Aller au contenu

mo

Membres
  • Compteur de contenus

    457
  • Inscription

  • Dernière visite

Réputation sur la communauté

1 Neutral

À propos de mo

  • Rang
    Mega Power Member

Profile Information

  • Sexe
    Female
  • Localisation
    rion des landes- 40

Autres informations

  • Votre config
    windows 7
    thunderbird
    firefox
  1. En effet, tout à l' air parfait . Merci Pear et Zébulon, toujours opérationnel depuis 14 ans ( ! ) que je le pratique A qui puis je faire un petit don? Y a t il un site moins dangereux que 01.net pour les téléchargements ?
  2. j'espére que ca ira : j'ai supprimé les fichiers de la corbeille
  3. Rapport de SFTGC (Pierre13) du Jeudi 26 Juin 2014 à 13:21:47 version : 2.2.0.0 Mis à jour le 30/05/2014 Outil lancé en Mode normal et En tant qu'administrateur Windows 7 Home Premium Service Pack 1 64 bits Tool start in D:\Downloads 433 éléments supprimés => 1.88 Mo libérés. (54 s) Attention infection possible ! =>> C:\Users\Monique\AppData\LocalLow\Sun\Java\jre1.7.0_55\lzma.exe C:\Users\Monique\AppData\Local\Temp\acro_rd_dir C:\Users\Monique\AppData\Local\Temp\AXA Banque - Conditions tarifaires - Juillet 2014-1.pdf C:\Users\Monique\AppData\Local\Temp\AXA Banque - Conditions tarifaires - Juillet 2014.pdf C:\Users\Monique\AppData\Local\Temp\Ciné Z Prog du 01 au 16-05-2014.pdf C:\Users\Monique\AppData\Local\Temp\E99-chiens_d'aveugle_(Bon_?_savoir)_2013-1.pps C:\Users\Monique\AppData\Local\Temp\Loyauté 0612.pps C:\Users\Monique\AppData\Local\Temp\Reflexions-1.pps C:\Users\Monique\AppData\Local\Temp\Reflexions.pps C:\Users\Monique\AppData\Local\Temp\svury9l.tmp C:\Users\Monique\AppData\Local\Temp\? .pps C:\Users\Monique\AppData\Local\Temp\?-1.pps C:\Users\Monique\AppData\Local\Temp\?.pps C:\Users\Monique\AppData\Local\Temp\svury9l.tmp\svusq9y.tmp C:\Users\Monique\AppData\LocalLow\Adobe C:\Users\Monique\AppData\LocalLow\EmieSiteList C:\Users\Monique\AppData\LocalLow\EmieUserList C:\Users\Monique\AppData\LocalLow\Evernote C:\Users\Monique\AppData\LocalLow\Sun C:\Users\Monique\AppData\LocalLow\Temp C:\Users\Monique\AppData\LocalLow\Temp\Logs C:\Users\Monique\AppData\LocalLow\Temp\Microsoft C:\Users\Monique\AppData\LocalLow\Temp\Microsoft\OPC C:\Users\Monique\AppData\LocalLow\Sun\Java C:\Users\Monique\AppData\LocalLow\Sun\Java\AU C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment C:\Users\Monique\AppData\LocalLow\Sun\Java\jre1.6.0_22 C:\Users\Monique\AppData\LocalLow\Sun\Java\jre1.6.0_33 C:\Users\Monique\AppData\LocalLow\Sun\Java\jre1.7.0_07 C:\Users\Monique\AppData\LocalLow\Sun\Java\jre1.7.0_09 C:\Users\Monique\AppData\LocalLow\Sun\Java\jre1.7.0_11 C:\Users\Monique\AppData\LocalLow\Sun\Java\jre1.7.0_13 C:\Users\Monique\AppData\LocalLow\Sun\Java\jre1.7.0_15 C:\Users\Monique\AppData\LocalLow\Sun\Java\jre1.7.0_15_x64 C:\Users\Monique\AppData\LocalLow\Sun\Java\jre1.7.0_17 C:\Users\Monique\AppData\LocalLow\Sun\Java\jre1.7.0_21 C:\Users\Monique\AppData\LocalLow\Sun\Java\jre1.7.0_55 C:\Users\Monique\AppData\LocalLow\Sun\Java\jre1.7.0_55\lzma.exe C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\cache C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\deployment.properties C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\ext C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\log C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\security C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\tmp C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\tmp\si C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\0 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\1 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\10 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\11 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\12 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\13 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\14 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\15 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\16 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\17 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\18 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\19 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\2 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\20 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\21 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\22 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\23 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\24 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\25 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\26 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\27 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\28 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\29 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\3 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\30 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\31 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\33 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\34 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\35 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\36 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\37 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\38 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\39 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\4 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\40 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\41 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\42 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\43 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\44 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\45 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\46 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\47 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\48 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\49 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\5 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\50 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\51 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\52 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\53 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\54 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\55 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\56 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\57 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\58 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\59 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\6 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\60 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\61 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\62 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\63 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\7 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\8 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\9 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\lastAccessed C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-20eaaa49 C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-20eaaa49.idx C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\security\baseline.versions C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\security\blacklist.dynamic C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\security\blacklisted.certs C:\Users\Monique\AppData\LocalLow\Sun\Java\Deployment\security\update.timestamp C:\Users\Monique\AppData\LocalLow\Sun\Java\AU\au.cab C:\Users\Monique\AppData\LocalLow\Sun\Java\AU\au.msi C:\Users\Monique\AppData\LocalLow\Microsoft\IME12 C:\Users\Monique\AppData\LocalLow\Microsoft\IMJP12 C:\Users\Monique\AppData\LocalLow\Microsoft\IMJP8_1 C:\Users\Monique\AppData\LocalLow\Microsoft\IMJP9_0 C:\Users\Monique\AppData\LocalLow\Microsoft\Internet Explorer C:\Users\Monique\AppData\LocalLow\Microsoft\Silverlight C:\Users\Monique\AppData\LocalLow\Microsoft\Windows C:\Users\Monique\AppData\LocalLow\Microsoft\Windows\AppCache C:\Users\Monique\AppData\LocalLow\Microsoft\Windows\AppCache\container.dat C:\Users\Monique\AppData\LocalLow\Microsoft\Windows\AppCache\J1LG83P4 C:\Users\Monique\AppData\LocalLow\Microsoft\Windows\AppCache\J1LG83P4\container.dat C:\Users\Monique\AppData\LocalLow\Microsoft\Silverlight\is C:\Users\Monique\AppData\LocalLow\Microsoft\Silverlight\mssl.lck C:\Users\Monique\AppData\LocalLow\Microsoft\Silverlight\OutOfBrowser C:\Users\Monique\AppData\LocalLow\Microsoft\Silverlight\OutOfBrowser\index C:\Users\Monique\AppData\LocalLow\Microsoft\Silverlight\OutOfBrowser\index\h.online-metrix.net C:\Users\Monique\AppData\LocalLow\Microsoft\Silverlight\OutOfBrowser\index\pacs.radiologie-cerim.com C:\Users\Monique\AppData\LocalLow\Microsoft\Silverlight\OutOfBrowser\index\pluzz.francetv.fr C:\Users\Monique\AppData\LocalLow\Microsoft\Silverlight\OutOfBrowser\index\www.france5.fr C:\Users\Monique\AppData\LocalLow\Microsoft\Internet Explorer\iconcache C:\Users\Monique\AppData\LocalLow\Microsoft\Internet Explorer\Services C:\Users\Monique\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{565E3E92-F1EA-493D-ACA3-9F53D8E050EA}.ico C:\Users\Monique\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{569B9535-C926-40D2-A757-E539D6CB021F}.ico C:\Users\Monique\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{6A1806CD-94D4-4689-BA73-E35EA1EA9990}.ico C:\Users\Monique\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{CC83722C-1B7A-4163-9320-9D243D241B41}.ico C:\Users\Monique\AppData\LocalLow\Microsoft\Internet Explorer\iconcache\grp2jin C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_39AA32012A618D407F0206C60DD48EA1 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_49A0F7ED62B84361D2B23E89CDE34920 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0B8D1B774F9EC9738FE5D78C2C332555 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_2CD9E2B64BF925DBA8B67036CF11760F C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_A1FCA30AC310D8EAE948F012B2135AEE C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1DAF2884EC4DFA96BA4A58D4DBC9C406 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\21253908F3CB05D51B1C2DA8B681A785 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\23B523C9E7746F715D33C6527C18EB9D C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_69127A16A82DAE6DB57B8DA92372B1FA C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_57A03DA4220470C137176F42C3709DC1 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\37C951188967C8EB88D99893D9D191FE C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4309200C3DBAD0F6F0DFACE9165FD092 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_33A0493B3756EC93EB52782457685E27 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_569BD946168DB279A65378F7D088CFD0 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_AFC22B77ED08EE3E2B28B6DE75CADDF5 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_F4692EBD578D04048E176E82BB8369BB C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\60E31627FDA0A46932B0E5948949F2A5 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\696F3DE637E6DE85B458996D49D759AD C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_0AB46376AFB6F40B0426680E3025D384 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_35BFA9D40D21E81B408449EB9D85CCA4 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_4E35DE6F4FCFB7BE2C045F6B5ED89FC8 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\70FEE87A42672626A68FAB261B428374_7FA4A19E9E8ECB94A8E785D67DD2F84B C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\74BFD122C0875EC75DBE5C6DB4C59019 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B2238AACCEDC3F1FFE8E7EB5F575EC9 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D1F03728133589A90656A87E482B21F C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_8CA7164968F366C9A94AC8E71C4BDD9B C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_28634DBC5A3910B95ECD3B31608E8A92 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_545E7DEEB8DDDF8F2BBB24BE5A6D93A8 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_57E2EF440605D4A75E8BAF9E32D2EA49 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_6F75B4C008008F0E1F73DFBC8174C492 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_765869990270A968E3B362DDAE9D84C0 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_76C8E3242BF99D5AED1365220C4C1AB8 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_7CA20CBEFB78C5FFC8A29F35871DEAB7 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_804AC61BF955D14E503F364C73FECA56 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_99A31F0AA0A339D43F5D3B6D1448DDB3 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_D6D2CAA8F7751F4668A8BAAFF611D2DB C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_D91099334FB135CE39A7771E873318D8 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_ECC87E067A500EDDC2ED9EC574B4F0D5 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\855CF405355328EC482A28D56A44CFB0_E23BB40CCF2DC87ED83D67B7BBCD90FC C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\91ECFED5143F7F4F4576655D8EFAB51C_23FC340705017C641EB377D84FE045B1 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\955CAB6FF6A24D5820D50B5BA1CF79C7_0D0504E280D4BC90041F089A5D901106 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\955CAB6FF6A24D5820D50B5BA1CF79C7_CFEA3385E24D822B0027B3D9A091B242 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\AC9005F5466BD463DF06D711B370595F C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BD8A14C7C024625432CC03FE72E47EF0_56D5A51152132FA716821C1361187213 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C8E7EC0C85688F4738F3BE49B104BA67 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_C633318EC50EE8D448026D5845149063 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_D8D3421326B6B5C41978DC15A78ABD87 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_DE54C4FA15BBC43BAFB240D0C3799849 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E82ACDA9F5169E971D6B19B65E168F2A_0677396835A50784EE374899042A1967 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F12703B35B1F82C21160A92376087C84_313E6B316EFFE568616A721B4D9E42B0 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F90F18257CBB4D84216AC1E1F3BB2C76 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FB788E090BC1F3AA2FBC9E8FB2859601 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FCD2CC3451EF5F3DB8D4B7DD511B2F77_64FBBF7EBC3C3336620E795DDC157490 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_39AA32012A618D407F0206C60DD48EA1 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_49A0F7ED62B84361D2B23E89CDE34920 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0B8D1B774F9EC9738FE5D78C2C332555 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_2CD9E2B64BF925DBA8B67036CF11760F C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_A1FCA30AC310D8EAE948F012B2135AEE C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1DAF2884EC4DFA96BA4A58D4DBC9C406 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\21253908F3CB05D51B1C2DA8B681A785 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\23B523C9E7746F715D33C6527C18EB9D C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_69127A16A82DAE6DB57B8DA92372B1FA C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_57A03DA4220470C137176F42C3709DC1 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\37C951188967C8EB88D99893D9D191FE C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4309200C3DBAD0F6F0DFACE9165FD092 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_33A0493B3756EC93EB52782457685E27 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_569BD946168DB279A65378F7D088CFD0 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_AFC22B77ED08EE3E2B28B6DE75CADDF5 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_F4692EBD578D04048E176E82BB8369BB C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\57C8EDB95DF3F0AD4EE2DC2B8CFD4157 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\60E31627FDA0A46932B0E5948949F2A5 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\696F3DE637E6DE85B458996D49D759AD C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_0AB46376AFB6F40B0426680E3025D384 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_35BFA9D40D21E81B408449EB9D85CCA4 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_4E35DE6F4FCFB7BE2C045F6B5ED89FC8 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\70FEE87A42672626A68FAB261B428374_7FA4A19E9E8ECB94A8E785D67DD2F84B C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\74BFD122C0875EC75DBE5C6DB4C59019 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77EC63BDA74BD0D0E0426DC8F8008506 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B2238AACCEDC3F1FFE8E7EB5F575EC9 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D1F03728133589A90656A87E482B21F C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_8CA7164968F366C9A94AC8E71C4BDD9B C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_28634DBC5A3910B95ECD3B31608E8A92 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_545E7DEEB8DDDF8F2BBB24BE5A6D93A8 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_57E2EF440605D4A75E8BAF9E32D2EA49 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_6F75B4C008008F0E1F73DFBC8174C492 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_765869990270A968E3B362DDAE9D84C0 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_76C8E3242BF99D5AED1365220C4C1AB8 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_7CA20CBEFB78C5FFC8A29F35871DEAB7 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_804AC61BF955D14E503F364C73FECA56 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_99A31F0AA0A339D43F5D3B6D1448DDB3 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_D6D2CAA8F7751F4668A8BAAFF611D2DB C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_D91099334FB135CE39A7771E873318D8 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_ECC87E067A500EDDC2ED9EC574B4F0D5 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\855CF405355328EC482A28D56A44CFB0_E23BB40CCF2DC87ED83D67B7BBCD90FC C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\91ECFED5143F7F4F4576655D8EFAB51C_23FC340705017C641EB377D84FE045B1 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\955CAB6FF6A24D5820D50B5BA1CF79C7_0D0504E280D4BC90041F089A5D901106 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\955CAB6FF6A24D5820D50B5BA1CF79C7_CFEA3385E24D822B0027B3D9A091B242 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\AC9005F5466BD463DF06D711B370595F C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BD8A14C7C024625432CC03FE72E47EF0_56D5A51152132FA716821C1361187213 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C8E7EC0C85688F4738F3BE49B104BA67 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_C633318EC50EE8D448026D5845149063 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_D8D3421326B6B5C41978DC15A78ABD87 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_DE54C4FA15BBC43BAFB240D0C3799849 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E82ACDA9F5169E971D6B19B65E168F2A_0677396835A50784EE374899042A1967 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F12703B35B1F82C21160A92376087C84_313E6B316EFFE568616A721B4D9E42B0 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F90F18257CBB4D84216AC1E1F3BB2C76 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FB788E090BC1F3AA2FBC9E8FB2859601 C:\Users\Monique\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FCD2CC3451EF5F3DB8D4B7DD511B2F77_64FBBF7EBC3C3336620E795DDC157490 C:\Users\Monique\AppData\LocalLow\Evernote\Evernote C:\Users\Monique\AppData\LocalLow\Evernote\Evernote\Logs C:\Users\Monique\AppData\LocalLow\Evernote\Evernote\Logs\enaudio_client.log C:\Users\Monique\AppData\LocalLow\Evernote\Evernote\Logs\ENCEData.xml C:\Users\Monique\AppData\LocalLow\Evernote\Evernote\Logs\IEClipper_2013-09-17.txt C:\Users\Monique\AppData\LocalLow\Evernote\Evernote\Logs\OLClipper_2014-06-21.txt C:\Users\Monique\AppData\LocalLow\EmieUserList\container.dat C:\Users\Monique\AppData\LocalLow\EmieSiteList\container.dat C:\Users\Monique\AppData\LocalLow\Adobe\Acrobat C:\Users\Monique\AppData\LocalLow\Adobe\Linguistics C:\Users\Monique\AppData\LocalLow\Adobe\Linguistics\Dictionaries C:\Users\Monique\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary C:\Users\Monique\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\all C:\Users\Monique\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\cfr C:\Users\Monique\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\frn C:\Users\Monique\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\all\added.txt C:\Users\Monique\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\all\excluded.txt C:\Users\Monique\AppData\LocalLow\Adobe\Acrobat\10.0 C:\Users\Monique\AppData\LocalLow\Adobe\Acrobat\10.0\assets C:\Users\Monique\AppData\LocalLow\Adobe\Acrobat\10.0\ReaderMessages C:\Users\Monique\AppData\LocalLow\Adobe\Acrobat\10.0\Search C:\Users\Monique\AppData\LocalLow\Adobe\Acrobat\10.0\Synchronizer C:\Users\Monique\AppData\LocalLow\Adobe\Acrobat\10.0\Synchronizer\metadata C:\Users\Monique\AppData\LocalLow\Adobe\Acrobat\10.0\Synchronizer\resources C:\Users\Monique\AppData\LocalLow\Adobe\Acrobat\10.0\Synchronizer\resources\resource-18 C:\Users\Monique\AppData\LocalLow\Adobe\Acrobat\10.0\Synchronizer\metadata\Synchronizer100 C:\Users\Monique\AppData\Local\Microsoft\Windows\History\desktop.ini C:\Users\Monique\AppData\Local\Microsoft\Windows\History\History.IE5 C:\Users\Monique\AppData\Local\Microsoft\Windows\History\Low C:\Users\Monique\AppData\Local\Microsoft\Windows\History\Low\desktop.ini C:\Users\Monique\AppData\Local\Microsoft\Windows\History\Low\History.IE5 C:\Users\Monique\AppData\Local\Microsoft\Windows\History\Low\History.IE5\container.dat C:\Users\Monique\AppData\Local\Microsoft\Windows\History\History.IE5\container.dat C:\Users\Monique\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014062620140627 C:\Users\Monique\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014062620140627\container.dat C:\Users\Monique\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 C:\Users\Monique\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.MSO C:\Users\Monique\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low C:\Users\Monique\AppData\Local\Microsoft\Windows\Temporary Internet Files\Sqm C:\Users\Monique\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized C:\Users\Monique\AppData\Local\Microsoft\Windows\Temporary Internet Files\Sqm\iesqmdata0.sqm C:\Users\Monique\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\AntiPhishing C:\Users\Monique\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 C:\Users\Monique\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\MSIMGSIZ.DAT C:\Users\Monique\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\container.dat C:\Users\Monique\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\AntiPhishing\4A72F430-B40C-4D36-A068-CE33ADA5ADF9.dat C:\Users\Monique\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\AntiPhishing\66EDA0C9-9C7D-4F60-AF56-7A8C8B56E453.dat C:\Users\Monique\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\31BRKT2Y C:\Users\Monique\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6YZ1HQM C:\Users\Monique\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\container.dat C:\Users\Monique\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6YZ1HQM\VersionSFT[1].txt C:\Users\Monique\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\31BRKT2Y\28016ffcbe8a1939af038a0db8cfb2f471a00311[1].htm C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\AdwCleaner.lnk C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\AdwCleaner[S0].txt.lnk C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\BRUNO SANTE.txt.lnk C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\Documents.lnk C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\DONNEES D SEPT (D).lnk C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\loto.htm.lnk C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\loto.lnk C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\notes bureau.odt.lnk C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\Nouveau dossier.lnk C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\ZHPDiag.txt.lnk C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\28c8b86deab549a1.customDestinations-ms C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\5d696d521de238c3.customDestinations-ms C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\9027fe24326910d2.customDestinations-ms C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\969252ce11249fdd.customDestinations-ms C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\ccc0fa1b9f86f7b3.customDestinations-ms C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\1b4dd67f29cb1962.automaticDestinations-ms C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\4d939776340f1d18.automaticDestinations-ms C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\969252ce11249fdd.automaticDestinations-ms C:\Users\Monique\AppData\Local\Temp\E99-chiens_d'aveugle_(Bon_?_savoir)_2013-1.pps C:\Users\Monique\AppData\Local\Temp\Loyauté 0612.pps C:\Users\Monique\AppData\Local\Temp\Reflexions-1.pps C:\Users\Monique\AppData\Local\Temp\Reflexions.pps C:\Users\Monique\AppData\Local\Temp\? .pps C:\Users\Monique\AppData\Local\Temp\?-1.pps C:\Users\Monique\AppData\Local\Temp\?.pps C:\Windows\TEMP\CompatTelemetryLogs C:\Windows\TEMP\Low C:\Windows\TEMP\MpCmdRun.log C:\Windows\TEMP\MpSigStub.log C:\Windows\TEMP\CompatTelemetryLogs\CompatData_2014_06_26_08_35_49_1_000001ff.xml C:\Windows\TEMP\CompatTelemetryLogs\compatscancache.dat C:\Windows\TEMP\CompatTelemetryLogs\DeviceGroupingRules.xml C:\Windows\TEMP\CompatTelemetryLogs\diagerr.xml C:\Windows\TEMP\CompatTelemetryLogs\diagwrn.xml C:\Windows\TEMP\CompatTelemetryLogs\Img C:\Windows\TEMP\CompatTelemetryLogs\PreliminaryReport.xml C:\Windows\TEMP\CompatTelemetryLogs\Resources C:\Windows\TEMP\CompatTelemetryLogs\setupact.log C:\Windows\TEMP\CompatTelemetryLogs\setuperr.log C:\Windows\TEMP\CompatTelemetryLogs\TelemetryTransform.xsl C:\Windows\TEMP\CompatTelemetryLogs\WicaDeviceFilters.xml C:\Windows\TEMP\CompatTelemetryLogs\WICA_Devices_MONIQUE-PC.xml C:\Windows\TEMP\CompatTelemetryLogs\WICA_Programs_MONIQUE-PC.xml C:\Windows\TEMP\CompatTelemetryLogs\WICA_QueryAppBlock_MONIQUE-PC.xml C:\Windows\TEMP\CompatTelemetryLogs\WICA_QueryBiosBlock_MONIQUE-PC.xml C:\Windows\TEMP\CompatTelemetryLogs\WICA_QueryDeviceBlock_MONIQUE-PC.xml C:\Windows\TEMP\CompatTelemetryLogs\WICA_SystemReport_MONIQUE-PC.xml C:\Windows\TEMP\CompatTelemetryLogs\WICA_System_MONIQUE-PC.xml C:\Windows\TEMP\CompatTelemetryLogs\WICA_TelemetryReport_MONIQUE-PC.xml C:\Windows\TEMP\CompatTelemetryLogs\Windows_TelemetryData.xml C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00000077bc5499187bd88bf431be0699edc9b841c77d.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000049c365a4a97779934f74dd4bbfcfb601164c859.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_000007262283d8c86bc793d889943fdc6cf81111c22e.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000095bea16446f065f9972fd3b5e67ad853140b93d.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00000edcc1bb9b753d3e6e5e7de89e07078c5cb56bb4.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00000fd0c7dec5d6fe9c6ee74db99fd42caddda32966.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_000012f98eaca18710a26d4f14923181a1356845b717.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00001596a1065bc200233bd0b2c3311b92e1da57fb8b.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00001b7934d385c6b63bafa051208139f29acefeb475.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00001cac35342dd6730714a89812109e957093f55ead.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00002892456fe2ef6b633c593aabd0197122b1c138d4.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00002c51d0a886b690150c98df03ef64d8173cb3fe28.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00002e8b8e37e5a149c51ff9d7087bcd2120eabe73e1.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00003451e12650286cefe0e1cb3f80db56792ceb0194.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_000035ed154cf2339482c32ed221f227771e65c25030.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000367e0762f1054c28b46403e77664feb1d932f0e4.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00003d693805a481ee7c4c23bf5147948e360156ef74.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00003e7b292924767181ee806a8168f4e31297a2b620.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00004072e93082b7bf6d3327a6e2cf64afcef07cbcf8.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00004a4dcd2c359a373d16899809e07cb35ad01e1efa.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00004af2b3662d15939dbf044252d00dce6f67d14cef.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00004c8431e3447ab651115879840c68676081ae928a.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00004f74af952f826d12ab1dd5736699c14c92d99b73.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_000057e03bcc5d7b342e6c22a9e96ee8a680ebd181b6.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00005b0b6c6d844c2bf13a2feda2a98f7c13e9728f08.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00005bea089035fc07ab932ca6b8a116112d87453333.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00005c8c979f84e07b64f8ac8e2585dabef60cdfd1b3.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00006f173a615c8f571c94d95235830112bea7cb5a62.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000737030f0281b3c0d5e64bfcc948ea95a0a38b647.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_000074d6ec39e2c8caaa68cfb00ab26c96843fe26dee.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00007aa388e7bda7857e90d7da1c51a47df675cb698a.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00007c7592fe5df0891348fe0a8ac4801f65b6e9527d.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00008179b1bc961d4505151618177049ec22c836cb7b.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_000086d9bb5a21b0e1edf658dd1fd35c0e77eacb1fb8.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_000087cd37defe570dd450f32202cc1fa4cdce3b3559.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00009aa66f21e2e7f5ce716662293c3cd2d0717f4ca9.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_00009ce9a1d940d072208f0465a1b72cb67920c07bb6.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000a1b20eafac67cc6bd3fbdf6c38d8d5b122a6ed2c.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000a80df0be6cd33b78b5dd1f25692b2c03b2c2d4fe.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000abea7c329129995deb3558c587c6cf1163fcf424.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000af687784274fb198dd6624b4f9861d8b38af9ed6.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000b09d2ae73f3e824ab009fa7f2ca688c98c2b9931.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000b184210ceb6542ae9c816ea8142d64493716e6f1.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000dd7e53e6a7f1b781c949dd09458a985476479954.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000e309d83cdb9562369dbaffe402d080540c70205c.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000eba1e81e09698ac8635ed7569c3dd8ec008b27eb.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000ecb6a61bdecb0698f4017fb6db070e585fd41c23.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000f1d90d6a3625c5f9ae88791efa22a60f7666c5e8.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000f263f54f0ff27742a1e55e83d9fec7ccbec170f6.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000f47f66cc67262b70a886531e5d942c07de6ea4b1.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000f971d7a3b6822fb3340bc8fa9b4d961288eb3849.png C:\Windows\TEMP\CompatTelemetryLogs\Img\appicon_0000fab63cebf558b2a4725cfeb1e297e916fa28befe.png C:\Windows\TEMP\CompatTelemetryLogs\Img\classicon_{36fc9e60-c465-11cf-8056-444553540000}.png C:\Windows\TEMP\CompatTelemetryLogs\Img\classicon_{4d36e965-e325-11ce-bfc1-08002be10318}.png C:\Windows\TEMP\CompatTelemetryLogs\Img\classicon_{4d36e966-e325-11ce-bfc1-08002be10318}.png C:\Windows\TEMP\CompatTelemetryLogs\Img\classicon_{4d36e967-e325-11ce-bfc1-08002be10318}.png C:\Windows\TEMP\CompatTelemetryLogs\Img\classicon_{4d36e968-e325-11ce-bfc1-08002be10318}.png C:\Windows\TEMP\CompatTelemetryLogs\Img\classicon_{4d36e96a-e325-11ce-bfc1-08002be10318}.png C:\Windows\TEMP\CompatTelemetryLogs\Img\classicon_{4d36e96b-e325-11ce-bfc1-08002be10318}.png C:\Windows\TEMP\CompatTelemetryLogs\Img\classicon_{4d36e96c-e325-11ce-bfc1-08002be10318}.png C:\Windows\TEMP\CompatTelemetryLogs\Img\classicon_{4d36e96e-e325-11ce-bfc1-08002be10318}.png C:\Windows\TEMP\CompatTelemetryLogs\Img\classicon_{4d36e96f-e325-11ce-bfc1-08002be10318}.png C:\Windows\TEMP\CompatTelemetryLogs\Img\classicon_{4d36e972-e325-11ce-bfc1-08002be10318}.png C:\Windows\TEMP\CompatTelemetryLogs\Img\classicon_{4d36e97d-e325-11ce-bfc1-08002be10318}.png C:\Windows\TEMP\CompatTelemetryLogs\Img\classicon_{50127dc3-0f36-415e-a6cc-4cb3be910b65}.png C:\Windows\TEMP\CompatTelemetryLogs\Img\classicon_{6bdd1fc6-810f-11d0-bec7-08002be2092f}.png C:\Windows\TEMP\CompatTelemetryLogs\Img\classicon_{72631e54-78a4-11d0-bcf7-00aa00b7b32a}.png C:\Windows\TEMP\CompatTelemetryLogs\Img\classicon_{745a17a0-74d3-11d0-b6fe-00a0c90f57da}.png C:\Windows\TEMP\CompatTelemetryLogs\Img\ID_DVD_PLAYBACK_COMPAT.png C:\Windows\TEMP\CompatTelemetryLogs\Img\ID_SECUREBOOT_INCAPABLE.png Java Cache empty Fin du rapport.
  4. Rapport de ZHPFix 2014.4.13.3 par Nicolas Coolman, Update du 13/04/2014 Fichier d'export Registre : Run by Monique at 26/06/2014 13:14:44 High Elevated Privileges : OK Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601) Corbeille vidée (00mn 04s) Dossier Prefetcher vidé Réparation des raccourcis navigateur ========== Logiciels ========== SUPPRIMÉ: Snap.Do ========== Etat des services ========== {A3F28269-AD17-41A8-B032-3E0313EF8979}W64 Arrêté ========== Clés du Registre ========== SUPPRIMÉ: [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{9EA32328-5070-4EBC-A42D-460FD15E1424}] SUPPRIMÉ Driver Key: {a3f28269-ad17-41a8-b032-3e0313ef8979}w64 SUPPRIMÉ: HKCU\Software\USyndication SUPPRIMÉ: HKCU\Software\Yappyz SUPPRIMÉ: HKCU\Software\usyndication.com SUPPRIMÉ:* StartupReg: Sweetpacks Communicator SUPPRIMÉ:* StartupReg: Yontoo Desktop SUPPRIMÉ:* HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 SUPPRIMÉ:* HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BetterInstaller_RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BetterInstaller_RASMANCS SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IminentSetup_2-KFRPtAWP-1__RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IminentSetup_2-KFRPtAWP-1__RASMANCS SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ProtectedSearch_RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ProtectedSearch_RASMANCS SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SecondOffer1_RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SecondOffer1_RASMANCS SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\services x86-bg_RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\services x86-bg_RASMANCS SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Services x86_RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Services x86_RASMANCS SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Vgrabber_v1_RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Vgrabber_v1_RASMANCS SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Video Performer63977_RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Video Performer63977_RASMANCS SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\VideoPerformerSetup(1)_RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\VideoPerformerSetup(1)_RASMANCS SUPPRIMÉ: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{d0f392b7-f7de-4e6b-aa89-f96fe7d48992} SUPPRIMÉ: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Telecharger et Installer Packages SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\1C875DDE39636004CA8CDAEC335B4160 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\64A6E60055D801F4BB8AC269354B72B8 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1EAD96AE2CB1DE84BAA9425A8CCA0817 SUPPRIMÉ: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110111271147} SUPPRIMÉ: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110211701196} SUPPRIMÉ: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{31111111-1111-1111-1111-110211701196} SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\38D5CDD0A851B3940A43CC50ABBA251C SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AAC05EAA51DC78A41A1DCE3B31038584 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BA71D41F6CC0B6247B05D473850A8AEA SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC SUPPRIMÉ Driver Key: {a3f28269-ad17-41a8-b032-3e0313ef8979}Gw64 SUPPRIMÉ: HKLM\Software\Wow6432Node\IncrediMail SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WiseConvert_1_5_RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WiseConvert_1_5_RASMANCS Branche de Base de Registres IFEO non infectée ! ========== Valeurs du Registre ========== SUPPRIMÉ: Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} Aucune Valeur Standard Profile: FirewallRaz : Aucune Valeur Domain Profile: FirewallRaz : SUPPRIMÉ: FirewallRaz (Private) : {D00E4936-6CA3-4897-BFFB-F2E50C6F81A9} SUPPRIMÉ: FirewallRaz (Private) : {FB1D6447-F6E2-4FB9-A316-3C1B3E86D586} SUPPRIMÉ: FirewallRaz (Public) : {DAB1F054-9A3E-47BE-9DBF-4490151B881C} SUPPRIMÉ: FirewallRaz (Public) : {19961EA1-FF66-4669-B427-00711732F931} ProxyFix : Configuration proxy supprimée avec succès SUPPRIMÉ ProxyServer Value SUPPRIMÉ ProxyEnable Value SUPPRIMÉ EnableHttp1_1 Value SUPPRIMÉ ProxyHttp1.1 Value SUPPRIMÉ ProxyOverride Value ========== Eléments de donnée du Registre ========== SUPPRIMÉ: R0 - Main,Start Page = KLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page ========== Dossiers ========== Aucun dossiers CLSID Local utilisateur vide ========== Fichiers ========== SUPPRIMÉ Redémarrage: c:\windows\system32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}w64.sys SUPPRIMÉ: C:\Windows\Installer\2aa6a96.msi SUPPRIMÉ: c:\users\monique\appdata\local\temp\quarantine.exe SUPPRIMÉS Temporaires Windows (197) (226 422 037 octets) SUPPRIMÉS Flash Cookies (0) (0 octets) ========== Fichier HOSTS ========== Le fichier Hosts n'est pas réparé, veuillez désactiver votre antivirus. ========== Tache planifiée ========== SUPPRIMÉ: SoftwareUpdateTaskMachineCore1ce40325c28fff4 SUPPRIMÉ: SoftwareUpdateTaskMachineCore1ce40325c28fff4 SUPPRIMÉ: SoftwareUpdateTaskMachineUA1ce40326270efe9 SUPPRIMÉ: {84D067A3-B526-4044-8165-538E3320F349} SUPPRIMÉ: {E82F8632-BD7A-4FAF-99C8-E6D7A6E0C8EB} ========== Restauration Système ========== Point de restauration du système créé avec succès ========== Récapitulatif ========== 46 : Clés du Registre 13 : Valeurs du Registre 1 : Eléments de donnée du Registre 1 : Dossiers 5 : Fichiers 1 : Logiciels 1 : Fichier HOSTS 1 : Etat des services 5 : Tache planifiée 1 : Restauration Système End of clean in 01mn 17s ========== Chemin de fichier rapport ========== C:\Users\Monique\AppData\Roaming\ZHP\ZHPFix[R1].txt - 26/06/2014 13:14:49 [6697]
  5. ~ Rapport de ZHPDiag v2014.6.25.98 - Nicolas Coolman (25/06/2014) ~ Lancé par Monique (26/06/2014 12:08:29) ~ Adresse du Site Web http://nicolascoolman.fr ~ Traduit par Nicolas Coolman ~ Etat de la version : Version à jour. ~ Liste blanche : Désactivée par l'utilisateur ~ Elévation des Privilèges : OK ~ User Account Control (UAC): Deactivate by user ---\\ Navigateurs Internet MSIE: Internet Explorer v11.0.9600.17126 MFIE: Mozilla Firefox 30.0 (Defaut) GCIE: Google Chrome v34.0.1847.131 OPIE: Opera v12.17 ---\\ Informations sur les produits Windows ~ Langage: Français Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601) Windows Server License Manager Script : OK ~ Windows Operating System - Windows® 7, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : 7QJB7 Windows License : OK ~ Windows Remaining Initializations Number : 2 Software Protection Service (Protection logicielle) : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection du système Kaspersky Anti-Virus 2012 v12.0.0.374 Malwarebytes Anti-Malware version 2.0.2.1012 Secunia PSI Windows Defender W7 (Activate) ---\\ Logiciels d'optimisation du système CCleaner v4.14 ---\\ Logiciels de partage PeerToPeer ---\\ Surveillance de Logiciels Adobe Flash Player 14 Plugin Adobe Reader X Java 7 Update 55 Java 7 Update 55 ---\\ Informations sur le système ~ Processor: Intel64 Family 6 Model 37 Stepping 5, GenuineIntel ~ Operating System: 64 Bits Boot mode: Normal (Normal boot) Total RAM: 3764 MB (51% free) System Restore: Activé (Enable) System drive C: has 105 GB (70%) free of 150 GB ---\\ Mode de connexion au système ~ Computer Name: MONIQUE-PC ~ User Name: Monique ~ All Users Names: Monique, HomeGroupUser$, Administrateur, ~ Unselected Option: None Logged in as Administrator ---\\ Variables d'environnement ~ System Unit : C:\ ~ %AppZHP% : C:\Users\Monique\AppData\Roaming\ZHP\ ~ %AppData% : C:\Users\Monique\AppData\Roaming\ ~ %Desktop% : D:\Mes docs D sauve 7\Desktop\ ~ %Favorites% : D:\Mes docs D sauve 7\Favorites\ ~ %LocalAppData% : C:\Users\Monique\AppData\Local\ ~ %StartMenu% : C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ Enumération des unités disques C: Hard drive, Flash drive, Thumb drive (Free 105 Go of 150 Go) D: Hard drive, Flash drive, Thumb drive (Free 101 Go of 135 Go) E: CD-ROM drive (Not Inserted) ---\\ Etat du Centre de Sécurité Windows [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowMyGames: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Security Center: 49 Scanned in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.14/07/2011 - 06:30:29.) -- C:\Windows\Explorer.exe [2871808] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024] [MD5.40BFD9D6EC8E174145F012246CA73CCD] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.30/05/2014 - 08:56:56.) -- C:\Windows\System32\wininet.dll [2266112] [MD5.88AB9B72B4BF3963A0DE0820B4B0B06C] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.04/03/2014 - 10:43:50.) -- C:\Windows\System32\Winlogon.exe [455168] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.21/11/2010 - 04:24:16.) -- C:\Windows\System32\sppcomapi.dll [232448] [MD5.79059559E89D06E8B80CE2944BE20228] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/09/2013 - 02:09:10.) -- C:\Windows\system32\Drivers\AFD.sys [497152] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.21/11/2010 - 04:24:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224] [MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.14/07/2011 - 06:33:59.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.21/11/2010 - 04:23:51.) -- C:\Windows\system32\Drivers\netBT.sys [261632] [MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.24/01/2014 - 03:37:55.) -- C:\Windows\system32\Drivers\ntfs.sys [1684928] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/11/2010 - 04:24:33.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184] [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.21/11/2010 - 04:24:32.) -- C:\Windows\system32\Drivers\tdx.sys [119296] [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\volsnap.sys [295808] ~ Generic Processes: Scanned in 00mn 00s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 1/411 ~ Mes musiques (My Musics) : 1/6 ~ Mes Videos (My Videos) : 1/3 ~ Mes Favoris (My Favorites) : 1/33 ~ Mes Documents (My Documents) : 1/314 ~ Mon Bureau (My Desktop) : 1/225 ~ Menu demarrer (Programs) : 1/27 ~ Hidden Files: Scanned in 00mn 00s ---\\ Processus lancés [MD5.4E90D7CD94C73A965A5A24C801183D0D] - (.Dritek System Inc. - Launch Manager Worker.) -- C:\Program Files (x86)\Launch Manager\LMworker.exe [343632] [PID.856] [MD5.0D360F06B168A6F37ACA9D9F958245DA] - (.NTI Corporation - Acer Backup Manager.) -- C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [297280] [PID.3080] [MD5.2B726C063889EBD34E8BFEAFFC89564C] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe [1097808] [PID.3092] [MD5.6C9D5BADC8F83D410A278717C2EEA6F6] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe [206448] [PID.1860] [MD5.B247B655785E659EFA579E5089D50B45] - (.Mozilla Corporation - Thunderbird.) -- C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe [390256] [PID.4580] [MD5.4FBC630768570E6AC35C3DE8F6EC79F5] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [6970168] [PID.3864] [MD5.1F62DCBF33A67CAA5E68ADECBB25C3C7] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8071680] [PID.3532] [MD5.B362181ED3771DC03B4141927C80F801] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65432] [PID.1812] [MD5.506708142BC63DABA64F2D3AD1DCD5BF] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] [PID.1960] [MD5.AEA290020589EAF37BA17BA4B0C60937] - (.Dritek System Inc. - Dritek WMI Service.) -- C:\Program Files (x86)\Launch Manager\dsiwmis.exe [353872] [PID.1032] [MD5.5E50681D6220882D3D4DCAB0EB2D3DB5] - (.Dritek System Inc. - Launch Manager utility process.) -- C:\Program Files (x86)\Launch Manager\LMutilps32.exe [419408] [PID.1352] [MD5.C9B2D1D3F86FD3673EF847DEF73B6F9E] - (.Acer Incorporated - Global Registration Service.) -- C:\Program Files (x86)\Acer\Registration\GREGsvc.exe [36456] [PID.1456] [MD5.1873214666F6F0A883742DF91FBC48C9] - (.NTI Corporation - Backup Manager Module.) -- C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256832] [PID.1896] [MD5.A1688A4FB2EC49D040C027EF6DC7A87B] - (.pdfforge GbR - PDF Architect Helper Service.) -- C:\Program Files (x86)\PDF Architect\HelperService.exe [1324104] [PID.1404] [MD5.E23FF9B2F8EEAB2BDDA681C21C48E843] - (.pdfforge GbR - PDF Architect Conversion Service.) -- C:\Program Files (x86)\PDF Architect\ConversionService.exe [795208] [PID.2044] [MD5.F036CFB275D0C55F4E45FBBF5F98B3C8] - (.Protexis Inc. - PsiService PsiService.) -- C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [193824] [PID.2200] [MD5.7CB9F0FDD730F4A4ECF6CDE15EA12E8A] - (.Acer Incorporated - Raw Socket Service.) -- C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [260640] [PID.2224] [MD5.8C2D3A80FC90A860F0F24DEB67471481] - (.Secunia - Secunia Update Agent.) -- C:\Program Files (x86)\Secunia\PSI\sua.exe [662232] [PID.2256] [MD5.388AE59FE75F1B959DFA0900923C61BB] - (.Skype Technologies S.A. - Skype C2C Service.) -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3064000] [PID.2284] [MD5.F67C21CC4195F6AFC447418FE163E156] - (.TeamViewer GmbH - TeamViewer 8.) -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [5087584] [PID.2412] [MD5.0A03E85A641F2672796D34F506066594] - (.TomTom - Windows Service for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [93040] [PID.2544] [MD5.54A4A93A984E5C30B5CAB9257A0A05BF] - (...) -- C:\Program Files (x86)\Froyo_Android_Driver\Bin\MonServiceUDisk.exe [512000] [PID.2584] [MD5.F415A88162D23977B5EDAE4F0410E903] - (.InterVideo - RegMgr Module.) -- C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe [110736] [PID.3048] [MD5.9D8B95C0EAE145C46BC4A727B23DA395] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe [325656] [PID.2536] [MD5.0B0B9F55B12767A755932C26B5FED715] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2538520] [PID.4636] [MD5.4F45ED469906494F9BF754E476390DBD] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [860472] [PID.4284] [MD5.D84AEA3F3329D622DFC1297DDDF6163B] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720] [PID.5132] ~ Processes Running: Scanned in 00mn 04s ---\\ Opera, Plugins,Démarrage,Recherche (P1,B0,B1) B0 - SPO: operaprefs.ini [Monique] Home URL=http://google.fr B1 - OSP: search.ini [Monique] URL=http://google.fr B1 - OSP: search.ini [Monique] URL=http://www.bing.com/search?q=%s&form=OPRTSD&pc=OPER B1 - OSP: search.ini [Monique] URL=http://redir.opera.com/amazon B1 - OSP: search.ini [Monique] URL= B1 - OSP: search.ini [Monique] URL=http://yahoo.opera.com/search B1 - OSP: search.ini [Monique] URL=http://fr.wikipedia.org/wiki/Special:Search?search=%s ~ Opera Browser: 7 Scanned in 00mn 00s ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\Monique\AppData\Local\Google\Chrome\User Data\Default\Preferences G1 - GCS: Preference [user Data\Default] None G0 - GCSP: Preference [user Data\Default][HomePage] http://www.google.com G2 - GCE: Preference [user Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Google Store v.0.2 (Activé) G2 - GCE: Preference [user Data\Default] [aohghmighlieiainnegkcijnfilokake] Documents Google v.0.6 (Activé) G2 - GCE: Preference [user Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Drive v.6.3 (Activé) G2 - GCE: Preference [user Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube v.4.2.6 (Activé) G2 - GCE: Preference [user Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Recherche Google v.0.0.0.20 (Activé) G2 - GCE: Preference [user Data\Default] [dchlnpcodkpfdpacogkljefecpegganj] Analyse des liens (URL Advisor) v.12.0.0.477 (Désactivé) G2 - GCE: Preference [user Data\Default] [eemcgdkfndhakfknompkggombfjjjeno] Bookmark Manager v.0.1 (Activé) G2 - GCE: Preference [user Data\Default] [ennkphjdgehloodpbhlhldgbnhmacadg] Settings v.0.2 (Activé) G2 - GCE: Preference [user Data\Default] [gfdkimpbcpahaombhbimeihdjnejgicl] Feedback v.1.0 (Activé) G2 - GCE: Preference [user Data\Default] [jagncdcchgajhfhijbbhecadmaiegcmh] Clavier virtuel v.12.0.0.477 (Désactivé) G2 - GCE: Preference [user Data\Default] [lifbcibllhkdhoafpjfnlhfpfgnpldfl] Skype Click to Call v.7.2.15747.10003, (Désactivé) G2 - GCE: Preference [user Data\Default] [mfehgcgbbipciphmccgaenjidiccnmng] Cloud Print v.0.1 (Activé) G2 - GCE: Preference [user Data\Default] [mgndgikekgjfcpckkfioiadnlibdjbkf] Chrome v.0.1 (Activé) G2 - GCE: Preference [user Data\Default] [neajdppkdcdipfabeoofebfddakdcjhd] Google Network Speech v.1.0 (Activé) G2 - GCE: Preference [user Data\Default] [nkeimhogjdpnpccoofpliimaahmaaome] Hangout Services v.1.0 (Activé) G2 - GCE: Preference [user Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Wallet v.0.0.6.1 (Activé) G2 - GCE: Preference [user Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Gmail v.7 (Activé) G2 - GCE: Preference [user Data\Default] [pjldcfjmnllhmgjclecdnfampinooman] Kaspersky Anti-bannière v.12.0.0.374 (Désactivé) ---\\ Liste des dossiers d'extension Google Chrome G2 - EXT: C:\Users\Monique\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [Documents Google] G2 - EXT: C:\Users\Monique\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [Google Drive] G2 - EXT: C:\Users\Monique\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [YouTube] G2 - EXT: C:\Users\Monique\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [Recherche Google] G2 - EXT: C:\Users\Monique\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [Analyse des liens (URL Advisor)] G2 - EXT: C:\Users\Monique\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh [Clavier virtuel] G2 - EXT: C:\Users\Monique\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [skype Click to Call] G2 - EXT: C:\Users\Monique\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [Google Wallet] G2 - EXT: C:\Users\Monique\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [Gmail] G2 - EXT: C:\Users\Monique\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [Kaspersky Anti-bannière] ~ Google Lines Browser: 30 Scanned in 00mn 02s ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\14udnbdv.default-1385502040694\prefs.js (.not file.) C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\7qtmjgcn.default-1390639305020\prefs.js (.not file.) C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\bxi0cpxh.default-1363938953161\prefs.js C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\deu9kz0r.default-1388260490821\prefs.js (.not file.) C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\g8q6viqi.default-1403776932240\prefs.js C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\ii7g7sh8.default\prefs.js C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\w1rng3at.default-1370195119959\prefs.js (.not file.) M2 - MFEP: prefs.js [Monique - bxi0cpxh.default-1363938953161\{4ca8c1be-c30f-49bf-9ac8-f3e63f49665d}] [] HomeTab v4.9 (..) =>PUP.CertifiedToolbar M2 - MFEP: prefs.js [Monique - ii7g7sh8.default\{4ca8c1be-c30f-49bf-9ac8-f3e63f49665d}] [] HomeTab v4.9 (..) =>PUP.CertifiedToolbar P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_125.dll P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.55.2] - (.Oracle Corporation - NPRuntime Script Plug-in Library for Java Deploy.) -- C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.55.2] - (.Oracle Corporation - Next Generation Java Plug-in 10.55.2 for Mozilla browsers.) -- C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.30214.0.) -- C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ~ Firefox Browser: 6 Scanned in 00mn 01s ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.17041 (winblue_gdr.140305-1710)) -- C:\Windows\SysWOW64\ieframe.dll R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 ~ IE Browser: 24 Scanned in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Proxy management: Scanned in 00mn 00s ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Keys: Scanned in 00mn 00s ---\\ Hosts file redirection (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Hosts File: Scanned in 00mn 00s ~ Nombre de lignes (Lines number): 21 ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: PDF Architect Helper [64Bits] - {3A2D5EBA-F86D-4BD3-A177-019765996711} . (.pdfforge GbR - PDF Architect Helper.) -- C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll O2 - BHO: IEVkbdBHO [64Bits] - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} . (.Kaspersky Lab ZAO - IE Virtual Keyboard.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\ievkbd.dll O2 - BHO: Java Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Evernote extension [64Bits] - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} . (.Evernote Corp., 305 Walnut Street, Redwood - Evernote Clipper for Microsoft Internet Exp.) -- C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll O2 - BHO: SkypeIEPluginBHO [64Bits] - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Skype Technologies S.A. - Skype Click to Call for Internet Explorer.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O2 - BHO: Java Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O2 - BHO: link filter bho [64Bits] - {E33CF602-D945-461A-83F0-819F76A199F8} . (.Kaspersky Lab ZAO - WebToolBar component.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\klwtbbho.dll ~ BHO: 14 Scanned in 00mn 00s ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar\WebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Clé orpheline ~ Toolbar: Scanned in 00mn 00s ---\\ Applications lancées au démarrage du système (O4) O4 - HKLM\..\Run: [igfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe O4 - HKLM\..\Run: [synTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.) O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp O4 - HKLM\..\Run: [Power Management] . (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\System32\StikyNot.exe =>.Microsoft Corporation O4 - HKLM\..\Wow6432Node\Run: [backupManagerTray] . (.NTI Corporation - Acer Backup Manager.) -- C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe O4 - HKLM\..\Wow6432Node\Run: [LManager] . (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe O4 - HKLM\..\Wow6432Node\Run: [AVP] . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated O4 - HKUS\S-1-5-19\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-375910149-1381450938-172689633-1000\..\Run: [RESTART_STICKY_NOTES] . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\System32\StikyNot.exe =>.Microsoft Corporation ~ Application: Scanned in 00mn 00s ---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5) O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no ~ IE Control Panel: 1 Scanned in 00mn 00s ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9) O9 - Extra button: Clavier &virtuel [64Bits] - {4248FE82-7FCB-46AC-B270-339F08212110} . (...) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\kbrd.ico O9 - Extra button: Skype Click to Call [64Bits] - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} . (...) -- c:\program files (x86)\skype\toolbars\internet explorer x64\icon.ico O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 [64Bits] - {A95fe080-8f5d-11d2-a20b-00aa003c157a} . (.Evernote Corp., 305 Walnut Street, Redwood - Evernote Clipper for Microsoft Internet Explorer.) -- C:\Program Files (x86)\Evernote\Evernote\EvernoteIEx64.dll O9 - Extra button: Analyse des &liens [64Bits] - {CCF151D8-D089-449F-A5A4-D9909053F20F} . (...) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\logo.ico ~ IE Extra Buttons: Scanned in 00mn 00s ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll =>.Microsoft Corporation O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll =>.Microsoft Corporation ~ Winsock: 8 Scanned in 00mn 00s ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{3BB0CD0E-5B5D-478D-9C23-980B86B488BB}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{3BB0CD0E-5B5D-478D-9C23-980B86B488BB}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{3BB0CD0E-5B5D-478D-9C23-980B86B488BB}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 ~ Domain: Scanned in 00mn 00s ---\\ Protocole additionnel (O18) O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (...) -- O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation ~ Protocole Additionnel: Scanned in 00mn 00s ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll O20 - Winlogon Notify: klogon . (.Kaspersky Lab ZAO - Logon Visualizer.) -- C:\Windows\System32\klogon.dll ~ Winlogon: Scanned in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ~ SSODL: 1 Scanned in 00mn 00s ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Kaspersky Anti-Virus Service (AVP) . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe O23 - Service: Dritek WMI Service (DsiWMIService) . (.Dritek System Inc. - Dritek WMI Service.) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe O23 - Service: Acer ePower Service (ePowerSvc) . (.Acer Incorporated - ePowerSvc.) - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe O23 - Service: GREGService (GREGService) . (.Acer Incorporated - Global Registration Service.) - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc O23 - Service: IviRegMgr (IviRegMgr) . (.InterVideo - RegMgr Module.) - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe O23 - Service: Live Updater Service (Live Updater Service) . (.Acer Incorporated - Updater Service.) - C:\Program Files\Acer\Acer Updater\UpdaterService.exe O23 - Service: Intel® Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe O23 - Service: NTI IScheduleSvc (NTI IScheduleSvc) . (.NTI Corporation - Backup Manager Module.) - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe O23 - Service: PDF Architect Helper Service (PDF Architect Helper Service) . (.pdfforge GbR - PDF Architect Helper Service.) - C:\Program Files (x86)\PDF Architect\HelperService.exe O23 - Service: PDF Architect Service (PDF Architect Service) . (.pdfforge GbR - PDF Architect Conversion Service.) - C:\Program Files (x86)\PDF Architect\ConversionService.exe O23 - Service: Protexis Licensing V2 (PSI_SVC_2) . (.Protexis Inc. - PsiService PsiService.) - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe O23 - Service: Raw Socket Service (RS_Service) . (.Acer Incorporated - Raw Socket Service.) - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe O23 - Service: Secunia Update Agent (Secunia Update Agent) . (.Secunia - Secunia Update Agent.) - C:\Program Files (x86)\Secunia\PSI\sua.exe O23 - Service: Skype C2C Service (Skype C2C Service) . (.Skype Technologies S.A. - Skype C2C Service.) - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: TeamViewer 8 (TeamViewer8) . (.TeamViewer GmbH - TeamViewer 8.) - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe O23 - Service: UDisk Monitor (UDisk Monitor) . (...) - C:\Program Files (x86)\Froyo_Android_Driver\Bin\MonServiceUDisk.exe O23 - Service: Intel® Management & Security Application User Notificatio (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe ~ Services: 23 Scanned in 00mn 17s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Desktop Component: 4 Scanned in 00mn 00s ---\\ Enumère les données de BootExecute (BEX) (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ BEX: 1 Scanned in 00mn 00s ---\\ Tâches planifiées en automatique (O39) [MD5.B5D8DE922237CEDDC7992297654A4BE4] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [262320] [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] [MD5.00000000000000000000000000000000] [APT] [softwareUpdateTaskMachineCore1ce40325c28fff4] (...) -- C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe (.not file.) [0] =>Adware.Boxore [MD5.00000000000000000000000000000000] [APT] [softwareUpdateTaskMachineUA1ce40326270efe9] (...) -- C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe (.not file.) [0] =>Adware.Boxore [MD5.00000000000000000000000000000000] [APT] [{84D067A3-B526-4044-8165-538E3320F349}] (...) -- C:\Kreapixel\Webplayer\Webplayer.exe (.not file.) [0] =>Adware.SocialSkinz [MD5.00000000000000000000000000000000] [APT] [{E82F8632-BD7A-4FAF-99C8-E6D7A6E0C8EB}] (...) -- C:\Kreapixel\Webplayer\Webplayer.exe (.not file.) [0] =>Adware.SocialSkinz O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [1002] O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1066] O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [1066] O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1070] O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [1070] O39 - APT: SoftwareUpdateTaskMachineCore1ce40325c28fff4 - (...) -- C:\Windows\Tasks\SoftwareUpdateTaskMachineCore1ce40325c28fff4.job [916] O39 - APT: SoftwareUpdateTaskMachineCore1ce40325c28fff4 - (...) -- C:\Windows\System32\Tasks\SoftwareUpdateTaskMachineCore1ce40325c28fff4 [916] O39 - APT: SoftwareUpdateTaskMachineUA1ce40326270efe9 - (...) -- C:\Windows\Tasks\SoftwareUpdateTaskMachineUA1ce40326270efe9.job [920] O39 - APT: SoftwareUpdateTaskMachineUA1ce40326270efe9 - (...) -- C:\Windows\System32\Tasks\SoftwareUpdateTaskMachineUA1ce40326270efe9 [920] ~ Scheduled Task: 14 Scanned in 00mn 01s ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll =>.Microsoft Corporation O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll O40 - ASIC: Internet Explorer [64Bits] - {2D46B6DC-2207-486B-B523-A557E6D54B47} . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe =>.Microsoft Corporation O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll ~ Active Setup: 10 Scanned in 00mn 00s ---\\ Pilotes lancés au démarrage du système (O41) O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\drivers\blbdrive.sys O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys O41 - Driver: (kl2) . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) - C:\Windows\System32\DRIVERS\kl2.sys O41 - Driver: (KLIF) . (.Kaspersky Lab - Klif Mini-Filter [fre_wlh_amd64].) - C:\Windows\System32\DRIVERS\klif.sys O41 - Driver: (KLIM6) . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver.) - C:\Windows\System32\DRIVERS\klim6.sys O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys O41 - Driver: ({a3f28269-ad17-41a8-b032-3e0313ef8979}Gw64) . (. - .) - C:\Windows\System32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}Gw64.sys (.not file.) O41 - Driver: ({a3f28269-ad17-41a8-b032-3e0313ef8979}w64) . (.StdLib - StdLib.) - C:\Windows\System32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}w64.sys =>PUP.LinkiDoo ~ Drivers: 75 Scanned in 00mn 00s ---\\ Logiciels installés (O42) O42 - Logiciel: Acer Backup Manager - (.NTI Corporation.) [HKLM][64Bits] -- InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270} O42 - Logiciel: Acer Crystal Eye Webcam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{A0382E3C-7384-429A-9BFA-AF5888E5A193} O42 - Logiciel: Acer Crystal Eye Webcam - (.CyberLink Corp..) [HKLM][64Bits] -- {A0382E3C-7384-429A-9BFA-AF5888E5A193} O42 - Logiciel: Acer Registration - (.Acer Incorporated.) [HKLM][64Bits] -- Acer Registration O42 - Logiciel: Acer ScreenSaver - (.Acer Incorporated.) [HKLM][64Bits] -- Acer Screensaver O42 - Logiciel: Acer Updater - (.Acer Incorporated.) [HKLM][64Bits] -- {EE171732-BEB4-4576-887D-CB62727F01CA} O42 - Logiciel: Acer VCM - (.Acer Incorporated.) [HKLM][64Bits] -- {047F790A-7A2A-4B6A-AD02-38092BA63DAC} O42 - Logiciel: Acer ePower Management - (.Acer Incorporated.) [HKLM][64Bits] -- {3DB0448D-AD82-4923-B305-D001E521A964} O42 - Logiciel: Acer eRecovery Management - (.Acer Incorporated.) [HKLM][64Bits] -- {7F811A54-5A09-4579-90E1-C93498E230D9} O42 - Logiciel: Adobe Digital Editions - (...) [HKLM][64Bits] -- Digital Editions O42 - Logiciel: Adobe Flash Player 14 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Reader X (10.1.10) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AA1000000001} O42 - Logiciel: Adobe Shockwave Player 12.1 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player O42 - Logiciel: Allway Sync version 12.14.11 - (.Botkind Inc.) [HKLM][64Bits] -- Allway Sync_is1 O42 - Logiciel: Android USB Driver - (...) [HKLM][64Bits] -- Android USB Driver_is1 O42 - Logiciel: Auslogics DiskDefrag - (.Auslogics Labs Pty Ltd.) [HKLM][64Bits] -- {DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1 O42 - Logiciel: Backup Manager V3 - (.NTI Corporation.) [HKLM][64Bits] -- {0B61BBD5-DA3C-409A-8730-0C3DC3B0F270} O42 - Logiciel: Broadcom NetLink Controller - (.Broadcom Corporation.) [HKLM][64Bits] -- {C91DCB72-F5BB-410D-A91A-314F5D1B4284} O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner O42 - Logiciel: Canon MP Navigator EX 4.0 - (...) [HKLM][64Bits] -- MP Navigator EX 4.0 O42 - Logiciel: Canon MP280 series MP Drivers - (...) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP280_series O42 - Logiciel: Centre Souris et Claviers Microsoft - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Mouse and Keyboard Center O42 - Logiciel: Corel WinDVD - (.Corel Inc..) [HKLM][64Bits] -- {5C1F18D2-F6B7-4242-B803-B5A78648185D} O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} O42 - Logiciel: Evernote v. 5.4.1 - (.Evernote Corp..) [HKLM][64Bits] -- {A5F7DF42-F67D-11E3-B7EB-00163E98E7D6} O42 - Logiciel: File Helper 2.5.4.1 - (.Blitware Technology Inc..) [HKLM][64Bits] -- {7760A193-8668-4FAB-B1B1-525C259F84DC}_is1 O42 - Logiciel: FileOpener - (.Tweaks.) [HKLM][64Bits] -- Tweaks FileOpener O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Google+ Auto Backup - (.Google.) [HKLM][64Bits] -- {A50DE037-B5C0-4C8A-8049-B0C576B313D1} O42 - Logiciel: Haali Media Splitter - (...) [HKLM][64Bits] -- HaaliMkx O42 - Logiciel: Identity Card - (.Acer Incorporated.) [HKLM][64Bits] -- Identity Card O42 - Logiciel: Image Converter - (.Image Converter.) [HKLM][64Bits] -- Image Converter Image Converter O42 - Logiciel: Image Editor Packages - (...) [HKCU][64Bits] -- Image Editor Packages O42 - Logiciel: Intel® Control Center - (.Intel Corporation.) [HKLM][64Bits] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421} O42 - Logiciel: Intel® Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} O42 - Logiciel: Intel® Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} O42 - Logiciel: Java 7 Update 55 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86417055FF} O42 - Logiciel: Java 7 Update 55 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217045FF} O42 - Logiciel: JoinMe - (.ZTE.) [HKLM][64Bits] -- {C32A23A4-298F-48C1-848181CE9599346F} O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} O42 - Logiciel: Kaspersky Anti-Virus 2012 - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{45E557D6-2271-4F13-8101-C620B4285AB0} O42 - Logiciel: Kaspersky Anti-Virus 2012 - (.Kaspersky Lab.) [HKLM][64Bits] -- {45E557D6-2271-4F13-8101-C620B4285AB0} O42 - Logiciel: Launch Manager - (.Acer Inc..) [HKLM][64Bits] -- LManager O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM][64Bits] -- {196467F1-C11F-4F76-858B-5812ADC83B94} O42 - Logiciel: Malwarebytes Anti-Malware version 2.0.2.1012 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: MozBackup 1.5.1 - (.Pavel Cvrcek.) [HKLM][64Bits] -- MozBackup O42 - Logiciel: Mozilla Firefox 30.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 30.0 (x86 fr) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService O42 - Logiciel: Mozilla Thunderbird 24.6.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird 24.6.0 (x86 fr) =>.Mozilla Corporation O42 - Logiciel: NTI Media Maker 9 - (.NTI Corporation.) [HKLM][64Bits] -- InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44} O42 - Logiciel: OpenOffice 4.1.0 - (.Apache Software Foundation.) [HKLM][64Bits] -- {B3B009FC-6909-4E00-9F43-FFB5CA93D606} O42 - Logiciel: Opera 12.17 - (.Opera Software ASA.) [HKLM][64Bits] -- Opera 12.17.1863 O42 - Logiciel: PDF Architect - (.pdfforge.) [HKLM][64Bits] -- {80A07844-CA64-4DE4-AB61-D37DDBE8074F} O42 - Logiciel: PhotoFiltre Studio X - (...) [HKCU][64Bits] -- PhotoFiltre Studio X O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM][64Bits] -- Picasa 3 O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911} O42 - Logiciel: Secunia PSI (3.0.0.9016) - (.Secunia.) [HKLM][64Bits] -- Secunia PSI O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- KB931906 O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} O42 - Logiciel: Skype Click to Call - (.Skype Technologies S.A..) [HKLM][64Bits] -- {B6CF2967-C81E-40C0-9815-C05774FEF120} O42 - Logiciel: Skype™ 6.16 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7} O42 - Logiciel: Snap.Do - (.ReSoft Ltd..) [HKLM][64Bits] -- {9EA32328-5070-4EBC-A42D-460FD15E1424} =>Hijacker.SmartBar O42 - Logiciel: Snap.Do Engine - (.ReSoft Ltd..) [HKCU][64Bits] -- {d0f392b7-f7de-4e6b-aa89-f96fe7d48992} =>Hijacker.SmartBar O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey O42 - Logiciel: TeamViewer 8 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer 8 O42 - Logiciel: Telecharger et Installer Packages - (...) [HKCU][64Bits] -- Telecharger et Installer Packages =>Adware.InstallCore O42 - Logiciel: TomTom HOME - (.Nom de votre société.) [HKLM][64Bits] -- {7A2BB1C8-903D-4585-9F3B-CADD67D07D37} O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM][64Bits] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533} O42 - Logiciel: VLC media player 2.1.3 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: VideoDownloader version 0.1 - (...) [HKLM][64Bits] -- VideoDownloader_is1 O42 - Logiciel: Visionneuse Microsoft PowerPoint - (.Microsoft Corporation.) [HKLM][64Bits] -- {95140000-00AF-040C-0000-0000000FF1CE} O42 - Logiciel: Welcome Center - (.Acer Incorporated.) [HKLM][64Bits] -- Acer Welcome Center O42 - Logiciel: Winmail Opener 1.5 - (.Eolsoft.) [HKLM][64Bits] -- Winmail Opener O42 - Logiciel: ffdshow v1.2.4422 [2012-04-09] - (...) [HKLM][64Bits] -- ffdshow_is1 O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} ~ Logic: 64 Scanned in 00mn 00s ---\\ HKCU & HKLM Software Keys [HKCU\Software\Acer] [HKCU\Software\Adobe] [HKCU\Software\AppDataLow\Software\Adobe] [HKCU\Software\AppDataLow\Software\JavaSoft] [HKCU\Software\AppDataLow] [HKCU\Software\Auslogics] [HKCU\Software\Canon] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\CyberLink] [HKCU\Software\Dritek] [HKCU\Software\Evernote] [HKCU\Software\File Helper] [HKCU\Software\GNU] [HKCU\Software\Google] [HKCU\Software\Haali] [HKCU\Software\IM Providers] [HKCU\Software\Intel] [HKCU\Software\JavaSoft] [HKCU\Software\KasperskyLab] [HKCU\Software\Licenses] [HKCU\Software\Local AppWizard-Generated Applications] [HKCU\Software\LogiShrd] [HKCU\Software\Logitech] [HKCU\Software\Macromedia] [HKCU\Software\Malwarebytes' Anti-Malware] [HKCU\Software\Mozilla Backup] [HKCU\Software\MozillaPlugins] [HKCU\Software\Mozilla] [HKCU\Software\Netscape] [HKCU\Software\OEM] [HKCU\Software\OpenOffice] [HKCU\Software\Opera Software] [HKCU\Software\PDF Architect] [HKCU\Software\PDFCreator] [HKCU\Software\Piriform] [HKCU\Software\Policies] [HKCU\Software\Realtek] [HKCU\Software\Secunia] [HKCU\Software\Skype] [HKCU\Software\Software] [HKCU\Software\SubSystems] [HKCU\Software\Synaptics] [HKCU\Software\SyncApp] [HKCU\Software\TeamViewer] [HKCU\Software\TeleCharger] [HKCU\Software\Thunderbird] =>.Mozilla Corporation [HKCU\Software\TomTom] [HKCU\Software\Trolltech] [HKCU\Software\USyndication] =>Trojan.USyndication [HKCU\Software\Wow6432Node] [HKCU\Software\X-Trade Brokers] [HKCU\Software\Yappyz] =>PUP.Yappyz [HKCU\Software\telecharger-gratuit] [HKCU\Software\usyndication.com] =>Trojan.USyndication [HKLM\Software\ATI Technologies] [HKLM\Software\Acer] [HKLM\Software\BrowserChoice] [HKLM\Software\CBSTEST] [HKLM\Software\Canon] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\DTS] [HKLM\Software\Dolby] [HKLM\Software\EnigmaSoftwareGroup] [HKLM\Software\File Helper] [HKLM\Software\Google] [HKLM\Software\HaaliMkx] [HKLM\Software\IM Providers] [HKLM\Software\InstalledOptions] [HKLM\Software\Intel] [HKLM\Software\JavaSoft] [HKLM\Software\KasperskyLab] [HKLM\Software\Knowles] [HKLM\Software\LFL] [HKLM\Software\Logishrd] [HKLM\Software\Macromedia] [HKLM\Software\McAfee.com] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\ODBC] [HKLM\Software\OEM] [HKLM\Software\OOBEOffer] [HKLM\Software\OemSetup] [HKLM\Software\Piriform] [HKLM\Software\Policies] [HKLM\Software\Realtek Semiconductor Corp.] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\SRS Labs] [HKLM\Software\SonicFocus] [HKLM\Software\Sonic] [HKLM\Software\Synaptics] [HKLM\Software\Waves Audio] [HKLM\Software\Wow6432Node\Acer Incorporated] [HKLM\Software\Wow6432Node\Adobe] [HKLM\Software\Wow6432Node\AdwCleaner] [HKLM\Software\Wow6432Node\America Online] [HKLM\Software\Wow6432Node\AppDataLow] [HKLM\Software\Wow6432Node\Auslogics] [HKLM\Software\Wow6432Node\Canon] [HKLM\Software\Wow6432Node\Classes] [HKLM\Software\Wow6432Node\Clients] [HKLM\Software\Wow6432Node\Corel] [HKLM\Software\Wow6432Node\CyberLink] [HKLM\Software\Wow6432Node\DivXNetworks] [HKLM\Software\Wow6432Node\Dritek] [HKLM\Software\Wow6432Node\Evernote] [HKLM\Software\Wow6432Node\GNU] [HKLM\Software\Wow6432Node\Google] [HKLM\Software\Wow6432Node\IM Providers] [HKLM\Software\Wow6432Node\IncrediMail] [HKLM\Software\Wow6432Node\Intel] [HKLM\Software\Wow6432Node\JavaSoft] [HKLM\Software\Wow6432Node\JreMetrics] [HKLM\Software\Wow6432Node\KasperskyLab] [HKLM\Software\Wow6432Node\Licenses] [HKLM\Software\Wow6432Node\Logitech] [HKLM\Software\Wow6432Node\Macromedia] [HKLM\Software\Wow6432Node\Macrovision] [HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware (Trial)] [HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware] [HKLM\Software\Wow6432Node\MozillaPlugins] [HKLM\Software\Wow6432Node\Mozilla] [HKLM\Software\Wow6432Node\Netscape] [HKLM\Software\Wow6432Node\NewTech Infosystems] [HKLM\Software\Wow6432Node\ODBC] [HKLM\Software\Wow6432Node\OEM] [HKLM\Software\Wow6432Node\OpenOffice] [HKLM\Software\Wow6432Node\Opera Software] [HKLM\Software\Wow6432Node\PDFCreator] [HKLM\Software\Wow6432Node\Policies] [HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.] [HKLM\Software\Wow6432Node\Realtek] [HKLM\Software\Wow6432Node\RegisteredApplications] [HKLM\Software\Wow6432Node\Secunia] [HKLM\Software\Wow6432Node\Skype] [HKLM\Software\Wow6432Node\Software] [HKLM\Software\Wow6432Node\Symantec] [HKLM\Software\Wow6432Node\TeamViewer] [HKLM\Software\Wow6432Node\TomTom] [HKLM\Software\Wow6432Node\VideoLAN] [HKLM\Software\Wow6432Node\Volatile] [HKLM\Software\Wow6432Node\Windows] [HKLM\Software\Wow6432Node\mozilla.org] [HKLM\Software\Wow6432Node] ~ Key Software: 298 Scanned in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 14/03/2013 - 19:29:40 - [] ----D C:\Program Files (x86)\Acer O43 - CFD: 31/10/2013 - 23:37:34 - [] ----D C:\Program Files (x86)\Adobe O43 - CFD: 14/11/2013 - 18:02:38 - [] ----D C:\Program Files (x86)\Allway Sync O43 - CFD: 18/12/2013 - 23:06:42 - [] ----D C:\Program Files (x86)\Auslogics O43 - CFD: 17/01/2013 - 18:24:02 - [] ----D C:\Program Files (x86)\Canon O43 - CFD: 13/06/2014 - 19:51:14 - [] ----D C:\Program Files (x86)\Common Files O43 - CFD: 04/05/2012 - 22:35:40 - [] ----D C:\Program Files (x86)\Corel O43 - CFD: 09/01/2014 - 11:08:34 - [] ----D C:\Program Files (x86)\Evernote O43 - CFD: 10/10/2013 - 09:06:48 - [] ----D C:\Program Files (x86)\ffdshow O43 - CFD: 16/05/2013 - 12:19:31 - [] ----D C:\Program Files (x86)\File Helper O43 - CFD: 10/08/2012 - 17:13:38 - [] ----D C:\Program Files (x86)\Froyo_Android_Driver O43 - CFD: 03/05/2014 - 23:04:18 - [] ----D C:\Program Files (x86)\Google O43 - CFD: 10/10/2013 - 09:06:47 - [] ----D C:\Program Files (x86)\Haali O43 - CFD: 29/06/2013 - 12:54:50 - [] ----D C:\Program Files (x86)\Image Converter O43 - CFD: 04/06/2014 - 18:41:26 - [] --H-D C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 10/01/2012 - 14:13:58 - [] ----D C:\Program Files (x86)\Intel O43 - CFD: 12/06/2014 - 08:41:53 - [] ----D C:\Program Files (x86)\Internet Explorer O43 - CFD: 23/04/2014 - 11:30:53 - [] ----D C:\Program Files (x86)\Java O43 - CFD: 25/02/2013 - 17:34:58 - [] ----D C:\Program Files (x86)\JoinMe O43 - CFD: 11/07/2012 - 17:00:37 - [] ----D C:\Program Files (x86)\Kaspersky Lab O43 - CFD: 04/05/2012 - 22:24:32 - [] ----D C:\Program Files (x86)\Launch Manager O43 - CFD: 05/06/2014 - 21:23:29 - [] ----D C:\Program Files (x86)\Logitech O43 - CFD: 26/06/2014 - 09:41:59 - [] ----D C:\Program Files (x86)\Malwarebytes Anti-Malware O43 - CFD: 01/08/2012 - 14:55:24 - [0] ----D C:\Program Files (x86)\Microsoft O43 - CFD: 05/06/2014 - 20:42:51 - [] ----D C:\Program Files (x86)\Microsoft CAPICOM 2.1.0.2 O43 - CFD: 05/05/2013 - 16:25:53 - [] ----D C:\Program Files (x86)\Microsoft Office O43 - CFD: 13/03/2014 - 12:05:20 - [] ----D C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 10/01/2012 - 14:34:14 - [] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 22/11/2012 - 09:19:09 - [] ----D C:\Program Files (x86)\Microsoft Works Suite 2000 O43 - CFD: 11/07/2012 - 15:30:00 - [] ----D C:\Program Files (x86)\Microsoft.NET O43 - CFD: 12/12/2013 - 15:28:18 - [] ----D C:\Program Files (x86)\MoneyManagerEX O43 - CFD: 12/07/2012 - 19:13:07 - [] ----D C:\Program Files (x86)\MozBackup O43 - CFD: 25/06/2014 - 22:25:20 - [] ----D C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 12/06/2014 - 07:59:21 - [] ----D C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 12/06/2014 - 07:59:43 - [] ----D C:\Program Files (x86)\Mozilla Thunderbird =>.Mozilla Corporation O43 - CFD: 14/07/2009 - 07:32:38 - [] ----D C:\Program Files (x86)\MSBuild O43 - CFD: 21/11/2012 - 16:19:09 - [] ----D C:\Program Files (x86)\MSECache O43 - CFD: 25/04/2013 - 16:20:10 - [] ----D C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 04/05/2012 - 22:33:24 - [] ----D C:\Program Files (x86)\NTI O43 - CFD: 27/05/2014 - 22:32:24 - [] ----D C:\Program Files (x86)\OpenOffice 4 O43 - CFD: 22/09/2013 - 23:41:24 - [] ----D C:\Program Files (x86)\OpenOffice.org 3 O43 - CFD: 25/04/2014 - 09:19:59 - [] ----D C:\Program Files (x86)\Opera O43 - CFD: 20/02/2013 - 16:35:02 - [] ----D C:\Program Files (x86)\PDF Architect O43 - CFD: 12/06/2013 - 22:04:54 - [] ----D C:\Program Files (x86)\PDFCreator O43 - CFD: 23/11/2013 - 07:30:50 - [] ----D C:\Program Files (x86)\PhotoFiltre 7 O43 - CFD: 07/04/2014 - 23:34:41 - [] ----D C:\Program Files (x86)\PhotoFiltre Studio X O43 - CFD: 04/05/2012 - 22:26:32 - [] ----D C:\Program Files (x86)\Realtek O43 - CFD: 14/07/2009 - 07:32:38 - [] ----D C:\Program Files (x86)\Reference Assemblies O43 - CFD: 25/04/2013 - 08:47:08 - [] ----D C:\Program Files (x86)\Secunia O43 - CFD: 25/05/2014 - 14:57:10 - [] R---D C:\Program Files (x86)\Skype O43 - CFD: 13/09/2013 - 22:30:19 - [] ----D C:\Program Files (x86)\TeamViewer O43 - CFD: 04/05/2012 - 22:26:55 - [0] --H-D C:\Program Files (x86)\Temp O43 - CFD: 17/06/2014 - 17:14:15 - [] ----D C:\Program Files (x86)\TomTom HOME 2 O43 - CFD: 12/07/2012 - 22:06:19 - [] ----D C:\Program Files (x86)\TomTom International B.V O43 - CFD: 27/01/2013 - 21:12:44 - [] ----D C:\Program Files (x86)\Tweaks O43 - CFD: 14/07/2009 - 06:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information O43 - CFD: 11/07/2012 - 15:37:27 - [] ----D C:\Program Files (x86)\VideoLAN O43 - CFD: 11/07/2013 - 22:41:35 - [] ----D C:\Program Files (x86)\Windows Defender O43 - CFD: 10/01/2012 - 14:38:16 - [] ----D C:\Program Files (x86)\Windows Live O43 - CFD: 05/05/2012 - 08:13:54 - [] ----D C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 12/12/2013 - 08:46:41 - [] ----D C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 14/07/2009 - 07:32:38 - [] ----D C:\Program Files (x86)\Windows NT O43 - CFD: 05/05/2012 - 08:13:54 - [] ----D C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 21/11/2010 - 05:31:38 - [] ----D C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 05/05/2012 - 08:13:54 - [] ----D C:\Program Files (x86)\Windows Sidebar O43 - CFD: 25/06/2014 - 20:00:01 - [] ----D C:\Program Files (x86)\xOption O43 - CFD: 26/06/2014 - 12:07:16 - [] ----D C:\Program Files (x86)\ZHPDiag =>.Nicolas Coolman O43 - CFD: 01/08/2012 - 15:29:41 - [] ----D C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 04/05/2012 - 22:26:28 - [] ----D C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 10/01/2012 - 14:03:42 - [] ----D C:\Program Files (x86)\Common Files\Intel O43 - CFD: 04/05/2012 - 22:36:16 - [] ----D C:\Program Files (x86)\Common Files\InterVideo O43 - CFD: 23/04/2014 - 11:31:04 - [] ----D C:\Program Files (x86)\Common Files\Java O43 - CFD: 04/05/2012 - 22:32:58 - [] ----D C:\Program Files (x86)\Common Files\Macrovision Shared O43 - CFD: 14/11/2013 - 18:02:38 - [] ----D C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 10/01/2012 - 14:14:01 - [] ----D C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 04/05/2012 - 22:35:48 - [] ----D C:\Program Files (x86)\Common Files\Protexis O43 - CFD: 14/07/2009 - 05:20:08 - [] ----D C:\Program Files (x86)\Common Files\Services O43 - CFD: 25/05/2014 - 14:57:10 - [] ----D C:\Program Files (x86)\Common Files\Skype O43 - CFD: 14/07/2009 - 05:20:08 - [] ----D C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 11/07/2012 - 14:59:05 - [] ----D C:\Program Files (x86)\Common Files\System O43 - CFD: 10/01/2012 - 14:26:17 - [] ----D C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 23/04/2013 - 23:55:39 - [] ----D C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 04/06/2014 - 18:36:33 - [] ----D C:\ProgramData\Acer O43 - CFD: 22/01/2014 - 18:51:16 - [] ----D C:\ProgramData\Adobe O43 - CFD: 14/07/2009 - 07:08:56 - [] -SH-D C:\ProgramData\Application Data O43 - CFD: 18/12/2013 - 23:06:47 - [] ----D C:\ProgramData\Auslogics O43 - CFD: 10/01/2012 - 14:46:42 - [] ----D C:\ProgramData\BackupManager O43 - CFD: 11/07/2012 - 14:00:50 - [] -SH-D C:\ProgramData\Bureau O43 - CFD: 15/09/2012 - 20:47:06 - [] --H-D C:\ProgramData\CanonBJ O43 - CFD: 17/02/2013 - 11:08:56 - [] --H-D C:\ProgramData\CanonIJScan O43 - CFD: 04/05/2012 - 22:35:40 - [] ----D C:\ProgramData\Corel O43 - CFD: 14/03/2013 - 17:47:58 - [] ----D C:\ProgramData\CyberLink O43 - CFD: 14/07/2009 - 07:08:56 - [] -SH-D C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - 07:08:56 - [] -SH-D C:\ProgramData\Documents O43 - CFD: 10/01/2012 - 14:21:44 - [0] ----D C:\ProgramData\Evernote O43 - CFD: 11/07/2012 - 14:00:50 - [] -SH-D C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - 07:08:56 - [] -SH-D C:\ProgramData\Favorites O43 - CFD: 04/05/2012 - 22:32:59 - [] ----D C:\ProgramData\FLEXnet O43 - CFD: 10/01/2012 - 14:07:14 - [] ----D C:\ProgramData\Intel O43 - CFD: 26/06/2014 - 11:43:51 - [] ----D C:\ProgramData\Kaspersky Lab O43 - CFD: 21/06/2014 - 09:29:11 - [] ----D C:\ProgramData\Malwarebytes O43 - CFD: 11/07/2012 - 14:35:19 - [] ----D C:\ProgramData\McAfee O43 - CFD: 11/07/2012 - 14:00:50 - [] -SH-D C:\ProgramData\Menu Démarrer O43 - CFD: 26/02/2014 - 00:03:25 - [] -S--D C:\ProgramData\Microsoft O43 - CFD: 11/07/2012 - 14:00:50 - [] -SH-D C:\ProgramData\Modèles O43 - CFD: 14/10/2012 - 14:56:44 - [] ----D C:\ProgramData\Mozilla O43 - CFD: 15/07/2012 - 09:59:07 - [] ----D C:\ProgramData\newsXpresso O43 - CFD: 04/05/2012 - 22:34:24 - [] ----D C:\ProgramData\NTI Launcher O43 - CFD: 11/07/2012 - 14:07:04 - [] ----D C:\ProgramData\oem O43 - CFD: 23/04/2014 - 11:31:08 - [0] ----D C:\ProgramData\Oracle O43 - CFD: 25/05/2014 - 14:57:19 - [] ----D C:\ProgramData\Skype O43 - CFD: 14/07/2009 - 07:08:56 - [] -SH-D C:\ProgramData\Start Menu O43 - CFD: 11/07/2012 - 15:38:07 - [] ----D C:\ProgramData\Sun O43 - CFD: 12/07/2012 - 21:33:50 - [] ----D C:\ProgramData\Sync App Settings O43 - CFD: 12/03/2014 - 09:10:45 - [] ---AD C:\ProgramData\Temp O43 - CFD: 14/07/2009 - 07:08:56 - [] -SH-D C:\ProgramData\Templates O43 - CFD: 12/07/2012 - 22:09:53 - [] ----D C:\ProgramData\TomTom O43 - CFD: 11/03/2014 - 14:18:44 - [] ----D C:\Users\Monique\AppData\Roaming\0T1N1C1T1Q2Y1L2Z =>Adware.InstallCore O43 - CFD: 31/10/2013 - 23:39:40 - [] ----D C:\Users\Monique\AppData\Roaming\Adobe O43 - CFD: 12/07/2012 - 20:31:52 - [] ----D C:\Users\Monique\AppData\Roaming\Auslogics O43 - CFD: 16/05/2013 - 12:19:41 - [] ----D C:\Users\Monique\AppData\Roaming\Blitware O43 - CFD: 17/02/2013 - 11:08:57 - [] ----D C:\Users\Monique\AppData\Roaming\Canon O43 - CFD: 14/03/2013 - 17:47:55 - [] ----D C:\Users\Monique\AppData\Roaming\CyberLink O43 - CFD: 12/12/2012 - 10:29:13 - [] ----D C:\Users\Monique\AppData\Roaming\Google O43 - CFD: 18/11/2013 - 23:02:03 - [] ----D C:\Users\Monique\AppData\Roaming\Identities O43 - CFD: 29/06/2013 - 12:55:10 - [] ----D C:\Users\Monique\AppData\Roaming\Image Editor Packages O43 - CFD: 06/06/2014 - 15:12:51 - [] ----D C:\Users\Monique\AppData\Roaming\Macromedia O43 - CFD: 21/06/2014 - 09:30:12 - [0] ----D C:\Users\Monique\AppData\Roaming\Malwarebytes O43 - CFD: 21/11/2010 - 09:16:41 - [0] ----D C:\Users\Monique\AppData\Roaming\Media Center Programs O43 - CFD: 26/11/2013 - 23:34:17 - [] -S--D C:\Users\Monique\AppData\Roaming\Microsoft O43 - CFD: 12/12/2013 - 15:28:32 - [] ----D C:\Users\Monique\AppData\Roaming\MoneyManagerEx O43 - CFD: 21/11/2012 - 16:15:19 - [] ----D C:\Users\Monique\AppData\Roaming\Mozilla O43 - CFD: 23/09/2013 - 13:24:00 - [] ----D C:\Users\Monique\AppData\Roaming\OpenOffice O43 - CFD: 11/07/2012 - 16:00:00 - [] ----D C:\Users\Monique\AppData\Roaming\OpenOffice.org O43 - CFD: 01/01/2013 - 10:29:54 - [] ----D C:\Users\Monique\AppData\Roaming\Opera O43 - CFD: 25/02/2013 - 17:41:08 - [] ----D C:\Users\Monique\AppData\Roaming\P18E O43 - CFD: 20/02/2013 - 19:45:50 - [] ----D C:\Users\Monique\AppData\Roaming\PDF Architect O43 - CFD: 23/11/2013 - 07:30:57 - [] ----D C:\Users\Monique\AppData\Roaming\PhotoFiltre Studio X O43 - CFD: 11/03/2014 - 14:18:11 - [] ----D C:\Users\Monique\AppData\Roaming\Shortcut O43 - CFD: 22/06/2014 - 23:22:05 - [] ----D C:\Users\Monique\AppData\Roaming\Skype O43 - CFD: 12/11/2013 - 12:18:23 - [] ----D C:\Users\Monique\AppData\Roaming\Sync App Settings O43 - CFD: 22/09/2013 - 16:58:28 - [] ----D C:\Users\Monique\AppData\Roaming\TeamViewer O43 - CFD: 12/07/2012 - 12:36:32 - [] ----D C:\Users\Monique\AppData\Roaming\Thunderbird =>.Mozilla Corporation O43 - CFD: 12/07/2012 - 22:07:13 - [] ----D C:\Users\Monique\AppData\Roaming\TomTom O43 - CFD: 20/04/2014 - 19:57:43 - [] ----D C:\Users\Monique\AppData\Roaming\vlc O43 - CFD: 26/06/2014 - 12:09:14 - [] ----D C:\Users\Monique\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 11/07/2012 - 14:06:21 - [] ----D C:\Users\Monique\AppData\Local\Absolute_Software O43 - CFD: 13/06/2014 - 23:56:35 - [] ----D C:\Users\Monique\AppData\Local\Adobe O43 - CFD: 11/07/2012 - 14:01:17 - [] -SH-D C:\Users\Monique\AppData\Local\Application Data O43 - CFD: 12/07/2012 - 12:53:54 - [] ----D C:\Users\Monique\AppData\Local\Apps O43 - CFD: 19/09/2013 - 07:38:29 - [] ----D C:\Users\Monique\AppData\Local\avgchrome O43 - CFD: 13/09/2013 - 22:30:03 - [] ----D C:\Users\Monique\AppData\Local\CRE O43 - CFD: 14/03/2013 - 18:08:55 - [] ----D C:\Users\Monique\AppData\Local\CyberLink O43 - CFD: 12/07/2012 - 12:54:03 - [0] ----D C:\Users\Monique\AppData\Local\Deployment O43 - CFD: 17/06/2014 - 17:12:36 - [] ----D C:\Users\Monique\AppData\Local\Downloaded Installations O43 - CFD: 12/06/2014 - 11:10:10 - [] ----D C:\Users\Monique\AppData\Local\ElevatedDiagnostics O43 - CFD: 15/06/2014 - 23:22:04 - [] -SH-D C:\Users\Monique\AppData\Local\EmieSiteList O43 - CFD: 15/06/2014 - 23:22:04 - [] -SH-D C:\Users\Monique\AppData\Local\EmieUserList O43 - CFD: 12/07/2012 - 22:21:19 - [] ----D C:\Users\Monique\AppData\Local\Evernote O43 - CFD: 25/04/2013 - 16:27:04 - [] ----D C:\Users\Monique\AppData\Local\Google O43 - CFD: 11/07/2012 - 14:01:17 - [] -SH-D C:\Users\Monique\AppData\Local\Historique O43 - CFD: 05/06/2014 - 13:47:15 - [0] ----D C:\Users\Monique\AppData\Local\Logitech-LS O43 - CFD: 09/12/2012 - 11:10:32 - [] ----D C:\Users\Monique\AppData\Local\Macromedia O43 - CFD: 11/12/2013 - 09:09:22 - [] ----D C:\Users\Monique\AppData\Local\Microsoft O43 - CFD: 21/11/2012 - 20:56:12 - [0] ----D C:\Users\Monique\AppData\Local\MigWiz O43 - CFD: 20/09/2013 - 13:03:41 - [] ----D C:\Users\Monique\AppData\Local\Mozilla O43 - CFD: 01/01/2013 - 10:29:54 - [] ----D C:\Users\Monique\AppData\Local\Opera O43 - CFD: 08/01/2014 - 16:02:40 - [] ----D C:\Users\Monique\AppData\Local\Programs O43 - CFD: 25/04/2013 - 08:47:18 - [0] ----D C:\Users\Monique\AppData\Local\Secunia PSI O43 - CFD: 19/03/2014 - 13:32:11 - [] ----D C:\Users\Monique\AppData\Local\Skype O43 - CFD: 26/06/2014 - 12:07:25 - [] ----D C:\Users\Monique\AppData\Local\Temp O43 - CFD: 11/07/2012 - 14:01:17 - [] -SH-D C:\Users\Monique\AppData\Local\Temporary Internet Files O43 - CFD: 11/09/2012 - 09:45:34 - [] ----D C:\Users\Monique\AppData\Local\Thunderbird =>.Mozilla Corporation O43 - CFD: 12/07/2012 - 22:07:13 - [] ----D C:\Users\Monique\AppData\Local\TomTom O43 - CFD: 11/07/2012 - 14:06:24 - [0] ----D C:\Users\Monique\AppData\Local\VirtualStore O43 - CFD: 14/07/2009 - 06:54:32 - [] R---D C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 16/05/2014 - 07:53:36 - [] R---D C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 08/01/2014 - 16:02:40 - [] ----D C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google+ Auto Backup O43 - CFD: 10/10/2013 - 09:06:47 - [0] ----D C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter O43 - CFD: 25/02/2013 - 17:35:00 - [] ----D C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JoinMe O43 - CFD: 14/07/2009 - 06:49:38 - [] R---D C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 22/11/2013 - 22:13:45 - [0] ----D C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 O43 - CFD: 06/06/2014 - 13:54:44 - [] R---D C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 16/05/2013 - 12:18:46 - [0] ----D C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winmail Opener ~ Program Folder: 184 Scanned in 00mn 00s ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.A5F57CC499EEC2D4EF8BECDFEDE78875] - 12/06/2014 - 07:23:24 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\System32\MRT.exe [95414520] O44 - LFC:[MD5.1DC62FDE136A5E0B12C205D17334C95D] - 17/06/2014 - 23:02:19 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1669656] O44 - LFC:[MD5.D9763226CF51BB210BD987E72992CCEF] - 17/06/2014 - 23:02:19 ---A- . (...) -- C:\Windows\System32\perfc009.dat [122352] O44 - LFC:[MD5.70D352B30BBC379A03FEADED44C4127E] - 17/06/2014 - 23:02:19 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [150402] O44 - LFC:[MD5.BC81542D55DB0D6A71CA048C76F177A2] - 17/06/2014 - 23:02:19 ---A- . (...) -- C:\Windows\System32\perfh009.dat [654480] O44 - LFC:[MD5.ABCDE22D5B7C7F239FE99136C7C87C17] - 17/06/2014 - 23:02:19 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [747910] O44 - LFC:[MD5.52DBA584A8D384F5FDE65E396EF98804] - 19/06/2014 - 14:27:34 ---A- . (.StdLib - StdLib.) -- C:\Windows\System32\Drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}w64.sys [61120] =>PUP.LinkiDoo O44 - LFC:[MD5.BE3B0B23FC933FA7B4B2A4BF59119BAF] - 21/06/2014 - 11:02:32 ---A- . (...) -- C:\Windows\win.ini [537] O44 - LFC:[MD5.184E8ADA3A8C5C1CEBF6390A7C65D363] - 25/06/2014 - 21:43:19 ---A- . (...) -- C:\Windows\PFRO.log [1318] O44 - LFC:[MD5.D74E3C688AA4F552EB9F55CB8EA67170] - 25/06/2014 - 21:43:51 ---A- . (...) -- C:\Windows\setupact.log [56] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 25/06/2014 - 21:43:51 ---A- . (...) -- C:\Windows\setuperr.log [0] O44 - LFC:[MD5.82D3DB10A68A93D0266E9E091B31B576] - 26/06/2014 - 06:40:03 --HA- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.10D120BC044476FA39E117E7624BFE3A] - 26/06/2014 - 07:29:10 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1472694] O44 - LFC:[MD5.F92B0E478C0FAA6D6661E6E977247E60] - 26/06/2014 - 08:41:56 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [25816] O44 - LFC:[MD5.9D9ED48F841EA37AA5310D54B9E5D3C7] - 26/06/2014 - 08:41:56 ---A- . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\Drivers\mbamchameleon.sys [91352] O44 - LFC:[MD5.15E8ABC06843672955CE26A009533BAD] - 26/06/2014 - 08:41:56 ---A- . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\Drivers\mwac.sys [63704] O44 - LFC:[MD5.8A50D5304E6AE48664CF5838EC32F647] - 26/06/2014 - 10:58:22 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\MBAMSwissArmy.sys [122584] ~ Files: 17 Scanned in 00mn 05s ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corp. - LiveSSP.) -- C:\Windows\System32\livessp.dll ~ LSA: 9 Scanned in 00mn 00s ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys ~ CSB: 13 Scanned in 00mn 00s ---\\ Clé de registre Shell MountPoints2 (MPKS) (O51) O51 - MPSK:{a28d17eb-e2ae-11e1-a9e0-e840f2dfb795}\AutoRun\command. (...) -- F:\autorun.exe (.not file.) ~ Keys: Scanned in 00mn 00s ---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm ~ TDSD: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre StartupReg (SMSR) (O53) O53 - SMSR:HKLM\...\startupreg\7C37E3DE194EBA8EB7F9EE18B6F9FD86EE1AA4DB._service_run [Key] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe O53 - SMSR:HKLM\...\startupreg\Malwarebytes' Anti-Malware [Key] . (...) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O53 - SMSR:HKLM\...\startupreg\Sweetpacks Communicator [Key] . (...) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) =>PUP.SweetIM O53 - SMSR:HKLM\...\startupreg\swg [Key] . (...) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\TomTomHOME.exe [Key] . (.TomTom - System Tray application for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe O53 - SMSR:HKLM\...\startupreg\Yontoo Desktop [Key] . (...) -- C:\Users\Monique\AppData\Roaming\Yontoo\YontooDesktop.exe (.not file.) =>Adware.Yontoo O53 - SMSR:HKLM\...\startupreg\zLoader.exe [Key] . (...) -- C:\Program Files (x86)\JoinMe\Bin\zLoggingDaemon.exe ~ SMSR Keys: 10 Scanned in 00mn 00s ---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll ~ MSCP: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=0 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 O55 - MWPS:[HKCU\...\Policies\System] - "DisableRegistryTools"=0 O55 - MWPS:[HKCU\...\Policies\System] - "DisableTaskMgr"=0 ~ MWPS: 18 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56) O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=145 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDriveTypeAutoRun"=60 ~ MWPE Keys: 5 Scanned in 00mn 00s ---\\ Liste des pilotes du système (SDL) (O58) O58 - SDL:14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [491088] O58 - SDL:14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\Drivers\adpahci.sys [339536] O58 - SDL:14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\Drivers\adpu320.sys [182864] O58 - SDL:14/07/2009 - 02:52:21 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\Drivers\aliide.sys [15440] O58 - SDL:14/07/2011 - 06:35:47 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\Drivers\amdsata.sys [107904] O58 - SDL:14/07/2009 - 02:52:20 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\System32\Drivers\amdsbs.sys [194128] O58 - SDL:14/07/2011 - 06:35:47 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\Drivers\amdxata.sys [27008] O58 - SDL:14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\Drivers\arc.sys [87632] O58 - SDL:14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [97856] O58 - SDL:02/06/2011 - 04:37:32 ---A- . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) -- C:\Windows\System32\Drivers\athrx.sys [2750464] O58 - SDL:10/06/2009 - 21:34:23 ---A- . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\System32\Drivers\b57nd60a.sys [270848] O58 - SDL:10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltLo.sys [18432] O58 - SDL:10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltUp.sys [8704] O58 - SDL:14/07/2009 - 02:19:07 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\Drivers\BrSerId.sys [286720] O58 - SDL:10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\Drivers\BrSerWdm.sys [47104] O58 - SDL:10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\Drivers\BrUsbMdm.sys [14976] O58 - SDL:10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\Drivers\BrUsbSer.sys [14720] O58 - SDL:10/06/2009 - 21:34:28 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\Drivers\bxvbda.sys [468480] O58 - SDL:14/07/2009 - 02:52:31 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\cmdide.sys [17488] O58 - SDL:24/08/2011 - 08:02:22 ---A- . (.Inc. - USB/Serial Device Driver.) -- C:\Windows\System32\Drivers\CT_U_USBSER.sys [122368] O58 - SDL:14/07/2009 - 02:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [530496] O58 - SDL:10/06/2009 - 21:34:33 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\Drivers\evbda.sys [3286016] O58 - SDL:10/06/2009 - 21:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [31232] O58 - SDL:17/09/2009 - 04:54:54 ---A- . (.Intel Corporation - Intel® Management Engine Interface.) -- C:\Windows\System32\Drivers\HECIx64.sys [56344] O58 - SDL:21/11/2010 - 04:23:47 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\System32\Drivers\HpSAMD.sys [78720] O58 - SDL:05/11/2010 - 16:45:48 ---A- . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\Drivers\iaStor.sys [438808] O58 - SDL:14/07/2011 - 06:35:47 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\Drivers\iaStorV.sys [410496] O58 - SDL:10/06/2011 - 04:16:08 ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\Drivers\igdkmd64.sys [12230912] O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\Drivers\iirsp.sys [44112] O58 - SDL:26/02/2010 - 09:32:14 ---A- . (.Intel Corporation - Intel® Turbo Boost Technology Driver.) -- C:\Windows\System32\Drivers\Impcd.sys [158976] O58 - SDL:10/05/2011 - 05:42:16 ---A- . (.Broadcom Corporation - Broadcom NetLink Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\System32\Drivers\k57nd60a.sys [425000] O58 - SDL:04/03/2011 - 12:23:24 ---A- . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\Drivers\kl1.sys [460888] O58 - SDL:04/03/2011 - 12:23:28 ---A- . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\Drivers\kl2.sys [11864] O58 - SDL:29/10/2012 - 14:19:24 ---A- . (.Kaspersky Lab - Klif Mini-Filter [fre_wlh_amd64].) -- C:\Windows\System32\Drivers\klif.sys [637272] O58 - SDL:10/03/2011 - 17:36:24 ---A- . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver.) -- C:\Windows\System32\Drivers\klim6.sys [29488] O58 - SDL:02/11/2009 - 19:27:10 ---A- . (.Kaspersky Lab - KLMOUFLT Mouse Device Filter [fre_wlh_AMD64].) -- C:\Windows\System32\Drivers\klmouflt.sys [22544] O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_fc.sys [114752] O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [106560] O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas2.sys [65600] O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_scsi.sys [115776] O58 - SDL:12/05/2014 - 06:25:56 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [25816] O58 - SDL:12/05/2014 - 06:26:00 ---A- . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\Drivers\mbamchameleon.sys [91352] O58 - SDL:26/06/2014 - 10:58:22 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\MBAMSwissArmy.sys [122584] O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\System32\Drivers\megasas.sys [35392] O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\MegaSR.sys [284736] O58 - SDL:12/05/2014 - 06:26:10 ---A- . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\Drivers\mwac.sys [63704] O58 - SDL:14/07/2009 - 02:48:26 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\Drivers\nfrd960.sys [51264] O58 - SDL:10/03/2011 - 05:01:45 ---A- . (.NTI Corporation - NTI CD-ROM Filter Driver.) -- C:\Windows\System32\Drivers\NTIDrvr.sys [18432] O58 - SDL:14/07/2011 - 06:35:47 ---A- . (.NVIDIA Corporation - NVIDIA® nForce RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [148352] O58 - SDL:14/07/2011 - 06:35:47 ---A- . (.NVIDIA Corporation - NVIDIA® nForce Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [166272] O58 - SDL:06/12/2013 - 15:47:12 ---A- . (.Secunia - Secunia PSI Driver.) -- C:\Windows\System32\Drivers\psi_mf_amd64.sys [18456] O58 - SDL:14/07/2009 - 02:45:46 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\Drivers\ql2300.sys [1524816] O58 - SDL:14/07/2009 - 02:45:45 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\Drivers\ql40xx.sys [128592] O58 - SDL:14/06/2011 - 12:38:12 ---A- . (.Realtek Semiconductor Corp. - Realtek® High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\RTKVHD64.sys [2899176] O58 - SDL:01/12/2010 - 09:12:06 ---A- . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/Vista/Win7.) -- C:\Windows\System32\Drivers\RtsUStor.sys [250984] O58 - SDL:10/06/2009 - 21:37:19 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\System32\Drivers\secdrv.sys [23040] O58 - SDL:14/07/2009 - 02:45:45 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid2.sys [43584] O58 - SDL:14/07/2009 - 02:45:46 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid4.sys [80464] O58 - SDL:14/07/2009 - 02:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [24656] O58 - SDL:28/03/2011 - 04:44:46 ---A- . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\Drivers\SynTP.sys [1417776] O58 - SDL:10/03/2011 - 05:01:45 ---A- . (.NTI Corporation - NTI CD-ROM Filter Driver.) -- C:\Windows\System32\Drivers\UBHelper.sys [17408] O58 - SDL:14/07/2009 - 02:45:55 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\viaide.sys [17488] O58 - SDL:14/07/2009 - 02:45:55 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\Drivers\vsmraid.sys [161872] O58 - SDL:16/07/2012 - 02:05:28 ---A- . (.ZTE Inc. - USB NDIS Miniport Driver.) -- C:\Windows\System32\Drivers\zghsnet.sys [171272] O58 - SDL:16/07/2012 - 02:05:28 ---A- . (.ZTE Inc. - USB/Serial Device Driver.) -- C:\Windows\System32\Drivers\zghsser.sys [131976] O58 - SDL:19/06/2014 - 14:27:34 ---A- . (.StdLib - StdLib.) -- C:\Windows\System32\Drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}w64.sys [61120] =>PUP.LinkiDoo ~ Drivers: 66 Scanned in 00mn 05s ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC: 22/06/2014 - 12:09:36 ---A- . (...) -- C:\Users\Monique\AppData\Local\Temp\Quarantine.exe [384139] O61 - LFC: 25/06/2014 - 12:09:33 ---A- . (...) -- C:\Users\Monique\AppData\Local\Adobe\Acrobat\10.0\UserCache.bin [68054] ~ 196 Fichiers temporaires (Temporary files) ~ 2 Fichiers cookies (Cookies files) ~ Files: 2 Scanned in 00mn 05s ---\\ Liste des outils de désinfection (LATC) (O63) O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman ~ ADS: Scanned in 00mn 00s ---\\ Liste les services legacy du registre (LALS) (O64) O64 - Services: CurCS - 04/03/2011 - C:\Windows\System32\DRIVERS\kl1.sys (KL1) .(.Kaspersky Lab ZAO - Kaspersky Unified Driver.) - LEGACY_KL1 O64 - Services: CurCS - 04/03/2011 - C:\Windows\System32\DRIVERS\kl2.sys (kl2) .(.Kaspersky Lab ZAO - Kaspersky Unified Driver.) - LEGACY_KL2 O64 - Services: CurCS - 29/10/2012 - C:\Windows\System32\DRIVERS\klif.sys (KLIF) .(.Kaspersky Lab - Klif Mini-Filter [fre_wlh_amd64].) - LEGACY_KLIF O64 - Services: CurCS - 10/03/2011 - C:\Windows\System32\DRIVERS\klim6.sys (KLIM6) .(.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver.) - LEGACY_KLIM6 O64 - Services: CurCS - 12/05/2014 - C:\Windows\system32\drivers\mbam.sys (MBAMProtector) .(.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - LEGACY_MBAMPROTECTOR O64 - Services: CurCS - 26/06/2014 - C:\Windows\system32\drivers\MBAMSwissArmy.sys (MBAMSwissArmy) .(.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - LEGACY_MBAMSWISSARMY O64 - Services: CurCS - 12/05/2014 - C:\Windows\system32\drivers\mwac.sys (MBAMWebAccessControl) .(.Malwarebytes Corporation - Malwarebytes Web Access Control.) - LEGACY_MBAMWEBACCESSCONTROL O64 - Services: CurCS - 10/06/2009 - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV O64 - Services: CurCS - 19/06/2014 - C:\Windows\System32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}w64.sys ({a3f28269-ad17-41a8-b032-3e0313ef8979}w64) .(.StdLib - StdLib.) - LEGACY_{A3F28269-AD17-41A8-B032-3E0313EF8979}W64 =>PUP.LinkiDoo ~ Legacy: 83 Scanned in 00mn 00s ---\\ Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> <evtfile>[HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> <Opera.HTML>[HKLM\..\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\Opera.exe O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.scr> <scrfile>[HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe ~ FASS Keys: 11 Scanned in 00mn 00s ---\\ Menu de démarrage Internet (SMI) (O68) O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O68 - StartMenuInternet: <Opera> <Opera>[HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\Opera.exe ~ Keys: Scanned in 00mn 00s ---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) O69 - SBI: SearchScopes [HKCU] {565E3E92-F1EA-493D-ACA3-9F53D8E050EA} - (Google) - http://www.google.com O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com ~ Keys: Scanned in 00mn 00s ---\\ Enumère les service demarrés par Svchost (SSS) (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [99328] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [64512] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows.) -- C:\Windows\System32\tapisrv.dll [316928] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [680960] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2428952] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [849920] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [67584] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [121856] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [90624] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] ~ Services: 32 Scanned in 00mn 02s ---\\ Recherche particulière à la racine du système (SPRF) (O84) [MD5.3CC00F9BCB504C77078CD11ABC18004A] [sPRF][18/07/2012] (...) -- C:\Program Files (x86)\Adobe-Reader-X.exe [1079272] [MD5.FE00D63E3678156C2194DC8E5086AC9C] [sPRF][18/09/2013] (...) -- C:\Program Files (x86)\install_flashplayer11x32_mssd_aih_other.exe [428480] [MD5.B3F52C1F402613B110EE66F5A3604063] [sPRF][12/07/2012] (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\mbam-setup-1.62.0.1300.exe [10652120] [MD5.8910565509A9B184099E9147BA1A6821] [sPRF][12/07/2012] (...) -- C:\Program Files (x86)\TomTomHOME2winlatest.exe [32948928] ~ Files: 4 Scanned in 00mn 02s ---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) [MD5.B67811645C5A3B8E4E4B1A1DB1EE271C] [WIS][27/01/2013] (.Boxore OU. - Software Update Helper.) -- C:\Windows\Installer\2aa6a96.msi [45056] =>Adware.Boxore ~ WIS: 1 Scanned in 00mn 10s ---\\ Recherche de clés de registre Tracing (O100) HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 =>PUP.MyPCBackup HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS =>PUP.MyPCBackup HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BetterInstaller_RASAPI32 =>Adware.MegaSearch HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BetterInstaller_RASMANCS =>Adware.MegaSearch HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IminentSetup_2-KFRPtAWP-1__RASAPI32 =>Adware.IMBooster HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IminentSetup_2-KFRPtAWP-1__RASMANCS =>Adware.IMBooster HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ProtectedSearch_RASAPI32 =>Spyware.ProtectedSearch HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ProtectedSearch_RASMANCS =>Spyware.ProtectedSearch HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\QtraxInstaller_RASAPI32 =>P2P.Qtrax HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\QtraxInstaller_RASMANCS =>P2P.Qtrax HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SecondOffer1_RASAPI32 =>PUP.Linkular HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SecondOffer1_RASMANCS =>PUP.Linkular HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\services x86-bg_RASAPI32 =>PUP.CrossRider HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\services x86-bg_RASMANCS =>PUP.CrossRider HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Services x86_RASAPI32 =>PUP.CrossRider HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Services x86_RASMANCS =>PUP.CrossRider HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Vgrabber_v1_RASAPI32 =>PUP.vGrabber HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Vgrabber_v1_RASMANCS =>PUP.vGrabber HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Video Performer63977_RASAPI32 =>PUP.VideoPerformer HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Video Performer63977_RASMANCS =>PUP.VideoPerformer HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\VideoPerformerSetup(1)_RASAPI32 =>PUP.VideoPerformer HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\VideoPerformerSetup(1)_RASMANCS =>PUP.VideoPerformer HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WiseConvert_1_5_RASAPI32 =>Toolbar.Conduit HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WiseConvert_1_5_RASMANCS =>Toolbar.Conduit ~ BTK: 457 Scanned in 00mn 00s ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SS - | Demand 13/06/2014 262320 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe SS - | Demand 04/05/2012 655624 | (FLEXnet Licensing Service) . (.Acresso Software Inc..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe SS - | Auto 03/05/2014 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 03/05/2014 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 17/08/2012 194032 | (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe SS - | Auto 05/04/2012 255376 | (Live Updater Service) . (.Acer Incorporated.) - C:\Program Files\Acer\Acer Updater\UpdaterService.exe SS - | Demand 10/06/2014 119408 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe SS - | Demand 06/12/2013 1229528 | (Secunia PSI Agent) . (.Secunia.) - C:\Program Files (x86)\Secunia\PSI\PSIA.exe SS - | Auto 23/10/2013 172192 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe SR - | Auto 18/12/2013 65432 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe SR - | Auto 29/10/2012 206448 | (AVP) . (.Kaspersky Lab ZAO.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe SR - | Auto 19/04/2011 353872 | (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe SR - | Auto 10/05/2011 872552 | (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe SR - | Auto 30/05/2011 36456 | (GREGService) . (.Acer Incorporated.) - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe SR - | Auto 20/05/2010 110736 | (IviRegMgr) . (.InterVideo.) - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe SR - | Auto 16/09/2010 325656 | (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe SR - | Auto 12/05/2014 1809720 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe SR - | Auto 12/05/2014 860472 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe SR - | Auto 24/04/2011 256832 | (NTI IScheduleSvc) . (.NTI Corporation.) - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe SR - | Auto 09/01/2013 1324104 | (PDF Architect Helper Service) . (.pdfforge GbR.) - C:\Program Files (x86)\PDF Architect\HelperService.exe SR - | Auto 09/01/2013 795208 | (PDF Architect Service) . (.pdfforge GbR.) - C:\Program Files (x86)\PDF Architect\ConversionService.exe SR - | Auto 11/03/2010 193824 | (PSI_SVC_2) . (.Protexis Inc..) - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe SR - | Auto 30/01/2010 260640 | (RS_Service) . (.Acer Incorporated.) - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe SR - | Auto 06/12/2013 662232 | (Secunia Update Agent) . (.Secunia.) - C:\Program Files (x86)\Secunia\PSI\sua.exe SR - | Auto 02/10/2012 3064000 | (Skype C2C Service) . (.Skype Technologies S.A..) - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe SR - | Auto 01/10/2013 5087584 | (TeamViewer8) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe SR - | Auto 05/06/2014 93040 | (TomTomHOMEService) . (.TomTom.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe SR - | Auto 12/05/2011 512000 | (UDisk Monitor) . (...) - C:\Program Files (x86)\Froyo_Android_Driver\Bin\MonServiceUDisk.exe SR - | Auto 16/09/2010 2538520 | (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe SR - | Auto 14/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SR - | Auto 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation SR - | Auto 14/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Services: Scanned in 00mn 10s ---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80) Run by Monique at 26/06/2014 12:10:52 ~ OS 64 not supported by MBR tool ~ MBR: 0 Scanned in 00mn 00s ---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80) Written by ad13, http://ad13.geekstog Run by Monique at 26/06/2014 12:10:54 ********* Dump file Name ********* C:\PhysicalDisk0_MBR.bin ~ MBR: Scanned in 00mn 02s ---\\ Scan Additionnel (O88) Database Version : 13026 - (25/06/2014) Clés trouvées (Keys found) : 19 Valeurs trouvées (Values found) : 0 Dossiers trouvés (Folders found) : 3 Fichiers trouvés (Files found) : 2 [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{9EA32328-5070-4EBC-A42D-460FD15E1424}] =>Hijacker.SmartBar^ [HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{d0f392b7-f7de-4e6b-aa89-f96fe7d48992}] =>Hijacker.SmartBar^ [HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Telecharger et Installer Packages] =>Adware.InstallCore^ [HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\Sweetpacks Communicator] =>PUP.SweetIM^ [HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\Yontoo Desktop] =>Adware.Yontoo^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\1C875DDE39636004CA8CDAEC335B4160] =>Adware.PredictAd [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\64A6E60055D801F4BB8AC269354B72B8] =>Adware.Boxore [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>PUP.Tarma [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>PUP.Tarma [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1EAD96AE2CB1DE84BAA9425A8CCA0817] =>Adware.Boxore [HKCU\Software\USyndication] =>Trojan.USyndication [HKCU\Software\usyndication.com] =>Trojan.USyndication [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110111271147}] =>PUP.CrossRider [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110211701196}] =>PUP.CrossRider [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{31111111-1111-1111-1111-110211701196}] =>PUP.CrossRider [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\38D5CDD0A851B3940A43CC50ABBA251C] =>Adware.Boxore^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AAC05EAA51DC78A41A1DCE3B31038584] =>Adware.Boxore^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BA71D41F6CC0B6247B05D473850A8AEA] =>Adware.Boxore^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^ C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\bxi0cpxh.default-1363938953161\extensions\{4ca8c1be-c30f-49bf-9ac8-f3e63f49665d} =>PUP.CertifiedToolbar^ C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\ii7g7sh8.default\extensions\{4ca8c1be-c30f-49bf-9ac8-f3e63f49665d} =>PUP.CertifiedToolbar^ C:\Users\Monique\AppData\Roaming\0T1N1C1T1Q2Y1L2Z =>Adware.InstallCore^ [HKCU\Software\Yappyz] =>PUP.Yappyz^ C:\Windows\Installer\2aa6a96.msi =>Adware.Boxore^ ~ Additionnel Scan: 296342 Items scanned in 00mn 30s ---\\ Informations complémentaires sur les modules ~ ~ ~ ~ ~ ~ ~ ~ AMI: 7 Scanned in 00mn 00s ---\\ Récapitulatif des détections trouvées sur votre station ~ MSI: 20 link(s) detected in 00mn 00s End of the scan (1383 lines in 02mn 57s)(0)
  6. Malwarebyte, aucun élément malveillant détecté
  7. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.4 (04.06.2014:1) OS: Windows 7 Home Premium x64 Ran by Monique on 26/06/2014 at 9:18:33,44 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC} Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-375910149-1381450938-172689633-1000\Software\ib updater Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-375910149-1381450938-172689633-1000\Software\sweetim Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\1c875dde39636004ca8cdaec335b4160 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\etype_rasapi32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\etype_rasmancs Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\etypesetup_rasapi32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\etypesetup_rasmancs Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\etypeuninstall_rasapi32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\etypeuninstall_rasmancs Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\etypeupdate_rasapi32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\etypeupdate_rasmancs Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110211701196} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\deal boat-bg_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\deal boat-bg_RASMANCS Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\pricepeep_90001_0101_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\pricepeep_90001_0101_RASMANCS Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110211701196} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\deal boat-bg_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\deal boat-bg_RASMANCS Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\pricepeep_90001_0101_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\pricepeep_90001_0101_RASMANCS Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{569B9535-C926-40D2-A757-E539D6CB021F} Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{7984168B-2731-89BD-E575-0F47E152F652} Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{CC83722C-1B7A-4163-9320-9D243D241B41} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{74CAA710-154C-FBA0-B2DD-467FC6065DAD} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{CC83722C-1B7A-4163-9320-9D243D241B41} ~~~ Files ~~~ Folders Successfully deleted: [Empty Folder] C:\Users\Monique\appdata\local\{AC42E676-085C-4894-BFDB-8FF0440647BB} ~~~ FireFox Emptied folder: C:\Users\Monique\AppData\Roaming\mozilla\firefox\profiles\iljrpoyv.default-1401908964741\minidumps [12 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 26/06/2014 at 9:32:32,35 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  8. voilà le rapport # AdwCleaner v3.213 - Rapport créé le 25/06/2014 à 22:24:57 # Mis à jour le 23/06/2014 par Xplode # Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits) # Nom d'utilisateur : Monique - MONIQUE-PC # Exécuté depuis : D:\Downloads\adwcleaner_3.213.exe # Option : Nettoyer ***** [ Services ] ***** ***** [ Fichiers / Dossiers ] ***** Dossier Supprimé : C:\Kreapixel Dossier Supprimé : C:\ProgramData\BitGuard Dossier Supprimé : C:\ProgramData\BoxUpdChk Dossier Supprimé : C:\ProgramData\DSearchLink Dossier Supprimé : C:\ProgramData\ParetoLogic Dossier Supprimé : C:\ProgramData\Systweak Dossier Supprimé : C:\Program Files (x86)\Babylon Dossier Supprimé : C:\Program Files (x86)\Boxore Dossier Supprimé : C:\Program Files (x86)\Conduit Dossier Supprimé : C:\Program Files (x86)\Delta Dossier Supprimé : C:\Program Files (x86)\MyPC Backup Dossier Supprimé : C:\Program Files (x86)\Nosibay Dossier Supprimé : C:\Program Files (x86)\Optimizer Pro Dossier Supprimé : C:\Program Files (x86)\ParetoLogic Dossier Supprimé : C:\Program Files (x86)\PC Health Kit Dossier Supprimé : C:\Program Files (x86)\Pricora Dossier Supprimé : C:\Program Files (x86)\SearchProtect Dossier Supprimé : C:\Program Files (x86)\vGrabber-software Dossier Supprimé : C:\Program Files (x86)\01NET.com_V1 Dossier Supprimé : C:\Program Files (x86)\startertv_fr_8 Dossier Supprimé : C:\Program Files\Babylon Dossier Supprimé : C:\Program Files\Uninstaller Dossier Supprimé : C:\Windows\System32\ARFC Dossier Supprimé : C:\Users\Monique\AppData\Local\Conduit Dossier Supprimé : C:\Users\Monique\AppData\Local\SwvUpdater Dossier Supprimé : C:\Users\Monique\AppData\Local\startertv_fr_8 Dossier Supprimé : C:\Users\Monique\AppData\LocalLow\Conduit Dossier Supprimé : C:\Users\Monique\AppData\LocalLow\Delta Dossier Supprimé : C:\Users\Monique\AppData\LocalLow\HomeTab Dossier Supprimé : C:\Users\Monique\AppData\LocalLow\SimplyTech Dossier Supprimé : C:\Users\Monique\AppData\LocalLow\Softonic Dossier Supprimé : C:\Users\Monique\AppData\LocalLow\01NET.com_V1 Dossier Supprimé : C:\Users\Monique\AppData\Roaming\Advanced System Protector Dossier Supprimé : C:\Users\Monique\AppData\Roaming\BabSolution Dossier Supprimé : C:\Users\Monique\AppData\Roaming\DriverCure Dossier Supprimé : C:\Users\Monique\AppData\Roaming\DSite Dossier Supprimé : C:\Users\Monique\AppData\Roaming\HomeTab Dossier Supprimé : C:\Users\Monique\AppData\Roaming\Nosibay Dossier Supprimé : C:\Users\Monique\AppData\Roaming\ParetoLogic Dossier Supprimé : C:\Users\Monique\AppData\Roaming\PerformerSoft Dossier Supprimé : C:\Users\Monique\AppData\Roaming\SeeSimilar02 Dossier Supprimé : C:\Users\Monique\AppData\Roaming\SimplyTech Dossier Supprimé : C:\Users\Monique\AppData\Roaming\Systweak Dossier Supprimé : C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard Dossier Supprimé : C:\Users\Monique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DealPly Dossier Supprimé : D:\Mes docs D sauve 7\Pictures\Documents\Optimizer Pro Dossier Supprimé : D:\Mes docs D sauve 7\Pictures\Documents\PC Health Kit Dossier Supprimé : C:\Users\Monique\AppData\Local\Software Dossier Supprimé : C:\Program Files (x86)\Software Dossier Supprimé : C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\bxi0cpxh.default-1363938953161\Extensions\staged\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8} Dossier Supprimé : C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\ii7g7sh8.default\Extensions\staged\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8} Dossier Supprimé : C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\w1rng3at.default-1370195119959\Extensions\staged\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8} Dossier Supprimé : C:\Program Files (x86)\Mozilla Firefox\Extensions\ffxtlbr@babylon.com Dossier Supprimé : C:\Users\Monique\AppData\Local\Google\Chrome\User Data\Default\Extensions\algmakeomkafjglfhpomolfhjppoojff Dossier Supprimé : C:\Users\Monique\AppData\Local\Google\Chrome\User Data\Default\Extensions\biahaobfpkgeiomkihcdgknebbhadonc [!] Dossier Supprimé : C:\Users\Monique\AppData\Local\Google\Chrome\User Data\Default\Extensions\algmakeomkafjglfhpomolfhjppoojff [!] Dossier Supprimé : C:\Users\Monique\AppData\Local\Google\Chrome\User Data\Default\Extensions\biahaobfpkgeiomkihcdgknebbhadonc Fichier Supprimé : C:\END Fichier Supprimé : C:\Windows\System32\dmwu.exe Fichier Supprimé : C:\Windows\System32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}Gw64.sys Fichier Supprimé : C:\Windows\System32\ImhxxpComm.dll Fichier Supprimé : C:\Windows\System32\sasnative64.exe Fichier Supprimé : C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\14udnbdv.default-1385502040694\user.js Fichier Supprimé : C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\7qtmjgcn.default-1390639305020\user.js Fichier Supprimé : C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\bxi0cpxh.default-1363938953161\user.js Fichier Supprimé : C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\deu9kz0r.default-1388260490821\user.js Fichier Supprimé : C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\ii7g7sh8.default\user.js Fichier Supprimé : C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\iljrpoyv.default-1401908964741\user.js Fichier Supprimé : C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\w1rng3at.default-1370195119959\user.js Fichier Supprimé : C:\Program Files (x86)\Mozilla Firefox\user.js Fichier Supprimé : C:\Users\Monique\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ojcgaoafcmbadjkfdippkdddgkeaipbn_0.localstorage Fichier Supprimé : C:\Windows\System32\Tasks\BitGuard Fichier Supprimé : C:\Windows\System32\Tasks\BoxSoftwareUpdate Fichier Supprimé : C:\Windows\System32\Tasks\Browser Updater Fichier Supprimé : C:\Windows\System32\Tasks\Dealply Fichier Supprimé : C:\Windows\System32\Tasks\Funmoods Fichier Supprimé : C:\Windows\System32\Tasks\ProtectedSearch Fichier Supprimé : C:\Windows\System32\Tasks\QtraxPlayer Fichier Supprimé : C:\Windows\Tasks\SoftwareUpdateTaskMachineUA.job Fichier Supprimé : C:\Windows\System32\Tasks\SoftwareUpdateTaskMachineUA Fichier Supprimé : C:\Windows\Tasks\Pricora-chromeinstaller.job Fichier Supprimé : C:\Windows\System32\Tasks\Pricora-chromeinstaller Fichier Supprimé : C:\Windows\Tasks\Pricora-codedownloader.job Fichier Supprimé : C:\Windows\System32\Tasks\Pricora-codedownloader Fichier Supprimé : C:\Windows\Tasks\Pricora-enabler.job Fichier Supprimé : C:\Windows\System32\Tasks\Pricora-enabler Fichier Supprimé : C:\Windows\Tasks\Pricora-firefoxinstaller.job Fichier Supprimé : C:\Windows\System32\Tasks\Pricora-firefoxinstaller Fichier Supprimé : C:\Windows\Tasks\Pricora-updater.job Fichier Supprimé : C:\Windows\System32\Tasks\Pricora-updater ***** [ Raccourcis ] ***** ***** [ Registre ] ***** Valeur Supprimée : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [ocr@babylon.com] Clé Supprimée : HKCU\Software\Google\Chrome\Extensions\biahaobfpkgeiomkihcdgknebbhadonc Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\biahaobfpkgeiomkihcdgknebbhadonc Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\cfcbmgbfdbijmjgjihagbomfbjfjmgon Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\hgojaaaiddhmiiakpejiklijbalpckih Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\mmiopbgcekanlhpjkonogoljpfmhpkhf Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\niogeckbkdcabhnapjbkeiklablhjoca Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\nohfdhapjjlndfgjnmdlcabloeembdkj Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\BabylonHelper.EXE Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escort.DLL Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\esrv.EXE Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\HomeTab.DLL Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreClass Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreClass.1 Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachine Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachine.1.0 Clé Supprimée : HKLM\SOFTWARE\Classes\speedupmypc Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\AutoLyricsUpdater_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\AutoLyricsUpdater_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\BabMaint_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\BabMaint_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\biclient_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\biclient_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Deal Boat_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Deal Boat_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Deal Boat-InternalInstaller_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Deal Boat-InternalInstaller_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\HomeTab_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\HomeTab_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\MyDeltaTB_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\MyDeltaTB_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\OfferBoxhxxpProxy_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\OfferBoxhxxpProxy_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\OfferBoxUpdateService_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\OfferBoxUpdateService_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\sweetimsetup_rasapi32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\sweetimsetup_rasmancs Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\toolbar_vit_sweetim_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\toolbar_vit_sweetim_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\VideoPerformerSetup_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\VideoPerformerSetup_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\wajam_download_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\wajam_download_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_rasapi32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_rasmancs Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\wajamupdater_rasapi32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\wajamupdater_rasmancs Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASMANCS Clé Supprimée : HKLM\SOFTWARE\MozillaPlugins\@tools.Software.com/Software Update;version=3 Clé Supprimée : HKLM\SOFTWARE\MozillaPlugins\@tools.Software.com/Software Update;version=9 Clé Supprimée : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WajamUpdater Clé Supprimée : HKCU\Software\848f8ab23ce810 Clé Supprimée : HKLM\SOFTWARE\848f8ab23ce810 Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar.CT3307695 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_pour_mozbackup_RASAPI32 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_pour_mozbackup_RASMANCS Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947} Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{37EB75F2-7392-4DBE-B5AD-147EC6D7BF5F} Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{39CB8175-E224-4446-8746-00566302DF8D} Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{3FC27B34-0C19-49DA-875E-1875DDD4A6B2} Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3} Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{67FCE87F-F3EF-4A3C-87C2-8BD46E68807B} Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D} Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0} Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761} Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{A0B10EBE-4E51-4CAE-949B-E6B9E7D68CEA} Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9} Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{F511AFDB-726E-4458-90E7-1ECB97406544} Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC} Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{E4F7B179-A3F6-47D8-9832-CB7B2627312A} Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{6C59BA8E-E83F-4292-B3A0-EFAAD89D0768} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{0BDDE35F-64F7-49C3-99B2-404E899C49F7} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{24236608-609C-42C5-B13C-A8A3EC921850} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{28B1A706-4B97-4EB1-8B32-125042685AD9} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{33575A26-D9CF-40C6-8A3E-116F17201C7F} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{4BDFD19F-93D7-49CE-B554-5C215FDC0136} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{7307CF0F-7173-4FBF-8649-B149916DD322} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{80A5E38C-5F6B-485F-BD97-0B5BE991FAD5} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{9544D727-A26F-4D57-AF38-4496088640EA} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{AC4C30BF-7D5F-4EAB-9C2A-454178F079AA} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{BC6F9C26-93EA-4C6D-A4A7-C1FA333B4BBE} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E975527B-ABE7-40B3-B5C1-385016913E3B} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EFA4B5B1-6C76-4B20-BCDB-D41A93E79053} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550255705596} Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660266706696} Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759} Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF} Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{E6772887-C1E1-405E-94BB-D8760A1CF8DF} Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440244704496} Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E4F7B179-A3F6-47D8-9832-CB7B2627312A} Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E4F7B179-A3F6-47D8-9832-CB7B2627312A} Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6C59BA8E-E83F-4292-B3A0-EFAAD89D0768} Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2A836234-186C-41A0-9863-40BECDEDED9F} Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E4F7B179-A3F6-47D8-9832-CB7B2627312A} Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6C59BA8E-E83F-4292-B3A0-EFAAD89D0768} Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6C59BA8E-E83F-4292-B3A0-EFAAD89D0768} Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{708D0DD7-FBC0-4437-B525-C098F450A62C} Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CFD485F0-96BD-47CD-BB6D-CD7DDA95F102} Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6c9720a9-d7ef-4f18-b615-1ae51a7acd09} Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ba12d84b-9e51-467d-84cc-eae9b32802af} Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d0e98d08-49ec-471b-9e3a-a0f87f9e5003} Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f977e20b-b3f5-4b98-8780-a0073df838c3} Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f97e84cc-d445-4bb1-864b-ba1e2fd4cedf} Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC722531-1351-4270-AC00-44C91A36573B} Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{988A960C-BA0B-4E0A-A340-3EF3C1F77731} Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5} Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9} Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5} Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{E4F7B179-A3F6-47D8-9832-CB7B2627312A}] Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E4F7B179-A3F6-47D8-9832-CB7B2627312A}] Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{E4F7B179-A3F6-47D8-9832-CB7B2627312A}] Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{045F91B3-695F-423A-98C7-8DE3C47AA020} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{087CDC12-0A11-4D1D-8DCF-44185D7C3496} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{088BF3A9-6AE8-47B9-A3FB-26262F236C79} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{0BDDE35F-64F7-49C3-99B2-404E899C49F7} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{0BF91075-F457-4A8B-99EF-140B52D2F22A} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{24236608-609C-42C5-B13C-A8A3EC921850} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{28B1A706-4B97-4EB1-8B32-125042685AD9} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{2AC7B9EB-3881-4EB9-8DEE-0A731A309FDE} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{2D017725-74A0-4513-913D-2939ADF6D0F3} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{33575A26-D9CF-40C6-8A3E-116F17201C7F} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{349C0469-ACDD-49DF-9B3E-0D82E7C7DC4D} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{37425600-CB21-49A0-8659-476FBAB0F8E8} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{395AFE6E-8308-48DB-89BE-ED5F4AA3D3EC} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{41226591-6F7A-4082-B63A-67FE4A0CF7A6} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{431FB0E5-2CBB-4602-9FE6-F1D64488ADD7} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{43B390F0-6BA2-45CA-ABF2-5DB0CEE9B49D} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{458BD324-E5D0-412C-954D-EDFD69A59ED9} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{4BDFD19F-93D7-49CE-B554-5C215FDC0136} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{55D69CD1-6715-4C40-BF05-9519AC4DC6E6} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{5C9A230D-70A5-11D5-AFB0-0050DAC67890} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{5F339F0B-716F-408F-A627-DEEB5DEB4020} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{66C8FD57-54C4-4D4F-BC95-DCCC763B410A} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{717BAE33-7061-4279-8AE5-6C13BC8AF3F9} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{7307CF0F-7173-4FBF-8649-B149916DD322} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{806ED5AF-3ED0-454C-BE4E-6644DD7BEDD1} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{80A5E38C-5F6B-485F-BD97-0B5BE991FAD5} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{84F06F7A-F811-48D7-8B34-3F4145183D8F} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{88F6D55F-AA3F-4003-BE69-4AC1998D6492} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{8911483C-C00A-4183-9FBC-6C9C00946C15} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{8DBCDED5-08AD-41A2-9BBC-235D84F4FE06} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{9275FE6D-8F84-4CA5-97E7-DD3AFD5E4BDE} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{928FE5E7-D557-46B7-8AF6-17ACCE1FB4ED} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{93CF54F5-CFAA-4440-B588-8ED0DFAD5C21} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{94CADA2E-1D3F-419F-8A3D-06C58EDF53C8} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{9544D727-A26F-4D57-AF38-4496088640EA} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{9ADA5C62-B227-45A9-9D77-E5609A43E943} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{9E52EB8B-8DD9-4605-AD36-D352BCD482F2} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{A0F66203-1A86-4812-9603-A57E09A4D7A3} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{A1440EC3-F0FA-407A-B811-DE6668C06D29} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{A37DD83A-DABA-4EF0-98AA-CDDA88839172} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{A70CA55D-8EE5-4997-8BC3-B341E36ACBBA} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{AC4C30BF-7D5F-4EAB-9C2A-454178F079AA} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{B5445928-B77D-474B-84F6-6F1323CA5701} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{B9A84AD0-5777-46FD-8B8F-1EBD06750FBC} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{BC39D1B3-4471-41C1-AACA-E097FAF4B7AA} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{BC6F9C26-93EA-4C6D-A4A7-C1FA333B4BBE} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{BE6C7021-0352-4A7E-8A5B-46126353049E} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{C1995F88-1C7F-40D7-B0FA-6F107F6308B8} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{C3F058A9-407D-4CD1-8F66-B75605B54B69} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{C815E3DA-0823-49B0-9270-D1771D58B317} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{D2AA22AE-2103-4D78-9C0D-46DE64EE0ED7} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{D3BC53E7-0437-4C97-90EE-2CD6FF47FB14} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{D94BA844-0355-4F02-97F2-6856CD94FE66} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{DEB85542-1311-4EC6-8A32-5372EB27FC94} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{DFBED68E-BBF6-454A-940F-C84C7E7B4CE6} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{E4A994B0-5550-4680-A4C6-B9470B888069} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{E975527B-ABE7-40B3-B5C1-385016913E3B} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{EE95078D-518C-4FD2-8093-FD1D4E33D3CA} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{EFA4B5B1-6C76-4B20-BCDB-D41A93E79053} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{EFDCAF05-D29C-4D4D-9836-8CDCD606A6B2} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{F4F96034-2761-4BAF-B906-E4B59E5D50EA} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{F9EB11AB-9384-4736-9B33-993940F88895} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{FE42F7F2-D931-40CD-ACE7-7B47383ACE25} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550255705596} Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660266706696} Valeur Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] Clé Supprimée : HKCU\Software\APN PIP Clé Supprimée : HKCU\Software\Boxore Clé Supprimée : HKCU\Software\Conduit Clé Supprimée : HKCU\Software\dsiteproducts Clé Supprimée : HKCU\Software\filescout Clé Supprimée : HKCU\Software\InstalledThirdPartyPrograms Clé Supprimée : HKCU\Software\ParetoLogic Clé Supprimée : HKCU\Software\performersoft llc Clé Supprimée : HKCU\Software\SmartBar Clé Supprimée : HKCU\Software\Tutorials Clé Supprimée : HKCU\Software\TutoTag Clé Supprimée : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Clé Supprimée : HKCU\Software\AppDataLow\Toolbar Clé Supprimée : HKCU\Software\AppDataLow\Software\BackgroundContainer Clé Supprimée : HKCU\Software\AppDataLow\Software\Conduit Clé Supprimée : HKCU\Software\AppDataLow\Software\ConduitSearchScopes Clé Supprimée : HKCU\Software\AppDataLow\Software\LyricsMonkey-1 Clé Supprimée : HKCU\Software\AppDataLow\Software\Pricora Clé Supprimée : HKCU\Software\AppDataLow\Software\simplytech Clé Supprimée : HKCU\Software\AppDataLow\Software\SmartBar Clé Supprimée : HKCU\Software\AppDataLow\Software\XingHaoLyrics Clé Supprimée : HKCU\Software\AppDataLow\Software\01NET.com_V1 Clé Supprimée : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0} Clé Supprimée : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C} Clé Supprimée : HKLM\Software\Conduit Clé Supprimée : HKLM\Software\Delta Clé Supprimée : HKLM\Software\ParetoLogic Clé Supprimée : HKLM\Software\PIP Clé Supprimée : HKLM\Software\Pricora Clé Supprimée : HKLM\Software\systweak Clé Supprimée : HKLM\Software\Tutorials Clé Supprimée : HKLM\Software\Uniblue Clé Supprimée : HKLM\Software\01NET.com_V1 Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CA2B24FD-EE10-42B9-B049-AA80268E7E21} Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Pricora Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\01NET.com_V1 Toolbar Clé Supprimée : [x64] HKLM\SOFTWARE\InstalledThirdPartyPrograms Clé Supprimée : [x64] HKLM\SOFTWARE\Tarma Installer Clé Supprimée : [x64] HKLM\SOFTWARE\WNLT Clé Supprimée : HKLM\Software\Classes\Installer\Features\DF42B2AC01EE9B240B94AA0862E8E712 Clé Supprimée : HKLM\Software\Classes\Installer\Products\DF42B2AC01EE9B240B94AA0862E8E712 ***** [ Navigateurs ] ***** -\\ Internet Explorer v11.0.9600.17126 -\\ Mozilla Firefox v30.0 (fr) [ Fichier : C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\bxi0cpxh.default-1363938953161\prefs.js ] Ligne Supprimée : user_pref("extensions.a217e8200a3b343dfb9518ec01d483d7fb98c68091f3f41a1bb1c692cf84781e9com27096.27096.backgroundjs", "\n\n/*****************************************************************************[...] Ligne Supprimée : user_pref("extensions.a217e8200a3b343dfb9518ec01d483d7fb98c68091f3f41a1bb1c692cf84781e9com27096.27096.js", "\n\nappAPI.ready(function($) {\r\n\r\n$(document).ready(function(){\r\n \r\n if (window.loca[...] Ligne Supprimée : user_pref("extensions.a217e8200a3b343dfb9518ec01d483d7fb98c68091f3f41a1bb1c692cf84781e9com27096.27096.plugins.plugin_1.code", "appAPI._cr_config={appID:function(){var a=appAPI.appInfo;if(a){return app[...] Ligne Supprimée : user_pref("extensions.a217e8200a3b343dfb9518ec01d483d7fb98c68091f3f41a1bb1c692cf84781e9com27096.27096.plugins.plugin_14.name", "CrossriderUtils"); Ligne Supprimée : user_pref("extensions.a217e8200a3b343dfb9518ec01d483d7fb98c68091f3f41a1bb1c692cf84781e9com27096.27096.plugins.plugin_17.code", "if(typeof window!==\"undefined\"){\n/*!\n * jQuery JavaScript Library v1[...] Ligne Supprimée : user_pref("extensions.a217e8200a3b343dfb9518ec01d483d7fb98c68091f3f41a1bb1c692cf84781e9com27096.27096.plugins.plugin_21.code", "var CrossriderDebugManager=(function(h){var f={appId:appAPI._cr_config.a[...] Ligne Supprimée : user_pref("extensions.a217e8200a3b343dfb9518ec01d483d7fb98c68091f3f41a1bb1c692cf84781e9com27096.27096.plugins.plugin_22.code", "(function(a){appAPI.queueManager={queue:[],register:function(b){this.que[...] Ligne Supprimée : user_pref("extensions.a217e8200a3b343dfb9518ec01d483d7fb98c68091f3f41a1bb1c692cf84781e9com27096.27096.plugins.plugin_28.code", "var CrossriderInitializerPlugin=(function(e){var c={appId:appAPI._cr_con[...] Ligne Supprimée : user_pref("extensions.a217e8200a3b343dfb9518ec01d483d7fb98c68091f3f41a1bb1c692cf84781e9com27096.27096.plugins.plugin_47.code", "(function(){appAPI.ready=function(a){appAPI.resources.isReady(a};}()var [...] Ligne Supprimée : user_pref("extensions.a217e8200a3b343dfb9518ec01d483d7fb98c68091f3f41a1bb1c692cf84781e9com27096.27096.plugins.plugin_49.code", "if (!appAPI.monetize || appAPI.monetize.isNeedToRun(\"monitzation_100\")[...] Ligne Supprimée : user_pref("extensions.a217e8200a3b343dfb9518ec01d483d7fb98c68091f3f41a1bb1c692cf84781e9com27096.27096.plugins.plugin_50.code", "function create_id(string_size) {\n var text = \"\";\n var possibl[...] Ligne Supprimée : user_pref("extensions.a217e8200a3b343dfb9518ec01d483d7fb98c68091f3f41a1bb1c692cf84781e9com27096.27096.plugins.plugin_78.name", "CrossriderInfo"); Ligne Supprimée : user_pref("browser.search.defaultenginename", "Web Search"); Ligne Supprimée : user_pref("browser.search.defaultengine", "Web Search"); Ligne Supprimée : user_pref("browser.search.selectedEngine", "Web Search"); Ligne Supprimée : user_pref("browser.search.order.1", "Web Search"); [ Fichier : C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\ii7g7sh8.default\prefs.js ] Ligne Supprimée : user_pref("browser.search.defaultenginename", "Web Search"); Ligne Supprimée : user_pref("browser.search.defaultengine", "Web Search"); Ligne Supprimée : user_pref("browser.search.selectedEngine", "Web Search"); Ligne Supprimée : user_pref("browser.search.order.1", "Web Search"); [ Fichier : C:\Users\Monique\AppData\Roaming\Mozilla\Firefox\Profiles\iljrpoyv.default-1401908964741\prefs.js ] -\\ Google Chrome v34.0.1847.131 [ Fichier : C:\Users\Monique\AppData\Local\Google\Chrome\User Data\Default\preferences ] Supprimée [Extension] : algmakeomkafjglfhpomolfhjppoojff Supprimée [Extension] : amfclgbdpgndipgoegfpkkgobahigbcl Supprimée [Extension] : biahaobfpkgeiomkihcdgknebbhadonc Supprimée [Extension] : mocblcnaofikinigmceddfghppkkjbog Supprimée [Extension] : mphpbdjcljebbcnfopfngmfdackbbdgf Supprimée [Extension] : pflphaooapbgpeakohlggbpidpppgdff ************************* AdwCleaner[R0].txt - [42360 octets] - [25/06/2014 22:05:29] AdwCleaner[s0].txt - [40892 octets] - [25/06/2014 22:24:57] ########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [40953 octets] ##########
  9. Merci de m' aider, c'est sympa . Au milieu du scan, c'est bloqué, le programme " ne répond pas "...
  10. Bonjour, j'ai un virus qui s'appelle" greener web et tlbsearch" ; j'ai utilisé Malwarebytes et mon antivirus , et il est toujours là; si vous pouviez m'aider , ce serait sympa ; il se manifeste sous forme de mots soulignés qui affichent des fenêtres publicitaires quand je passe ma souris dessus, d' avance merci
  11. Bonjour, est il possible de télécharger windows 8 gratuitement pour se familiariser avec ?Avez vous un bon lien pour le télécharger virtuellement ? et apprendre à l' utiliser ?
  12. Merci, tout fonctionne, Zébulon et Apollo sonnt FORMIDABLES . Bonne journée, un petit don s'impose
  13. JRT, je l'ai loupé, j'ai voulu recommencer, mais il n'y avait plus rien , bien sûr. Malwarebytes, je l'ai déjà passé plusieurs fois Ce soir( ce matin ...) mon ordi parait mieux fonctionner , on verra demain Merci et bonne nuit
×