
| ||||||||
Petit astucien | Bonjour à tous, Je me présente, Afpaawt, 28 ans, J'aimerais savoir si le moteur Avira inclus dans le logiciel Qihoo 360 Total Security et Iolo System Mechanic sonts ils plus puissants ou moins que les scripts de OTL d'OldTimer,
Car j'ai un soucis pour passer Windows Refresh Tool sur ma tour w10, j'essaye de lancer cet outil mais message d'erreur puis fermeture du refresh tool, Je n'ai accès aux application qu'en ss echec, j'ai passé zoek hier soir,
Merci... | |||||||
Publicité | ||||||||
|
| ||||||||
Groupe Sécurité |
Je ne pense pas qu'il a les mêmes fonctions, ici nous utilisons d'autres outils, si vous pensez que votre machine est infectée suivez ces procédures.
Solution de repli stratégique
![]()
| |||||||
Groupe Sécurité |
Merci pour vos réponses Il n'est pas necessaire de reposter mes posts, répondez dans la zone en fin de message simplement. Votre mémoire vive est très (trop) utilisé Il est inutile d'utiliser plusieurs AV simultanément, teamviewer n'est pas à jour, attention aux nettoyeurs qui lavent plus blanc que blanc. *********** On attaque dans l’ dur Citation
Script ZHPFix ShortcutFix IFEOFix SysRestore HKCU\SOFTWARE\csastats HKCU\SOFTWARE\ProductSetup HKLM\SYSTEM\CurrentControlSet\Services\0129801511078349mcinstcleanup C:\Users\jean-\AppData\Local\Temp\0129801511078349mcinst.exe HKLM\SOFTWARE\Wow6432Node\McAfee C:\ProgramData\McAfee C:\Program Files (x86)\Common Files\McAfee C:\Users\Administrateur\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk C:\Users\jean-\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk HKCU\SOFTWARE\uTorrentPlus C:\Users\jean-\AppData\Roaming\uTorrent HKLM\SYSTEM\CurrentControlSet\Services\Suite Service C:\Program Files (x86)\Fighters\FighterSuiteService.exe HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0F5FAE30-1E09-4FBB-9476-77187F08A85D} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{0F5FAE30-1E09-4FBB-9476-77187F08A85D} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0F5FAE30-1E09-4FBB-9476-77187F08A85D} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{0F5FAE30-1E09-4FBB-9476-77187F08A85D} C:\Windows\System32\Tasks\AVG EUpdate Task HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{437AE3C4-9E23-49B1-8917-C822DDDF57B9} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{437AE3C4-9E23-49B1-8917-C822DDDF57B9} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{437AE3C4-9E23-49B1-8917-C822DDDF57B9} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{437AE3C4-9E23-49B1-8917-C822DDDF57B9} C:\Windows\System32\Tasks\SoftwareUpdate Pro HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A735D2D8-C3CA-47DC-8F42-CDDB8181E73A} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{A735D2D8-C3CA-47DC-8F42-CDDB8181E73A} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A735D2D8-C3CA-47DC-8F42-CDDB8181E73A} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{A735D2D8-C3CA-47DC-8F42-CDDB8181E73A} C:\Windows\System32\Tasks\Wondershare\1-Click PC Care\Scan and Repair HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AAAECBD6-28A6-4515-BF9A-291E85716CE4} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{AAAECBD6-28A6-4515-BF9A-291E85716CE4} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AAAECBD6-28A6-4515-BF9A-291E85716CE4} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{AAAECBD6-28A6-4515-BF9A-291E85716CE4} C:\Windows\System32\Tasks\Run RoboForm TaskBar Icon HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BD3305C0-D23E-43C0-B9BB-A5BE52A447D1} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{BD3305C0-D23E-43C0-B9BB-A5BE52A447D1} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BD3305C0-D23E-43C0-B9BB-A5BE52A447D1} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{BD3305C0-D23E-43C0-B9BB-A5BE52A447D1} C:\Windows\System32\Tasks\Antivirus Emergency Update HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C026EA16-DC1E-4902-B4E6-73F89DC1E069} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{C026EA16-DC1E-4902-B4E6-73F89DC1E069} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C026EA16-DC1E-4902-B4E6-73F89DC1E069} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{C026EA16-DC1E-4902-B4E6-73F89DC1E069} C:\Windows\System32\Tasks\Wondershare\1-Click PC Care\Check 1-Click PC Care subscription expired for jean- [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]:CommonToolkitTray C:\Program Files (x86)\Fighters\Tray\FightersTray.exe HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} HKLM\Software\Classes\CLSID\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} C:\Users\Public\Desktop\FULL-DISKfighter.lnk HKCU\SOFTWARE\undefined C:\Program Files (x86)\Fighters C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fighters C:\ProgramData\Fighters C:\Users\jean-\AppData\Roaming\Fighters HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Advanced SystemCare <== Reinstall Software Advanced SystemCare HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\CLVDShellExt11 <== Reinstall Software CLVDShellExt11 HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\COMODOBackupUtility <== Reinstall Software COMODOBackupUtility HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\DaemonShellExtImage <== Reinstall Software DaemonShellExtImage HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\EUFileSyncShlMenu <== Reinstall Software EUFileSyncShlMenu HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\iSkysoftVideoConverterFileOpreation <== Reinstall Software iSkysoftVideoConverterFileOpreation HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\KillCopy <== Reinstall Software KillCopy HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\PfMenu <== Reinstall Software PfMenu HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ReflectShellExt <== Reinstall Software ReflectShellExt HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\TeraCopy <== Reinstall Software TeraCopy HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\UnLockerMenu <== Reinstall Software UnLockerMenu HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR <== Reinstall Software WinRAR HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 <== Reinstall Software WinRAR32 HKLM\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\PfMenu HKLM\Software\Classes\CLSID\{2F844462-7CB8-489C-828C-32A6422506AF} HKLM\Software\WOW6432Node\Classes\CLSID\{2F844462-7CB8-489C-828C-32A6422506AF} <== Reinstall Software PfMenu HKLM\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\UnLockerMenu HKLM\Software\Classes\CLSID\{410BF280-86EF-4E0F-8279-EC5848546AD3} HKLM\Software\WOW6432Node\Classes\CLSID\{410BF280-86EF-4E0F-8279-EC5848546AD3} <== Reinstall Software UnLockerMenu HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\CRebitContextMenuExt <== Reinstall Software CRebitContextMenuExt HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\Emsisoft Shell Extension <== Reinstall Software Emsisoft Shell Extension HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\Emsisoft Shell Extension x64 <== Reinstall Software Emsisoft Shell Extension x64 HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\UnlockerShellExtension <== Reinstall Software UnlockerShellExtension HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\COMODOBackupUtility <== Reinstall Software COMODOBackupUtility HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\EUFileSyncShlMenu <== Reinstall Software EUFileSyncShlMenu HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\PfMenu HKLM\Software\Classes\CLSID\{2F844462-7CB8-489C-828C-32A6422506AF} HKLM\Software\WOW6432Node\Classes\CLSID\{2F844462-7CB8-489C-828C-32A6422506AF} <== Reinstall Software PfMenu HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\UnLockerMenu HKLM\Software\Classes\CLSID\{410BF280-86EF-4E0F-8279-EC5848546AD3} HKLM\Software\WOW6432Node\Classes\CLSID\{410BF280-86EF-4E0F-8279-EC5848546AD3} <== Reinstall Software UnLockerMenu HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Emsisoft Shell Extension <== Reinstall Software Emsisoft Shell Extension HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Emsisoft Shell Extension x64 <== Reinstall Software Emsisoft Shell Extension x64 HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\EUFileSyncShlMenu <== Reinstall Software EUFileSyncShlMenu HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\KillCopy <== Reinstall Software KillCopy HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\PfMenu <== Reinstall Software PfMenu HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\RecuvaShellExt <== Reinstall Software RecuvaShellExt HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\TeraCopy <== Reinstall Software TeraCopy HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\UnLockerMenu <== Reinstall Software UnLockerMenu HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\UnlockerShellExtension <== Reinstall Software UnlockerShellExtension HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR <== Reinstall Software WinRAR HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 <== Reinstall Software WinRAR32 HKLM\SOFTWARE\Classes\Drive\shellex\ContextMenuHandlers\DaemonShellExtDrive HKLM\Software\Classes\CLSID\{A5415364-784A-41A5-B47A-D452909CA8FF} HKLM\Software\WOW6432Node\Classes\CLSID\{A5415364-784A-41A5-B47A-D452909CA8FF} <== Reinstall Software DaemonShellExtDrive HKLM\SOFTWARE\Classes\Drive\shellex\ContextMenuHandlers\Emsisoft Shell Extension HKLM\Software\Classes\CLSID\{AB77609F-2178-4E6F-9C4B-44AC179D937A} HKLM\Software\WOW6432Node\Classes\CLSID\{AB77609F-2178-4E6F-9C4B-44AC179D937A} <== Reinstall Software Emsisoft Shell Extension HKLM\SOFTWARE\Classes\Drive\shellex\ContextMenuHandlers\ReflectShellExt <== Reinstall Software ReflectShellExt HKLM\SOFTWARE\Classes\Drive\shellex\ContextMenuHandlers\TeraCopy <== Reinstall Software TeraCopy HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} HKLM\Software\Classes\CLSID\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Advanced SystemCare HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\CLVDShellExt11 HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\COMODOBackupUtility HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\DaemonShellExtImage HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\EUFileSyncShlMenu HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\iSkysoftVideoConverterFileOpreation HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\KillCopy HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\PfMenu HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ReflectShellExt HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\TabblesContextMenu HKLM\Software\Wow6432Node\Classes\CLSID\{46afd3c7-2533-3853-be9f-ac35459a540e} HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\TeraCopy HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\UnLockerMenu HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\PfMenu HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\UnLockerMenu HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\CRebitContextMenuExt HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\Emsisoft Shell Extension HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\Emsisoft Shell Extension x64 HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\UnlockerShellExtension HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\COMODOBackupUtility HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\EUFileSyncShlMenu HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\PfMenu HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\TabblesContextMenu HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\UnLockerMenu HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Emsisoft Shell Extension HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Emsisoft Shell Extension x64 HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\EUFileSyncShlMenu HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\KillCopy HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\PfMenu HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\RecuvaShellExt HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\TeraCopy HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\UnLockerMenu HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\UnlockerShellExtension HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\DaemonShellExtDrive HKLM\Software\Classes\CLSID\{A5415364-784A-41A5-B47A-D452909CA8FF} HKLM\Software\Wow6432Node\Classes\CLSID\{A5415364-784A-41A5-B47A-D452909CA8FF} HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\Emsisoft Shell Extension HKLM\Software\Classes\CLSID\{AB77609F-2178-4E6F-9C4B-44AC179D937A} HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\ReflectShellExt HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\TeraCopy EmptyCLSID FirewallRaz EmptyPrefetch EmptyTemp EmptyFlash ProxyFix fin
| |||||||
Groupe Sécurité | Re, Voici la suite ZHPCleaner
MBAR
ADWCleaner
Junkware Removal Tool
Kaspersky Virus Removal Tool
Pour lancer l'application :
| |||||||
Groupe Sécurité |
Je ne trouve dans aucun de vos rapports PC Optimizer Pro ? Il semblerait que votre windows a du plomb dans l'aile, je me demande si vous n'aurez pas intêret à faire une reinitialisation. également un probléme de mémoire: Erreurs Application: Error: (11/19/2017 01:30:49 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: AUTORITE NT) ********************* Refaire un scan avec ZHPDiag, postez le rapport Refaire un scan avec FRSTn postez les 3 rapports Modifié par El Magnifico le 20/11/2017 18:47 | |||||||
Groupe Sécurité |
Voici un correctif avec FRST Citation
start:: CreateRestorePoint: CloseProcesses: EmptyTemp: Hosts: DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DF8364F0-6D56-4E59-B7D8-4FB25D10E4F6} DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{DF8364F0-6D56-4E59-B7D8-4FB25D10E4F6} C:\Windows\System32\Tasks\ShouldIRemoveIt_Notifications DeleteKey: HKLM\SOFTWARE\Tencent DeleteKey: HKLM\SYSTEM\CurrentControlSet\Services\QQPCRTP C:\Users\jean-\AppData\Roaming\Mozilla\Firefox\Profiles\l81e2byz.default\searchplugins\yahoo! powered.xml DeleteKey: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B} C:\ProgramData\Tencent DeleteKey: HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\QMContextScan DeleteKey: HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\QMContextUninstall DeleteKey: HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\QMContextScan DeleteKey: HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\QMContextUninstall DeleteKey: HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\QMRealTimeSpeedupShellContextMenuExtension DeleteKey: HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\QMContextScan DeleteKey: HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\QMContextUninstall C:\WINDOWS\System32\drivers\TAOKernelEx64_ev.sys DeleteValue: HKCU\SOFTWARE\Microsoft\Internet Explorer\Toolbar|{2318C2B1-4965-11D4-9B18-009027A5CD4F} HKLM\SYSTEM\CurrentControlSet\Services\0162281511199756mcinstcleanup C:\Users\jean-\AppData\Local\Temp\0162281511199756mcinst.exe C:\Program Files (x86)\McAfee C:\ProgramData\McAfee HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION HKU\S-1-5-21-4265624635-2019933758-61733912-1001\...\MountPoints2: G - "G:\SFR_Setup.exe" HKU\S-1-5-21-4265624635-2019933758-61733912-1001\...\MountPoints2: J - "J:\SFR_Setup.exe" HKU\S-1-5-21-4265624635-2019933758-61733912-1001\...\MountPoints2: {a9f1fc3c-c3cd-11e7-b8fd-4c72b9f956a2} - "G:\SFR_Setup.exe" ShortcutTarget: $McRebootA5E6DEAA56$.lnk -> (Pas de fichier) GroupPolicy: Restriction <==== ATTENTION HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = SearchScopes: HKLM -> DefaultScope la valeur est absente SearchScopes: HKLM-x32 -> DefaultScope la valeur est absente BHO: ????????? -> {7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B} -> Pas de fichier Toolbar: HKU\S-1-5-21-4265624635-2019933758-61733912-1001 -> Pas de nom - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Pas de fichier Handler: WSISVCUchrome - Pas de valeur CLSID S2 0162281511199756mcinstcleanup; C:\Users\jean-\AppData\Local\Temp\0162281511199756mcinst.exe [883024 2017-11-20] (McAfee, Inc.) <==== ATTENTION S3 Common Toolkit 2; "C:\Program Files (x86)\Common Files\Common Toolkit Suite\Tools\x64\CommonToolkit2.exe" [X] S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [X] S2 QQPCRTP; "C:\Program Files (x86)\Tencent\QQPCMgr\12.9.19161.223\QQPCRtp.exe" -r [X] U2 agp440; pas de ImagePath U0 Compbatt; pas de ImagePath U2 ERSvc; pas de ImagePath U2 IAStorDataMgrsvc; pas de ImagePath U2 NIHardwareService; pas de ImagePath U2 NVSvc; pas de ImagePath U2 Parvdm; pas de ImagePath S1 QMUdisk; \??\C:\Program Files (x86)\Tencent\QQPCMgr\12.9.19161.223\QMUdisk64_ev.sys [X] S1 softaal; \??\C:\Program Files (x86)\Tencent\QQPCMgr\12.9.19161.223\softaal64_ev.sys [X] U2 srService; pas de ImagePath S3 TcHardWare; \??\C:\Program Files (x86)\Tencent\QQPCMgr\12.9.19161.223\QQPCHW-x64_ev.sys [X] S1 TSDefenseBt; \??\C:\Program Files (x86)\Tencent\QQPCMgr\12.9.19161.223\TSDefenseBT64.sys [X] S1 ZAM; \??\C:\WINDOWS\System32\drivers\zam64.sys [X] S3 vdbus; pas de ImagePath 2017-11-20 18:42 - 2017-11-20 15:16 - 000883024 _____ (McAfee, Inc.) C:\Users\jean-\AppData\Local\Temp\0162281511199756mcinst.exe 2017-11-20 18:45 - 2017-10-12 18:12 - 002883768 _____ (Paramount Software UK Ltd) C:\Users\jean-\AppData\Local\Temp\xReflect.exe ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Pas de fichier ShellIconOverlayIdentifiers: [.QMDeskTopGCIcon] -> {B7667919-3765-4815-A66D-98A09BE662D6} => C:\Program Files (x86)\Tencent\QQPCMgr\12.9.19161.223\QMGCShellExt64.dll -> Pas de fichier ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Pas de fichier ContextMenuHandlers3: [QMContextScan] -> {63332668-8CE1-445D-A5EE-25929176714E} => -> Pas de fichier ContextMenuHandlers3: [QMContextUninstall] -> {CBDECEF7-7A29-4cbf-A009-2673D82C7BF9} => -> Pas de fichier ContextMenuHandlers5: [QMRealTimeSpeedupShellContextMenuExtension] -> {C5617F6A-39BB-436D-91CF-61C1B45DD688} => C:\Program Files (x86)\Tencent\QQPCMgr\12.9.19161.223\QMGCShellExt64.dll -> Pas de fichier ContextMenuHandlers6: [QMContextScan] -> {63332668-8CE1-445D-A5EE-25929176714E} => -> Pas de fichier ContextMenuHandlers6: [QMContextUninstall] -> {CBDECEF7-7A29-4cbf-A009-2673D82C7BF9} => -> Pas de fichier ContextMenuHandlers1_S-1-5-21-4265624635-2019933758-61733912-1001: [ FileSyncEx] -> [CC]{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Pas de fichier ContextMenuHandlers4_S-1-5-21-4265624635-2019933758-61733912-1001: [ FileSyncEx] -> [CC]{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Pas de fichier ContextMenuHandlers5_S-1-5-21-4265624635-2019933758-61733912-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Pas de fichier Task: {243C50DA-C0E0-47C1-B696-C3A29E4AB754} - \Auslogics\Disk Defrag Prof\Task {00000001-768F-4407-9F50-E9EADEE5F9F0} for jean- -> Pas de fichier <==== ATTENTION Task: {BF73AD02-7A9F-475E-95B0-7BF159E5BE86} - \Auslogics\Disk Defrag Prof\Task {00000001-B25E-476C-8612-71F182EB3FDE} for jean- -> Pas de fichier <==== ATTENTION Task: {CE71B2D1-617A-47FC-B7F0-B9BE42E4ED22} - \Auslogics\Disk Defrag Prof\Task {00000001-BFBA-49BB-85C7-F7779F2C619C} for jean- -> Pas de fichier <==== ATTENTION Task: C:\WINDOWS\Tasks\EPSON XP-710 Series Invitation {14E3A905-365F-481D-99D5-B624F0CB45D1}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLPE.EXE Task: C:\WINDOWS\Tasks\EPSON XP-710 Series Invitation {E3C7832B-981C-4D8A-9765-0314DE4144D7}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLPE.EXE Task: C:\WINDOWS\Tasks\EPSON XP-710 Series Update {14E3A905-365F-481D-99D5-B624F0CB45D1}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLPE.EXE:/EXE:{14E3A905-365F-481D-99D5-B624F0CB45D1} /F:UpdateWORKGROUP\DESKTOP-37KC94K$CSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\WINDOWS\Tasks\EPSON XP-710 Series Update {E3C7832B-981C-4D8A-9765-0314DE4144D7}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLPE.EXE:/EXE:{E3C7832B-981C-4D8A-9765-0314DE4144D7} /F:UpdateWORKGROUP\DESKTOP-37KC94K$CSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi AlternateDataStreams: C:\ProgramData\Temp:0FF263E8 [338] C:\Users\jean-\Desktop\Pre_Scan_Restore.lnk C:\Users\jean-\Desktop\OBIS en Oath de Widen & son app officielle PDFElement\PDFelement 6 Pro.lnk C:\Users\jean-\Desktop\LFS Hyper-100% Sécurisé-Cewbé-Widen Finalis Suite 19\CyberLink PresenterLink+.lnk C:\Users\jean-\Desktop\LFS Hyper-100% Sécurisé-Cewbé-Widen Finalis Suite 19\CyberLink YouCam 7.lnk C:\Users\jean-\Desktop\LFS Hyper-100% Sécurisé-Cewbé-Widen Finalis Suite 19\EaseUS Todo Backup Free 9.2.lnk C:\Users\jean-\Desktop\LFS Hyper-100% Sécurisé-Cewbé-Widen Finalis Suite 19\Google Chrome.lnk cmd: ipconfig /flushdns cmd: netsh winsock reset Cmd: netsh advfirewall reset Cmd: Netsh advfirewall set allprofiles state on end::
......................... Ma mission se termine C ' est la dernière ligne droite
Adwcleaner ; FRST ; KVRT_Data
Fin de désinfection
Cloner son système Windows 7
Créer une image système Windows 8 Créer une image système Windows 8.1 Sauvegarde du système Windows 10 Recommandations aux possesseurs de nouveaux PC
| |||||||
Groupe Sécurité |
Laissez tomber "cmd /c rd /s /q %appdata%\zhp", c'est juste pour virer les restes de ZHP. Pour désinstaller les programmes , vous pouvez utiliser Ccleaner /outils/desinstallation....... ou avec Revo uninstaller. version portable : https://www.pcastuces.com/logitheque/revo_uninstaller.htm
| |||||||
| ||||||||
Les bons plans du moment PC Astuces | Tous les Bons Plans | ||||||||||||||||||
| |||||||||||||||||||
| Sujets relatifs | ||
|