ComboFix 16-03-18.01 - fabien 19/03/2016 14:02:29.1.2 - x86 Microsoft Windows 7 Édition Intégrale 6.1.7601.1.1252.33.1036.18.2046.1269 [GMT 1:00] Lancé depuis: c:\users\fabien\Desktop\ComboFix.exe AV: ESET NOD32 Antivirus 7.0 *Disabled/Updated* {19259FAE-8396-A113-46DB-15B0E7DFA289} SP: ESET NOD32 Antivirus 7.0 *Disabled/Updated* {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . ((((((((((((((((((((((((((((( Fichiers créés du 2016-02-19 au 2016-03-19 )))))))))))))))))))))))))))))))))))) . . 2016-03-19 13:12 . 2016-03-19 13:12 -------- d-----w- c:\users\Default\AppData\Local\temp 2016-03-18 08:00 . 2016-03-18 11:08 -------- d-----w- C:\FRST 2016-03-17 14:10 . 2016-03-17 14:12 -------- d-----w- c:\program files\ZHPFix 2016-03-17 12:14 . 2016-03-17 12:32 -------- d-----w- c:\program files\Mozilla Thunderbird 2016-03-15 20:10 . 2016-03-17 14:16 -------- d-----w- c:\users\fabien\AppData\Roaming\ZHP 2016-03-09 13:59 . 2016-03-09 13:59 24688 ----a-w- c:\windows\system32\drivers\TrueSight.sys 2016-03-09 13:58 . 2016-03-09 13:58 -------- d-----w- c:\program files\RogueKiller 2016-03-09 13:58 . 2016-03-09 14:17 -------- d-----w- c:\programdata\RogueKiller 2016-03-09 13:41 . 2016-03-17 12:28 -------- d-----w- c:\program files\AdwCleaner 2016-03-09 12:54 . 2016-03-09 12:54 -------- d-----w- c:\program files\Common Files\Java 2016-03-09 12:26 . 2016-03-09 12:26 -------- d-----w- C:\7f223c7b9d1ea94d22c9fde9a21ce856 2016-03-09 10:27 . 2015-07-30 13:13 103120 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll 2016-03-09 09:59 . 2015-07-15 17:59 78784 ----a-w- c:\windows\system32\drivers\mountmgr.sys 2016-03-09 09:58 . 2016-01-22 05:59 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localization-l1-1-0.dll 2016-03-09 09:57 . 2015-12-08 21:53 305664 ----a-w- c:\windows\system32\gdi32.dll 2016-03-09 09:56 . 2015-04-29 18:06 164864 ----a-w- c:\program files\Windows Media Player\wmplayer.exe 2016-03-09 09:56 . 2015-04-29 18:06 102400 ----a-w- c:\program files\Windows Media Player\wmpshare.exe 2016-03-09 09:56 . 2015-04-29 18:06 101888 ----a-w- c:\program files\Windows Media Player\wmpconfig.exe 2016-03-09 09:56 . 2015-04-29 18:07 4096 ----a-w- c:\windows\system32\msdxm.ocx 2016-03-09 09:56 . 2015-04-29 18:07 4096 ----a-w- c:\windows\system32\dxmasf.dll 2016-03-09 09:56 . 2015-04-29 18:07 8192 ----a-w- c:\windows\system32\spwmp.dll 2016-03-09 09:56 . 2015-04-29 18:05 12625408 ----a-w- c:\windows\system32\wmploc.DLL . . . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2016-03-09 12:53 . 2015-04-01 14:13 95840 ----a-w- c:\windows\system32\WindowsAccessBridge.dll 2016-02-28 09:58 . 2015-05-17 12:29 170200 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys 2016-02-10 13:02 . 2015-09-21 12:38 796864 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2016-02-10 13:02 . 2015-09-21 12:38 142528 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2015-05-13 19:39 . 2015-05-13 19:39 38024 ----a-w- c:\program files\ffdsvsetts.reg . . ((((((((((((((((((((((((((((((((( Points de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés REGEDIT4 . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2016-02-16 18:37 199488 ----a-w- c:\users\fabien\AppData\Roaming\Dropbox\bin\DropboxExt.33.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2016-02-16 18:37 199488 ----a-w- c:\users\fabien\AppData\Roaming\Dropbox\bin\DropboxExt.33.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt3] @="{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}] 2016-02-16 18:37 199488 ----a-w- c:\users\fabien\AppData\Roaming\Dropbox\bin\DropboxExt.33.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt4] @="{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}] 2016-02-16 18:37 199488 ----a-w- c:\users\fabien\AppData\Roaming\Dropbox\bin\DropboxExt.33.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt5] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2016-02-16 18:37 199488 ----a-w- c:\users\fabien\AppData\Roaming\Dropbox\bin\DropboxExt.33.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt6] @="{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}] 2016-02-16 18:37 199488 ----a-w- c:\users\fabien\AppData\Roaming\Dropbox\bin\DropboxExt.33.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt7] @="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}] 2016-02-16 18:37 199488 ----a-w- c:\users\fabien\AppData\Roaming\Dropbox\bin\DropboxExt.33.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt8] @="{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}] 2016-02-16 18:37 199488 ----a-w- c:\users\fabien\AppData\Roaming\Dropbox\bin\DropboxExt.33.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "DavMail"="c:\program files\DavMail\davmail.exe" [2015-12-19 65536] "CCleaner Monitoring"="c:\program files\CCleaner\CCleaner.exe" [2015-04-23 6278424] "RESTART_STICKY_NOTES"="c:\windows\System32\StikyNot.exe" [2009-07-14 354304] "DAEMON Tools Ultra Agent"="c:\program files\DAEMON Tools Ultra\DTAgent.exe" [2015-02-27 3731728] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2013-09-12 5110672] "SONY VGP-UPR1 (Display Adapter)"="c:\program files\DisplayLink Core Software\DisplayLinkUI.exe" [2008-08-28 233472] "NvSvc"="c:\windows\system32\nvsvc.dll" [2009-05-26 92704] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-05-26 8530464] "NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-05-26 88608] "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2016-01-29 594992] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ BTTray.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2007-6-22 739880] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 0 (0x0) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) . [HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^BTTray.lnk] path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\BTTray.lnk backup=c:\windows\pss\BTTray.lnk.CommonStartup backupExtension=.CommonStartup . [HKLM\~\startupfolder\C:^Users^fabien^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk] path=c:\users\fabien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk backup=c:\windows\pss\Dropbox.lnk.Startup backupExtension=.Startup . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 8.0] 2012-12-18 19:08 3478752 ----a-w- c:\program files\Adobe\Acrobat 11.0\Acrobat\acrotray.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] 2015-12-14 07:48 1085656 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0] 2015-03-30 10:02 500936 ------w- c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS6ServiceManager] 2012-03-09 14:26 1073312 ----a-w- c:\program files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Apoint] 2009-07-23 06:42 118784 ----a-w- c:\program files\Apoint\Apoint.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Bose Updater] 2016-01-01 00:45 1169712 ----a-w- c:\program files\Bose Updater\BOSEUPDATER.EXE . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring] 2015-04-23 14:56 6278424 ----a-w- c:\program files\CCleaner\CCleaner.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Ultra Agent] 2015-02-27 16:40 3731728 ----a-w- c:\program files\DAEMON Tools Ultra\DTAgent.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dropbox Update] 2015-06-19 17:20 134512 ----atw- c:\users\fabien\AppData\Local\Dropbox\Update\DropboxUpdate.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EEventManager] 2010-10-12 11:56 979328 ----a-w- c:\program files\Epson Software\Event Manager\EEventManager.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPreload] 2015-07-27 09:06 1566016 ----a-w- c:\program files\Samsung\Kies\Kies.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent] 2015-07-27 09:06 311616 ----a-w- c:\program files\Samsung\Kies\KiesTrayAgent.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify] 2015-12-23 16:35 8387696 ----a-w- c:\users\fabien\AppData\Roaming\Spotify\Spotify.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify Web Helper] 2015-12-23 16:35 2346096 ----a-w- c:\users\fabien\AppData\Roaming\Spotify\SpotifyWebHelper.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard] 2010-02-19 11:37 517096 ----a-w- c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UnlockerAssistant] 2010-07-04 19:51 17408 ----a-w- c:\program files\Unlocker\UnlockerAssistant.exe . R0 dlkmdldr;dlkmdldr;c:\windows\system32\drivers\dlkmdldr.sys [2008-08-18 13424] R2 MBAMService;MBAMService;c:\program files\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416] R3 2310_00;2310_00;c:\windows\system32\drivers\2310_00.sys [2009-06-12 135200] R3 272x_1x;272x_1x;c:\windows\system32\drivers\272x_1x.sys [2012-04-24 557888] R3 274x_3x;274x_3x;c:\windows\system32\drivers\274x_3x.sys [2012-04-24 196928] R3 amd_sata;amd_sata;c:\windows\system32\drivers\amd_sata.sys [2013-06-27 70464] R3 amdhub30;AMD USB 3.0 Hub Driver;c:\windows\system32\drivers\amdhub30.sys [2012-08-15 85160] R3 amdxhc;AMD USB 3.0 Host Controller Driver;c:\windows\system32\drivers\amdxhc.sys [2012-08-15 177832] R3 arcm_x86;arcm_x86;c:\windows\system32\drivers\arcm_x86.sys [2009-11-09 43552] R3 asahci32;asahci32;c:\windows\system32\drivers\asahci32.sys [2012-07-18 42392] R3 asmthub3;ASMedia USB3 Hub Service;c:\windows\system32\drivers\asmthub3.sys [2012-08-20 110408] R3 asmtxhci;ASMEDIA XHCI Service;c:\windows\system32\drivers\asmtxhci.sys [2012-08-20 331080] R3 b06diag;Broadcom NetXtreme II Diag Driver;c:\windows\system32\drivers\bxdiagx.sys [2012-03-08 75816] R3 BFN7x86;Bigfoot Networks Killer Gaming Service;c:\windows\system32\drivers\Xeno7x86.sys [2012-02-22 130152] R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [x] R3 bxfcoe;bxfcoe;c:\windows\system32\drivers\bxfcoe.sys [2012-02-22 150568] R3 bxois;bxois;c:\windows\system32\drivers\bxois.sys [2012-02-22 435240] R3 cbaf;UWB Cable Based Association Framework Driver;c:\windows\System32\Drivers\cbaf.sys [2007-11-03 11008] R3 DC133;DC133;c:\windows\system32\drivers\DC133.sys [2011-05-02 36328] R3 DC150;DC150;c:\windows\system32\drivers\DC150.sys [2011-05-02 36824] R3 DC154;DC154;c:\windows\system32\drivers\DC154.sys [2011-05-02 44376] R3 DC300e;DC300e;c:\windows\system32\drivers\DC300e.sys [2011-05-02 37272] R3 DC324e;DC324e;c:\windows\system32\drivers\DC324e.sys [2011-05-02 45816] R3 DC4300;DC4300;c:\windows\system32\drivers\DC4300.sys [2011-05-02 44392] R3 DC600e;DC600e;c:\windows\system32\drivers\DC600e.sys [2011-05-02 37752] R3 dfuuwb;Intel Wireless UWB Link 1480M Device Firmware Utility;c:\windows\System32\Drivers\DfuUWB.sys [2008-09-11 500736] R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys [2015-05-21 89984] R3 dlkmd;dlkmd;c:\windows\system32\drivers\dlkmd.sys [2008-08-18 287856] R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-20 62464] R3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus;c:\windows\system32\DRIVERS\dtlitescsibus.sys [2015-11-18 25016] R3 epmntdrv;epmntdrv;c:\windows\system32\epmntdrv.sys [2014-11-18 15968] R3 EtronHub3;Etron USB 3.0 Extensible Hub Driver;c:\windows\System32\Drivers\EtronHub3.sys [2012-08-07 65152] R3 EtronSTOR;Etron Enhance USB BOT/UASP Mass Storage Driver;c:\windows\System32\Drivers\EtronSTOR.sys [2012-08-07 32512] R3 EtronXHCI;Etron USB 3.0 Extensible Host Controller Driver;c:\windows\System32\Drivers\EtronXHCI.sys [2012-08-07 88832] R3 EuGdiDrv;EuGdiDrv;c:\windows\system32\EuGdiDrv.sys [2014-11-18 10208] R3 FLxHCIc;Fresco Logic xHCI (USB3) Device Driver;c:\windows\system32\drivers\FLxHCIc.sys [2012-11-02 205552] R3 FLxHCIh;Fresco Logic xHCI (USB3) Hub Device Driver;c:\windows\system32\drivers\FLxHCIh.sys [2012-11-02 61168] R3 hptiop;hptiop;c:\windows\system32\drivers\hptiop.sys [2009-04-28 15008] R3 hptmv;hptmv;c:\windows\system32\drivers\hptmv.sys [2006-09-27 71968] R3 hptmv6;hptmv6;c:\windows\system32\drivers\hptmv6.sys [2007-11-01 120352] R3 HWA;Intel(R) Wireless USB Host Adapter;c:\windows\System32\Drivers\HWA.sys [2008-09-29 53376] R3 iaStorA;iaStorA;c:\windows\system32\drivers\iaStorA.sys [2012-06-20 486360] R3 iaStorS;iaStorS;c:\windows\system32\drivers\iaStorS.sys [2012-06-29 573400] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2016-01-22 102912] R3 iusb3hub;Pilote de concentrateur Intel(R) USB 3.0;c:\windows\system32\drivers\iusb3hub.sys [2012-10-16 351288] R3 iusb3xhc;Pilote du contrôleur d'hôte extensible Intel(R) USB 3.0;c:\windows\system32\drivers\iusb3xhc.sys [2012-10-16 796216] R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys [2015-10-05 51928] R3 megasas2;megasas2;c:\windows\system32\drivers\megasas2.sys [2012-03-08 45352] R3 megasr1;megasr1;c:\windows\system32\drivers\megasr1.sys [2012-05-28 699216] R3 MEI;Intel(R) Management Engine Interface ;c:\windows\system32\drivers\HECI.sys [2012-07-13 55104] R3 mv61xx;mv61xx;c:\windows\system32\drivers\mv61xx.sys [2012-05-23 161640] R3 mv91cons;mv91cons;c:\windows\system32\drivers\mv91cons.sys [2012-10-09 23912] R3 mvs94xx;mvs94xx;c:\windows\system32\drivers\mvs94xx.sys [2010-12-01 322352] R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\drivers\nusb3hub.sys [2012-08-27 86408] R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\drivers\nusb3xhc.sys [2012-08-27 178568] R3 ocz10xx;ocz10xx;c:\windows\system32\drivers\ocz10xx.sys [2012-04-05 126768] R3 ocz12xx;ocz12xx;c:\windows\system32\drivers\ocz12xx.sys [2011-09-14 125744] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2014-04-19 14848] R3 rr172x;rr172x;c:\windows\system32\drivers\rr172x.sys [2007-11-01 101920] R3 rr174x;rr174x;c:\windows\system32\drivers\rr174x.sys [2007-11-01 126496] R3 rr2210;rr2210;c:\windows\system32\drivers\rr2210.sys [2007-11-01 122400] R3 rr232x;rr232x;c:\windows\system32\drivers\rr232x.sys [2008-05-05 120352] R3 rr2340;rr2340;c:\windows\system32\drivers\rr2340.sys [2009-12-31 128608] R3 rr2522;rr2522;c:\windows\system32\drivers\rr2522.sys [2009-12-31 132704] R3 rr276x;rr276x;c:\windows\system32\drivers\rr276x.sys [2012-04-24 196928] R3 rr278x;rr278x;c:\windows\system32\drivers\rr278x.sys [2012-04-24 196928] R3 rr62x;rr62x;c:\windows\system32\drivers\rr62x.sys [2010-06-16 123488] R3 rusb3hub;Renesas Electronics USB 3.0 Hub Driver (Version 3.0);c:\windows\system32\drivers\rusb3hub.sys [2012-08-27 91016] R3 rusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver (Version 3.0);c:\windows\system32\drivers\rusb3xhc.sys [2012-08-27 181128] R3 Ser2plx86;Prolific Serial port WDF driver;c:\windows\system32\drivers\ser2pl.sys [2012-07-26 132608] R3 SI3112r;SI3112r;c:\windows\system32\drivers\SI3112r.sys [2007-02-01 110128] R3 SI3114;SI3114;c:\windows\system32\drivers\SI3114.sys [2006-11-10 68912] R3 SI3124;SI3124;c:\windows\system32\drivers\SI3124.sys [2006-11-02 76208] R3 Si3124r5;Si3124r5;c:\windows\system32\drivers\Si3124r5.sys [2010-04-13 216616] R3 Si3531;Si3531;c:\windows\system32\drivers\Si3531.sys [2009-02-05 212520] R3 silabenm;Silicon Labs CP210x USB to UART Bridge Serial Port Enumerator Driver;c:\windows\system32\drivers\silabenm.sys [2012-12-11 47176] R3 silabser;Silicon Labs CP210x USB to UART Bridge Driver;c:\windows\system32\drivers\silabser.sys [2012-12-11 63104] R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys [2015-05-21 184192] R3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096] R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [2010-11-20 77184] R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys [2014-04-19 24064] R3 tihub3;TI USB3 Hub Service;c:\windows\system32\drivers\tihub3.sys [2012-11-26 109416] R3 tixhci;TI XHCI Service;c:\windows\system32\drivers\tixhci.sys [2012-11-26 327528] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2014-04-19 49152] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2014-04-19 26880] R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [2010-11-20 112640] R3 usbrndis6;USB RNDIS6 Adapter;c:\windows\system32\DRIVERS\usb80236.sys [2013-12-22 15872] R3 uwbusb;UWB Bus Control USB-Miniport Driver;c:\windows\System32\Drivers\usbuwbmini.sys [2008-09-15 9600] R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x] R3 vmci;vmci;c:\windows\system32\drivers\vmci.sys [2012-07-06 71152] R3 vmscsi;vmscsi;c:\windows\system32\drivers\vmscsi.sys [2012-08-02 14232] R3 VUSB3HUB;VIA USB 3 Root Hub Service;c:\windows\system32\drivers\ViaHub3.sys [2012-05-30 179200] R3 WatAdminSvc;Service Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2013-12-22 1343400] R3 xhcdrv;VIA USB eXtensible Host Controller Service;c:\windows\system32\drivers\xhcdrv.sys [2012-05-30 217600] S0 amd_xata;amd_xata;c:\windows\system32\drivers\amd_xata.sys [2013-06-27 34624] S0 DC3410;DC3410;c:\windows\system32\drivers\DC3410.sys [2011-05-02 44360] S0 iaStorF;iaStorF;c:\windows\system32\drivers\iaStorF.sys [2012-06-29 23000] S0 iusb3hcs;Pilote de commutateur de contrôleur d'hôte Intel(R) USB 3.0;c:\windows\system32\drivers\iusb3hcs.sys [2012-10-16 16440] S1 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [2013-09-17 188808] S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2013-09-17 134248] S2 DisplayLinkService;DisplayLink Service;c:\program files\DisplayLink Core Software\DisplayLinkService.exe [2008-08-18 443752] S2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe [2013-09-12 1337752] S2 epfwwfpr;epfwwfpr;c:\windows\system32\DRIVERS\epfwwfpr.sys [2013-09-17 122376] S2 ss_conn_service;SAMSUNG Mobile Connectivity Service;c:\program files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [2015-05-21 743688] S3 Disc Soft Ultra Bus Service;Disc Soft Ultra Bus Service;c:\program files\DAEMON Tools Ultra\DiscSoftBusService.exe [2015-02-27 1378576] S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2015-10-05 23256] S3 NETwLv32; Pilote de carte de la série Intel(R) Wireless WiFi Link 5000 pour Windows Vista 32 bits ;c:\windows\system32\DRIVERS\NETwLv32.sys [2010-10-07 6639616] S3 R5U870FLx86;R5U870 UVC Lower Filter ;c:\windows\system32\Drivers\R5U870FLx86.sys [2009-07-23 75008] S3 R5U870FUx86;R5U870 UVC Upper Filter ;c:\windows\system32\Drivers\R5U870FUx86.sys [2009-07-23 43904] S3 SFEP;Sony Firmware Extension Parser;c:\windows\system32\DRIVERS\SFEP.sys [2007-08-03 9344] S3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL3.SYS [2009-07-13 207360] S3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV3.SYS [2009-07-13 980992] S3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT3.SYS [2009-07-13 661504] S3 ti21sony;ti21sony;c:\windows\system32\drivers\ti21sony.sys [2009-07-23 812544] S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\drivers\usbfilter.sys [2010-11-29 35968] S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x86.sys [2012-03-27 319264] . . [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2016-02-20 08:54 1088664 ----a-w- c:\program files\Google\Chrome\Application\48.0.2564.116\Installer\chrmstp.exe . Contenu du dossier 'Tâches planifiées' . 2016-03-10 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-09-21 13:02] . 2016-03-10 c:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2433879626-470962892-4068127585-1000Core1d0c1ed4613149b.job - c:\users\fabien\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-19 17:20] . 2016-03-10 c:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2433879626-470962892-4068127585-1000UA1d0c1ed463b8c00.job - c:\users\fabien\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-19 17:20] . 2016-03-18 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files\Google\Update\GoogleUpdate.exe [2015-03-30 13:24] . 2016-03-19 c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0e1c31119f9e.job - c:\program files\Google\Update\GoogleUpdate.exe [2015-03-30 13:24] . 2016-03-10 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2015-03-30 13:24] . 2016-03-10 c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0bf829acd776d.job - c:\program files\Google\Update\GoogleUpdate.exe [2015-03-30 13:24] . 2016-03-10 c:\windows\Tasks\GoogleUpdateTaskMachineUA1d12d08eb20b790.job - c:\program files\Google\Update\GoogleUpdate.exe [2015-03-30 13:24] . . ------- Examen supplémentaire ------- . uStart Page = hxxp://www.google.com uDefault_Search_URL = hxxp://www.google.com mStart Page = hxxp://www.google.com uInternet Settings,ProxyOverride = *.local IE: &Envoyer à OneNote - c:\progra~1\MICROS~3\Office15\ONBttnIE.dll/105 IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~3\Office15\EXCEL.EXE/3000 IE: Envoyer au périphérique &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm IE: Envoyer l'&image au périphérique Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm TCP: DhcpNameServer = 192.168.1.254 Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - c:\program files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL FF - ProfilePath - c:\users\fabien\AppData\Roaming\Mozilla\Firefox\Profiles\wmrw3wle.default\ . - - - - ORPHELINS SUPPRIMES - - - - . MSConfigStartUp-Adobe Creative Cloud - c:\program files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe MSConfigStartUp-Akamai NetSession Interface - c:\users\fabien\AppData\Local\Akamai\netsession_win.exe MSConfigStartUp-KiesAirMessage - c:\program files\Samsung\Kies\KiesAirMessage.exe AddRemove-01_Simmental - c:\program files\Samsung\USB Drivers\01_Simmental\Uninstall.exe AddRemove-02_Siberian - c:\program files\Samsung\USB Drivers\02_Siberian\Uninstall.exe AddRemove-03_Swallowtail - c:\program files\Samsung\USB Drivers\03_Swallowtail\Uninstall.exe AddRemove-04_semseyite - c:\program files\Samsung\USB Drivers\04_semseyite\Uninstall.exe AddRemove-07_Schorl - c:\program files\Samsung\USB Drivers\07_Schorl\Uninstall.exe AddRemove-09_Hsp - c:\program files\Samsung\USB Drivers\09_Hsp\Uninstall.exe AddRemove-11_HSP_Plus_Default - c:\program files\Samsung\USB Drivers\11_HSP_Plus_Default\Uninstall.exe AddRemove-16_Shrewsbury - c:\program files\Samsung\USB Drivers\16_Shrewsbury\Uninstall.exe AddRemove-20_NXP_Driver - c:\program files\Samsung\USB Drivers\20_NXP_Driver\Uninstall.exe AddRemove-24_flashusbdriver - c:\program files\Samsung\USB Drivers\24_flashusbdriver\Uninstall.exe AddRemove-25_escape - c:\program files\Samsung\USB Drivers\25_escape\Uninstall.exe AddRemove-Akamai - c:\users\fabien\AppData\Local\Akamai\uninstall.exe . . . --------------------- CLES DE REGISTRE BLOQUEES --------------------- . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . --------------------- DLLs chargées dans les processus actifs --------------------- . - - - - - - - > 'Explorer.exe'(4332) c:\windows\system32\btmmhook.dll . Heure de fin: 2016-03-19 14:17:05 ComboFix-quarantined-files.txt 2016-03-19 13:17 . Avant-CF: 244 432 097 280 octets libres Après-CF: 244 083 896 320 octets libres . - - End Of File - - 771268AE34F81D4E5C6CCEDC39DDE5FE A36C5E4F47E84449FF07ED3517B43A31