---------- | AdsFix | g3n-h@ckm@n | 3_27.07.2016.2 ----- Vista | 7 | 8 | 8.1 | 10 - 32/64 bits ----- Start 14:49:10 - 28/07/2016 Mis a jour le : 27/07/2016 | 09.35 par g3n-h@ckm@n Contact : http://www.sosvirus.net Assistance : http://www.sosvirus.net/forum-virus-securite.html Feedbacks : http://www.sosvirus.net/feedbacks-t75915.html Facebook : https://www.facebook.com/AdsFixAntiAdware C:\Users\Marion\Desktop\AdsFix.exe Boot: Normal boot [Marion (Administrator)] - [MARION-PC] - (France [040C]) SID = S-1-5-21-3068805931-2497146629-1372413373-1000 || [4d6172696f6e205e5e] PC : LENOVO - 20DFCTO1WW - LENOVO_MT_20DF_BU_Think_FM_ThinkPad E550 Processor : X64 - 2394 - Intel(R) Core(TM) i7-5500U CPU @ 2.40GHz Bios : LENOVO - 03/12/2015 - V.J5ET44WW (1.15) CoreTemp : 33 C CPU #1 value:0 % CPU #2 value:6 % CPU #3 value:12 % CPU #4 value:6 % Total Overall CPU Usage value:6 % Système : Windows 7 Professional (64 bits) Professional Service Pack 1 Memoire RAM = Total (MB) : 8116 | Libre (MB) : 5741 Pagefile = Total (MB) : 16231 | Libre (MB) : 13590 Virtuelle = Total (MB) : 4194 | Libre (MB) : 3995 C:\ -> [Fixed] | [Windows7_OS] | Total : 446.2 Go | Free : 160.76 Go -> NTFS [SATA] Q:\ -> [Fixed] | [Lenovo_Recovery] | Total : 18.1 Go | Free : 5.22 Go -> NTFS [SATA] Registre sauvegardé , pour restaurer : Cliquer sur Options & Restaurer le registre (C:\AdsFix\Save\Registry [28.07.2016 @ 14_49_08]) ou un element Restauration de fichiers ou dossiers supprimes par erreur : Cliquer sur Options & Restaurer Fichiers ou dossiers, Selectionner un element >> "Restaurer" ---------- | Mises a jour Windows Derniere(s) détection(s) : 2016-07-28 09:19:08 Dernieres Telechargees : 2016-07-26 09:40:51 Dernieres installees : 2016-07-26 09:41:30 Prochaine recherche : 2016-07-29 03:26:21 ---------- | Navigateurs IE : 11.0.9600.18283 (© Microsoft Corporation. Tous droits réservés.) GC : 51.0.2704.103 (Copyright 2015 Google Inc. All rights reserved.) ---------- | Security (atcav : 0) AM : Malwarebytes' Anti-Malware (2.3.173.0) [Update : 21/07/2016 19:45:33] FW : WMI : OK WU: Windows Update Service [Auto(2)] = non en cours AS: Windows Defender [Auto(2)] = non en cours FW: Windows FireWall Service [Auto(2)] = en cours WMI: Windows Management Instrumentation (System Information) [Auto(2)] = en cours ---------- | FlashPlayer ---------- | Processes closed 948 | [Owner : |Parent : 736(services.exe)] - (.Lenovo. - Lenovo Power Management Service.) - (1.67.9.3) = C:\Windows\System32\ibmpmsvc.exe 452 | [Owner : |Parent : 736(services.exe)] - (.AMD - AMD External Events Service Module.) - (6.14.11.1219) = C:\Windows\System32\atiesrxx.exe 1320 | [Owner : |Parent : 736(services.exe)] - (.Intel Corporation - igfxCUIService Module.) - (6.15.10.4029) = C:\Windows\System32\igfxCUIService.exe 1360 | [Owner : |Parent : 736(services.exe)] - (.DisplayLink Corp. - DisplayLinkManager Application.) - (7.5.54609.0) = C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe 1420 | [Owner : |Parent : 452()] - (.AMD - AMD External Events Client Module.) - (6.14.11.1219) = C:\Windows\System32\atieclxx.exe 1656 | [Owner : |Parent : 1072(svchost.exe)] - (.Microsoft Corporation - Infrastructure d’extensibilité pour les services réseau Windows sans fil 802.11.) - (6.1.7600.16385) = C:\Windows\System32\wlanext.exe 1956 | [Owner : |Parent : 736(services.exe)] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - (1.824.19.1728) = C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 1988 | [Owner : |Parent : 736(services.exe)] - (.Alps Electric Co., Ltd. - HidMonitorSvc Application.) - (8.1.0.13) = C:\Program Files\Apoint2K\HidMonitorSvc.exe 2012 | [Owner : |Parent : 736(services.exe)] - (.Microsoft Corporation - Updates Skype Click to Call.) - (8.3.0.9150) = C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe 1108 | [Owner : |Parent : 736(services.exe)] - (.Microsoft Corporation - Phone Number Recognition (PNR) module.) - (8.3.0.9150) = C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe 2064 | [Owner : Système |Parent : 736(services.exe)] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) - (17.13.11.0) = C:\Program Files\Intel\WiFi\bin\EvtEng.exe 2096 | [Owner : SERVICE LOCAL |Parent : 736(services.exe)] - (.Microsoft Corporation - PresentationFontCache.exe.) - (3.0.6920.5011) = C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe 2284 | [Owner : Système |Parent : 736(services.exe)] - (.Intel Corporation - Intel(R) Wireless Bluetooth(R) iBtSiva Service.) - (17.1.1431.1) = C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe 2320 | [Owner : Système |Parent : 736(services.exe)] - (.Intel(R) Corporation - Intel(R) Technology Access - Service.) - (1.3.2.1030) = C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe 2376 | [Owner : Système |Parent : 736(services.exe)] - (.Lenovo Group Limited - Auto Scroll Start Service.) - (1.3.0.0) = C:\Program Files\Lenovo\VIRTSCRL\lvvsst.exe 2452 | [Owner : Système |Parent : 736(services.exe)] - (.-.) - (0.0.0.0) = C:\Windows\SysWOW64\PnkBstrA.exe 2540 | [Owner : Système |Parent : 736(services.exe)] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) - (17.13.11.0) = C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe 2560 | [Owner : Système |Parent : 736(services.exe)] - (.Conexant Systems, Inc. - SmartAudio Service Application.) - (1.0.4.0) = C:\Windows\SysWOW64\SASrv.exe 2820 | [Owner : Système |Parent : 736(services.exe)] - (.Lenovo Group Limited - On screen display Fn+Fx handler.) - (2.5.1.0) = C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe 2888 | [Owner : Système |Parent : 736(services.exe)] - (.Intel® Corporation - Intel® PROSet/Wireless Zero Configure Service.) - (17.13.11.0) = C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe 3028 | [Owner : Système |Parent : 736(services.exe)] - (.Lenovo Group Limited - Microphone Mute Controll Service for ThinkPad.) - (1.4.4.0) = C:\Program Files\Lenovo\HOTKEY\micmute.exe 1940 | [Owner : Système |Parent : 736(services.exe)] - (.Lenovo Group Limited - ThinkPad Message Client Loader.) - (1.6.1.0) = C:\Program Files\Lenovo\HOTKEY\tphkload.exe 3440 | [Owner : Système |Parent : 1420()] - (.AMD - AMD External Events Client Module.) - (6.14.11.1219) = C:\Program Files\AMD\amdkmpfd_un\atieclxx.exe 3916 | [Owner : Marion |Parent : 736(services.exe)] - (.Microsoft Corporation - Processus hôte pour Tâches Windows.) - (6.1.7601.18010) = C:\Windows\System32\taskhost.exe 3956 | [Owner : Marion |Parent : 1988()] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) - (8.1.1601.127) = C:\Program Files\Apoint2K\Apoint.exe 4056 | [Owner : Marion |Parent : 4008()] - (.Intel Corporation - igfxEM Module.) - (6.15.10.4029) = C:\Windows\System32\igfxEM.exe 4064 | [Owner : Marion |Parent : 4008()] - (.Intel Corporation - igfxHK Module.) - (6.15.10.4029) = C:\Windows\System32\igfxHK.exe 3896 | [Owner : Marion |Parent : 3280(explorer.exe)] - (.Lenovo. - Active Protection System.) - (1.80.5.0) = C:\Windows\System32\TpShocks.exe 4240 | [Owner : Marion |Parent : 3892(GWX.exe)] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) - (6.1.7600.16385) = C:\Windows\SysWOW64\rundll32.exe 4260 | [Owner : Marion |Parent : 4240()] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) - (6.1.7600.16385) = C:\Windows\System32\rundll32.exe 4436 | [Owner : Marion |Parent : 4260()] - (.Lenovo Group Limited - Power Manager Power Agenda.) - (1.0.0.1) = C:\Program Files (x86)\ThinkPad\Utilities\SCHTASK.EXE 4540 | [Owner : Système |Parent : 2376()] - (.Lenovo Group Limited - Lenovo Auto Scroll Utility.) - (2.1.5.0) = C:\PROGRA~1\Lenovo\VIRTSCRL\virtscrl.exe 4568 | [Owner : Système |Parent : 1940()] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) - (6.1.7600.16385) = C:\Windows\System32\rundll32.exe 4576 | [Owner : Marion |Parent : 1940()] - (.Lenovo Group Limited - On screen display drawer.) - (8.0.7.0) = C:\PROGRA~1\Lenovo\HOTKEY\TPONSCR.exe 4584 | [Owner : Système |Parent : 1940()] - (.Lenovo Group Limited - ThinkPad Message Receiver for Shortcut Hot Keys.) - (2.5.1.0) = C:\PROGRA~1\Lenovo\HOTKEY\shtctky.exe 4608 | [Owner : Système |Parent : 2820()] - (.Lenovo Group Limited - NumLock on screen display for ThinkPad.) - (1.5.5.0) = C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe 3892 | [Owner : Marion |Parent : 5112()] - (.Microsoft Corporation - GWX.) - (6.3.9600.18409) = C:\Windows\System32\GWX\GWX.exe 4516 | [Owner : Marion |Parent : 1148(svchost.exe)] - (.Microsoft Corporation - Moteur du Planificateur de tâches.) - (6.1.7601.17514) = C:\Windows\System32\taskeng.exe 4560 | [Owner : Marion |Parent : 4516()] - (.CyberLink - CyberLink MediaLibray Service.) - (7.0.0.4124) = C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe 4828 | [Owner : Marion |Parent : 4516()] - (.CyberLink Corp. - PowerDVD Service.) - (12.0.24034.3720) = C:\Program Files (x86)\CyberLink\PowerDVD12\PDVD12Serv.exe 212 | [Owner : Système |Parent : 736(services.exe)] - (.Lenovo Group Limited - Lenovo QuickControl Service.) - (2.40.0.3) = C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe 4944 | [Owner : Marion |Parent : 3956()] - (.Alps Electric Co., Ltd. - ApMsgFwd.) - (8.1.1600.18) = C:\Program Files\Apoint2K\ApMsgFwd.exe 5184 | [Owner : Marion |Parent : 4536()] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver for Windows.) - (8.1.1601.29) = C:\Program Files\Apoint2K\ApntEx.exe 5312 | [Owner : Marion |Parent : 212()] - (.Lenovo Group Limited - Lenovo QuickControl Resident.) - (2.40.0.3) = C:\Program Files (x86)\Lenovo\QuickControl\QuickControl.exe 5816 | [Owner : SERVICE RÉSEAU |Parent : 736(services.exe)] - (.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) - (12.0.7601.17514) = C:\Program Files\Windows Media Player\wmpnetwk.exe 3888 | [Owner : Marion |Parent : 5192()] - (.Lenovo - Lenovo Solution Center Notifications.) - (1.1.0.0) = C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe 6812 | [Owner : Système |Parent : 736(services.exe)] - (.Lenovo - Power Manager Dynamic Brightness Control Service.) - (1.0.0.1) = C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.exe 5244 | [Owner : Marion |Parent : 4516()] - (.Lenovo - Message Center Plus Scheduler.) - (3.4.1.0) = C:\Program Files (x86)\Lenovo\Message Center Plus\MCPLaunch.exe 6412 | [Owner : Marion |Parent : 3256()] - (.Lenovo - Lenovo Service Bridge.) - (1.6.3.5) = C:\Users\Marion\AppData\Local\Apps\2.0\X48T0BXT.6BC\QEWBK3M3.2MJ\lsb...tion_2d7b41b05b24775e_0001.0006_6c5982beb50abfca\LSB.exe 6984 | [Owner : Système |Parent : 736(services.exe)] - (.Motorola Solutions, Inc. - Bluetooth Device Monitor.) - (17.1.1407.474) = C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe 3384 | [Owner : Système |Parent : 736(services.exe)] - (.Motorola Solutions, Inc. - Bluetooth Media Service.) - (17.1.1407.480) = C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe 3036 | [Owner : Système |Parent : 736(services.exe)] - (.Motorola Solutions, Inc. - Bluetooth OBEX Service.) - (17.1.1407.480) = C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe 3076 | [Owner : Système |Parent : 736(services.exe)] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host Interface.) - (10.0.30.1054) = C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe 1780 | [Owner : Système |Parent : 736(services.exe)] - (.Intel Corporation - Intel(R) Local Management Service.) - (10.0.30.1054) = C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 5592 | [Owner : Système |Parent : 736(services.exe)] - (.Lenovo - Lenovo Peer Connect Service.) - (1.0.0.0) = C:\Program Files\Lenovo\Lenovo Peer Connect\LenovoDiscoverySvc.exe 2584 | [Owner : Marion |Parent : 1148(svchost.exe)] - (.Microsoft Corporation - Moteur du Planificateur de tâches.) - (6.1.7601.17514) = C:\Windows\System32\taskeng.exe ---------- | Tasks Suppression : CLMLSvc Suppression : PMTask Suppression : PDVDServ12 Task Suppression : StartPowerDVDService ---------- | Services ---------- | AppCertDlls | AppInit_DLLs ---------- | DNSapi.dll C:\Windows\System32\dnsapi.dll : \drivers\etc\hosts C:\Windows\SysWOW64\dnsapi.dll : \drivers\etc\hosts ---------- | Hosts ---------- | SafeBoot Suppression : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc Suppression : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc ---------- | Winsock ---------- | DNS ---------- | Registre Suppression : HKLM\SOFTWARE\Classes\Download.SwInstaller : SwInstaller Class Suppression : HKLM\SOFTWARE\Classes\Download.SwInstaller.1 : SwInstaller Class Suppression : HKLM\SOFTWARE\Classes\Download.SwInstallerAttributes.1 : SwInstallerAttributes Class Suppression : HKLM\SOFTWARE\Classes\ReachDrive : REACHit Drive Suppression : HKLM\SOFTWARE\Classes\speedupmypc : Suppression : HKLM\SOFTWARE\Wow6432Node\Classes\Download.SwInstallerAttributes : SwInstallerAttributes Class Suppression : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\{2B3256D4-49AA-11D1-8429-0050AE509033} : REACHit Drive Suppression : HKLM\SOFTWARE\Classes\CLSID\{2B3256D4-49AA-11D1-8429-0050AE509033} Suppression : [HKU\S-1-5-21-3068805931-2497146629-1372413373-1000\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]~[REACHitAgent.exe] Suppression : [HKU\S-1-5-21-3068805931-2497146629-1372413373-1000\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]~[REACHitAgent.exe] Suppression : [HKU\S-1-5-21-3068805931-2497146629-1372413373-1000\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]~[REACHitAgent.exe] Suppression : HKLM\SOFTWARE\Microsoft\Tracing\DriverNavigator_RASAPI32 Suppression : HKLM\SOFTWARE\Microsoft\Tracing\DriverNavigator_RASMANCS Suppression : HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\REACHitAgent_RASAPI32 Suppression : HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\REACHitAgent_RASMANCS Suppression : [HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]~[DefaultScope] : {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Suppression : [HKU\S-1-5-21-3068805931-2497146629-1372413373-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]~[DefaultScope] Suppression : [HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]~[DefaultScope] Suppression : [HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]~[DefaultScope] Suppression : [HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]~[DefaultScope] Suppression : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes]~[DefaultScope] Suppression : HKU\S-1-5-21-3068805931-2497146629-1372413373-1000\SOFTWARE\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\e9c62465_0 : {0.0.0.00000000}.{1dfadf04-80e2-4509-bb67-1f7319194bba}|\Device\HarddiskVolume2\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe%b{00000000-0000-0000-0000-000000000000} Suppression : HKU\S-1-5-21-3068805931-2497146629-1372413373-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} : 1 Suppression : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Suppression : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Suppression : HKLM\Software\Classes\Installer\Products\5C4E2354D48C04040A44CECF5C6C99B5 : (REACHit) C:\Users\Administrator\AppData\Local\Downloaded Installations\{279CD365-D5FB-4DB2-87BC-1C808407DFD6}\ Suppression : HKLM\Software\Classes\Installer\Features\5C4E2354D48C04040A44CECF5C6C99B5 Suppression : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\5C4E2354D48C04040A44CECF5C6C99B5 : [C:\Windows\Installer\a673c.msi] ---------- | Dossiers | Fichiers Suppression : C:\Users\Public\Desktop\REACHit.lnk (.-.) Suppression : C:\Users\Marion\AppData\Roaming\Microsoft\Windows\Start Menu\REACHit Drive.lnk (.-.) (Offsets) Suppression : C:\Users\Marion\AppData\Roaming\Microsoft\Windows\SendTo\REACHit Drive.ReachDrive (.-.) Suppression : C:\Users\Marion\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico (.-.) Suppression : C:\Users\Marion\Downloads\speedupmypc.exe (Copyright © Uniblue Systems Limited .-.SpeedUpMyPC) Suppression : C:\Windows\Installer\a673c.msi (.-.) [Package Install] Suppression : C:\ProgramData\DP45977C.lfl (.-.) Suppression : C:\ProgramData\{D6E853EC-8960-4D44-AF03-7361BB93227C}.log (.-.) Suppression : C:\ProgramData\{B7A0CE06-068E-11D6-97FD-0050BACBF861}.log (.-.) Suppression : C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log (.-.) Suppression : C:\ProgramData\{324F76CC-D8DD-4D87-B77D-D4AF5E1AA7B3}.log (.-.) Suppression : C:\ProgramData\install_clap Suppression : C:\Windows\Util Suppression : C:\Users\Marion\AppData\Local\16940zzeYQQxKt Suppression : C:\Users\Marion\AppData\Local\c85wUX3Y Suppression : C:\Users\Marion\AppData\Local\T1RgchLepeKW4o ---------- | .LNK ---------- | Ouverture extension inconnue ---------- | Proxy ---------- | Internet Explorer Reparation : [HKU\S-1-5-21-3068805931-2497146629-1372413373-1000\SOFTWARE\Microsoft\Internet Explorer\Main]~[Search Bar] : Preserve -> https://www.google.com/ Reparation : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main]~[Start Page] : about:blank -> https://www.google.com/ Reparation : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main]~[Start Page] : about:blank -> https://www.google.com/ Reparation : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main]~[Local Page] : C:\Windows\SysWOW64\blank.htm -> C:\Windows\System32\blank.htm Reparation : [HKU\S-1-5-21-3068805931-2497146629-1372413373-1000\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter]~[Enabled] : -> 2 Reparation : [HKU\S-1-5-21-3068805931-2497146629-1372413373-1000\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter]~[EnabledV8] : -> 1 Reparation : [HKU\S-1-5-21-3068805931-2497146629-1372413373-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet settings]~[WarNonBadCertReceving] : -> 1 Reparation : [HKU\S-1-5-21-3068805931-2497146629-1372413373-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet settings]~[WarNonHTTPSToHTTPRedirect] : -> 1 Reparation : [HKU\S-1-5-21-3068805931-2497146629-1372413373-1000\SOFTWARE\Microsoft\Internet Explorer\Toolbar]~[Locked] : 1 -> 0 ---------- | Yandex ---------- | Google Chrome Suppression : C:\Users\Marion\AppData\Local\Google\Chrome\User Data\Default\Web Data (.-.) Remis a zero avec succes : SearchURL Suppression : C:\Users\Marion\AppData\Local\Google\Chrome\User Data\Default\Preferences (.-.) Remis a zero avec succes : Preferences Suppression : C:\Users\Marion\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences (.-.) Remis a zero avec succes : Preferences C:\Users\Marion\AppData\Local\Google\Chrome\User Data\Default\extensions\aapocclcgogkmnckokdopfmhonfmgoek = : Google & co - Google & co - https://clients2.google.com/service/update2/crx C:\Users\Marion\AppData\Local\Google\Chrome\User Data\Default\extensions\aohghmighlieiainnegkcijnfilokake = : Google & co - Google & co - https://clients2.google.com/service/update2/crx C:\Users\Marion\AppData\Local\Google\Chrome\User Data\Default\extensions\apdfllckaahabafndbhieahigkjlhalf = : Google & co - https://drive.google.com/?usp=chrome_app - Google & co - [http://docs.google.com/http://drive.google.com/https://docs.google.com/https://drive.google.com/] - https://clients2.google.com/service/update2/crx C:\Users\Marion\AppData\Local\Google\Chrome\User Data\Default\extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo = : Google & co - http://www.youtube.com - http://www.youtube.com - Google & co - http://clients2.google.com/service/update2/crx C:\Users\Marion\AppData\Local\Google\Chrome\User Data\Default\extensions\coobgpohoikkiipiblmjeljniedjpjpf = : Google & co - http://www.google.com/webhp?source=search_app - Google & co - [*://www.google.com/search*://www.google.com/webhp*://www.google.com/imgres] - http://clients2.google.com/service/update2/crx C:\Users\Marion\AppData\Local\Google\Chrome\User Data\Default\extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi = : __MSG_extDesc__ - __MSG_extName__ - https://clients2.google.com/service/update2/crx C:\Users\Marion\AppData\Local\Google\Chrome\User Data\Default\extensions\gighmmpiobklfepjocnamgkkbiglidom = : __MSG_description__ - short_name: __MSG_name__ - https://clients2.google.com/service/update2/crx C:\Users\Marion\AppData\Local\Google\Chrome\User Data\Default\extensions\gomekmidlodglbbmalcneegieacbdmki = : Avast Browser Security and Web Reputation Plugin. - Avast Online Security - https://clients2.google.com/service/update2/crx C:\Users\Marion\AppData\Local\Google\Chrome\User Data\Default\extensions\kmhkepipobnjllejbafajoemahjejdcm = : __MSG_addons_description__ - version_name: 2.0.4 - http://clients2.google.com/service/update2/crx C:\Users\Marion\AppData\Local\Google\Chrome\User Data\Default\extensions\nmmhkkegccagdldgiimedpiccmgmieda = : Google & co - Google & co - 203784468217.apps.googleusercontent.com - https://clients2.google.com/service/update2/crx C:\Users\Marion\AppData\Local\Google\Chrome\User Data\Default\extensions\oemmndcbldboiebfnladdacbdfmadadm = : Uses HTML5 to display PDF files directly in the browser. - PDF Viewer - permissions:[fileBrowserHandlerwebRequestwebRequestBlocking\u003Call_urls>tabswebNavigationstorage] - https://clients2.google.com/service/update2/crx C:\Users\Marion\AppData\Local\Google\Chrome\User Data\Default\extensions\pjkljhegncpnkpknbcohdijeoejaedia = : Google & co - https://mail.google.com/mail/ca - Google & co - [*://mail.google.com/mail/ca] - http://clients2.google.com/service/update2/crx ---------- | Chromium ---------- | Comodo Dragon ---------- | Firefox ---------- | SeaMonkey ---------- | Pale moon ---------- | Opera ---------- | Spark ---------- | StartMenuInternet Reparation : [HKLM\SOFTWARE\Clients\StartMenuInternet\IExplore.exe\shell\open\command]~[] : C:\Program Files\Internet Explorer\iexplore.exe -> "C:\Program Files (x86)\Internet Explorer\iexplore.exe" Reparation : [HKLM\SOFTWARE\Clients\StartMenuInternet\SafeZoneStable\Shell\open\Command]~[] : "C:\Program Files\AVAST Software\SZBrowser\Launcher.exe" -> "C:\Program Files (x86)\AVAST Software\SZBrowser\Launcher.exe" Reparation : [HKLM\SOFTWARE\Clients\StartMenuInternet\SafeZoneStable\InstallInfo]~[] : "C:\Program Files\AVAST Software\SZBrowser\Launcher.exe" --makedefaultbrowser -> "C:\Program Files (x86)\AVAST Software\SZBrowser\Launcher.exe" --makedefaultbrowser Reparation : [HKLM\SOFTWARE\WOW6432Node\Clients\StartMenuInternet\SafeZoneStable\InstallInfo]~[] : "C:\Program Files\AVAST Software\SZBrowser\Launcher.exe" --makedefaultbrowser -> "C:\Program Files (x86)\AVAST Software\SZBrowser\Launcher.exe" --makedefaultbrowser ---------- | Javascript ---------- | Firewall ---------- | ADS Autre rapport Analyse : 343103 | Modification : 13 | Suppression : 54 ---------- |EOF| ---------- | 16:37:38 | [24 Ko]