Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e)

Re

Voici l'un des deux, je vais encore me faire enguirlander, le deuxiéme suit dans une autre réponse.

merci

 

 

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 22-02-2015
Ran by joel at 2015-02-22 20:56:17
Running from C:\Users\joel\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 9.22 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0922-000001000000}) (Version: 9.22.00.0 - Igor Pavlov)
Adobe Reader XI (11.0.10) - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.6.636 - Adobe Systems, Inc.)
AMD Catalyst Install Manager (HKLM\...\{EA5160BE-7558-2716-01DB-FFE7F316957A}) (Version: 8.0.911.0 - Advanced Micro Devices, Inc.)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM-x32\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM-x32\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.)
CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.5.6902 - CyberLink Corp.)
CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.6.3728 - CyberLink Corp.)
Cyberlink PhotoDirector (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.4.4824 - CyberLink Corp.)
CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.5.3416 - CyberLink Corp.)
CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.3.2606 - CyberLink Corp.)
CyberLink PowerDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.8.5511 - CyberLink Corp.)
CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.5.6.6117 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Energy Star (HKLM-x32\...\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}) (Version: 1.0.9 - Hewlett-Packard Company)
Galerie de photos (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 40.0.2214.115 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP 3D DriveGuard (HKLM\...\{F9E399CB-046F-45FD-A67F-CF399E2128E4}) (Version: 4.2.9.1 - Hewlett-Packard Company)
HP Connected Music (Meridian - installer) (HKLM-x32\...\StartHPConnectedMusic) (Version: 1.0 - Meridian Audio Ltd)
HP Connected Music (Meridian - player) (HKU\S-1-5-21-1074294445-2638620405-1164550965-1001\...\HPConnectedMusic) (Version: 1.1 (build 71) hp - Meridian Audio Ltd)
HP CoolSense (HKLM-x32\...\{0D3A6808-82B8-4BB1-BE5A-AED75B3F6C02}) (Version: 2.20.11 - Hewlett-Packard Company)
HP Documentation (HKLM-x32\...\{B41C6B3F-F752-46EA-BC46-F26D3AD147B8}) (Version: 1.2.0.0 - Hewlett-Packard)
HP Quick Start (HKLM-x32\...\{B9494F9E-5EA9-4C70-9F38-659F5E6C0BF3}) (Version: 1.0.4660.30220 - Hewlett-Packard)
HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.6317.4309 - Hewlett-Packard)
HP SimplePass (HKLM-x32\...\InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1}) (Version: 8.00.57 - Hewlett-Packard)
HP Support Assistant (HKLM-x32\...\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}) (Version: 7.4.45.4 - Hewlett-Packard Company)
HP System Event Utility (HKLM-x32\...\{DEF23826-DB71-4654-BC00-D5D6C20802EA}) (Version: 1.1.4 - Hewlett-Packard Company)
HP Utility Center (HKLM\...\{73237EBB-B26F-4628-8754-4EFE563D72E9}) (Version: 2.1.5 - Hewlett-Packard Company)
HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company)
Inst5675 (Version: 8.00.57 - Softex Inc.) Hidden
Inst5676 (Version: 8.00.57 - Softex Inc.) Hidden
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.13.1706 - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3621 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.1.1000 - Intel Corporation)
Intel® SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.63463 - Intel Corporation)
Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
Microsoft Office PowerPoint Viewer 2007 (French) (HKLM-x32\...\{95120000-00AF-040C-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SkyDrive (HKU\S-1-5-21-1074294445-2638620405-1164550965-1001\...\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Nero BackItUp 12 Essentials (HKLM-x32\...\{A4C430F5-5828-4645-91CF-13220EE609D2}) (Version: 12.0.00800 - Nero AG)
Nero Backup Drivers (HKLM\...\{D600D357-5CB9-4DE9-8FD4-14E208BD1970}) (Version: 12.0.4000 - Nero AG)
Nero Info (HKLM-x32\...\{B791E0AB-87A9-41A4-8D98-D13C2E37D928}) (Version: 15.1.0030 - Nero AG)
Nero Prerequisite Installer 2.0 (HKLM-x32\...\{0DBC021C-95D9-435A-A4B0-E6515AFD1A71}) (Version: 12.0.01000 - Nero AG)
OEM Application Profile (HKLM-x32\...\{C89A97B6-F991-EBB5-77B7-927BCF420EBE}) (Version: 1.00.0000 - Nom de votre société)
OpenOffice 4.1.1 (HKLM-x32\...\{121727D5-FDF3-4723-BA57-EB383440ED72}) (Version: 4.11.9775 - Apache Software Foundation)
PhotoFiltre 7 (HKU\S-1-5-21-1074294445-2638620405-1164550965-1001\...\PhotoFiltre 7) (Version: - )
Prerequisite installer (x32 Version: 12.0.0003 - Nero AG) Hidden
PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.20.815.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6870 - Realtek Semiconductor Corp.)
Realtek PCIE Card Reader (HKLM-x32\...\{BCDA54F6-C4B6-4519-A09E-FA064A6B4098}) (Version: 1.1.9200.007 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver (HKLM-x32\...\{A5107464-AA9B-4177-8129-5FF2F42DD322}) (Version: 1.00.13.1216 - REALTEK Semiconductor Corp.)
SFR - Media Center (HKLM-x32\...\SFR_Media Center) (Version: 10.4.29.0 - SFR)
SFR - Mediacenter Evolution (HKLM-x32\...\SFR_Mediacenter Evolution) (Version: 13.2.26.0 - SFR)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 17.0.6.2 - Synaptics Incorporated)
TomTom HOME (HKLM-x32\...\{7A2BB1C8-903D-4585-9F3B-CADD67D07D37}) (Version: 2.9.8 - Nom de votre société)
TomTom HOME (HKLM-x32\...\{BB05590A-6602-43F3-A400-77EA0976BC0A}) (Version: 2.9.8 - Nom de votre société)
TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.)
Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation)
ZHPDiag 2015 (HKLM-x32\...\ZHPDiag_is1) (Version: 2015 - Nicolas Coolman)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-1074294445-2638620405-1164550965-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
CustomCLSID: HKU\S-1-5-21-1074294445-2638620405-1164550965-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\joel\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1074294445-2638620405-1164550965-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\joel\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1074294445-2638620405-1164550965-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\joel\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1074294445-2638620405-1164550965-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\joel\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\FileSyncApi64.dll (Microsoft Corporation)

==================== Restore Points =========================

27-01-2015 13:33:17 Windows Update
10-02-2015 13:54:06 Windows Update
12-02-2015 15:01:49 Opération de restauration
16-02-2015 16:54:14 Windows Update
19-02-2015 17:24:05 Windows Update
19-02-2015 19:58:05 Opération de restauration
22-02-2015 11:36:50 Removed Java 7 Update 60

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {041A6D46-9D7A-42D2-AD7A-EB4D57C3ADED} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2013-01-17] (CyberLink)
Task: {12CE6840-C5DA-4824-B262-F7215B15900C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {1A0286FA-59EB-48C5-835E-289C104F9571} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard)
Task: {3744812A-01AD-4516-AB1A-6A929040EBC9} - System32\Tasks\joel1 12 0 => C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\NBCore.exe [2013-07-10] (Nero AG)
Task: {3974AD98-6694-46F5-B52A-17AC11407E50} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2013-08-05] (CyberLink)
Task: {4B576111-AFB7-4B65-A740-478FA3AAA3C4} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-02-20] (Microsoft Corporation)
Task: {507FD8A7-D800-4F18-BAE2-F65AE140536D} - System32\Tasks\Norton Internet Security\Norton Error Analyzer => C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\SymErr.exe
Task: {51B456A7-DBE7-406A-94EF-27FD39E560D2} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {531B5B69-6CD1-4789-80DD-A54AA099B413} - System32\Tasks\Hewlett-Packard\HP CoolSense\HP CoolSense Start at Logon => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [2013-08-19] (Hewlett-Packard Development Company, L.P.)
Task: {5D773B02-4888-4BD7-85D3-39D66CE4E3B4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPSFUpdaterRedux => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company)
Task: {5D89CBA0-DB46-4468-8302-6EC7AF7CE04C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-21] (Google Inc.)
Task: {61618980-D6E9-4A3C-839A-C731C76303C2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard)
Task: {832434AB-100D-49CF-860E-0A880571FADC} - System32\Tasks\joel2 12 0 => C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\NBCore.exe [2013-07-10] (Nero AG)
Task: {86135D9E-85DD-4088-84CC-C1E3E4D6CCED} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2013-03-12] (CyberLink Corp.)
Task: {8F6957D8-225C-4C21-8B35-F8D8EF20998A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company)
Task: {9533B8E1-149B-4C62-8AEB-BE0393DBE5C9} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-11-19] (AVAST Software)
Task: {9A6F654D-89B9-4233-95A1-D2DE59866351} - System32\Tasks\Norton Internet Security\Norton Error Processor => C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\SymErr.exe
Task: {9F9D0034-2A8A-42FE-93BB-5EDE4D9672DF} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-12-12] (Piriform Ltd)
Task: {A5E3C18C-AA19-4B7A-9290-9E8D0A435B88} - System32\Tasks\HPCeeScheduleForvalen_000 => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard)
Task: {A722ECF1-BC73-456E-B1CD-D7653412986F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {BE987015-3C0E-44B3-A756-1D7CE7B66882} - System32\Tasks\HPCeeScheduleForjoel => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard)
Task: {D547809C-DDFC-4741-BD96-2F8E778061AE} - System32\Tasks\joel 12 0 => C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\NBCore.exe [2013-07-10] (Nero AG)
Task: {DC3F8A30-3D3D-46E1-B56B-64E5DFC76FB9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-21] (Google Inc.)
Task: {FCFE2618-52A9-48F4-B960-B968DFACDD18} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [2013-10-16] (Nero AG)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForjoel.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForvalen_000.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Loaded Modules (whitelisted) ==============

2013-10-14 11:25 - 2013-10-14 11:25 - 02541056 _____ () C:\Program Files\Hewlett-Packard\SimplePass\autheng.dll
2013-10-14 11:22 - 2013-10-14 11:22 - 00021504 _____ () C:\Program Files\Hewlett-Packard\SimplePass\cryptodll.dll
2013-10-14 11:22 - 2013-10-14 11:22 - 00035328 _____ () C:\Program Files\Hewlett-Packard\SimplePass\ssplogon.dll
2013-10-14 11:22 - 2013-10-14 11:22 - 00055296 _____ () C:\Program Files\Hewlett-Packard\SimplePass\RandomPass.dll
2013-10-14 11:35 - 2013-10-14 11:35 - 00306064 _____ () C:\Program Files\Hewlett-Packard\SimplePass\mstrpwd.dll
2013-10-14 11:35 - 2013-10-14 11:35 - 01297296 _____ () C:\Program Files\Hewlett-Packard\SimplePass\GraphicalPwd.dll
2014-11-19 18:26 - 2014-11-19 18:26 - 00388208 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxDDU.dll
2014-11-19 18:26 - 2014-11-19 18:26 - 05851328 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxRT.dll
2013-10-14 11:30 - 2013-10-14 11:30 - 00065024 _____ () C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe
2015-02-22 12:06 - 2015-02-22 12:06 - 02911744 _____ () C:\Program Files\AVAST Software\Avast\defs\15022201\algo.dll
2014-11-19 18:26 - 2014-11-19 18:26 - 04495336 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\x86\VBoxRT-x86.dll
2014-10-24 16:22 - 2014-10-24 16:22 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\ACE.dll
2014-11-19 18:26 - 2014-11-19 18:26 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Users\joel\OneDrive:ms-properties
AlternateDataStreams: C:\Users\valen_000\OneDrive:ms-properties

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1074294445-2638620405-1164550965-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\joel\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\p1070089.jpg
DNS Servers: 192.168.1.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\Run32: => "SDTray"
HKU\S-1-5-21-1074294445-2638620405-1164550965-1001\...\StartupApproved\Run: => "TomTomHOME.exe"

==================== Accounts: =============================

Administrateur (S-1-5-21-1074294445-2638620405-1164550965-500 - Administrator - Disabled) => C:\Users\Administrator
HomeGroupUser$ (S-1-5-21-1074294445-2638620405-1164550965-1006 - Limited - Enabled)
Invité (S-1-5-21-1074294445-2638620405-1164550965-501 - Limited - Disabled)
joel (S-1-5-21-1074294445-2638620405-1164550965-1001 - Administrator - Enabled) => C:\Users\joel
valen_000 (S-1-5-21-1074294445-2638620405-1164550965-1004 - Administrator - Enabled) => C:\Users\valen_000

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (02/22/2015 03:34:04 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15344

Error: (02/22/2015 03:34:04 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15344

Error: (02/22/2015 03:34:04 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (02/22/2015 03:29:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Le programme LiveComm.exe version 17.5.9600.20689 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance.

ID de processus : a34

Heure de début : 01d04eab33145dc6

Heure de fin : 4294967295

Chemin d’accès de l’application : C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\LiveComm.exe

ID de rapport : 2c1e5bd0-ba9f-11e4-806e-a45d366d4311

Nom complet du package défaillant : microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe

ID de l’application relative au package défaillant : ppleae38af2e007f4358a809ac99a64a67c1

Error: (02/22/2015 03:22:21 PM) (Source: ATIeRecord) (EventID: 16386) (User: )
Description: ATI EEU Client has failed to start

Error: (02/22/2015 00:09:28 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (02/22/2015 00:05:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante opbhobrokerdsktop.exe, version : 8.0.0.57, horodatage : 0x525c1d2d
Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000
Code d’exception : 0xc0000005
Décalage d’erreur : 0x0000000000000000
ID du processus défaillant : 0x2ba8
Heure de début de l’application défaillante : 0xopbhobrokerdsktop.exe0
Chemin d’accès de l’application défaillante : opbhobrokerdsktop.exe1
Chemin d’accès du module défaillant: opbhobrokerdsktop.exe2
ID de rapport : opbhobrokerdsktop.exe3
Nom complet du package défaillant : opbhobrokerdsktop.exe4
ID de l’application relative au package défaillant : opbhobrokerdsktop.exe5

Error: (02/21/2015 04:13:18 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (02/20/2015 09:28:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 27657

Error: (02/20/2015 09:28:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 27657


System errors:
=============
Error: (02/22/2015 03:33:46 PM) (Source: DCOM) (EventID: 10010) (User: JOELNICOLE)
Description: {5C068441-8DC5-4C20-A101-AB9C5B0F7721}

Error: (02/22/2015 03:20:02 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Le service Windows Update ne s’est pas fermé correctement après avoir reçu une commande d’anticipation de fermeture.

Error: (02/22/2015 01:09:05 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Le service Windows Search est en attente de démarrage.

Error: (02/22/2015 00:59:51 PM) (Source: DCOM) (EventID: 10010) (User: JOELNICOLE)
Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474}

Error: (02/22/2015 00:59:51 PM) (Source: DCOM) (EventID: 10010) (User: JOELNICOLE)
Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474}

Error: (02/22/2015 00:59:51 PM) (Source: DCOM) (EventID: 10010) (User: JOELNICOLE)
Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474}

Error: (02/22/2015 00:59:46 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: propres à l’applicationLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}AUTORITE NTSystèmeS-1-5-18LocalHost (avec LRPC)Non disponibleNon disponible

Error: (02/22/2015 00:20:39 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: propres à l’applicationLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}AUTORITE NTSystèmeS-1-5-18LocalHost (avec LRPC)Non disponibleNon disponible

Error: (02/21/2015 07:30:12 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: propres à l’applicationLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}AUTORITE NTSystèmeS-1-5-18LocalHost (avec LRPC)Non disponibleNon disponible

Error: (02/20/2015 09:27:18 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: propres à l’applicationLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}AUTORITE NTSystèmeS-1-5-18LocalHost (avec LRPC)Non disponibleNon disponible


Microsoft Office Sessions:
=========================
Error: (02/22/2015 03:34:04 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15344

Error: (02/22/2015 03:34:04 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15344

Error: (02/22/2015 03:34:04 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (02/22/2015 03:29:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: LiveComm.exe17.5.9600.20689a3401d04eab33145dc64294967295C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\LiveComm.exe2c1e5bd0-ba9f-11e4-806e-a45d366d4311microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbweppleae38af2e007f4358a809ac99a64a67c1

Error: (02/22/2015 03:22:21 PM) (Source: ATIeRecord) (EventID: 16386) (User: )
Description:

Error: (02/22/2015 00:09:28 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (02/22/2015 00:05:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: opbhobrokerdsktop.exe8.0.0.57525c1d2dunknown0.0.0.000000000c000000500000000000000002ba801d04e8aaba183e0C:\Program Files\Hewlett-Packard\SimplePass\opbhobrokerdsktop.exeunknownc66dbf0d-ba82-11e4-806b-a45d366d4311

Error: (02/21/2015 04:13:18 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (02/20/2015 09:28:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 27657

Error: (02/20/2015 09:28:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 27657


==================== Memory info ===========================

Processor: Intel® Core i5-3230M CPU @ 2.60GHz
Percentage of memory in use: 40%
Total physical RAM: 3988.27 MB
Available physical RAM: 2369.5 MB
Total Pagefile: 4884.27 MB
Available Pagefile: 3142.66 MB
Total Virtual: 131072 MB
Available Virtual: 131071.79 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:674.35 GB) (Free:592.68 GB) NTFS ==>[system with boot components (obtained from reading drive)]
Drive d: (RECOVERY) (Fixed) (Total:22.74 GB) (Free:2.25 GB) NTFS ==>[system with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 698.6 GB) (Disk ID: 0F808908)

Partition: GPT Partition Type.

==================== End Of Log ============================


Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-02-2015
Ran by joel (administrator) on JOELNICOLE on 22-02-2015 20:52:24
Running from C:\Users\joel\Downloads
Loaded Profiles: joel (Available profiles: joel & valen_000 & Administrateur)
Platform: Windows 8.1 (X64) OS Language: Français (France)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Softex Inc.) C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17477_none_fa2b7d3b9b36c7b4\TiWorker.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\livecomm.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
() C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\HPSmplPass.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\System32\msfeedssync.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
(Microsoft Corporation) C:\Windows\System32\wermgr.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7165000 2013-11-03] (Realtek Semiconductor)
HKLM\...\Run: [simplePass] => C:\Program Files\Hewlett-Packard\SimplePass\HPSmplPass.exe [2758200 2013-10-14] (Hewlett-Packard)
HKLM\...\Run: [OPBHOBroker] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [155704 2013-10-14] (Hewlett-Packard)
HKLM\...\Run: [OPBHOBrokerDesktop] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [155704 2013-10-14] (Hewlett-Packard)
HKLM\...\Run: [synTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2771184 2014-10-24] (Synaptics Incorporated)
HKLM-x32\...\Run: [startCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642656 2013-02-25] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [95192 2013-04-10] (CyberLink Corp.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-27] (AVAST Software)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [475448 2014-03-26] (Hewlett-Packard Development Company, L.P.)
HKU\S-1-5-21-1074294445-2638620405-1164550965-1001\...\Run: [TomTomHOME.exe] => C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [248176 2014-12-19] (TomTom)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-1074294445-2638620405-1164550965-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://g.uk.msn.com/HPNOT13/3
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com/HPNOT13/3
HKU\S-1-5-21-1074294445-2638620405-1164550965-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?pc=AV01
HKU\S-1-5-21-1074294445-2638620405-1164550965-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
HKU\S-1-5-21-1074294445-2638620405-1164550965-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.msn.com/?pc=AV01
SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/709-29563-11896-9/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
SearchScopes: HKLM -> {E5F4546E-1A7F-43D2-A784-EBA409F750F9} URL = http://www.amazon.fr/s/ref=azs_osd_ieafr?ie=UTF-8&tag=hp-fr2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKLM-x32 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/709-29563-11896-9/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
SearchScopes: HKU\S-1-5-21-1074294445-2638620405-1164550965-1001 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKU\S-1-5-21-1074294445-2638620405-1164550965-1001 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL =
SearchScopes: HKU\S-1-5-21-1074294445-2638620405-1164550965-1001 -> {E5F4546E-1A7F-43D2-A784-EBA409F750F9} URL =
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1166636.dll (Adobe Systems, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-12-23]

Chrome:
=======
CHR HomePage: Default ->
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\joel\AppData\Local\Google\Chrome\User Data\default
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\joel\AppData\Local\Google\Chrome\User Data\default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-05]
CHR Extension: (Avast Online Security) - C:\Users\joel\AppData\Local\Google\Chrome\User Data\default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-05-24]
CHR Extension: (Adblock Pro) - C:\Users\joel\AppData\Local\Google\Chrome\User Data\default\Extensions\ocifcklkibdehekfnmflempfgjhbedch [2015-02-12]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-19]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-11-19] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2014-11-19] (Avast Software)
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2013-11-04] (Hewlett-Packard Company) [File not signed]
R2 HPWMISVC; c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [469304 2014-03-26] (Hewlett-Packard Development Company, L.P.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-22] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [314696 2014-05-20] (Intel Corporation)
R2 Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel® Corporation) [File not signed]
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel® Corporation)
R2 Intel® ME Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-10-24] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [169432 2014-10-24] (Intel Corporation)
R2 omniserv; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [87552 2013-10-14] (Softex Inc.) [File not signed]
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [239176 2013-02-20] (Realtek Semiconductor)
S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2014-10-22] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-11-19] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-11-19] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-11-19] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-11-19] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-11-25] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-11-19] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-11-19] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-11-19] ()
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows ® Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows ® Win 7 DDK provider)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2014-10-24] (Intel Corporation)
S3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [288328 2013-01-24] (Realtek Semiconductor Corp.)
S3 RTSPER; C:\Windows\System32\DRIVERS\RtsPer.sys [448072 2013-02-02] (RTS Corporation)
R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [3068120 2014-10-24] (Realtek Semiconductor Corporation )
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [28400 2013-02-06] (Synaptics Incorporated)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2014-10-24] (Synaptics Incorporated)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2014-11-19] (Avast Software)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2012-08-31] (Hewlett-Packard Development Company, L.P.)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-22 20:52 - 2015-02-22 20:54 - 00016461 _____ () C:\Users\joel\Downloads\FRST.txt
2015-02-22 20:51 - 2015-02-22 20:52 - 00000000 ____D () C:\FRST
2015-02-22 20:50 - 2015-02-22 20:50 - 02087424 _____ (Farbar) C:\Users\joel\Downloads\FRST64.exe
2015-02-22 15:08 - 2015-02-22 15:10 - 00001317 _____ () C:\WinUpdateFix.txt
2015-02-22 14:26 - 2015-02-22 14:31 - 00001673 _____ () C:\Users\joel\Desktop\ZHPCleaner.txt
2015-02-22 14:19 - 2015-02-22 14:19 - 01730048 _____ () C:\Users\joel\Downloads\ZHPCleaner (3).exe
2015-02-22 14:19 - 2015-02-22 14:19 - 00000885 _____ () C:\Users\joel\Desktop\ZHPCleaner.lnk
2015-02-22 14:18 - 2015-02-22 14:18 - 01730048 _____ () C:\Users\joel\Downloads\ZHPCleaner (2).exe
2015-02-22 14:17 - 2015-02-22 14:17 - 01730048 _____ () C:\Users\joel\Downloads\ZHPCleaner (1).exe
2015-02-22 14:15 - 2015-02-22 14:15 - 01730048 _____ () C:\Users\joel\Downloads\ZHPCleaner.exe
2015-02-22 13:52 - 2015-02-22 13:52 - 00010752 ___SH () C:\Users\joel\Documents\Thumbs.db
2015-02-22 13:02 - 2015-02-22 15:22 - 00000231 _____ () C:\WINDOWS\setupact.log
2015-02-22 13:02 - 2015-02-22 13:02 - 00381184 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2015-02-22 13:02 - 2015-02-22 13:02 - 00000000 _____ () C:\WINDOWS\setuperr.log
2015-02-22 12:04 - 2015-02-22 12:04 - 00001022 _____ () C:\Users\joel\Desktop\CTR.txt
2015-02-22 12:03 - 2015-02-22 12:03 - 01196032 _____ () C:\Users\joel\Downloads\CTR.exe
2015-02-22 11:59 - 2015-02-22 11:59 - 00002467 _____ () C:\Users\joel\Desktop\ZHPFixReport.txt
2015-02-21 15:59 - 2015-02-21 15:59 - 00097372 _____ () C:\Users\joel\Desktop\ZHPDiag.txt
2015-02-21 15:58 - 2015-02-21 15:58 - 00000512 _____ () C:\PhysicalDisk0_MBR.bin
2015-02-21 15:46 - 2015-02-22 14:31 - 00000000 ____D () C:\Users\joel\AppData\Roaming\ZHP
2015-02-21 15:46 - 2015-02-21 15:46 - 00002014 _____ () C:\Users\joel\Desktop\ZHPFix.lnk
2015-02-21 15:46 - 2015-02-21 15:46 - 00001883 _____ () C:\Users\joel\Desktop\ZHPDiag.lnk
2015-02-21 15:46 - 2015-02-21 15:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
2015-02-21 15:46 - 2015-02-21 15:46 - 00000000 ____D () C:\Program Files (x86)\ZHPDiag
2015-02-21 15:45 - 2015-02-21 15:45 - 06876251 _____ (Nicolas Coolman ) C:\Users\joel\Downloads\ZHPDiag2.exe
2015-02-20 16:47 - 2015-02-22 20:50 - 01471526 _____ () C:\WINDOWS\WindowsUpdate.log
2015-02-20 16:44 - 2015-02-20 16:44 - 00000670 _____ () C:\Users\joel\Desktop\JRT.txt
2015-02-19 18:38 - 2015-02-19 20:55 - 00000000 ____D () C:\WINDOWS\softwaredistribution.bak2
2015-02-19 18:07 - 2015-02-19 20:55 - 00000000 ____D () C:\WINDOWS\softwaredistribution.bak1
2015-02-17 17:58 - 2015-02-17 17:58 - 00000000 ____D () C:\Users\joel\AppData\Roaming\SFR
2015-02-17 17:38 - 2015-02-17 17:38 - 00000000 ____D () C:\Users\joel\AppData\Local\Neuf
2015-02-17 17:34 - 2015-02-17 17:53 - 00000000 ____D () C:\Program Files (x86)\SFR
2015-02-11 17:14 - 2015-02-12 14:06 - 00000000 ____D () C:\Users\valen_000\AppData\Roaming\WildTangent
2015-01-29 20:33 - 2015-01-29 20:33 - 01736784 _____ (BitTorrent Inc.) C:\Users\joel\Downloads\uTorrent.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-22 20:54 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-02-22 20:51 - 2013-10-25 11:58 - 00001094 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-22 20:50 - 2013-10-24 15:52 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1074294445-2638620405-1164550965-1001
2015-02-22 20:50 - 2012-07-26 08:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-02-22 15:31 - 2014-10-22 14:35 - 00000000 ___RD () C:\Users\joel\OneDrive
2015-02-22 15:22 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-02-22 15:13 - 2013-10-25 11:59 - 00001098 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-22 14:46 - 2013-08-22 14:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI
2015-02-22 14:43 - 2013-10-12 16:58 - 00000000 ____D () C:\Users\joel\Documents\courrier
2015-02-22 14:27 - 2013-09-19 11:21 - 00001099 _____ () C:\Users\Public\Desktop\Photos Snapfish.lnk
2015-02-22 13:02 - 2014-09-25 12:43 - 00000350 _____ () C:\WINDOWS\Tasks\HPCeeScheduleForjoel.job
2015-02-22 12:48 - 2013-11-03 10:59 - 00000052 _____ () C:\WINDOWS\SysWOW64\DOErrors.log
2015-02-22 11:34 - 2014-09-25 12:43 - 00003162 _____ () C:\WINDOWS\System32\Tasks\HPCeeScheduleForjoel
2015-02-22 11:33 - 2014-01-18 16:18 - 00003796 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{ACD94F72-608B-4CD1-B7A7-0CAD8B4BB506}
2015-02-21 18:01 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2015-02-21 16:32 - 2014-12-29 18:17 - 00000370 _____ () C:\WINDOWS\Tasks\HPCeeScheduleForvalen_000.job
2015-02-21 15:49 - 2014-12-29 18:17 - 00002494 _____ () C:\WINDOWS\System32\Tasks\HPCeeScheduleForvalen_000
2015-02-21 15:49 - 2013-10-27 12:22 - 00002838 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1074294445-2638620405-1164550965-1004
2015-02-20 21:03 - 2014-09-24 16:26 - 02028496 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-02-20 21:03 - 2014-09-24 15:41 - 00887258 _____ () C:\WINDOWS\system32\perfh00C.dat
2015-02-20 21:03 - 2014-09-24 15:41 - 00192446 _____ () C:\WINDOWS\system32\perfc00C.dat
2015-02-20 16:51 - 2013-10-25 12:11 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-02-20 16:48 - 2013-10-25 12:11 - 116773704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-02-20 15:24 - 2014-06-17 13:07 - 00129752 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-02-19 21:05 - 2014-01-01 11:42 - 00002478 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2015-02-19 21:03 - 2014-10-22 13:49 - 00000000 ____D () C:\Users\joel
2015-02-19 20:59 - 2014-10-22 13:49 - 00000000 ____D () C:\Users\valen_000
2015-02-19 20:59 - 2014-10-22 13:49 - 00000000 ____D () C:\Users\Administrator
2015-02-19 20:58 - 2014-12-10 20:53 - 00000000 ____D () C:\WINDOWS\system32\appraiser
2015-02-19 20:58 - 2014-09-24 19:10 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2015-02-19 20:58 - 2014-09-24 16:03 - 00000000 ____D () C:\WINDOWS\ShellNew
2015-02-19 20:58 - 2014-03-22 13:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 __RSD () C:\WINDOWS\Media
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 __RHD () C:\Users\Public\Libraries
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\WinStore
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\ras
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\MSDRM
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\inetsrv
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\icsxml
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\Com
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\Bthprops
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\SystemResetPlatform
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\ras
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\MSDRM
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\migwiz
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\inetsrv
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\icsxml
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\ias
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\Com
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\Bthprops
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system\Speech
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\MediaViewer
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\L2Schemas
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\FileManager
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Camera
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\addins
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\System
2015-02-19 20:58 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\Services
2015-02-19 20:58 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\oobe
2015-02-19 20:58 - 2013-03-23 14:55 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-02-19 20:57 - 2014-09-20 13:05 - 00000000 ____D () C:\Users\joel\Documents\Icones de bureau
2015-02-19 20:57 - 2013-11-11 12:35 - 00000000 ____D () C:\Users\Public\CyberLink
2015-02-19 20:57 - 2013-11-01 17:38 - 00000000 ____D () C:\Users\joel\AppData\Roaming\WildTangent
2015-02-19 20:57 - 2013-10-27 12:16 - 00000000 ____D () C:\Users\valen_000\AppData\Local\Hewlett-Packard
2015-02-19 20:57 - 2013-10-12 16:59 - 00000000 ____D () C:\Users\joel\Documents\Liens pour favoris
2015-02-19 20:57 - 2013-10-12 16:58 - 00000000 ____D () C:\Users\joel\Documents\jeux
2015-02-19 20:57 - 2013-09-28 16:37 - 00000000 ____D () C:\Users\joel\Documents\Youcam
2015-02-19 20:57 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\Macromed
2015-02-19 20:57 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\Macromed
2015-02-19 20:57 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep
2015-02-19 20:57 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\servicing
2015-02-19 20:57 - 2013-06-25 07:40 - 00000000 ___HD () C:\Users\Public\Documents\YouCam
2015-02-19 20:56 - 2013-10-25 11:59 - 00000000 ____D () C:\Program Files\CCleaner
2015-02-19 20:56 - 2013-10-24 15:43 - 00000000 ____D () C:\Users\joel\AppData\Local\Hewlett-Packard
2015-02-19 20:56 - 2013-03-23 14:55 - 00000000 ____D () C:\Program Files (x86)\WildGames
2015-02-19 20:56 - 2013-03-23 14:54 - 00000000 ____D () C:\ProgramData\WildTangent
2015-02-19 20:56 - 2013-03-23 14:54 - 00000000 ____D () C:\Program Files (x86)\WildTangent Games
2015-02-19 20:20 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\registration
2015-02-19 20:14 - 2013-10-27 12:13 - 00000000 ____D () C:\Users\valen_000\AppData\Local\Packages
2015-02-19 20:13 - 2013-10-24 15:40 - 00000000 ____D () C:\Users\joel\AppData\Local\Packages
2015-02-19 20:13 - 2013-10-12 17:17 - 00000000 ____D () C:\Users\joel\Documents\TomTom
2015-02-17 18:25 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2015-02-15 12:19 - 2013-10-05 13:14 - 00052224 ___SH () C:\Users\joel\Downloads\Thumbs.db
2015-02-12 17:00 - 2013-10-24 15:38 - 00000000 ____D () C:\WINDOWS\softwaredistribution.bak
2015-02-12 14:38 - 2014-10-23 20:24 - 00000000 __RDO () C:\Users\valen_000\OneDrive
2015-02-08 14:33 - 2013-11-03 10:59 - 00000000 _____ () C:\WINDOWS\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2015-02-01 20:08 - 2013-10-25 11:59 - 00004070 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2015-02-01 20:08 - 2013-10-25 11:58 - 00003834 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2015-01-28 14:58 - 2013-08-22 14:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI(593)
2015-01-28 14:58 - 2013-08-22 14:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI(245)
2015-01-24 21:20 - 2014-12-11 11:35 - 00714720 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-01-24 21:20 - 2014-12-11 11:35 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-02-11 14:53

==================== End Of Log ==========================

 

 

 

Edit de Notpa : masqué très long rapport. Ne facilite pas la lecture du sujet. Cliquer sur Afficher (ou Show) pour la voir, Masquer pour la cacher.

Posté(e)

Oui problème avec Internet Explorer

Vous ne m'avez pas répondu

 

 

Pour le lien sur Cjoint en bleu lorsque vous cliquez droit dessus et copier

vous pouvez le coller dans un fichier du bloc note ??

 

Si c'est oui vous pouvez le coller directement sur le forum

Après la correction de l'outil FRST faite le s'il vous plaît

 

  • Vous allez faire une correction Farbar Recovery Scan Tool
  • Ouvrez le Bloc-notes (notepad).
  • Copiez le contenu de la zone code ci-dessous.
    Pour ce faire, sélectionnez toutes les lignes,
    faites un clique droit et choisissez Copier.
  • Collez ceci dans la fenêtre ouverte du Bloc-notes.
    Enregistrez le fichier sous le nom fixlist.txt

    start
    CloseProcesses:
    EmptyTemp:
    CreateRestorePoint:
    HKU\S-1-5-21-1074294445-2638620405-1164550965-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
    HKU\S-1-5-21-1074294445-2638620405-1164550965-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?pc=AV01
    HKU\S-1-5-21-1074294445-2638620405-1164550965-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
    HKU\S-1-5-21-1074294445-2638620405-1164550965-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.msn.com/?pc=AV01
    SearchScopes: HKLM -> {E5F4546E-1A7F-43D2-A784-EBA409F750F9} URL = http://www.amazon.fr...field-keywords={searchTerms}
    SearchScopes: HKLM-x32 -> DefaultScope {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
    SearchScopes: HKLM-x32 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
    SearchScopes: HKU\S-1-5-21-1074294445-2638620405-1164550965-1001 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
    SearchScopes: HKU\S-1-5-21-1074294445-2638620405-1164550965-1001 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL =
    SearchScopes: HKU\S-1-5-21-1074294445-2638620405-1164550965-1001 -> {E5F4546E-1A7F-43D2-A784-EBA409F750F9} URL =
    CHR DefaultSuggestURL: Default
    2015-01-29 20:33 - 2015-01-29 20:33 - 01736784 _____ (BitTorrent Inc.) C:\Users\joel\Downloads\uTorrent.exe
    Task: {507FD8A7-D800-4F18-BAE2-F65AE140536D} - System32\Tasks\Norton Internet Security\Norton Error Analyzer => C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\SymErr.exe
    Task: {9A6F654D-89B9-4233-95A1-D2DE59866351} - System32\Tasks\Norton Internet Security\Norton Error Processor => C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\SymErr.exe

    end

    NOTE. Il est important que les deux ,L'outil FRST et le fichier fixlist.txt se trouvent dans le même emplacement,LE BUREAU sinon la correction ne fonctionnera pas.

    NOTICE: Ces lignes ont été écrites spécialement pour cet utilisateur,
    pour être utilisées exclusivement sur ce PC. Exécuter ces instructions sur une autre machine pourrait endommager le système d'exploitation.


    669258Capture.png

    Exécutez FRST,
  • cliquez une seule fois sur le bouton Fix et attendez.
    Si, pour une raison quelconque, l'outil a besoin d'un redémarrage, laissez le système redémarrer normalement.
  • Ensuite laissez l'outil terminer son travail.
    Quand il a fini, FRST va créer un rapport placé sur le Bureau (Fixlog.txt).
  • Héberge le rapport présent sur ton bureau sur le site http://www.cjoint.com,
    Puis copie/colle le lien fourni dans ta prochaine réponse.

 

  • Télécharges Adwcleaner (de Xplode) sur ton Bureau
    Désactivez vos protections: antivirus, ... Ferme toutes les applications en cours (notamment votre navigateur)
    Fais clique droit dessus, exécuter en tant qu'administrateur sous Windows : 7/8 et Vista
  • Cliquez sur oui pour Accepter la licence
    140526054000482849.png
  • Choisir l'option Scanner
  • Choisir l'option Nettoyer
  • Acceptez l'avertissement en cliquant sur OK
  • Hébergez le contenu du rapport qui apparaît au redémarrage du PC
    sur le site http://www.cjoint.com
    Puis copie/colle le lien fourni dans votre prochaine réponse.

 

Posté(e) (modifié)

Bonjour

pour répondre à ta question ci dessus.

Je viens de faire un essai, je clique sur copier le lien en bleu , j'ouvre le bloc note ,clic droit coller est grisé donc impossible.

Je surligne en bleu le lien copier, je retourne dans le boc note coller ça fonctionne, de là je resurligne en bleu le lien dans le bloc note je vais sur le site répondre, coller rien. Désolé pour ces complications.

A+

PS A la question autorisez vous cette page a accéder au bloc note je réponds oui.

 

Je viens de préparer la procédure ci dessus mais je ne l'ai pas encore appliquée, car je me pose des questions, l'outil FRST était dans la rubrique téléchargement, j'ai donc créé un raccourci sur le bureau est ce que c'est bon ?

Sur le bureau j'ai donc le raccourci FRST et le dossier texte nommé fixlist.texte.

J'ai également tous les autres rapports et outils établis suite aux différentes manipulations, faut il garder ou supprimer.

Merci pour ton aide.

Modifié par joel62
Posté(e)

Bonjour,

 

Si tu peux copier et coller dans un fichier bloc note le lien de Cjoint il y a pas de raison pour que tu ne puisse pas le faire sur le forum.

Lorsque tu arrive ici dans cjoint cliquer droit sur le lien en bleu puis copier le lien
Ensuite tu le colle dans un fichier texte ou directement sur le forum

148961Capture.png
Si c'est dans un fichier du bloc note ,tu peux de nouveau surligner le lien pour le copier ici sur le forum


Pour l'outil non pas de raccourci il faut que l'outil FRST soit sur le bureau ainsi que le fichier fixlist.txt
Déplace l'outil FRST du dossier Téléchargement sur le bureau

Pour la suppression des fichiers et outils on vois cela a la fin de la désinfection.

 

A+

Posté(e)

.....je resurligne en bleu le lien dans le bloc note je vais sur le site répondre, coller rien.

Bonjour,

 

Le problème rencontré avec la fonction Copier/Coller est connu avec le navigateur Internet Explorer

 

Essayez un autre navigateur, par exemple Firefox

 

Bonne journée

Posté(e) (modifié)

 

Je m'améliore, mes liens fonctionnent t'ils ?

 

http://cjoint.com/?3BxpRGTl6Or

http://cjoint.com/?3Bxp3ah8q5j

http://cjoint.com/?3Bxp4odewB7

Je viens de faire un nouvel essai cela ne fonctionne toujours pas, j'ai tenté avec l'outil Windows réparation, il me trouve toujours la même chose comme depuis le début "Erreur de base de données update potentille détectée 0x80073712 corrigée, mais cela ne marche pas.

a+

Modifié par joel62

Rejoindre la conversation

Vous publiez en tant qu’invité. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...