0 ¤¤¤ ¤¤¤ Entrees de registre : 2 ¤¤¤ [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> REMPLACÉ (0) [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REMPLACÉ (0) ¤¤¤ Tâches planifiées : 7 ¤¤¤ [V1][sUSP PATH] Digital Sites.job : C:\Users\michel\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> SUPPRIMÉ [V1][sUSP PATH] MySearchDial.job : C:\Users\michel\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> SUPPRIMÉ [V2][sUSP PATH] Digital Sites : C:\Users\michel\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> SUPPRIMÉ [V2][sUSP PATH] MySearchDial : C:\Users\michel\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> ERROR DELETING TASK [V2][sUSP PATH] Updater21810.exe : C:\Users\michel\AppData\Local\Updater21810\Updater21810.exe - /extensionid=21810 /extensionname="Giant Savings Extension" /chromeid=halffneccaebicfdfajnbfgpglahfgoe [x][x] -> SUPPRIMÉ ¤¤¤ Entrées Startup : 0 ¤¤¤ ¤¤¤ Navigateurs web : 0 ¤¤¤ ¤¤¤ Addons navigateur : 0 ¤¤¤ ¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤ ¤¤¤ Driver : [CHARGE] ¤¤¤ [inline] EAT @explorer.exe (FwDoNothingOnObject) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [inline] EAT @explorer.exe (FwEnableMemTracing) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [inline] EAT @explorer.exe (FwSetMemLeakPolicy) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) ¤¤¤ Ruches Externes: ¤¤¤ ¤¤¤ Infection : ¤¤¤ ¤¤¤ Fichier HOSTS: ¤¤¤ --> %SystemRoot%\System32\drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ¤¤¤ MBR Verif: ¤¤¤ +++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD6400AAKS-22A7B0 ATA Device +++++ --- User --- [MBR] f38b5626f870548acb7d9102dc1b717f [bSP] bcbd62b8fed56d09e5e8dfe4629a753e : Windows Vista MBR Code Partition table: 0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 12288 Mo 1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 25167872 | Size: 598190 Mo User = LL1 ... OK! User = LL2 ... OK! Termine : << RKreport[0]_D_03012014_145709.txt >> RKreport[0]_S_03012014_145520.txt gueKiller V8.8.10 [Feb 28 2014] par Adlice Software mail : http://www.adlice.com/contact/ Remontees : http://forum.adlice.com Site Web : http://www.surlatoile.org/RogueKiller/ Blog : http://www.adlice.com Systeme d'exploitation : Windows Vista (6.0.6002 Service Pack 2) 32 bits version Demarrage : Mode normal Utilisateur : michel [Droits d'admin] Mode : Suppression -- Date : 03/01/2014 14:57:09 | ARK || FAK || MBR | ¤¤¤ Processus malicieux : 0 ¤¤¤ ¤¤¤ Entrees de registre : 2 ¤¤¤ [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> REMPLACÉ (0) [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REMPLACÉ (0) ¤¤¤ Tâches planifiées : 7 ¤¤¤ [V1][sUSP PATH] Digital Sites.job : C:\Users\michel\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> SUPPRIMÉ [V1][sUSP PATH] MySearchDial.job : C:\Users\michel\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> SUPPRIMÉ [V2][sUSP PATH] Digital Sites : C:\Users\michel\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> SUPPRIMÉ [V2][sUSP PATH] MySearchDial : C:\Users\michel\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> ERROR DELETING TASK [V2][sUSP PATH] Updater21810.exe : C:\Users\michel\AppData\Local\Updater21810\Updater21810.exe - /extensionid=21810 /extensionname="Giant Savings Extension" /chromeid=halffneccaebicfdfajnbfgpglahfgoe [x][x] -> SUPPRIMÉ ¤¤¤ Entrées Startup : 0 ¤¤¤ ¤¤¤ Navigateurs web : 0 ¤¤¤ ¤¤¤ Addons navigateur : 0 ¤¤¤ ¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤ ¤¤¤ Driver : [CHARGE] ¤¤¤ [inline] EAT @explorer.exe (FwDoNothingOnObject) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [inline] EAT @explorer.exe (FwEnableMemTracing) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [inline] EAT @explorer.exe (FwSetMemLeakPolicy) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) ¤¤¤ Ruches Externes: ¤¤¤ ¤¤¤ Infection : ¤¤¤ ¤¤¤ Fichier HOSTS: ¤¤¤ --> %SystemRoot%\System32\drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ¤¤¤ MBR Verif: ¤¤¤ +++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD6400AAKS-22A7B0 ATA Device +++++ --- User --- [MBR] f38b5626f870548acb7d9102dc1b717f [bSP] bcbd62b8fed56d09e5e8dfe4629a753e : Windows Vista MBR Code Partition table: 0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 12288 Mo 1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 25167872 | Size: 598190 Mo User = LL1 ... OK! User = LL2 ... OK! Termine : << RKreport[0]_D_03012014_145709.txt >> RKreport[0]_S_03012014_145520.txt ogueKiller V8.8.10 [Feb 28 2014] par Adlice Software mail : http://www.adlice.com/contact/ Remontees : http://forum.adlice.com Site Web : http://www.surlatoile.org/RogueKiller/ Blog : http://www.adlice.com Systeme d'exploitation : Windows Vista (6.0.6002 Service Pack 2) 32 bits version Demarrage : Mode normal Utilisateur : michel [Droits d'admin] Mode : Suppression -- Date : 03/01/2014 14:57:09 | ARK || FAK || MBR | ¤¤¤ Processus malicieux : 0 ¤¤¤ ¤¤¤ Entrees de registre : 2 ¤¤¤ [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> REMPLACÉ (0) [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REMPLACÉ (0) ¤¤¤ Tâches planifiées : 7 ¤¤¤ [V1][sUSP PATH] Digital Sites.job : C:\Users\michel\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> SUPPRIMÉ [V1][sUSP PATH] MySearchDial.job : C:\Users\michel\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> SUPPRIMÉ [V2][sUSP PATH] Digital Sites : C:\Users\michel\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> SUPPRIMÉ [V2][sUSP PATH] MySearchDial : C:\Users\michel\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> ERROR DELETING TASK [V2][sUSP PATH] Updater21810.exe : C:\Users\michel\AppData\Local\Updater21810\Updater21810.exe - /extensionid=21810 /extensionname="Giant Savings Extension" /chromeid=halffneccaebicfdfajnbfgpglahfgoe [x][x] -> SUPPRIMÉ ¤¤¤ Entrées Startup : 0 ¤¤¤ ¤¤¤ Navigateurs web : 0 ¤¤¤ ¤¤¤ Addons navigateur : 0 ¤¤¤ ¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤ ¤¤¤ Driver : [CHARGE] ¤¤¤ [inline] EAT @explorer.exe (FwDoNothingOnObject) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [inline] EAT @explorer.exe (FwEnableMemTracing) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [inline] EAT @explorer.exe (FwSetMemLeakPolicy) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) ¤¤¤ Ruches Externes: ¤¤¤ ¤¤¤ Infection : ¤¤¤ ¤¤¤ Fichier HOSTS: ¤¤¤ --> %SystemRoot%\System32\drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ¤¤¤ MBR Verif: ¤¤¤ +++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD6400AAKS-22A7B0 ATA Device +++++ --- User --- [MBR] f38b5626f870548acb7d9102dc1b717f [bSP] bcbd62b8fed56d09e5e8dfe4629a753e : Windows Vista MBR Code Partition table: 0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 12288 Mo 1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 25167872 | Size: 598190 Mo User = LL1 ... OK! User = LL2 ... OK! Termine : << RKreport[0]_D_03012014_145709.txt >> RKreport[0]_S_03012014_145520.txt gueKiller V8.8.10 [Feb 28 2014] par Adlice Software mail : http://www.adlice.com/contact/ Remontees : http://forum.adlice.com Site Web : http://www.surlatoile.org/RogueKiller/ Blog : http://www.adlice.com Systeme d'exploitation : Windows Vista (6.0.6002 Service Pack 2) 32 bits version Demarrage : Mode normal Utilisateur : michel [Droits d'admin] Mode : Suppression -- Date : 03/01/2014 14:57:09 | ARK || FAK || MBR | ¤¤¤ Processus malicieux : 0 ¤¤¤ ¤¤¤ Entrees de registre : 2 ¤¤¤ [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> REMPLACÉ (0) [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REMPLACÉ (0) ¤¤¤ Tâches planifiées : 7 ¤¤¤ [V1][sUSP PATH] Digital Sites.job : C:\Users\michel\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> SUPPRIMÉ [V1][sUSP PATH] MySearchDial.job : C:\Users\michel\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> SUPPRIMÉ [V2][sUSP PATH] Digital Sites : C:\Users\michel\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> SUPPRIMÉ [V2][sUSP PATH] MySearchDial : C:\Users\michel\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> ERROR DELETING TASK [V2][sUSP PATH] Updater21810.exe : C:\Users\michel\AppData\Local\Updater21810\Updater21810.exe - /extensionid=21810 /extensionname="Giant Savings Extension" /chromeid=halffneccaebicfdfajnbfgpglahfgoe [x][x] -> SUPPRIMÉ ¤¤¤ Entrées Startup : 0 ¤¤¤ ¤¤¤ Navigateurs web : 0 ¤¤¤ ¤¤¤ Addons navigateur : 0 ¤¤¤ ¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤ ¤¤¤ Driver : [CHARGE] ¤¤¤ [inline] EAT @explorer.exe (FwDoNothingOnObject) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [inline] EAT @explorer.exe (FwEnableMemTracing) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [inline] EAT @explorer.exe (FwSetMemLeakPolicy) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) ¤¤¤ Ruches Externes: ¤¤¤ ¤¤¤ Infection : ¤¤¤ ¤¤¤ Fichier HOSTS: ¤¤¤ --> %SystemRoot%\System32\drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ¤¤¤ MBR Verif: ¤¤¤ +++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD6400AAKS-22A7B0 ATA Device +++++ --- User --- [MBR] f38b5626f870548acb7d9102dc1b717f [bSP] bcbd62b8fed56d09e5e8dfe4629a753e : Windows Vista MBR Code Partition table: 0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 12288 Mo 1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 25167872 | Size: 598190 Mo User = LL1 ... OK! User = LL2 ... OK! Termine : << RKreport[0]_D_03012014_145709.txt >>
  4. ogueKiller V8.8.10 [Feb 28 2014] par Adlice Software mail : http://www.adlice.com/contact/ Remontees : http://forum.adlice.com Site Web : http://www.surlatoile.org/RogueKiller/ Blog : http://www.adlice.com Systeme d'exploitation : Windows Vista (6.0.6002 Service Pack 2) 32 bits version Demarrage : Mode normal Utilisateur : michel [Droits d'admin] Mode : Recherche -- Date : 03/01/2014 14:55:20 | ARK || FAK || MBR | ¤¤¤ Processus malicieux : 0 ¤¤¤ ¤¤¤ Entrees de registre : 2 ¤¤¤ [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> TROUVÉ [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> TROUVÉ ¤¤¤ Tâches planifiées : 7 ¤¤¤ [V1][sUSP PATH] Digital Sites.job : C:\Users\michel\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> TROUVÉ [V1][sUSP PATH] MySearchDial.job : C:\Users\michel\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> TROUVÉ [V2][sUSP PATH] Digital Sites : C:\Users\michel\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> TROUVÉ [V2][sUSP PATH] MySearchDial : C:\Users\michel\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> TROUVÉ [V2][sUSP PATH] Updater21810.exe : C:\Users\michel\AppData\Local\Updater21810\Updater21810.exe - /extensionid=21810 /extensionname="Giant Savings Extension" /chromeid=halffneccaebicfdfajnbfgpglahfgoe [x][x] -> TROUVÉ ¤¤¤ Entrées Startup : 0 ¤¤¤ ¤¤¤ Navigateurs web : 0 ¤¤¤ ¤¤¤ Addons navigateur : 0 ¤¤¤ ¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤ ¤¤¤ Driver : [CHARGE] ¤¤¤ [inline] EAT @explorer.exe (FwDoNothingOnObject) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [inline] EAT @explorer.exe (FwEnableMemTracing) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [inline] EAT @explorer.exe (FwSetMemLeakPolicy) : FirewallAPI.dll -> HOOKED (Unknown @ 0x36CB8266) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) [Address] IAT @iexplore.exe (SHGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414927) [Address] IAT @iexplore.exe (SHRegGetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63414984) [Address] IAT @iexplore.exe (SHSetValueW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x63432BC2) [Address] IAT @iexplore.exe (PathIsURLW) : SHLWAPI.dll -> HOOKED (C:\Program Files\Internet Explorer\IEShims.dll @ 0x6341FA79) ¤¤¤ Ruches Externes: ¤¤¤ ¤¤¤ Infection : ¤¤¤ ¤¤¤ Fichier HOSTS: ¤¤¤ --> %SystemRoot%\System32\drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ¤¤¤ MBR Verif: ¤¤¤ +++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD6400AAKS-22A7B0 ATA Device +++++ --- User --- [MBR] f38b5626f870548acb7d9102dc1b717f [bSP] bcbd62b8fed56d09e5e8dfe4629a753e : Windows Vista MBR Code Partition table: 0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 12288 Mo 1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 25167872 | Size: 598190 Mo User = LL1 ... OK! User = LL2 ... OK! Termine : << RKreport[0]_S_03012014_145520.txt >>
  5. je suis desoler et despere mais lorsque je veux telecharger roque killer plusieurs programmes se connectent mais pas celui de roque killer je ne veux pas abuser de votre bonne volonte merçi d'avoir essaye de m'aide
  6. http://cjoint.com/?3CbmlLr8r79 j'espere que c'est le bon cette fois car j'y perd mon latin sinon
  7. pardon je viens de voir l'erreur
  8. le rapport de ZhpDiag.txt ne peut etre envoye et il est impossible de decocher 045 et 061 car il n'y a que de 01 à 060 et le seul cocher est 03
  9. le seul rapport accessible est celui que je viens de poster car ceux se trouvant dans rapports/logs ne peuvent pas etre expedies je ne sais pour quelles raisons
  10. alwarebytes Anti-Malware (Essai) 1.75.0.1300 www.malwarebytes.org Version de la base de données: v2014.03.01.02 Windows Vista Service Pack 2 x86 NTFS Internet Explorer 9.0.8112.16421 michel :: PC-DE-MICHEL [administrateur] Protection: Désactivé 01/03/2014 10:09:09 mbam-log-2014-03-01 (10-09-09).txt Type d'examen: Examen complet (C:\|D:\|I:\|) Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM Options d'examen désactivées: P2P Elément(s) analysé(s): 336438 Temps écoulé: 47 minute(s), 6 seconde(s) Processus mémoire détecté(s): 0 (Aucun élément nuisible détecté) Module(s) mémoire détecté(s): 0 (Aucun élément nuisible détecté) Clé(s) du Registre détectée(s): 1 HKLM\SOFTWARE\sweet-pageSoftware (PUP.Optional.SweetPage.A) -> Aucune action effectuée. Valeur(s) du Registre détectée(s): 1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations|bak_Application (Hijacker.Application) -> Données: http://go.microsoft.com/fwlink/?LinkId=57426&Ext=%s -> Mis en quarantaine et supprimé avec succès. Elément(s) de données du Registre détecté(s): 4 HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Search Page (PUP.Optional.Snapdo) -> Mauvais: (http://feed.snapdo.com/?publisher=TightropeYB&dpid=TightropeYB&co=FR&userid=4efc61c1-b350-7138-ba1b-8c7b7721a29b&searchtype=ds&q={searchTerms}&installDate=15/10/2013) Bon: (http://www.google.com) -> Aucune action effectuée. HKCU\SOFTWARE\Microsoft\Internet Explorer\Search|SearchAssistant (PUP.Optional.Snapdo) -> Mauvais: (http://feed.snapdo.com/?publisher=TightropeYB&dpid=TightropeYB&co=FR&userid=4efc61c1-b350-7138-ba1b-8c7b7721a29b&searchtype=ds&q={searchTerms}&installDate=15/10/2013) Bon: (http://www.google.com) -> Aucune action effectuée. HKCU\SOFTWARE\Microsoft\Internet Explorer\Search|Default_Search_URL (PUP.Optional.Snapdo) -> Mauvais: (http://feed.snapdo.com/?publisher=TightropeYB&dpid=TightropeYB&co=FR&userid=4efc61c1-b350-7138-ba1b-8c7b7721a29b&searchtype=ds&q={searchTerms}&installDate=15/10/2013) Bon: (http://www.google.com) -> Aucune action effectuée. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations|Application (Hijacker.Application) -> Mauvais: (http://www.helpmeopen.com/?n=app&ext=%s) Bon: (http://shell.windows.com/fileassoc/%04x/xml/redir.asp?Ext=%s) -> Mis en quarantaine et réparé avec succès Dossier(s) détecté(s): 11 C:\Windows\System32\config\systemprofile\AppData\Roaming\DealPly (PUP.Optional.DealPly.A) -> Aucune action effectuée. C:\Windows\System32\config\systemprofile\AppData\Roaming\DealPly\UpdateProc (PUP.Optional.DealPly.A) -> Aucune action effectuée. C:\Program Files\Common Files\337\libcef (PUP.Optional.337Technologies.A) -> Aucune action effectuée. C:\Program Files\Common Files\337\libcef\1.1364.1123 (PUP.Optional.337Technologies.A) -> Aucune action effectuée. C:\Program Files\Common Files\337\libcef\1.1364.1123\locales (PUP.Optional.337Technologies.A) -> Aucune action effectuée. C:\ProgramData\IePluginService (PUP.Optional.IePluginService.A) -> Aucune action effectuée. C:\ProgramData\IePluginService\update (PUP.Optional.IePluginService.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Updater21810 (PUP.Optional.CrossRider.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl (PUP.Optional.SnapDo.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0 (PUP.Optional.SnapDo.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\JS (PUP.Optional.SnapDo.A) -> Aucune action effectuée. Fichier(s) détecté(s): 25 C:\Users\michel\AppData\Local\Temp\fullpackage_temp1393608461\package1.zip (PUP.Optional.SkyTech.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Temp\fullpackage_temp1393613833\package1.zip (PUP.Optional.SkyTech.A) -> Aucune action effectuée. C:\Users\michel\AppData\Roaming\sweet-page\QQBrowserFrame.dll (PUP.Optional.SkyTech.A) -> Aucune action effectuée. C:\Users\michel\Downloads\RCPSetup_15294.exe (PUP.Optional.RegCleanerPro) -> Aucune action effectuée. C:\Windows\System32\config\systemprofile\AppData\Roaming\DealPly\UpdateProc\config.dat (PUP.Optional.DealPly.A) -> Aucune action effectuée. C:\Windows\System32\config\systemprofile\AppData\Roaming\DealPly\UpdateProc\UpdateTask.exe (PUP.Optional.DealPly.A) -> Aucune action effectuée. C:\Program Files\Common Files\337\libcef\1.1364.1123\locales\en-US.pak (PUP.Optional.337Technologies.A) -> Aucune action effectuée. C:\ProgramData\IePluginService\update\conf (PUP.Optional.IePluginService.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\bg.js (PUP.Optional.SnapDo.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\GoogleChromeRemotePlugin.dll (PUP.Optional.SnapDo.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\options.js (PUP.Optional.SnapDo.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\popup.js (PUP.Optional.SnapDo.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\redirect.js (PUP.Optional.SnapDo.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\JS\BackPageRemove.js (PUP.Optional.SnapDo.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\JS\defaultBlockList.js (PUP.Optional.SnapDo.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\JS\documentEvents.js (PUP.Optional.SnapDo.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\JS\externalJS.js (PUP.Optional.SnapDo.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\JS\FBImagePreview.js (PUP.Optional.SnapDo.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\JS\InternalJS.js (PUP.Optional.SnapDo.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\JS\jquery-1.9.0.min.js (PUP.Optional.SnapDo.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\JS\PluginWrapper.js (PUP.Optional.SnapDo.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\JS\publisherDefinitions.js (PUP.Optional.SnapDo.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\JS\tabReload.js (PUP.Optional.SnapDo.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\JS\TopFrameJS.js (PUP.Optional.SnapDo.A) -> Aucune action effectuée. I:\Driver\Cleaner - TuneUp 2010\TuneUp_Utilities_2010_v9.0.3000.136.rar (RiskWare.Tool.HCK) -> Mis en quarantaine et supprimé avec succès. (fin)
  11. AdwCleaner v3.020 - Rapport créé le 28/02/2014 à 18:13:01 # Mis à jour le 27/02/2014 par Xplode # Système d'exploitation : Windows Vista Home Premium Service Pack 2 (32 bits) # Nom d'utilisateur : michel - PC-DE-MICHEL # Exécuté depuis : C:\Users\michel\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FK4PZ89V\adwcleaner.exe # Option : Scanner ***** [ Services ] ***** Service Présent : Allin1Convert_8hService ***** [ Fichiers / Dossiers ] ***** Dossier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl Dossier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje Dossier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbpohikckhbcljgombipcdoinkaedlfa Dossier Présent C:\Program Files\Allin1Convert_8h Dossier Présent C:\Program Files\DomaIQ Uninstaller Dossier Présent C:\Program Files\Iminent Dossier Présent C:\Program Files\Jump Flip Dossier Présent C:\Program Files\LinkSwift Dossier Présent C:\Program Files\myfree codec Dossier Présent C:\Program Files\PC Health Kit Dossier Présent C:\Program Files\PC Performer Dossier Présent C:\Program Files\Software Dossier Présent C:\ProgramData\boost_interprocess Dossier Présent C:\ProgramData\Conduit Dossier Présent C:\ProgramData\IBUpdaterService Dossier Présent C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec Dossier Présent C:\ProgramData\SpeedMaxPc Dossier Présent C:\ProgramData\WPM Dossier Présent C:\Users\michel\AppData\Local\Allin1Convert_8h Dossier Présent C:\Users\michel\AppData\Local\Conduit Dossier Présent C:\Users\michel\AppData\Local\Smartbar Dossier Présent C:\Users\michel\AppData\LocalLow\Allin1Convert_8h Dossier Présent C:\Users\michel\AppData\LocalLow\Conduit Dossier Présent C:\Users\michel\AppData\LocalLow\Delta Dossier Présent C:\Users\michel\AppData\LocalLow\iac Dossier Présent C:\Users\michel\AppData\LocalLow\Mysearchdial Dossier Présent C:\Users\michel\AppData\LocalLow\PriceGong Dossier Présent C:\Users\michel\AppData\Roaming\BabSolution Dossier Présent C:\Users\michel\AppData\Roaming\DriverCure Dossier Présent C:\Users\michel\AppData\Roaming\PerformerSoft Dossier Présent C:\Users\michel\AppData\Roaming\SpeedMaxPc Dossier Présent C:\Users\michel\chat-land Dossier Présent C:\Users\michel\Documents\PC Speed Maximizer Dossier Présent C:\Users\michel\prncnfgd Fichier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pflphaooapbgpeakohlggbpidpppgdff_0.localstorage Fichier Présent : C:\Users\michel\AppData\Local\mysearchdial-speeddial.crx ***** [ Raccourcis ] ***** ***** [ Registre ] ***** Clé Présente : HKCU\Software\AppDataLow\Software\allin1convert_8h Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\MyFreeCodec Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Wpm Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CD1A63BA-A08C-431B-9A34-F240AADC728D} Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A} Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CD1A63BA-A08C-431B-9A34-F240AADC728D} Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec Clé Présente : HKCU\Software\Myfree Codec Clé Présente : HKLM\Software\allin1convert_8h Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.feedmanager Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.feedmanager.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.htmlmenu Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.htmlmenu.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.htmlpanel Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.htmlpanel.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.multiplebutton Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.multiplebutton.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.pseudotransparentplugin Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.pseudotransparentplugin.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.radio Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.radio.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.radiosettings Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.radiosettings.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.scriptbutton Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.scriptbutton.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.settingsplugin Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.settingsplugin.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.thirdpartyinstaller Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.thirdpartyinstaller.1 Clé Présente : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector Clé Présente : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector.1 Clé Présente : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{248B3E95-17A4-482D-A8A8-6B3DF4D05C35} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{27F49273-DE3A-4111-90F9-6C474C37AEFB} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{39D4F1A1-A94D-4B7D-BF1D-7446308800ED} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{443321F7-E46C-42F8-812B-F35E98CBB44F} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{5CDE4714-32DC-473C-8194-0645E62C2E96} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{7EB7381C-FB01-47FC-9C42-ED64122C1B92} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{889F49D2-6CEA-40BE-BE5F-7217485F9745} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{8F83D657-5993-4FFA-9AEE-DA0B20D828A7} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{C8EF8F70-3807-424A-83F7-DA06FD4DACF9} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{CD1A63BA-A08C-431B-9A34-F240AADC728D} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{DE0F6787-9D1C-42B7-A0B9-EAC630F87902} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{E4EF697F-434B-4DC7-A464-4412462206DB} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{EF3F28C8-0330-4D18-B901-D24CB83E5AA1} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{EF5DB804-585B-472E-B415-BC63F8F01BF6} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{F2C368C5-9F44-4D43-89F3-A1CC87F1DA96} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{F99DDD9A-07D0-47AB-86F1-193533DD2C60} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{FD501041-8EBE-11CE-8183-00AA00577DA2} Clé Présente : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager Clé Présente : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1 Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{16976E15-10EA-44FD-804A-6ECBC9EBBFC7} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{2561FD25-FE31-4E56-A120-AF7FEAAE3124} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{4BD0FCFF-AD64-4315-9F2C-960EF3C21623} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{507C73BB-FC69-425E-8A49-9204F886B328} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{6EC57031-1740-4151-93C5-C465D6063DD2} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{76FC1003-0825-48BD-B59B-3B7A5754972C} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{9D217B94-6FC9-44FE-94B1-30C711871266} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{B48AC2CD-9662-47E0-A3C0-3B01BB3F463E} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{BE698E51-830B-447A-954D-901D6E05DDE2} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{BFCF748F-A56E-451F-AA45-0D7EB699E416} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{C292AD0A-C11F-479B-B8DB-743E72D283B0} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{D617CF84-B0BC-441F-9984-B676AFBA1E8D} Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{248B3E95-17A4-482D-A8A8-6B3DF4D05C35} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{27F49273-DE3A-4111-90F9-6C474C37AEFB} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7EB7381C-FB01-47FC-9C42-ED64122C1B92} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{E4EF697F-434B-4DC7-A464-4412462206DB} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F99DDD9A-07D0-47AB-86F1-193533DD2C60} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\allin1convert_8hbar uninstall firefox Clé Présente : HKLM\SOFTWARE\MozillaPlugins\@Allin1Convert_8h.com/Plugin Clé Présente : HKLM\Software\Myfree Codec Clé Présente : HKLM\Software\supWPM Clé Présente : HKLM\Software\sweet-pageSoftware Valeur Présente : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{CD1A63BA-A08C-431B-9A34-F240AADC728D}] Valeur Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{CD1A63BA-A08C-431B-9A34-F240AADC728D}] Valeur Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Allin1Convert Search Scope Monitor] Valeur Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Allin1Convert_8h Browser Plugin Loader] ***** [ Navigateurs ] ***** -\\ Internet Explorer v9.0.8112.16533 -\\ Google Chrome v [ Fichier : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R2].txt - [11073 octets] - [28/02/2014 18:13:01] ########## EOF - C:\AdwCleaner\AdwCleaner[R2].txt - [11134 octets] ########## # AdwCleaner v3.020 - Rapport créé le 28/02/2014 à 19:42:10 # Mis à jour le 27/02/2014 par Xplode # Système d'exploitation : Windows Vista Home Premium Service Pack 2 (32 bits) # Nom d'utilisateur : michel - PC-DE-MICHEL # Exécuté depuis : C:\Users\michel\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IDN65X9H\adwcleaner.exe # Option : Scanner ***** [ Services ] ***** ***** [ Fichiers / Dossiers ] ***** Dossier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl Dossier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje Dossier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbpohikckhbcljgombipcdoinkaedlfa Dossier Présent C:\Program Files\Common Files\337 Dossier Présent C:\Program Files\Desk 365 Dossier Présent C:\Program Files\DomaIQ Uninstaller Dossier Présent C:\Program Files\Iminent Dossier Présent C:\Program Files\iSafe Dossier Présent C:\Program Files\Jump Flip Dossier Présent C:\Program Files\LinkSwift Dossier Présent C:\Program Files\myfree codec Dossier Présent C:\Program Files\MyPC Backup Dossier Présent C:\Program Files\Optimizer Pro Dossier Présent C:\Program Files\PC Health Kit Dossier Présent C:\Program Files\PC Performer Dossier Présent C:\Program Files\Software Dossier Présent C:\Program Files\WinZipper Dossier Présent C:\ProgramData\boost_interprocess Dossier Présent C:\ProgramData\Conduit Dossier Présent C:\ProgramData\IBUpdaterService Dossier Présent C:\ProgramData\IePluginService Dossier Présent C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec Dossier Présent C:\ProgramData\SpeedMaxPc Dossier Présent C:\ProgramData\WPM Dossier Présent C:\Users\michel\AppData\Local\Conduit Dossier Présent C:\Users\michel\AppData\Local\Smartbar Dossier Présent C:\Users\michel\AppData\LocalLow\Conduit Dossier Présent C:\Users\michel\AppData\LocalLow\Delta Dossier Présent C:\Users\michel\AppData\LocalLow\iac Dossier Présent C:\Users\michel\AppData\LocalLow\Mysearchdial Dossier Présent C:\Users\michel\AppData\LocalLow\PriceGong Dossier Présent C:\Users\michel\AppData\Roaming\BabSolution Dossier Présent C:\Users\michel\AppData\Roaming\Desk 365 Dossier Présent C:\Users\michel\AppData\Roaming\DriverCure Dossier Présent C:\Users\michel\AppData\Roaming\iSafe Dossier Présent C:\Users\michel\AppData\Roaming\Optimizer Pro Dossier Présent C:\Users\michel\AppData\Roaming\PerformerSoft Dossier Présent C:\Users\michel\AppData\Roaming\SpeedMaxPc Dossier Présent C:\Users\michel\AppData\Roaming\WinZipper Dossier Présent C:\Users\michel\chat-land Dossier Présent C:\Users\michel\Documents\Optimizer Pro Dossier Présent C:\Users\michel\Documents\PC Speed Maximizer Dossier Présent C:\Users\michel\prncnfgd Fichier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pflphaooapbgpeakohlggbpidpppgdff_0.localstorage Fichier Présent : C:\Users\michel\AppData\Local\mysearchdial-speeddial.crx ***** [ Raccourcis ] ***** ***** [ Registre ] ***** Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\MyFreeCodec Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Wpm Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec Clé Présente : HKCU\Software\Myfree Codec Clé Présente : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector Clé Présente : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector.1 Clé Présente : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{FD501041-8EBE-11CE-8183-00AA00577DA2} Clé Présente : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager Clé Présente : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1 Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{2561FD25-FE31-4E56-A120-AF7FEAAE3124} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{C292AD0A-C11F-479B-B8DB-743E72D283B0} Clé Présente : HKLM\Software\Myfree Codec Clé Présente : HKLM\Software\supWPM Clé Présente : HKLM\Software\sweet-pageSoftware ***** [ Navigateurs ] ***** -\\ Internet Explorer v9.0.8112.16533 -\\ Google Chrome v [ Fichier : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R2].txt - [17217 octets] - [28/02/2014 18:13:01] AdwCleaner[R3].txt - [11276 octets] - [28/02/2014 18:20:34] AdwCleaner[s1].txt - [410 octets] - [28/02/2014 18:25:48] ########## EOF - C:\AdwCleaner\AdwCleaner[R2].txt - [17398 octets] ########## # AdwCleaner v3.020 - Rapport créé le 01/03/2014 à 10:00:51 # Mis à jour le 27/02/2014 par Xplode # Système d'exploitation : Windows Vista Home Premium Service Pack 2 (32 bits) # Nom d'utilisateur : michel - PC-DE-MICHEL # Exécuté depuis : C:\Users\michel\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B1C9TLNS\adwcleaner.exe # Option : Scanner ***** [ Services ] ***** ***** [ Fichiers / Dossiers ] ***** Dossier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl Dossier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbpohikckhbcljgombipcdoinkaedlfa Dossier Présent C:\Program Files\Common Files\337 Dossier Présent C:\Program Files\Iminent Dossier Présent C:\Program Files\myfree codec Dossier Présent C:\Program Files\Software Dossier Présent C:\Program Files\WinZipper Dossier Présent C:\ProgramData\IePluginService Dossier Présent C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec Dossier Présent C:\ProgramData\WPM Dossier Présent C:\Users\michel\AppData\LocalLow\Conduit Dossier Présent C:\Users\michel\AppData\Roaming\WinZipper Dossier Présent C:\Users\michel\chat-land ***** [ Raccourcis ] ***** ***** [ Registre ] ***** Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\MyFreeCodec Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Wpm Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec Clé Présente : HKCU\Software\Myfree Codec Clé Présente : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector Clé Présente : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector.1 Clé Présente : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{FD501041-8EBE-11CE-8183-00AA00577DA2} Clé Présente : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager Clé Présente : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1 Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{2561FD25-FE31-4E56-A120-AF7FEAAE3124} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{C292AD0A-C11F-479B-B8DB-743E72D283B0} Clé Présente : HKLM\Software\Myfree Codec Clé Présente : HKLM\Software\supWPM Clé Présente : HKLM\Software\sweet-pageSoftware ***** [ Navigateurs ] ***** -\\ Internet Explorer v9.0.8112.16533 -\\ Google Chrome v [ Fichier : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R2].txt - [21599 octets] - [28/02/2014 18:13:01] AdwCleaner[R3].txt - [11276 octets] - [28/02/2014 18:20:34] AdwCleaner[s1].txt - [5987 octets] - [28/02/2014 18:25:48] ########## EOF - C:\AdwCleaner\AdwCleaner[R2].txt - [21781 octets] ##########
  12. ok j'ai tout faut mille excuses......... dois- je reprendre depuis le debut ou depuis adwcleaner ? Neanmoins a par celui de ZhpDiag ou je viens de m'apercevoir l'erreur de domiciliation ok grosse erreur de ma part pour ceux pour adwcleaner et du nettoyage de malewarebytes c'est bien un copier /coller sur le site en reponse ? U
  13. je dois reprendre de ce fait toute la procedure depuis adwcleaner ?
  14. J'espère avoir procedé comme tu m'as indiqué ,je m'excuse pour la lenteur de l'envoie des resultats ,car ce n'est pas evident pour un debutant merçi encore pour ta patience et ton aide bonne soirée
  15. -\\ Informations sur les produits Windows ~ Langage: Français Windows Vista Home Premium, 32-bit Service Pack 2 (Build 6002) Windows Server License Manager Script : OK System - Enable Open file C:\Users\michel\AppData\Roaming\ZHP\Licence.txt =>.Nicolas Coolman ---\\ Logiciels de protection du système Kaspersky Anti-Virus v14.0.0.4651 ---\\ Logiciels d'optimisation du système CCleaner v4.10 =>Piriform Ltd ---\\ Logiciels de partage PeerToPeer ---\\ Surveillance de Logiciels Adobe Flash Player 12 Plugin Adobe Reader X ---\\ Informations sur le système ~ Processor: x86 Family 16 Model 6 Stepping 3, AuthenticAMD ~ Operating System: 32 Bits Boot mode: Normal (Normal boot) Total RAM: 3326 MB (48% free) System Restore: Activé (Enable) System drive C: has 523 GB (89%) free of 584 GB ---\\ Mode de connexion au système ~ Computer Name: PC-DE-MICHEL ~ User Name: michel ~ All Users Names: michel, Administrateur, ~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89 Logged in as Administrator ---\\ Variables d'environnement ~ System Unit : C:\ ~ %AppZHP% : C:\Users\michel\AppData\Roaming\ZHP\ ~ %AppData% : C:\Users\michel\AppData\Roaming\ ~ %Desktop% : C:\Users\michel\Desktop\ ~ %Favorites% : C:\Users\michel\Favorites\ ~ %LocalAppData% : C:\Users\michel\AppData\Local\ ~ %StartMenu% : C:\Users\michel\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ Enumération des unités disques C: Hard drive, Flash drive, Thumb drive (Free 523 Go of 584 Go) D: CD-ROM drive (Not Inserted) E: Floppy drive, Flash card reader, USB Key (Not Inserted) F: Floppy drive, Flash card reader, USB Key (Not Inserted) G: Floppy drive, Flash card reader, USB Key (Not Inserted) H: Floppy drive, Flash card reader, USB Key (Not Inserted) I: Hard drive, Flash drive, Thumb drive (Free 896 Go of 932 Go) ---\\ Etat du Centre de Sécurité Windows [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified =>Hijacker.Application ~ Security Center: 50 Legitimates Filtered in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) (.11/04/2009 - 07:27:36.) -- C:\Windows\Explorer.exe [2926592] [MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.21/01/2008 - 03:23:42.) -- C:\Windows\System32\Wininit.exe [96768] [MD5.679EAED8E703235BA81AA2E58F4E2D16] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.05/02/2014 - 09:50:39.) -- C:\Windows\System32\wininet.dll [1129472] [MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/04/2009 - 07:28:13.) -- C:\Windows\System32\Winlogon.exe [314368] [MD5.3911B972B55FEA0478476B2E777B29FA] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.21/04/2011 - 14:58:27.) -- C:\Windows\system32\Drivers\AFD.sys [273408] [MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.11/04/2009 - 07:32:26.) -- C:\Windows\system32\Drivers\atapi.sys [19944] [MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.21/01/2008 - 03:23:51.) -- C:\Windows\system32\Drivers\Cdfs.sys [70144] [MD5.6B4BFFB9BECD728097024276430DB314] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.11/04/2009 - 05:39:17.) -- C:\Windows\system32\Drivers\Cdrom.sys [67072] [MD5.622C41A07CA7E6DD91770F50D532CB6C] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.14/04/2011 - 15:59:03.) -- C:\Windows\system32\Drivers\DfsC.sys [75264] [MD5.062452B7FFD68C8C042A6261FE8DFF4A] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.11/04/2009 - 05:42:42.) -- C:\Windows\system32\Drivers\HDAudBus.sys [561152] [MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Pilote de port i8042.) (.21/01/2008 - 03:23:20.) -- C:\Windows\system32\Drivers\i8042prt.sys [54784] [MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) (.21/01/2008 - 03:24:25.) -- C:\Windows\system32\Drivers\IpNat.sys [100864] [MD5.1E94971C4B446AB2290DEB71D01CF0C2] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.29/04/2011 - 14:24:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [106496] [MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - (.Microsoft Corporation - MBT Transport driver.) (.11/04/2009 - 05:45:37.) -- C:\Windows\system32\Drivers\netBT.sys [185856] [MD5.2C1121F2B87E9A6B12485DF53CD848C7] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.03/03/2013 - 20:07:52.) -- C:\Windows\system32\Drivers\ntfs.sys [1082232] [MD5.0FA9B5055484649D63C303FE404E5F4D] - (.Microsoft Corporation - Pilote de port parallèle.) (.02/11/2006 - 09:51:30.) -- C:\Windows\system32\Drivers\Parport.sys [79360] [MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/01/2008 - 03:24:55.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [76288] [MD5.FBC0BACD9C3D7F6956853F64A66E252D] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.21/01/2008 - 03:23:01.) -- C:\Windows\system32\Drivers\rdpdr.sys [248832] [MD5.7B75299A4D201D6A6533603D6914AB04] - (.Microsoft Corporation - SMB Transport driver.) (.11/04/2009 - 05:45:22.) -- C:\Windows\system32\Drivers\smb.sys [66560] [MD5.76B06EB8A01FC8624D699E7045303E54] - (.Microsoft Corporation - TDI Translation Driver.) (.11/04/2009 - 05:45:56.) -- C:\Windows\system32\Drivers\tdx.sys [72192] [MD5.786DB5771F05EF300390399F626BF30A] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.21/08/2012 - 12:47:42.) -- C:\Windows\system32\Drivers\volsnap.sys [224640] ~ Generic Processes: Scanned in 00mn 01s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 1/288 ~ Mes musiques (My Musics) : 1/91 ~ Mes Videos (My Videos) : 1/3 ~ Mes Favoris (My Favorites) : 1/45 ~ Mes Documents (My Documents) : 1/4979 ~ Mon Bureau (My Desktop) : 1/4 ~ Menu demarrer (Programs) : 1/31 ~ Hidden Files: Scanned in 00mn 04s ---\\ Processus lancés [MD5.C1BDDBC6C73881B9B0579BF43EC6BD3C] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avpui.exe [996544] [PID.3308] [MD5.6038275130AB266400FC8A7A1031F455] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe [6044264] [PID.4044] [MD5.0E34B7BB1FCF22BCC1E394D16F9E992B] - (.Microsoft Corporation - GrooveMonitor Utility.) -- C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040] [PID.4068] [MD5.C861851A0BBD9903E324487011AA3705] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [299008] [PID.1540] [MD5.D28C5A1411BB0B47E05E0D6AAF896690] - (.ATI Technologies Inc. - Catalyst Control Center: Host application.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [299008] [PID.3600] [MD5.492DC8B4FEC81DDBE40CE98D1B013CD3] - (.Adobe Systems Incorporated - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\system32\Macromed\Flash\FlashUtil32_12_0_0_70_ActiveX.exe [841096] [PID.4236] [MD5.48600DAC5AF3A53B6F430528209E4830] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe [757488] [PID.6004] [MD5.42FEDBCB3ED926F6F529E0FDDF750BE0] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8339968] [PID.6092] [MD5.B44B59C85DC2C2D39542F97BF545A308] - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) -- C:\Windows\system32\cscript.exe [135168] [PID.0] [MD5.6080A176D09435FC8E6E800996656E18] - (.Microsoft Corporation - Console IME.) -- C:\Windows\system32\conime.exe [69120] [PID.976] [MD5.F1635C21B484713BCA63182BCD5DC498] - (.AMD - AMD External Events Service Module.) -- C:\Windows\system32\atiesrxx.exe [172032] [PID.1184] [MD5.67A95B9D129ED5399E7965CD09CF30E7] - (.Logitech Inc. - Logitech User mode UMVPF service.) -- C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [450848] [PID.1344] [MD5.862BB4CBC05D80C5B45BE430E5EF872F] - (.Microsoft Corporation - Service de gestion des licences Microsoft.) -- C:\Windows\system32\SLsvc.exe [3408896] [PID.1452] [MD5.99A05C2D7D10F96523752612DAF4B476] - (.AMD - AMD External Events Client Module.) -- C:\Windows\system32\atieclxx.exe [372736] [PID.1632] [MD5.B362181ED3771DC03B4141927C80F801] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [65432] [PID.312] [MD5.9DBB2B2CB2CE4E3DA8A1CDBDEE59B86C] - (.Advanced Micro Devices, Inc. - Service Fusion Utility.) -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [294400] [PID.432] [MD5.0D2F8F4055903A762AD46204E5A42E86] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avp.exe [214512] [PID.272] [MD5.0796C1E47ADB9825269E64B9DAB4E741] - (.Teruten - FsUsbDevice.) -- C:\Windows\system32\FsUsbExService.exe [233472] [PID.504] [MD5.6E5DAC168D1FF9843E84A59D51D31107] - (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe [61440] [PID.748] [MD5.388AE59FE75F1B959DFA0900923C61BB] - (.Skype Technologies S.A. - Skype C2C Service.) -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3064000] [PID.1964] [MD5.F6B95483E4272794688DA06813D7075F] - (.MAGIX AG - Verzeichnisüberwachung und Hilfsaufgaben fü.) -- C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe [1839616] [PID.4480] [MD5.C7FBDD1ED42F82BFA35167A5C9803EA3] - (.Microsoft Corporation - PresentationFontCache.exe.) -- C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [43904] [PID.4764] [MD5.F8D3544ACBCE9110362119F7C10D848E] - (.Microsoft Corporation - wpffontcache_v0400.exe.) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [770168] [PID.5592] [MD5.97D9D6A04E3AD9B6C626B9931DB78DBA] - (.Microsoft Corporation - Programme d’installation de modules Windows.) -- C:\Windows\servicing\TrustedInstaller.exe [39424] [PID.3664] [MD5.506708142BC63DABA64F2D3AD1DCD5BF] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [116648] [PID.4412] [MD5.DB3D19F850C6EB32BDCB9BC0836ACDDB] - (.Microsoft Corporation - Service de cliché instantané de volumes Mic.) -- C:\Windows\system32\vssvc.exe [1055232] [PID.5484] ~ Processes Running: Scanned in 00mn 08s ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Preferences G2 - GCE: Preference [user Data\Default] [ejdfidgapfiokiphmcjpmmjbdndepoja] Re-Markable v.1.150 (Activé) =>PUP.Re-Markable ~ Google Browser: 3 Legitimates Filtered in 00mn 00s ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://feed.snapdo.com =>Hijacker.SmartBar R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.snapdo.com =>Hijacker.SmartBar R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.snapdo.com =>Hijacker.SmartBar R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 0 ~ IE Browser: 16 Legitimates Filtered in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Proxy management: Scanned in 00mn 00s ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ~ Keys: Scanned in 00mn 00s ---\\ Hosts file redirection (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Hosts File: Scanned in 00mn 00s ~ Nombre de lignes (Lines number): 20 ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar\WebBrowser: (no name) - [HKCU]{EBD898F8-FCF6-4694-BC3B-EABC7271EEB1} Clé orpheline ~ Toolbar: Scanned in 00mn 00s ---\\ Autres liens utilisateurs (O4) O4 - GS\Desktop [Public]: ControlCenter.lnk . (.TODO: <公司名稱> - TODO: <檔案說明>.) -- C:\Program Files\MSI\ControlCenter\StartControlCenter.exe O4 - GS\Desktop [Public]: EasyViewer.lnk . (...) -- C:\Program Files\MSI\EasyViewer\EasyViewer.exe O4 - GS\Desktop [Public]: Kaspersky Anti-Virus.lnk . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avpui.exe O4 - GS\Desktop [Public]: LightScribe.lnk . (.LightScribe - LightScribe Launcher Application.) -- C:\Program Files\Common Files\LightScribe\LSLauncher.exe O4 - GS\Desktop [Public]: Pochette Express 2.lnk . (...) -- C:\Program Files\Pochette Express 2\Pochette express 2.exe O4 - GS\Desktop [Public]: Super-Charger.lnk . (.MSI - Super-Charger.) -- C:\Program Files\MSI\Super-Charger\StartSuperCharger.exe O4 - GS\Desktop [Public]: Woonoz Nathan.lnk . (...) -- C:\Program Files\Woonoz\Woonoz_Nathan.exe O4 - GS\QuickLaunch [michel]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - GS\QuickLaunch [michel]: Super-Charger.lnk . (.MSI - Super-Charger.) -- C:\Program Files\MSI\Super-Charger\StartSuperCharger.exe O4 - GS\Program [michel]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - GS\SystemTools [michel]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - GS\Desktop [michel]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ~ Global Startup: 67 Legitimates Filtered in 00mn 00s ---\\ Applications lancées au démarrage du sytème (O4) O4 - HKLM\..\Run: [Windows Defender] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe O4 - HKLM\..\Run: [startCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe =>.Advanced Micro Devices, Inc O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe =>.Realtek Semiconductor Corp O4 - HKLM\..\Run: [GrooveMonitor] . (.Microsoft Corporation - GrooveMonitor Utility.) -- C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe O4 - HKCU\..\Run: [sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\Run: [sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] Clé orpheline O4 - HKUS\S-1-5-20\..\Run: [sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] Clé orpheline O4 - HKUS\S-1-5-21-848490753-2954021177-2371073895-1000\..\Run: [sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation ~ Application: Scanned in 00mn 00s ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9) O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} . (.Microsoft Corporation - Windows Live Messenger Companion core resources.) -- C:\Program Files\Windows Live\Companion\companionres.dll O9 - Extra button: Clavier virtuel - {0C4CC089-D306-440D-9772-464E226F6539} . (...) -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\kbrd.ico O9 - Extra button: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft Office OneNote Internet Explorer Add-in.) -- C:\Program Files\MICROS~2\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} . (...) -- C:\Program Files\Microsoft Office\Office12\REFBARH.ICO O9 - Extra button: Analyse des liens - {CCF151D8-D089-449F-A5A4-D9909053F20F} . (...) -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\logo.ico ~ IE Extra Buttons: Scanned in 00mn 00s ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{940684EE-B804-49BE-86A3-81A665A354FC}: DhcpNameServer = 89.2.0.1 89.2.0.2 O17 - HKLM\System\CS1\Services\Tcpip\..\{940684EE-B804-49BE-86A3-81A665A354FC}: DhcpNameServer = 89.2.0.1 89.2.0.2 O17 - HKLM\System\CS2\Services\Tcpip\..\{940684EE-B804-49BE-86A3-81A665A354FC}: DhcpNameServer = 89.2.0.1 89.2.0.2 O17 - HKLM\System\CS3\Services\Tcpip\..\{940684EE-B804-49BE-86A3-81A665A354FC}: DhcpNameServer = 89.2.0.1 89.2.0.2 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2 ~ Domain: Scanned in 00mn 00s ---\\ Protocole additionnel (O18) O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation ~ Protocole Additionnel: Scanned in 00mn 00s ---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22) O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\System32\browseui.dll ~ STS/SSO: Scanned in 00mn 00s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Desktop General: BackupWallPaper - .(...) - I:\FRANCIS\mes amours 2_modifié-1.jpg O24 - Desktop General: WallPaper - .(...) - I:\FRANCIS\mes amours 2_modifié-1.jpg ~ Desktop Component: 4 Legitimates Filtered in 00mn 00s ---\\ Tâches planifiées en automatique (O39) [MD5.00000000000000000000000000000000] [APT] [updater21810.exe] (...) -- C:\Users\michel\AppData\Local\Updater21810\Updater21810.exe (.not file.) [0] =>PUP.CrossRider [MD5.00000000000000000000000000000000] [APT] [{671B2B47-2270-42B1-9814-ECEE1F0A8F9F}] (...) -- D:\setup.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{7D2100D7-428A-4CC0-84CD-56FDCA28362E}] (...) -- D:\INSTALL.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{B3DB78CB-5FFC-4C31-92DB-E9D203E5388A}] (...) -- C:\Users\michel\Downloads\CommunicatorPlugin_403.exe (.not file.) [0] ~ Scheduled Task: 12 Legitimates Filtered in 00mn 05s ---\\ HKCU & HKLM Software Keys [HKLM\Software\IncrediMail] [HKLM\Software\Produtools_Maps] [HKLM\Software\supWPM] =>PUP.WpManager ~ Key Software: 201 Legitimates Filtered in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 28/02/2014 - 19:29:10 - [0,008] ----D C:\Program Files\Desk 365 =>Hijacker.22Find O43 - CFD: 06/05/2013 - 08:36:29 - [0,001] ----D C:\Program Files\DomaIQ Uninstaller =>Adware.DomaIQ O43 - CFD: 14/07/2013 - 11:51:29 - [61,186] ----D C:\Program Files\GUMB818.tmp O43 - CFD: 14/08/2012 - 18:26:06 - [0,785] ----D C:\Program Files\Iminent =>Adware.IMBooster O43 - CFD: 28/02/2014 - 18:53:54 - [0] ----D C:\Program Files\iSafe =>Trojan.Trojan.Staser O43 - CFD: 16/01/2014 - 23:08:42 - [0] ----D C:\Program Files\Jump Flip =>PUP.JumpFlip O43 - CFD: 28/02/2014 - 18:31:44 - [0,289] ----D C:\Program Files\MyPC Backup =>PUP.MyPCBackup O43 - CFD: 08/08/2013 - 16:49:31 - [0] ----D C:\Program Files\PC Health Kit =>PUP.DealPly O43 - CFD: 05/11/2013 - 14:25:08 - [0] ----D C:\Program Files\PC Performer =>Rogue.PCPerformer O43 - CFD: 04/08/2012 - 21:09:45 - [0] ----D C:\Program Files\Produtools_Maps O43 - CFD: 28/02/2014 - 18:29:28 - [0,003] ----D C:\Program Files\Common Files\337 O43 - CFD: 11/06/2012 - 18:33:17 - [0] ----D C:\ProgramData\boost_interprocess O43 - CFD: 05/11/2013 - 13:46:05 - [0] ----D C:\ProgramData\Conduit O43 - CFD: 28/02/2014 - 19:24:04 - [0,015] ----D C:\ProgramData\DEFA537A25139F960000DEF97487A68C O43 - CFD: 05/11/2013 - 13:45:45 - [0,002] ----D C:\ProgramData\IBUpdaterService =>Adware.InstallBrain O43 - CFD: 28/02/2014 - 19:29:10 - [0] ----D C:\ProgramData\IePluginService =>Trojan.Trojan.SProtector O43 - CFD: 27/12/2013 - 21:43:38 - [0] ----D C:\ProgramData\SpeedMaxPc =>PUP.SpeedMaxPc O43 - CFD: 28/02/2014 - 19:13:34 - [0] ----D C:\ProgramData\WPM =>PUP.WpManager O43 - CFD: 12/02/2014 - 17:00:35 - [1,063] ----D C:\Users\michel\AppData\Roaming\0V1L2Z2Z1T1I1L1T O43 - CFD: 06/05/2013 - 08:12:57 - [0,372] ----D C:\Users\michel\AppData\Roaming\BabSolution =>Hijacker.BabSolution O43 - CFD: 28/02/2014 - 19:18:07 - [1,068] ----D C:\Users\michel\AppData\Roaming\Desk 365 =>Hijacker.22Find O43 - CFD: 28/02/2014 - 18:53:49 - [0,522] ----D C:\Users\michel\AppData\Roaming\iSafe =>Trojan.Trojan.Staser O43 - CFD: 22/01/2013 - 12:38:35 - [0] ----D C:\Users\michel\AppData\Roaming\SpeedMaxPc =>PUP.SpeedMaxPc O43 - CFD: 12/02/2014 - 17:25:52 - [0,709] ----D C:\Users\michel\AppData\Roaming\sweet-page =>PUP.SweetPage O43 - CFD: 14/11/2013 - 14:41:35 - [0] ----D C:\Users\michel\AppData\Local\Conduit O43 - CFD: 15/10/2013 - 18:11:10 - [0] ----D C:\Users\michel\AppData\Local\Smartbar =>Hijacker.SmartBar O43 - CFD: 16/01/2014 - 22:55:48 - [0] ----D C:\Users\michel\AppData\Local\Updater21810 =>PUP.CrossRider O43 - CFD: 15/10/2012 - 10:58:00 - [0,001] ----D C:\Users\michel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\J'imagine le monde ~ 454 Dossiers CLSID vides (CLSID Empty Folders) ~ Program Folder: 660 Legitimates Filtered in 00mn 29s ---\\ Opérations et fonctions au démarrage de Windows Explorer (O46) O46 - SEH:ShellExecuteHooks - Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll ~ ShellExecuteHooks: Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 ~ MWPS: 16 Legitimates Filtered in 00mn 00s ---\\ Liste des pilotes du système (SDL) (O58) O58 - SDL:[MD5.6216FD7FD227DE454238A702B218CEC7] - 28/11/2012 - 14:17:06 ---A- . (.Devguru Co., Ltd - Device Error Recovery SDK(x86).) -- C:\Windows\System32\Drivers\dgderdrv.sys [20032] O58 - SDL:[MD5.23B62471681A124889978F6295B3F4C6] - 21/01/2008 - 03:23:22 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [342584] O58 - SDL:[MD5.BCED60D16156E428F8DF8CF27B0DF150] - 02/11/2006 - 10:50:07 ---A- . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\Drivers\iteatapi.sys [35944] O58 - SDL:[MD5.06FA654504A498C30ADCA8BEC4E87E7E] - 02/11/2006 - 10:50:09 ---A- . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\Drivers\iteraid.sys [35944] O58 - SDL:[MD5.560B0DCE52DFED6623B27C9BAFA6F236] - 23/01/2014 - 04:21:04 ---A- . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ver.3).) -- C:\Windows\System32\Drivers\ssudbus.sys [88576] O58 - SDL:[MD5.585FDB94DB04AC1C56298D1FD1F1389E] - 23/01/2014 - 04:21:04 ---A- . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ver.3).) -- C:\Windows\System32\Drivers\ssudmdm.sys [184192] O58 - SDL:[MD5.9224BB254F591DE4CA8D572A5F0D635C] - 21/01/2008 - 03:23:20 ---A- . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\Drivers\uliahci.sys [238648] O58 - SDL:[MD5.8514D0E5CD0534467C5FC61BE94A569F] - 02/11/2006 - 10:50:35 ---A- . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win2003.) -- C:\Windows\System32\Drivers\ulsata.sys [98408] O58 - SDL:[MD5.38C3C6E62B157A6BC46594FADA45C62B] - 21/01/2008 - 03:23:23 ---A- . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\Drivers\ulsata2.sys [115816] O58 - SDL:[MD5.8AAD333C876590293F72B315E162BCC7] - 02/11/2006 - 08:09:42 ---A- . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 02/11/2006 - 08:09:45 ---A- . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:[MD5.DDEE99DC54EFA20BD5A442CD733C4462] - 05/02/2013 - 09:54:40 ---A- . (...) -- C:\Windows\System32\FsUsbExDisk.Sys [37344] O58 - SDL:[MD5.E6BC0F98FECEF245A0010D350C1A0B9B] - 02/11/2006 - 08:09:41 ---A- . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:[MD5.492090267B9608C62B956CD29BE3AFB7] - 02/11/2006 - 08:09:44 ---A- . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 02/11/2006 - 08:09:44 ---A- . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:[MD5.FFFF296A08DBF2AC0126C62E3778AC0D] - 02/11/2006 - 08:09:29 ---A- . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 02/11/2006 - 08:09:35 ---A- . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 02/11/2006 - 08:09:38 ---A- . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 02/11/2006 - 08:09:40 ---A- . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 02/11/2006 - 08:09:31 ---A- . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:[MD5.2E4112FB7D1B76E11ADFD7487B5D0E95] - 02/11/2006 - 08:09:20 ---A- . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:[MD5.A98EBD4C2DF983665BF2D1AF49949974] - 02/11/2006 - 08:09:23 ---A- . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:[MD5.3F7E6406EDEF197C5CAAB2240EEF6F48] - 02/11/2006 - 08:09:24 ---A- . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:[MD5.3E64D681B776CC57BDC38A46D881F85B] - 02/11/2006 - 08:09:26 ---A- . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:[MD5.D86B6435729231C171432B4E77801BDB] - 02/11/2006 - 08:09:22 ---A- . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ~ Drivers: 16 Legitimates Filtered in 00mn 05s ---\\ Liste des outils de désinfection (LATC) (O63) O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman ~ ADS: Scanned in 00mn 00s ---\\ Associations Shell Spawning (O67) O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Not Key.) ~ FASS Keys: 11 Legitimates Filtered in 00mn 00s ---\\ Menu de démarrage Internet (SMI) (O68) O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ~ Keys: Scanned in 00mn 00s ---\\ Recherche particulière à la racine du système (SPRF) (O84) [MD5.89BA6A001A27AC43026DE4FD240003DD] [sPRF][16/02/2014] (...) -- C:\ProgramData\ntuser.dat [262144] ~ Files: 1 Legitimates Filtered in 00mn 00s ---\\ Recherche d'infection Rogue (SRI) (O86) O43 - CFD: 28/02/2014 - 19:24:04 - [0,015] ----D C:\ProgramData\DEFA537A25139F960000DEF97487A68C ~ Files: Scanned in 00mn 00s ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SS - | Demand 23/02/2014 257928 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe SS - | Demand 07/08/2008 3276800 | (FirebirdServerMAGIXInstance) . (.MAGIX®.) - C:\Program Files\Common Files\MAGIX Services\Database\bin\fbserver.exe SS - | Auto 12/05/2012 116648 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe SS - | Demand 12/05/2012 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe SS - | Demand 16/11/2012 194032 | (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe SS - | Demand 05/12/2006 774144 | (NBService) . (.Nero AG.) - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe SS - | Demand 23/12/2006 262144 | (NMIndexingService) . (.Nero AG.) - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe SS - | Demand 11/11/2008 620544 | (ServiceLayer) . (.Nokia..) - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe SS - | Auto 23/10/2013 172192 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe SR - | Auto 18/12/2013 65432 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe SR - | Auto 10/02/2010 172032 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe SR - | Auto 07/06/2011 294400 | (AMD FUEL Service) . (.Advanced Micro Devices, Inc..) - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe SR - | Auto 12/10/2013 214512 | (avp) . (.Kaspersky Lab ZAO.) - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avp.exe SR - | Auto 14/01/2011 1839616 | (Fabs) . (.MAGIX AG.) - C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe SR - | Auto 05/02/2013 233472 | (FsUsbExService) . (.Teruten.) - C:\Windows\system32\FsUsbExService.exe SR - | Auto 19/10/2006 61440 | (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe SR - | Auto 02/10/2012 3064000 | (Skype C2C Service) . (.Skype Technologies S.A..) - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe SR - | Auto 18/01/2012 450848 | (UMVPFSrv) . (.Logitech Inc..) - C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe SR - | Auto 21/01/2008 21504 | C:\Program Files\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SR - | Auto 21/01/2008 21504 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Services: Scanned in 00mn 05s ---\\ Scan Additionnel (O88) Database Version : 13031 - (23/02/2014) Clés trouvées (Keys found) : 3 Valeurs trouvées (Values found) : 0 Dossiers trouvés (Folders found) : 31 Fichiers trouvés (Files found) : 2 [HKLM\Software\Google\Chrome\Extensions\ejdfidgapfiokiphmcjpmmjbdndepoja] =>PUP.Re-Markable^ [HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110211181110}] =>Adware.VidSaver [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Associations]:bak_Application =>Hijacker.Agent C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejdfidgapfiokiphmcjpmmjbdndepoja =>PUP.Re-Markable^ C:\Program Files\Desk 365 =>Hijacker.22Find^ C:\Program Files\DomaIQ Uninstaller =>Adware.DomaIQ^ C:\Program Files\Iminent =>Adware.IMBooster^ C:\Program Files\iSafe =>Trojan.Trojan.Staser^ C:\Program Files\Jump Flip =>PUP.JumpFlip^ C:\Program Files\MyPC Backup =>PUP.MyPCBackup^ C:\Program Files\PC Health Kit =>PUP.DealPly^ C:\Program Files\PC Performer =>Rogue.PCPerformer^ C:\ProgramData\IBUpdaterService =>Adware.InstallBrain^ C:\ProgramData\IePluginService =>Trojan.Trojan.SProtector^ C:\ProgramData\SpeedMaxPc =>PUP.SpeedMaxPc^ C:\ProgramData\WPM =>PUP.WpManager^ C:\Users\michel\AppData\Roaming\BabSolution =>Hijacker.BabSolution^ C:\Users\michel\AppData\Roaming\Desk 365 =>Hijacker.22Find^ C:\Users\michel\AppData\Roaming\iSafe =>Trojan.Trojan.Staser^ C:\Users\michel\AppData\Roaming\SpeedMaxPc =>PUP.SpeedMaxPc^ C:\Users\michel\AppData\Roaming\sweet-page =>PUP.SweetPage^ C:\Users\michel\AppData\Local\Smartbar =>Hijacker.SmartBar^ C:\Users\michel\AppData\Local\Updater21810 =>PUP.CrossRider^ C:\Program Files\Software =>Adware.Boxore C:\Program Files\Optimizer Pro =>PUP.OptimizerPro C:\Program Files\Common Files\337 =>Hijacker.22find C:\ProgramData\Conduit =>Toolbar.Conduit C:\Users\michel\AppData\Roaming\Optimizer Pro =>PUP.OptimizerPro C:\Users\michel\AppData\Local\Conduit =>Toolbar.Conduit C:\Users\michel\AppData\Local\Software =>Adware.Boxore C:\Users\michel\AppData\LocalLow\Conduit =>Toolbar.Conduit C:\Users\michel\AppData\LocalLow\PriceGong =>Adware.PriceGong C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbpohikckhbcljgombipcdoinkaedlfa =>Spyware.SmartDisplay C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl =>PUP.QuickShare [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified =>Hijacker.Application^ [HKLM\Software\supWPM] =>PUP.WpManager^ ~ Additionnel Scan: 251744 Items scanned in 00mn 20s ---\\ Récapitulatif des détections trouvées sur votre station ~ http://nicolascoolman.webs.com/apps/blog/show/40060228-pup-re-markable =>PUP.Re-Markable ~ http://nicolascoolman.webs.com/apps/blog/show/26990375-hijacker-smartbar =>Hijacker.SmartBar ~ http://nicolascoolman.webs.com/apps/blog/show/27583526-pup-crossrider =>PUP.CrossRider ~ http://nicolascoolman.webs.com/apps/blog/show/38737316-pup-wpmanager =>PUP.WpManager ~ http://nicolascoolman.webs.com/apps/blog/show/26630379-hijacker-22find =>Hijacker.22Find ~ http://nicolascoolman.webs.com/apps/blog/show/30393137-adware-domaiq =>Adware.DomaIQ ~ http://nicolascoolman.webs.com/apps/blog/show/26684723-adware-imbooster =>Adware.IMBooster ~ http://nicolascoolman.webs.com/apps/blog/show/32771797-trojan-staser =>Trojan.Staser ~ http://nicolascoolman.webs.com/apps/blog/show/32174815-pup-mypcbackup =>PUP.MyPCBackup ~ http://nicolascoolman.webs.com/apps/blog/show/28060597-pup-dealply =>PUP.DealPly ~ http://nicolascoolman.webs.com/apps/blog/show/26907365-adware-installbrain =>Adware.InstallBrain ~ http://nicolascoolman.webs.com/apps/blog/show/40789592-trojan-sprotector =>Trojan.SProtector ~ http://nicolascoolman.webs.com/apps/blog/show/28947219-pup-speedmaxpc =>PUP.SpeedMaxPc ~ http://nicolascoolman.webs.com/apps/blog/show/26678994-hijacker-babsolution =>Hijacker.BabSolution ~ http://nicolascoolman.webs.com/apps/blog/show/40584589-pup-sweetpage =>PUP.SweetPage ~ http://nicolascoolman.webs.com/apps/blog/show/27557062-adware-vidsaver =>Adware.VidSaver ~ http://nicolascoolman.webs.com/apps/blog/show/26626977-adware-boxore =>Adware.Boxore ~ http://nicolascoolman.webs.com/apps/blog/show/28204239-pup-optimizerpro =>PUP.OptimizerPro ~ http://nicolascoolman.webs.com/apps/blog/show/29507721-toolbar-conduit =>Toolbar.Conduit ~ http://nicolascoolman.webs.com/apps/blog/show/26666995-adware-pricegong =>Adware.PriceGong ~ http://nicolascoolman.webs.com/apps/blog/show/32662245-spyware-smartdisplay =>Spyware.SmartDisplay ~ http://nicolascoolman.webs.com/apps/blog/show/28577022-pup-quickshare =>PUP.QuickShare ~ MSI: 22 link(s) detected in 00mn 20s ~ 1524 Legitimates filtered by white list End of the scan (492 lines in 02mn 26s)(0)
  16. lwarebytes Anti-Malware (Essai) 1.75.0.1300 www.malwarebytes.org Version de la base de données: v2014.02.28.09 Windows Vista Service Pack 2 x86 NTFS Internet Explorer 9.0.8112.16421 michel :: PC-DE-MICHEL [administrateur] Protection: Activé 28/02/2014 21:50:56 MBAM-log-2014-02-28 (21-59-40).txt Type d'examen: Examen rapide Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM Options d'examen désactivées: P2P Elément(s) analysé(s): 209234 Temps écoulé: 6 minute(s), 37 seconde(s) Processus mémoire détecté(s): 0 (Aucun élément nuisible détecté) Module(s) mémoire détecté(s): 0 (Aucun élément nuisible détecté) Clé(s) du Registre détectée(s): 6 HKCR\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6} (PUP.Optional.DynConIE.A) -> Aucune action effectuée. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} (PUP.Optional.SupTab.A) -> Aucune action effectuée. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} (PUP.Optional.Qone8) -> Aucune action effectuée. HKLM\SOFTWARE\Boxore (Adware.Boxore) -> Aucune action effectuée. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} (PUP.Optional.Qone8) -> Aucune action effectuée. HKLM\Software\awesomehpSoftware (PUP.Optional.Awesomehp.A) -> Aucune action effectuée. Valeur(s) du Registre détectée(s): 1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations|bak_Application (Hijacker.Application) -> Données: http://go.microsoft.com/fwlink/?LinkId=57426&Ext=%s -> Aucune action effectuée. Elément(s) de données du Registre détecté(s): 6 HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Default_Page_URL (PUP.Optional.Awesomehp.A) -> Mauvais: (http://www.awesomehp.com/?type=hp&ts=1393613852&from=adks&uid=WDCXWD6400AAKS-22A7B0_WD-WMASY315093650936) Bon: (http://www.google.com) -> Aucune action effectuée. HKLM\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (PUP.Optional.Awesomehp.A) -> Mauvais: (http://www.awesomehp.com/?type=hp&ts=1393613852&from=adks&uid=WDCXWD6400AAKS-22A7B0_WD-WMASY315093650936) Bon: (http://www.google.com) -> Aucune action effectuée. HKLM\SOFTWARE\Microsoft\Internet Explorer\Main|Default_Search_URL (PUP.Optional.Awesomehp.A) -> Mauvais: (http://www.awesomehp.com/web/?type=ds&ts=1393613852&from=adks&uid=WDCXWD6400AAKS-22A7B0_WD-WMASY315093650936&q={searchTerms}) Bon: (http://www.google.com) -> Aucune action effectuée. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes|DefaultScope (PUP.Optional.Qone8) -> Mauvais: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}) Bon: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}) -> Aucune action effectuée. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations|Application (Hijacker.Application) -> Mauvais: (http://www.helpmeopen.com/?n=app&ext=%s) Bon: (http://shell.windows.com/fileassoc/%04x/xml/redir.asp?Ext=%s) -> Aucune action effectuée. HKLM\Software\Microsoft\Internet Explorer\Main|Default_Page_URL (PUP.Optional.Awesomehp.A) -> Mauvais: (http://www.awesomehp.com/?type=hp&ts=1393613852&from=adks&uid=WDCXWD6400AAKS-22A7B0_WD-WMASY315093650936) Bon: (http://www.google.com) -> Aucune action effectuée. Dossier(s) détecté(s): 8 C:\Windows\System32\config\systemprofile\AppData\Roaming\DealPly (PUP.Optional.DealPly.A) -> Aucune action effectuée. C:\Windows\System32\config\systemprofile\AppData\Roaming\DealPly\UpdateProc (PUP.Optional.DealPly.A) -> Aucune action effectuée. C:\Program Files\Common Files\337\libcef (PUP.Optional.337Technologies.A) -> Aucune action effectuée. C:\Program Files\Common Files\337\libcef\1.1364.1123 (PUP.Optional.337Technologies.A) -> Aucune action effectuée. C:\Program Files\Common Files\337\libcef\1.1364.1123\locales (PUP.Optional.337Technologies.A) -> Aucune action effectuée. C:\ProgramData\IePluginService (PUP.Optional.IePluginService.A) -> Aucune action effectuée. C:\ProgramData\IePluginService\update (PUP.Optional.IePluginService.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Updater21810 (PUP.Optional.CrossRider.A) -> Aucune action effectuée. Fichier(s) détecté(s): 17 C:\Users\michel\AppData\Roaming\SupTab\SupTab.dll (PUP.Optional.SupTab.A) -> Aucune action effectuée. C:\Users\michel\AppData\Roaming\sweet-page\QQBrowserFrame.dll (PUP.Optional.SkyTech.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Temp\BoxoreInstaller.exe (PUP.Optional.WebToolbar) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Temp\adks_awesomehp.exe (PUP.Optional.SkyTech.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Temp\EnhanceTronicSetup_20131220.exe (PUP.Optional.EnhanceTronic.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Temp\fullpackage_temp1393608461\package1.zip (PUP.Optional.SkyTech.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Temp\fullpackage_temp1393613833\package1.zip (PUP.Optional.SkyTech.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Temp\fullpackage_temp1393613833\QQBrowserFrame.dll (PUP.Optional.SkyTech.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Temp\fullpackage_temp1393613833\tmp\desk365.exe (PUP.Optional.Desk365.A) -> Aucune action effectuée. C:\Users\michel\AppData\Local\Temp\fullpackage_temp1393613833\tmp\SupTab.exe (PUP.Optional.SupTab.A) -> Aucune action effectuée. C:\Users\michel\Downloads\RCPSetup_15294.exe (PUP.Optional.RegCleanerPro) -> Aucune action effectuée. C:\Windows\System32\config\systemprofile\AppData\Roaming\DealPly\UpdateProc\config.dat (PUP.Optional.DealPly.A) -> Aucune action effectuée. C:\Windows\System32\config\systemprofile\AppData\Roaming\DealPly\UpdateProc\UpdateTask.exe (PUP.Optional.DealPly.A) -> Aucune action effectuée. C:\Program Files\Common Files\337\libcef\1.1364.1123\icudt.dll (PUP.Optional.337Technologies.A) -> Aucune action effectuée. C:\Program Files\Common Files\337\libcef\1.1364.1123\libcef.dll (PUP.Optional.337Technologies.A) -> Aucune action effectuée. C:\Program Files\Common Files\337\libcef\1.1364.1123\locales\en-US.pak (PUP.Optional.337Technologies.A) -> Aucune action effectuée. C:\ProgramData\IePluginService\update\conf (PUP.Optional.IePluginService.A) -> Aucune action effectuée. (fin)
  17. unkware Removal Tool (JRT) by Thisisu Version: 6.1.2 (02.20.2014:1) OS: Windows Vista Home Premium x86 Ran by michel on 28/02/2014 at 20:51:23,54 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services Successfully stopped: [service] backupstack Successfully deleted: [service] backupstack ~~~ Registry Values Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\optimizer pro Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\optimizer pro Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\dynconie Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\desksvc Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\softwareupdate.coreclass Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\softwareupdate.coreclass.1 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\softwareupdate.ondemandcomclassmachine Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\softwareupdate.ondemandcomclassmachine.1.0 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E58CDA9-3B21-4611-A859-26EE28950E61} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Paths\mypc backup Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\mypc backup Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\optimizer pro_is1 ~~~ Files Successfully deleted: [File] "C:\Windows\System32\Tasks\desk 365 runasstduser" Successfully deleted: [File] C:\Windows\System32\Tasks\Updater21810.exe ~~~ Folders Successfully deleted: [Folder] "C:\Users\michel\AppData\Roaming\desk 365" Successfully deleted: [Folder] "C:\Users\michel\AppData\Roaming\isafe" Successfully deleted: [Folder] "C:\Users\michel\AppData\Roaming\optimizer pro" Successfully deleted: [Folder] "C:\Users\michel\appdata\local\software" Successfully deleted: [Folder] "C:\Program Files\desk 365" Successfully deleted: [Folder] "C:\Program Files\isafe" Successfully deleted: [Folder] "C:\Program Files\mypc backup" Successfully deleted: [Folder] "C:\Program Files\optimizer pro" Successfully deleted: [Folder] "C:\Program Files\software" Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\optimizer pro v3.2" Successfully deleted: [Folder] "C:\Users\michel\AppData\Roaming\microsoft\windows\start menu\programs\mypc backup" Successfully deleted: [Folder] "C:\Users\michel\documents\optimizer pro" Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{00495A3F-CB49-4C3C-899E-AC9B343ECB37} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{00DD80FE-933E-4DB8-A45D-7FF8D03F2837} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{0116013D-C4FC-460B-B16A-019B0BDDE9AE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{011D24B0-CCF4-4CCD-8182-17D825550F53} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{0168A38F-EE39-45DE-9E15-EB6D85FDF770} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{02A639B9-7E89-443C-B1E3-ED9F41E6B1E9} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{0326E227-E608-42AB-905E-EC1CD083DFF1} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{036A0AF9-4F87-4771-83A5-08D4DD354A62} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{039A712D-16D0-4480-BAFF-3AC8BB43B0CE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{03A4B585-89E2-4060-9434-716D951555E8} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{03CF1FB2-503A-4667-9DD1-BEB9126F44DB} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{04A7464A-AE78-4352-95FE-FE54BC8F9B03} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{04CD7092-0B6D-43CB-8CA6-844EF400F34A} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{0808FCBB-D4A0-4D65-A104-4A259EA6B556} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{08C7E0DE-10B6-42A0-AEAF-982093BC174B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{09688FE0-622F-40D1-9446-3531A494B0A7} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{0A13B550-1419-455C-9BB3-6417457F66FC} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{0C1F6754-744B-4E34-B034-08B2EC84FE22} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{0C205F35-479A-4E39-8DEE-AAEE10D76444} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{0C3A083B-EE6D-420E-9680-C19C4C643122} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{0D789AC6-04AF-4495-80B2-AB96F4032D02} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{0D7AB9F7-1810-4458-8A00-2067591C0347} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{0D9A9B9D-D5FA-43B0-AAD6-E3790D5A81CB} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{0DA62269-4705-46BC-98E1-D6BBDA374978} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{0E72F713-CD77-4869-907D-698C391BB64E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{0FD305E5-5E62-41E1-BDE0-BA4C535FEA14} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{10BAA21D-0BB1-448F-8181-6EE4B24D85E1} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{11FE1EF9-6180-4481-A35D-B7071A2E387A} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{12CAD73E-A110-4434-AE6C-E5BD3E5FE66D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{14B8AED5-A652-4369-A3B2-E9B1CC4B4408} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{152F8AE9-8471-4F4E-BAFB-D755016F5BFB} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{155BD531-BBD0-487A-A3C7-1D56B23A4AF0} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{17084878-D16F-4B99-9A17-4774595C64B6} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{1723B5DC-A722-406A-8A90-DA637CA88FD7} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{17CC6C11-152B-4A5F-B1AD-8ABDBB129692} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{182BD5A6-1A6D-47A5-B68D-DA8C340946A2} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{185202EF-6CA4-4134-94F3-B2EDB57548C7} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{18F5E54F-C8C8-4BAC-9BB0-0F7630072636} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{192C1085-A3FA-4192-AD2C-55E5336BC7C4} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{19B30D81-04D3-4E93-BFB3-36FC44649FAD} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{19CA7445-FBA8-465D-8FDC-6F1265DE43C0} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{19DCFD93-8694-4B32-9D9D-8794FD668A5A} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{19EAF9F2-79A2-40E4-804C-C5B5063680D3} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{19F3F84C-D393-43A7-BF82-14BA0C884E6D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{1A150149-227A-42CA-82C6-5905358BCA76} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{1A26A803-B2BF-430E-B962-8F3B39C37BF0} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{1A9F341F-EA3C-4D3C-B94E-617F92A8AD4E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{1ADF6BFA-F2B1-4DBD-AE6B-DF29ADBC9A36} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{1C250539-BA08-46C4-8379-3FC2C4E02F0F} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{1CBC97C1-D636-44BC-867F-B7AD85F9D3E0} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{1CF412A8-4F85-4935-B255-2180785821D2} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{1D930E59-31DD-48EA-A26C-75CD3E0AF2DC} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{1E624B4B-C877-4D69-9CD0-E3F18508360D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{1F37A3CE-0894-4E69-ACFA-5899E561493D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{1FA4EC31-2ECB-449C-B342-427E30EA4F61} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{20F84CA3-35F5-43B5-B0BE-E1D4111F361D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{212A8601-4F2E-4457-9319-07892DE342A5} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{2225D667-CEDF-41C9-911B-06997EC495A5} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{224CF242-7DE2-4F57-A585-F90F9F46CE89} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{22CBDCB3-6CBF-42AD-A909-23E6C7CA7ABA} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{23766D1C-37E1-4E5D-A64A-501B43CF8E9D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{23D1A370-CD35-4487-9901-E6A37AF5F1B6} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{240D3E3C-E533-4D64-AC0B-1FF30A54E07E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{266E114A-9773-4CD9-94F8-F18E8F4FF6BF} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{27E2A12D-7225-4F44-AE62-A95B54BD75AC} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{2A10F812-02E9-4C24-9AE6-2E914E7A88E6} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{2B6E0C3B-FB5E-4A74-950D-AAC7BCF0F1C8} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{2D13CC18-487C-4103-9BE4-C6DE83C47B07} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{2D169812-EE2F-47C6-8E4F-4219497669B4} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{2F0DBE20-B158-473D-A2B2-3CC73871FDE4} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{2F17BB8F-42BF-436C-871A-92328612C7C0} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{2FEF2C19-EEC5-4B21-AB6B-CC1587FDD7AF} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{2FF59FA9-2D01-4DC8-84F8-F058AC3D70CB} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{30443044-A9BD-4CE9-A634-16A23315644B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{305113FE-6362-4A71-9209-79E6D9303F14} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{31329B0F-06D2-40A8-BE01-27BD5DFCDC93} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{314BA15F-4DF0-44E5-8939-8EFECB4B1ECB} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{31D1AD07-C81F-4788-BEC3-26E05DA4DD54} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{31EBB011-68B7-40AB-AE4E-E58602344698} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{3231C252-5D80-4880-80C1-5D8ACC39DEEF} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{343DB4D2-938C-46DD-AF12-416ABE03706E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{348DAC97-A1FE-4899-8CF6-40140BF59D6F} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{34A5176A-BE50-42AF-B066-73875267C389} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{34D1DEE8-AE77-481A-8745-3EA04EA4C38E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{353BDACF-4865-4330-BB86-C2DF1708885F} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{3578FF39-415F-405F-985B-CAF969266F69} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{35E5109C-9B47-4F6F-9279-A321E643AC4F} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{365BA9D8-8F7C-45C7-9148-D49EBE1C6A8E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{367D0EAC-3195-46B3-90C7-4FA5C871B598} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{368939C9-53DD-4D41-B5A8-ECA7EA63D76A} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{3747CCE8-4073-4C95-A516-6AD0B7DF1A99} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{374BE7DB-F18D-49A7-8E4B-4538848E5676} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{38646EFE-677E-43FA-933C-B53EBBDC5ECD} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{387DA98A-C20E-4B76-A43F-3732074A98DE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{388F39CE-CA6E-467B-9599-B82117620E4B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{38A3E0C0-348B-430F-B566-7E26F58178FA} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{392AA6A9-3B11-4A74-82D9-6F3D3A33F7D9} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{39D3BC70-8381-4533-A510-19E07107890B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{3B06970F-83A8-4837-816E-44050460E1A7} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{3C12F5E2-8BFD-40B5-B05B-9908F71443DD} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{3C8C2AC6-5439-47FA-9135-60CF4322AB37} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{3D96F0B0-0EC8-4CF2-AB75-1887C1B96514} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{3E52D0FF-D618-4780-9EBE-E10F5AC3C856} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{3EA26CF2-8A68-46D4-BC8D-0BB72536D356} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{3EA5632E-1C0F-4DCE-8EE6-0D68FECDD995} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{3EB711CE-BFA4-4E0F-9FFA-B15A96CE4C1D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{3FC12378-8C12-4F95-A030-705E772C5ECE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{3FD2368B-76D2-400A-87DB-D41586A15081} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{3FF38F8D-0701-43C9-AF09-1D8CE9A73707} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{401689AF-E66E-4205-B482-6B8E5C948CE3} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{4068B324-A879-41B1-A41B-C2226FDA4D85} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{421C7E9B-8D3A-4A46-A1F6-E39242176CE6} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{423C7FC0-A261-41B7-86F7-593A36421860} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{431AA0C6-A8F9-430F-A239-229104890952} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{445A7E17-0F65-4665-8036-91E727D7C279} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{447CBEF4-E3F7-44BE-8D9A-F46D3CCD99EA} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{44CE608C-882B-444E-8741-D07DFCA46E54} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{4513B660-1EDF-4310-9166-40516564EAE8} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{45EA00EE-DD81-497F-8E33-7D1AEE597F07} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{4764A89F-F3BC-4853-B823-5C0729B45DEC} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{478822BD-CE5A-4E1A-AA8D-91FD70833965} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{48AEDA17-5343-4B85-8674-673ECB5D1703} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{49B0C8BB-895C-4FF6-82E3-1265F7F2D298} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{4A57C941-3816-44C7-8CA2-51D617C6E75A} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{4A7E7E3C-F309-43E4-84AF-EFE5A3D01D1C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{4B3F4EC2-2F69-46A2-B52B-6C97928E80F9} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{4BB0FF9D-4BA6-4BFE-A43E-6606403D491E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{4C90194B-423E-4066-B5B4-9A40E7248F5A} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{4CBAE0C1-FDE7-48B6-A754-EA7CA5EAED8B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{4D22CBE0-EE5F-4852-9FC7-7C92AB95AD23} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{4D82D335-E40A-405D-BDBC-C3867CEB32C0} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{4DFAD537-5A8D-4266-813F-F78785559571} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{4F031A3B-CF7C-4C6A-8A53-65D685C22970} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{4FB25DF7-641F-4770-870B-55F15FD43D7D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{5039B9E7-D3B2-4D48-862A-501714CA59DB} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{51DE4F67-FE42-4FFA-94DA-10E7921DF83B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{52B35E05-8A50-4B97-AAF9-7229742553AA} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{532DB3C4-A9CC-456E-AE23-DAFE96F2ACC3} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{53656BB5-B207-4A40-8886-B91E1002A52E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{54056D15-7099-492F-BEB2-43F76FA52008} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{5464979F-337A-40E8-B174-6E9E1120876B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{547CD285-2499-47FE-BE52-964CA5F129BD} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{54F63D0F-B707-4828-B274-7C31CBA67568} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{54FB745E-06CD-430C-A8A9-695561275CD8} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{55A98212-6832-4767-BD29-8A7E00439056} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{5606CF8C-490B-44A8-8731-769E801B227B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{561A6951-529D-45D0-A097-8E16317799EF} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{58ED02AA-93A8-44EC-AF58-1041C3B12336} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{59C9A832-5D6B-4A26-B50B-ADBDCD2FCEF1} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{5A8B5445-036F-4360-9D82-A10C0AB4940F} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{5BAFE80F-8D8A-46BB-9C68-45043BFE5CFB} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{5BEB9E3D-DD91-40D5-B755-E8957D7E95B2} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{5CE0AACB-057D-4D53-85DD-D8EAC491CBE0} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{5D7D566E-A348-4F7F-AB0E-658B85A427F2} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{609B2B57-F424-43C4-9B41-59BA1ED44A09} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{60A3996F-2C8C-4313-AB7A-1D9A198A218D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{60A81B4E-7A4C-4BB6-A0D5-DFA98985B49B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{6106D6E4-6FB9-488F-B28A-E1121513DB34} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{61789CA4-6EC9-43CA-8FB6-AE2C437391DE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{6217028A-0485-4038-98BE-B4C70A83F351} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{6223716E-30BC-47A5-A5AB-1E62595A9E2B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{628F77AB-4603-4C14-A046-5253EA69466D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{62E8221D-0BE9-46D2-87F7-4210D2FAD8F6} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{63303A98-16CE-41E9-8A4C-623A0F67DEB8} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{6376873E-91C5-42A0-BFFD-9214F0964C8B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{6386C9C0-4F74-403A-BDD0-9FEE43BDE66E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{63F8A81C-F1F6-4511-82EF-21201537A4FF} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{645D91E4-464B-475C-B39C-0899DA079502} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{647C381C-EDBE-42A9-9275-2D049F3C0965} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{656CC722-4FD6-42FA-A457-2269DC27BF6B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{65BB8590-5DC9-444F-BAA8-903A7611F1EE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{6655BAD6-8EC0-4DB4-9014-988D646AFC92} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{6660EC5C-87EC-4020-8721-7678E78C9F3E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{6699705E-3305-4CC0-897D-A611D2623A79} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{67AF1073-3BC0-4205-86CC-EE4900D03BA1} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{67E6BDB4-F87D-4615-AF94-1C27798F9C22} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{690FEDA2-C845-4D17-9793-2996FD1BD5FF} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{696E7ADB-7A4F-4A5F-83A9-0EAAB4AFD131} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{6C4CB8A2-58DB-4B26-B78D-33DF453924A4} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{6C9D5B5A-9BF7-4CFA-9B8E-E0DE96D44A29} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{6DF0F714-72B3-407F-87FB-952016263ABE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{6E4796C8-0001-4C77-9F19-61776BD35E32} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{6F22C18E-21D4-4742-A5EC-6B1671B99921} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{6F470371-4360-4070-979A-D53309BDA33D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{6F7F416A-BBDB-4CC0-AD29-6A5D87DAEF4A} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{700B3A7B-FA08-4983-8DDC-62B3650CEC8E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{7021D8B7-B5A3-4ED4-BE1B-4A378640FC4D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{7058B162-F2C7-4A53-86DF-4AC24AD9B63D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{72044653-C556-4314-9CB6-321D033FC736} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{7244AB8A-AA7D-45A7-A276-167351506BD7} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{724FDE2A-DF6C-4F56-BDCD-DBABD665A54D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{725917CF-71A3-4E63-962B-C26BC1CAB51C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{730CF14B-17F8-4707-9033-E370B77E1DE5} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{736F1BF5-39D9-4AB8-A10F-F5B965C2A20D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{73B38675-8EBC-435C-8133-7CFAD33FA9F8} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{742EC9BA-0155-45AF-967B-D1F5B19F9880} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{746B0C1F-FDE4-44E2-AB98-B960607B690C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{74EEF6DD-95EB-4089-890F-A885F2DF789D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{74F31009-1BC7-4E9D-BAD3-140F5F054CEE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{7644D45C-6809-4BDC-B93D-0232FD1B984F} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{765F0303-555B-4166-8584-19A11A8C6122} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{774C9765-0E55-4B02-B120-00E425AB263E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{7825DF14-7248-44B1-ABBC-7A01E5252014} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{79244E70-2097-4429-A6C7-77D04495084D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{79F1A4E6-24D0-44F7-BD21-1F76F7FAB925} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{7A2817C4-C4B7-4408-BFE3-7D0396DB8237} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{7A2B6716-C38D-4908-BDBD-A60AA06E95C5} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{7A6145E4-5D76-45FC-9CE2-3013CF5E73B2} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{7A98B811-A469-4C57-A36F-117949434CB3} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{7A9BB8A7-8D8E-45B7-B506-FAF7A6711DC7} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{7BAFDB4F-04E7-4ABA-8EDA-CC6F60E32FD3} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{7C32F24D-35C3-4991-BD58-E1170A393C00} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{7C509205-38F9-4EE1-86C5-9109465DB86C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{7D27D6D2-E101-4200-9E25-722886356B48} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{7DD5A01F-91BD-479D-B4BC-EEE483211BBF} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{7DEF47E8-3CE1-43F0-BA15-E8AE35FFF975} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{7EEC6561-D728-4E95-927D-C314ED66A2AB} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{80747EE5-CA6C-43B7-875F-96F4ED54955D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{807E6B19-061B-46C7-9E34-55B18D007554} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{80CEAE92-C2D0-48E0-8A40-40E480354DA9} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{81228756-7924-420C-AC23-BFBC03B10BD2} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{81C1016C-1FBA-4E9B-AE25-4C840E5F8298} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{81F3D11E-DAFB-4892-A50B-DF2F4BDCBA1D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{8261A52E-B5D5-464E-9D44-B8CCE0349EFE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{82A043BA-3983-44FC-A6E6-FEB31D7D5102} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{82AEC695-5396-493B-A339-73EAB83FCB50} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{82F84536-B15F-42A2-9FC9-7F7146E59AC3} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{832528FA-8D38-481E-892E-C5F34778657C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{83617793-D181-43C1-9E91-A06E52B69815} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{85461E86-015C-4B93-828E-692472A1E42E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{85587B42-0137-4089-B87E-C98A7C881F14} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{859748D7-7D19-49AE-835C-EDEA75CA2795} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{860E97A6-BFFC-45BA-BE4C-FDA29B921114} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{865F1102-8642-4093-AC6E-DBB4249EBA87} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{865F6604-962A-42DD-B99D-EE9DFFE67BAB} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{867E2D8F-86E3-496F-8371-FF88A44E1DD2} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{86A376D9-37C3-4211-BC7C-2F6D04C5CB5D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{86B1F21B-EC51-49BF-928F-A0C41F392098} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{872C33FC-29B7-4785-80A2-43EB3EBD4E82} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{876F7A61-14F5-49E7-A6A6-8AA517AF9AEA} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{87742CFA-7235-469F-882D-53B3632059AE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{877D224F-27DF-474A-8646-1D1F691A87B1} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{87A9E500-1440-4033-9D9D-F4CD0E5CE1D9} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{87AE2339-C534-4604-91BA-92F5804DB9CE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{87B9563F-2238-49C7-B425-B63ED84999FB} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{888054B9-5383-426C-91F2-F4D5F2E9ACCD} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{888B7755-7E0B-4CD3-AFB2-FCF18C1F3BD7} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{8977FF4C-4F5A-4E18-B908-FC9B720F0863} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{8A57B007-8EE7-4B63-861D-E6A32649412C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{8ABB749E-8AB8-429D-BA46-8030108728F0} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{8BCDB62A-F878-44C0-B403-D7A738914062} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{8C0036BC-4483-40AE-BC6A-CAAA98E0CEDA} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{8C4AC3E9-5434-4391-ABAF-A72F493ABA7F} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{8C756677-6B19-4808-94B2-74B07F2E6195} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{8C96961D-BAD3-46EB-B2D8-77A232473B17} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{8CAB48A0-3723-4909-A971-7FE32573A57B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{8D169348-64C4-44FA-A73F-BA1E9D3E8C06} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{8D70258D-2690-46B5-ACED-FF82A02D8277} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{8D885A11-7BE3-4293-938F-D28A3CF7A048} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{8E55F9D3-D917-4406-AABC-D0B5CEE270C9} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{8EAE2986-556F-4617-8063-0E987DF9DB36} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{8F79AADE-382B-4B04-B8D7-39E16CB40CA1} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{8F872D67-BD3D-4A93-B022-5C408003864B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{8FAD6D3F-FFFF-44AA-AB4B-2F2770D1E330} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{901E265C-0754-46E5-B089-2C7EF9F2DBE2} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{925FAF96-E36E-4DA1-A9F0-2C0A883C7D0E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{92A703E9-C10E-4451-B0D6-BD4A5394726C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{93C9862C-3B14-4C33-8E97-2A36AFC4F6AA} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{93D7835C-0562-401C-92B2-C76172F27C09} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{9410546F-DF84-4C41-92E1-B543CEE345E5} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{942AE926-B844-4D7D-9B47-56BB46F9D522} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{946C2181-5F4D-47AD-B22C-0E5FCC6F88FA} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{94FC31E2-F347-4EB8-AA30-0E8C2FF60E98} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{969D6EDE-48EA-414F-A266-127B5DF07B80} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{96C1C605-F8ED-4FB2-B2D2-9E97E8BFB7BF} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{9720D52B-1F91-4AEA-84B1-9E991E03F423} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{980F220E-94C9-47EA-942F-0169589C6B3A} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{98D6091D-7C53-4BE4-80F0-6F6276A6AD84} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{9A139D31-03DF-4A74-9056-CC05BB494342} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{9A39BFE6-DBF6-4EE5-A15A-DB5C18BC08CE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{9B774A6E-475F-4976-A986-CB2132117801} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{9B930103-D98D-4691-962B-D1D74DED246B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{9D3CF3FF-AC1D-48EA-9DB8-60027710471D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{9D442681-74ED-47AC-9922-CC79AD112F92} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{9E7E4445-E36C-4A79-8E76-17691F3A813F} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{9EA4A150-353E-4A91-967F-1A8ACF593C12} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{9EC1A5B5-EF07-4B11-B2C3-B188F2582125} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{9F345887-F352-4263-B81D-50590E41FCBE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{A09365E1-4380-459F-98BA-E959140A41B7} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{A2725A46-6F4F-4DAD-B324-4790926E1997} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{A2B6A345-44EC-4FD8-9FF2-3D45EE47421C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{A32CDDF1-5F60-482A-A543-F4EEA6A86FC2} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{A464BF04-9438-4FFB-8CD2-F85A240E1045} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{A5A8D0A8-3264-4BAF-B803-AEB5FEDDE7EC} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{A6402B50-980C-475F-B8D1-B664BB71A698} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{A6917F8A-4EA1-4330-ADB0-BD1744C5A6F3} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{A6B724C7-F534-446B-BE4D-D5E7DA00E459} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{A6FBEC00-28E5-4A96-B1FC-9019C9BF3F6A} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{A75CF9FE-E720-45B9-B212-792AE8557B9C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{A832B29E-CA6C-4577-AB2A-C71989EA9628} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{A84206B4-F214-4038-B325-8198EAC6005D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{A8A415A3-B2D2-46AE-BBA4-44C0F33FECC9} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{A93151EA-5877-4B5C-91BA-07D0D961DBA2} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{A9B387D6-2F32-413A-883D-19EE6A2B88EE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{AA495FFF-C0C2-4473-805A-3BCA6C995CDE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{ABAB316D-5FC4-4117-83F2-6D3F7805FEAB} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{ABEB3DDC-02C4-441B-94A9-8057AA04B120} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{ACA33068-183F-4336-8CBE-6DFCE077D2FF} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{ACBFF295-0D4F-4219-A28E-50C880AA27EF} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{ADB2D571-D9E2-4E2E-8659-4E0AC10DE426} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{ADFB6E57-A980-43DE-AA9A-A95E5EB9333F} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{AEB0C1E8-E937-4CB9-A4AF-A75E7FEE20EE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{AF1FFBF0-C45B-4C4E-AA4B-E4BF2B60FC61} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{AF5670A3-CADD-408E-A951-BA9115B6D63C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{AFA46A0B-0B04-4A5C-9EFB-997ABCE7C393} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{B06FFBFF-21AA-4661-86E1-9A9CD1827297} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{B1AF70EC-1528-4D3A-BA97-045749A42F0D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{B1DB9B3D-E95F-4CB9-A286-A083B05DA87C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{B23E6028-0913-4B58-8026-DF0DFBF6F13B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{B3265430-E746-463F-A71E-E1905108EFAA} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{B3D67260-EAE2-4C8D-9F92-BEC48E323C6E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{B4663276-2D84-4876-87FB-94C9F8B77DCA} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{B5A2E6F6-4538-40C5-A45B-29116C118E56} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{B5E50905-B315-4962-BB8D-064D9570992F} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{B634B01F-DC4D-476F-98C2-91BD91EF4FFD} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{B6C2CE75-120C-4992-AF69-A7700BEA4BC2} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{B8165A51-18F7-40F9-A933-AA6DA800C161} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{B841E121-D43B-464F-9320-9E5F32FF2A1D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{B90ED776-96D4-4C8B-849A-5075FD076A03} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{B930555B-E4A4-48C8-A07F-A2AA3F14238C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{B9E589B9-5783-4FDD-8567-B10BEE2CE534} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{BA0E5CC7-215C-47E7-85FD-707366DCBF30} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{BA4D2F72-9286-46A8-AF3E-6933A73836D8} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{BA6B33F8-03A4-4B3F-B59F-8C92DC4BE251} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{BAA0D6D7-708A-410E-8C3A-6220713784EC} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{BAE84ED1-FC3E-42BA-9F60-458B08323218} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{BB047741-0066-4E2A-B876-07F6108EEAC5} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{BB504103-F31C-4F96-B01B-0CB8B6C42378} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{BD2E7B7E-7BD1-43F6-9F13-BA3E0A1381B1} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{BF4C2DC0-58A4-4E03-BC40-31466E65E0F1} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{BFDC5F56-1F72-40F7-AE2D-EAAD356B2229} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{BFDDAB47-325F-4654-8C77-655356AECD7B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{BFEC5170-B55A-4D60-A064-8C902F1851D6} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{BFF33AE1-C730-41CC-82B1-AD709216E2EF} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{C053D85B-A871-4593-A01E-DB58CC87398F} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{C0753404-A8EC-42C1-9AE8-5A8E9D10663D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{C0A7EBF0-3A65-40C2-B340-5F123230EA85} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{C0BC0F9B-97F3-4C07-822C-A0E80CD3B848} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{C1C2F735-7850-4C48-8395-471AE42C5CC9} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{C279D6D3-D7EF-4AF4-B30D-BE54C49824D0} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{C3561198-A30C-4928-B68A-720694604F95} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{C3A2B994-6AF7-4781-A9A8-39094C38C6BE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{C4A52E63-4601-47F2-8669-07B17ED1D14C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{C5A7824F-1E38-4A28-AE66-C33B107E5D63} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{C68784D0-C5C6-4EFC-BB34-72E7516E4EB0} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{C6E86827-BB3B-4613-9B24-6D6CD1A19D1B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{C7411346-C6D7-46FF-831A-61ED57DA6E3F} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{C7BC70B7-40AD-46C7-A02A-A1D8B2E57AF1} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{C88925A1-B6DE-4156-8FAE-74F33A01D3A0} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{CB0C91B1-FB68-44DD-8009-CA8EED5A2E96} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{CBA86811-1996-4199-BD34-622955035BE2} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{CC3C58E7-CAB0-45FC-B57B-29A3D6356523} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{CCA25AB6-052D-4ED7-8539-B9FF2094BB96} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{CCB4D67F-E645-4982-82F8-AC62ED3E553B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{CCF47ACA-88CC-4853-88B2-3AACFF3F3019} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{CD301E05-6F42-4B62-B35A-38B35678E39B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{CD33A1D7-61A6-4DEB-A09F-7ACBCE27BB43} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{CD5453AB-7BB7-4531-913D-7C0F58324985} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{CD6526E2-DD40-44CE-836D-CDC317FD9A6B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{CDAE6A20-C7F8-4E4C-AA00-55EBBFFD2210} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{CED30DAB-4C2D-44A0-B3C4-67D853D0F511} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{CF4952FD-2448-4BBC-A858-007BFC9F4C65} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{CF53B95F-CF53-4312-B36A-D6A51858B0C7} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D0537A9B-597B-4C4E-9DD3-74ABAA863773} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D05BDFB5-E7FA-4AD0-A5DC-C8F19C477ED1} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D0608668-CA81-4609-92F0-E6F59355CC9D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D0988D2E-405A-45C0-B847-01661836F37D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D0D9F109-F860-4035-B3B9-4E523F8BE1E9} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D222A560-5B4E-4C41-AAED-594670F9CC85} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D23B1786-9A29-4849-B7D2-41608700FF5C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D29AB18E-EB4B-44AD-BA9F-7B5F8B9C3A6C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D31472CA-AA42-40D4-9A0F-32576B5F24C1} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D4230281-CFB5-40EF-B018-88C9973A4375} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D5A52C86-473C-46D4-81AA-53D80BDBC53E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D5C41EFA-6395-43ED-983E-0F24A060908F} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D5F2189D-176D-41DD-B036-4D8B66292A32} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D714737A-BC52-480A-B864-2B03C2811884} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D823A883-EDE1-4B2B-B80D-108877D0F9D3} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D935575A-48DD-4E26-BC15-769EFD757AD4} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D946CFC0-481A-400B-9B28-D7DAAA14DC80} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D97D167A-365B-412B-B062-98618D45E284} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{D9D38A03-9138-41B1-8414-CA63AAEBEFD1} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{DB4AD433-169E-47D0-8BDF-ADDCCA1AC99B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{DB5C068A-DADC-4243-8A76-1AAA68E01920} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{DB601974-8578-4A9B-9500-587FEFABA687} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{DC635F6F-A8B6-46A3-B728-F7CF65DDAF4F} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{DC703892-3596-47F7-918E-AA7B89300DA0} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{DE70274C-EBE7-4D5B-9EDB-53674088E5B9} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{DF1BE298-BF52-4808-8EFD-E1CD6DB23E5F} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{DF97E6F5-C606-447F-A644-098C5F4811AB} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E03BA548-CE7F-4A33-992C-B36FB7809518} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E0556BF0-8C6E-4517-98C7-28BA836FEF54} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E086F7AF-95BA-4DE6-AC60-FEFD48CD4B90} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E20F6FAE-3E99-4073-B230-4FCB2526A06A} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E2DCB0AF-908E-4AFC-AFC8-B9510B90F8DE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E316DB8C-DC8D-4084-9651-B21B0BF0EF79} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E3218AA8-EF90-42A6-9D80-D9F6D4C65876} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E326175F-5B43-4F52-8C06-2A9DE7E2BC15} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E3C440F2-7777-40D9-ACF0-BCA6ED0FB57F} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E48FDEE6-2ECA-4EE8-8D0F-87DF78EDDA16} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E4F0B91A-172E-4BC8-A218-BD616D79D3B9} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E53BDD31-9FD4-4494-A5F4-EAC08FFB90A3} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E545F132-F829-421A-986C-C0CC7488BB6E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E5FE7334-B6AA-4123-B372-011F91C24667} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E65E972C-3CAB-4D65-9D11-305BFEC0614B} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E6B36795-7E4D-4709-AF4C-E03E33836F96} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E7B4A0BA-D40B-44FE-827A-BC6B646B8CD2} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E7C10ADF-F557-4EB1-82E6-3ACF75B8B8ED} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E90270F8-D45B-4A93-A987-C60FA276B97C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E95D9A2E-E6AF-46A8-886B-D1076FD63FA2} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E97C3B43-9F73-4080-BD35-3EA3DF4F7450} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{E9A028AB-B569-4B30-BDB1-201A6BE6A059} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{EAA7E542-C01D-4E71-8F03-0AEF4A4F4E09} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{EB036096-0059-4063-8A6F-D983CB2282D9} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{EB29F8DB-7356-43DB-A496-BC233639EF47} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{EBD985B6-27ED-4E07-BC3C-ED06D31AAF55} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{EC6D1431-0DB8-48D3-89D7-DE15D89BB1C5} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{ECB0542F-3DA5-45BD-ADDA-159F9A18D57C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{ECB0A548-B674-4E42-AAC5-C4D5BDAB1D38} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{ED42C004-EF0E-4B4F-93B3-EA234A855E07} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{ED722343-36D2-43FD-992F-27EBE491B43E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{EDFD7198-4796-428A-A0DA-180A5E2AC365} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{EE8A4447-5665-494D-AB22-C80C6C7B22C2} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{EEA38A9A-F354-4B7F-ACC8-C06479A8D1A7} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{EF30FC60-FFC5-4C4C-B5CF-6ADC5B698649} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{EFA430D5-D350-4974-B907-56F6B23CF741} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{EFB81836-A34C-4263-9C4E-81616F73173D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{EFFE7ED9-E917-4624-90F9-74B9EE117E6C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{F0364275-D39F-4FF9-A33A-41795F65CD87} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{F0818FAC-E9B1-4E30-B16B-B5C3DF6D3334} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{F1447A67-49FF-4314-BCA9-AB9EAD68BCE4} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{F1E266C1-1C89-4901-9AED-2E0AE35FDA32} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{F202E192-B79B-40B9-BD42-915E15D9D6B0} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{F20A7E27-0E76-4F6C-AC41-8F67F4A55E1C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{F2446E84-10CE-47EE-859A-C525DF7E7896} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{F28DA8D3-B0EB-4102-8C8A-427876C7DC0C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{F663B737-61EC-4C22-9A9C-884257D5CF48} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{F714415D-12B4-4E54-B777-D9090CD43AD6} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{F71DB176-4B19-4D79-8A22-5FBDEE45F1C6} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{F91F7916-568B-4260-8D27-BA4EE7B2CD4A} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{F92FAEBB-5D95-47A4-BDB2-2F501CA8B222} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{FAC63436-FF0B-4A6B-A41A-22196539923D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{FAEBC217-43F3-4C4B-918D-C6A32BD0FC53} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{FB1819D8-F8C8-4214-80B1-6BF94E70B113} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{FB376C5C-3DDE-46BB-8F29-A8CB1306F581} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{FC96740C-AB46-4773-9000-2B9A83BBF808} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{FDAC6E61-890B-435C-883B-9EF8EC9EA85D} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{FEA7B4E9-FC5C-4534-9801-DD7142ACE091} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{FF0F8B03-05DF-42F2-A902-211C37820A8C} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{FF5C0342-9E0D-4F4C-AD3A-1BE6303996FE} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{FF7D2303-2BDC-4213-9097-FC9EBEC4F38E} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{FF90D958-FF76-4E52-9727-A643D57AAA80} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{FF9175DE-2A41-4B64-8B64-991B91347531} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{FFA55C8A-92F2-4140-A84E-B27726335B80} Successfully deleted: [Empty Folder] C:\Users\michel\appdata\local\{FFAB034A-B893-48CE-86F4-8F5A0A17FD20} ~~~ Chrome Successfully deleted: [Folder] C:\Users\michel\appdata\local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl Successfully deleted: [Folder] C:\Users\michel\appdata\local\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje ~~~ Event Viewer Logs were cleared
  18. http://cjoint.com/?DBCtVUvbcRd dwCleaner v3.020 - Rapport créé le 28/02/2014 à 18:13:01 # Mis à jour le 27/02/2014 par Xplode # Système d'exploitation : Windows Vista Home Premium Service Pack 2 (32 bits) # Nom d'utilisateur : michel - PC-DE-MICHEL # Exécuté depuis : C:\Users\michel\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FK4PZ89V\adwcleaner.exe # Option : Scanner ***** [ Services ] ***** Service Présent : Allin1Convert_8hService ***** [ Fichiers / Dossiers ] ***** Dossier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl Dossier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje Dossier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbpohikckhbcljgombipcdoinkaedlfa Dossier Présent C:\Program Files\Allin1Convert_8h Dossier Présent C:\Program Files\DomaIQ Uninstaller Dossier Présent C:\Program Files\Iminent Dossier Présent C:\Program Files\Jump Flip Dossier Présent C:\Program Files\LinkSwift Dossier Présent C:\Program Files\myfree codec Dossier Présent C:\Program Files\PC Health Kit Dossier Présent C:\Program Files\PC Performer Dossier Présent C:\Program Files\Software Dossier Présent C:\ProgramData\boost_interprocess Dossier Présent C:\ProgramData\Conduit Dossier Présent C:\ProgramData\IBUpdaterService Dossier Présent C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec Dossier Présent C:\ProgramData\SpeedMaxPc Dossier Présent C:\ProgramData\WPM Dossier Présent C:\Users\michel\AppData\Local\Allin1Convert_8h Dossier Présent C:\Users\michel\AppData\Local\Conduit Dossier Présent C:\Users\michel\AppData\Local\Smartbar Dossier Présent C:\Users\michel\AppData\LocalLow\Allin1Convert_8h Dossier Présent C:\Users\michel\AppData\LocalLow\Conduit Dossier Présent C:\Users\michel\AppData\LocalLow\Delta Dossier Présent C:\Users\michel\AppData\LocalLow\iac Dossier Présent C:\Users\michel\AppData\LocalLow\Mysearchdial Dossier Présent C:\Users\michel\AppData\LocalLow\PriceGong Dossier Présent C:\Users\michel\AppData\Roaming\BabSolution Dossier Présent C:\Users\michel\AppData\Roaming\DriverCure Dossier Présent C:\Users\michel\AppData\Roaming\PerformerSoft Dossier Présent C:\Users\michel\AppData\Roaming\SpeedMaxPc Dossier Présent C:\Users\michel\chat-land Dossier Présent C:\Users\michel\Documents\PC Speed Maximizer Dossier Présent C:\Users\michel\prncnfgd Fichier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pflphaooapbgpeakohlggbpidpppgdff_0.localstorage Fichier Présent : C:\Users\michel\AppData\Local\mysearchdial-speeddial.crx ***** [ Raccourcis ] ***** ***** [ Registre ] ***** Clé Présente : HKCU\Software\AppDataLow\Software\allin1convert_8h Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\MyFreeCodec Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Wpm Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CD1A63BA-A08C-431B-9A34-F240AADC728D} Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A} Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CD1A63BA-A08C-431B-9A34-F240AADC728D} Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec Clé Présente : HKCU\Software\Myfree Codec Clé Présente : HKLM\Software\allin1convert_8h Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.feedmanager Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.feedmanager.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.htmlmenu Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.htmlmenu.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.htmlpanel Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.htmlpanel.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.multiplebutton Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.multiplebutton.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.pseudotransparentplugin Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.pseudotransparentplugin.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.radio Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.radio.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.radiosettings Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.radiosettings.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.scriptbutton Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.scriptbutton.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.settingsplugin Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.settingsplugin.1 Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.thirdpartyinstaller Clé Présente : HKLM\SOFTWARE\Classes\allin1convert_8h.thirdpartyinstaller.1 Clé Présente : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector Clé Présente : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector.1 Clé Présente : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{248B3E95-17A4-482D-A8A8-6B3DF4D05C35} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{27F49273-DE3A-4111-90F9-6C474C37AEFB} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{39D4F1A1-A94D-4B7D-BF1D-7446308800ED} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{443321F7-E46C-42F8-812B-F35E98CBB44F} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{5CDE4714-32DC-473C-8194-0645E62C2E96} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{7EB7381C-FB01-47FC-9C42-ED64122C1B92} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{889F49D2-6CEA-40BE-BE5F-7217485F9745} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{8F83D657-5993-4FFA-9AEE-DA0B20D828A7} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{C8EF8F70-3807-424A-83F7-DA06FD4DACF9} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{CD1A63BA-A08C-431B-9A34-F240AADC728D} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{DE0F6787-9D1C-42B7-A0B9-EAC630F87902} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{E4EF697F-434B-4DC7-A464-4412462206DB} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{EF3F28C8-0330-4D18-B901-D24CB83E5AA1} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{EF5DB804-585B-472E-B415-BC63F8F01BF6} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{F2C368C5-9F44-4D43-89F3-A1CC87F1DA96} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{F99DDD9A-07D0-47AB-86F1-193533DD2C60} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{FD501041-8EBE-11CE-8183-00AA00577DA2} Clé Présente : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager Clé Présente : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1 Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{16976E15-10EA-44FD-804A-6ECBC9EBBFC7} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{2561FD25-FE31-4E56-A120-AF7FEAAE3124} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{4BD0FCFF-AD64-4315-9F2C-960EF3C21623} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{507C73BB-FC69-425E-8A49-9204F886B328} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{6EC57031-1740-4151-93C5-C465D6063DD2} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{76FC1003-0825-48BD-B59B-3B7A5754972C} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{9D217B94-6FC9-44FE-94B1-30C711871266} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{B48AC2CD-9662-47E0-A3C0-3B01BB3F463E} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{BE698E51-830B-447A-954D-901D6E05DDE2} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{BFCF748F-A56E-451F-AA45-0D7EB699E416} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{C292AD0A-C11F-479B-B8DB-743E72D283B0} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{D617CF84-B0BC-441F-9984-B676AFBA1E8D} Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{248B3E95-17A4-482D-A8A8-6B3DF4D05C35} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{27F49273-DE3A-4111-90F9-6C474C37AEFB} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7EB7381C-FB01-47FC-9C42-ED64122C1B92} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{E4EF697F-434B-4DC7-A464-4412462206DB} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F99DDD9A-07D0-47AB-86F1-193533DD2C60} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\allin1convert_8hbar uninstall firefox Clé Présente : HKLM\SOFTWARE\MozillaPlugins\@Allin1Convert_8h.com/Plugin Clé Présente : HKLM\Software\Myfree Codec Clé Présente : HKLM\Software\supWPM Clé Présente : HKLM\Software\sweet-pageSoftware Valeur Présente : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{CD1A63BA-A08C-431B-9A34-F240AADC728D}] Valeur Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{CD1A63BA-A08C-431B-9A34-F240AADC728D}] Valeur Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Allin1Convert Search Scope Monitor] Valeur Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Allin1Convert_8h Browser Plugin Loader] ***** [ Navigateurs ] ***** -\\ Internet Explorer v9.0.8112.16533 -\\ Google Chrome v [ Fichier : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R2].txt - [11073 octets] - [28/02/2014 18:13:01] ########## EOF - C:\AdwCleaner\AdwCleaner[R2].txt - [11134 octets] ########## # AdwCleaner v3.020 - Rapport créé le 28/02/2014 à 19:42:10 # Mis à jour le 27/02/2014 par Xplode # Système d'exploitation : Windows Vista Home Premium Service Pack 2 (32 bits) # Nom d'utilisateur : michel - PC-DE-MICHEL # Exécuté depuis : C:\Users\michel\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IDN65X9H\adwcleaner.exe # Option : Scanner ***** [ Services ] ***** ***** [ Fichiers / Dossiers ] ***** Dossier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl Dossier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje Dossier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbpohikckhbcljgombipcdoinkaedlfa Dossier Présent C:\Program Files\Common Files\337 Dossier Présent C:\Program Files\Desk 365 Dossier Présent C:\Program Files\DomaIQ Uninstaller Dossier Présent C:\Program Files\Iminent Dossier Présent C:\Program Files\iSafe Dossier Présent C:\Program Files\Jump Flip Dossier Présent C:\Program Files\LinkSwift Dossier Présent C:\Program Files\myfree codec Dossier Présent C:\Program Files\MyPC Backup Dossier Présent C:\Program Files\Optimizer Pro Dossier Présent C:\Program Files\PC Health Kit Dossier Présent C:\Program Files\PC Performer Dossier Présent C:\Program Files\Software Dossier Présent C:\Program Files\WinZipper Dossier Présent C:\ProgramData\boost_interprocess Dossier Présent C:\ProgramData\Conduit Dossier Présent C:\ProgramData\IBUpdaterService Dossier Présent C:\ProgramData\IePluginService Dossier Présent C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec Dossier Présent C:\ProgramData\SpeedMaxPc Dossier Présent C:\ProgramData\WPM Dossier Présent C:\Users\michel\AppData\Local\Conduit Dossier Présent C:\Users\michel\AppData\Local\Smartbar Dossier Présent C:\Users\michel\AppData\LocalLow\Conduit Dossier Présent C:\Users\michel\AppData\LocalLow\Delta Dossier Présent C:\Users\michel\AppData\LocalLow\iac Dossier Présent C:\Users\michel\AppData\LocalLow\Mysearchdial Dossier Présent C:\Users\michel\AppData\LocalLow\PriceGong Dossier Présent C:\Users\michel\AppData\Roaming\BabSolution Dossier Présent C:\Users\michel\AppData\Roaming\Desk 365 Dossier Présent C:\Users\michel\AppData\Roaming\DriverCure Dossier Présent C:\Users\michel\AppData\Roaming\iSafe Dossier Présent C:\Users\michel\AppData\Roaming\Optimizer Pro Dossier Présent C:\Users\michel\AppData\Roaming\PerformerSoft Dossier Présent C:\Users\michel\AppData\Roaming\SpeedMaxPc Dossier Présent C:\Users\michel\AppData\Roaming\WinZipper Dossier Présent C:\Users\michel\chat-land Dossier Présent C:\Users\michel\Documents\Optimizer Pro Dossier Présent C:\Users\michel\Documents\PC Speed Maximizer Dossier Présent C:\Users\michel\prncnfgd Fichier Présent : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pflphaooapbgpeakohlggbpidpppgdff_0.localstorage Fichier Présent : C:\Users\michel\AppData\Local\mysearchdial-speeddial.crx ***** [ Raccourcis ] ***** ***** [ Registre ] ***** Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\MyFreeCodec Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Wpm Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec Clé Présente : HKCU\Software\Myfree Codec Clé Présente : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector Clé Présente : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector.1 Clé Présente : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{FD501041-8EBE-11CE-8183-00AA00577DA2} Clé Présente : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager Clé Présente : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1 Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{2561FD25-FE31-4E56-A120-AF7FEAAE3124} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{C292AD0A-C11F-479B-B8DB-743E72D283B0} Clé Présente : HKLM\Software\Myfree Codec Clé Présente : HKLM\Software\supWPM Clé Présente : HKLM\Software\sweet-pageSoftware ***** [ Navigateurs ] ***** -\\ Internet Explorer v9.0.8112.16533 -\\ Google Chrome v [ Fichier : C:\Users\michel\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R2].txt - [17217 octets] - [28/02/2014 18:13:01] AdwCleaner[R3].txt - [11276 octets] - [28/02/2014 18:20:34] AdwCleaner[s1].txt - [410 octets] - [28/02/2014 18:25:48] ########## EOF - C:\AdwCleaner\AdwCleaner[R2].txt - [17398 octets] ##########
  19. Bonjour ,apres avoir demandé de l'aide sur le site pour un ralentissement tres long de mon pc au demarrage 7 mn pour que la page d'acceuil s'ouvre et apres analyse de celui-çi on m'informe que mon pc est infecte par des malwares je vous fait parvenir le lien cijoint demandé .....http://cijoint.com/?DBCnFrZNc47 comment faire pour éradiquer cette situation ,car je suis un debutant merçi de votre compréhension et de votre aide
×
×
  • Créer...