cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:17-08-2015
Exécuté par Victor (administrateur) sur PC-PC (18-08-2015 18:54:28)
Exécuté depuis C:\Users\Victor.pc-PC.001\Desktop\Downloads
Profils chargés: Victor (Profils disponibles: Normal & Victor)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Langue: Français (France)
Internet Explorer Version 10 (Navigateur par défaut: Chrome)
Mode d'amorçage: Safe Mode (with Networking)
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Microsoft Corporation) C:\Windows\HelpPane.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [3D BubbleSound] => "C:\Program Files\BubbleSound\3D BubbleSound.exe"
HKLM\...\Run: [Windesk Winsearch] => C:\Program Files (x86)\WindeskWinsearch\Windesk Winsearch.exe
HKLM-x32\...\Run: [mbot_fr_584] => [X]
HKLM-x32\...\Run: [gmsd_fr_407] => [X]
HKLM-x32\...\Run: [mbot_fr_619] => [X]
HKLM-x32\...\Run: [Hawker] => C:\Program Files (x86)\Hawker\VersionControl.exe [3187520 2015-05-11] (Hawker)
HKLM-x32\...\Run: [gmsd_fr_539] => [X]
HKLM-x32\...\Run: [mpck_fr_29] => [X]
HKLM-x32\...\Run: [OfferBoulevard] => C:\Program Files (x86)\OfferBoulevard\OfferBoulevardW.exe
HKLM-x32\...\Run: [mbot_fr_014010053] => [X]
HKLM-x32\...\Run: [gmsd_fr_005010053] => [X]
HKLM-x32\...\Run: [gmsd_fr_005010055] => [X]
HKLM-x32\...\Run: [ospd_us_013010058] => [X]
HKLM-x32\...\RunOnce: [Wse_binkiland] => C:\Windows\SysWOW64\wscript.exe /E:vbscript /B "C:\Users\Normal\AppData\Roaming\Wse_binkiland\UpdateProc\bkup.dat"
HKLM-x32\...\RunOnce: [DelTr272174] => cmd.exe /c rd /s /q "C:\Users\Normal\AppData\Roaming\WSE_Binkiland"
HKLM-x32\...\RunOnce: [upgmsd_fr_407.exe] => C:\Users\Normal\AppData\Local\mbot_fr_584\upgmsd_fr_407.exe -runonce
HKLM-x32\...\RunOnce: [Search Extensions Program Files Data Uninstall] => cmd /C rd /Q /S "C:\Program Files (x86)\Search Extensions"
HKLM-x32\...\RunOnce: [DelTr1914272] => C:\Users\Victor.pc-PC.001 [0 2015-05-27] ()
HKLM-x32\...\RunOnce: [upospd_us_013010058.exe] => C:\Users\Victor.pc-PC.001\AppData\Local\ospd_us_013010058\upospd_us_013010058.exe [3345552 2015-08-11] ()
HKU\S-1-5-21-4262996136-3617272635-2497329360-1012\...\Run: [Hawker] => C:\Program Files (x86)\Hawker\VersionControl.exe [3187520 2015-05-11] (Hawker)
HKU\S-1-5-21-4262996136-3617272635-2497329360-1012\...\Run: [PCPrivacyDock] => "C:\Program Files (x86)\PC Privacy Dock\PCPrivacyDock.exe" /minimized
HKU\S-1-5-21-4262996136-3617272635-2497329360-1012\...\Run: [ares] => "C:\Program Files (x86)\Ares\Ares.exe" -h
HKU\S-1-5-21-4262996136-3617272635-2497329360-1012\...\Run: [BitComet] => "C:\Program Files (x86)\BitComet\BitComet.exe" /tray
HKU\S-1-5-21-4262996136-3617272635-2497329360-1012\...\Run: [uTorrent] => C:\Users\Victor.pc-PC.001\AppData\Roaming\uTorrent\uTorrent.exe [1693024 2015-08-01] (BitTorrent Inc.)
HKU\S-1-5-21-4262996136-3617272635-2497329360-1012\...\Run: [WindApp] => "C:\Users\Victor.pc-PC.001\AppData\Roaming\Store\WindApp\WindApp.exe" /winstartup
HKU\S-1-5-21-4262996136-3617272635-2497329360-1012\...\Run: [Selection Tools] => "C:\Users\Victor.pc-PC.001\AppData\Roaming\WTools\Selection Tools\Selection Tools.exe" /winstartup
HKU\S-1-5-21-4262996136-3617272635-2497329360-1012\...\Run: [DesktopSearch] => C:\ProgramData\DesktopSearch\DesktopSearch.exe -ros -tray
HKU\S-1-5-21-4262996136-3617272635-2497329360-1012\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_296_Plugin.exe [960688 2015-02-01] (Adobe Systems Incorporated)
HKU\S-1-5-21-4262996136-3617272635-2497329360-1012\...\RunOnce: [PennyBee] => [X]
HKU\S-1-5-21-4262996136-3617272635-2497329360-1012\...\RunOnce: [DelTr1914272] => C:\Users\Victor.pc-PC.001 [0 2015-05-27] ()
HKU\S-1-5-21-4262996136-3617272635-2497329360-1012\...\RunOnce: [Tny_cassiopesa] => [X]
HKU\S-1-5-18\...\Run: [] => [X]
AppInit_DLLs-x32: c:\progra~3\{a2ca4~1\1173~1.1\seno.dll => "c:\progra~3\{a2ca4~1\1173~1.1\seno.dll" Fichier non trouvé(e)
AppInit_DLLs-x32: c:\progra~2\searchprotect\searchprotect\bin\vc32loader.dll => "c:\progra~2\searchprotect\searchprotect\bin\vc32loader.dll" Fichier non trouvé(e)
Startup: C:\Users\Victor.pc-PC.001\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\hqghumeaylnlf.lnk [2015-05-14]
ShortcutTarget: hqghumeaylnlf.lnk -> C:\ProgramData\{a2fc1526-d258-246d-a2fc-c1526d25549b}\hqghumeaylnlf.exe (Super PC Tools Ltd)
Startup: C:\Users\Victor.pc-PC.001\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\hqghumeaylnlf.lnk [2015-05-14]
ShortcutTarget: hqghumeaylnlf.lnk -> C:\ProgramData\{a2fc1526-d258-246d-a2fc-c1526d25549b}\hqghumeaylnlf.exe (Super PC Tools Ltd)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Pas de fichier
CHR HKLM\SOFTWARE\Policies\Google: Stratégie de restriction <======= ATTENTION

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Stratégie de restriction <======= ATTENTION
HKU\S-1-5-21-4262996136-3617272635-2497329360-1012\SOFTWARE\Policies\Microsoft\Internet Explorer: Stratégie de restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.mystartsearch.com/?type=hp&ts=1439125671&z=2475b70e200c4bb2981433cgfz9c7t8gfo6wew9o2q&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.mystartsearch.com/?type=hp&ts=1439125671&z=2475b70e200c4bb2981433cgfz9c7t8gfo6wew9o2q&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.mystartsearch.com/web/?type=ds&ts=1439125671&z=2475b70e200c4bb2981433cgfz9c7t8gfo6wew9o2q&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.mystartsearch.com/web/?type=ds&ts=1439125671&z=2475b70e200c4bb2981433cgfz9c7t8gfo6wew9o2q&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.mystartsearch.com/?type=hp&ts=1439125671&z=2475b70e200c4bb2981433cgfz9c7t8gfo6wew9o2q&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.mystartsearch.com/?type=hp&ts=1439125671&z=2475b70e200c4bb2981433cgfz9c7t8gfo6wew9o2q&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.mystartsearch.com/web/?type=ds&ts=1439125671&z=2475b70e200c4bb2981433cgfz9c7t8gfo6wew9o2q&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.mystartsearch.com/web/?type=ds&ts=1439125671&z=2475b70e200c4bb2981433cgfz9c7t8gfo6wew9o2q&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8&q={searchTerms}
HKU\S-1-5-21-4262996136-3617272635-2497329360-1012\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.mystartsearch.com/?type=hp&ts=1439125671&z=2475b70e200c4bb2981433cgfz9c7t8gfo6wew9o2q&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8
HKU\S-1-5-21-4262996136-3617272635-2497329360-1012\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.mystartsearch.com/?type=hp&ts=1439125671&z=2475b70e200c4bb2981433cgfz9c7t8gfo6wew9o2q&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.mystartsearch.com/web/?type=ds&ts=1439125671&z=2475b70e200c4bb2981433cgfz9c7t8gfo6wew9o2q&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8&q={searchTerms}
SearchScopes: HKLM -> {0b4d26f6-61a8-4463-99dd-5f2fe0400fa6} URL = hxxp://binkiland.com/results.php?f=4&q={searchTerms}&a=bnk_mlvi_15_13&cd=2XzuyEtN2Y1L1QzutA0A0FyEyC0A0DtBtC0Dzzzz0EyEtBtCtN0D0Tzu0StCtCyByBtN1L2XzutAtFzztFtAtFtCtN1L1CzutCyEtBzytDyD1V1BtBtN1L1G1B1V1N2Y1L1Qzu2SyCyBtA0E0BtDyB0EtG0A0EyC0DtGtA0AtDzytGyEtAyCtAtGyEtD0EtBtB0BzyyE0DyBtC0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0CyEtDtCtDtDtDyEtG0FtDyD0CtGyE0EyEzztGzz0C0CyDtGtB0DyD0EyBzy0AyCyC0D0B0F2Q&cr=906626228&ir=
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.mystartsearch.com/web/?type=ds&ts=1439125671&z=2475b70e200c4bb2981433cgfz9c7t8gfo6wew9o2q&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8&q={searchTerms}
SearchScopes: HKLM -> {589B893E-773C-4941-88C2-0DCC718E621C} URL =
SearchScopes: HKLM -> {9143e921-7c9a-4d27-ac43-eaccc78cc55a} URL =
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.mystartsearch.com/web/?type=ds&ts=1439125671&z=2475b70e200c4bb2981433cgfz9c7t8gfo6wew9o2q&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8&q={searchTerms}
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.mystartsearch.com/web/?type=ds&ts=1439125671&z=2475b70e200c4bb2981433cgfz9c7t8gfo6wew9o2q&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8&q={searchTerms}
SearchScopes: HKLM-x32 -> {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = hxxps://fr.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms}
SearchScopes: HKLM-x32 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://websearch.goodforsearch.info/?l=1&q={searchTerms}&pid=24470&r=2015/05/15&hid=17678385217426739565&lg=EN&cc=FR&unqvl=86
SearchScopes: HKU\S-1-5-21-4262996136-3617272635-2497329360-1012 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.mystartsearch.com/web/?type=ds&ts=1439125671&z=2475b70e200c4bb2981433cgfz9c7t8gfo6wew9o2q&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4262996136-3617272635-2497329360-1012 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cmi&utm_campaign=install_ie&utm_content=ds&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8&ts=1438952463&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4262996136-3617272635-2497329360-1012 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cmi&utm_campaign=install_ie&utm_content=ds&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8&ts=1438952463&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4262996136-3617272635-2497329360-1012 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.mystartsearch.com/web/?type=ds&ts=1439125671&z=2475b70e200c4bb2981433cgfz9c7t8gfo6wew9o2q&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4262996136-3617272635-2497329360-1012 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cmi&utm_campaign=install_ie&utm_content=ds&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8&ts=1438952463&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4262996136-3617272635-2497329360-1012 -> {9143e921-7c9a-4d27-ac43-eaccc78cc55a} URL = hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cmi&utm_campaign=install_ie&utm_content=ds&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8&ts=1438952463&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4262996136-3617272635-2497329360-1012 -> {A7D48093-B8EF-412F-8EAF-2069F1486B2F} URL = hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cmi&utm_campaign=install_ie&utm_content=ds&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8&ts=1438952463&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4262996136-3617272635-2497329360-1012 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cmi&utm_campaign=install_ie&utm_content=ds&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8&ts=1438952463&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4262996136-3617272635-2497329360-1012 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cmi&utm_campaign=install_ie&utm_content=ds&from=cmi&uid=ST9500325AS_5VEJPAK8XXXX5VEJPAK8&ts=1438952463&type=default&q={searchTerms}
BHO: PricaeLess -> {157F2DF1-E19B-4779-A90B-0C12082A4476} -> C:\Program Files (x86)\PricaeLess\yUquqjgiEyZ3ds.x64.dll [2015-08-07] ()
BHO: PriccELess -> {2F62EC02-8987-4CE2-912B-7EF21E858352} -> C:\Program Files (x86)\PriccELess\UDfNLoUCXg2mvK.x64.dll [2015-05-14] ()
BHO: PruiceLess -> {3CB50FA3-A6B3-4D75-87FE-C47CCD17E461} -> C:\Program Files (x86)\PruiceLess\A6C0pjzwZeAb1n.x64.dll [2015-05-15] ()
BHO: PriceeLEEssi -> {499730B4-244B-4496-9C0D-3F1940AA6087} -> C:\Program Files (x86)\PriceeLEEssi\6KPhfmCD9F6w8y.x64.dll [2015-05-15] ()
BHO: PrIceeMiNous -> {4DC554AA-9A11-4CC9-B7AB-97EFDCA34052} -> C:\Program Files (x86)\PrIceeMiNous\L7uzHENKW0s1cq.x64.dll [2015-05-14] ()
BHO: PriceMinus -> {568B4AD4-414F-40F3-A3D1-03F193E4C1F7} -> C:\Program Files (x86)\PriceMinus\gQlMlAzo9FGvWx.x64.dll [2015-05-14] ()
BHO: PreiceMiinUso -> {97D1C55C-16CB-43A6-83DC-26557DEBB573} -> C:\Program Files (x86)\PreiceMiinUso\zbzHZEJcwZ83gy.x64.dll [2015-05-15] ()
BHO: Pas de nom -> {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} -> Pas de fichier
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll Pas de fichier
BHO: bestadblocker -> {DB6D06AA-F8FE-4A8F-A5E4-DF6F3FEDC633} -> C:\Program Files (x86)\bestadblocker\vrmLSBPEC0AQvh.x64.dll [2015-05-14] ()
BHO: PriicoeLess -> {FE02A11D-DCF3-4FFB-BE4C-EE2194166D2F} -> C:\Program Files (x86)\PriicoeLess\TLf6uwXkN4JpPi.x64.dll [2015-05-14] ()
BHO-x32: PricaeLess -> {157F2DF1-E19B-4779-A90B-0C12082A4476} -> C:\Program Files (x86)\PricaeLess\yUquqjgiEyZ3ds.dll [2015-08-07] ()
BHO-x32: GoodTab Class -> {1F91A9A1-01BA-4c81-863D-3BA0751E1419} -> C:\Program Files (x86)\MiuiTab\SupTab.dll Pas de fichier
BHO-x32: PriccELess -> {2F62EC02-8987-4CE2-912B-7EF21E858352} -> C:\Program Files (x86)\PriccELess\UDfNLoUCXg2mvK.dll [2015-05-14] ()
BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\XTab\SupTab.dll Pas de fichier
BHO-x32: PruiceLess -> {3CB50FA3-A6B3-4D75-87FE-C47CCD17E461} -> C:\Program Files (x86)\PruiceLess\A6C0pjzwZeAb1n.dll [2015-05-15] ()
BHO-x32: PriceeLEEssi -> {499730B4-244B-4496-9C0D-3F1940AA6087} -> C:\Program Files (x86)\PriceeLEEssi\6KPhfmCD9F6w8y.dll [2015-05-15] ()
BHO-x32: PrIceeMiNous -> {4DC554AA-9A11-4CC9-B7AB-97EFDCA34052} -> C:\Program Files (x86)\PrIceeMiNous\L7uzHENKW0s1cq.dll [2015-05-14] ()
BHO-x32: PriceMinus -> {568B4AD4-414F-40F3-A3D1-03F193E4C1F7} -> C:\Program Files (x86)\PriceMinus\gQlMlAzo9FGvWx.dll [2015-05-14] ()
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-02-03] (Oracle Corporation)
BHO-x32: Hawker -> {853130B6-1A29-4D9D-9513-2A461287651E} -> C:\Program Files (x86)\Hawker\Hawker.dll [2015-05-11] (Hawker)
BHO-x32: AVG Web TuneUp -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files (x86)\AVG Web TuneUp\4.1.0.411\AVG Web TuneUp.dll [2015-03-04] (AVG)
BHO-x32: PreiceMiinUso -> {97D1C55C-16CB-43A6-83DC-26557DEBB573} -> C:\Program Files (x86)\PreiceMiinUso\zbzHZEJcwZ83gy.dll [2015-05-15] ()
BHO-x32: bestadblocker -> {DB6D06AA-F8FE-4A8F-A5E4-DF6F3FEDC633} -> C:\Program Files (x86)\bestadblocker\vrmLSBPEC0AQvh.dll [2015-05-14] ()
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-03] (Oracle Corporation)
BHO-x32: PriicoeLess -> {FE02A11D-DCF3-4FFB-BE4C-EE2194166D2F} -> C:\Program Files (x86)\PriicoeLess\TLf6uwXkN4JpPi.dll [2015-05-14] ()
Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.3.0\ViProtocol.dll [2015-02-01] (AVG Secure Search)
Hosts: Fichier hosts non détecté dans le dossier par défaut
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{909E7719-5806-46CA-8E68-7875F893421E}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{909E7719-5806-46CA-8E68-7875F893421E}: [DhcpNameServer] 192.168.1.254
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_296.dll [2015-02-01] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [Pas de fichier]
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_296.dll [2015-02-01] ()
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.4.0\\npsitesafety.dll [Pas de fichier]
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-02-03] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-03] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Pas de fichier]
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll [2015-08-11] (globalUpdate)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll [2015-08-11] (globalUpdate)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-06-14] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-06-14] (Google Inc.)
FF Plugin-x32: @tools.Software.com/Software Update;version=3 -> C:\Program Files (x86)\Software\Update\1.3.25.0\npSoftwareUpdate3.dll [2015-06-13] (The Software Group)
FF Plugin-x32: @tools.Software.com/Software Update;version=9 -> C:\Program Files (x86)\Software\Update\1.3.25.0\npSoftwareUpdate3.dll [2015-06-13] (The Software Group)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Extension: Hawker - C:\Program Files (x86)\Mozilla Firefox\distribution\bundles\{B5643E87-4502-60E2-A32A-6E126145609B} [2015-05-15]
FF HKLM\...\Firefox\Extensions: [{0a0e29f6-0ab0-44e1-a98e-bd050ee692ec}] - C:\Program Files\shopperz04082015\Firefox
FF HKLM-x32\...\Firefox\Extensions: [searchengine@gmail.com] - C:\Users\Normal\AppData\Roaming\Mozilla\Firefox\Profiles\uag7t3zz.default\extensions\searchengine@gmail.com
FF Extension: Search Enginer - C:\Users\Normal\AppData\Roaming\Mozilla\Firefox\Profiles\uag7t3zz.default\extensions\searchengine@gmail.com [2015-04-09]
FF HKLM-x32\...\Firefox\Extensions: [faststartff@gmail.com] - C:\Users\Victor.pc-PC\AppData\Roaming\Mozilla\Firefox\Profiles\4v2t22ln.default\extensions\faststartff@gmail.com
FF HKLM-x32\...\Firefox\Extensions: [{0a0e29f6-0ab0-44e1-a98e-bd050ee692ec}] - C:\Program Files\shopperz04082015\Firefox
StartMenuInternet: FIREFOX.EXE - firefox.exe

Chrome:
=======
CHR dev: Chrome dev build détecté(e)! <======= ATTENTION
CHR Profile: C:\Users\Victor.pc-PC.001\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Victor.pc-PC.001\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-06-14]
CHR Extension: (Google Docs) - C:\Users\Victor.pc-PC.001\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-06-14]
CHR Extension: (Google Drive) - C:\Users\Victor.pc-PC.001\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-06-14]
CHR Extension: (YouTube) - C:\Users\Victor.pc-PC.001\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-06-14]
CHR Extension: (Google Search) - C:\Users\Victor.pc-PC.001\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-06-14]
CHR Extension: (binkiland New Tab) - C:\Users\Victor.pc-PC.001\AppData\Local\Google\Chrome\User Data\Default\Extensions\elggllhppljlljkgfeokjpehmdamkejk [2015-06-14]
CHR Extension: (Google Sheets) - C:\Users\Victor.pc-PC.001\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-06-14]
CHR Extension: (Gmail) - C:\Users\Victor.pc-PC.001\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-06-14]
CHR HKLM\...\Chrome\Extension: [elggllhppljlljkgfeokjpehmdamkejk] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [elggllhppljlljkgfeokjpehmdamkejk] - https://clients2.google.com/service/update2/crx

==================== Services (Avec liste blanche) ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

ATTENTION: => Impossible d'effectuer la vérification de la signature. Le service de cryptographie est inactif.

S2 531ae1a4; c:\Program Files (x86)\SystemProtract\SystemProtract.dll [3036672 2015-08-14] ()
S4 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [3411408 2015-02-19] (AVG Technologies CZ, s.r.o.)
S4 avgwd; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [308720 2015-02-19] (AVG Technologies CZ, s.r.o.)
S2 ClaraUpdater; C:\Program Files (x86)\Common Files\ClaraUpdater\ClaraUpdater.exe [341616 2015-04-09] (ClaraLabs)
S2 comyninu; C:\Program Files (x86)\B3C3ED1C-1438951686-E011-A408-1C7508A31ABB\hnse8911.tmp [161792 2015-08-07] ()
S2 fchk32; C:\Program Files\fchk32\fchk32.exe [379904 2015-08-10] ()
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [68608 2015-08-11] (globalUpdate) <==== ATTENTION
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [68608 2015-08-11] (globalUpdate) <==== ATTENTION
S2 hyverumu; C:\Program Files (x86)\B3C3ED1C-1438951686-E011-A408-1C7508A31ABB\jnsu70BF.tmp [209920 2015-08-07] ()
S2 myzijofu; C:\Users\Victor.pc-PC.001\AppData\Roaming\B3C3ED1C-1431636037-E011-A408-1C7508A31ABB\hnswACF3.tmp [418816 2015-05-14] ()
S2 Narcissistic Clan; C:\Users\Victor.pc-PC.001\AppData\Roaming\Narcissistic Clan\Narcissistic Clan.exe [66048 2015-08-07] ()
S2 NlsData000f; C:\Users\Victor.pc-PC.001\AppData\Local\AssistanceIP32\2015-02-07-08-22-22.005-avastvboxsvc.exe-2892.exe [38400 2015-08-11] ()
S2 pidijupo; C:\Users\Normal\AppData\Roaming\B3C3ED1C-1428596512-E011-A408-1C7508A31ABB\jnsc7619.tmp [227328 2015-04-09] ()
S2 Software_update; C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe [119408 2015-06-13] (The Software Group)
S3 Software_update_m; C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe [119408 2015-06-13] (The Software Group)
S2 vToolbarUpdater18.4.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.4.0\ToolbarUpdater.exe [1875480 2015-03-04] (AVG Secure Search)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
S2 WindowsMangerProtect; C:\ProgramData\3WinManPro3\ProtectWindowsManager.exe [708264 2015-08-09] (DTools LIMITED) <==== ATTENTION
S2 WtuSystemSupport; C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe [620056 2015-03-04] ()
S2 xyqovofu; C:\Users\Victor.pc-PC.001\AppData\Roaming\B3C3ED1C-1431636037-E011-A408-1C7508A31ABB\jnsg8C95.tmp [231424 2015-05-14] ()
S2 ZAtheros Wlan Agent; C:\Program Files (x86)\Qualcomm Atheros Fast Reconnect\Ath_WlanAgent.exe [57344 2011-08-10] (Atheros)
S2 fugewybu; C:\Users\Victor.pc-PC.001\AppData\Roaming\B3C3ED1C-1431636037-E011-A408-1C7508A31ABB\nsg56EF.tmpfs [X]
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
S2 hunewijo; C:\Program Files (x86)\B3C3ED1C-1438951686-E011-A408-1C7508A31ABB\knsz56F2.tmpfs [X]
S2 IHProtect Service; C:\Program Files (x86)\MiuiTab\ProtectService.exe [X]
S2 Util Hatchiho; "C:\Program Files (x86)\Hatchiho\bin\utilHatchiho.exe" [X]
S2 zifumoqo; C:\Users\Normal\AppData\Roaming\B3C3ED1C-1428596512-E011-A408-1C7508A31ABB\nsh41CA.tmpfs [X]

===================== Pilotes (Avec liste blanche) ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-06-18] (AVG Technologies CZ, s.r.o.)
S1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [270816 2015-02-19] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [203544 2014-11-18] (AVG Technologies CZ, s.r.o.)
S1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [243480 2014-08-28] (AVG Technologies CZ, s.r.o.)
S0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [341472 2015-02-03] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [133088 2015-01-23] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-06-18] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [284128 2015-01-16] (AVG Technologies CZ, s.r.o.)
S3 BRDriver64_1_3_3_E02B25FC; \??\C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [X]
S1 cherimoya; system32\drivers\cherimoya.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2015-08-18 18:51 - 2015-08-18 18:54 - 00000000 ____D C:\FRST
2015-08-18 10:46 - 2015-08-18 10:46 - 00000357 _____ C:\AdwCleaner[S1].txt
2015-08-18 10:44 - 2015-08-18 10:44 - 00000000 ____D C:\AdwCleaner
2015-08-17 20:37 - 2005-01-24 05:45 - 77916160 _____ C:\Users\Victor.pc-PC.001\Documents\VTS_01_5.VOB
2015-08-17 20:35 - 2005-01-24 05:38 - 1073094656 _____ C:\Users\Victor.pc-PC.001\Documents\VTS_01_2.VOB
2015-08-17 20:33 - 2005-01-24 05:45 - 1073104896 _____ C:\Users\Victor.pc-PC.001\Documents\VTS_01_4.VOB
2015-08-17 20:31 - 2005-01-24 05:42 - 1073102848 _____ C:\Users\Victor.pc-PC.001\Documents\VTS_01_3.VOB
2015-08-14 16:42 - 2015-08-14 16:42 - 00000000 ____D C:\Program Files (x86)\SystemProtract
2015-08-14 11:02 - 2015-08-14 11:02 - 00000000 ____D C:\Users\Victor.pc-PC.001\AppData\Local\MFAData
2015-08-12 13:24 - 2015-08-12 13:24 - 00002098 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-08-11 19:51 - 2015-08-14 10:39 - 00000000 ____D C:\Program Files (x86)\Screen Flip
2015-08-11 19:51 - 2015-08-11 19:51 - 00001034 _____ C:\Windows\Tasks\TWwLO39bVfPb5JKhrDG.job
2015-08-11 19:50 - 2015-08-11 19:50 - 00000948 _____ C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore1d0d45e33326bb3.job
2015-08-11 19:49 - 2015-08-11 19:49 - 00000500 _____ C:\Windows\Tasks\PhraseProfessor Auto Updater 1.10.0.21 Core.job
2015-08-11 19:49 - 2015-08-11 19:49 - 00000000 ____D C:\Users\Victor.pc-PC.001\AppData\Local\AssistanceIP32
2015-08-11 19:48 - 2015-08-11 19:49 - 00000000 ____D C:\Program Files\fchk32
2015-08-11 19:47 - 2015-08-11 19:47 - 00000518 _____ C:\Windows\Tasks\ED663E50-39AE-4373-98B0-8195EEAE8D58.job
2015-08-11 19:44 - 2015-08-11 19:44 - 00000000 _____ C:\cd.iso
2015-08-11 19:42 - 2015-08-11 19:47 - 00000000 ____D C:\Users\Victor.pc-PC.001\AppData\Local\ospd_us_013010058
2015-08-11 19:42 - 2015-08-11 19:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ONESOFTPERDAY
2015-08-11 19:42 - 2015-08-11 19:42 - 00000000 ____D C:\Program Files (x86)\ospd_us_013010058
2015-08-11 19:01 - 2015-08-11 19:14 - 00000000 ____D C:\Users\Victor.pc-PC.001\Downloads\Jean Jacques Goldman
2015-08-09 15:08 - 2015-08-09 15:08 - 00000000 ____D C:\ProgramData\3WinManPro3
2015-08-09 15:03 - 2015-08-09 15:03 - 00000000 ____D C:\Program Files (x86)\Exploremedia
2015-08-09 14:57 - 2015-08-09 14:57 - 00000304 _____ C:\Windows\Tasks\CleanerPro_Popup.job
2015-08-09 14:57 - 2015-08-09 14:57 - 00000266 _____ C:\Windows\Tasks\CleanerPro_Start.job
2015-08-09 14:57 - 2015-08-09 14:57 - 00000000 ____D C:\Users\Victor.pc-PC.001\Documents\CleanerPro
2015-08-09 14:57 - 2015-08-09 14:57 - 00000000 ____D C:\Users\Victor.pc-PC.001\AppData\Local\CleanerPro
2015-08-09 13:48 - 2015-08-10 17:41 - 00000000 ____D C:\Users\Victor.pc-PC.001\Documents\photo
2015-08-07 21:38 - 2015-08-18 10:47 - 00000000 ____D C:\Users\Victor.pc-PC.001\Desktop\3DS_Video_Converter_2.4
2015-08-07 15:03 - 2015-08-07 15:53 - 00000000 ____D C:\Users\Victor.pc-PC.001\AppData\Roaming\systweak
2015-08-07 15:03 - 2015-08-07 15:04 - 00000000 ____D C:\Program Files (x86)\PricaeLess
2015-08-07 15:03 - 2015-08-07 15:03 - 00000000 ____D C:\Users\Victor.pc-PC.001\AppData\Local\Windesk_Winsearch
2015-08-07 15:00 - 2015-08-09 15:08 - 00000000 ____D C:\Program Files (x86)\MiuiTab
2015-08-07 15:00 - 2015-08-07 15:00 - 00000000 ____D C:\ProgramData\olhjikghpjkfkbhaeaecnmjabcdgmbka
2015-08-07 14:59 - 2015-08-09 15:14 - 00000000 ____D C:\Program Files (x86)\Product Deals
2015-08-07 14:59 - 2015-08-07 14:59 - 00004592 _____ C:\Windows\SysWOW64\Peakoar.ini
2015-08-07 14:59 - 2015-08-07 14:59 - 00002280 _____ C:\Windows\SysWOW64\PeakoarOff.ini
2015-08-07 14:59 - 2015-08-07 14:59 - 00002280 _____ C:\Windows\system32\PeakoarOff.ini
2015-08-07 14:59 - 2015-08-07 14:59 - 00000338 _____ C:\Windows\Tasks\EasyFix.job
2015-08-07 14:59 - 2015-08-07 14:59 - 00000000 ____D C:\Windows\system32\mabe
2015-08-07 14:59 - 2015-08-07 14:59 - 00000000 ____D C:\Users\Victor.pc-PC.001\AppData\Roaming\Narcissistic Clan
2015-08-07 14:59 - 2015-08-07 14:59 - 00000000 ____D C:\ProgramData\XWinManProX
2015-08-07 14:59 - 2015-08-07 14:59 - 00000000 ____D C:\ProgramData\{589cf8ba-be49-247d-589c-cf8babe4e2ea}
2015-08-07 14:59 - 2015-08-07 14:59 - 00000000 _____ C:\Windows\prleth.sys
2015-08-07 14:59 - 2015-08-07 14:59 - 00000000 _____ C:\Windows\hgfs.sys
2015-08-07 14:59 - 2015-08-07 14:59 - 00000000 _____ C:\dummy.htm
2015-08-07 14:59 - 2015-08-02 16:50 - 00353632 _____ C:\Windows\system32\Peakoar64.dll
2015-08-07 14:59 - 2015-08-02 16:50 - 00283488 _____ C:\Windows\SysWOW64\Peakoar.dll
2015-08-07 14:58 - 2015-08-07 14:58 - 00000470 _____ C:\Windows\Tasks\WordSurfer Auto Updater 1.10.0.19 Core.job
2015-08-07 14:58 - 2015-08-07 14:58 - 00000045 _____ C:\user.js
2015-08-07 14:54 - 2015-08-07 14:54 - 00001044 _____ C:\Windows\Tasks\eGcPD67U40NjjOSOYoOzpF1F.job
2015-08-07 14:52 - 2015-08-07 14:52 - 00000518 _____ C:\Windows\Tasks\916D3D04-380D-4D09-B07F-F8DF1E55B52E.job
2015-08-07 14:49 - 2015-08-07 14:49 - 00000000 ____D C:\Users\Victor.pc-PC.001\AppData\Local\B3C3ED1C-1438958975-E011-A408-1C7508A31ABB
2015-08-07 14:48 - 2015-08-07 15:04 - 00000000 ____D C:\Program Files (x86)\B3C3ED1C-1438951686-E011-A408-1C7508A31ABB
2015-08-05 12:58 - 2015-08-05 17:22 - 00000000 ____D C:\Users\Victor.pc-PC.001\Downloads\Engrenages.S01E01-08.FiNAL.FRENCH.DVDRiP.XViD
2015-08-05 10:03 - 2015-08-18 11:23 - 00000000 ____D C:\Users\Victor.pc-PC.001\Documents\Nouveau dossier (2)
2015-08-03 18:59 - 2015-08-03 18:59 - 00000000 ____D C:\Users\Victor.pc-PC.001\AppData\Roaming\AVS4YOU
2015-08-03 18:59 - 2015-08-03 18:59 - 00000000 ____D C:\ProgramData\AVS4YOU
2015-08-03 18:58 - 2015-08-09 15:14 - 00000000 ____D C:\Program Files (x86)\AVS4YOU
2015-08-03 18:58 - 2010-05-11 13:17 - 01700352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2015-08-03 18:58 - 2010-05-11 13:17 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3a.dll
2015-08-03 18:00 - 2015-08-17 20:34 - 00000000 ____D C:\Users\Victor.pc-PC.001\AppData\Roaming\dvdcss
2015-08-03 15:01 - 2015-08-03 15:02 - 00002220 _____ C:\Windows\setupact.log
2015-08-03 15:01 - 2015-08-03 15:01 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2015-08-03 15:01 - 2015-08-03 15:01 - 00000000 _____ C:\Windows\setuperr.log
2015-08-03 14:42 - 2015-08-05 10:04 - 00000000 ____D C:\Users\Victor.pc-PC.001\Documents\Nouveau dossier
2015-08-03 14:32 - 2015-08-14 16:53 - 00000000 ____D C:\Users\Victor.pc-PC.001\Documents\DCIM
2015-08-03 14:32 - 2010-04-24 18:16 - 00000000 ____D C:\Users\Victor.pc-PC.001\Documents\MISC
2015-08-03 14:19 - 2009-11-13 20:00 - 3665821696 _____ C:\Users\Victor.pc-PC.001\Downloads\Super_Smash_Bros._Brawl.iso
2015-08-03 13:27 - 2015-08-03 13:29 - 00000000 ____D C:\Users\Victor.pc-PC.001\Downloads\Malcolm Saison 2
2015-07-26 21:39 - 2015-08-01 20:30 - 405012480 _____ C:\Users\Victor.pc-PC.001\Downloads\Super Mario Galaxy 2.iso
2015-07-26 15:24 - 2015-07-26 15:21 - 02284063 _____ C:\LetterBomb.zip

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2015-08-18 18:45 - 2015-05-08 17:44 - 00000000 ____D C:\Users\Victor.pc-PC.001\AppData\Roaming\vlc
2015-08-18 18:39 - 2015-05-17 07:58 - 00000000 ____D C:\Users\Victor.pc-PC.001\AppData\Roaming\uTorrent
2015-08-18 18:36 - 2015-06-09 20:14 - 00000000 ____D C:\Users\Victor.pc-PC.001\Documents\cd
2015-08-18 09:31 - 2011-04-12 11:16 - 00747320 _____ C:\Windows\system32\perfh00C.dat
2015-08-18 09:31 - 2011-04-12 11:16 - 00149844 _____ C:\Windows\system32\perfc00C.dat
2015-08-18 09:31 - 2009-07-14 07:13 - 00892648 _____ C:\Windows\system32\PerfStringBackup.INI
2015-08-14 16:41 - 2015-05-15 19:45 - 00000000 ____D C:\Program Files (x86)\CutterMaker
2015-08-14 11:36 - 2015-03-10 19:47 - 00000000 ____D C:\ProgramData\Skype
2015-08-14 11:36 - 2015-02-01 16:19 - 00000000 ____D C:\ProgramData\MFAData
2015-08-14 11:35 - 2015-05-24 20:02 - 00099384 _____ C:\Users\Victor.pc-PC.001\AppData\Roaming\inst.exe
2015-08-14 11:35 - 2015-05-24 20:02 - 00082816 _____ (VSO Software) C:\Users\Victor.pc-PC.001\AppData\Roaming\pcouffin.sys
2015-08-14 11:35 - 2015-05-24 20:02 - 00007859 _____ C:\Users\Victor.pc-PC.001\AppData\Roaming\pcouffin.cat
2015-08-14 11:35 - 2015-05-24 20:02 - 00000055 _____ C:\Users\Victor.pc-PC.001\AppData\Roaming\pcouffin.log
2015-08-14 11:35 - 2015-05-24 20:02 - 00000000 ____D C:\Users\Victor.pc-PC.001\AppData\Roaming\Vso
2015-08-14 11:35 - 2015-05-24 20:01 - 00000000 ____D C:\Program Files (x86)\VSO
2015-08-14 11:33 - 2015-05-16 19:59 - 00023254 _____ C:\Windows\PFRO.log
2015-08-14 11:17 - 2015-04-09 17:39 - 00000000 ____D C:\ProgramData\FlashBeat
2015-08-14 11:06 - 2015-03-27 18:42 - 00000000 ____D C:\Users\Victor.pc-PC.001\AppData\Local\Avg2015
2015-08-14 10:51 - 2015-06-10 17:09 - 00000000 ____D C:\Users\Victor.pc-PC.001\AppData\Roaming\Store
2015-08-14 10:49 - 2015-06-10 17:09 - 00000000 ____D C:\Users\Victor.pc-PC.001\AppData\Roaming\WTools
2015-08-14 10:41 - 2015-06-10 21:05 - 00001768 _____ C:\Windows\SysWOW64\${LOGFILE}
2015-08-14 10:41 - 2015-06-10 17:08 - 00000000 ____D C:\Users\Victor.pc-PC.001\AppData\Roaming\Nosibay
2015-08-14 10:35 - 2015-02-01 16:15 - 00000000 ____D C:\Program Files (x86)\Acer
2015-08-12 13:24 - 2015-06-14 21:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-08-11 19:55 - 2015-04-15 21:26 - 00000137 _____ C:\Windows\Reimage.ini
2015-08-11 19:49 - 2015-06-10 17:09 - 00000156 _____ C:\Users\Victor.pc-PC.001\AppData\Roaming\Selection Tools.installation.log
2015-08-11 19:49 - 2015-06-10 17:07 - 00002662 _____ C:\Users\Victor.pc-PC.001\AppData\Roaming\Bubble Dock.boostrap.log
2015-08-11 19:48 - 2015-06-10 17:09 - 00000156 _____ C:\Users\Victor.pc-PC.001\AppData\Roaming\WindApp.installation.log
2015-08-11 19:48 - 2015-06-10 17:07 - 00011560 _____ C:\Users\Victor.pc-PC.001\AppData\Roaming\Bubble Dock.installation.log
2015-08-11 19:47 - 2015-06-10 17:07 - 00000194 _____ C:\Users\Victor.pc-PC.001\AppData\Roaming\WindApp.boostrap.log
2015-08-09 15:18 - 2015-03-27 18:42 - 00001163 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-08-09 15:10 - 2015-05-14 22:54 - 00000000 ____D C:\Users\Victor.pc-PC.001\AppData\Local\SmartWeb
2015-08-07 15:04 - 2015-05-14 22:35 - 00000000 ____D C:\ProgramData\635886993068503275
2015-08-07 15:03 - 2013-04-19 05:49 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2015-08-07 15:02 - 2013-04-19 05:49 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2015-08-07 15:01 - 2015-04-09 18:10 - 00000000 ____D C:\Program Files (x86)\XTab
2015-08-03 15:03 - 2015-05-31 12:26 - 2266915896 _____ C:\Users\Victor.pc-PC.001\Downloads\F1.Grand.Prix.De.Coree.2011.FRENCH.720p.HDTV.x264-BAWLS.mkv
2015-07-29 18:49 - 2015-05-24 20:06 - 00000000 ____D C:\Users\Victor.pc-PC.001\Documents\ConvertXtoDVD
2015-07-29 18:48 - 2015-06-21 20:38 - 00000000 ____D C:\Users\Victor.pc-PC.001\Documents\LOST.DIR
2015-07-21 21:35 - 2015-06-05 21:53 - 00001837 _____ C:\Windows\WindowsUpdate.log

==================== Fichiers à la racine de certains dossiers =======

2015-03-08 15:23 - 2015-03-08 15:32 - 6103040 _____ () C:\Program Files (x86)\GUT629A.tmp
2015-04-04 21:18 - 2015-04-04 21:18 - 6103040 _____ () C:\Program Files (x86)\GUT8E99.tmp
2015-06-10 17:07 - 2015-08-11 19:49 - 0002662 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\Bubble Dock.boostrap.log
2015-06-10 17:07 - 2015-08-11 19:48 - 0011560 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\Bubble Dock.installation.log
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\eGcPD67U40NjjOSOYoOzpF1F
2015-04-20 16:05 - 2015-04-20 16:05 - 1579520 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\eGcPD67U40NjjOSOYoOzpF1F.exe
2015-03-26 21:14 - 2015-03-26 21:14 - 0005542 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\FDBMYT
2015-04-09 18:42 - 2015-04-09 18:42 - 1925632 _____ (InstallMoonV09.04) C:\Users\Victor.pc-PC.001\AppData\Roaming\FDBMYT.exe
2014-09-01 10:18 - 2014-09-01 10:18 - 0002086 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\FUJNBMD
2015-04-07 19:42 - 2015-04-07 19:42 - 1522584 _____ (HD-Quality2V30.09) C:\Users\Victor.pc-PC.001\AppData\Roaming\FUJNBMD.exe
2015-03-09 23:30 - 2015-03-09 23:30 - 0005487 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\HVFGTX
2015-06-13 10:45 - 2015-06-13 10:45 - 2052096 _____ (Com NotificationV25.03) C:\Users\Victor.pc-PC.001\AppData\Roaming\HVFGTX.exe
2015-05-24 20:02 - 2015-08-14 11:35 - 0099384 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\inst.exe
2015-03-26 21:14 - 2015-03-26 21:14 - 0005542 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\JGIYWAEK
2015-04-09 18:19 - 2015-04-09 18:19 - 1925632 _____ (ObjectB) C:\Users\Victor.pc-PC.001\AppData\Roaming\JGIYWAEK.exe
2015-03-26 21:14 - 2015-03-26 21:14 - 0004185 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\MXWVS
2015-04-09 18:19 - 2015-04-09 18:19 - 1361408 _____ (ObjectB) C:\Users\Victor.pc-PC.001\AppData\Roaming\MXWVS.exe
2015-05-24 20:02 - 2015-08-14 11:35 - 0007859 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\pcouffin.cat
2015-05-24 20:02 - 2015-08-14 11:35 - 0001167 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\pcouffin.inf
2015-05-24 20:02 - 2015-08-14 11:35 - 0000055 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\pcouffin.log
2015-05-24 20:02 - 2015-08-14 11:35 - 0082816 _____ (VSO Software) C:\Users\Victor.pc-PC.001\AppData\Roaming\pcouffin.sys
2014-09-01 10:18 - 2014-09-01 10:18 - 0001248 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\QHMAOXUR
2015-04-07 19:42 - 2015-04-07 19:42 - 1971096 _____ (HD-Quality2V30.09) C:\Users\Victor.pc-PC.001\AppData\Roaming\QHMAOXUR.exe
2015-03-26 21:14 - 2015-03-26 21:14 - 0004185 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\RV
2015-04-09 18:43 - 2015-04-09 18:43 - 1361408 _____ (InstallMoonV09.04) C:\Users\Victor.pc-PC.001\AppData\Roaming\RV.exe
2015-06-10 17:09 - 2015-08-11 19:49 - 0000156 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\Selection Tools.installation.log
2015-04-10 19:54 - 2015-04-10 19:54 - 0000036 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\SuYZkvrV.tmp
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\TWwLO39bVfPb5JKhrDG
2015-04-20 16:05 - 2015-04-20 16:05 - 1579520 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\TWwLO39bVfPb5JKhrDG.exe
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\vb6kCxytB47nIAgfgb7B
2015-04-20 16:05 - 2015-04-20 16:05 - 1579520 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\vb6kCxytB47nIAgfgb7B.exe
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\VTxy2iI
2015-04-20 16:05 - 2015-04-20 16:05 - 1579520 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\VTxy2iI.exe
2015-06-10 17:07 - 2015-08-11 19:47 - 0000194 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\WindApp.boostrap.log
2015-06-10 17:09 - 2015-08-11 19:48 - 0000156 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\WindApp.installation.log
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\Wjf89XBUSvpaYc1QvEZddQ
2015-04-20 16:05 - 2015-04-20 16:05 - 1579520 _____ () C:\Users\Victor.pc-PC.001\AppData\Roaming\Wjf89XBUSvpaYc1QvEZddQ.exe
2015-05-14 22:58 - 2015-05-14 22:58 - 0613255 _____ (CMI Limited) C:\Users\Victor.pc-PC.001\AppData\Local\nsiEE98.tmp

Certains fichiers dans TEMP:
====================
C:\Users\Normal\AppData\Local\Temp\0E3B4C56-D14C-C4DF-3749-CA2CD50B4B26.exe
C:\Users\Normal\AppData\Local\Temp\2544.exe
C:\Users\Normal\AppData\Local\Temp\523.exe
C:\Users\Normal\AppData\Local\Temp\BNKStubSetup.exe
C:\Users\Normal\AppData\Local\Temp\CloudBackup834.exe
C:\Users\Normal\AppData\Local\Temp\Downloader__10924_i1494586206_il1114346.exe
C:\Users\Normal\AppData\Local\Temp\F5A59CD8-AB8A-DAC9-6E64-6A6183D88A5D.dll
C:\Users\Normal\AppData\Local\Temp\F5A59CD8-AB8A-DAC9-6E64-6A6183D88A5D.exe
C:\Users\Normal\AppData\Local\Temp\jPT53CB.exe
C:\Users\Normal\AppData\Local\Temp\jre-8u40-windows-au.exe
C:\Users\Normal\AppData\Local\Temp\jueD597.exe
C:\Users\Normal\AppData\Local\Temp\MYPCBU.exe
C:\Users\Normal\AppData\Local\Temp\optprosetup.exe
C:\Users\Normal\AppData\Local\Temp\ReimageExpressSetup.exe
C:\Users\Normal\AppData\Local\Temp\ReimagePackage.exe
C:\Users\Normal\AppData\Local\Temp\ReiSysUpdate.exe
C:\Users\Normal\AppData\Local\Temp\setup.exe
C:\Users\Normal\AppData\Local\Temp\sqlite3.exe
C:\Users\Normal\AppData\Local\Temp\System.Data.SQLite.dll
C:\Users\Normal\AppData\Local\Temp\System.Data.SQLite77543f0e-5aa6-486d-92be-bbe55d4e7d3a.dll
C:\Users\Normal\AppData\Local\Temp\System.Data.SQLiteb78549b6-4364-40a5-bfde-986c990084c6.dll
C:\Users\Normal\AppData\Local\Temp\tu17p84.exe
C:\Users\Normal\AppData\Local\Temp\Uninstall.exe
C:\Users\Normal\AppData\Local\Temp\Win_Scan_amo2.exe
C:\Users\Victor.pc-PC.000\AppData\Local\Temp\BingBarSetup-Partner.exe
C:\Users\Victor.pc-PC.000\AppData\Local\Temp\BRSVC_250100_hlp.exe
C:\Users\Victor.pc-PC.000\AppData\Local\Temp\drm_dyndata_7400009.dll
C:\Users\Victor.pc-PC.000\AppData\Local\Temp\utt762E.tmp.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\1431756120.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\1539.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\2804.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\346.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\4275.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\4754.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\4796.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\4899.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\54553uninstall.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\5484.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\5732.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\6506.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\6757.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\6856.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\7022.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\8067.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\821.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\825.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\89ebc699c0034c4baddb2cbbd479287767571.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\9221.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\BackupSetup.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\bedjaegbca.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\bedjbcbhca.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\bedjfdcbca.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\E5B0.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\F1 2006 GP16 Chine Shanghai 01 10 2006 (TF1 Fr) (Bluebird)__10924_i1522869016_il1812038.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\nsn2656.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\nsy7850.tmp.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\oprun16180.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\oprun18791.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\optprosetup.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\ReimagePackage.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\ReimageRepair.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\ReiSysUpdate.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\SpOrder.dll
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\sqlite3.dll
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\System.Data.SQLite.dll
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\tf2f091fb0.dll
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\tu17p84.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\Uninstall.exe
C:\Users\Victor.pc-PC.001\AppData\Local\Temp\vlc-2.2.1-win32.exe


==================== Bamital & volsnap =================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\Windows\system32\winlogon.exe => Le MD5 est légitime
C:\Windows\system32\wininit.exe => Le MD5 est légitime
C:\Windows\SysWOW64\wininit.exe => Le MD5 est légitime
C:\Windows\explorer.exe => Le MD5 est légitime
C:\Windows\SysWOW64\explorer.exe => Le MD5 est légitime
C:\Windows\system32\svchost.exe => Le MD5 est légitime
C:\Windows\SysWOW64\svchost.exe => Le MD5 est légitime
C:\Windows\system32\services.exe => Le MD5 est légitime
C:\Windows\system32\User32.dll => Le MD5 est légitime
C:\Windows\SysWOW64\User32.dll => Le MD5 est légitime
C:\Windows\system32\userinit.exe => Le MD5 est légitime
C:\Windows\SysWOW64\userinit.exe => Le MD5 est légitime
C:\Windows\system32\rpcss.dll => Le MD5 est légitime
C:\Windows\system32\dnsapi.dll
[2013-04-19 05:49] - [2015-08-07 15:02] - 0357888 ____A (Microsoft Corporation) A88BAB63A8A4286A3E9F8DB6B1D92499

C:\Windows\SysWOW64\dnsapi.dll => Le MD5 est légitime
C:\Windows\system32\Drivers\volsnap.sys => Le MD5 est légitime


LastRegBack: 2015-01-31 20:21

==================== Fin de journal ============================

Publicité


Signaler le contenu de ce document

Publicité