Résultats de correction de Farbar Recovery Scan Tool (x64) Version: 17.01.2018 01 Exécuté par Maillard (20-01-2018 17:49:19) Run:1 Exécuté depuis C:\Users\Maillard\Desktop Profils chargés: Maillard (Profils disponibles: Maillard & Evelyne & DefaultAppPool) Mode d'amorçage: Normal ============================================== fixlist contenu: ***************** CreateRestorePoint: CloseProcesses: HKLM-x32\...\Run: [] => [X] HKU\S-1-5-21-2049331742-3813407782-120357470-1000\...\Run: [Baptiste] => explorer.exe hxxp://ozirizsoos.info DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0E08DA8D-A456-4575-97C8-3EF08875B376} DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{0E08DA8D-A456-4575-97C8-3EF08875B376} C:\Windows\System32\Tasks\Microsoft\VisualStudio\VSIX Auto Update 14 DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8692DCD2-4C5A-43BE-B146-42277CFE2CC6} DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{8692DCD2-4C5A-43BE-B146-42277CFE2CC6} C:\Windows\System32\Tasks\Product Updater DeleteKey: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ShellExtension <== Reinstall Software ShellExtension DeleteKey: HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ShellExtension <== Reinstall Software ShellExtension DeleteKey: HKLM\SOFTWARE\Classes\Drive\shellex\ContextMenuHandlers\ShellExtension <== Reinstall Software ShellExtension DeleteKey: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\MEGA (Context menu) DeleteKey: HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} DeleteKey: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\PDFCreator.ShellContextMenu DeleteKey: HKLM\Software\Classes\CLSID\{d9cea52e-100d-4159-89ea-76e845bc13e1} DeleteKey: HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\MEGA (Context menu) DeleteKey: HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} DeleteKey: HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\MEGA (Context menu) DeleteKey: HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} DeleteKey: HKLM\SOFTWARE\Classes\Drive\shellex\ContextMenuHandlers\MEGA (Context menu) DeleteKey: HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} DeleteKey: HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Windscribe DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{F1198D03-31D9-4106-9B52-A7B1C5EC823B} DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{22E5651A-2EDE-4E12-A179-A0EA862290F4} DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{A9411BC1-F84A-43A6-A91A-A3A1153D27BA} DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{63ACD8FC-7FD4-4D36-99D4-0B897A51CF8D} DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{1CD6979F-84CD-4ECC-8931-F119B7EDD399} DeleteKey: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\MEGA (Context menu) DeleteKey: HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} DeleteKey: HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} DeleteKey: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\PDFCreator.ShellContextMenu DeleteKey: HKLM\Software\Classes\CLSID\{d9cea52e-100d-4159-89ea-76e845bc13e1} DeleteKey: HKLM\Software\Classes\CLSID\{d9cea52e-100d-4159-89ea-76e845bc13e1} DeleteKey: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ShellExtension DeleteKey: HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\MEGA (Context menu) DeleteKey: HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\MEGA (Context menu) DeleteKey: HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ShellExtension DeleteKey: HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\MEGA (Context menu) DeleteKey: HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\ShellExtension SearchScopes: HKU\S-1-5-21-2049331742-3813407782-120357470-1000 -> {C0C3A6C6-03BC-4195-8FCB-AEA091301353} URL = hxxps://fr.search.yahoo.com/yhs/search?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__ch_WCYID10301__171007__yaie&p={searchTerms} S3 avchv; system32\DRIVERS\avchv.sys [X] S3 cpuz140; \??\C:\Users\Baptiste\AppData\Local\Temp\cpuz140\cpuz140_x64.sys [X] S3 cpuz141; \??\C:\Users\Baptiste\AppData\Local\Temp\cpuz141\cpuz141_x64.sys [X] 2016-03-01 20:13 - 2016-03-01 20:13 - 000593952 _____ (Duplex Secure Ltd) C:\Users\Baptiste\AppData\Local\Temp\SPTDinst.exe ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Baptiste\AppData\Local\MEGAsync\ShellExtX32.dll -> Pas de fichier ShellIconOverlayIdentifiers-x32-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Baptiste\AppData\Local\MEGAsync\ShellExtX32.dll -> Pas de fichier ShellIconOverlayIdentifiers-x32-x32-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Baptiste\AppData\Local\MEGAsync\ShellExtX32.dll -> Pas de fichier ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Baptiste\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Baptiste\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Baptiste\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Baptiste\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier Task: {DF845FD2-4546-4C94-BA56-CC9116061769} - System32\Tasks\Baptiste => cmd.exe /c REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /f /v Baptiste /t REG_SZ /d "explorer.exe hxxp://ozirizsoos.info" AlternateDataStreams: C:\Users\Baptiste:Heroes & Generals [38] EmptyTemp: ***************** Le Point de restauration a été créé avec succès. Processus fermé avec succès. "HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\" => non trouvé(e) "HKU\S-1-5-21-2049331742-3813407782-120357470-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Baptiste" => non trouvé(e) HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0E08DA8D-A456-4575-97C8-3EF08875B376} => impossible à supprimer clé. ErrorCode1: 0x00000001 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{0E08DA8D-A456-4575-97C8-3EF08875B376} => clé non trouvé(e) "C:\Windows\System32\Tasks\Microsoft\VisualStudio\VSIX Auto Update 14" => non trouvé(e) HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8692DCD2-4C5A-43BE-B146-42277CFE2CC6} => clé non trouvé(e) HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{8692DCD2-4C5A-43BE-B146-42277CFE2CC6} => clé non trouvé(e) "C:\Windows\System32\Tasks\Product Updater" => non trouvé(e) HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ShellExtension <== Reinstall Software ShellExtension => clé non trouvé(e) HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ShellExtension <== Reinstall Software ShellExtension => clé non trouvé(e) HKLM\SOFTWARE\Classes\Drive\shellex\ContextMenuHandlers\ShellExtension <== Reinstall Software ShellExtension => clé non trouvé(e) HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\MEGA (Context menu) => clé non trouvé(e) HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} => clé non trouvé(e) HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\PDFCreator.ShellContextMenu => clé non trouvé(e) HKLM\Software\Classes\CLSID\{d9cea52e-100d-4159-89ea-76e845bc13e1} => clé non trouvé(e) HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\MEGA (Context menu) => clé non trouvé(e) HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} => clé non trouvé(e) HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\MEGA (Context menu) => clé non trouvé(e) HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} => clé non trouvé(e) HKLM\SOFTWARE\Classes\Drive\shellex\ContextMenuHandlers\MEGA (Context menu) => clé non trouvé(e) HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} => clé non trouvé(e) "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Windscribe" => non trouvé(e) "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F1198D03-31D9-4106-9B52-A7B1C5EC823B}" => non trouvé(e) "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{22E5651A-2EDE-4E12-A179-A0EA862290F4}" => non trouvé(e) "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A9411BC1-F84A-43A6-A91A-A3A1153D27BA}" => non trouvé(e) "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{63ACD8FC-7FD4-4D36-99D4-0B897A51CF8D}" => non trouvé(e) "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1CD6979F-84CD-4ECC-8931-F119B7EDD399}" => non trouvé(e) HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\MEGA (Context menu) => clé non trouvé(e) HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} => clé non trouvé(e) HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} => clé non trouvé(e) HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\PDFCreator.ShellContextMenu => clé non trouvé(e) HKLM\Software\Classes\CLSID\{d9cea52e-100d-4159-89ea-76e845bc13e1} => clé non trouvé(e) HKLM\Software\Classes\CLSID\{d9cea52e-100d-4159-89ea-76e845bc13e1} => clé non trouvé(e) HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ShellExtension => clé non trouvé(e) HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\MEGA (Context menu) => clé non trouvé(e) HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\MEGA (Context menu) => clé non trouvé(e) HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ShellExtension => clé non trouvé(e) HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\MEGA (Context menu) => clé non trouvé(e) HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\ShellExtension => clé non trouvé(e) "HKU\S-1-5-21-2049331742-3813407782-120357470-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{C0C3A6C6-03BC-4195-8FCB-AEA091301353}" => non trouvé(e) HKLM\Software\Classes\CLSID\{C0C3A6C6-03BC-4195-8FCB-AEA091301353} => clé non trouvé(e) avchv => service non trouvé(e). cpuz140 => service non trouvé(e). cpuz141 => service non trouvé(e). "C:\Users\Baptiste\AppData\Local\Temp\SPTDinst.exe" => non trouvé(e) HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ MEGA (Pending) => clé non trouvé(e) HKLM\Software\Wow6432Node\Classes\CLSID\{056D528D-CE28-4194-9BA3-BA2E9197FF8C} => clé non trouvé(e) ShellIconOverlayIdentifiers-x32-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Baptiste\AppData\Local\MEGAsync\ShellExtX32.dll -> Pas de fichier => Erreur: Pas de correction automatique trouvée pour cet élément. ShellIconOverlayIdentifiers-x32-x32-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Baptiste\AppData\Local\MEGAsync\ShellExtX32.dll -> Pas de fichier => Erreur: Pas de correction automatique trouvée pour cet élément. HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\MEGA (Context menu) => clé non trouvé(e) HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} => clé non trouvé(e) HKLM\Software\Classes\Drive\ShellEx\ContextMenuHandlers\MEGA (Context menu) => clé non trouvé(e) HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} => clé non trouvé(e) HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\MEGA (Context menu) => clé non trouvé(e) HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} => clé non trouvé(e) HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\MEGA (Context menu) => clé non trouvé(e) HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} => clé non trouvé(e) HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DF845FD2-4546-4C94-BA56-CC9116061769} => clé non trouvé(e) "C:\WINDOWS\System32\Tasks\Baptiste" => non trouvé(e) HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Baptiste => clé non trouvé(e) "C:\Users\Baptiste" => ":Heroes & Generals" ADS non trouvé(e). =========== EmptyTemp: ========== BITS transfer queue => 6053888 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 31741827 B Java, Flash, Steam htmlcache => 1184 B Windows/system/drivers => 2085720 B Edge => 18400393 B Chrome => 16481232 B Firefox => 17778029 B Opera => 125952 B Temp, IE cache, history, cookies, recent: Default => 6656 B Users => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 6768 B NetworkService => 5054 B Maillard => 8651858 B Evelyne => 4714754 B DefaultAppPool => 0 B RecycleBin => 0 B EmptyTemp: => 101.1 MB données temporaires supprimées. ================================ Le système a dû redémarrer. ==== Fin de Fixlog 17:51:14 ====