Se connecter / S'enregistrer
Votre question

probleme pour activer le service centre de securité windows (virus)

Tags :
  • Windows
  • Sécurité
  • Virus
Dernière réponse : dans Sécurité et virus
26 Août 2012 23:54:44

bonjour voila j'ai un problème pour activer le service centre de sécurité Windows suite a un téléchargement cela est apparu et quand je suis sur internet sa me mes des page que je ne veut pas voila qu'elle q'un a une idée de cela peut provenir merci

Autres pages sur : probleme activer service centre securite windows virus

27 Août 2012 10:28:37

Bonjour

  • Télécharge OTL (de OldTimer) sur ton Bureau.
  • Double-clique sur OTL pour le lancer.
    (Sous Vista/Win7, il faut cliquer droit sur OTL et choisir Exécuter en tant qu'administrateur)
  • Une fenêtre apparaît. Dans la section Rapport en haut de cette fenêtre, coche Rapport minimal.
  • Coche également les cases à côté de Recherche Lop et Recherche Purity.
  • sous Personnalisation (dans le cadre blanc), copie_colle le contenu du cadre ci dessous:


    netsvcs
    msconfig
    drivers32
    /md5start
    explorer.exe
    wininit.exe
    winlogon.exe
    userinit.exe
    svchost.exe
    /md5stop
    %SYSTEMDRIVE%\*.exe
    %ALLUSERSPROFILE%\Application Data\*.
    %ALLUSERSPROFILE%\Application Data\*.exe /s
    %APPDATA%\*.
    %APPDATA%\*.exe /s
    %systemroot%\*. /mp /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job /lockedfiles
    %systemroot%\system32\drivers\*.sys /lockedfiles
    hklm\system\CurrentControlSet\Control\Session Manager\SubSystems /s
    hklm\software\clients\startmenuinternet|command /rs
    hklm\software\clients\startmenuinternet|command /64 /rs
    nslookup http://www.google.fr /c
    SAVEMBR:0
    CREATERESTOREPOINT



  • Enfin, clique sur le bouton Analyse. Laisse travailler l'outil.
  • Une fois l'analyse terminée, deux fenêtres vont s'ouvrir dans le Bloc-notes : OTL.txt et Extras.txt. Ils se trouvent au même endroit que OTL (donc par défaut sur le Bureau).

    Pour me transmettre les rapports :
    Utilise ce service:
    http://pjjoint.malekal.com/
    Poste les liens.



    <@_@>**<@_@>**<@_@>**<@_@>**<@_@>**@_@>**<@_@><@_@>**<@_@>**<@_@>**<@_@>**
    Contenus similaires
    29 Août 2012 15:21:37

    Bonjour
    tu remercieras le p2p :o 
    Désactive ton antivirus et tout autre type de protection.
    Télécharge ComboFix de sUBs : Combofix
    Sauvegarde-le sur ton bureau et pas ailleurs!

    Double-clic sur ComboFix, Il va te poser une question, suis les invites puis attends que combofix ait terminé, il est possible que ton PC reboot, c’est normal, un rapport sera créé.Poste le rapport:C:\Combofix.txt
    clique dessus pour l'ouvrir, puis édition "sélectionner tout", édition "copier"

    viens sur le forum et édition "coller"

    AIDE : Un guide et un tutoriel sur l'utilisation de ComboFix
    * le nom de la partition peut changer

    <@_@>

    +++++++++++++++++++++
    29 Août 2012 17:39:05

    voila le rapport de combo fix : ComboFix 12-08-28.03 - vincent 29/08/2012 17:16:03.2.2 - x64
    Microsoft Windows 7 Édition Familiale Premium 6.1.7601.1.1252.32.1036.18.2814.1438 [GMT 2:00]
    Lancé depuis: c:\users\vincent\Downloads\ComboFix.exe
    AV: Avira Desktop *Enabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
    SP: Avira Desktop *Enabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    .
    .
    ((((((((((((((((((((((((((((( Fichiers créés du 2012-07-28 au 2012-08-29 ))))))))))))))))))))))))))))))))))))
    .
    .
    2023-04-03 14:06 . 2023-04-03 14:06 135168 ----a-w- c:\windows\SysWow64\vbSendMail.dll
    2012-08-29 15:28 . 2012-08-29 15:28 -------- d-----w- c:\users\Mcx1-VINCENT-PC\AppData\Local\temp
    2012-08-29 15:28 . 2012-08-29 15:28 -------- d-----w- c:\users\Default\AppData\Local\temp
    2012-08-29 14:55 . 2012-08-29 14:55 -------- d-----w- c:\programdata\GFI Software
    2012-08-29 13:42 . 2012-08-29 15:07 -------- d-----w- c:\programdata\Ad-Aware Browsing Protection
    2012-08-29 13:41 . 2012-08-29 14:55 -------- d-----w- c:\program files (x86)\Ad-Aware Antivirus
    2012-08-29 13:39 . 2012-08-29 14:53 -------- d-----w- c:\users\vincent\AppData\Roaming\Ad-Aware Antivirus
    2012-08-29 13:33 . 2012-08-29 15:04 -------- d-----w- c:\program files (x86)\SpywareBlaster
    2012-08-29 10:31 . 2012-08-29 10:33 -------- d-----w- c:\users\vincent\.android
    2012-08-29 08:44 . 2012-08-29 08:44 512 ----a-w- C:\PhysicalMBR.bin
    2012-08-29 08:22 . 2012-05-29 15:11 34656 ----a-w- c:\windows\system32\TURegOpt.exe
    2012-08-29 08:22 . 2012-05-29 15:11 21344 ----a-w- c:\windows\SysWow64\authuitu.dll
    2012-08-29 08:22 . 2012-05-29 15:11 25952 ----a-w- c:\windows\system32\authuitu.dll
    2012-08-29 08:22 . 2012-08-29 08:22 -------- d-----w- c:\program files (x86)\TuneUp Utilities 2012
    2012-08-29 01:43 . 2012-08-29 01:43 -------- d-----w- c:\programdata\AVG Secure Search
    2012-08-29 01:06 . 2012-08-29 14:59 -------- d-----w- c:\users\vincent\AppData\Roaming\Wise Care 365
    2012-08-29 00:59 . 2012-08-29 01:06 -------- d-----w- c:\program files (x86)\Wise
    2012-08-29 00:24 . 2012-08-29 00:24 -------- d-----w- c:\windows\en
    2012-08-29 00:24 . 2012-08-29 00:24 -------- d-----w- c:\windows\fr
    2012-08-29 00:20 . 2012-07-28 00:15 57280 ----a-w- c:\windows\system32\drivers\fssfltr.sys
    2012-08-29 00:11 . 2012-08-29 00:11 -------- d-----w- c:\program files (x86)\Microsoft SkyDrive
    2012-08-29 00:11 . 2012-08-29 00:08 5563840 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\5dbe88681cd857a04\skydrivesetup.exe
    2012-08-29 00:10 . 2012-08-29 00:10 -------- d-----r- c:\users\vincent\SkyDrive
    2012-08-29 00:10 . 2012-08-29 00:10 -------- d-----w- c:\programdata\Microsoft SkyDrive
    2012-08-29 00:08 . 2012-08-29 00:08 89944 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\51c632731cd857a03\DSETUP.dll
    2012-08-29 00:08 . 2012-08-29 00:08 537432 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\51c632731cd857a03\DXSETUP.exe
    2012-08-29 00:08 . 2012-08-29 00:08 1801048 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\51c632731cd857a03\dsetup32.dll
    2012-08-29 00:07 . 2012-08-29 00:07 94040 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\426cee631cd857a02\DSETUP.dll
    2012-08-29 00:07 . 2012-08-29 00:07 525656 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\426cee631cd857a02\DXSETUP.exe
    2012-08-29 00:07 . 2012-08-29 00:07 1691480 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\426cee631cd857a02\dsetup32.dll
    2012-08-29 00:07 . 2012-08-29 00:07 537432 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\3c4492ee1cd857a01\DXSETUP.exe
    2012-08-29 00:07 . 2012-08-29 00:07 89944 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\3c4492ee1cd857a01\DSETUP.dll
    2012-08-29 00:07 . 2012-08-29 00:07 1801048 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\3c4492ee1cd857a01\dsetup32.dll
    2012-08-29 00:03 . 2012-08-29 00:02 289768 ----a-w- c:\windows\system32\javaws.exe
    2012-08-29 00:03 . 2012-08-29 00:02 1034216 ----a-w- c:\windows\system32\npDeployJava1.dll
    2012-08-29 00:02 . 2012-08-29 00:02 108008 ----a-w- c:\windows\system32\WindowsAccessBridge-64.dll
    2012-08-29 00:02 . 2012-08-29 00:02 189416 ----a-w- c:\windows\system32\javaw.exe
    2012-08-29 00:02 . 2012-08-29 00:02 188904 ----a-w- c:\windows\system32\java.exe
    2012-08-29 00:02 . 2012-08-29 00:02 -------- d-----w- c:\program files\Java
    2012-08-28 23:58 . 2012-08-28 23:58 73696 ----a-w- c:\program files (x86)\Mozilla Firefox\breakpadinjector.dll
    2012-08-28 23:55 . 2012-08-29 00:54 -------- d-----w- c:\program files (x86)\FileHippo.com
    2012-08-28 11:26 . 2012-08-28 11:26 -------- d-----w- c:\users\vincent\AppData\Roaming\URSoft
    2012-08-28 11:26 . 2012-08-28 11:26 -------- d-----w- c:\program files (x86)\Your Uninstaller! 7
    2012-08-27 20:54 . 2012-08-27 20:54 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
    2012-08-27 09:52 . 2012-08-27 09:52 -------- d-----w- c:\users\vincent\AppData\Local\Secunia PSI
    2012-08-25 13:38 . 2012-08-25 13:38 131072 --sha-r- c:\windows\SysWow64\usbuif.dll
    2012-08-25 11:38 . 2012-08-25 11:45 485 ----a-w- c:\users\vincent\AppData\Local\PhoneMyPC_Settings.bin
    2012-08-25 07:50 . 2012-08-01 22:58 9309624 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{62CC1069-5486-48B0-989E-85A25C7E8DF1}\mpengine.dll
    2012-08-23 12:47 . 2012-08-27 10:22 -------- d-----w- c:\users\vincent\AppData\Local\eSupport.com
    2012-08-23 12:47 . 2012-08-23 12:47 21712 ----a-w- c:\windows\SysWow64\drivers\DrvAgent64.SYS
    2012-08-23 12:39 . 2012-08-23 12:39 -------- d-----w- c:\program files\Speccy
    2012-08-23 08:48 . 2012-08-28 23:49 -------- d-----w- c:\program files (x86)\BitTorrent
    2012-08-20 16:33 . 2012-03-30 14:49 56448 ----a-w- c:\windows\system32\drivers\usbfilter.sys
    2012-08-18 12:57 . 2012-08-18 12:57 -------- d-----w- c:\users\vincent\AppData\Roaming\ACER_EUU_Download_Tools
    2012-08-17 10:33 . 2012-08-17 10:33 -------- d-----w- c:\programdata\Acer
    2012-08-17 10:33 . 2012-08-17 10:33 -------- d-----w- c:\users\vincent\AppData\Local\Acer
    2012-08-17 10:33 . 2012-08-17 10:33 -------- d-----w- c:\users\vincent\AppData\Local\ADDP
    2012-08-17 10:32 . 2012-08-17 10:32 -------- d-----w- c:\program files\DIFX
    2012-08-17 10:31 . 2012-08-17 10:31 -------- d-----w- c:\program files\Microsoft Synchronization Services
    2012-08-17 10:31 . 2012-08-17 10:31 -------- d-----w- c:\program files\Microsoft SQL Server Compact Edition
    2012-08-17 10:31 . 2012-08-17 10:31 -------- d-----w- c:\program files (x86)\Microsoft Synchronization Services
    2012-08-17 10:30 . 2012-08-17 10:30 -------- d-----w- c:\program files\Microsoft Sync Framework
    2012-08-14 22:27 . 2012-08-14 22:27 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
    2012-08-14 22:14 . 2012-02-11 06:43 751104 ----a-w- c:\windows\system32\win32spl.dll
    2012-08-14 22:14 . 2012-02-11 06:36 559104 ----a-w- c:\windows\system32\spoolsv.exe
    2012-08-14 22:14 . 2012-02-11 06:36 67072 ----a-w- c:\windows\splwow64.exe
    2012-08-14 22:14 . 2012-02-11 05:43 492032 ----a-w- c:\windows\SysWow64\win32spl.dll
    2012-08-14 22:14 . 2012-05-05 08:36 503808 ----a-w- c:\windows\system32\srcore.dll
    2012-08-14 22:14 . 2012-05-05 07:46 43008 ----a-w- c:\windows\SysWow64\srclient.dll
    2012-08-14 22:14 . 2012-07-04 22:16 73216 ----a-w- c:\windows\system32\netapi32.dll
    2012-08-14 22:14 . 2012-07-04 22:13 59392 ----a-w- c:\windows\system32\browcli.dll
    2012-08-14 22:14 . 2012-07-04 22:13 136704 ----a-w- c:\windows\system32\browser.dll
    2012-08-14 22:14 . 2012-07-04 21:14 41984 ----a-w- c:\windows\SysWow64\browcli.dll
    2012-08-14 22:14 . 2012-05-14 05:26 956928 ----a-w- c:\windows\system32\localspl.dll
    2012-08-14 22:14 . 2012-07-18 18:15 3148800 ----a-w- c:\windows\system32\win32k.sys
    2012-07-31 18:13 . 2010-05-03 14:12 328712 ----a-w- c:\windows\system32\MijFrc.dll
    2012-07-31 18:13 . 2012-07-31 18:13 -------- d-----w- c:\program files\MotioninJoy
    .
    .
    .
    (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2012-08-29 00:38 . 2012-04-22 23:00 73416 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
    2012-08-29 00:38 . 2012-04-22 23:00 696520 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
    2012-08-29 00:02 . 2012-01-01 20:30 916456 ----a-w- c:\windows\system32\deployJava1.dll
    2012-08-14 22:16 . 2010-12-15 15:57 62134624 ----a-w- c:\windows\system32\MRT.exe
    2012-08-13 07:50 . 2012-01-01 17:35 132832 ----a-w- c:\windows\system32\drivers\avipbb.sys
    2012-08-13 07:50 . 2012-06-30 22:03 139360 ----a-w- c:\windows\system32\drivers\avfwot.sys
    2012-08-13 07:50 . 2012-06-30 22:03 114128 ----a-w- c:\windows\system32\drivers\avfwim.sys
    2012-08-13 07:50 . 2012-01-01 17:35 98848 ----a-w- c:\windows\system32\drivers\avgntflt.sys
    2012-07-28 01:09 . 2012-07-28 01:09 57792 ----a-w- c:\windows\SysWow64\sirenacm.dll
    2012-07-28 00:54 . 2012-07-28 00:54 321472 ----a-w- c:\windows\WLXPGSS.SCR
    2012-07-26 17:08 . 2012-07-26 17:08 862664 ----a-w- c:\windows\SysWow64\msvcr110.dll
    2012-07-26 17:08 . 2012-07-26 17:08 534480 ----a-w- c:\windows\SysWow64\msvcp110.dll
    2012-07-26 17:08 . 2012-07-26 17:08 251864 ----a-w- c:\windows\SysWow64\vccorlib110.dll
    2012-07-26 17:08 . 2012-07-26 17:08 153536 ----a-w- c:\windows\SysWow64\atl110.dll
    2012-07-26 17:08 . 2012-07-26 17:08 115656 ----a-w- c:\windows\SysWow64\vcomp110.dll
    2012-07-26 13:22 . 2012-07-26 13:22 828872 ----a-w- c:\windows\system32\msvcr110.dll
    2012-07-26 13:22 . 2012-07-26 13:22 661448 ----a-w- c:\windows\system32\msvcp110.dll
    2012-07-26 13:22 . 2012-07-26 13:22 354264 ----a-w- c:\windows\system32\vccorlib110.dll
    2012-07-26 13:22 . 2012-07-26 13:22 177096 ----a-w- c:\windows\system32\atl110.dll
    2012-07-26 13:22 . 2012-07-26 13:22 124360 ----a-w- c:\windows\system32\vcomp110.dll
    2012-07-18 08:39 . 2010-11-30 22:04 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll
    2012-07-18 08:39 . 2010-11-30 22:04 704136 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
    2012-07-17 13:14 . 2012-07-17 13:14 253184 ----a-w- c:\windows\system32\LIVESSP.DLL
    2012-07-17 12:49 . 2012-07-17 12:49 209648 ----a-w- c:\windows\SysWow64\LIVESSP.DLL
    2012-07-17 12:37 . 2012-07-17 12:37 19736 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
    2012-07-07 22:43 . 2012-04-23 02:24 419840 ----a-w- c:\windows\system32\wrap_oal.dll
    2012-07-07 22:43 . 2012-04-23 02:24 413696 ----a-w- c:\windows\SysWow64\wrap_oal.dll
    2012-07-07 22:43 . 2012-04-23 02:24 133632 ----a-w- c:\windows\system32\OpenAL32.dll
    2012-07-07 22:43 . 2012-04-23 02:24 110592 ----a-w- c:\windows\SysWow64\OpenAL32.dll
    2012-07-05 23:40 . 2006-08-27 06:59 32768 ----a-w- c:\windows\system32\drivers\libusb0.sys
    2012-07-04 06:59 . 2012-07-04 06:59 11922944 ----a-w- c:\windows\system32\drivers\atikmdag.sys
    2012-07-04 06:52 . 2012-07-04 06:52 26016256 ----a-w- c:\windows\system32\atio6axx.dll
    2012-07-04 06:35 . 2012-04-06 01:50 19586048 ----a-w- c:\windows\SysWow64\atioglxx.dll
    2012-07-04 06:27 . 2012-07-04 06:27 159744 ----a-w- c:\windows\system32\atiapfxx.exe
    2012-07-04 06:27 . 2011-11-10 03:16 918528 ----a-w- c:\windows\SysWow64\aticfx32.dll
    2012-07-04 06:25 . 2011-11-10 03:15 1081856 ----a-w- c:\windows\system32\aticfx64.dll
    2012-07-04 06:21 . 2012-04-06 02:16 442368 ----a-w- c:\windows\system32\ATIDEMGX.dll
    2012-07-04 06:21 . 2012-07-04 06:21 514048 ----a-w- c:\windows\system32\atieclxx.exe
    2012-07-04 06:20 . 2012-07-04 06:20 238080 ----a-w- c:\windows\system32\atiesrxx.exe
    2012-07-04 06:19 . 2012-07-04 06:19 120320 ----a-w- c:\windows\system32\atitmm64.dll
    2012-07-04 06:19 . 2012-07-04 06:19 21504 ----a-w- c:\windows\system32\atimuixx.dll
    2012-07-04 06:19 . 2012-07-04 06:19 59392 ----a-w- c:\windows\system32\atiedu64.dll
    2012-07-04 06:19 . 2012-07-04 06:19 43520 ----a-w- c:\windows\SysWow64\ati2edxx.dll
    2012-07-04 06:18 . 2011-11-10 03:06 6811648 ----a-w- c:\windows\SysWow64\atidxx32.dll
    2012-07-04 05:57 . 2010-07-14 10:18 7510528 ----a-w- c:\windows\system32\atidxx64.dll
    2012-07-04 05:36 . 2012-07-04 05:36 1053696 ----a-w- c:\windows\system32\atiumd6v.dll
    2012-07-04 05:36 . 2012-07-04 05:36 69632 ----a-w- c:\windows\system32\coinst_8.97.100.3.dll
    2012-07-04 05:36 . 2012-07-04 05:36 1960960 ----a-w- c:\windows\SysWow64\atiumdmv.dll
    2012-07-04 05:35 . 2012-04-06 01:34 4261376 ----a-w- c:\windows\system32\atiumd6a.dll
    2012-07-04 05:35 . 2012-07-04 05:35 6245888 ----a-w- c:\windows\SysWow64\atiumdag.dll
    2012-07-04 05:28 . 2012-07-04 05:28 4749312 ----a-w- c:\windows\SysWow64\atiumdva.dll
    2012-07-04 05:24 . 2012-04-06 01:23 7477760 ----a-w- c:\windows\system32\atiumd64.dll
    2012-07-04 05:11 . 2012-07-04 05:11 56320 ----a-w- c:\windows\system32\atimpc64.dll
    2012-07-04 05:11 . 2012-07-04 05:11 56320 ----a-w- c:\windows\system32\amdpcom64.dll
    2012-07-04 05:11 . 2010-07-14 10:18 535552 ----a-w- c:\windows\system32\atiadlxx.dll
    2012-07-04 05:11 . 2012-07-04 05:11 56832 ----a-w- c:\windows\SysWow64\atimpc32.dll
    2012-07-04 05:11 . 2012-07-04 05:11 56832 ----a-w- c:\windows\SysWow64\amdpcom32.dll
    2012-07-04 05:11 . 2012-04-06 01:11 364544 ----a-w- c:\windows\SysWow64\atiadlxy.dll
    2012-07-04 05:11 . 2012-07-04 05:11 17920 ----a-w- c:\windows\system32\atig6pxx.dll
    2012-07-04 05:11 . 2012-07-04 05:11 14848 ----a-w- c:\windows\system32\atiglpxx.dll
    2012-07-04 05:11 . 2012-04-06 01:11 14848 ----a-w- c:\windows\SysWow64\atiglpxx.dll
    2012-07-04 05:11 . 2012-07-04 05:11 41984 ----a-w- c:\windows\system32\atig6txx.dll
    2012-07-04 05:11 . 2012-04-06 01:10 33280 ----a-w- c:\windows\SysWow64\atigktxx.dll
    2012-07-04 05:10 . 2012-07-04 05:10 359936 ----a-w- c:\windows\system32\drivers\atikmpag.sys
    2012-07-04 05:10 . 2010-07-14 10:18 55296 ----a-w- c:\windows\system32\atiuxp64.dll
    2012-07-04 05:09 . 2011-11-10 02:11 42496 ----a-w- c:\windows\SysWow64\atiuxpag.dll
    2012-07-04 05:09 . 2012-04-06 01:09 45056 ----a-w- c:\windows\system32\atiu9p64.dll
    2012-07-04 05:09 . 2012-07-04 05:09 32768 ----a-w- c:\windows\SysWow64\atiu9pag.dll
    2012-07-04 05:09 . 2012-07-04 05:09 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
    2012-07-04 05:04 . 2012-07-04 05:04 51200 ----a-w- c:\windows\system32\aticalrt64.dll
    2012-07-04 05:04 . 2012-07-04 05:04 46080 ----a-w- c:\windows\SysWow64\aticalrt.dll
    2012-07-04 05:04 . 2012-07-04 05:04 44544 ----a-w- c:\windows\system32\aticalcl64.dll
    2012-07-04 05:04 . 2012-07-04 05:04 44544 ----a-w- c:\windows\SysWow64\aticalcl.dll
    2012-07-04 05:04 . 2012-07-04 05:04 15827456 ----a-w- c:\windows\system32\aticaldd64.dll
    2012-07-04 04:59 . 2012-07-04 04:59 13402112 ----a-w- c:\windows\SysWow64\aticaldd.dll
    2012-07-03 11:46 . 2011-12-14 13:17 24904 ----a-w- c:\windows\system32\drivers\mbam.sys
    2012-06-26 01:05 . 2012-06-26 01:05 187392 ----a-w- c:\windows\system32\clinfo.exe
    2012-06-26 01:05 . 2012-06-26 01:05 75264 ----a-w- c:\windows\system32\OpenVideo64.dll
    2012-06-26 01:05 . 2012-06-26 01:05 65024 ----a-w- c:\windows\SysWow64\OpenVideo.dll
    2012-06-26 01:05 . 2012-06-26 01:05 63488 ----a-w- c:\windows\system32\OVDecode64.dll
    2012-06-26 01:04 . 2012-06-26 01:04 56320 ----a-w- c:\windows\SysWow64\OVDecode.dll
    2012-06-26 01:04 . 2012-06-26 01:04 16457728 ----a-w- c:\windows\system32\amdocl64.dll
    2012-06-26 01:04 . 2012-06-26 01:04 13008896 ----a-w- c:\windows\SysWow64\amdocl.dll
    2012-06-09 17:21 . 2012-07-07 15:30 178688 ----a-w- c:\windows\SysWow64\unrar.dll
    2012-06-09 05:43 . 2012-07-11 07:46 14172672 ----a-w- c:\windows\system32\shell32.dll
    2012-06-07 18:29 . 2012-06-07 18:29 16200 ----a-w- c:\windows\stinger.sys
    2012-06-06 18:59 . 2012-06-06 18:59 1070152 ----a-w- c:\windows\SysWow64\MSCOMCTL.OCX
    2012-06-06 06:06 . 2012-07-11 07:46 2004480 ----a-w- c:\windows\system32\msxml6.dll
    2012-06-06 06:06 . 2012-07-11 07:46 1881600 ----a-w- c:\windows\system32\msxml3.dll
    2012-06-06 06:02 . 2012-07-11 07:46 1133568 ----a-w- c:\windows\system32\cdosys.dll
    2012-06-06 05:05 . 2012-07-11 07:46 1390080 ----a-w- c:\windows\SysWow64\msxml6.dll
    2012-06-06 05:05 . 2012-07-11 07:46 1236992 ----a-w- c:\windows\SysWow64\msxml3.dll
    2012-06-06 05:03 . 2012-07-11 07:46 805376 ----a-w- c:\windows\SysWow64\cdosys.dll
    2012-06-02 22:19 . 2012-06-21 06:31 38424 ----a-w- c:\windows\system32\wups.dll
    2012-06-02 22:19 . 2012-06-21 06:31 2428952 ----a-w- c:\windows\system32\wuaueng.dll
    2012-06-02 22:19 . 2012-06-21 06:31 57880 ----a-w- c:\windows\system32\wuauclt.exe
    2012-06-02 22:19 . 2012-06-21 06:31 44056 ----a-w- c:\windows\system32\wups2.dll
    2012-06-02 22:19 . 2012-06-21 06:31 701976 ----a-w- c:\windows\system32\wuapi.dll
    2012-06-02 22:15 . 2012-06-21 06:31 2622464 ----a-w- c:\windows\system32\wucltux.dll
    2012-06-02 22:15 . 2012-06-21 06:31 99840 ----a-w- c:\windows\system32\wudriver.dll
    .
    .
    ((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
    REGEDIT4
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
    @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
    [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
    2012-08-29 00:10 220608 ----a-w- c:\users\vincent\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\SkyDriveShell.dll
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
    @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
    [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
    2012-08-29 00:10 220608 ----a-w- c:\users\vincent\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\SkyDriveShell.dll
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
    @="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
    [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
    2012-08-29 00:10 220608 ----a-w- c:\users\vincent\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\SkyDriveShell.dll
    .
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
    "AMD AVT"="start AMD Accelerated Video Transcoding device initialization" [X]
    "LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2010-03-04 1300560]
    "avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2012-08-13 348664]
    "Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-07-03 462920]
    "StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2012-07-04 641704]
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
    "ConsentPromptBehaviorAdmin"= 5 (0x5)
    "ConsentPromptBehaviorUser"= 3 (0x3)
    "EnableUIADesktopToggle"= 0 (0x0)
    "EnableLinkedConnections"= 1 (0x1)
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
    "aux1"=wdmaud.drv
    .
    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
    BootExecute REG_MULTI_SZ lsdelete
    .
    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
    Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
    @=""
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-]
    "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe"
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-disabled]
    "AVP"="c:\program files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe"
    .
    R1 A2DDA;A2 Direct Disk Access Support Driver;c:\users\vincent\Downloads\EmsisoftEmergencyKit\Run\a2ddax64.sys [x]
    R1 SBRE;SBRE;c:\windows\system32\drivers\SBREdrv.sys [x]
    R2 AcerSyncServiceWinService;AcerSyncServiceWinService;c:\program files\Acer\AcerSync\AcerSyncService.exe [x]
    R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
    R2 gupdate;Service Google Update (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-11-30 135664]
    R2 WiseBootAssistant;Wise Boot Assistant;c:\program files (x86)\Wise\Wise Care 365\BootTime.exe [2012-07-17 580648]
    R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-29 250568]
    R3 AmUStor;AM USB Stroage Driver;c:\windows\system32\drivers\AmUStor.SYS [x]
    R3 androidusb;ADB Interface Driver;c:\windows\system32\Drivers\androidusb.sys [2009-08-21 31744]
    R3 driverhardwarev2x64;driverhardwarev2x64;c:\program files\ma-config.com\Drivers\driverhardwarev2x64.sys [2011-07-21 16640]
    R3 ePowerSvc;Acer ePower Service;c:\program files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [2010-02-06 865824]
    R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
    R3 gupdatem;Service Google Update (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-11-30 135664]
    R3 Lavasoft Kernexplorer;Lavasoft helper driver;c:\program files (x86)\Lavasoft\Ad-Aware\KernExplorer64.sys [x]
    R3 libusb0;LibUsb-Win32 - Kernel Driver 08/27/2006, 0.1.12.0;c:\windows\system32\DRIVERS\libusb0.sys [2012-07-05 32768]
    R3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\x64\maconfservice.exe [2012-08-03 427672]
    R3 MatSvc;Service automatisé de résolution de problèmes Microsoft;c:\program files\Microsoft Fix it Center\Matsvc.exe [2011-06-13 343856]
    R3 MotioninJoyXFilter;MotioninJoy Virtual Xinput device Filter Driver;c:\windows\system32\DRIVERS\MijXfilt.sys [2011-11-10 115272]
    R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-08-28 114144]
    R3 qcusbser;ACER Android USB Device for Legacy Serial Communication;c:\windows\system32\DRIVERS\qcusbser.sys [2009-08-14 120960]
    R3 RDPDISPM;RDPDISPM;c:\windows\system32\DRIVERS\rdpdispm.sys [2010-08-31 10752]
    R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
    R3 WatAdminSvc;Service Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2011-04-01 1255736]
    R3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [2010-11-01 14544]
    R3 XPADFL02;XPAD Filter Service 02;c:\windows\system32\DRIVERS\xpadfl02.sys [x]
    S0 amd_sata;amd_sata;c:\windows\system32\DRIVERS\amd_sata.sys [2012-04-11 82560]
    S0 amd_xata;amd_xata;c:\windows\system32\DRIVERS\amd_xata.sys [2012-04-11 42624]
    S0 Lbd;Lbd;c:\windows\system32\DRIVERS\Lbd.sys [2011-10-28 69376]
    S0 NBVol;Nero Backup Volume Filter Driver;c:\windows\system32\DRIVERS\NBVol.sys [2011-07-13 72240]
    S0 NBVolUp;Nero Backup Volume Upper Filter Driver;c:\windows\system32\DRIVERS\NBVolUp.sys [2011-07-13 15920]
    S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys [2011-11-29 55856]
    S1 avfwot;avfwot;c:\windows\system32\DRIVERS\avfwot.sys [2012-08-13 139360]
    S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys [2011-12-16 27760]
    S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928]
    S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL64.SYS [2011-07-12 12368]
    S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
    S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE64.EXE [2011-08-11 140672]
    S2 AdobeActiveFileMonitor8.0;Adobe Active File Monitor V8;c:\program files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [2009-10-09 169312]
    S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]
    S2 Akamai;Akamai NetSession Interface;c:\windows\System32\svchost.exe [2009-07-14 27136]
    S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2012-07-04 238080]
    S2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-07-03 361984]
    S2 AntiVirFirewallService;Avira Firewall;c:\program files (x86)\Avira\AntiVir Desktop\avfwsvc.exe [2012-08-13 619472]
    S2 AntiVirMailService;Avira Protection e-mail;c:\program files (x86)\Avira\AntiVir Desktop\avmailc.exe [2012-08-13 375760]
    S2 AntiVirSchedulerService;Avira Planificateur;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [2012-08-13 86224]
    S2 AntiVirWebService;Avira Protection Web;c:\program files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [2012-08-13 465360]
    S2 AODDriver4.01;AODDriver4.01;c:\program files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-03-05 53888]
    S2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe [2010-03-04 325200]
    S2 Greg_Service;GRegService;c:\program files (x86)\Packard Bell\Registration\GregHSRW.exe [2009-08-28 1150496]
    S2 Live Updater Service;Live Updater Service;c:\program files\Packard Bell\Packard Bell Updater\UpdaterService.exe [2012-04-05 255376]
    S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-07-03 655944]
    S2 NAUpdate;Nero Update;c:\program files (x86)\Nero\Update\NASvc.exe [2011-09-23 641832]
    S2 NTI IScheduleSvc;NTI IScheduleSvc;c:\program files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe [2010-03-08 250368]
    S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe [2012-05-29 2143072]
    S2 Updater Service;Updater Service;c:\program files\Packard Bell\Packard Bell Updater\UpdaterService.exe [2012-04-05 255376]
    S2 vToolbarUpdater;vToolbarUpdater;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\9.0.1\ToolbarUpdater.exe [2011-12-19 869216]
    S3 amdiox64;AMD IO Driver;c:\windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
    S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [2012-07-04 11922944]
    S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [2012-07-04 359936]
    S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [2012-05-14 96896]
    S3 avfwim;AvFw Packet Filter Miniport;c:\windows\system32\DRIVERS\avfwim.sys [2012-08-13 114128]
    S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys [2012-06-01 440360]
    S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-07-03 24904]
    S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys [2012-05-03 11856]
    S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys [2012-03-30 56448]
    S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
    .
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
    Akamai REG_MULTI_SZ Akamai
    .
    Contenu du dossier 'Tâches planifiées'
    .
    2012-08-29 c:\windows\Tasks\Adobe Flash Player Updater.job
    - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-22 00:38]
    .
    2012-08-29 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
    - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-11-30 16:33]
    .
    2012-08-29 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
    - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-11-30 16:33]
    .
    2012-08-29 c:\windows\Tasks\Wise Care 365.job
    - c:\program files (x86)\Wise\Wise Care 365\WiseTray.exe [2012-08-29 11:30]
    .
    2012-08-29 c:\windows\Tasks\yokag.job
    - c:\windows\system32\rundll32.exe [2009-07-13 01:14]
    .
    .
    --------- X64 Entries -----------
    .
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
    @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
    [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
    2012-08-29 00:10 244672 ----a-w- c:\users\vincent\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\amd64\SkyDriveShell64.dll
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
    @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
    [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
    2012-08-29 00:10 244672 ----a-w- c:\users\vincent\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\amd64\SkyDriveShell64.dll
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
    @="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
    [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
    2012-08-29 00:10 244672 ----a-w- c:\users\vincent\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\amd64\SkyDriveShell64.dll
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-01-20 9996320]
    "PLFSetI"="c:\windows\PLFSetI.exe" [2009-01-29 206208]
    "Acer ePower Management"="c:\program files\Packard Bell\Packard Bell Power Management\ePowerTray.exe" [2010-02-06 860192]
    .
    ------- Examen supplémentaire -------
    .
    uStart Page = hxxp://www.google.com
    uLocal Page = c:\windows\system32\blank.htm
    uInternet Settings,ProxyOverride = local;<local>
    IE: ????3??
    IE: ????3??????
    IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~2\Office12\EXCEL.EXE/3000
    IE: Free YouTube Download - c:\users\vincent\AppData\Roaming\DVDVideoSoftIEHelpers\freeytvdownloader.htm
    IE: Free YouTube to MP3 Converter - c:\users\vincent\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
    IE: Liens de téléchargement avec Mega Manager...
    IE: Télécharger avec Mipony - file://c:\program files (x86)\MiPony\Browser\IEContext.htm
    IE: ????3?? - c:\users\vincent\AppData\Roaming\FlashGetBHO\GetUrl.htm
    IE: ????3?????? - c:\users\vincent\AppData\Roaming\FlashGetBHO\GetAllUrl.htm
    IE: {{09E90109-A9AA-4980-BCEF-76F8D924E902}
    LSP: c:\program files (x86)\Avira\AntiVir Desktop\avsda.dll
    TCP: DhcpNameServer = 109.88.203.3 62.197.111.140
    TCP: Interfaces\{D41555E2-E117-4E21-8050-D6937E7F941F}: NameServer = 156.154.71.1,208.67.220.220
    TCP: Interfaces\{D41555E2-E117-4E21-8050-D6937E7F941F}\2626F68723D203232603: NameServer = 156.154.71.1,208.67.220.220
    TCP: Interfaces\{D41555E2-E117-4E21-8050-D6937E7F941F}\2626F68723D223135393: NameServer = 156.154.71.1,208.67.220.220
    TCP: Interfaces\{D41555E2-E117-4E21-8050-D6937E7F941F}\2626F68723D233837353: NameServer = 156.154.71.1,208.67.220.220
    TCP: Interfaces\{D41555E2-E117-4E21-8050-D6937E7F941F}\449444945425: NameServer = 156.154.71.1,208.67.220.220
    TCP: Interfaces\{D41555E2-E117-4E21-8050-D6937E7F941F}\64F4E4F52454C4741434F4D4: NameServer = 156.154.71.1,208.67.220.220
    FF - ProfilePath - c:\users\vincent\AppData\Roaming\Mozilla\Firefox\Profiles\qz8qp0tt.default\
    FF - prefs.js: browser.startup.homepage - hxxp://www.google.be/
    .
    - - - - ORPHELINS SUPPRIMES - - - -
    .
    Toolbar-Locked - (no file)
    Toolbar-10 - (no file)
    HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
    .
    .
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Akamai]
    "ServiceDll"="c:\program files (x86)\common files\akamai/netsession_win_4f7fccd.dll"
    .
    --------------------- CLES DE REGISTRE BLOQUEES ---------------------
    .
    [HKEY_USERS\S-1-5-21-1686208732-1668686740-4052451181-1001\Software\Microsoft\Internet Explorer\MenuExt\O(uë_f3*N}]
    @Allowed: (Read) (RestrictedCode)
    @="c:\\Users\\vincent\\AppData\\Roaming\\FlashGetBHO\\GetUrl.htm"
    "contexts"=dword:00000022
    .
    [HKEY_USERS\S-1-5-21-1686208732-1668686740-4052451181-1001\Software\Microsoft\Internet Explorer\MenuExt\O(uë_f3*N}hQèþ”¥c]
    @Allowed: (Read) (RestrictedCode)
    @="c:\\Users\\vincent\\AppData\\Roaming\\FlashGetBHO\\GetAllUrl.htm"
    "contexts"=dword:000000f3
    .
    [HKEY_USERS\S-1-5-21-1686208732-1668686740-4052451181-1001\Software\SecuROM\License information*]
    "datasecu"=hex:b5,0b,af,bd,bc,ff,ca,0a,78,46,c5,c3,df,65,5a,e2,73,d0,3f,57,63,
    74,66,2d,e8,32,4b,e6,ad,c8,3f,d9,65,fa,2c,c5,76,90,ef,76,e3,22,f6,e2,66,69,\
    "rkeysecu"=hex:ce,95,d6,46,95,3a,42,33,76,d7,ea,fb,15,51,af,50
    .
    [HKEY_USERS\S-1-5-21-1686208732-1668686740-4052451181-1001_Classes\Wow6432Node\CLSID\{5ED60779-4DE2-4E07-B862-974CA4FF2E9C}]
    @Denied: (Full) (Everyone)
    @Allowed: (Read) (RestrictedCode)
    "scansk"=hex(0):ba,e1,98,cf,1f,95,a4,0d,2a,fd,49,6e,9a,68,aa,cd,75,78,7e,16,27,
    49,06,49,1d,be,dc,11,ed,17,9c,8f,f4,c6,51,e7,86,f5,33,f4,00,00,00,00,00,00,\
    .
    [HKEY_USERS\S-1-5-21-1686208732-1668686740-4052451181-1001_Classes\Wow6432Node\CLSID\{ff342f53-08e8-46e2-acec-98598533eb9b}]
    @Denied: (Full) (Everyone)
    @Allowed: (Read) (RestrictedCode)
    "Model"=dword:00000058
    "Therad"=dword:00000019
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_4_402_265_ActiveX.exe,-101"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
    "Enabled"=dword:00000001
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
    @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_4_402_265_ActiveX.exe"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker5"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_4_402_265_ActiveX.exe,-101"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
    "Enabled"=dword:00000001
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_4_402_265_ActiveX.exe"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
    @Denied: (A 2) (Everyone)
    @="Shockwave Flash Object"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_265.ocx"
    "ThreadingModel"="Apartment"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
    @="0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
    @="ShockwaveFlash.ShockwaveFlash.11"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_265.ocx, 1"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
    @="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
    @="ShockwaveFlash.ShockwaveFlash"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
    @Denied: (A 2) (Everyone)
    @="Macromedia Flash Factory Object"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_265.ocx"
    "ThreadingModel"="Apartment"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
    @="FlashFactory.FlashFactory.1"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_265.ocx, 1"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
    @="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
    @="FlashFactory.FlashFactory"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker5"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Nico Mak Computing\WinZip]
    "SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
    00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,6f,00,66,00,\
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
    @Denied: (A) (Users)
    @Denied: (A) (Everyone)
    @Allowed: (B 1 2 3 4 5) (S-1-5-20)
    "BlindDial"=dword:00000000
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
    @Denied: (A) (Users)
    @Denied: (A) (Everyone)
    @Allowed: (B 1 2 3 4 5) (S-1-5-20)
    "BlindDial"=dword:00000000
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
    @Denied: (Full) (Everyone)
    .
    Heure de fin: 2012-08-29 17:34:11
    ComboFix-quarantined-files.txt 2012-08-29 15:34
    .
    Avant-CF: 158.874.320.896 octets libres
    Après-CF: 158.788.902.912 octets libres
    .
    - - End Of File - - FD00E482F0111DB0E81ABDF7F14477B8
    30 Août 2012 10:18:39

    j'ai jamais vu autant d'antispyware et d'antivirus installés en même temps sur une machine...
    tu désinstalles tous les derniers trucs que tu as installé, tu gardes juste un antivirus et MBAM et tu repostes un rapport OTL.
    30 Août 2012 19:00:53

    re

    ça ne t'as pas empêché d'en installer un ce matin et un cet après-midi:
    [2012/08/30 14:41:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Spyware Cease
    [2012/08/30 10:29:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Spyware Terminator

    tu fais quoi avec cela: vbSendMail ?

  • Télécharge CKScanner de askey127 et enregistre-le sur ton Bureau

  • /!\ Important -> Branche tous tes périphériques externes de stockage (clés, disques durs ....)

  • Double-clique sur CKScanner.exe sur ton Bureau
    /!\ Sous Vista et Windows 7, il faut lancer le fichier par clic-droit -> Exécuter en tant qu'administrateur

  • Clique sur l'option Search For Files. et laisse l'outil analyser ton système

  • Quand la recherche est finie, clique sur Save List To File, puis sur OK pour Saved to filename ckfiles.txt.

  • Clique sur Exit pour refermer l'outil.

  • Le rapport ckfiles.txt s'affiche. Poste le contenu du rapport dans ta prochaine réponse
    Le rapport est enregistré sur ton Bureau


    ++++++++++++++++++
    30 Août 2012 20:07:37

    re pourquoi il faut brancher tout les périphérique j'ai qu'une clef usb?et je ne sais pas se que ses sa vbSendMail
    31 Août 2012 12:16:56

    Bonjour
    branche la clé usb
    31 Août 2012 13:20:53

    bonjour voila il ma mis sa : CKScanner - Additional Security Risks - These are not necessarily bad
    c:\programdata\adobe\photoshop elements\8.0\photo creations\backgrounds\cracked paint.metadata.xml
    scanner sequence 3.NA.11.KVAPRW
    ----- EOF -----
    Tom's guide dans le monde
    • Allemagne
    • Italie
    • Irlande
    • Royaume Uni
    • Etats Unis
    Suivre Tom's Guide
    Inscrivez-vous à la Newsletter
    • ajouter à twitter
    • ajouter à facebook
    • ajouter un flux RSS