cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by fredom (administrator) on MAISON on 04-04-2015 15:10:51
Running from C:\Users\fredom\Downloads
Loaded Profiles: fredom (Available profiles: fredom)
Platform: Windows 8 (X64) OS Language: Français (France)
Internet Explorer Version 10 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\WINDOWS\System32\wlanext.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Microsoft) C:\Program Files (x86)\Lenovo\Lenovo Dashboard\DdMgr.exe
(Seiko Epson Corporation) C:\WINDOWS\System32\escsvc64.exe
(SIEN S.A.) C:\Program Files (x86)\Common Files\IMGUpdater\IMGUpdater.exe
(Microsoft Corporation) C:\WINDOWS\System32\dasHost.exe
(Microsoft) C:\Program Files (x86)\Lenovo\EducationPortal\Services\IdeaTouch.LocalDataServer.Education.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON\MyEPSON Connect\mepService.exe
(Nitro PDF Software) C:\Program Files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe
(Nalpeiron Ltd.) C:\WINDOWS\SysWOW64\NLSSRV32.EXE
(Time Lapse Solutions) C:\ProgramData\sNIABwvOw\FlOGIEqoHbk.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\WINDOWS\splwow64.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON\MyEPSON Connect\mep.exe
(Microsoft Corporation) C:\WINDOWS\splwow64.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Primax Electronics Ltd.) C:\Program Files\Lenovo\Lenovo Black Silk USB Keyboard\Pelico.exe
() C:\Program Files\Lenovo\Lenovo Black Silk USB Keyboard\LsDaemon.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Sony) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe
() C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe
(SEIKO EPSON CORPORATION) C:\WINDOWS\System32\spool\drivers\x64\3\E_IATILFE.EXE
(SEIKO EPSON CORPORATION) C:\WINDOWS\System32\spool\drivers\x64\3\E_IATILFE.EXE
(Dropbox, Inc.) C:\Users\fredom\AppData\Roaming\Dropbox\bin\Dropbox.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Spotify Ltd) C:\Users\fredom\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(CyberLink) C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
(Microsoft Corporation) C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe
(Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe
(Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12937872 2012-07-27] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1214608 2012-07-10] (Realtek Semiconductor)
HKLM\...\Run: [Lenovo Black Silk Input Device Main Program] => C:\Program Files\Lenovo\Lenovo Black Silk USB Keyboard\Pelico.exe [118272 2011-04-19] (Primax Electronics Ltd.)
HKLM\...\Run: [EPSON Stylus DX3800] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_FATIACE.EXE [98304 2005-02-08] (SEIKO EPSON CORPORATION)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-02-13] (Apple Inc.)
HKLM-x32\...\Run: [Dolby Advanced Audio v2] => C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [508656 2012-07-25] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [Lenovo Eye Distance System] => C:\Program Files\Lenovo\Lenovo Eye Distance System\Lenovo Eye Distance System.exe [270680 2012-07-19] (Lenovo)
HKLM-x32\...\Run: [YouCam Mirage] => C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [136488 2012-07-27] (CyberLink)
HKLM-x32\...\Run: [YouCam Tray] => C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [167024 2012-07-27] (CyberLink Corp.)
HKLM-x32\...\Run: [CLMLServer] => C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc.exe [103720 2009-12-04] (CyberLink)
HKLM-x32\...\Run: [UpdateP2GoShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [214312 2011-12-06] (CyberLink Corp.)
HKLM-x32\...\Run: [Lenovo Dynamic Brightness System] => C:\Program Files\Lenovo\Lenovo Brightness System\RunLDBS.exe [1752408 2012-07-09] (TODO: <公司名>)
HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel Corporation)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [91432 2012-03-28] (CyberLink Corp.)
HKLM-x32\...\Run: [LVT] => C:\Program Files\Lenovo\LVT\LJYZ.exe [886112 2011-11-24] (Lenovo)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-15] (AVAST Software)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1065024 2014-05-02] (SEIKO EPSON CORPORATION)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-573481603-2883894918-660937390-1001\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2013-11-02] (Google Inc.)
HKU\S-1-5-21-573481603-2883894918-660937390-1001\...\Run: [Spotify Web Helper] => C:\Users\fredom\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1676344 2014-12-12] (Spotify Ltd)
HKU\S-1-5-21-573481603-2883894918-660937390-1001\...\Run: [Sony PC Companion] => C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [466144 2014-11-27] (Sony)
HKU\S-1-5-21-573481603-2883894918-660937390-1001\...\Run: [Spotify] => C:\Users\fredom\AppData\Roaming\Spotify\spotify.exe [6737976 2014-12-12] (Spotify Ltd)
HKU\S-1-5-21-573481603-2883894918-660937390-1001\...\Run: [EPLTarget\P0000000000000001] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILFE.EXE [297024 2013-01-24] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-573481603-2883894918-660937390-1001\...\Run: [EPLTarget\P0000000000000002] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILFE.EXE [297024 2013-01-24] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-573481603-2883894918-660937390-1001\...\Policies\Explorer: [NoDrives] 0x00000003
HKU\S-1-5-21-573481603-2883894918-660937390-1001\...\MountPoints2: {89078858-40e1-11e4-be90-0025ab3bc4e1} - "E:\Startme.exe"
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\VC64Loader.dll => C:\Program Files (x86)\SearchProtect\SearchProtect\bin\VC64Loader.dll [245056 2014-12-10] (Client Connect LTD)
AppInit_DLLs-x32: C:\PROGRA~2\SearchProtect\SearchProtect\bin\VC32Loader.dll => C:\Program Files (x86)\SearchProtect\SearchProtect\bin\VC32Loader.dll [215360 2014-12-10] (Client Connect LTD)
AppInit_DLLs-x32: C:\PROGRA~2\Amazon\AMAZON~1\\AMAZON~3.DLL => "C:\PROGRA~2\Amazon\AMAZON~1\\AMAZON~3.DLL" File Not Found
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FamilySafetyGuide.lnk
ShortcutTarget: FamilySafetyGuide.lnk -> C:\Program Files\Lenovo\LenovoFamilySecurity\LenovoFamilySecurity.exe ()
Startup: C:\Users\fredom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\fredom\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\fredom\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\fredom\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\fredom\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\fredom\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\fredom\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\fredom\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\fredom\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\fredom\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll No File
ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll No File
ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll No File
ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled.
ProxyServer: [.DEFAULT] => http=127.0.0.1:54057;https=127.0.0.1:54057
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.mysearchdial.com/?f=1&a=irmsd0103aw&cd=2XzuyEtN2Y1L1Qzu0B0EzzyDyDyCyDyBtDtDtB0D0F0Ezy0AtN0D0Tzu0SyByBtDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=100406114&ir=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://start.mysearchdial.com/?f=1&a=irmsd0103aw&cd=2XzuyEtN2Y1L1Qzu0B0EzzyDyDyCyDyBtDtDtB0D0F0Ezy0AtN0D0Tzu0SyByBtDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=100406114&ir=
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://start.qone8.com/web/?type=ds&ts=1383424856&from=tugs&uid=ST1000DM003-1CH162_S1DC0RB2XXXXS1DC0RB2&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://start.qone8.com/web/?type=ds&ts=1383424856&from=tugs&uid=ST1000DM003-1CH162_S1DC0RB2XXXXS1DC0RB2&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.qone8.com/?type=hp&ts=1383424856&from=tugs&uid=ST1000DM003-1CH162_S1DC0RB2XXXXS1DC0RB2
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.qone8.com/?type=hp&ts=1383424856&from=tugs&uid=ST1000DM003-1CH162_S1DC0RB2XXXXS1DC0RB2
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://start.qone8.com/web/?type=ds&ts=1383424856&from=tugs&uid=ST1000DM003-1CH162_S1DC0RB2XXXXS1DC0RB2&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-573481603-2883894918-660937390-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://home.microsoft.com/access/allinone.asp
HKU\S-1-5-21-573481603-2883894918-660937390-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.iminent.com/?appId=F7CDED89-91E9-4236-8F7E-93066E0712AB
HKU\S-1-5-21-573481603-2883894918-660937390-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.fr/0SEFRFR/SAOS02
URLSearchHook: HKU\S-1-5-21-573481603-2883894918-660937390-1001 - (No Name) - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - No File
SearchScopes: HKLM -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=irmsd0103aw&cd=2XzuyEtN2Y1L1Qzu0B0EzzyDyDyCyDyBtDtDtB0D0F0Ezy0AtN0D0Tzu0SyByBtDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=100406114&ir=
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://start.qone8.com/web/?type=ds&ts=1383424856&from=tugs&uid=ST1000DM003-1CH162_S1DC0RB2XXXXS1DC0RB2&q={searchTerms}
SearchScopes: HKLM -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=irmsd0103aw&cd=2XzuyEtN2Y1L1Qzu0B0EzzyDyDyCyDyBtDtDtB0D0F0Ezy0AtN0D0Tzu0SyByBtDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=100406114&ir=
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://start.qone8.com/web/?type=ds&ts=1383424856&from=tugs&uid=ST1000DM003-1CH162_S1DC0RB2XXXXS1DC0RB2&q={searchTerms}
SearchScopes: HKLM-x32 -> {BFFED5CA-8BDF-47CC-AED0-23F4E6D77732} URL = http://start.iminent.com/?appId=F7CDED89-91E9-4236-8F7E-93066E0712AB&ref=toolbox&q={searchTerms}
SearchScopes: HKU\S-1-5-21-573481603-2883894918-660937390-1001 -> DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://start.iminent.com/?appId=F7CDED89-91E9-4236-8F7E-93066E0712AB&ref=toolbox&q={searchTerms}
SearchScopes: HKU\S-1-5-21-573481603-2883894918-660937390-1001 -> {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://start.iminent.com/?appId=F7CDED89-91E9-4236-8F7E-93066E0712AB&ref=toolbox&q={searchTerms}
SearchScopes: HKU\S-1-5-21-573481603-2883894918-660937390-1001 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKU\S-1-5-21-573481603-2883894918-660937390-1001 -> {3B83C3B5-C593-4A03-B5A2-AD4EA6093FC3} URL =
SearchScopes: HKU\S-1-5-21-573481603-2883894918-660937390-1001 -> {460C3D19-B3D4-4964-A550-77D263B0CCCB} URL = http://www.trovi.com/Results.aspx?gd=&ctid=CT3325111&octid=EB_ORIGINAL_CTID&ISID=5CF7D8FE-2187-4BB0-BBD2-185FC73F6848&SearchSource=58&CUI=&UM=6&UP=SP02F1A376-33F7-4940-86E8-6429A5F074DF&q={searchTerms}&SSPV=
SearchScopes: HKU\S-1-5-21-573481603-2883894918-660937390-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=irmsd0103aw&cd=2XzuyEtN2Y1L1Qzu0B0EzzyDyDyCyDyBtDtDtB0D0F0Ezy0AtN0D0Tzu0SyByBtDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=100406114&ir=
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-12-23] (AVAST Software)
BHO: IMinent WebBooster (BHO) -> {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} -> C:\Program Files (x86)\Iminent\Minibar.InternetExplorer.BHOx64.dll [2014-04-02] (SIEN)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-03-29] (Google Inc.)
BHO-x32: No Name -> {84FF7BD6-B47F-46F8-9130-01B2696B36CB} -> No File
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-12-23] (AVAST Software)
BHO-x32: IMinent WebBooster (BHO) -> {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} -> C:\Program Files (x86)\Iminent\Minibar.InternetExplorer.BHOx86.dll [2014-04-02] (SIEN)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-29] (Google Inc.)
BHO-x32: No Name -> {d99a4ec9-00bd-4fe4-85a5-4db018351265} -> No File
BHO-x32: EpsonToolBandKicker Class -> {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} -> C:\Program Files (x86)\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-21] (SEIKO EPSON CORPORATION)
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-03-29] (Google Inc.)
Toolbar: HKLM-x32 - EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files (x86)\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-21] (SEIKO EPSON CORPORATION)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-29] (Google Inc.)
Toolbar: HKU\S-1-5-21-573481603-2883894918-660937390-1001 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-03-29] (Google Inc.)
DPF: HKLM-x32 {4FF78044-96B4-4312-A5B7-FDA3CB328095}
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://start.qone8.com/?type=sc&ts=1383424856&from=tugs&uid=ST1000DM003-1CH162_S1DC0RB2XXXXS1DC0RB2

FireFox:
========
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\4.0.60310.0\npctrl.dll [2011-03-09] ( Microsoft Corporation)
FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro\Pro 8\npnitromozilla.dll [2012-12-13] (Nitro PDF)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-08] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-08] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin-x32: PDF Architect 2 -> C:\Program Files (x86)\PDF Architect 2\np-previewer.dll [2014-04-17] (pdfforge GmbH)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-12-21]

Chrome:
=======
CHR HomePage: Default -> hxxp://start.iminent.com/?appId=F7CDED89-91E9-4236-8F7E-93066E0712AB
CHR StartupUrls: Default -> "hxxp://start.iminent.com/?appId=F7CDED89-91E9-4236-8F7E-93066E0712AB"
CHR Profile: C:\Users\fredom\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Avast Online Security) - C:\Users\fredom\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-12-21]
CHR Extension: (Lightning Newtab) - C:\Users\fredom\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo [2013-11-02]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\fredom\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-30]
CHR Extension: (Google Wallet) - C:\Users\fredom\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-02]
CHR HKLM-x32\...\Chrome\Extension: [chdboodilddefglllfoimeceomkpmkbi] - C:\Program Files (x86)\SaltarSmart\chdboodilddefglllfoimeceomkpmkbi.crx [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-12-23]
CHR HKLM-x32\...\Chrome\Extension: [ifohbjbgfchkkfhphahclmkpgejiplfo] - C:\Users\fredom\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtab.crx [2013-11-02]
CHR HKLM-x32\...\Chrome\Extension: [nbljechdpodpbchbmjcoamidppmpnmlc] - https://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-20] (Apple Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-12-23] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2014-12-23] (Avast Software)
R2 Dashboard Service; C:\Program Files (x86)\Lenovo\Lenovo Dashboard\DdMgr.exe [24880 2013-01-15] (Microsoft) [File not signed]
R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [144560 2012-05-17] (Seiko Epson Corporation)
R2 FlOGIEqoHbk; C:\ProgramData\sNIABwvOw\FlOGIEqoHbk.exe [2733544 2015-02-06] (Time Lapse Solutions)
R2 GlobalUpdater; C:\Program Files (x86)\Common Files\IMGUpdater\IMGUpdater.exe [378152 2014-12-18] (SIEN S.A.)
R2 IdeaTouch.LocalDataServer.Education; C:\Program Files (x86)\Lenovo\EducationPortal\Services\IdeaTouch.LocalDataServer.Education.exe [7680 2012-05-17] (Microsoft) [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165664 2012-08-23] (Intel Corporation)
R2 MyEPSON Connect Service; C:\Program Files (x86)\EPSON\MyEPSON Connect\mepService.exe [703616 2012-10-01] (SEIKO EPSON CORPORATION)
R2 NitroDriverReadSpool8; C:\Program Files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe [230408 2012-12-13] (Nitro PDF Software)
S3 PDF Architect 2; C:\Program Files (x86)\PDF Architect 2\ws.exe [1716264 2014-04-17] (pdfforge GmbH)
S3 pdfforge CrashHandler; C:\Program Files (x86)\PDF Architect 2\crash-handler-ws.exe [861736 2014-04-17] (pdfforge GmbH)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16024 2015-01-31] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-12-23] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-12-23] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-12-23] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-12-23] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-12-23] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-12-23] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-12-23] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-12-23] ()
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [6824520 2012-07-10] (Broadcom Corporation)
R3 LEMo602D; C:\Windows\system32\DRIVERS\LEMo602D.sys [24064 2011-04-19] (Primax Electronics Ltd.)
R3 LEub602D; C:\Windows\system32\DRIVERS\LEub602D.sys [18944 2011-05-17] (Primax Electronics Ltd.)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [266896 2012-06-13] (Realtek Semiconductor Corp.)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2013-03-18] (Apple, Inc.) [File not signed]
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2014-12-23] (Avast Software)
R3 VMC412; C:\Windows\System32\Drivers\VMC412.sys [232576 2012-08-22] (Vimicro Corporation)
R3 vmuacflt; C:\Windows\System32\Drivers\vmuacflt.sys [13696 2012-05-02] (Vimicro Corporation)
R0 WinI2C-DDC; C:\Windows\System32\drivers\DDCDrv.sys [20832 2008-04-08] (Nicomsoft Ltd.)
R0 WinI2C-DDC; C:\Windows\SysWOW64\drivers\DDCDrv.sys [15712 2010-03-22] (Nicomsoft Ltd.)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink)
S3 WUDFWpdComp; C:\Windows\system32\DRIVERS\WUDFRd.sys [198656 2012-07-26] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-04 15:10 - 2015-04-04 15:11 - 00026015 _____ () C:\Users\fredom\Downloads\FRST.txt
2015-04-04 15:05 - 2015-04-04 15:10 - 00000000 ____D () C:\FRST
2015-04-04 15:05 - 2015-04-04 15:05 - 02095616 _____ (Farbar) C:\Users\fredom\Downloads\FRST64.exe
2015-04-04 12:00 - 2015-04-04 12:00 - 00003108 _____ () C:\WINDOWS\System32\Tasks\{43A6075E-48F4-496A-865B-5E2FD0DE369D}
2015-04-04 07:55 - 2015-04-04 07:55 - 00001863 _____ () C:\Users\fredom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\avast! antivirus.lnk
2015-04-02 13:05 - 2015-04-02 13:05 - 00000197 _____ () C:\WINDOWS\system32\2015-04-02-11-05-31.087-AvastVBoxSVC.exe-4132.log
2015-04-02 13:02 - 2015-04-02 13:02 - 00397616 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2015-04-02 13:02 - 2015-04-02 13:02 - 00001002 _____ () C:\WINDOWS\PFRO.log
2015-03-31 21:06 - 2015-03-31 21:06 - 00982570 _____ () C:\Users\fredom\Downloads\traces_de_bronzage (1).mp4
2015-03-31 21:04 - 2015-03-31 21:04 - 00982570 _____ () C:\Users\fredom\Downloads\traces_de_bronzage.mp4
2015-03-31 06:55 - 2015-03-31 06:55 - 00000391 _____ () C:\Users\fredom\Desktop\Panneau de configuration - Raccourci.lnk
2015-03-31 06:54 - 2015-03-31 06:54 - 00000295 _____ () C:\Users\fredom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ordinateur.lnk
2015-03-30 11:40 - 2015-03-30 11:40 - 00000363 _____ () C:\Users\fredom\Desktop\Ordinateur - Raccourci.lnk
2015-03-25 08:02 - 2015-03-25 08:03 - 00000197 _____ () C:\WINDOWS\system32\2015-03-25-06-02-56.034-AvastVBoxSVC.exe-2980.log
2015-03-25 07:52 - 2015-03-25 07:52 - 00548464 _____ () C:\Users\fredom\Downloads\Non confirmé 154728.crdownload
2015-03-25 07:51 - 2015-03-25 07:51 - 00548464 _____ () C:\Users\fredom\Downloads\Non confirmé 861403.crdownload
2015-03-25 07:49 - 2015-03-11 07:21 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2015-03-25 07:49 - 2015-03-11 07:20 - 00943104 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2015-03-25 07:49 - 2015-03-11 07:20 - 00760320 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2015-03-25 07:49 - 2015-03-11 07:20 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2015-03-25 07:49 - 2015-03-11 07:20 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2015-03-25 07:49 - 2015-03-11 07:20 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-03-25 07:49 - 2015-03-11 00:04 - 01107456 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2015-03-25 07:49 - 2015-03-04 09:26 - 00596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AutoUpdate.exe
2015-03-25 07:49 - 2015-03-04 09:26 - 00467952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationUI.exe
2015-03-25 07:49 - 2015-03-04 09:26 - 00011105 _____ () C:\WINDOWS\system32\AutoconfigV2.cab
2015-03-25 07:49 - 2015-03-04 08:41 - 00695808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2015-03-25 07:49 - 2015-03-04 08:41 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-25 07:49 - 2015-03-04 06:53 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2015-03-25 07:49 - 2015-03-04 06:53 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-21 11:06 - 2015-01-09 01:52 - 00478296 _____ () C:\WINDOWS\SysWOW64\locale.nls
2015-03-21 11:06 - 2015-01-09 01:52 - 00478296 _____ () C:\WINDOWS\system32\locale.nls
2015-03-21 11:05 - 2015-01-09 08:43 - 00951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2015-03-21 11:05 - 2015-01-09 07:03 - 00601088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2015-03-21 10:55 - 2015-02-23 12:52 - 02237952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-03-21 10:55 - 2015-02-23 12:52 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-03-21 10:55 - 2015-02-23 12:51 - 01409024 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-03-21 10:55 - 2015-02-23 12:51 - 00915968 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2015-03-21 10:55 - 2015-02-23 12:51 - 00600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-03-21 10:55 - 2015-02-23 12:51 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2015-03-21 10:55 - 2015-02-23 12:51 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\UXInit.dll
2015-03-21 10:55 - 2015-02-23 12:50 - 19301888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-03-21 10:55 - 2015-02-23 12:50 - 15410688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-03-21 10:55 - 2015-02-23 12:50 - 03959296 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-03-21 10:55 - 2015-02-23 12:50 - 02656256 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-03-21 10:55 - 2015-02-23 12:50 - 00949760 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-03-21 10:55 - 2015-02-23 12:50 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-03-21 10:55 - 2015-02-23 12:50 - 00603136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-03-21 10:55 - 2015-02-23 12:50 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2015-03-21 10:55 - 2015-02-23 12:50 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-03-21 10:55 - 2015-02-23 12:50 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-03-21 10:55 - 2015-02-23 12:50 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesysprep.dll
2015-03-21 10:55 - 2015-02-23 12:50 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-03-21 10:55 - 2015-02-23 12:50 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2015-03-21 10:55 - 2015-02-23 12:50 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2015-03-21 10:55 - 2015-02-23 12:50 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2015-03-21 10:55 - 2015-02-23 12:49 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-03-21 10:55 - 2015-02-23 11:17 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2015-03-21 10:55 - 2015-02-23 11:15 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\INETRES.dll
2015-03-21 10:55 - 2015-02-23 10:51 - 00441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2015-03-21 10:55 - 2015-02-21 07:31 - 01763328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-03-21 10:55 - 2015-02-21 07:31 - 01181696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-03-21 10:55 - 2015-02-21 07:31 - 00523776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-03-21 10:55 - 2015-02-21 07:31 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UXInit.dll
2015-03-21 10:55 - 2015-02-21 07:30 - 14380544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-03-21 10:55 - 2015-02-21 07:30 - 13768704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-03-21 10:55 - 2015-02-21 07:30 - 02864640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-03-21 10:55 - 2015-02-21 07:30 - 02055680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-03-21 10:55 - 2015-02-21 07:30 - 00737280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-03-21 10:55 - 2015-02-21 07:30 - 00690688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-03-21 10:55 - 2015-02-21 07:30 - 00493056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-03-21 10:55 - 2015-02-21 07:30 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-03-21 10:55 - 2015-02-21 07:30 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2015-03-21 10:55 - 2015-02-21 07:30 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesysprep.dll
2015-03-21 10:55 - 2015-02-21 07:30 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2015-03-21 10:55 - 2015-02-21 07:30 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2015-03-21 10:55 - 2015-02-21 07:30 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2015-03-21 10:55 - 2015-02-21 07:30 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2015-03-21 10:55 - 2015-02-21 07:29 - 01441280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-03-21 10:55 - 2015-02-21 07:29 - 00357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2015-03-21 10:55 - 2015-02-21 07:29 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2015-03-21 10:55 - 2015-02-21 07:09 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2015-03-21 10:55 - 2015-02-21 07:07 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\INETRES.dll
2015-03-21 10:55 - 2015-02-21 06:42 - 00361984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2015-03-21 10:55 - 2015-02-21 05:00 - 00534528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2015-03-21 10:55 - 2015-01-24 08:42 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2015-03-21 10:55 - 2015-01-24 07:00 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ubpm.dll
2015-03-21 10:54 - 2015-03-06 09:39 - 00588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2015-03-21 10:54 - 2015-03-06 09:39 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2015-03-21 10:54 - 2015-03-06 07:48 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2015-03-21 10:54 - 2015-03-06 07:48 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2015-03-21 10:54 - 2015-02-26 06:35 - 04063232 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-03-21 10:54 - 2015-02-20 15:59 - 00046080 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-03-21 10:54 - 2015-02-20 13:56 - 00366592 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-03-21 10:54 - 2015-02-20 10:10 - 00035328 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-03-21 10:54 - 2015-02-20 09:24 - 00304128 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-03-21 10:54 - 2015-02-03 01:18 - 00569712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-03-21 10:54 - 2015-01-31 15:48 - 00044024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2015-03-21 10:54 - 2015-01-31 07:55 - 00275712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2015-03-21 10:54 - 2015-01-29 10:45 - 06973248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-03-21 10:54 - 2015-01-29 10:05 - 01627648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2015-03-21 10:54 - 2015-01-29 08:19 - 01339392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2015-03-21 10:54 - 2015-01-24 06:31 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2015-03-21 10:54 - 2015-01-20 08:41 - 01120256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2015-03-21 10:54 - 2015-01-20 07:10 - 00892416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2015-03-21 10:54 - 2015-01-15 13:44 - 01043968 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2015-03-21 10:54 - 2015-01-15 13:43 - 01282560 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-03-21 10:54 - 2015-01-15 12:00 - 00961536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2015-03-21 10:54 - 2015-01-15 11:38 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2015-03-21 10:54 - 2015-01-15 11:09 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2015-03-21 10:54 - 2014-12-18 10:51 - 00096576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2015-03-21 10:54 - 2014-12-18 08:52 - 00889344 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2015-03-21 10:54 - 2014-12-18 08:51 - 01160192 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2015-03-21 10:54 - 2014-12-18 08:50 - 00723968 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2015-03-21 10:54 - 2014-12-18 08:20 - 00702464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2015-03-21 10:54 - 2014-12-08 08:48 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll
2015-03-21 10:54 - 2014-12-08 07:04 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scesrv.dll
2015-03-21 10:54 - 2014-11-26 08:43 - 00778240 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2015-03-21 10:54 - 2014-11-26 06:50 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2015-03-21 10:50 - 2015-02-17 08:54 - 19777536 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-03-21 10:50 - 2015-02-17 07:13 - 17561600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-03-21 10:50 - 2015-01-24 08:43 - 00420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2015-03-21 10:50 - 2015-01-24 07:00 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2015-03-21 10:48 - 2015-02-13 01:18 - 00396419 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2015-03-21 10:44 - 2015-03-21 10:44 - 00000197 _____ () C:\WINDOWS\system32\2015-03-21-08-44-10.023-AvastVBoxSVC.exe-2336.log
2015-03-21 10:19 - 2015-03-29 11:19 - 00002055 _____ () C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2015-03-21 10:19 - 2015-03-21 10:19 - 00008444 _____ () C:\WINDOWS\DPINST.LOG

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-04 15:10 - 2015-02-06 22:42 - 00000000 ____D () C:\Users\fredom\AppData\Local\ZombieInvasion
2015-04-04 15:01 - 2015-02-08 18:26 - 01718096 _____ () C:\WINDOWS\WindowsUpdate.log
2015-04-04 15:00 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-04-04 14:27 - 2013-11-02 10:11 - 00001090 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-04 14:27 - 2013-11-02 10:11 - 00001086 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-04 12:55 - 2013-12-21 17:59 - 00004182 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2015-04-04 12:50 - 2014-07-29 21:50 - 00000933 _____ () C:\WINDOWS\Tasks\EPSON XP-312 313 315 Series Update {D4AB6001-3429-46B6-973E-73C35212919C}.job
2015-04-04 12:50 - 2014-07-29 21:50 - 00000747 _____ () C:\WINDOWS\Tasks\EPSON XP-312 313 315 Series Invitation {D4AB6001-3429-46B6-973E-73C35212919C}.job
2015-04-04 12:49 - 2014-07-29 21:49 - 00000933 _____ () C:\WINDOWS\Tasks\EPSON XP-312 313 315 Series Update {0DEB92BA-417C-403D-BA65-9A7801783A2E}.job
2015-04-04 12:49 - 2014-07-29 21:49 - 00000747 _____ () C:\WINDOWS\Tasks\EPSON XP-312 313 315 Series Invitation {0DEB92BA-417C-403D-BA65-9A7801783A2E}.job
2015-04-04 12:09 - 2014-11-10 20:47 - 00000000 ____D () C:\Program Files (x86)\Opera
2015-04-04 11:54 - 2015-01-06 13:03 - 00000000 ___RD () C:\Users\fredom\Dropbox
2015-04-04 11:54 - 2014-05-17 09:06 - 00000000 ____D () C:\Users\fredom\AppData\Roaming\Dropbox
2015-04-04 11:53 - 2013-12-14 11:34 - 00000000 ____D () C:\Users\fredom\AppData\Roaming\Spotify
2015-04-04 11:52 - 2013-11-06 22:07 - 00000499 _____ () C:\Users\fredom\Desktop\Google.website
2015-04-03 06:28 - 2015-02-08 17:44 - 00002192 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-04-02 13:09 - 2013-06-12 18:15 - 00799736 _____ () C:\WINDOWS\system32\perfh00C.dat
2015-04-02 13:09 - 2013-06-12 18:15 - 00155444 _____ () C:\WINDOWS\system32\perfc00C.dat
2015-04-02 13:09 - 2012-07-26 09:28 - 01793362 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-04-02 13:03 - 2012-07-26 09:22 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-04-01 23:26 - 2012-07-26 07:26 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2015-03-30 12:25 - 2014-06-03 21:21 - 00060928 ___SH () C:\Users\fredom\Desktop\Thumbs.db
2015-03-29 18:21 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\NDF
2015-03-29 12:04 - 2013-11-01 04:11 - 00003596 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-573481603-2883894918-660937390-1001
2015-03-29 11:58 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\rescache
2015-03-29 11:19 - 2015-02-27 15:03 - 00001782 _____ () C:\Users\Public\Desktop\iTunes.lnk
2015-03-29 11:19 - 2015-01-06 13:03 - 00001136 _____ () C:\Users\fredom\Desktop\Dropbox.lnk
2015-03-29 11:19 - 2014-12-23 15:27 - 00001993 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2015-03-29 11:19 - 2014-07-29 21:33 - 00000959 _____ () C:\Users\Public\Desktop\EPSON Scan.lnk
2015-03-29 11:19 - 2014-01-26 11:14 - 00000851 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2015-03-29 11:19 - 2013-12-14 11:34 - 00001932 _____ () C:\Users\fredom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2015-03-29 11:19 - 2013-12-14 11:34 - 00001926 _____ () C:\Users\fredom\Desktop\Spotify.lnk
2015-03-29 11:19 - 2013-11-01 02:50 - 00001451 _____ () C:\Users\fredom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-03-25 08:00 - 2014-12-12 01:49 - 00000000 ____D () C:\WINDOWS\system32\appraiser
2015-03-25 08:00 - 2014-07-12 09:17 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2015-03-25 08:00 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-25 08:00 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-25 08:00 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\WinStore
2015-03-25 08:00 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-25 08:00 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-03-25 07:59 - 2012-07-26 10:12 - 00000000 ___RD () C:\WINDOWS\ToastData
2015-03-25 07:59 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-03-21 11:05 - 2013-11-01 05:16 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-03-21 10:26 - 2013-11-01 18:16 - 00000000 ____D () C:\Users\fredom\Documents\RECETTES
2015-03-21 10:22 - 2015-01-06 13:02 - 00000000 ____D () C:\Users\fredom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-03-21 10:19 - 2014-06-09 11:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-03-21 10:19 - 2013-06-12 08:38 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-03-21 10:18 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\AUInstallAgent

==================== Files in the root of some directories =======

2013-11-01 18:49 - 2014-10-24 06:57 - 0021504 _____ () C:\Users\fredom\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-11-09 11:18 - 2013-11-09 11:18 - 0007629 _____ () C:\Users\fredom\AppData\Local\Resmon.ResmonCfg
2013-06-12 08:39 - 2013-06-12 08:39 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2013-06-12 08:43 - 2013-06-12 08:43 - 0000198 ____H () C:\ProgramData\Lenovo-15169.vbs
2013-06-12 08:43 - 2013-06-12 08:43 - 0000198 ____H () C:\ProgramData\Lenovo-15228.vbs

Files to move or delete:
====================
C:\ProgramData\Lenovo-15169.vbs
C:\ProgramData\Lenovo-15228.vbs


Some content of TEMP:
====================
C:\Users\fredom\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpxgc3na.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-29 12:05

==================== End Of Log ============================

Publicité


Signaler le contenu de ce document

Publicité