cjoint

Publicité


Publicité

Commentaire : frst.txt

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:07-10-2015
Exécuté par jean-marie (administrateur) sur JEAN-MARIE-PC (08-10-2015 13:55:47)
Exécuté depuis C:\Users\jean-marie\Desktop
Profils chargés: jean-marie (Profils disponibles: jean-marie)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: FF)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(AVAST Software) E:\Avast 2015\AvastSvc.exe
(AOMEI Tech Co., Ltd.) C:\Program Files (x86)\AOMEI Backupper\ABService.exe
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(Raxco Software, Inc.) C:\Program Files\Common Files\Raxco\Shared\PDEngine.exe
(Safer-Networking Ltd.) E:\spybot2.4\SDFSSvc.exe
(Safer-Networking Ltd.) E:\spybot2.4\SDUpdSvc.exe
(TeamViewer GmbH) E:\Teamweaver 10\TeamViewer_Service.exe
(TuneUp Software) E:\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
() E:\Ashampoo WinOptimizer 9\LiveTunerService.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
() E:\Ditto\Ditto.exe
() E:\acronis\version 2014\OSS\reinstall_svc.exe
(LG Electronics) C:\Program Files (x86)\LG Electronics\Screen Split\bin\ScreenSplit.exe
(Safer-Networking Ltd.) E:\spybot2.4\SDWSCSvc.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(TuneUp Software) E:\TuneUp Utilities 2013\TuneUpUtilitiesApp64.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(TODO: ) C:\Program Files (x86)\LG Electronics\Screen Split\bin\ScreenSplitterHook64App.exe
(Gigatribe) E:\GigaTribe\gigatribe.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(F-Secure Corporation) C:\Users\jean-marie\AppData\Local\F-Secure\SFR Cloud\Application\2.5.4642\SFR Cloud.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Glarysoft Ltd) E:\Glary Utilities 5.3.1.0.51\Integrator.exe
(AVAST Software) E:\Avast 2015\AvastUI.exe
(Logitech Inc.) E:\cam-logitech\LWS\Webcam Software\LWS.exe
(Safer-Networking Ltd.) E:\spybot2.4\SDTray.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Google Inc.) C:\Users\jean-marie\AppData\Local\Google\Update\1.3.28.15\GoogleCrashHandler.exe
(Google Inc.) C:\Users\jean-marie\AppData\Local\Google\Update\1.3.28.15\GoogleCrashHandler64.exe
(Mozilla Corporation) E:\Firefox\firefox.exe
(AVAST Software) E:\Avast 2015\AvastUI.exe


==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12446824 2012-01-31] (Realtek Semiconductor)
HKLM-x32\...\Run: [DualControl] => C:\Program Files (x86)\LG Electronics\Dual Controller\bin\DualControlStartupApp.exe [1770480 2015-05-01] (LG Electronics Inc)
HKLM-x32\...\Run: [AvastUI.exe] => E:\Avast 2015\AvastUI.exe [6134544 2015-09-19] (AVAST Software)
HKLM-x32\...\Run: [LWS] => E:\cam-logitech\LWS\Webcam Software\LWS.exe [204136 2015-08-07] (Logitech Inc.)
HKLM-x32\...\Run: [SDTray] => E:\spybot2.4\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
Winlogon\Notify\igfxcui: igfxdev.dll [X]
Winlogon\Notify\!SASWinLogon: E:\SuperAntiSpywarePro\SASWINLO.DLL [2015-08-07] (SUPERAntiSpyware.com)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-2912541454-435926018-1609496016-1000\...\Run: [Ditto] => E:\Ditto\Ditto.exe [1350144 2015-08-07] ()
HKU\S-1-5-21-2912541454-435926018-1609496016-1000\...\Run: [ScreenSplitter] => C:\Program Files (x86)\LG Electronics\Screen Split\bin\ScreenSplit.exe [1960432 2015-04-14] (LG Electronics)
HKU\S-1-5-21-2912541454-435926018-1609496016-1000\...\Run: [GUDelayStartup] => E:\Glary Utilities 5.3.1.0.51\StartupManager.exe [37152 2015-09-28] (Glarysoft Ltd)
HKU\S-1-5-21-2912541454-435926018-1609496016-1000\...\Run: [GoogleChromeAutoLaunch_25948FDF34E1088DA0A1E8C2686AFE5F] => C:\Users\jean-marie\AppData\Local\Google\Chrome\Application\chrome.exe [815944 2015-09-24] (Google Inc.)
HKU\S-1-5-21-2912541454-435926018-1609496016-1000\...\Run: [CCleaner] => C:\Program Files\CCleaner\CCleaner64.exe [8455960 2015-08-20] (Piriform Ltd)
HKU\S-1-5-21-2912541454-435926018-1609496016-1000\...\MountPoints2: {0d36cb67-364e-11e4-b9d6-bc5ff420c159} - H:\LG_PC_Programs.exe
HKU\S-1-5-21-2912541454-435926018-1609496016-1000\...\MountPoints2: {89e85928-05c7-11e5-bf59-bc5ff420c159} - H:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-2912541454-435926018-1609496016-1000\...\MountPoints2: {c4629bbf-fc26-11e3-b8f9-bc5ff420c159} - I:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-18\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
ShellExecuteHooks-x32: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - E:\SuperAntiSpywarePro\SASSEH.DLL [113024 2015-08-07] (SuperAdBlocker.com)
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-07-29] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-07-29] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-07-29] (Google)
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jean-marie\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-10-02] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jean-marie\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-10-02] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jean-marie\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-10-02] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jean-marie\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-10-02] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jean-marie\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-10-02] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jean-marie\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-10-02] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jean-marie\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-10-02] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jean-marie\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-10-02] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => E:\Avast 2015\ashShA64.dll [2015-09-19] (AVAST Software)
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => Pas de fichier
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jean-marie\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-10-02] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jean-marie\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-10-02] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jean-marie\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-10-02] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jean-marie\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-10-02] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jean-marie\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-10-02] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jean-marie\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-10-02] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jean-marie\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-10-02] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jean-marie\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-10-02] (Dropbox, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Auto Resolution.lnk [2015-08-01]
ShortcutTarget: Auto Resolution.lnk -> C:\Program Files (x86)\LG Electronics\Auto Resolution\bin\AutoResolutionStartupApp.exe (LG Electronics Inc)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Install LastPass IE RunOnce.lnk [2015-01-31]
ShortcutTarget: Install LastPass IE RunOnce.lnk -> C:\Program Files (x86)\Common Files\lpuninstall.exe (LastPass)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PIPModeResolutionUtility.lnk [2015-08-01]
ShortcutTarget: PIPModeResolutionUtility.lnk -> C:\Program Files (x86)\LG Electronics\Auto Resolution\bin\AppResUtilityService.exe (LG Electronics)
Startup: C:\Users\jean-marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\gigatribe.exe - Raccourci.lnk [2015-02-11]
ShortcutTarget: gigatribe.exe - Raccourci.lnk -> E:\GigaTribe\gigatribe.exe (Gigatribe)
Startup: C:\Users\jean-marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SFR Cloud.lnk [2015-08-09]
ShortcutTarget: SFR Cloud.lnk -> C:\Users\jean-marie\AppData\Local\F-Secure\SFR Cloud\Application\SFR Cloud.exe (F-Secure Corporation)
BootExecute: autocheck autochk * BootDefrag.exesdnclean64.exe
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{71539A5D-D6ED-4E18-8FDA-E073305E353B}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-2912541454-435926018-1609496016-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://g.msn.fr/0SEFRFR/SAOS02
HKU\S-1-5-21-2912541454-435926018-1609496016-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://home.microsoft.com/access/allinone.asp
HKU\S-1-5-21-2912541454-435926018-1609496016-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/fr-fr/?ocid=iehp
SearchScopes: HKU\S-1-5-21-2912541454-435926018-1609496016-1000 -> {6557F937-523C-4C89-8A67-B5611D2BCB68} URL = hxxp://www.google.com/search?hl=en&q={searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> E:\Avast 2015\aswWebRepIE64.dll [2015-08-07] (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: LastPass Vault -> {95D9ECF5-2A4D-4550-BE49-70D42F71296E} -> E:\LastPass\LPToolbar_x64.dll [2015-08-07] (LastPass)
BHO: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2012-10-02] (Skype Technologies S.A.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> E:\Avast 2015\aswWebRepIE.dll [2015-08-07] (AVAST Software)
BHO-x32: Programme d’aide de l’Assistant de connexion au compte Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: LastPass Vault -> {95D9ECF5-2A4D-4550-BE49-70D42F71296E} -> E:\LastPass\LPToolbar.dll [2015-08-07] (LastPass)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-10-02] (Skype Technologies S.A.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
Toolbar: HKLM - LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - E:\LastPass\LPToolbar_x64.dll [2015-08-07] (LastPass)
Toolbar: HKLM-x32 - LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - E:\LastPass\LPToolbar.dll [2015-08-07] (LastPass)
Handler-x32: http - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [1999-02-03] (Microsoft Corporation)
Handler-x32: http - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [1999-02-03] (Microsoft Corporation)
Handler-x32: https - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [1999-02-03] (Microsoft Corporation)
Handler-x32: https - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [1999-02-03] (Microsoft Corporation)
Handler-x32: ipp - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [1999-02-03] (Microsoft Corporation)
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - Pas de fichier
Handler-x32: msdaipp - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [1999-02-03] (Microsoft Corporation)
Handler-x32: msdaipp - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [1999-02-03] (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2012-10-02] (Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-10-02] (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)

FireFox:
========
FF ProfilePath: C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\j5zdrmq3.default-1346154882290
FF DefaultSearchEngine: Default
FF DefaultSearchEngine.US:
FF DefaultSearchUrl: hxxps://www.google.com/search/?trackid=sp-006
FF SearchEngineOrder.1: Google (avast)
FF SearchEngineOrder.US.1:
FF SelectedSearchEngine: Google (avast)
FF Homepage: hxxps://www.google.com/?trackid=sp-006
FF Keyword.URL: hxxps://www.google.com/search/?trackid=sp-006
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_185.dll [2015-10-02] ()
FF Plugin: @lastpass.com/NPLastPass -> E:\LastPass\nplastpass64.dll [2015-08-07] (LastPass)
FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll [2014-01-06] (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.4 -> E:\VLC2.1.4\VLC\npvlc.dll [2015-08-07] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> E:\VLC2.1.4\VLC\npvlc.dll [2015-08-07] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.0 -> E:\VLC2.1.4\VLC\npvlc.dll [2015-08-07] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> E:\VLC2.1.4\VLC\npvlc.dll [2015-08-07] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_185.dll [2015-10-02] ()
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> E:\Picasa3\npPicasa3.dll [2015-08-07] (Google, Inc.)
FF Plugin-x32: @innoplus.de/ino3DViewer -> E:\3DVuewer-innoPlus\npIno3DViewer.dll [Pas de fichier]
FF Plugin-x32: @lastpass.com/NPLastPass -> E:\LastPass\nplastpass.dll [2015-08-07] (LastPass)
FF Plugin-x32: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll [2014-01-06] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-15] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.4 -> E:\VLC\npvlc.dll [Pas de fichier]
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> E:\VLC\npvlc.dll [Pas de fichier]
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> E:\VLC\npvlc.dll [Pas de fichier]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-07-03] (Adobe Systems Inc.)
FF Plugin-x32: samsung.com/AllSharePlayPCPlugin -> E:\AllShare Play\utils\npAllSharePlayPCPlugin.dll [2015-08-07] (Samsung)
FF Plugin HKU\S-1-5-21-2912541454-435926018-1609496016-1000: @tools.google.com/Google Update;version=3 -> C:\Users\jean-marie\AppData\Local\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-15] (Google Inc.)
FF Plugin HKU\S-1-5-21-2912541454-435926018-1609496016-1000: @tools.google.com/Google Update;version=9 -> C:\Users\jean-marie\AppData\Local\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-15] (Google Inc.)
FF SearchPlugin: C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\searchplugins\google-avast.xml [2015-10-05]
FF SearchPlugin: C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\searchplugins\orange.xml [2012-05-19]
FF SearchPlugin: C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\njd2av2x.default-1345986085189\searchplugins\google-avast.xml [2015-10-05]
FF SearchPlugin: C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\7id0ri8d.default-1346068251027\searchplugins\google-avast.xml [2015-10-05]
FF SearchPlugin: C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\j5zdrmq3.default-1346154882290\searchplugins\google-avast.xml [2015-10-05]
FF Extension: Menu Contextuel Orange - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\Extensions\menu_contextuel_orange@orange.fr [2012-05-12]
FF Extension: Pixel Perfect - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\Extensions\pixelperfectplugin@openhouseconcepts.com [2012-05-12]
FF Extension: LastPass - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\Extensions\support@lastpass.com [2015-01-31]
FF Extension: Forecastfox - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\Extensions\{0538E3E3-7E9B-4d49-8831-A227C80A7AD3} [2012-06-30]
FF Extension: Plugin Orange Installeur - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\Extensions\{4D9AE42B-F4C0-40e6-AEDB-4EC6E42B77AF} [2012-05-19]
FF Extension: Dojo Firebug Extension - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\Extensions\dojo@silvergate.ar.ibm.com.xpi [2012-07-13]
FF Extension: EventBug - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\Extensions\eventbug@getfirebug.com.xpi [2012-07-13]
FF Extension: Firebug - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\Extensions\firebug@software.joehewitt.com.xpi [2012-05-12]
FF Extension: FireDiff - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\Extensions\firediff@johnjbarton.com.xpi [2012-07-13]
FF Extension: FirePHP - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\Extensions\FirePHPExtension-Build@firephp.org.xpi [2012-07-13]
FF Extension: cssUpdater - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\Extensions\info@cssUpdater.com.xpi [2012-07-13]
FF Extension: Illuminations for Developers - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\Extensions\sroussey@illumination-for-developers.com.xpi [2012-07-13]
FF Extension: Results Hub - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\Extensions\{05739bdc-57a1-4977-a4ef-ff3e1d9b15e9}.xpi [2015-10-04]
FF Extension: Walnut for Firefox - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\Extensions\{5A170DD3-63CA-4c58-93B7-DE9FF536C2FF}.xpi [2012-05-12]
FF Extension: Speed Dial - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\Extensions\{64161300-e22b-11db-8314-0800200c9a66}.xpi [2012-08-11]
FF Extension: ImTranslator - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi [2012-05-12]
FF Extension: Web Developer - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\Extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}.xpi [2012-05-12]
FF Extension: DownThemAll! - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\tu8jqjba.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2012-05-12]
FF Extension: Menu Contextuel Orange - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\njd2av2x.default-1345986085189\Extensions\menu_contextuel_orange@orange.fr [2012-08-27]
FF Extension: Pas de nom - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\njd2av2x.default-1345986085189\Extensions\support@lastpass.com [2015-01-31]
FF Extension: Pas de nom - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\njd2av2x.default-1345986085189\Extensions\{05739bdc-57a1-4977-a4ef-ff3e1d9b15e9}.xpi [2015-10-04]
FF Extension: Pas de nom - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\njd2av2x.default-1345986085189\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2012-08-26]
FF Extension: Menu Contextuel Orange - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\7id0ri8d.default-1346068251027\Extensions\menu_contextuel_orange@orange.fr [2012-08-28]
FF Extension: Pas de nom - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\7id0ri8d.default-1346068251027\Extensions\support@lastpass.com [2015-01-31]
FF Extension: Pas de nom - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\7id0ri8d.default-1346068251027\Extensions\{05739bdc-57a1-4977-a4ef-ff3e1d9b15e9}.xpi [2015-10-04]
FF Extension: Pas de nom - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\7id0ri8d.default-1346068251027\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2012-08-27]
FF Extension: LastPass - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\j5zdrmq3.default-1346154882290\Extensions\support@lastpass.com [2015-09-25]
FF Extension: Firebug - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\j5zdrmq3.default-1346154882290\Extensions\firebug@software.joehewitt.com.xpi [2012-09-15]
FF Extension: Pas de nom - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\j5zdrmq3.default-1346154882290\Extensions\googleadsensechecker@vlshk.com.xpi [2013-12-18]
FF Extension: Pas de nom - C:\Users\jean-marie\AppData\Roaming\Mozilla\Firefox\Profiles\j5zdrmq3.default-1346154882290\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2012-08-29]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - E:\Avast 2015\WebRep\FF
FF Extension: Avast Online Security - E:\Avast 2015\WebRep\FF [2015-08-07]
FF HKU\S-1-5-21-2912541454-435926018-1609496016-1000\...\Firefox\Extensions: [{b9aa91db-385d-4c69-8a2f-96790aa9405b}] - e:\copernic\firefoxconnector => non trouvé(e)
StartMenuInternet: FIREFOX.EXE - E:\Firefox\firefox.exe

Chrome:
=======
CHR HomePage: Default -> hxxps://www.google.com/?trackid=sp-006
CHR RestoreOnStartup: Default -> "hxxp://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRghCcwsNUg4TFRgSJF8MTA0XE1cOIQ0IWBRCEwJGJQEAAwpCGFQFIk0FA1oDB0VXfV5bFElXTwhxJUpNDU0CaUBB"
CHR Profile: C:\Users\jean-marie\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\jean-marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-10-05]
CHR Extension: (Google Docs) - C:\Users\jean-marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-10-05]
CHR Extension: (Google Drive) - C:\Users\jean-marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-07-16]
CHR Extension: (YouTube) - C:\Users\jean-marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-12-23]
CHR Extension: (Recherche Google) - C:\Users\jean-marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-12-23]
CHR Extension: (Avast SafePrice) - C:\Users\jean-marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2015-10-05]
CHR Extension: (Google Sheets) - C:\Users\jean-marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-10-05]
CHR Extension: (Google Docs hors connexion) - C:\Users\jean-marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-04]
CHR Extension: (google) - C:\Users\jean-marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\klapnpegbhdgikbmomccnnpmlfdbminl [2015-10-07]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\jean-marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-12]
CHR Extension: (Skype Click to Call) - C:\Users\jean-marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2012-12-23]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\jean-marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-10-05]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\jean-marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22]
CHR Extension: (Gmail) - C:\Users\jean-marie\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-12-23]
CHR HKU\S-1-5-21-2912541454-435926018-1609496016-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\jean-marie\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2013-07-15]
CHR HKU\S-1-5-21-2912541454-435926018-1609496016-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [cnnbdaahphjgdgfhliignpepgnbnfomp] - e:\copernic\ChromeConnector\ChromeConnector.crx
CHR HKU\S-1-5-21-2912541454-435926018-1609496016-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - E:\Avast 2015\WebRep\Chrome\aswWebRepChromeSp.crx [2015-08-07]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - E:\Avast 2015\WebRep\Chrome\aswWebRepChrome.crx [2015-08-07]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2012-10-02]

==================== Services (Avec liste blanche) ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2013-03-14] (Adobe Systems) [Fichier non signé]
S4 Adobe Version Cue CS2; e:\CSII\Adobe Version Cue CS2\bin\VersionCueCS2.exe [163840 2015-08-07] (Adobe Systems Incorporated) [Fichier non signé]
S2 AllShare Play Service; E:\AllShare Play\AllShare Play Service.exe [662600 2015-08-07] (Copyright 2013 SAMSUNG)
R2 avast! Antivirus; E:\Avast 2015\AvastSvc.exe [146600 2015-09-19] (AVAST Software)
R2 Backupper Service; C:\Program Files (x86)\AOMEI Backupper\ABService.exe [29912 2015-08-06] (AOMEI Tech Co., Ltd.)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319376 2014-10-01] (Intel Corporation)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [101528 2007-04-13] () [Fichier non signé]
S2 MBAMService; E:\Malwarebytes' Anti-Malware\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
S4 Orange update Core Service; C:\Program Files (x86)\Orange\OrangeUpdate\Service\OUCore.exe [1082016 2012-09-18] (France Telecom SA)
R2 OS Selector; E:\acronis\version 2014\OSS\reinstall_svc.exe [2159352 2015-08-07] ()
R2 SDScannerService; E:\spybot2.4\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; E:\spybot2.4\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; E:\spybot2.4\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
R2 TeamViewer; E:\Teamweaver 10\TeamViewer_Service.exe [5613328 2015-07-29] (TeamViewer GmbH)
R2 TuneUp.UtilitiesSvc; E:\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2412344 2015-08-07] (TuneUp Software)
S3 wampapache64; E:\wamp\bin\apache\apache2.4.9\bin\httpd.exe [24576 2014-05-01] (Apache Software Foundation) [Fichier non signé]
S3 wampmysqld64; E:\wamp\bin\mysql\mysql5.6.17\bin\mysqld.exe [12942848 2014-05-01] () [Fichier non signé]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WO_LiveService; E:\Ashampoo WinOptimizer 9\LiveTunerService.exe [885088 2015-08-07] ()

===================== Pilotes (Avec liste blanche) ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R0 ambakdrv; C:\Windows\System32\ambakdrv.sys [30648 2015-02-26] () [Fichier non signé]
R2 ammntdrv; C:\Windows\system32\ammntdrv.sys [151480 2015-02-26] () [Fichier non signé]
R2 amwrtdrv; C:\Windows\system32\amwrtdrv.sys [17848 2015-02-26] () [Fichier non signé]
S3 AndnetBus; C:\Windows\System32\DRIVERS\lgandnetbus64.sys [20992 2014-05-27] (LG Electronics Inc.)
S3 AndNetDiag; C:\Windows\System32\DRIVERS\lgandnetdiag64.sys [29184 2014-07-07] (LG Electronics Inc.)
S3 ANDNetModem; C:\Windows\System32\DRIVERS\lgandnetmodem64.sys [36352 2014-07-07] (LG Electronics Inc.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-09-19] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [90968 2015-09-19] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-09-19] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-09-19] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1049880 2015-09-19] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [448968 2015-09-19] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [153744 2015-09-19] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [274808 2015-09-19] (AVAST Software)
S3 athrusb; C:\Windows\System32\DRIVERS\athrxusb.sys [1075712 2008-07-29] (Atheros Communications, Inc.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [39768 2013-02-19] (AVG Technologies)
R0 BootDefragDriver; C:\Windows\System32\drivers\BootDefragDriver.sys [17600 2015-03-30] (Glarysoft Ltd)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [20160 2015-08-03] (Glarysoft Ltd)
S3 irsir; C:\Windows\System32\DRIVERS\irsir.sys [27648 2008-01-19] (Microsoft Corporation)
R3 ISCT; C:\Windows\System32\DRIVERS\ISCTD64.sys [44992 2012-02-09] ()
R2 LiveTunerPM; E:\Ashampoo WinOptimizer 9\LiveTunerProcessMonitor64.sys [12824 2015-08-07] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation)
U3 Msasmsvfpry_; pas de ImagePath
S1 SASDIFSV; E:\SuperAntiSpywarePro\SASDIFSV.SYS [12880 2015-08-07] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S1 SASKUTIL; E:\SuperAntiSpywarePro\SASKUTIL.SYS [67664 2015-08-07] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R3 TuneUpUtilitiesDrv; E:\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [11880 2015-08-07] (TuneUp Software)
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation)
S3 andnetadb; System32\Drivers\lgandnetadb.sys [X]
U3 DfSdkS; pas de ImagePath

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2015-10-08 13:55 - 2015-10-08 13:55 - 00035911 _____ C:\Users\jean-marie\Desktop\FRST.txt
2015-10-08 13:55 - 2015-10-08 13:55 - 00000000 ____D C:\FRST
2015-10-08 13:54 - 2015-10-07 12:13 - 02193920 _____ (Farbar) C:\Users\jean-marie\Desktop\FRST64.exe
2015-10-08 00:38 - 2015-10-08 00:37 - 00450892 ____R C:\Windows\system32\Drivers\etc\hosts.20151008-003835.backup
2015-10-08 00:37 - 2015-09-06 19:38 - 00450834 _____ C:\Windows\system32\Drivers\etc\hosts.20151008-003757.backup
2015-10-08 00:18 - 2015-10-08 00:18 - 00000727 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2015-10-08 00:18 - 2015-10-08 00:18 - 00000727 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2015-10-08 00:18 - 2015-10-08 00:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2.4
2015-10-08 00:18 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2015-10-08 00:16 - 2015-10-08 00:16 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2015-10-08 00:09 - 2014-07-01 16:51 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\jean-marie\Desktop\spybot-2.4.exe
2015-10-08 00:05 - 2015-08-26 06:17 - 00000781 _____ C:\Users\jean-marie\Desktop\spybot-search-destroy_2-4-40-02-07-2015_en_10965.exe
2015-10-08 00:02 - 2015-10-08 00:02 - 00000000 ____D C:\Users\jean-marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-10-07 23:21 - 2015-10-07 23:21 - 01681920 _____ C:\Users\jean-marie\Desktop\adwcleaner_5.011.exe
2015-10-07 23:14 - 2015-10-07 23:14 - 00000613 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-10-07 23:08 - 2015-10-07 23:08 - 00243872 _____ C:\Users\jean-marie\Downloads\Firefox Setup Stub 41.0.1.exe
2015-10-07 18:57 - 2015-10-07 18:57 - 00000000 ____D C:\Users\jean-marie\AppData\Local\CEF
2015-10-07 09:09 - 2015-10-07 23:02 - 00000000 ____D C:\Users\jean-marie\Desktop\MAJ
2015-10-07 00:35 - 2015-10-07 00:36 - 00000272 _____ C:\Users\jean-marie\Downloads\debug.log
2015-10-06 00:12 - 2012-12-25 13:04 - 00071254 _____ C:\Users\jean-marie\Desktop\manually_sort_folders-1.1-tb.xpi
2015-10-05 15:11 - 2015-10-08 00:40 - 00000000 ____D C:\AdwCleaner
2015-10-05 14:54 - 2015-10-05 14:54 - 00000000 ____D C:\ProgramData\Lavasoft
2015-10-04 19:13 - 2015-10-05 15:19 - 00000000 ____D C:\Users\jean-marie\AppData\Local\CrashDumps
2015-10-04 19:12 - 2015-10-04 19:13 - 02190940 _____ C:\Users\jean-marie\Downloads\9E87.tmp
2015-10-04 00:33 - 2015-10-07 22:46 - 00000000 ____D C:\Users\jean-marie\Desktop\camtasia
2015-10-03 19:17 - 2015-10-03 19:17 - 00000000 ____D C:\Users\jean-marie\AppData\Roaming\F-Secure
2015-10-03 16:13 - 2015-10-03 16:13 - 00000000 ____D C:\Users\jean-marie\AppData\Local\Macromedia
2015-10-03 15:55 - 2015-10-03 15:55 - 00000000 ____D C:\Users\jean-marie\AppData\Roaming\TechSmith
2015-10-03 15:49 - 2015-10-07 23:02 - 00000000 ____D C:\Users\jean-marie\A2A41B60D51F4C04BC94B4C94F7B6DC0.TMP
2015-10-03 15:42 - 2015-10-03 15:44 - 15310512 _____ C:\Users\jean-marie\Downloads\Glary_Utilities_v5.35.0.55.exe
2015-10-03 15:41 - 2015-10-03 15:46 - 00000653 _____ C:\Users\Public\Desktop\Glary Utilities 5.lnk
2015-10-01 19:20 - 2015-10-05 14:40 - 00047478 _____ C:\Users\jean-marie\Desktop\ColorCop5.bmp
2015-10-01 19:20 - 2015-10-05 14:40 - 00000116 _____ C:\Users\jean-marie\Desktop\ColorCop5_3.dat
2015-09-30 00:28 - 2015-09-30 00:28 - 259967288 _____ C:\Users\jean-marie\Desktop\camtasia.exe
2015-09-22 14:54 - 2015-09-22 14:54 - 00165624 _____ C:\Users\jean-marie\AppData\Local\GDIPFONTCACHEV1.DAT
2015-09-19 23:49 - 2015-09-19 23:50 - 06521184 _____ (Tim Kosse) C:\Users\jean-marie\Downloads\FileZilla_3.14.0_win64-setup.exe
2015-09-19 10:42 - 2015-09-19 10:42 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-09-19 09:46 - 2015-08-25 12:18 - 06667640 _____ (Piriform Ltd) C:\Users\jean-marie\Desktop\ccsetup509.exe
2015-09-19 07:52 - 2015-09-19 07:53 - 00534032 _____ C:\Windows\system32\FNTCACHE.DAT
2015-09-19 00:06 - 2015-09-19 00:06 - 00378880 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2015-09-19 00:06 - 2015-09-19 00:06 - 00043112 _____ (AVAST Software) C:\Windows\avastSS.scr
2015-09-14 01:13 - 2014-11-21 22:11 - 07396243 _____ C:\Users\jean-marie\Desktop\xoops_2.5.7b_fr.zip
2015-09-12 00:15 - 2015-09-22 23:52 - 00000000 ____D C:\Users\jean-marie\Desktop\typo3_src-7.4.0
2015-09-11 23:36 - 2015-09-11 23:36 - 00000540 _____ C:\Users\jean-marie\Desktop\WampServer64.lnk
2015-09-11 23:36 - 2015-09-11 23:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WampServer
2015-09-11 00:28 - 2014-05-01 17:07 - 43507845 _____ (Hervé Leclerc (HeL) ) C:\Users\jean-marie\Desktop\wampserver2.5-Apache-2.4.9-Mysql-5.6.17-php5.5.12-64b.exe
2015-09-09 00:29 - 2015-09-09 00:29 - 00000000 ____D C:\Users\jean-marie\Desktop\foyer
2015-09-08 14:27 - 2015-09-08 14:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TYPO3 6.0.0rc2

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2015-10-08 13:54 - 2015-06-19 07:40 - 00001216 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2912541454-435926018-1609496016-1000UA.job
2015-10-08 13:53 - 2013-06-10 14:45 - 00000000 ____D C:\Users\jean-marie\AppData\LocalLow\LastPass
2015-10-08 13:49 - 2012-12-14 01:03 - 00000000 ____D C:\Users\jean-marie\AppData\Roaming\Skype
2015-10-08 13:33 - 2012-05-24 07:31 - 00001046 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2912541454-435926018-1609496016-1000Core.job
2015-10-08 13:28 - 2012-05-24 07:31 - 00001098 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2912541454-435926018-1609496016-1000UA.job
2015-10-08 13:18 - 2012-07-29 14:04 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-10-08 09:49 - 2009-07-14 06:45 - 00029616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-10-08 09:49 - 2009-07-14 06:45 - 00029616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-10-08 09:24 - 2014-01-06 01:18 - 01503419 _____ C:\Windows\WindowsUpdate.log
2015-10-08 08:42 - 2012-05-13 00:13 - 00000000 ____D C:\Users\jean-marie\AppData\Roaming\Ditto
2015-10-08 08:18 - 2012-07-29 14:04 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-10-08 08:03 - 2011-04-12 11:16 - 00747688 _____ C:\Windows\system32\perfh00C.dat
2015-10-08 08:03 - 2011-04-12 11:16 - 00150212 _____ C:\Windows\system32\perfc00C.dat
2015-10-08 08:03 - 2009-07-14 07:13 - 01669776 _____ C:\Windows\system32\PerfStringBackup.INI
2015-10-08 07:57 - 2015-08-03 09:51 - 00000000 ____D C:\Users\jean-marie\AppData\Roaming\DiskDefrag
2015-10-08 07:57 - 2014-05-12 15:56 - 00065536 _____ C:\Windows\system32\Ikeext.etl
2015-10-08 07:57 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-10-08 00:36 - 2014-06-10 00:08 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2015-10-08 00:19 - 2012-07-29 01:14 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2015-10-08 00:16 - 2012-12-08 14:14 - 00005906 _____ C:\Windows\wininit.ini
2015-10-08 00:02 - 2014-07-06 08:17 - 00000000 ____D C:\Users\jean-marie\AppData\Roaming\Dropbox
2015-10-07 23:14 - 2012-05-12 22:43 - 00000613 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-10-07 23:04 - 2014-01-06 00:51 - 00000000 ____D C:\Users\jean-marie
2015-10-07 23:02 - 2015-08-30 17:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-10-07 23:02 - 2015-04-06 23:56 - 00000000 ___SD C:\Windows\system32\GWX
2015-10-07 23:02 - 2014-12-21 19:30 - 00000000 ____D C:\Merged Volume 'Utilitaires' (E)
2015-10-07 23:02 - 2014-01-25 12:31 - 00000000 ____D C:\Users\jean-marie\Desktop\CLARA SIMS 3
2015-10-07 23:02 - 2013-06-23 19:00 - 00000000 ____D C:\Users\jean-marie\AppData\Roaming\.minecraft
2015-10-07 23:02 - 2013-04-15 15:09 - 00000000 ____D C:\Users\jean-marie\AppData\Roaming\TuneUp Software
2015-10-07 23:02 - 2012-12-14 01:03 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-10-07 23:02 - 2012-11-09 01:09 - 00000000 ____D C:\Users\jean-marie\AppData\Roaming\PhotoFiltre
2015-10-07 23:02 - 2012-05-12 23:58 - 00000000 ____D C:\Users\jean-marie\AppData\Roaming\Macromedia
2015-10-07 23:02 - 2012-05-12 23:58 - 00000000 ____D C:\Users\jean-marie\AppData\Roaming\Adobe
2015-10-07 23:02 - 2012-05-12 23:53 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2015-10-07 23:02 - 2012-05-12 22:43 - 00000000 ____D C:\Users\jean-marie\AppData\Roaming\Mozilla
2015-10-07 23:02 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2015-10-07 23:02 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration
2015-10-07 23:01 - 2015-06-19 07:39 - 00000000 ____D C:\Users\jean-marie\AppData\Local\Dropbox
2015-10-07 23:01 - 2012-12-14 01:03 - 00000000 ____D C:\ProgramData\Skype
2015-10-07 22:50 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\tracing
2015-10-07 19:30 - 2012-05-13 22:51 - 00000000 ____D C:\Users\jean-marie\AppData\Roaming\FileZilla
2015-10-07 13:50 - 2014-07-19 23:36 - 00000000 ____D C:\Users\jean-marie\AppData\Local\Adobe
2015-10-06 23:57 - 2012-09-01 15:00 - 00000000 ____D C:\Users\jean-marie\AppData\Local\TechSmith
2015-10-04 19:00 - 2014-11-07 01:00 - 00000000 ____D C:\ProgramData\CanonIJPLM
2015-10-03 15:53 - 2013-10-10 00:08 - 00000000 ____D C:\Users\jean-marie\AppData\Roaming\SpamPal
2015-10-03 15:53 - 2013-07-10 22:45 - 00000000 ____D C:\Users\jean-marie\AppData\Roaming\Apple Computer
2015-10-03 15:53 - 2012-06-08 00:29 - 00000000 ____D C:\Users\jean-marie\AppData\Roaming\Origin
2015-10-03 15:53 - 2012-05-12 19:32 - 00000000 ____D C:\Users\jean-marie\AppData\Local\Windows Live
2015-10-03 15:46 - 2015-08-03 09:52 - 00000653 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5.lnk
2015-10-03 15:46 - 2015-08-03 09:51 - 00003310 _____ C:\Windows\System32\Tasks\GlaryInitialize 5
2015-10-03 15:46 - 2015-08-03 09:51 - 00002970 _____ C:\Windows\System32\Tasks\GU5SkipUAC
2015-10-02 19:54 - 2015-08-10 14:56 - 00000400 _____ C:\Windows\Tasks\One-Click Optimizer WO12.job
2015-10-02 19:54 - 2014-05-11 23:41 - 00000298 _____ C:\Windows\Tasks\One-Click Optimizer.job
2015-10-02 19:08 - 2015-06-19 07:39 - 00001164 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2912541454-435926018-1609496016-1000Core.job
2015-10-02 00:25 - 2012-05-12 23:53 - 00780488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-10-02 00:25 - 2012-05-12 23:53 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-09-30 07:32 - 2009-07-14 07:08 - 00032482 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-09-28 15:01 - 2014-12-11 23:46 - 00000000 __SHD C:\Users\jean-marie\AppData\LocalLow\EmieBrowserModeList
2015-09-28 15:01 - 2014-10-05 20:23 - 00000000 __SHD C:\Users\jean-marie\AppData\LocalLow\EmieUserList
2015-09-28 15:01 - 2014-10-05 20:22 - 00000000 __SHD C:\Users\jean-marie\AppData\LocalLow\EmieSiteList
2015-09-28 00:15 - 2014-12-30 01:06 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-09-27 09:12 - 2012-12-18 01:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
2015-09-19 23:51 - 2014-06-03 00:39 - 00000908 _____ C:\Users\Public\Desktop\FileZilla Client.lnk
2015-09-19 23:51 - 2013-06-15 17:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 3.7.0.2
2015-09-19 10:42 - 2015-08-09 11:13 - 00000000 ____D C:\Program Files\CCleaner
2015-09-19 00:06 - 2015-08-07 10:08 - 00448968 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2015-09-19 00:06 - 2015-08-07 10:08 - 00274808 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2015-09-19 00:06 - 2015-08-07 10:08 - 00153744 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2015-09-19 00:06 - 2015-08-07 10:08 - 00093528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2015-09-19 00:06 - 2015-08-07 10:08 - 00090968 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2015-09-19 00:06 - 2015-08-07 10:08 - 00065224 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2015-09-19 00:06 - 2015-08-07 10:08 - 00028656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2015-09-19 00:06 - 2015-08-07 10:08 - 00003876 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2015-09-19 00:05 - 2015-08-07 10:08 - 01049880 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2015-09-15 13:23 - 2012-05-24 07:31 - 00004078 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2912541454-435926018-1609496016-1000UA
2015-09-15 13:23 - 2012-05-24 07:31 - 00003682 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2912541454-435926018-1609496016-1000Core
2015-09-15 08:13 - 2012-07-29 14:04 - 00004066 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-09-15 08:13 - 2012-07-29 14:04 - 00003814 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-09-14 08:35 - 2012-05-24 07:31 - 00000000 ____D C:\Users\jean-marie\AppData\Local\Google
2015-09-13 08:29 - 2012-05-17 00:42 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-09-13 08:29 - 2012-05-17 00:42 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-09-12 11:38 - 2012-05-17 00:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight

==================== Fichiers à la racine de certains dossiers =======

2013-06-10 14:46 - 2015-01-31 11:33 - 15000576 _____ (LastPass) C:\Program Files (x86)\Common Files\lpuninstall.exe
2015-01-31 15:46 - 2015-08-09 00:11 - 0006656 _____ () C:\Users\jean-marie\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-05-31 19:30 - 2015-05-31 19:30 - 0007597 _____ () C:\Users\jean-marie\AppData\Local\Resmon.ResmonCfg

==================== Bamital & volsnap =================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement
C:\Windows\system32\wininit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\wininit.exe => Le fichier est signé numériquement
C:\Windows\explorer.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\Windows\system32\svchost.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\Windows\system32\services.exe => Le fichier est signé numériquement
C:\Windows\system32\User32.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\Windows\system32\userinit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement
C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement


LastRegBack: 2015-10-01 08:25

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité