¤¤¤¤¤¤¤¤¤¤ | AdsFix | g3n-h@ckm@n | 06.11.2014.2 ¤¤¤¤¤ Vista | 7 | 8 | 8.1 - 32/64 bits ¤¤¤¤¤ - Start 18:41:56 - 06/11/2014 Mis à jour le : 06/11/2014 | 14.15 par g3n-h@ckm@n™ Contact : http://www.sosvirus.net Assistance : http://www.sosvirus.net/forum-virus-securite.html Feedbacks : http://www.sosvirus.net/feedbacks-t75915.html Facebook : https://www.facebook.com/AdsFix Boot: Normal boot [Armis (Administrator)] - [PERLIN-PC] - (France [040C]) SID = S-1-5-21-818424075-589025181-140128308-1003 || [41726d6973205e5e] PC : eMachines - HM55-MV - Bios : Phoenix - 08/31/2010 Système : Windows 7 Home Premium (64 bits) HomePremium Service Pack 1 Mémoire RAM = Total (MB) : 2024 | Libre (MB) : 343 Pagefile = Total (MB) : 4049 | Libre (MB) : 2089 Virtuelle = Total (MB) : 4194 | Libre (MB) : 4027 Registre sauvegardé , pour restaurer : : C:\AdsFix\Save\Registry [06.11.2014 @ 18_41_46] (Cliquer sur Options & Restaurer le registre) Restauration de fichiers ou dossiers supprimés par erreur : Cliquer sur Options & Restaurer Fichiers ou dossiers, Sélectionner un élément >> "Restaurer" ¤¤¤¤¤¤¤¤¤¤ | Mises à jour Windows Aucune mise à jour détectée !!! ¤¤¤¤¤¤¤¤¤¤ | Navigateurs IE : 11.0.9600.17344 (© Microsoft Corporation. Tous droits réservés.) FF : 33.0.2.5413 (©Firefox and Mozilla Developers; available under the MPL 2 license.) GC : 38.0.2125.111 (Copyright 2012 Google Inc. All rights reserved.) OP : 25.0.1614.68 (Copyright © Opera Software 2014) ¤¤¤¤¤¤¤¤¤¤ | Security (atcav : 0) FW : WMI : OK WU: Windows Update Service [Auto(2)] = Arrêté AS: Windows Defender [Auto(2)] = Arrêté FW: Windows FireWall Service [Auto(2)] = Arrêté ¤¤¤¤¤¤¤¤¤¤ | FlashPlayer ActiveX : 15.0.0.167 Plugin : 15.0.0.189 ¤¤¤¤¤¤¤¤¤¤ | Processus tués 316 | [Owner : Système |Parent : 548] - (.Logitech Inc. - Logitech User mode UMVPF service.) - (13.31.1044.0) = C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe 1208 | [Owner : Système |Parent : 548] - (.Microsoft Corporation - Application sous-système spouleur.) - (6.1.7601.17777) = C:\Windows\System32\spoolsv.exe 1332 | [Owner : Système |Parent : 548] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - (1.701.8.51) = C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 1376 | [Owner : Système |Parent : 548] - (.hMailServer - hMailServer.) - (1.0.0.1) = C:\Program Files (x86)\hMailServer\Bin\hMailServer.exe 1416 | [Owner : Système |Parent : 548] - (. - .) - (0.0.0.0) = C:\Program Files (x86)\hMailServer\MySQL\Bin\mysqld-nt.exe 2436 | [Owner : Armis |Parent : 548] - (.Microsoft Corporation - Processus hôte pour Tâches Windows.) - (6.1.7601.18010) = C:\Windows\System32\taskhost.exe 228 | [Owner : Système |Parent : 548] - (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - (7.0.7601.17610) = C:\Windows\System32\SearchIndexer.exe 2732 | [Owner : Armis |Parent : 2648] - (.Intel Corporation - igfxTray Module.) - (7.14.10.1892) = C:\Windows\System32\igfxtray.exe 2940 | [Owner : Armis |Parent : 2648] - (.Intel Corporation - hkcmd Module.) - (7.14.10.1892) = C:\Windows\System32\hkcmd.exe 3004 | [Owner : Armis |Parent : 2648] - (.Intel Corporation - persistence Module.) - (7.14.10.1892) = C:\Windows\System32\igfxpers.exe 3056 | [Owner : Armis |Parent : 672] - (.Intel Corporation - igfxsrvc Module.) - (7.14.10.1892) = C:\Windows\System32\igfxsrvc.exe 2372 | [Owner : Armis |Parent : 2936] - (.Oracle Corporation - Java Update Scheduler.) - (2.8.25.18) = C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 2272 | [Owner : Système |Parent : 548] - (.Intel Corporation - IAStorDataSvc.) - (9.6.0.1014) = C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe 2336 | [Owner : SERVICE RÉSEAU |Parent : 548] - (.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) - (12.0.7601.17514) = C:\Program Files\Windows Media Player\wmpnetwk.exe 4956 | [Owner : Armis |Parent : 2648] - (.Mozilla Corporation - Thunderbird.) - (24.6.0.5274) = C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe 3176 | [Owner : Armis |Parent : 672] - (.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) - (6.1.7600.16385) = C:\Windows\System32\wbem\unsecapp.exe 3936 | [Owner : Armis |Parent : 336] - (.Microsoft Corporation - Explorateur Windows.) - (6.1.7601.17567) = C:\Windows\explorer.exe 4056 | [Owner : Armis |Parent : 4248] - (.Mozilla Corporation - Plugin Container for Firefox.) - (33.0.2.5413) = C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe 5420 | [Owner : Armis |Parent : 4056] - (.Adobe Systems, Inc. - Adobe Flash Player 15.0 r0.) - (15.0.0.189) = C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_189.exe 5524 | [Owner : Armis |Parent : 5420] - (.Adobe Systems, Inc. - Adobe Flash Player 15.0 r0.) - (15.0.0.189) = C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_189.exe 2272 | [Owner : Système |Parent : 548] - (.Intel Corporation - IAStorDataSvc.) - (9.6.0.1014) = C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe 4956 | [Owner : Armis |Parent : 2648] - (.Mozilla Corporation - Thunderbird.) - (24.6.0.5274) = C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe 3936 | [Owner : Armis |Parent : 336] - (.Microsoft Corporation - Explorateur Windows.) - (6.1.7601.17567) = C:\Windows\explorer.exe 4056 | [Owner : Armis |Parent : 4248] - (.Mozilla Corporation - Plugin Container for Firefox.) - (33.0.2.5413) = C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe 5420 | [Owner : Armis |Parent : 4056] - (.Adobe Systems, Inc. - Adobe Flash Player 15.0 r0.) - (15.0.0.189) = C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_189.exe 5524 | [Owner : Armis |Parent : 5420] - (.Adobe Systems, Inc. - Adobe Flash Player 15.0 r0.) - (15.0.0.189) = C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_189.exe 4920 | [Owner : Armis |Parent : 3936] - (.Microsoft Corporation - Application de configuration du service Partage réseau du Lecteur Windows Media.) - (12.0.7600.16385) = C:\Program Files\Windows Media Player\wmpnscfg.exe ¤¤¤¤¤¤¤¤¤¤ | Tasks Supprimé avec succès : C:\Windows\Tasks\SpeeditUp Update.job (.-.) (Offsets) ¤¤¤¤¤¤¤¤¤¤ | Services Supprimé avec succès : HKLM\SYSTEM\ControlSet001\Services\Update Box Rock : "C:\Program Files (x86)\Box Rock\updateBoxRock.exe" Supprimé avec succès : HKLM\SYSTEM\ControlSet002\Services\Update Box Rock : "C:\Program Files (x86)\Box Rock\updateBoxRock.exe" ¤¤¤¤¤¤¤¤¤¤ | AppCertDlls | AppInit_DLLs ¤¤¤¤¤¤¤¤¤¤ | Hosts Hosts : Ok ¤¤¤¤¤¤¤¤¤¤ | SafeBoot ¤¤¤¤¤¤¤¤¤¤ | Winsock ¤¤¤¤¤¤¤¤¤¤ | Registre Supprimé avec succès : HKLM64\SOFTWARE\Classes\M : {4ED063C9-4A0B-4B44-A9DC-23AFF424A0D3} Supprimé avec succès : HKLM64\SOFTWARE\Classes\CLSID\{90713028-4D71-C305-E5C1-3E4C308DBB56} : SpeeditUp # C:\Program Files (x86)\ver1SpeeditUp\182_x64.dll # Supprimé avec succès : HKLM\SOFTWARE\Classes\CLSID\{90713028-4D71-C305-E5C1-3E4C308DBB56} : SpeeditUp # Supprimé avec succès : HKLM64\SOFTWARE\Classes\Typelib\{1D9B75AD-4BEE-B863-123C-8B63572FDF78} : IEInjectLib # C:\Program Files (x86)\ver1SpeeditUp\182_x64.dll # C:\Program Files (x86)\ver1SpeeditUp\182.dll Supprimé avec succès : HKLM64\SOFTWARE\Classes\Interface\{3856F531-CD1E-4B00-91C7-ED75EC8E7C18} : IOneTab Supprimé avec succès : HKLM64\SOFTWARE\Classes\Interface\{A6A89F97-2879-F94B-09D5-8070ED125AB5} : {1D9B75AD-4BEE-B863-123C-8B63572FDF78} (Tlib) Supprimé avec succès : HKLM\SOFTWARE\Classes\Interface\{3856F531-CD1E-4B00-91C7-ED75EC8E7C18} : IOneTab Supprimé avec succès : HKLM\SOFTWARE\Classes\Interface\{89A3A2ED-0546-4C60-8159-2D917245BCB3} : IBrowserSecurityManager Supprimé avec succès : HKLM\SOFTWARE\Classes\Interface\{A6A89F97-2879-F94B-09D5-8070ED125AB5} : {1D9B75AD-4BEE-B863-123C-8B63572FDF78} (Tlib) Supprimé avec succès : HKLM64\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Update Box Rock Supprimé avec succès : HKLM\SOFTWARE\Microsoft\Tracing\BoxRock_RASAPI32 Supprimé avec succès : HKLM\SOFTWARE\Microsoft\Tracing\BoxRock_RASMANCS Supprimé avec succès : HKLM\SOFTWARE\Microsoft\Tracing\updateBoxRock_RASAPI32 Supprimé avec succès : HKLM\SOFTWARE\Microsoft\Tracing\updateBoxRock_RASMANCS Supprimé avec succès : HKU\S-1-5-19\SOFTWARE\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B} : G/Ay/YP/FPAt/X6/clAj/Xl/alAy/XP/blAs/XD/ax/j/Xt/axAv/X6////% Supprimé avec succès : HKU\S-1-5-20\SOFTWARE\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B} : G/Ay/YP/FPAt/X6/clAj/Xl/alAy/XP/blAs/XD/ax/j/Xt/axAv/X6////% Supprimé avec succès : HKU\S-1-5-18\SOFTWARE\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B} : G/Ay/YP/FPAt/X6/clAj/Xl/alAy/XP/blAs/XD/ax/j/Xt/axAv/X6////% Supprimé avec succès : HKLM64\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{5AA2BA46-9913-4DC7-9620-69AB0FA17AE7} : alot.dll;alot.dll (String) Supprimé avec succès : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{5AA2BA46-9913-4DC7-9620-69AB0FA17AE7} (CLSID) Supprimé avec succès : HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{90713028-4D71-C305-E5C1-3E4C308DBB56} : SpeeditUp (String) Supprimé avec succès : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\C65B1608-E808-E452-1CCF-2A3AAFE69C68 : (SpeeditUp) C:\Program Files (x86)\ver1SpeeditUp\Uninstall.exe ¤¤¤¤¤¤¤¤¤¤ | Dossiers | Fichiers Supprimé avec succès : C:\Program Files (x86)\ver1SpeeditUp Supprimé avec succès : C:\Users\Perlin\Downloads\FlashPlayersetup__4651_i1096020465_il1.exe (.-.) setup.exe Supprimé avec succès : C:\Users\Perlin\AppData\Local\{9416F865-7916-47DC-9134-AA70EBDFB0D5} (.-.) ¤¤¤¤¤¤¤¤¤¤ | .LNK ¤¤¤¤¤¤¤¤¤¤ | Ouverture extension inconnue ¤¤¤¤¤¤¤¤¤¤ | Proxy ¤¤¤¤¤¤¤¤¤¤ | Internet Explorer Réparé : [HKLM64\SOFTWARE\Microsoft\Internet Explorer\SearchURL]~[Default] : -> https://www.google.com/ Réparé : [HKLM64\SOFTWARE\Microsoft\Internet Explorer\Main]~[SearchMigratedDefaultName] : -> google.com Réparé : [HKLM64\SOFTWARE\Microsoft\Internet Explorer\Main]~[SearchMigratedDefaultURL] : -> https://www.google.com/ Réparé : [HKLM64\SOFTWARE\Microsoft\Internet Explorer\Search]~[SearchMigratedDefaultName] : -> google.com Réparé : [HKLM64\SOFTWARE\Microsoft\Internet Explorer\Search]~[SearchMigratedDefaultURL] : -> https://www.google.com/ Réparé : [HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchURL]~[Default] : -> https://www.google.com/ Réparé : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main]~[SearchMigratedDefaultName] : -> google.com Réparé : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main]~[SearchMigratedDefaultURL] : -> https://www.google.com/ Réparé : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search]~[SearchMigratedDefaultName] : -> google.com Réparé : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search]~[SearchMigratedDefaultURL] : -> https://www.google.com/ Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Main]~[Search Bar] : -> https://www.google.com/ Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Main]~[Start Default_Page_URL] : -> https://www.google.com/ Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Main]~[Local Page] : C:\Windows\system32\blank.htm -> C:\Windows\SysWOW64\blank.htm Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Main]~[Default_Search_URL] : -> http://go.microsoft.com/fwlink/?LinkId=54896 Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Main]~[Default_Page_URL] : -> http://go.microsoft.com/fwlink/?LinkId=69157 Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\SearchURL]~[Default] : -> https://www.google.com/ Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Main]~[CustomizeSearch] : -> https://www.google.com/ Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Main]~[SearchMigratedDefaultName] : -> google.com Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Main]~[SearchMigratedDefaultURL] : -> https://www.google.com/ Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Search]~[SearchAssistant] : -> https://www.google.com/ Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Search]~[Search Bar] : -> https://www.google.com/ Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Search]~[Start Page] : -> https://www.google.com/ Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Search]~[Start Default_Page_URL] : -> https://www.google.com/ Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Search]~[Local Page] : -> C:\Windows\SysWOW64\blank.htm Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Search]~[Search Page] : -> http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Search]~[Default_Search_URL] : -> http://go.microsoft.com/fwlink/?LinkId=54896 Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Search]~[Default_Page_URL] : -> http://go.microsoft.com/fwlink/?LinkId=69157 Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Search]~[CustomizeSearch] : -> https://www.google.com/ Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Search]~[SearchMigratedDefaultName] : -> google.com Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\Search]~[SearchMigratedDefaultURL] : -> https://www.google.com/ Réparé : [HKU\S-1-5-21-818424075-589025181-140128308-1003\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]~[Tabs] : -> https://www.google.com/ ¤¤¤¤¤¤¤¤¤¤ | Google Chrome Supprimé avec succès : C:\Users\Perlin\AppData\Local\Google\Chrome\User Data\Default\Web Data (.-.) Remis a zéro avec succès : SearchURL C:\Users\Perlin\AppData\Local\Google\Chrome\User Data\Default\extensions\aapocclcgogkmnckokdopfmhonfmgoek = : Google & co - Google & co - https://clients2.google.com/service/update2/crx C:\Users\Perlin\AppData\Local\Google\Chrome\User Data\Default\extensions\aohghmighlieiainnegkcijnfilokake = : Google & co - Google & co - https://clients2.google.com/service/update2/crx C:\Users\Perlin\AppData\Local\Google\Chrome\User Data\Default\extensions\apdfllckaahabafndbhieahigkjlhalf = : Google & co - https://drive.google.com/?usp=chrome_app - Google & co - [http://docs.google.com/http://drive.google.com/https://docs.google.com/https://drive.google.com/] - http://clients2.google.com/service/update2/crx C:\Users\Perlin\AppData\Local\Google\Chrome\User Data\Default\extensions\bepbmhgboaologfdajaanbcjmnhjmhfn = : This extension allows you to say ‘Ok Google’ and start speaking your search. - Google Voice Search Hotword (Beta) - https://clients2.google.com/service/update2/crx C:\Users\Perlin\AppData\Local\Google\Chrome\User Data\Default\extensions\bhmmomiinigofkjcapegjjndpbikblnp = : __MSG_ext_description__ - WOT - https://clients2.google.com/service/update2/crx C:\Users\Perlin\AppData\Local\Google\Chrome\User Data\Default\extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo = : Google & co - http://www.youtube.com - http://www.youtube.com/?feature=ytca - Google & co - http://clients2.google.com/service/update2/crx C:\Users\Perlin\AppData\Local\Google\Chrome\User Data\Default\extensions\cfhdojbkjhnklbpkdaibdccddilifddb = : __MSG_description_chrome__ - __MSG_name__ - https://clients2.google.com/service/update2/crx C:\Users\Perlin\AppData\Local\Google\Chrome\User Data\Default\extensions\coobgpohoikkiipiblmjeljniedjpjpf = : Google & co - http://www.google.com/webhp?source=search_app - Google & co - [*://www.google.com/search*://www.google.com/webhp*://www.google.com/imgres] - http://clients2.google.com/service/update2/crx C:\Users\Perlin\AppData\Local\Google\Chrome\User Data\Default\extensions\dmchcmgddbhmbkakammmklpoonoiiomk = : Shows flag for the website in the location bar. - short_name: YAFlags - https://clients2.google.com/service/update2/crx C:\Users\Perlin\AppData\Local\Google\Chrome\User Data\Default\extensions\felcaaldnbdncclmgdcncolpebgiejap = : Google & co - Google & co - https://clients2.google.com/service/update2/crx C:\Users\Perlin\AppData\Local\Google\Chrome\User Data\Default\extensions\jdmdeilnbnhpmmhkfhpkddbocnomghhc = : Google & co - Google & co - https://clients2.google.com/service/update2/crx C:\Users\Perlin\AppData\Local\Google\Chrome\User Data\Default\extensions\jhejngphiacapbgllhagbpdkkdieeaej = : Porting of FlagFox to Chrome. Displays a country flag indicating the location of the websites you're visiting - Chrome Flags - http://clients2.google.com/service/update2/crx C:\Users\Perlin\AppData\Local\Google\Chrome\User Data\Default\extensions\nmmhkkegccagdldgiimedpiccmgmieda = : Google & co - Google & co - 203784468217.apps.googleusercontent.com - https://clients2.google.com/service/update2/crx C:\Users\Perlin\AppData\Local\Google\Chrome\User Data\Default\extensions\pjkljhegncpnkpknbcohdijeoejaedia = : Google & co - https://mail.google.com/mail/ca - Google & co - [*://mail.google.com/mail/ca] - http://clients2.google.com/service/update2/crx ¤¤¤¤¤¤¤¤¤¤ | Chromium ¤¤¤¤¤¤¤¤¤¤ | Comodo Dragon ¤¤¤¤¤¤¤¤¤¤ | Firefox [Armis | fwnej3q1.default] Supprimé avec succès : user_pref("browser.newtabpage.blocked", "{\"uxZOoUxhrRaa2JlKaAMMKA==\":1}"); [Armis | fwnej3q1.default] Remplacé : user_pref("browser.startup.homepage", "https://wantete.net"); -> user_pref("browser.startup.homepage", "https://www.google.com"); Supprimé avec succès : C:\Users\Perlin\AppData\Roaming\Mozilla\Firefox\Profiles\kjenkatv.default-1412912316029\sessionstore.js (.-.) C:\Users\Perlin\AppData\Roaming\Mozilla\Firefox\Profiles\kjenkatv.default-1412912316029\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} = : WOT - : http://www.mywot.com/ C:\Users\Perlin\AppData\Roaming\Mozilla\Firefox\Profiles\kjenkatv.default-1412912316029\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} = : DownloadHelper - : http://www.downloadhelper.net ¤¤¤¤¤¤¤¤¤¤ | SeaMonkey ¤¤¤¤¤¤¤¤¤¤ | Pale moon ¤¤¤¤¤¤¤¤¤¤ | Opera ¤¤¤¤¤¤¤¤¤¤ | Spark ¤¤¤¤¤¤¤¤¤¤ | StartMenuInternet ¤¤¤¤¤¤¤¤¤¤ | Javascript ¤¤¤¤¤¤¤¤¤¤ | Firewall ¤¤¤¤¤¤¤¤¤¤ | Fichiers temporaires [All Users] Fichiers temporaires Supprimés : 0 Ko [Armis] Fichiers temporaires Supprimés : 330 Ko [Default] Fichiers temporaires Supprimés : 0 Ko [Default User] Fichiers temporaires Supprimés : 0 Ko [Perlin] Fichiers temporaires Supprimés : 5372 Ko [Public] Fichiers temporaires Supprimés : 0 Ko [C:\Windows\Temp] Fichiers temporaires Supprimés : 0 Ko [C:\Temp] Fichiers temporaires Supprimés : 0 Ko Autre rapport ¤¤¤¤¤¤¤¤¤¤ | Listing ¤¤¤¤¤¤¤¤¤¤ | C:\Program Files (x86) [03/01/2014 22:50:20] - |D| - C:\Program Files (x86)\Adobe [03/01/2014 21:08:29] - |D| - C:\Program Files (x86)\Atheros [28/03/2014 11:41:11] - |D| - C:\Program Files (x86)\BulletProof FTP Server 2011 [12/05/2014 00:17:03] - |D| - C:\Program Files (x86)\Canon [03/01/2014 21:02:41] - |D| - C:\Program Files (x86)\Cisco [26/01/2014 11:13:21] - |D| - C:\Program Files (x86)\Cisco Packet Tracer 5.3.3 [14/07/2009 04:20:08] - |D| - C:\Program Files (x86)\Common Files [14/07/2009 05:54:24] - |ASH| - C:\Program Files (x86)\desktop.ini [11/05/2014 23:54:49] - |D| - C:\Program Files (x86)\EPSON [01/05/2014 06:34:57] - |D| - C:\Program Files (x86)\FileZilla FTP Client [03/01/2014 22:18:57] - |D| - C:\Program Files (x86)\Google [16/04/2014 06:13:52] - |D| - C:\Program Files (x86)\haxe [14/01/2014 20:00:05] - |D| - C:\Program Files (x86)\hMailServer [03/01/2014 21:08:22] - |HD| - C:\Program Files (x86)\InstallShield Installation Information [03/01/2014 20:25:49] - |D| - C:\Program Files (x86)\Intel [14/07/2009 04:20:08] - |D| - C:\Program Files (x86)\Internet Explorer [17/10/2014 06:59:40] - |D| - C:\Program Files (x86)\Java [05/11/2014 23:55:31] - |D| - C:\Program Files (x86)\LuckyTab [05/09/2014 07:05:35] - |D| - C:\Program Files (x86)\Microsoft Analysis Services [20/03/2014 06:56:14] - |D| - C:\Program Files (x86)\Microsoft Office [14/01/2014 22:42:18] - |D| - C:\Program Files (x86)\Microsoft Silverlight [05/09/2014 07:09:17] - |D| - C:\Program Files (x86)\Microsoft SQL Server [04/01/2014 21:27:54] - |D| - C:\Program Files (x86)\Microsoft.NET [16/04/2014 06:10:50] - |D| - C:\Program Files (x86)\Motion-Twin [31/10/2014 18:42:41] - |D| - C:\Program Files (x86)\Mozilla Firefox [06/02/2014 14:56:29] - |D| - C:\Program Files (x86)\Mozilla Maintenance Service [12/06/2014 06:39:18] - |D| - C:\Program Files (x86)\Mozilla Thunderbird [14/07/2009 06:32:38] - |D| - C:\Program Files (x86)\MSBuild [20/03/2014 06:54:39] - |D| - C:\Program Files (x86)\MSECache [16/04/2014 06:14:40] - |D| - C:\Program Files (x86)\neko [04/01/2014 00:09:13] - |D| - C:\Program Files (x86)\Notepad++ [04/01/2014 12:56:16] - |D| - C:\Program Files (x86)\OpenOffice 4 [06/02/2014 15:02:06] - |D| - C:\Program Files (x86)\Opera [04/01/2014 22:40:00] - |D| - C:\Program Files (x86)\PhotoFiltre [06/11/2014 10:30:00] - |D| - C:\Program Files (x86)\PhotoFiltre 7 [03/01/2014 21:20:04] - |D| - C:\Program Files (x86)\Realtek [14/07/2009 06:32:38] - |D| - C:\Program Files (x86)\Reference Assemblies [27/03/2014 19:23:39] - |D| - C:\Program Files (x86)\rinjanisoft [05/09/2014 16:43:35] - |D| - C:\Program Files (x86)\SEO Soft [03/10/2014 14:57:39] - |D| - C:\Program Files (x86)\SitemapX [02/11/2014 21:52:01] - |RD| - C:\Program Files (x86)\Skype [20/09/2014 12:09:26] - |D| - C:\Program Files (x86)\TeamViewer [14/07/2009 05:57:06] - |HD| - C:\Program Files (x86)\Uninstall Information [14/06/2014 18:39:47] - |D| - C:\Program Files (x86)\VideoLAN [14/07/2009 06:32:38] - |D| - C:\Program Files (x86)\Windows Defender [14/07/2009 04:20:08] - |D| - C:\Program Files (x86)\Windows Mail [14/07/2009 06:32:38] - |D| - C:\Program Files (x86)\Windows Media Player [14/07/2009 04:20:08] - |D| - C:\Program Files (x86)\Windows NT [14/07/2009 06:32:38] - |D| - C:\Program Files (x86)\Windows Photo Viewer [14/07/2009 06:32:38] - |D| - C:\Program Files (x86)\Windows Portable Devices [14/07/2009 06:32:38] - |D| - C:\Program Files (x86)\Windows Sidebar [23/10/2014 17:52:30] - |D| - C:\Program Files (x86)\WinRAR [18/02/2014 18:56:07] - |D| - C:\Program Files (x86)\xchat [06/11/2014 09:40:47] - |D| - C:\Program Files (x86)\ZHPDiag ¤¤¤¤¤¤¤¤¤¤ | C:\Program Files [15/03/2014 13:31:54] - |D| - C:\Program Files\Adblock Plus for IE [03/01/2014 20:56:48] - |D| - C:\Program Files\AVAST Software [03/01/2014 21:01:44] - |D| - C:\Program Files\Broadcom [12/05/2014 00:16:53] - |D| - C:\Program Files\Canon [04/11/2014 17:59:25] - |D| - C:\Program Files\CCleaner [14/07/2009 04:20:08] - |D| - C:\Program Files\Common Files [03/01/2014 21:31:07] - |D| - C:\Program Files\CONEXANT [14/07/2009 05:54:24] - |ASH| - C:\Program Files\desktop.ini [14/07/2009 06:32:38] - |D| - C:\Program Files\DVD Maker [03/01/2014 19:13:42] - |SHD| - C:\Program Files\Fichiers communs [14/07/2009 04:20:08] - |D| - C:\Program Files\Internet Explorer [19/03/2014 13:55:26] - |D| - C:\Program Files\Java [14/07/2009 06:32:38] - |D| - C:\Program Files\Microsoft Games [05/09/2014 07:00:14] - |D| - C:\Program Files\Microsoft Office [14/01/2014 22:42:20] - |D| - C:\Program Files\Microsoft Silverlight [14/07/2009 06:32:38] - |D| - C:\Program Files\MSBuild [14/07/2009 06:32:38] - |D| - C:\Program Files\Reference Assemblies [03/01/2014 21:17:51] - |D| - C:\Program Files\Synaptics [14/07/2009 06:09:26] - |HD| - C:\Program Files\Uninstall Information [14/07/2009 06:32:38] - |D| - C:\Program Files\Windows Defender [14/07/2009 16:35:26] - |D| - C:\Program Files\Windows Journal [14/07/2009 04:20:08] - |D| - C:\Program Files\Windows Mail [14/07/2009 06:32:38] - |D| - C:\Program Files\Windows Media Player [14/07/2009 04:20:08] - |D| - C:\Program Files\Windows NT [14/07/2009 06:32:38] - |D| - C:\Program Files\Windows Photo Viewer [14/07/2009 06:32:38] - |D| - C:\Program Files\Windows Portable Devices [14/07/2009 06:32:38] - |D| - C:\Program Files\Windows Sidebar [03/01/2014 20:55:52] - |D| - C:\Program Files\WinRAR ¤¤¤¤¤¤¤¤¤¤ | C:\Program Files (x86)\Common Files [03/01/2014 22:50:20] - |D| - C:\Program Files (x86)\Common Files\Adobe [03/01/2014 22:57:07] - |D| - C:\Program Files (x86)\Common Files\Adobe AIR [05/09/2014 07:12:50] - |D| - C:\Program Files (x86)\Common Files\DESIGNER [11/05/2014 23:53:39] - |D| - C:\Program Files (x86)\Common Files\InstallShield [04/11/2014 19:45:10] - |D| - C:\Program Files (x86)\Common Files\Java [04/01/2014 18:28:50] - |D| - C:\Program Files (x86)\Common Files\logishrd [14/07/2009 04:20:08] - |D| - C:\Program Files (x86)\Common Files\microsoft shared [04/11/2014 17:18:51] - |D| - C:\Program Files (x86)\Common Files\PC SOFT [04/04/2014 08:11:24] - |D| - C:\Program Files (x86)\Common Files\PDF Architect [14/07/2009 04:20:08] - |D| - C:\Program Files (x86)\Common Files\Services [02/11/2014 21:52:03] - |D| - C:\Program Files (x86)\Common Files\Skype [14/07/2009 04:20:08] - |D| - C:\Program Files (x86)\Common Files\SpeechEngines [14/07/2009 04:20:08] - |D| - C:\Program Files (x86)\Common Files\System ¤¤¤¤¤¤¤¤¤¤ | C:\Program Files\Common Files [04/01/2014 18:28:48] - |D| - C:\Program Files\Common Files\logishrd [14/07/2009 04:20:08] - |D| - C:\Program Files\Common Files\Microsoft Shared [14/07/2009 04:20:08] - |D| - C:\Program Files\Common Files\Services [14/07/2009 04:20:08] - |D| - C:\Program Files\Common Files\SpeechEngines [14/07/2009 04:20:08] - |D| - C:\Program Files\Common Files\System ¤¤¤¤¤¤¤¤¤¤ | C:\Users\Armis\AppData\Roaming [06/11/2014 09:23:46] - |D| - C:\Users\Armis\AppData\Roaming\Adobe [06/11/2014 11:38:06] - |D| - C:\Users\Armis\AppData\Roaming\AVAST Software [06/11/2014 11:48:38] - |D| - C:\Users\Armis\AppData\Roaming\Dropbox [06/11/2014 09:23:21] - |D| - C:\Users\Armis\AppData\Roaming\Identities [06/11/2014 09:23:08] - |D| - C:\Users\Armis\AppData\Roaming\Macromedia [06/11/2014 09:23:08] - |D| - C:\Users\Armis\AppData\Roaming\Media Center Programs [06/11/2014 09:23:08] - |SD| - C:\Users\Armis\AppData\Roaming\Microsoft [06/11/2014 09:30:37] - |D| - C:\Users\Armis\AppData\Roaming\Mozilla [06/11/2014 10:30:05] - |D| - C:\Users\Armis\AppData\Roaming\PhotoFiltre 7 [06/11/2014 11:09:22] - |D| - C:\Users\Armis\AppData\Roaming\Thunderbird [06/11/2014 09:40:47] - |D| - C:\Users\Armis\AppData\Roaming\ZHP ¤¤¤¤¤¤¤¤¤¤ | C:\Users\Armis\AppData\Local [06/11/2014 11:59:47] - |D| - C:\Users\Armis\AppData\Local\Adobe [06/11/2014 09:23:08] - |SHD| - C:\Users\Armis\AppData\Local\Application Data [06/11/2014 09:34:24] - |A| - C:\Users\Armis\AppData\Local\GDIPFONTCACHEV1.DAT [06/11/2014 09:23:44] - |D| - C:\Users\Armis\AppData\Local\Google [06/11/2014 09:23:08] - |SHD| - C:\Users\Armis\AppData\Local\Historique [06/11/2014 11:50:14] - |AH| - C:\Users\Armis\AppData\Local\IconCache.db [06/11/2014 09:33:54] - |D| - C:\Users\Armis\AppData\Local\Macromedia [06/11/2014 09:23:08] - |D| - C:\Users\Armis\AppData\Local\Microsoft [06/11/2014 09:23:08] - |D| - C:\Users\Armis\AppData\Local\Microsoft Help [06/11/2014 15:33:13] - |DC| - C:\Users\Armis\AppData\Local\MigWiz [06/11/2014 09:30:37] - |D| - C:\Users\Armis\AppData\Local\Mozilla [06/11/2014 09:23:08] - |D| - C:\Users\Armis\AppData\Local\temp [06/11/2014 09:23:08] - |SHD| - C:\Users\Armis\AppData\Local\Temporary Internet Files [06/11/2014 11:09:22] - |D| - C:\Users\Armis\AppData\Local\Thunderbird [06/11/2014 09:23:13] - |D| - C:\Users\Armis\AppData\Local\VirtualStore ¤¤¤¤¤¤¤¤¤¤ | C:\ProgramData [03/01/2014 22:50:02] - |D| - C:\ProgramData\Adobe [14/07/2009 06:08:56] - |SHD| - C:\ProgramData\Application Data [03/01/2014 21:07:50] - |D| - C:\ProgramData\Atheros [03/01/2014 20:55:42] - |D| - C:\ProgramData\AVAST Software [06/11/2014 01:31:32] - |D| - C:\ProgramData\Avira [28/03/2014 11:42:17] - |D| - C:\ProgramData\BulletProof Software [03/01/2014 19:13:42] - |SHD| - C:\ProgramData\Bureau [12/05/2014 00:17:31] - |HD| - C:\ProgramData\CanonBJ [14/07/2009 06:08:56] - |SHD| - C:\ProgramData\Desktop [14/07/2009 06:08:56] - |SHD| - C:\ProgramData\Documents [03/01/2014 19:13:42] - |SHD| - C:\ProgramData\Favoris [14/07/2009 06:08:56] - |SHD| - C:\ProgramData\Favorites [04/03/2014 06:17:01] - |D| - C:\ProgramData\Malwarebytes [03/01/2014 19:13:42] - |SHD| - C:\ProgramData\Menu Démarrer [14/07/2009 04:20:08] - |SD| - C:\ProgramData\Microsoft [01/07/2014 16:47:42] - |D| - C:\ProgramData\Microsoft Help [03/01/2014 19:13:42] - |SHD| - C:\ProgramData\Modèles [03/01/2014 20:41:33] - |D| - C:\ProgramData\Mozilla [02/02/2014 20:00:18] - |D| - C:\ProgramData\Oracle [15/03/2014 13:31:43] - |D| - C:\ProgramData\Package Cache [18/03/2014 14:04:49] - |D| - C:\ProgramData\regid.1986-12.com.adobe [05/09/2014 07:11:08] - |D| - C:\ProgramData\regid.1991-06.com.microsoft [13/06/2014 19:21:57] - |D| - C:\ProgramData\RogueKiller [04/01/2014 18:26:08] - |D| - C:\ProgramData\Skype [14/07/2009 06:08:56] - |SHD| - C:\ProgramData\Start Menu [02/02/2014 20:00:06] - |D| - C:\ProgramData\Sun [13/03/2014 15:42:22] - |D| - C:\ProgramData\TEMP [14/07/2009 06:08:56] - |SHD| - C:\ProgramData\Templates ¤¤¤¤¤¤¤¤¤¤ | C:\Windows\Tasks [03/01/2014 22:55:04] - |A| - C:\Windows\Tasks\Adobe Flash Player Updater.job [04/01/2014 21:27:34] - |A| - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [04/01/2014 21:27:38] - |A| - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [14/07/2009 06:08:49] - |AH| - C:\Windows\Tasks\SA.DAT [14/07/2009 06:08:49] - |A| - C:\Windows\Tasks\SCHEDLGU.TXT ¤¤¤¤¤¤¤¤¤¤ | C:\Windows\System32\Tasks [14/07/2009 04:20:14] - |D| - C:\Windows\System32\Tasks\Microsoft [X] : [4535 Ko] Analysés : 255779 | Modifiés : 32 | Infectés : 31 ¤¤¤¤¤¤¤¤¤¤ |EOF| ¤¤¤¤¤¤¤¤¤¤ | 22:37:31 | [31 Ko]