Bonsoir, je viens de passer combofix sur mon ordinateur. J'ai comme résultat le compte rendu qui suit. Est ce que quelqu'un peut me dire si j'ai bien supprimé le virus : win32:malware-gen ?
Merci d'avance pour vos réponses.
ComboFix 13-12-08.01 - Nina 08/12/2013 20:27:05.1.2 - x64
Microsoft Windows 7 Édition Familiale Premium 6.1.7601.1.1252.33.1036.18.4092.1991 [GMT 1:00]
Lancé depuis: c:\users\Nina\Downloads\ComboFix.exe
AV: avast! Antivirus *Enabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Enabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\LinkSwift
c:\program files (x86)\LinkSwift\bin\plugins\LinkSwift.CompatibilityChecker.dll
c:\program files (x86)\LinkSwift\bin\plugins\LinkSwift.FFUpdate.dll
c:\program files (x86)\LinkSwift\bin\plugins\LinkSwift.GCUpdate.dll
c:\program files (x86)\LinkSwift\bin\plugins\LinkSwift.IEUpdate.dll
c:\program files (x86)\LinkSwift\bin\sqlite3.dll
c:\program files (x86)\LinkSwift\bin\utilLinkSwift.exe
c:\program files (x86)\LinkSwift\bin\utilLinkSwift.InstallState
c:\program files (x86)\LinkSwift\LinkSwift.Common.dll
c:\program files (x86)\LinkSwift\LinkSwift.ico
c:\program files (x86)\LinkSwift\LinkSwiftBHO.dll
c:\program files (x86)\LinkSwift\Microsoft.Win32.TaskScheduler.dll
c:\program files (x86)\LinkSwift\odpccdgkmiicgocepijnaeihjnjnomca.crx
c:\program files (x86)\LinkSwift\sqlite3.exe
c:\program files (x86)\LinkSwift\update\u1rvssmo.fyt.exe
c:\program files (x86)\LinkSwift\updateLinkSwift.exe
c:\program files (x86)\LinkSwift\updateLinkSwift.InstallState
c:\users\Nina\AppData\Local\Temp\_MEI38362\_ctypes.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\_elementtree.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\_hashlib.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\_multiprocessing.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\_socket.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\_ssl.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\msvcp100.dll
c:\users\Nina\AppData\Local\Temp\_MEI38362\msvcr100.dll
c:\users\Nina\AppData\Local\Temp\_MEI38362\pyexpat.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\pysqlite2._sqlite.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\python27.dll
c:\users\Nina\AppData\Local\Temp\_MEI38362\pythoncom27.dll
c:\users\Nina\AppData\Local\Temp\_MEI38362\PyWinTypes27.dll
c:\users\Nina\AppData\Local\Temp\_MEI38362\select.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\unicodedata.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\win32api.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\win32com.shell.shell.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\win32crypt.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\win32event.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\win32file.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\win32inet.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\win32pdh.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\win32process.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\win32profile.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\win32security.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\win32ts.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\windows._cacheinvalidation.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\wx._controls_.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\wx._core_.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\wx._gdi_.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\wx._html2.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\wx._misc_.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\wx._windows_.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\wx._wizard.pyd
c:\users\Nina\AppData\Local\Temp\_MEI38362\wxbase294u_net_vc90.dll
c:\users\Nina\AppData\Local\Temp\_MEI38362\wxbase294u_vc90.dll
c:\users\Nina\AppData\Local\Temp\_MEI38362\wxmsw294u_adv_vc90.dll
c:\users\Nina\AppData\Local\Temp\_MEI38362\wxmsw294u_core_vc90.dll
c:\users\Nina\AppData\Local\Temp\_MEI38362\wxmsw294u_html_vc90.dll
c:\users\Nina\AppData\Local\Temp\_MEI38362\wxmsw294u_webview_vc90.dll
c:\users\Nina\EULA.txt
c:\windows\wininit.ini
.
.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_Update LinkSwift
-------\Service_Util LinkSwift
-------\Service_Update LinkSwift
-------\Service_Util LinkSwift
.
.
((((((((((((((((((((((((((((( Fichiers créés du 2013-11-08 au 2013-12-08 ))))))))))))))))))))))))))))))))))))
.
.
2013-12-06 16:53 . 2013-11-08 03:12 10285968 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{0D9A0F02-4AC1-4D9F-BE37-2A54B6649E4F}\mpengine.dll
2013-12-01 10:41 . 2008-05-07 18:59 99840 ----a-w- c:\windows\system32\Spool\prtprocs\x64\HPZPPLHN.DLL
2013-11-26 22:53 . 2013-10-14 17:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE
2013-11-24 13:31 . 2013-11-24 13:31 -------- d-----w- c:\users\Nina\AppData\Roaming\QuosaDDM
2013-11-24 13:31 . 2013-11-24 13:31 -------- d-----w- c:\programdata\Oracle
2013-11-24 13:31 . 2013-11-24 13:31 -------- d-----w- c:\program files (x86)\Common Files\Java
2013-11-24 13:30 . 2013-11-24 13:30 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-11-24 13:30 . 2013-11-24 13:30 -------- d-----w- c:\program files (x86)\Java
2013-11-19 19:22 . 2013-11-19 19:22 -------- d-----w- c:\users\Nina\AppData\Roaming\DigitalSite
2013-11-19 19:22 . 2013-11-19 19:22 -------- d-----w- c:\program files (x86)\VideoConverter
2013-11-19 19:16 . 2013-11-19 22:13 -------- d-----w- c:\program files (x86)\Free mp3 Wma Converter
2013-11-19 17:42 . 2013-11-19 17:42 -------- d-----w- c:\program files (x86)\ConvertHelper
2013-11-19 17:41 . 2013-11-19 17:43 -------- d-----w- c:\users\Nina\dwhelper
2013-11-19 17:41 . 2013-11-19 17:41 -------- d-----w- c:\users\Nina\AppData\Local\Macromedia
2013-11-19 17:40 . 2013-11-19 17:40 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-11-19 17:40 . 2013-11-19 17:40 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-11-19 17:40 . 2013-11-19 17:40 -------- d-----w- c:\windows\system32\Macromed
2013-11-19 17:36 . 2013-11-19 17:36 -------- d-----w- c:\program files (x86)\Common Files\Adobe
2013-11-19 17:12 . 2013-11-19 17:12 -------- d-----w- c:\users\Nina\AppData\Local\Mozilla
2013-11-19 17:12 . 2013-11-19 17:12 -------- d-----w- c:\program files (x86)\Mozilla Maintenance Service
2013-11-14 21:08 . 2013-10-12 02:30 830464 ----a-w- c:\windows\system32\nshwfp.dll
2013-11-14 21:08 . 2013-10-12 02:29 859648 ----a-w- c:\windows\system32\IKEEXT.DLL
2013-11-14 21:08 . 2013-10-12 02:29 324096 ----a-w- c:\windows\system32\FWPUCLNT.DLL
2013-11-14 21:08 . 2013-10-12 02:03 656896 ----a-w- c:\windows\SysWow64\nshwfp.dll
2013-11-14 21:08 . 2013-10-12 02:01 216576 ----a-w- c:\windows\SysWow64\FWPUCLNT.DLL
2013-11-10 12:55 . 2013-11-10 12:55 -------- d-----w- c:\users\Nina\AppData\Roaming\AVAST Software
2013-11-10 12:20 . 2013-11-10 12:35 -------- d-----w- c:\program files (x86)\Slowin Killer
2013-11-10 11:25 . 2013-11-10 11:25 -------- d-----w- c:\program files\iPod
2013-11-10 11:25 . 2013-11-10 11:28 -------- d-----w- c:\programdata\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-11-10 11:25 . 2013-11-10 11:28 -------- d-----w- c:\program files\iTunes
2013-11-10 11:25 . 2013-11-10 11:28 -------- d-----w- c:\program files (x86)\iTunes
.
.
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-11-14 22:35 . 2013-10-02 07:01 82896128 ----a-w- c:\windows\system32\MRT.exe
2013-11-11 04:50 . 2013-09-13 14:42 267936 ------w- c:\windows\system32\MpSigStub.exe
2013-11-10 12:47 . 2013-09-10 12:12 43152 ----a-w- c:\windows\avastSS.scr
2013-11-10 12:47 . 2013-09-09 18:27 334648 ----a-w- c:\windows\system32\aswBoot.exe
2013-09-22 01:28 . 2013-09-22 01:28 9728 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-09-22 01:28 . 2013-09-22 01:28 9728 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-09-22 01:28 . 2013-09-22 01:28 648192 ----a-w- c:\windows\system32\d3d10level9.dll
2013-09-22 01:28 . 2013-09-22 01:28 604160 ----a-w- c:\windows\SysWow64\d3d10level9.dll
2013-09-22 01:28 . 2013-09-22 01:28 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-09-22 01:28 . 2013-09-22 01:28 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-09-22 01:28 . 2013-09-22 01:28 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-09-22 01:28 . 2013-09-22 01:28 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-09-22 01:28 . 2013-09-22 01:28 522752 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2013-09-22 01:28 . 2013-09-22 01:28 465920 ----a-w- c:\windows\system32\WMPhoto.dll
2013-09-22 01:28 . 2013-09-22 01:28 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll
2013-09-22 01:28 . 2013-09-22 01:28 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-09-22 01:28 . 2013-09-22 01:28 4096 ---ha-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-09-22 01:28 . 2013-09-22 01:28 3928064 ----a-w- c:\windows\system32\d2d1.dll
2013-09-22 01:28 . 2013-09-22 01:28 364544 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll
2013-09-22 01:28 . 2013-09-22 01:28 363008 ----a-w- c:\windows\system32\dxgi.dll
2013-09-22 01:28 . 2013-09-22 01:28 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-09-22 01:28 . 2013-09-22 01:28 3584 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-09-22 01:28 . 2013-09-22 01:28 3419136 ----a-w- c:\windows\SysWow64\d2d1.dll
2013-09-22 01:28 . 2013-09-22 01:28 333312 ----a-w- c:\windows\system32\d3d10_1core.dll
2013-09-22 01:28 . 2013-09-22 01:28 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
2013-09-22 01:28 . 2013-09-22 01:28 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-09-22 01:28 . 2013-09-22 01:28 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-09-22 01:28 . 2013-09-22 01:28 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-09-22 01:28 . 2013-09-22 01:28 296960 ----a-w- c:\windows\system32\d3d10core.dll
2013-09-22 01:28 . 2013-09-22 01:28 293376 ----a-w- c:\windows\SysWow64\dxgi.dll
2013-09-22 01:28 . 2013-09-22 01:28 2776576 ----a-w- c:\windows\system32\msmpeg2vdec.dll
2013-09-22 01:28 . 2013-09-22 01:28 2565120 ----a-w- c:\windows\system32\d3d10warp.dll
2013-09-22 01:28 . 2013-09-22 01:28 2560 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-09-22 01:28 . 2013-09-22 01:28 2560 ---ha-w- c:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-09-22 01:28 . 2013-09-22 01:28 249856 ----a-w- c:\windows\SysWow64\d3d10_1core.dll
2013-09-22 01:28 . 2013-09-22 01:28 245248 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2013-09-22 01:28 . 2013-09-22 01:28 2284544 ----a-w- c:\windows\SysWow64\msmpeg2vdec.dll
2013-09-22 01:28 . 2013-09-22 01:28 221184 ----a-w- c:\windows\system32\UIAnimation.dll
2013-09-22 01:28 . 2013-09-22 01:28 220160 ----a-w- c:\windows\SysWow64\d3d10core.dll
2013-09-22 01:28 . 2013-09-22 01:28 207872 ----a-w- c:\windows\SysWow64\WindowsCodecsExt.dll
2013-09-22 01:28 . 2013-09-22 01:28 1988096 ----a-w- c:\windows\SysWow64\d3d10warp.dll
2013-09-22 01:28 . 2013-09-22 01:28 194560 ----a-w- c:\windows\system32\d3d10_1.dll
2013-09-22 01:28 . 2013-09-22 01:28 187392 ----a-w- c:\windows\SysWow64\UIAnimation.dll
2013-09-22 01:28 . 2013-09-22 01:28 1682432 ----a-w- c:\windows\system32\XpsPrint.dll
2013-09-22 01:28 . 2013-09-22 01:28 161792 ----a-w- c:\windows\SysWow64\d3d10_1.dll
2013-09-22 01:28 . 2013-09-22 01:28 1238528 ----a-w- c:\windows\system32\d3d10.dll
2013-09-22 01:28 . 2013-09-22 01:28 1175552 ----a-w- c:\windows\system32\FntCache.dll
2013-09-22 01:28 . 2013-09-22 01:28 1158144 ----a-w- c:\windows\SysWow64\XpsPrint.dll
2013-09-22 01:28 . 2013-09-22 01:28 1080832 ----a-w- c:\windows\SysWow64\d3d10.dll
2013-09-22 01:28 . 2013-09-22 01:28 10752 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-09-22 01:28 . 2013-09-22 01:28 10752 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-09-11 20:02 . 2013-09-11 20:02 715038 ----a-w- c:\windows\unins000.exe
2013-09-10 20:04 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2013-09-10 20:04 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2013-09-10 11:28 . 2013-09-09 18:22 773800 ----a-w- c:\windows\SysWow64\msvcr100.dll
2013-09-10 11:28 . 2013-09-09 18:22 421032 ----a-w- c:\windows\SysWow64\msvcp100.dll
.
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GoogleDriveSync"="c:\program files (x86)\Google\Drive\googledrivesync.exe" [2013-09-25 20133824]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-03-24 102400]
"Dell Webcam Central"="c:\program files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" [2009-06-24 409744]
"Desktop Disc Tool"="c:\program files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe" [2009-10-15 498160]
"DellSupportCenter"="c:\program files (x86)\Dell Support Center\bin\sprtcmd.exe" [2009-05-21 206064]
"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-04-21 59720]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2013-05-01 421888]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2013-11-01 152392]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-09-05 958576]
"20131121"="c:\program files\AVAST Software\Avast\setup\emupdate\3e5bf61a-a512-4767-8d44-19208e08ac57.exe" [2013-11-23 180184]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-07-02 254336]
.
c:\users\Nina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dell Dock.lnk - c:\program files\Dell\DellDock\DellDock.exe [2009-12-16 1324384]
iTunesHelper.vbe [2013-10-14 69558262]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2009-7-2 1079584]
.
c:\users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dell Dock First Run.lnk - c:\program files\Dell\DellDock\DellDock.exe /firstrun [2009-12-16 1324384]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer3"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0sdnclean64.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2009-07-14 01:14 141824 ----a-w- c:\windows\System32\wscript.exe
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys;c:\windows\SYSNATIVE\DRIVERS\btwl2cap.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUStor.sys [x]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x]
R3 WatAdminSvc;Service Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys;c:\windows\SYSNATIVE\DRIVERS\yk62x64.sys [x]
S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys;c:\windows\SYSNATIVE\Drivers\PxHlpa64.sys [x]
S2 AESTFilters;Andrea ST Filters Service;c:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_58afa5ca50c7b5e7\AESTSr64.exe;c:\windows\SYSNATIVE\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_58afa5ca50c7b5e7\AESTSr64.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 DockLoginService;Dock Login Service;c:\program files\Dell\DellDock\DockLogin.exe;c:\program files\Dell\DellDock\DockLogin.exe [x]
S2 SftService;SoftThinks Agent Service;c:\program files (x86)\Dell DataSafe Local Backup\sftservice.EXE;c:\program files (x86)\Dell DataSafe Local Backup\sftservice.EXE [x]
S3 BcmVWL;Broadcom Virtual Wireless;c:\windows\system32\DRIVERS\bcmvwl64.sys;c:\windows\SYSNATIVE\DRIVERS\bcmvwl64.sys [x]
S3 CtClsFlt;Creative Camera Class Upper Filter Driver;c:\windows\system32\DRIVERS\CtClsFlt.sys;c:\windows\SYSNATIVE\DRIVERS\CtClsFlt.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-10-19 11:32 1185744 ----a-w- c:\program files (x86)\Google\Chrome\Application\30.0.1599.101\Installer\chrmstp.exe
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2013-09-25 15:37 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2013-09-25 15:37 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}]
2013-09-25 15:37 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2013-09-25 15:37 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2013-09-25 15:37 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2010-03-17 487424]
"Broadcom Wireless Manager UI"="c:\program files\Dell\DW WLAN Card\WLTRAY.exe" [2010-02-03 5712896]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"NCInstallQueue"="netman.dll" [2009-07-14 360448]
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.google.com
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = *.local
IE: E&xporter vers Microsoft Excel - c:\progra~2\MIF5BA~1\Office12\EXCEL.EXE/3000
IE: Envoyer au périphérique &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: Envoyer l'&image au périphérique Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
FF - ProfilePath - c:\users\Nina\AppData\Roaming\Mozilla\Firefox\Profiles\bp9d910u.default\
FF - ExtSQL: 2013-11-10 13:47; [email protected]; c:\program files\AVAST Software\Avast\WebRep\FF
FF - ExtSQL: 2013-11-19 18:13; {b9db16a4-6edc-47ec-a1f4-b86292ed211d}; c:\users\Nina\AppData\Roaming\Mozilla\Firefox\Profiles\bp9d910u.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
FF - ExtSQL: 2013-11-19 21:49; [email protected]; c:\users\Nina\AppData\Roaming\Mozilla\Firefox\Profiles\bp9d910u.default\extensions\[email protected]
.
- - - - ORPHELINS SUPPRIMES - - - -
.
BHO-{323420b6-65e5-4657-8106-a27392d4d4aa} - c:\program files (x86)\LinkSwift\LinkSwiftbho.dll
Wow6432Node-HKLM-Run-DivXMediaServer - c:\program files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe
SafeBoot-mcmscsvc
SafeBoot-MCODS
MSConfigStartUp-Sidebar - %ProgramFiles(x86)%\Windows Sidebar\Sidebar.exe
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - (no file)
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
AddRemove-DSite - c:\users\Nina\AppData\Roaming\DSite\UpdateProc\UpdateTask.exe
.
.
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10d.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10d.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}]
@Denied: (A 2) (Everyone)
@="IFlashBroker3"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Autres processus actifs ------------------------
.
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files (x86)\Dell Support Center\bin\sprtsvc.exe
.
**************************************************************************
.
Heure de fin: 2013-12-08 20:41:17 - La machine a redémarré
ComboFix-quarantined-files.txt 2013-12-08 19:41
.
Avant-CF: 225 861 554 176 octets libres
Après-CF: 225 889 476 608 octets libres
.
- - End Of File - - 068DDDF8600C1F0C9AFA6C783ECDB307
A36C5E4F47E84449FF07ED3517B43A31
compte rendu combo fix
Modérateurs : Mods Windows, Helper
- Messages : 113189
- Inscription : 10 sept. 2005 13:57
Re: compte rendu combo fix
Salut,
Juste un programme parasite, à priori.
Tu donnes aucune information sur la détection Avast! ...
Juste un programme parasite, à priori.
Tu donnes aucune information sur la détection Avast! ...
Première règle élémentaire de sécurité : on réfléchit puis on clic et pas l'inverse - Les fichiers/programmes c'est comme les bonbons, quand ça vient d'un inconnu, on n'accepte pas !
➔ Comment protéger son PC des virus
➔ Windows 11 : Compatibilité, Configuration minimale requise, télécharger ISO et installer Windows 11
Comment demander de l'aide sur le forum
Partagez malekal.com : n'hésitez pas à partager les articles qui vous plaisent sur la page Facebook du site.
➔ Comment protéger son PC des virus
➔ Windows 11 : Compatibilité, Configuration minimale requise, télécharger ISO et installer Windows 11
Comment demander de l'aide sur le forum
Partagez malekal.com : n'hésitez pas à partager les articles qui vous plaisent sur la page Facebook du site.
-
- Sujets similaires
- Réponses
- Vues
- Dernier message
-
- 3 Réponses
- 147 Vues
-
Dernier message par Malekal_morte
-
-
Nous ne pouvons pas vous connecter à votre compte [résolu]
par phildust » » dans Windows : Résoudre les problèmes - 9 Réponses
- 151 Vues
-
Dernier message par Malekal_morte
-
-
- 7 Réponses
- 327 Vues
-
Dernier message par Parisien_entraide
-
- 9 Réponses
- 392 Vues
-
Dernier message par Parisien_entraide
-
- 1 Réponses
- 108 Vues
-
Dernier message par Parisien_entraide