cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 24-06-2015
Ran by maison (administrator) on MAISON-PC on 27-06-2015 04:37:42
Running from C:\Users\maison\Downloads
Loaded Profiles: maison (Available Profiles: maison)
Platform: Microsoft Windows 7 Professionnel Service Pack 1 (X86) OS Language: Français (France)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.21.165\GoogleCrashHandler.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Reimage®) C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Reimage®) C:\Program Files\Reimage\Reimage Protector\ReiSystem.exe
() C:\Users\maison\AppData\Roaming\DRPSu\DrvUpdater.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Sony) C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Samsung Electronics CO., LTD.) C:\Program Files\Samsung\S Agent\CommonAgent.exe
(Samsung Electronics CO., LTD.) C:\Program Files\Samsung\SW Update\SWMAgent.exe
() C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Samsung Electronics) C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-02-06] (Apple Inc.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2193744 2012-04-25] (ELAN Microelectronics Corp.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-15] (AVAST Software)
HKLM\...\Run: [SPDriver] => .\JSDriver\1.30.1.146\jsdrv.exe
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)
HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\...\Run: [DrvUpdater] => C:\Users\maison\AppData\Roaming\DRPSu\DrvUpdater.exe [192856 2011-04-28] ()
HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [30872672 2014-12-11] (Skype Technologies S.A.)
HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\...\Run: [NTRedirect] => C:\Windows\system32\rundll32.exe "C:\Users\maison\AppData\Roaming\BabSolution\Shared\enhancedNT.dll",Run
HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\...\Run: [SPDriver] => .\JSDriver\1.30.1.146\jsdrv.exe
HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [455392 2015-04-10] (Sony)
HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\...\MountPoints2: {2a82f579-02bc-11e5-9099-001bb1608893} - F:\Startme.exe
HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\...\MountPoints2: {4084c50a-2d07-11e2-b798-001bb1608893} - F:\iLinker.exe
HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\ssText3d.scr [293888 2010-11-20] (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2013-11-09]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2014-08-15] (AVAST Software)
ShellIconOverlayIdentifiers: [GDriveBlacklistedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll [2013-06-06] (Google)
ShellIconOverlayIdentifiers: [GDriveSharedEditOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll [2013-06-06] (Google)
ShellIconOverlayIdentifiers: [GDriveSharedViewOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll [2013-06-06] (Google)
ShellIconOverlayIdentifiers: [GDriveSyncedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll [2013-06-06] (Google)
ShellIconOverlayIdentifiers: [GDriveSyncingOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll [2013-06-06] (Google)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

AutoConfigURL: [S-1-5-21-4207285587-2504551040-2316692940-1000] => http://cdn1.browsersecurity.net/safe/cloud.js?si=77302&tid=18195&ver=5.7&ts=1394578800000.000007&tguid=77302-18195-1394582878948-A559E74077969F720697C8FED86D1DF2
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=56626&homepage=http://start.mysearchdial.com/?f=1&a=tele_14_24_ch&cd=2XzuyEtN2Y1L1QzutDtDtByEyDyE0DtD0D0DtC0AyB0DtDyCtN0D0Tzu0SzzzyyDtN1L2XzutBtFtBtCtFyEtFtCtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyDtD0A0D0BzytB0BtG0AtDyB0DtGtCtDzz0CtGtBtD0ByBtGtDzy0A0FtDtD0BzyzzyDtAyD2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyB0FtAzy0DtDzy0BtGyCzytB0BtG0CtBtDtDtGyBtD0BtAtGtDtCtAtDtBtByCtB0F0DyB0D2Q&cr=1685553732&ir=
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.certified-toolbar.com?si=77302&tid=18195&ver=5.7&ts=1394578800000.000007&tguid=77302-18195-1394582878948-A559E74077969F720697C8FED86D1DF2&st=chrome&q=
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.awesomehp.com/?type=hp&ts=1394579658&from=vtt&uid=HitachiXHTS545050B9A300_100924PBN403B70DWLLLX
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.certified-toolbar.com?si=77302&tid=18195&ver=5.7&ts=1394578800000.000007&tguid=77302-18195-1394582878948-A559E74077969F720697C8FED86D1DF2&st=chrome&q=
HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=56626&homepage=http://start.mysearchdial.com/?f=1&a=tele_14_24_ch&cd=2XzuyEtN2Y1L1QzutDtDtByEyDyE0DtD0D0DtC0AyB0DtDyCtN0D0Tzu0SzzzyyDtN1L2XzutBtFtBtCtFyEtFtCtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyDtD0A0D0BzytB0BtG0AtDyB0DtGtCtDzz0CtGtBtD0ByBtGtDzy0A0FtDtD0BzyzzyDtAyD2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyB0FtAzy0DtDzy0BtGyCzytB0BtG0CtBtDtDtGyBtD0BtAtGtDtCtAtDtBtByCtB0F0DyB0D2Q&cr=1685553732&ir=
HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://fr.msn.com/?ocid=iehp
HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.awesomehp.com/?type=hp&ts=1394579658&from=vtt&uid=HitachiXHTS545050B9A300_100924PBN403B70DWLLLX
SearchScopes: HKLM -> DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=tele_14_24_ch&cd=2XzuyEtN2Y1L1QzutDtDtByEyDyE0DtD0D0DtC0AyB0DtDyCtN0D0Tzu0SzzzyyDtN1L2XzutBtFtBtCtFyEtFtCtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyDtD0A0D0BzytB0BtG0AtDyB0DtGtCtDzz0CtGtBtD0ByBtGtDzy0A0FtDtD0BzyzzyDtAyD2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyB0FtAzy0DtDzy0BtGyCzytB0BtG0CtBtDtDtGyBtD0BtAtGtDtCtAtDtBtByCtB0F0DyB0D2Q&cr=1685553732&ir=
SearchScopes: HKLM -> {219DA5F6-B2BE-E995-09A9-46A00C54E447} URL =
SearchScopes: HKLM -> {31090377-0740-419E-BEFC-A56E50500D5B} URL = http://speedial.com/results.php?f=4&q={searchTerms}&a=spd_ir_14_24_ch&cd=2XzuyEtN2Y1L1QzutDtDtByEyDyE0DtD0D0DtC0AyB0DtDyCtN0D0Tzu0SzzzytCtN1L2XzutBtFtBtDtFtCzytFtDtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2StCyD0EyE0DzyyB0FtGyC0BtAtAtGzy0DyE0DtGyDyE0B0FtGyE0E0D0CyEyEzyyE0D0C0A0B2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyB0FtAzy0DtDzy0BtGyCzytB0BtG0CtBtDtDtGyBtD0BtAtGtDtCtAtDtBtByCtB0F0DyB0D2Q&cr=965334915&ir=
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.awesomehp.com/web/?type=ds&ts=1394579658&from=vtt&uid=HitachiXHTS545050B9A300_100924PBN403B70DWLLLX&q={searchTerms}
SearchScopes: HKLM -> {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = http://speedial.com/results.php?f=4&q={searchTerms}&a=spd_ir_14_24_ch&cd=2XzuyEtN2Y1L1QzutDtDtByEyDyE0DtD0D0DtC0AyB0DtDyCtN0D0Tzu0SzzzytCtN1L2XzutBtFtBtDtFtCzytFtDtN1L1CzutCyEtBzytDyD1V1RtN1L1G1B1V1N2Y1L1Qzu2StCyEyDyD0BtBtA0FtGyE0FtB0AtGyC0E0FzztGzz0E0AtAtGtCtBtA0AyD0Azz0DyC0Czzzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyB0FtAzy0DtDzy0BtGyCzytB0BtG0CtBtDtDtGyBtD0BtAtGtDtCtAtDtBtByCtB0F0DyB0D2Q&cr=426887414&ir=
SearchScopes: HKLM -> {8F05772D-A7B4-4194-9590-C73E03110519 URL = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=coolmsd&cd=2XzuyEtN2Y1L1QzutDtDtByEyDyE0DtD0D0DtC0AyB0DtDyCtN0D0Tzu0CyDtCtAtN1L2XzutBtFtBtFtCtFyDyByEtN1L1Czu1R1F1F1I1H1B1Q&cr=720103955&ir=
SearchScopes: HKLM -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=tele_14_24_ch&cd=2XzuyEtN2Y1L1QzutDtDtByEyDyE0DtD0D0DtC0AyB0DtDyCtN0D0Tzu0SzzzyyDtN1L2XzutBtFtBtCtFyEtFtCtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyDtD0A0D0BzytB0BtG0AtDyB0DtGtCtDzz0CtGtBtD0ByBtGtDzy0A0FtDtD0BzyzzyDtAyD2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyB0FtAzy0DtDzy0BtGyCzytB0BtG0CtBtDtDtGyBtD0BtAtGtDtCtAtDtBtByCtB0F0DyB0D2Q&cr=1685553732&ir=
SearchScopes: HKLM -> {EEE6C360-6118-11DC-9C72-001320C79847} URL = http://search.sweetim.com/search.asp?src=6&crg=3.1010000.10039&st=12&q={searchTerms}&barid={E99A2369-63B6-4A42-92C9-EDAC76819C03}
SearchScopes: HKU\.DEFAULT -> {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL =
SearchScopes: HKU\S-1-5-21-4207285587-2504551040-2316692940-1000 -> DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=tele_14_24_ch&cd=2XzuyEtN2Y1L1QzutDtDtByEyDyE0DtD0D0DtC0AyB0DtDyCtN0D0Tzu0SzzzyyDtN1L2XzutBtFtBtCtFyEtFtCtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyDtD0A0D0BzytB0BtG0AtDyB0DtGtCtDzz0CtGtBtD0ByBtGtDzy0A0FtDtD0BzyzzyDtAyD2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyB0FtAzy0DtDzy0BtGyCzytB0BtG0CtBtDtDtGyBtD0BtAtGtDtCtAtDtBtByCtB0F0DyB0D2Q&cr=1685553732&ir=
SearchScopes: HKU\S-1-5-21-4207285587-2504551040-2316692940-1000 -> {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://search.conduit.com/Results.aspx?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SP58608D41-4E49-458F-A35D-7A90BC0401E2&q={searchTerms}&SSPV=
SearchScopes: HKU\S-1-5-21-4207285587-2504551040-2316692940-1000 -> {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.max-start.com/?q={searchTerms}&babsrc=SP_ss_mib2&mntrId=CC2F001BB14DD8A3&affID=124442&tsp=5002
SearchScopes: HKU\S-1-5-21-4207285587-2504551040-2316692940-1000 -> {219DA5F6-B2BE-E995-09A9-46A00C54E447} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3300844&CUI=UN42352503991080923&UM=1
SearchScopes: HKU\S-1-5-21-4207285587-2504551040-2316692940-1000 -> {31090377-0740-419E-BEFC-A56E50500D5B} URL = http://speedial.com/results.php?f=4&q={searchTerms}&a=spd_ir_14_24_ch&cd=2XzuyEtN2Y1L1QzutDtDtByEyDyE0DtD0D0DtC0AyB0DtDyCtN0D0Tzu0SzzzytCtN1L2XzutBtFtBtDtFtCzytFtDtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2StCyD0EyE0DzyyB0FtGyC0BtAtAtGzy0DyE0DtGyDyE0B0FtGyE0E0D0CyEyEzyyE0D0C0A0B2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyB0FtAzy0DtDzy0BtGyCzytB0BtG0CtBtDtDtGyBtD0BtAtGtDtCtAtDtBtByCtB0F0DyB0D2Q&cr=965334915&ir=
SearchScopes: HKU\S-1-5-21-4207285587-2504551040-2316692940-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.awesomehp.com/web/?type=ds&ts=1394579658&from=vtt&uid=HitachiXHTS545050B9A300_100924PBN403B70DWLLLX&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4207285587-2504551040-2316692940-1000 -> {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL =
SearchScopes: HKU\S-1-5-21-4207285587-2504551040-2316692940-1000 -> {5224DAC7-44DC-4C9C-AFAB-BE76748CE526} URL = http://www.bing.com/search?FORM=WLETDF&PC=WLEM&q={searchTerms}&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-4207285587-2504551040-2316692940-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear
SearchScopes: HKU\S-1-5-21-4207285587-2504551040-2316692940-1000 -> {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = http://speedial.com/results.php?f=4&q={searchTerms}&a=spd_ir_14_24_ch&cd=2XzuyEtN2Y1L1QzutDtDtByEyDyE0DtD0D0DtC0AyB0DtDyCtN0D0Tzu0SzzzytCtN1L2XzutBtFtBtDtFtCzytFtDtN1L1CzutCyEtBzytDyD1V1RtN1L1G1B1V1N2Y1L1Qzu2StCyEyDyD0BtBtA0FtGyE0FtB0AtGyC0E0FzztGzz0E0AtAtGtCtBtA0AyD0Azz0DyC0Czzzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyB0FtAzy0DtDzy0BtGyCzytB0BtG0CtBtDtDtGyBtD0BtAtGtDtCtAtDtBtByCtB0F0DyB0D2Q&cr=426887414&ir=
SearchScopes: HKU\S-1-5-21-4207285587-2504551040-2316692940-1000 -> {8F05772D-A7B4-4194-9590-C73E03110519} URL = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=coolmsd&cd=2XzuyEtN2Y1L1QzutDtDtByEyDyE0DtD0D0DtC0AyB0DtDyCtN0D0Tzu0CyDtCtAtN1L2XzutBtFtBtFtCtFyDyByEtN1L1Czu1R1F1F1I1H1B1Q&cr=720103955&ir=
SearchScopes: HKU\S-1-5-21-4207285587-2504551040-2316692940-1000 -> {9782A624-E588-4F20-9E56-0A2A2C16BD51} URL = http://search.zonealarm.com/search?src=sp&tbid=base2013&Lan=fr&q={searchTerms}&gu=0db9d40d3dcf4af48272cd1038235723&tu=10Q8000BS4B000v&sku=&tstsId=&ver=&&r=523
SearchScopes: HKU\S-1-5-21-4207285587-2504551040-2316692940-1000 -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=tele_14_24_ch&cd=2XzuyEtN2Y1L1QzutDtDtByEyDyE0DtD0D0DtC0AyB0DtDyCtN0D0Tzu0SzzzyyDtN1L2XzutBtFtBtCtFyEtFtCtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyDtD0A0D0BzytB0BtG0AtDyB0DtGtCtDzz0CtGtBtD0ByBtGtDzy0A0FtDtD0BzyzzyDtAyD2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyB0FtAzy0DtDzy0BtGyCzytB0BtG0CtBtDtDtGyBtD0BtAtGtDtCtAtDtBtByCtB0F0DyB0D2Q&cr=1685553732&ir=
SearchScopes: HKU\S-1-5-21-4207285587-2504551040-2316692940-1000 -> {E88E0043-C9D4-4e33-8555-FEE4F5B63060} URL = http://go.mail.ru/search?q={searchTerms}&utf8in=1&fr=ietb
SearchScopes: HKU\S-1-5-21-4207285587-2504551040-2316692940-1000 -> {EEE6C360-6118-11DC-9C72-001320C79847} URL = http://search.sweetim.com/search.asp?src=6&crg=3.1010000.10039&st=12&q={searchTerms}&barid={E99A2369-63B6-4A42-92C9-EDAC76819C03}
BHO: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
BHO: SaveSense -> {0f21b1e5-5afc-43c9-9c66-515046e92ec2} -> C:\Program Files\SaveSense\SaveSenseIE.dll [2013-11-04] (SaveSense)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll [2015-01-10] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-08-15] (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Shopper Pro -> {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} -> C:\ProgramData\ShopperPro\ShopperPro.dll [2014-03-27] (Goobzo Ltd.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll [2015-01-10] (Oracle Corporation)
BHO: BHO_TIMELINEREMOVE.Bho -> {e7b9b609-19ad-40a4-a288-b300a3087465} -> C:\Windows\system32\mscoree.dll [2010-11-20] (Microsoft Corporation)
BHO: mysearchdial Helper Object -> {EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD} -> C:\Program Files\Mysearchdial\bh\mysearchdial.dll [2013-05-28] (Ironsource Israel (2011) LTD)
Toolbar: HKU\S-1-5-21-4207285587-2504551040-2316692940-1000 -> No Name - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} - No File
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - No File
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - No File
Winsock: Catalog5 08 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-31] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254

FireFox:
========
FF ProfilePath: C:\Users\maison\AppData\Roaming\Mozilla\Firefox\Profiles\hijmb3hl.default
FF SearchEngineOrder.1: Web Search
FF SelectedSearchEngine: Yahoo! (SD)
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_190.dll [2015-06-24] ()
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [2014-02-21] ()
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-07-03] (Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-07-03] (Foxit Corporation)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-04-20] (Google)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2015-02-13] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll [2015-01-10] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll [2015-01-10] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll [2013-11-26] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll [2013-11-26] (Google Inc.)
FF Plugin: @tools.updaterss.com/SaveSenseLive Update;version=3 -> C:\Program Files\SaveSenseLive\Update\1.3.23.0\npGoogleUpdate3.dll [2013-12-25] (SaveSense)
FF Plugin: @tools.updaterss.com/SaveSenseLive Update;version=9 -> C:\Program Files\SaveSenseLive\Update\1.3.23.0\npGoogleUpdate3.dll [2013-12-25] (SaveSense)
FF Plugin: @videolan.org/vlc,version=2.0.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2012-06-28] (VideoLAN)
FF user.js: detected! => C:\Users\maison\AppData\Roaming\Mozilla\Firefox\Profiles\hijmb3hl.default\user.js [2014-06-15]
FF SearchPlugin: C:\Users\maison\AppData\Roaming\Mozilla\Firefox\Profiles\hijmb3hl.default\searchplugins\conduit-search.xml [2014-02-12]
FF SearchPlugin: C:\Users\maison\AppData\Roaming\Mozilla\Firefox\Profiles\hijmb3hl.default\searchplugins\Mysearchdial.xml [2014-06-15]
FF SearchPlugin: C:\Users\maison\AppData\Roaming\Mozilla\Firefox\Profiles\hijmb3hl.default\searchplugins\Speedial.xml [2014-06-09]
FF SearchPlugin: C:\Users\maison\AppData\Roaming\Mozilla\Firefox\Profiles\hijmb3hl.default\searchplugins\Web Search.xml [2014-03-13]
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\awesomehp.xml [2014-03-12]
FF Extension: No Name - C:\Users\maison\AppData\Roaming\Mozilla\Firefox\profiles\extensions\extensions [2013-06-29]
FF Extension: No Name - C:\Users\maison\AppData\Roaming\Mozilla\Firefox\profiles\extensions\searchplugins [2013-08-19]
FF Extension: FTdownloader V3.0 - C:\Users\maison\AppData\Roaming\Mozilla\Firefox\profiles\extensions\ftdownloader3@ftdownloader.com.xpi [2013-04-11]
FF Extension: HDvid Codec - C:\Users\maison\AppData\Roaming\Mozilla\Firefox\profiles\extensions\hdvc@hdvc.com.xpi [2013-04-17]
FF Extension: PutLocker Downloader - C:\Users\maison\AppData\Roaming\Mozilla\Firefox\profiles\extensions\ptl@ptl.com.xpi [2013-06-26]
FF Extension: cacaoweb - C:\Users\maison\AppData\Roaming\Mozilla\Firefox\Profiles\hijmb3hl.default\Extensions\cacaoweb@cacaoweb.org [2013-11-26]
FF Extension: Fast Start - C:\Users\maison\AppData\Roaming\Mozilla\Firefox\Profiles\hijmb3hl.default\Extensions\faststartff@gmail.com [2014-07-11]
FF Extension: Yahoo! Toolbar - C:\Users\maison\AppData\Roaming\Mozilla\Firefox\Profiles\hijmb3hl.default\Extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} [2015-05-05]
FF Extension: Shopper-Pro - C:\Users\maison\AppData\Roaming\Mozilla\Firefox\Profiles\hijmb3hl.default\Extensions\{746505DC-0E21-4667-97F8-72EA6BCF5EEF} [2014-03-12]
FF Extension: SaveSense - C:\Users\maison\AppData\Roaming\Mozilla\Firefox\Profiles\hijmb3hl.default\Extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36} [2013-12-25]
FF Extension: Speedial - C:\Users\maison\AppData\Roaming\Mozilla\Firefox\Profiles\hijmb3hl.default\Extensions\{fa95f577-07cb-4470-ac90-e843f5f83c52} [2014-06-09]
FF Extension: No Name - C:\Users\maison\AppData\Roaming\Mozilla\Firefox\Profiles\hijmb3hl.default\Extensions\{1de9eb85-6499-49ad-a1b7-7178fad329b2}.xpi [2014-08-14]
FF Extension: MySearchDial - C:\Users\maison\AppData\Roaming\Mozilla\Firefox\Profiles\hijmb3hl.default\Extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}.xpi [2014-06-15]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-11-11]
FF HKLM\...\Firefox\Extensions: [quick_start@gmail.com] - C:\Users\maison\AppData\Roaming\Mozilla\Firefox\Profiles\hijmb3hl.default\extensions\quick_start@gmail.com
FF HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\...\Firefox\Extensions: [{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}] - C:\Program Files\Wajam\Firefox\{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}.xpi
FF HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\itms.js [2015-06-19]

Chrome:
=======
CHR Profile: C:\Users\maison\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Adblock Plus) - C:\Users\maison\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-08-16]
CHR Extension: (Avast SafePrice) - C:\Users\maison\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2014-08-15]
CHR Extension: (Avast Online Security) - C:\Users\maison\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-02-05]
CHR Extension: (Cleaner Facebook) - C:\Users\maison\AppData\Local\Google\Chrome\User Data\Default\Extensions\llnofjfijelilpjdibjjmldcpdenmbfh [2014-10-26]
CHR Extension: (Google Wallet) - C:\Users\maison\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-26]
CHR Extension: (Facebook - Delete My Timeline) - C:\Users\maison\AppData\Local\Google\Chrome\User Data\Default\Extensions\olpgdigakalagbnckjmnhajofccbbeaf [2014-10-26]
CHR Extension: (DebrideurStreaming - Add-On) - C:\Users\maison\AppData\Local\Google\Chrome\User Data\Default\Extensions\pipaffcpmobohfilpejhaciheebhaaej [2014-01-20]
CHR HKLM\...\Chrome\Extension: [bakijjialdiiboeaknfpmflphhmljfkd] - https://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [bbffdhejhaoiflnpooogkckfdcmmjppn] - C:\Program Files\FTDownloader.com\FTDownloader10.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [bbjciahceamgodcoidkjpchnokgfpphh] - C:\Users\maison\AppData\Local\funmoods.crx [2012-11-25]
CHR HKLM\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - http://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [bpegkgagfojjbcpkihigfmkojdmmimdf] - No Path Or update_url value
CHR HKLM\...\Chrome\Extension: [dffhljlmcohcioeilbnpmbchdcbhifdh] - C:\Users\maison\AppData\Local\CRE\dffhljlmcohcioeilbnpmbchdcbhifdh.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [ehgldbbpchgpcfagfpfjgoomddhccfgh] - No Path Or update_url value
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswwebrepchrome-sp.crx [2014-08-15]
CHR HKLM\...\Chrome\Extension: [faklkmlkcleeoibffcbligohmkciloif] - C:\Program Files\PutLockerDownloader\PutLockerDownloader10.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [ffpagccpapmkpfihnflfkdcbmodnagcc] - C:\Users\maison\AppData\Local\CRE\ffpagccpapmkpfihnflfkdcbmodnagcc.crx [2013-04-17]
CHR HKLM\...\Chrome\Extension: [fmfnfnpmhcllokmkepffndflpnadjmma] - C:\Program Files\DealPly\DealPly.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-08-15]
CHR HKLM\...\Chrome\Extension: [ifohbjbgfchkkfhphahclmkpgejiplfo] - C:\Users\maison\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtab.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [jcdgjdiieiljkfkdcloehkohchhpekkn] - C:\Users\maison\AppData\Local\Google\Chrome\User Data\Default\External Extensions\{EEE6C373-6118-11DC-9C72-001320C79847}\SweetFB.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [khcceooakamlehbimaepcldnnlnkcmfk] - C:\Program Files\SaveSense\SaveSense.crx [2013-12-25]
CHR HKLM\...\Chrome\Extension: [kpkbnefaikfaeadgidhpoanckoiaheli] - C:\Program Files\HDvidCodec.com\HDvidCodec10.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [ndkhncnongaclekkbelchmeafffimifj] - C:\Users\maison\AppData\Local\Giant Savings\Chrome\Giant Savings.crx [2012-11-14]
CHR HKLM\...\Chrome\Extension: [ogccgbmabaphcakpiclgcnmcnimhokcj] - C:\Users\maison\AppData\Local\Google\Chrome\User Data\Default\External Extensions\{EEE6C373-6118-11DC-9C72-001320C79847}\SweetNT.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [pelmeidfhdlhlbjimpabfcbnnojbboma] - C:\Users\maison\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv3.crx [2014-03-12]
CHR HKLM\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - https://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bakijjialdiiboeaknfpmflphhmljfkd] - https://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bbjciahceamgodcoidkjpchnokgfpphh] - C:\Users\maison\AppData\Local\funmoods.crx [2012-11-25]
CHR HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [dffhljlmcohcioeilbnpmbchdcbhifdh] - C:\Users\maison\AppData\Local\CRE\dffhljlmcohcioeilbnpmbchdcbhifdh.crx [Not Found]
CHR HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ffpagccpapmkpfihnflfkdcbmodnagcc] - C:\Users\maison\AppData\Local\CRE\ffpagccpapmkpfihnflfkdcbmodnagcc.crx [2013-04-17]
CHR HKU\S-1-5-21-4207285587-2504551040-2316692940-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - https://clients2.google.com/service/update2/crx

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-08-15] (AVAST Software)
S4 CltMngSvc; C:\Program Files\SearchProtect\Main\bin\CltMngSvc.exe [2454816 2014-03-03] (Conduit)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [235696 2014-04-09] (McAfee, Inc.)
R2 ReimageRealTimeProtector; C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [6086640 2015-05-19] (Reimage®)
S2 savesenselive; C:\Program Files\SaveSenseLive\Update\SaveSenseLive.exe [146920 2013-12-25] (SaveSense)
S3 savesenselivem; C:\Program Files\SaveSenseLive\Update\SaveSenseLive.exe [146920 2013-12-25] (SaveSense)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)
R2 SWUpdateService; C:\Program Files\Samsung\SW Update\SWMAgent.exe [2879176 2012-12-27] (Samsung Electronics CO., LTD.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
S2 Update Surftastic; "C:\Program Files\Surftastic\updateSurftastic.exe" [X]
S2 Util Greener Web; "C:\Program Files\Greener Web\bin\utilGreenerWeb.exe" [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24184 2014-08-15] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-08-15] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81768 2014-08-15] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-08-15] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [779536 2014-11-21] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [414520 2014-08-15] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [71944 2014-08-15] (AVAST Software)
R1 aswTdi; C:\Windows\system32\Drivers\aswTdi.sys [56080 2013-12-19] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [192352 2014-08-15] ()
R3 ETD; C:\Windows\System32\DRIVERS\ETD.sys [222544 2012-04-25] (ELAN Microelectronics Corp.)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [587096 2012-11-15] (Kaspersky Lab)
R2 SGDrv; C:\Windows\System32\DRIVERS\SGdrv.sys [6144 2011-04-12] (Phoenix Technologies Ltd.)
R1 {a3f28269-ad17-41a8-b032-3e0313ef8979}w; C:\Windows\System32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}w.sys [52824 2014-06-09] (StdLib)
S3 cpuz134; \??\C:\Users\maison\AppData\Local\Temp\cpuz134\cpuz134_x32.sys [X]
U2 DCE; No ImagePath
U0 KL1; No ImagePath
U5 klflt; C:\Windows\System32\Drivers\klflt.sys [75096 2012-11-15] (Kaspersky Lab)
S2 SPDRIVER_1.30.1.146; .\JSDriver\1.30.1.146\jsdrv.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-27 04:37 - 2015-06-27 04:38 - 00032847 _____ C:\Users\maison\Downloads\FRST.txt
2015-06-27 04:37 - 2015-06-27 04:37 - 01636352 _____ (Farbar) C:\Users\maison\Downloads\FRST.exe
2015-06-27 04:37 - 2015-06-27 04:37 - 00000000 ____D C:\FRST
2015-06-27 04:36 - 2015-06-27 04:36 - 02112512 _____ (Farbar) C:\Users\maison\Downloads\FRST64.exe
2015-06-27 03:29 - 2015-06-27 04:29 - 00000000 ____D C:\3590F75ABA9E485486C100C1A9D4FF06Z.ZZZZZ..Z.ZZ.ZZ
2015-06-25 21:05 - 2015-06-25 21:06 - 00000000 _____ C:\Users\maison\AppData\Local\{0870A6B5-7D52-41E0-BDD0-0C0D11B1962E}
2015-06-25 21:05 - 2015-06-25 21:05 - 00000000 ____H C:\Users\maison\AppData\Local\BIT9FDC.tmp
2015-06-25 03:11 - 2015-06-25 03:13 - 00000000 ____D C:\rei
2015-06-25 03:11 - 2015-06-25 03:13 - 00000000 ____D C:\ProgramData\Reimage Protector
2015-06-25 03:11 - 2015-06-25 03:12 - 00000000 ____D C:\Program Files\Reimage
2015-06-25 03:11 - 2015-06-25 03:11 - 00002018 _____ C:\Users\Public\Desktop\PC Scan & Repair by Reimage.lnk
2015-06-25 03:11 - 2015-06-25 03:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair
2015-06-25 03:10 - 2015-06-25 03:13 - 00000165 _____ C:\Windows\Reimage.ini
2015-06-25 03:09 - 2015-06-25 03:10 - 00772016 _____ (Reimage®) C:\Users\maison\Downloads\ReimageRepair.exe
2015-06-24 22:58 - 2015-06-24 22:58 - 02253941 _____ C:\Users\maison\Downloads\snfm.psd
2015-06-24 22:00 - 2015-06-24 22:00 - 00000000 ____H C:\Users\maison\AppData\Local\BIT5EB2.tmp
2015-06-24 21:59 - 2015-06-24 21:59 - 00000000 _____ C:\Users\maison\AppData\Local\{59D2F154-1E6B-45B0-AC8A-A33F4C67B6A3}
2015-06-24 03:47 - 2015-06-24 03:47 - 04961198 _____ C:\Users\maison\Downloads\jg.zip
2015-06-23 17:31 - 2015-06-23 17:31 - 00003424 ____N C:\bootsqm.dat
2015-06-19 00:12 - 2015-06-19 00:12 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-06-18 23:10 - 2015-06-18 23:10 - 00108605 _____ C:\Users\maison\Downloads\9c3d9ad540db9c53767569ae2faa15ac_large.jpeg
2015-06-18 22:29 - 2015-06-18 21:31 - 127502337 ____N C:\Users\maison\Desktop\DSC_0253.MOV
2015-06-10 12:59 - 2015-06-02 21:35 - 00342728 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-06-10 12:59 - 2015-05-27 16:08 - 19607040 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-06-10 12:59 - 2015-05-25 19:00 - 02384384 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-06-10 12:59 - 2015-05-23 05:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-06-10 12:59 - 2015-05-23 05:28 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-06-10 12:59 - 2015-05-23 05:15 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-06-10 12:59 - 2015-05-23 05:15 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-06-10 12:59 - 2015-05-23 05:15 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-06-10 12:59 - 2015-05-23 05:14 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-06-10 12:59 - 2015-05-23 05:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-06-10 12:59 - 2015-05-23 05:10 - 02278912 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-06-10 12:59 - 2015-05-23 05:09 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-06-10 12:59 - 2015-05-23 05:08 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-06-10 12:59 - 2015-05-23 05:06 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-06-10 12:59 - 2015-05-23 05:05 - 00664064 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-06-10 12:59 - 2015-05-23 05:05 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-06-10 12:59 - 2015-05-23 05:05 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-06-10 12:59 - 2015-05-23 05:04 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-06-10 12:59 - 2015-05-23 05:00 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-06-10 12:59 - 2015-05-23 04:57 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-06-10 12:59 - 2015-05-23 04:52 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-06-10 12:59 - 2015-05-23 04:49 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-06-10 12:59 - 2015-05-23 04:48 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-06-10 12:59 - 2015-05-23 04:47 - 04305920 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-06-10 12:59 - 2015-05-23 04:47 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-06-10 12:59 - 2015-05-23 04:38 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-06-10 12:59 - 2015-05-23 04:38 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-06-10 12:59 - 2015-05-23 04:37 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-06-10 12:59 - 2015-05-23 04:37 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-06-10 12:59 - 2015-05-23 04:28 - 12829696 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-06-10 12:59 - 2015-05-23 04:20 - 01950720 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-06-10 12:59 - 2015-05-23 04:16 - 01309696 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-06-10 12:59 - 2015-05-23 04:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-06-10 12:59 - 2015-04-11 05:07 - 00054656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys
2015-06-10 12:58 - 2015-05-25 20:07 - 03989440 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-06-10 12:58 - 2015-05-25 20:07 - 03934144 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-06-10 12:58 - 2015-05-25 20:07 - 00137664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-06-10 12:58 - 2015-05-25 20:07 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-06-10 12:58 - 2015-05-25 20:04 - 01307648 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-06-10 12:58 - 2015-05-25 20:01 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-06-10 12:58 - 2015-05-25 20:01 - 00853504 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-06-10 12:58 - 2015-05-25 20:01 - 00641536 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-06-10 12:58 - 2015-05-25 20:01 - 00635392 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-06-10 12:58 - 2015-05-25 20:01 - 00551424 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-06-10 12:58 - 2015-05-25 20:01 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-06-10 12:58 - 2015-05-25 20:01 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-06-10 12:58 - 2015-05-25 20:01 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-06-10 12:58 - 2015-05-25 20:01 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-06-10 12:58 - 2015-05-25 20:01 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-06-10 12:58 - 2015-05-25 20:01 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-06-10 12:58 - 2015-05-25 20:01 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2015-06-10 12:58 - 2015-05-25 20:01 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-06-10 12:58 - 2015-05-25 20:01 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-06-10 12:58 - 2015-05-25 20:01 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-06-10 12:58 - 2015-05-25 20:01 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-06-10 12:58 - 2015-05-25 20:01 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-06-10 12:58 - 2015-05-25 20:01 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-06-10 12:58 - 2015-05-25 20:00 - 00364544 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2015-06-10 12:58 - 2015-05-25 20:00 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-06-10 12:58 - 2015-05-25 20:00 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2015-06-10 12:58 - 2015-05-25 20:00 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-06-10 12:58 - 2015-05-25 20:00 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-06-10 12:58 - 2015-05-25 20:00 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2015-06-10 12:58 - 2015-05-25 20:00 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-06-10 12:58 - 2015-05-25 20:00 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-06-10 12:58 - 2015-05-25 20:00 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2015-06-10 12:58 - 2015-05-25 19:57 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-06-10 12:58 - 2015-05-25 19:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-06-10 12:58 - 2015-05-25 19:55 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-06-10 12:58 - 2015-05-25 19:55 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-06-10 12:58 - 2015-05-25 18:53 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-06-10 12:57 - 2015-05-09 05:14 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-06-10 12:57 - 2015-05-09 05:13 - 00868352 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-06-10 12:57 - 2015-05-09 05:13 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-06-10 12:57 - 2015-05-09 05:12 - 00271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-06-10 12:57 - 2015-05-09 05:08 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 03:59 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 03:59 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 03:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-06-10 12:57 - 2015-05-09 03:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-06-10 12:57 - 2015-04-29 20:07 - 11411456 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-06-10 12:57 - 2015-04-29 20:07 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-06-10 12:57 - 2015-04-29 20:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-06-10 12:57 - 2015-04-29 20:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-06-10 12:57 - 2015-04-29 20:05 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-06-10 12:57 - 2015-04-24 19:56 - 00530432 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-06-09 18:41 - 2015-06-26 21:47 - 00000000 ____D C:\Users\maison\Downloads\iPod Photo Cache
2015-06-05 14:56 - 2015-05-22 20:03 - 00571392 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-06-05 14:56 - 2015-05-22 20:02 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-06-05 14:56 - 2015-05-22 20:02 - 00621568 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-06-05 14:56 - 2015-05-22 20:02 - 00333824 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-06-05 14:56 - 2015-05-22 20:02 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-06-05 14:56 - 2015-05-22 20:02 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-06-05 14:56 - 2015-05-22 19:58 - 00901120 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-06-05 14:56 - 2015-05-21 15:20 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-06-01 20:12 - 2015-06-01 20:12 - 00000000 ____D C:\Users\maison\AppData\Local\GWX
2015-05-31 20:55 - 2015-05-31 20:55 - 00000000 ____H C:\Users\maison\AppData\Local\BITC226.tmp
2015-05-31 20:55 - 2015-05-31 20:55 - 00000000 _____ C:\Users\maison\AppData\Local\{12DE2923-CEB9-4E54-B3AA-DDCCC0A8DC34}
2015-05-30 17:57 - 2015-05-30 17:57 - 00005158 _____ C:\Users\maison\Downloads\Logo_Parma.svg
2015-05-28 12:01 - 2015-05-28 12:01 - 00000000 _____ C:\Users\maison\AppData\Local\{7ACD833D-D8E7-452F-98B6-1D9E6AA5E081}

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-27 04:38 - 2012-12-25 15:13 - 00001002 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-06-27 04:31 - 2013-12-25 16:26 - 00000920 _____ C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineUA.job
2015-06-27 04:26 - 2012-11-13 03:22 - 00001056 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-06-27 04:25 - 2009-07-14 06:34 - 00027680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-06-27 04:25 - 2009-07-14 06:34 - 00027680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-06-27 04:05 - 2013-11-23 08:34 - 01796809 _____ C:\Windows\WindowsUpdate.log
2015-06-27 03:28 - 2013-03-04 19:52 - 00000000 ____D C:\Windows\Minidump
2015-06-27 02:11 - 2013-12-25 16:26 - 00000916 _____ C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineCore.job
2015-06-27 02:11 - 2012-11-13 03:22 - 00001052 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-06-27 02:11 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-06-26 21:02 - 2013-05-19 19:42 - 00000000 ____D C:\Users\maison\AppData\Roaming\Skype
2015-06-26 04:55 - 2012-11-15 00:55 - 00000000 ___HD C:\Users\maison\Desktop\.picasaoriginals
2015-06-26 04:40 - 2015-04-01 23:32 - 00000000 ____D C:\Users\maison\Desktop\Autographe
2015-06-24 23:00 - 2014-04-15 23:14 - 00000132 _____ C:\Users\maison\AppData\Roaming\Adobe PNG Format CS5 Prefs
2015-06-24 23:00 - 2012-11-15 01:33 - 00000000 ____D C:\Program Files\Common Files\Adobe
2015-06-24 23:00 - 2012-11-15 01:06 - 00000000 ____D C:\Users\maison\AppData\Roaming\Adobe
2015-06-24 23:00 - 2012-11-15 01:05 - 00000000 ____D C:\Users\maison\AppData\Local\Adobe
2015-06-24 22:53 - 2012-11-19 15:16 - 00000000 ___HD C:\Users\maison\Downloads\.picasaoriginals
2015-06-24 22:53 - 2012-11-19 15:13 - 00017514 ____H C:\Users\maison\Downloads\.picasa.ini
2015-06-24 00:38 - 2012-12-25 15:13 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-06-24 00:38 - 2012-12-25 15:13 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-06-23 17:31 - 2013-11-26 11:16 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2015-06-23 15:00 - 2014-11-15 19:52 - 00000000 __SHD C:\Users\maison\AppData\Local\EmieBrowserModeList
2015-06-23 15:00 - 2014-04-23 21:23 - 00000000 __SHD C:\Users\maison\AppData\Local\EmieUserList
2015-06-23 15:00 - 2014-04-23 21:23 - 00000000 __SHD C:\Users\maison\AppData\Local\EmieSiteList
2015-06-22 15:46 - 2014-06-14 02:55 - 00000000 ____D C:\Users\maison\AppData\Roaming\Mp3tag
2015-06-21 21:29 - 2014-06-27 21:40 - 00002261 _____ C:\Users\maison\AppData\Roaming\FoxitReaderUpdateInfo.txt
2015-06-21 21:18 - 2014-06-22 23:48 - 00000000 ____D C:\Users\maison\Desktop\Document
2015-06-18 22:30 - 2013-06-24 15:31 - 00000000 ____D C:\Users\maison\AppData\Roaming\vlc
2015-06-17 17:48 - 2009-07-14 06:53 - 00032496 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-06-13 15:32 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\rescache
2015-06-11 23:04 - 2010-11-20 23:01 - 01669584 _____ C:\Windows\system32\PerfStringBackup.INI
2015-06-11 22:55 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\system32\fr-FR
2015-06-11 19:06 - 2013-07-19 02:14 - 00000000 ____D C:\Windows\system32\MRT
2015-06-11 19:06 - 2012-11-11 13:09 - 136900096 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-06-11 11:06 - 2012-11-11 13:04 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-06-06 23:21 - 2014-12-12 17:32 - 00000000 ____D C:\Windows\system32\appraiser
2015-06-06 23:21 - 2014-05-07 03:01 - 00000000 ___SD C:\Windows\system32\CompatTel

==================== Files in the root of some directories =======

2014-04-15 23:14 - 2015-06-24 23:00 - 0000132 _____ () C:\Users\maison\AppData\Roaming\Adobe PNG Format CS5 Prefs
2015-03-11 02:18 - 2015-05-19 14:45 - 0000132 _____ () C:\Users\maison\AppData\Roaming\Adobe PNG Format CS6 Prefs
2014-03-12 01:16 - 2014-03-12 01:16 - 0001258 _____ () C:\Users\maison\AppData\Roaming\Bubble Dock.boostrap.log
2014-03-12 01:16 - 2014-03-12 01:16 - 0013104 _____ () C:\Users\maison\AppData\Roaming\Bubble Dock.installation.log
2014-06-27 21:40 - 2015-06-21 21:29 - 0002261 _____ () C:\Users\maison\AppData\Roaming\FoxitReaderUpdateInfo.txt
2013-07-27 00:55 - 2014-11-09 06:35 - 0000193 _____ () C:\Users\maison\AppData\Roaming\WB.CFG
2013-06-14 02:45 - 2013-12-19 01:55 - 0000006 _____ () C:\Users\maison\AppData\Roaming\WBPU-TTL.DAT
2013-10-20 00:29 - 2013-10-20 00:46 - 145672688 _____ () C:\Users\maison\AppData\Local\ACCCx2_1_2_232.zip
2015-05-12 23:17 - 2015-05-12 23:17 - 0000000 ____H () C:\Users\maison\AppData\Local\BIT230B.tmp
2015-05-01 19:42 - 2015-05-01 19:42 - 0000000 ____H () C:\Users\maison\AppData\Local\BIT54D4.tmp
2015-06-24 22:00 - 2015-06-24 22:00 - 0000000 ____H () C:\Users\maison\AppData\Local\BIT5EB2.tmp
2015-06-25 21:05 - 2015-06-25 21:05 - 0000000 ____H () C:\Users\maison\AppData\Local\BIT9FDC.tmp
2014-08-26 04:23 - 2014-08-26 04:23 - 0000000 ____H () C:\Users\maison\AppData\Local\BITA48E.tmp
2015-05-31 20:55 - 2015-05-31 20:55 - 0000000 ____H () C:\Users\maison\AppData\Local\BITC226.tmp
2014-11-23 15:51 - 2014-11-23 15:51 - 0000000 ____H () C:\Users\maison\AppData\Local\BITD35B.tmp
2013-05-12 05:36 - 2014-04-03 23:48 - 0007168 _____ () C:\Users\maison\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-11-25 18:59 - 2012-11-25 18:58 - 0031465 _____ () C:\Users\maison\AppData\Local\funmoods.crx
2015-01-22 19:21 - 2015-01-22 19:21 - 0000000 _____ () C:\Users\maison\AppData\Local\{0003AE21-3A05-44DE-9A30-26FCB6241B41}
2015-06-25 21:05 - 2015-06-25 21:06 - 0000000 _____ () C:\Users\maison\AppData\Local\{0870A6B5-7D52-41E0-BDD0-0C0D11B1962E}
2015-05-31 20:55 - 2015-05-31 20:55 - 0000000 _____ () C:\Users\maison\AppData\Local\{12DE2923-CEB9-4E54-B3AA-DDCCC0A8DC34}
2014-06-11 18:53 - 2014-06-11 18:54 - 0000000 _____ () C:\Users\maison\AppData\Local\{2B509E8D-C861-4CDE-B46F-7F6DFB0EF899}
2015-02-18 19:57 - 2015-02-18 20:13 - 0000000 _____ () C:\Users\maison\AppData\Local\{37A40222-D098-44F5-AE4F-DC734BE20BE0}
2014-11-23 15:51 - 2014-11-23 15:51 - 0000000 _____ () C:\Users\maison\AppData\Local\{43C90D50-369F-439B-BAAB-A944531CFAD6}
2014-12-12 17:32 - 2014-12-12 17:32 - 0000000 _____ () C:\Users\maison\AppData\Local\{443C5330-5F35-4D7C-83E3-F4C4A1A03EE7}
2014-11-25 02:19 - 2014-11-25 02:19 - 0000000 _____ () C:\Users\maison\AppData\Local\{467943AB-28F6-4A57-8520-AD38BDB85099}
2015-03-19 03:00 - 2015-03-19 03:00 - 0000000 _____ () C:\Users\maison\AppData\Local\{46E9EA44-07A4-4D78-BDC0-997307BD006F}
2015-05-12 23:17 - 2015-05-12 23:17 - 0000000 _____ () C:\Users\maison\AppData\Local\{46F40185-A42F-4D1C-9ACE-C7DFC94E6B4E}
2014-06-11 18:59 - 2014-06-11 19:00 - 0000000 _____ () C:\Users\maison\AppData\Local\{513C31A6-8BF6-4762-AFF6-31478924AD14}
2015-06-24 21:59 - 2015-06-24 21:59 - 0000000 _____ () C:\Users\maison\AppData\Local\{59D2F154-1E6B-45B0-AC8A-A33F4C67B6A3}
2014-10-25 11:17 - 2014-10-25 11:17 - 0000000 _____ () C:\Users\maison\AppData\Local\{60439156-3DA0-49C7-BFF2-C71F9B04203F}
2015-05-01 19:14 - 2015-05-01 19:42 - 0000000 _____ () C:\Users\maison\AppData\Local\{7100A8BC-B224-4D69-A0D6-ABEDEC9156E0}
2015-05-28 12:01 - 2015-05-28 12:01 - 0000000 _____ () C:\Users\maison\AppData\Local\{7ACD833D-D8E7-452F-98B6-1D9E6AA5E081}
2014-05-28 17:42 - 2014-05-28 17:42 - 0000000 _____ () C:\Users\maison\AppData\Local\{A070B846-067A-44B0-838F-639029219BA4}
2014-06-06 12:39 - 2014-06-06 12:39 - 0000000 _____ () C:\Users\maison\AppData\Local\{B51D12CC-6DEE-4627-A58C-B96AEEC7C22B}
2014-07-05 04:53 - 2014-07-05 04:53 - 0000000 _____ () C:\Users\maison\AppData\Local\{C4C38E43-88D9-4EF4-9721-6D99728CA4F0}
2014-02-24 19:54 - 2014-02-24 19:54 - 0000000 _____ () C:\Users\maison\AppData\Local\{CF2CC537-5EB5-491E-AFF2-E58F74241D44}
2014-08-02 23:28 - 2014-08-02 23:28 - 0000000 _____ () C:\Users\maison\AppData\Local\{D2AC1EBE-1982-44AE-8DE0-9D3765D7113A}
2014-08-26 04:23 - 2014-08-26 04:23 - 0000000 _____ () C:\Users\maison\AppData\Local\{E194A652-D199-49F9-9438-46D4708850FE}
2014-12-08 13:21 - 2014-12-08 13:21 - 0000000 _____ () C:\Users\maison\AppData\Local\{F6113FAE-08C1-4979-B9F0-1B7F79963BB3}

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-06-24 16:50

==================== End of log ============================

Publicité


Signaler le contenu de ce document

Publicité